
Bratránkovi zlobí ntb, koukněte prosím na log. Díky moc

Jde o log z rsitx64.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Johny at 2014-01-19 16:00:57
Microsoft Windows 8
System drive C: has 838 GB (89%) free of 937 GB
Total RAM: 7912 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:01:05, on 19. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Johny\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\inf\msrcbrxc\msrcbrxc.exe
C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
C:\Program Files\trend micro\Johny.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [msofpySrv] C:\Windows\inf\msofpy.vbe
O4 - HKLM\..\Run: [YTDownloader] "C:\Program Files (x86)\YTDownloader\YTDownloader.exe" /boot
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Johny\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Johny\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [UpdateChecker] C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: McAfee Application Installer Cleanup (0077961390062371) (0077961390062371mcinstcleanup) - McAfee, Inc. - C:\Windows\TEMP\007796~1.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9935 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
"C:\Program Files\Elantech\ETDService.exe"
dashost.exe {fc6c1cf1-ad8a-48c7-93aac08806878c9d}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe"
"C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe" SERVICE
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe {CF10C3DD-7FC1-476f-8546-A12D7DA24BBF}|{807c9044-ec5b-4451-b4bf-f8f7186902f2}
"C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
atieclxx
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\x64\saHook.dll", saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll", saHooker_Initialize_and_Wait
"C:\Program Files\Elantech\ETDCtrl.exe"
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\Elantech\ETDTouch.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Launch Manager\LMTray.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMMsg.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxtray.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\SysWOW64\rundll32.exe" "C:\Users\Johny\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
"C:\Users\Johny\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\inf\msrcbrxc\msrcbrxc.exe -o stratum+tcp://mint.bitminter.com:3333 -u frankfrank_frankus -p frankus575
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe"
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Defender\MsMpEng.exe"
C:\Windows\system32\msiexec.exe /V
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe73_ Global\UsGthrCtrlFltPipeMssGthrPipe73 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
"C:\Users\Johny\Desktop\RSITx64 (1).exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey AF9B086C-07BF-1894-38F0-52B2E5497033 -Reinvoke
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-01-18 553384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2013-04-15 66688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-10-09 6270336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-01-18 210856]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09 4502400]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-18 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-05-15 165872]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-05-15 407536]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-05-15 444400]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-04-22 2890640]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-03-18 13427784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-04-15 132736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-14 20584608]
"NextLive"=C:\Windows\SysWOW64\rundll32.exe [2012-07-26 48640]
"uTorrent"=C:\Users\Johny\AppData\Roaming\uTorrent\uTorrent.exe [2014-01-10 1142864]
"UpdateChecker"=C:\Program Files (x86)\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe [2013-11-09 7168]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"mcui_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-03-14 642656]
"Norton Online Backup"=C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2012-08-15 2994880]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2013-11-29 3806544]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
"msofpySrv"=C:\Windows\inf\msofpy.vbe [2013-08-27 1558]
"YTDownloader"=C:\Program Files (x86)\YTDownloader\YTDownloader.exe /boot []
"ApnTBMon"=C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2014-01-11 1778640]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-04-15 132736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-05-08 440320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktopChanges"=1
"NoActiveDesktop"=1
"NoRun"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-01-19 16:00:58 ----D---- C:\Program Files\trend micro
2014-01-19 16:00:57 ----D---- C:\rsit
2014-01-19 16:00:15 ----N---- C:\Windows\system32\MpSigStub.exe
2014-01-19 15:48:03 ----D---- C:\Users\Johny\AppData\Roaming\GetRightToGo
2014-01-19 15:25:28 ----D---- C:\ProgramData\SystemRequirementsLab
2014-01-18 20:16:20 ----D---- C:\Users\Johny\AppData\Roaming\.minecraft
2014-01-18 13:58:35 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-01-18 13:58:34 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-01-18 13:58:32 ----A---- C:\Windows\game.ini
2014-01-18 10:46:08 ----A---- C:\Windows\system32\javaws.exe
2014-01-18 10:46:05 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2014-01-18 10:46:05 ----A---- C:\Windows\system32\javaw.exe
2014-01-18 10:46:05 ----A---- C:\Windows\system32\java.exe
2014-01-18 10:45:56 ----D---- C:\Program Files (x86)\SqueakyChocolate
2014-01-18 10:45:52 ----D---- C:\Program Files\Java
2014-01-18 10:44:22 ----D---- C:\Users\Johny\AppData\Roaming\rmi
2014-01-18 10:42:10 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-01-18 10:42:08 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-01-18 10:42:08 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-01-18 10:42:08 ----A---- C:\Windows\SYSWOW64\java.exe
2014-01-18 10:33:31 ----SHD---- C:\Config.Msi
2014-01-18 10:32:12 ----D---- C:\ProgramData\AskPartnerNetwork
2014-01-18 10:32:12 ----D---- C:\Program Files (x86)\AskPartnerNetwork
2014-01-18 10:29:56 ----A---- C:\Windows\SYSWOW64\REN5677.tmp
2014-01-17 20:32:44 ----D---- C:\ProgramData\Blizzard Entertainment
2014-01-10 22:08:41 ----D---- C:\Program Files (x86)\ShopperPro
2014-01-09 14:42:49 ----D---- C:\Program Files\CCleaner
2014-01-08 16:26:32 ----D---- C:\Users\Johny\AppData\Roaming\WinRAR
2014-01-08 16:26:11 ----D---- C:\Program Files (x86)\WinRAR
2014-01-07 16:26:07 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2014-01-07 15:23:46 ----D---- C:\ProgramData\WarThunder
2013-12-30 15:35:57 ----A---- C:\Windows\system32\FNTCACHE.DAT
2013-12-29 20:48:22 ----D---- C:\Users\Johny\AppData\Roaming\newnext.me
2013-12-29 20:47:32 ----D---- C:\Program Files (x86)\Mobogenie
2013-12-29 20:45:51 ----D---- C:\Users\Johny\AppData\Roaming\DAEMON Tools Lite
2013-12-29 20:45:13 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-12-29 20:42:10 ----D---- C:\Users\Johny\AppData\Roaming\AVG
2013-12-29 20:40:09 ----D---- C:\ProgramData\AVG
2013-12-29 20:40:02 ----SHD---- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-12-29 20:40:02 ----HD---- C:\ProgramData\Common Files
2013-12-29 20:38:37 ----D---- C:\Users\Johny\AppData\Roaming\OpenCandy
2013-12-29 20:32:39 ----D---- C:\Users\Johny\AppData\Roaming\uTorrent
2013-12-26 19:43:38 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2013-12-26 19:43:24 ----D---- C:\ProgramData\LogMeIn
2013-12-26 15:21:01 ----D---- C:\ProgramData\Caphyon
2013-12-26 14:52:29 ----A---- C:\Windows\system32\dwmcore.dll
2013-12-26 14:52:28 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-12-26 14:52:28 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-12-26 14:52:28 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-12-26 14:52:28 ----A---- C:\Windows\explorer.exe
2013-12-26 14:52:27 ----A---- C:\Windows\system32\samsrv.dll
2013-12-26 14:52:27 ----A---- C:\Windows\system32\mfcore.dll
2013-12-26 14:52:26 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2013-12-26 14:52:26 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-12-26 14:52:25 ----A---- C:\Windows\system32\winload.exe
2013-12-26 14:52:24 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-12-26 14:52:24 ----A---- C:\Windows\system32\winresume.exe
2013-12-26 14:52:24 ----A---- C:\Windows\system32\vds.exe
2013-12-26 14:52:24 ----A---- C:\Windows\system32\mscms.dll
2013-12-26 14:52:23 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-12-26 14:52:23 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-12-26 14:52:23 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2013-12-26 14:52:23 ----A---- C:\Windows\system32\samlib.dll
2013-12-26 14:52:23 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2013-12-26 14:52:23 ----A---- C:\Windows\system32\audiosrv.dll
2013-12-26 14:52:22 ----A---- C:\Windows\SYSWOW64\samlib.dll
2013-12-26 14:52:22 ----A---- C:\Windows\system32\vdsutil.dll
2013-12-26 14:52:22 ----A---- C:\Windows\system32\MbaeParserTask.exe
2013-12-26 14:52:22 ----A---- C:\Windows\system32\DeviceSetupManager.dll
2013-12-26 14:52:21 ----A---- C:\Windows\system32\drivers\BthAvrcpTg.sys
2013-12-26 14:52:15 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-12-26 14:50:53 ----A---- C:\Windows\system32\shell32.dll
2013-12-26 14:50:52 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-12-26 14:50:51 ----A---- C:\Windows\SYSWOW64\msctf.dll
2013-12-26 14:50:51 ----A---- C:\Windows\system32\msctf.dll
2013-12-26 14:50:51 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-12-26 14:50:50 ----A---- C:\Windows\system32\shdocvw.dll
2013-12-26 14:50:50 ----A---- C:\Windows\system32\SettingSync.dll
2013-12-26 14:50:49 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-12-26 14:50:49 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2013-12-26 14:50:49 ----A---- C:\Windows\SYSWOW64\mbsmsapi.dll
2013-12-26 14:50:49 ----A---- C:\Windows\system32\mbsmsapi.dll
2013-12-26 14:50:48 ----A---- C:\Windows\system32\SettingSyncInfo.dll
2013-12-26 14:50:33 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-12-26 14:50:33 ----A---- C:\Windows\system32\wvc.dll
2013-12-26 14:50:33 ----A---- C:\Windows\system32\wdc.dll
2013-12-26 14:50:32 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-12-26 14:50:28 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2013-12-26 14:50:27 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2013-12-26 14:50:26 ----A---- C:\Windows\system32\UIAutomationCore.dll
2013-12-26 14:50:25 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2013-12-26 14:50:25 ----A---- C:\Windows\system32\ubpm.dll
2013-12-26 14:50:25 ----A---- C:\Windows\system32\drivers\tpm.sys
2013-12-26 14:50:25 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-12-26 14:50:24 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-12-26 14:50:24 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2013-12-26 14:50:24 ----A---- C:\Windows\system32\WSDApi.dll
2013-12-26 14:50:24 ----A---- C:\Windows\system32\kerberos.dll
2013-12-26 14:50:24 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2013-12-26 14:50:23 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-12-26 14:50:05 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-12-26 14:50:05 ----A---- C:\Windows\system32\msftedit.dll
2013-12-26 14:50:04 ----A---- C:\Windows\system32\wwanconn.dll
2013-12-26 14:50:04 ----A---- C:\Windows\system32\localspl.dll
2013-12-26 14:50:03 ----A---- C:\Windows\SYSWOW64\winmmbase.dll
2013-12-26 14:50:03 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-12-26 14:50:03 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2013-12-26 14:50:03 ----A---- C:\Windows\system32\wwansvc.dll
2013-12-26 14:50:03 ----A---- C:\Windows\system32\WinSCard.dll
2013-12-26 14:50:03 ----A---- C:\Windows\system32\winmmbase.dll
2013-12-26 14:50:03 ----A---- C:\Windows\system32\winmm.dll
2013-12-26 14:50:03 ----A---- C:\Windows\system32\WerFault.exe
2013-12-26 14:50:03 ----A---- C:\Windows\system32\wcmsvc.dll
2013-12-26 14:50:03 ----A---- C:\Windows\system32\drivers\sdbus.sys
2013-12-26 14:50:03 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2013-12-26 14:50:03 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2013-12-26 14:50:03 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-12-26 14:50:02 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2013-12-26 14:50:02 ----A---- C:\Windows\system32\Wwanadvui.dll
2013-12-26 14:50:02 ----A---- C:\Windows\system32\wcmcsp.dll
2013-12-26 14:50:02 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-12-26 14:50:02 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-12-26 14:50:01 ----A---- C:\Windows\SYSWOW64\openfiles.exe
2013-12-26 14:50:01 ----A---- C:\Windows\system32\wwanmm.dll
2013-12-26 14:50:01 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2013-12-26 14:50:01 ----A---- C:\Windows\system32\openfiles.exe
2013-12-26 14:50:01 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-12-26 14:50:00 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-12-26 14:50:00 ----A---- C:\Windows\SYSWOW64\LocationApi.dll
2013-12-26 14:50:00 ----A---- C:\Windows\system32\LocationApi.dll
2013-12-26 14:49:51 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-12-26 14:49:51 ----A---- C:\Windows\system32\wuaueng.dll
2013-12-26 14:49:51 ----A---- C:\Windows\system32\resutils.dll
2013-12-26 14:49:51 ----A---- C:\Windows\system32\oleaut32.dll
2013-12-26 14:49:51 ----A---- C:\Windows\system32\clusapi.dll
2013-12-26 14:49:50 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-12-26 14:49:50 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-12-26 14:49:50 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-12-26 14:49:50 ----A---- C:\Windows\system32\wucltux.dll
2013-12-26 14:49:50 ----A---- C:\Windows\system32\wuapi.dll
2013-12-26 14:49:50 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2013-12-26 14:49:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-12-26 14:49:49 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-12-26 14:49:49 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-12-26 14:49:49 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-12-26 14:49:49 ----A---- C:\Windows\system32\wuwebv.dll
2013-12-26 14:49:49 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2013-12-26 14:49:49 ----A---- C:\Windows\system32\wudriver.dll
2013-12-26 14:49:49 ----A---- C:\Windows\system32\wuauclt.exe
2013-12-26 14:49:49 ----A---- C:\Windows\system32\wuapp.exe
2013-12-26 14:49:49 ----A---- C:\Windows\system32\storewuauth.dll
2013-12-26 14:49:49 ----A---- C:\Windows\system32\drivers\spaceport.sys
2013-12-26 10:52:17 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-26 10:47:32 ----RD---- C:\Windows\BrowserChoice
2013-12-26 10:30:06 ----D---- C:\Windows\system32\MRT
2013-12-26 10:30:04 ----A---- C:\Windows\system32\MRT.exe
2013-12-25 19:46:56 ----A---- C:\Windows\system32\VmHostAI.dll
2013-12-25 19:46:56 ----A---- C:\Windows\system32\tssdisai.dll
2013-12-25 19:46:56 ----A---- C:\Windows\system32\RDWebAI.dll
2013-12-25 19:46:56 ----A---- C:\Windows\system32\appserverai.dll
2013-12-25 19:46:55 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-12-25 19:46:55 ----A---- C:\Windows\system32\poqexec.exe
2013-12-25 10:53:45 ----D---- C:\Users\Johny\AppData\Roaming\Macromedia
2013-12-25 10:52:12 ----D---- C:\Program Files (x86)\Google
2013-12-25 10:43:09 ----D---- C:\Users\Johny\AppData\Roaming\WildTangent
2013-12-25 02:10:58 ----D---- C:\ProgramData\APN
2013-12-25 02:09:01 ----D---- C:\ProgramData\Oracle
2013-12-25 02:08:56 ----D---- C:\ProgramData\Sun
2013-12-25 02:08:45 ----D---- C:\Program Files (x86)\Java
2013-12-25 02:06:42 ----A---- C:\Windows\system32\wmp.dll
2013-12-25 02:06:42 ----A---- C:\Windows\system32\tquery.dll
2013-12-25 02:06:39 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-25 02:06:39 ----A---- C:\Windows\system32\mssrch.dll
2013-12-25 02:06:38 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-12-25 02:06:37 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-12-25 02:06:36 ----A---- C:\Windows\system32\ntdll.dll
2013-12-25 02:06:33 ----A---- C:\Windows\system32\MSAudDecMFT.dll
2013-12-25 02:06:31 ----A---- C:\Windows\SYSWOW64\MSAudDecMFT.dll
2013-12-25 02:06:30 ----A---- C:\Windows\system32\schedsvc.dll
2013-12-25 02:06:30 ----A---- C:\Windows\system32\kd_02_10ec.dll
2013-12-25 02:06:29 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-12-25 02:06:29 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-12-25 02:06:28 ----A---- C:\Windows\system32\rsaenh.dll
2013-12-25 02:06:28 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2013-12-25 02:06:28 ----A---- C:\Windows\system32\AudioSes.dll
2013-12-25 02:06:27 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-12-25 02:06:27 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-12-25 02:06:27 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-12-25 02:06:27 ----A---- C:\Windows\system32\mssph.dll
2013-12-25 02:06:27 ----A---- C:\Windows\system32\dwmredir.dll
2013-12-25 02:06:27 ----A---- C:\Windows\system32\conhost.exe
2013-12-25 02:06:27 ----A---- C:\Windows\system32\AudioEng.dll
2013-12-25 02:06:25 ----A---- C:\Windows\SYSWOW64\rsaenh.dll
2013-12-25 02:06:25 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2013-12-25 02:06:25 ----A---- C:\Windows\system32\Windows.Networking.dll
2013-12-25 02:06:25 ----A---- C:\Windows\system32\audiodg.exe
2013-12-25 02:06:24 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-12-25 02:06:24 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-12-25 02:06:24 ----A---- C:\Windows\system32\wpncore.dll
2013-12-25 02:06:24 ----A---- C:\Windows\system32\RecoveryDrive.exe
2013-12-25 02:06:21 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-12-25 02:06:21 ----A---- C:\Windows\system32\dmvdsitf.dll
2013-12-25 02:06:20 ----A---- C:\Windows\system32\MFMediaEngine.dll
2013-12-25 02:06:20 ----A---- C:\Windows\system32\fhengine.dll
2013-12-25 02:06:20 ----A---- C:\Windows\system32\ci.dll
2013-12-25 02:06:19 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2013-12-25 02:06:19 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-12-25 02:06:17 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-12-25 02:06:17 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2013-12-25 02:06:16 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-12-25 02:06:16 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-12-25 02:06:16 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-12-25 02:06:16 ----A---- C:\Windows\system32\Robocopy.exe
2013-12-25 02:06:16 ----A---- C:\Windows\system32\kdvm.dll
2013-12-25 02:06:16 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-12-25 02:06:15 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-12-25 02:06:14 ----A---- C:\Windows\system32\iuilp.dll
2013-12-25 02:06:13 ----A---- C:\Windows\SYSWOW64\dmvdsitf.dll
2013-12-25 02:06:13 ----A---- C:\Windows\system32\kdnet.dll
2013-12-25 02:06:13 ----A---- C:\Windows\system32\drivers\hidbth.sys
2013-12-25 02:06:12 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2013-12-25 02:06:12 ----A---- C:\Windows\system32\wscsvc.dll
2013-12-25 02:06:11 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-12-25 02:06:09 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-12-25 02:06:09 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2013-12-25 02:06:09 ----A---- C:\Windows\system32\mssvp.dll
2013-12-25 02:06:09 ----A---- C:\Windows\system32\GenuineCenter.dll
2013-12-25 02:06:09 ----A---- C:\Windows\system32\fmifs.dll
2013-12-25 02:06:09 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-12-25 02:06:08 ----A---- C:\Windows\SYSWOW64\fmifs.dll
2013-12-25 02:06:08 ----A---- C:\Windows\system32\mssprxy.dll
2013-12-25 02:06:08 ----A---- C:\Windows\system32\msshooks.dll
2013-12-25 02:06:07 ----A---- C:\Windows\SYSWOW64\mssprxy.dll
2013-12-25 02:06:07 ----A---- C:\Windows\SYSWOW64\msshooks.dll
2013-12-25 02:06:07 ----A---- C:\Windows\system32\msscntrs.dll
2013-12-25 01:38:39 ----A---- C:\Windows\system32\sysmain.dll
2013-12-25 01:38:39 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2013-12-25 01:38:38 ----A---- C:\Windows\system32\VSSVC.exe
2013-12-25 01:38:38 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-12-25 01:38:37 ----A---- C:\Windows\system32\netprofmsvc.dll
2013-12-25 01:38:37 ----A---- C:\Windows\system32\BCP47Langs.dll
2013-12-25 01:38:36 ----A---- C:\Windows\SYSWOW64\BCP47Langs.dll
2013-12-25 01:38:34 ----A---- C:\Windows\system32\stobject.dll
2013-12-25 01:38:34 ----A---- C:\Windows\system32\netprofm.dll
2013-12-25 01:38:34 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2013-12-25 01:38:33 ----A---- C:\Windows\system32\psmsrv.dll
2013-12-25 01:38:33 ----A---- C:\Windows\system32\netplwiz.dll
2013-12-25 01:38:33 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2013-12-25 01:38:33 ----A---- C:\Windows\system32\Magnify.exe
2013-12-25 01:38:32 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-12-25 01:38:32 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-12-25 01:38:32 ----A---- C:\Windows\system32\taskhost.exe
2013-12-25 01:38:32 ----A---- C:\Windows\system32\DevicePairing.dll
2013-12-25 01:38:31 ----A---- C:\Windows\SYSWOW64\netprofm.dll
2013-12-25 01:38:31 ----A---- C:\Windows\SYSWOW64\Magnify.exe
2013-12-25 01:38:31 ----A---- C:\Windows\SYSWOW64\DevicePairing.dll
2013-12-25 01:38:31 ----A---- C:\Windows\system32\AuthHost.exe
2013-12-25 01:38:30 ----A---- C:\Windows\SYSWOW64\biwinrt.dll
2013-12-25 01:38:30 ----A---- C:\Windows\system32\biwinrt.dll
2013-12-25 01:38:29 ----A---- C:\Windows\system32\taskhostex.exe
2013-12-25 01:38:29 ----A---- C:\Windows\system32\bisrv.dll
2013-12-25 01:38:28 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2013-12-25 01:38:27 ----A---- C:\Windows\SYSWOW64\npmproxy.dll
2013-12-25 01:38:27 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-12-25 01:38:27 ----A---- C:\Windows\system32\muifontsetup.dll
2013-12-25 01:38:00 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-12-25 01:38:00 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-12-25 01:38:00 ----A---- C:\Windows\system32\untfs.dll
2013-12-25 01:38:00 ----A---- C:\Windows\system32\autochk.exe
2013-12-25 01:37:58 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-12-25 01:37:58 ----A---- C:\Windows\system32\kernel32.dll
2013-12-25 01:37:37 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-12-25 01:37:36 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-12-25 01:37:31 ----A---- C:\Windows\system32\mstscax.dll
2013-12-25 01:37:29 ----A---- C:\Windows\system32\wmpmde.dll
2013-12-25 01:37:28 ----A---- C:\Windows\system32\winmde.dll
2013-12-25 01:37:28 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2013-12-25 01:37:28 ----A---- C:\Windows\system32\Windows.Globalization.dll
2013-12-25 01:37:27 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-12-25 01:37:27 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-12-25 01:37:27 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2013-12-25 01:37:26 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2013-12-25 01:37:26 ----A---- C:\Windows\system32\drivers\storport.sys
2013-12-25 01:37:24 ----A---- C:\Windows\SYSWOW64\winmde.dll
2013-12-25 01:37:24 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2013-12-25 01:37:24 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-12-25 01:37:24 ----A---- C:\Windows\system32\usbmon.dll
2013-12-25 01:37:24 ----A---- C:\Windows\system32\netcfgx.dll
2013-12-25 01:37:24 ----A---- C:\Windows\system32\drivers\bthport.sys
2013-12-25 01:37:23 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2013-12-25 01:37:23 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-12-25 01:37:23 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-12-25 01:37:22 ----A---- C:\Windows\system32\drvstore.dll
2013-12-25 01:37:21 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2013-12-25 01:37:21 ----A---- C:\Windows\system32\discan.dll
2013-12-25 01:37:19 ----A---- C:\Windows\system32\NdisImPlatform.dll
2013-12-25 01:37:18 ----A---- C:\Windows\system32\fsquirt.exe
2013-12-25 01:37:18 ----A---- C:\Windows\system32\drivers\storahci.sys
2013-12-25 01:37:17 ----A---- C:\Windows\SYSWOW64\SettingSyncInfo.dll
2013-12-25 01:37:17 ----A---- C:\Windows\system32\WSDPrintProxy.DLL
2013-12-25 01:37:17 ----A---- C:\Windows\system32\DevDispItemProvider.dll
2013-12-25 01:37:15 ----A---- C:\Windows\system32\drivers\mouhid.sys
2013-12-25 01:37:14 ----A---- C:\Windows\SYSWOW64\DevDispItemProvider.dll
2013-12-25 01:37:14 ----A---- C:\Windows\system32\drivers\monitor.sys
2013-12-25 01:31:05 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2013-12-25 01:31:04 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2013-12-25 01:30:32 ----A---- C:\Windows\system32\sppsvc.exe
2013-12-25 01:30:31 ----A---- C:\Windows\system32\WSService.dll
2013-12-25 01:30:31 ----A---- C:\Windows\system32\sppobjs.dll
2013-12-25 01:30:31 ----A---- C:\Windows\system32\NotificationUI.exe
2013-12-25 01:30:29 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2013-12-25 01:30:29 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-12-25 01:30:29 ----A---- C:\Windows\system32\WSShared.dll
2013-12-25 01:30:29 ----A---- C:\Windows\system32\WinSetupUI.dll
2013-12-25 01:30:29 ----A---- C:\Windows\system32\sppwinob.dll
2013-12-25 01:30:29 ----A---- C:\Windows\system32\sppc.dll
2013-12-25 01:30:28 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2013-12-25 01:30:27 ----A---- C:\Windows\SYSWOW64\WSSync.dll
2013-12-25 01:30:27 ----A---- C:\Windows\system32\wups2.dll
2013-12-25 01:30:27 ----A---- C:\Windows\system32\wups.dll
2013-12-25 01:30:27 ----A---- C:\Windows\system32\WSSync.dll
2013-12-25 01:30:27 ----A---- C:\Windows\system32\WSClient.dll
2013-12-25 01:30:27 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2013-12-25 01:30:26 ----A---- C:\Windows\system32\drivers\dam.sys
2013-12-25 01:30:25 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-12-25 01:30:25 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2013-12-25 01:30:24 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-25 01:30:24 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-25 01:30:24 ----A---- C:\Windows\system32\setupcln.dll
2013-12-25 01:30:23 ----A---- C:\Windows\SYSWOW64\OEMLicense.dll
2013-12-25 01:30:22 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-12-25 01:29:56 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-12-25 01:29:56 ----A---- C:\Windows\SYSWOW64\apprepsync.dll
2013-12-25 01:29:56 ----A---- C:\Windows\SYSWOW64\apprepapi.dll
2013-12-25 01:29:56 ----A---- C:\Windows\system32\wintrust.dll
2013-12-25 01:29:56 ----A---- C:\Windows\system32\cryptsvc.dll
2013-12-25 01:29:56 ----A---- C:\Windows\system32\apprepsync.dll
2013-12-25 01:29:56 ----A---- C:\Windows\system32\apprepapi.dll
2013-12-25 01:29:47 ----A---- C:\Windows\system32\mshtml.dll
2013-12-25 01:29:38 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-25 01:29:27 ----A---- C:\Windows\system32\ieframe.dll
2013-12-25 01:29:26 ----A---- C:\Windows\system32\jscript9.dll
2013-12-25 01:29:25 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-25 01:29:23 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-25 01:29:23 ----A---- C:\Windows\system32\iertutil.dll
2013-12-25 01:29:22 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-25 01:29:20 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-25 01:29:20 ----A---- C:\Windows\system32\wininet.dll
2013-12-25 01:29:20 ----A---- C:\Windows\system32\urlmon.dll
2013-12-25 01:29:19 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-25 01:29:19 ----A---- C:\Windows\system32\uxtheme.dll
2013-12-25 01:29:18 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2013-12-25 01:29:18 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-25 01:29:18 ----A---- C:\Windows\system32\jscript.dll
2013-12-25 01:29:17 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-25 01:29:16 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-25 01:29:16 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-25 01:29:15 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-25 01:29:15 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-25 01:29:14 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-25 01:29:14 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-25 01:29:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-25 01:29:14 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-25 01:29:13 ----A---- C:\Windows\SYSWOW64\UXInit.dll
2013-12-25 01:29:13 ----A---- C:\Windows\system32\UXInit.dll
2013-12-25 01:28:42 ----A---- C:\Windows\system32\drivers\afd.sys
2013-12-25 01:28:40 ----A---- C:\Windows\system32\cryptdlg.dll
2013-12-25 01:28:39 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-12-25 01:28:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-12-25 01:28:31 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-12-25 01:28:30 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-12-25 01:28:30 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-12-25 01:28:30 ----A---- C:\Windows\system32\nshwfp.dll
2013-12-25 01:28:30 ----A---- C:\Windows\system32\drivers\wfplwfs.sys
2013-12-25 01:28:30 ----A---- C:\Windows\system32\BFE.DLL
2013-12-25 01:28:10 ----A---- C:\Windows\system32\consent.exe
2013-12-25 01:28:10 ----A---- C:\Windows\system32\appinfo.dll
2013-12-25 01:27:53 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-12-25 01:27:53 ----A---- C:\Windows\system32\d3d11.dll
2013-12-25 01:25:05 ----A---- C:\Windows\system32\msieftp.dll
2013-12-25 01:25:04 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-25 01:25:04 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-25 01:25:03 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-25 01:24:19 ----A---- C:\Windows\system32\twinui.dll
2013-12-25 01:24:18 ----A---- C:\Windows\SYSWOW64\twinui.dll
2013-12-25 01:24:17 ----A---- C:\Windows\system32\authui.dll
2013-12-25 01:24:17 ----A---- C:\Windows\system32\actxprxy.dll
2013-12-25 01:24:16 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-12-25 01:24:15 ----A---- C:\Windows\system32\drivers\pdc.sys
2013-12-25 01:23:23 ----A---- C:\Windows\system32\reseteng.dll
2013-12-25 01:23:22 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-12-25 01:23:20 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-12-25 01:23:19 ----A---- C:\Windows\system32\esent.dll
2013-12-25 01:23:17 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-12-25 01:23:17 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-12-25 01:23:11 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-12-25 01:23:11 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-12-25 01:23:10 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-12-25 01:23:10 ----A---- C:\Windows\system32\rpcrt4.dll
2013-12-25 01:22:47 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-12-25 01:22:47 ----A---- C:\Windows\system32\comctl32.dll
2013-12-25 01:22:15 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-25 01:22:15 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-25 01:22:14 ----A---- C:\Windows\system32\drivers\usbprint.sys
2013-12-25 01:22:14 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-12-25 01:22:14 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-12-25 01:22:14 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-12-25 01:21:29 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-12-25 01:21:29 ----A---- C:\Windows\system32\cryptnet.dll
2013-12-25 01:21:29 ----A---- C:\Windows\system32\certutil.exe
2013-12-25 01:21:28 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-12-25 01:21:02 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-12-25 01:21:01 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-12-25 01:21:01 ----A---- C:\Windows\system32\qedit.dll
2013-12-25 01:20:57 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-12-25 01:20:57 ----A---- C:\Windows\system32\gdi32.dll
2013-12-25 01:20:37 ----A---- C:\Windows\system32\crypt32.dll
2013-12-25 01:20:36 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-12-25 01:20:20 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-12-25 01:20:20 ----A---- C:\Windows\system32\schannel.dll
2013-12-25 01:20:11 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2013-12-25 01:20:11 ----A---- C:\Windows\system32\drivers\UCX01000.SYS
2013-12-25 01:20:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-12-25 01:20:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-12-25 01:20:09 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-12-25 01:20:09 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-12-25 01:20:09 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-12-25 01:20:09 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-12-25 01:19:40 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-12-25 01:19:40 ----A---- C:\Windows\system32\DWrite.dll
2013-12-25 01:16:42 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-12-25 01:16:41 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-12-25 01:16:40 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-25 01:16:40 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-25 01:15:02 ----A---- C:\Windows\system32\win32k.sys
2013-12-25 01:11:24 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-12-25 01:11:24 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-12-25 01:11:24 ----A---- C:\Windows\system32\atmlib.dll
2013-12-25 01:11:24 ----A---- C:\Windows\system32\atmfd.dll
2013-12-25 01:10:21 ----A---- C:\Windows\system32\win32spl.dll
2013-12-25 01:10:19 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-25 01:08:28 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-25 01:08:28 ----A---- C:\Windows\SYSWOW64\scrobj.dll
2013-12-25 01:08:28 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-25 01:08:28 ----A---- C:\Windows\system32\scrrun.dll
2013-12-25 01:08:28 ----A---- C:\Windows\system32\scrobj.dll
2013-12-25 01:08:28 ----A---- C:\Windows\system32\cscript.exe
2013-12-25 01:08:27 ----A---- C:\Windows\system32\drivers\http.sys
2013-12-25 00:59:15 ----D---- C:\Users\Johny\AppData\Roaming\Wargaming.net
2013-12-24 23:30:29 ----D---- C:\Users\Johny\AppData\Roaming\ATI
2013-12-24 23:30:29 ----D---- C:\ProgramData\ATI
2013-12-24 20:16:03 ----D---- C:\Users\Johny\AppData\Roaming\Skype
2013-12-24 20:15:57 ----RD---- C:\Program Files (x86)\Skype
2013-12-24 20:15:51 ----D---- C:\ProgramData\Skype
2013-12-24 20:06:28 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-12-24 20:06:28 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-12-24 20:06:28 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-12-24 20:06:28 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-12-24 20:06:27 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2013-12-24 20:06:27 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-12-24 20:06:27 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-12-24 20:06:27 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-12-24 20:06:27 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-12-24 20:06:27 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-12-24 20:06:26 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2013-12-24 20:06:26 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2013-12-24 20:06:26 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2013-12-24 20:06:26 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-12-24 20:06:26 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-12-24 20:06:26 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-12-24 20:06:26 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-12-24 20:06:25 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2013-12-24 20:06:25 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2013-12-24 20:06:25 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-12-24 20:06:25 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-12-24 20:06:24 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2013-12-24 20:06:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2013-12-24 20:06:24 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-12-24 20:06:24 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-12-24 20:06:23 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2013-12-24 20:06:23 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2013-12-24 20:06:23 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-12-24 20:06:23 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-12-24 20:06:22 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-12-24 20:06:22 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-12-24 20:06:22 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2013-12-24 20:06:22 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2013-12-24 20:06:22 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-12-24 20:06:22 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-12-24 20:06:22 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-12-24 20:06:22 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-12-24 20:06:21 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2013-12-24 20:06:21 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2013-12-24 20:06:21 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2013-12-24 20:06:21 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-12-24 20:06:21 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-12-24 20:06:21 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-12-24 20:06:20 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2013-12-24 20:06:20 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2013-12-24 20:06:20 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2013-12-24 20:06:20 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2013-12-24 20:06:20 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-12-24 20:06:20 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-12-24 20:06:20 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-12-24 20:06:20 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-12-24 20:06:19 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2013-12-24 20:06:19 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2013-12-24 20:06:19 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2013-12-24 20:06:19 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-12-24 20:06:19 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-12-24 20:06:19 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-12-24 20:06:18 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-12-24 20:06:18 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-12-24 20:06:18 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2013-12-24 20:06:18 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2013-12-24 20:06:18 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-12-24 20:06:18 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-12-24 20:06:18 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-12-24 20:06:18 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-12-24 20:06:17 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2013-12-24 20:06:17 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-12-24 20:06:17 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-12-24 20:06:17 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-12-24 20:06:17 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-12-24 20:06:17 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-12-24 20:06:16 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2013-12-24 20:06:16 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2013-12-24 20:06:16 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-12-24 20:06:16 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-12-24 20:06:16 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-12-24 20:06:16 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-12-24 20:06:15 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2013-12-24 20:06:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2013-12-24 20:06:15 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2013-12-24 20:06:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2013-12-24 20:06:15 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-12-24 20:06:15 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-12-24 20:06:15 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-12-24 20:06:15 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-12-24 20:06:14 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2013-12-24 20:06:14 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2013-12-24 20:06:14 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-12-24 20:06:14 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-12-24 20:06:13 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2013-12-24 20:06:13 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2013-12-24 20:06:13 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2013-12-24 20:06:13 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2013-12-24 20:06:13 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-12-24 20:06:13 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-12-24 20:06:13 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-12-24 20:06:13 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-12-24 20:06:12 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2013-12-24 20:06:12 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2013-12-24 20:06:12 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2013-12-24 20:06:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2013-12-24 20:06:12 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-12-24 20:06:12 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-12-24 20:06:12 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-12-24 20:06:12 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-12-24 20:06:11 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2013-12-24 20:06:11 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2013-12-24 20:06:11 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-12-24 20:06:11 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-12-24 20:06:10 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2013-12-24 20:06:10 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2013-12-24 20:06:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2013-12-24 20:06:10 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-12-24 20:06:10 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-12-24 20:06:10 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-12-24 20:06:09 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2013-12-24 20:06:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2013-12-24 20:06:09 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2013-12-24 20:06:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2013-12-24 20:06:09 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-12-24 20:06:09 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-12-24 20:06:09 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-12-24 20:06:09 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-12-24 20:06:08 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2013-12-24 20:06:08 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2013-12-24 20:06:08 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2013-12-24 20:06:08 ----A---- C:\Windows\system32\xinput1_3.dll
2013-12-24 20:06:08 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-12-24 20:06:08 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-12-24 20:06:07 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2013-12-24 20:06:07 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2013-12-24 20:06:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2013-12-24 20:06:07 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-12-24 20:06:07 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-12-24 20:06:07 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-12-24 20:06:06 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2013-12-24 20:06:06 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2013-12-24 20:06:06 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2013-12-24 20:06:06 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-12-24 20:06:06 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-12-24 20:06:06 ----A---- C:\Windows\system32\d3dx10.dll
2013-12-24 20:06:05 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2013-12-24 20:06:05 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2013-12-24 20:06:05 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-12-24 20:06:05 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-12-24 20:06:05 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-12-24 20:06:05 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-12-24 20:06:05 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-12-24 20:06:05 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-12-24 20:06:04 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2013-12-24 20:06:04 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2013-12-24 20:06:04 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2013-12-24 20:06:04 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2013-12-24 20:06:04 ----A---- C:\Windows\system32\xinput1_2.dll
2013-12-24 20:06:04 ----A---- C:\Windows\system32\xinput1_1.dll
2013-12-24 20:06:04 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-12-24 20:06:04 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-12-24 20:06:03 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2013-12-24 20:06:03 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-12-24 20:06:01 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2013-12-24 20:06:01 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2013-12-24 20:06:01 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2013-12-24 20:06:01 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-12-24 20:06:01 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-12-24 20:06:01 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-12-24 20:06:00 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2013-12-24 20:06:00 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2013-12-24 20:06:00 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-12-24 20:06:00 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-12-24 20:05:59 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2013-12-24 20:05:59 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2013-12-24 20:05:59 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2013-12-24 20:05:59 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-12-24 20:05:59 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-12-24 20:05:59 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-12-24 20:05:58 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2013-12-24 20:05:58 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-12-24 20:02:51 ----HD---- C:\Windows\msdownld.tmp
2013-12-24 20:02:51 ----D---- C:\Windows\SYSWOW64\directx
2013-12-24 20:02:48 ----D---- C:\Games
2013-12-24 07:05:57 ----D---- C:\Users\Johny\AppData\Roaming\Atheros
2013-12-24 07:05:43 ----D---- C:\ProgramData\OEM_YAHOO
2013-12-24 07:05:19 ----D---- C:\Users\Johny\AppData\Roaming\Adobe
2013-12-24 07:03:46 ----SD---- C:\Users\Johny\AppData\Roaming\Microsoft
Pokračování v další části.