Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

TrojanMC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: TrojanMC

#16 Příspěvek od Márty84 »

No ja si prave rikal, ze nikde nevidim zadnou stopu haveti :?:

Jinak ale Terminatora byste mel odinstalovat, nebo aspon vypnout stit. Muze byt v konfliktu s antivirem.


:arrow: Jeste to docistime. Dejte novy log z RSIT.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

rado145
Návštěvník
Návštěvník
Příspěvky: 64
Registrován: 22 bře 2014 08:49

Re: TrojanMC

#17 Příspěvek od rado145 »


Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: TrojanMC

#18 Příspěvek od Márty84 »

Dejte prosim log primo sem. Z poznamkoveho bloku se to blbe cte. Jestli se nevejde do jednoho prispevku, tak ho rozdelte na dve (klidne i vic) casti.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

rado145
Návštěvník
Návštěvník
Příspěvky: 64
Registrován: 22 bře 2014 08:49

Re: TrojanMC

#19 Příspěvek od rado145 »

Logfile of random's system information tool 1.09 (written by random/random)
Run by radek at 2014-03-22 14:50:32
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 17 GB (22%) free of 76 GB
Total RAM: 8139 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:50:34, on 22.3.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
C:\Program Files (x86)\X7 Oscar Keyboard Editor\OscarEditor.exe
C:\Program Files (x86)\RadeonPro\RadeonPro.exe
C:\Program Files (x86)\Creative\MediaSource5\MtdAcqu.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe
C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Windows\SysWOW64\Ctxfihlp.exe
C:\Windows\SysWOW64\CTXFISPI.EXE
C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Entertainment Center\EAXLoadr.exe
C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe
D:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera_crashreporter.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe
C:\Program Files\trend micro\radek.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [RCSystem] "C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe" RCSystem * -Startup
O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [OscarKeyboard] "C:\Program Files (x86)\X7 Oscar Keyboard Editor\OscarEditor.exe" Minimum
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [RadeonPro] "C:\Program Files (x86)\RadeonPro\RadeonPro.exe"
O4 - HKCU\..\Run: [MtdAcqu] "C:\Program Files (x86)\Creative\MediaSource5\MtdAcqu.exe" /s
O4 - Global Startup: Dell Display Manager.lnk = C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ACP User Service (amdacpusrsvc) - Unknown owner - C:\AMD\amdacpusrsvc.exe
O23 - Service: ASGT - Unknown owner - C:\Windows\SysWOW64\ASGT.exe
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RadeonPro Support Service - Mr. John aka japamd - C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler.com - C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 9624 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\AMD\amdacpusrsvc.exe
"taskhost.exe"
taskeng.exe {544D5577-8978-4623-98AD-023EED322869}
I:\PROGRAMY\MINIAPLIKACE\PCMETERV4\PCMETERV0.4.EXE
C:\Windows\SysWOW64\ASGT.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe" silentrun
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe"
"C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe"
"C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 2424
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe" Minimum
"C:\Program Files (x86)\X7 Oscar Keyboard Editor\OscarEditor.exe" Minimum
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\RadeonPro\RadeonPro.exe"
"C:\Program Files (x86)\Creative\MediaSource5\MtdAcqu.exe" /s
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe" /ELEVATED
"C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe" RCSystem * -Startup
"C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
"C:\Windows\System32\Ctxfihlp.exe"
"C:\Windows\SysWOW64\CTXFISPI.EXE" -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Entertainment Center\EAXLoadr.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\RadeonPro\RadeonPro64.exe"
"D:\Program Files (x86)\Steam\Steam.exe" steam://open/games
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --ran-launcher
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --ran-launcher /crash-reporter-parent-id=4812
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=gpu-process --channel="4812.0.1486487445\125715562" --crash-reporter-pid=2508 --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,1,14,27 --gpu-vendor-id=0x1002 --gpu-device-id=0x67b1 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.350.1005.0 --crash-reporter-pid=2508 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.2.792078241\1420110248" /prefetch:673131151
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.3.1609841631\546194525" /prefetch:673131151
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --extension-process --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.5.263816887\288159614" /prefetch:673131151
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --extension-process --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.6.1431393573\1979129824" /prefetch:673131151
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --extension-process --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.7.35172109\488955288" /prefetch:673131151
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --extension-process --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.8.1263714255\1128891852" /prefetch:673131151
"C:\Program Files (x86)\Opera\20.0.1387.82\opera.exe" --type=renderer --disable-direct-npapi-requests --lang=cs --enable-threaded-compositing --enable-deadline-scheduling --disable-client-side-phishing-detection --enable-ignore-autocomplete-off --disable-delegated-renderer --crash-reporter-pid=2508 --channel="4812.13.2017593290\382699133" /prefetch:673131151
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"F:\userdata\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-10-23 1266912]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-10-01 825184]
"SpywareTerminatorShield"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2013-10-22 2777736]
"SpywareTerminatorUpdater"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2013-10-22 3684488]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OscarEditor"=C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe [2012-03-20 3340288]
"OscarKeyboard"=C:\Program Files (x86)\X7 Oscar Keyboard Editor\OscarEditor.exe [2010-12-24 3536896]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"RadeonPro"=C:\Program Files (x86)\RadeonPro\RadeonPro.exe [2013-11-04 2195584]
"MtdAcqu"=C:\Program Files (x86)\Creative\MediaSource5\MtdAcqu.exe [2006-03-08 278528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
CTXFIHLP.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
C:\Program Files (x86)\Origin\Origin.exe [2014-03-07 3588952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\PROGRA~2\Raptr\raptrstub.exe [2014-03-07 55360]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-05-21 291648]
"RCSystem"=C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [2006-11-22 57344]
"AudioDrvEmulator"=C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [2006-11-22 57344]
"VolPanel"=C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe [2006-12-06 180224]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-03-12 767200]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Dell Display Manager.lnk - C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-03-22 14:28:07 ----SHD---- C:\$RECYCLE.BIN
2014-03-22 14:28:05 ----D---- C:\Windows\temp
2014-03-22 14:28:03 ----A---- C:\ComboFix.txt
2014-03-22 14:24:14 ----A---- C:\Windows\zip.exe
2014-03-22 14:24:14 ----A---- C:\Windows\SWSC.exe
2014-03-22 14:24:14 ----A---- C:\Windows\SWREG.exe
2014-03-22 14:24:14 ----A---- C:\Windows\sed.exe
2014-03-22 14:24:14 ----A---- C:\Windows\PEV.exe
2014-03-22 14:24:14 ----A---- C:\Windows\NIRCMD.exe
2014-03-22 14:24:14 ----A---- C:\Windows\MBR.exe
2014-03-22 14:24:14 ----A---- C:\Windows\grep.exe
2014-03-22 14:23:28 ----D---- C:\Qoobox
2014-03-22 14:23:22 ----D---- C:\Windows\erdnt
2014-03-22 13:58:33 ----D---- C:\AdwCleaner
2014-03-22 10:26:29 ----D---- C:\Users\radek\AppData\Roaming\Malwarebytes
2014-03-22 10:26:22 ----D---- C:\ProgramData\Malwarebytes
2014-03-22 09:07:54 ----D---- C:\rsit
2014-03-22 09:07:54 ----D---- C:\Program Files\trend micro
2014-03-22 08:47:14 ----D---- C:\FRST
2014-03-22 08:22:51 ----D---- C:\Windows\system32\log
2014-03-22 08:22:49 ----D---- C:\Program Files (x86)\iSafe
2014-03-22 06:24:35 ----N---- C:\bootsqm.dat
2014-03-20 21:45:24 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-03-20 21:45:24 ----D---- C:\Program Files (x86)\AGEIA Technologies
2014-03-18 14:37:25 ----D---- C:\ProgramData\ATI
2014-03-18 14:36:36 ----D---- C:\Program Files (x86)\AMD AVT
2014-03-18 14:34:02 ----D---- C:\Program Files (x86)\ATI Technologies
2014-03-18 14:33:32 ----D---- C:\Program Files\ATI Technologies
2014-03-18 09:25:34 ----D---- C:\Users\radek\AppData\Roaming\library_dir
2014-03-18 09:25:06 ----D---- C:\Users\radek\AppData\Roaming\Raptr
2014-03-18 09:25:06 ----D---- C:\Program Files (x86)\Raptr
2014-03-17 09:52:01 ----A---- C:\Windows\GPU-Z.INI
2014-03-16 09:53:10 ----D---- C:\Users\radek\AppData\Roaming\BSplayer Pro
2014-03-16 09:53:10 ----D---- C:\Users\radek\AppData\Roaming\BSplayer
2014-03-16 09:53:08 ----D---- C:\Program Files (x86)\Webteh
2014-03-15 19:11:41 ----D---- C:\Windows\E10DB5DAE57640EAA7FC1CB2A7B283A6.TMP
2014-03-15 12:38:04 ----D---- C:\Windows\3F5C371F8EA24F259D3DD0B4526E3AEA.TMP
2014-03-14 07:50:50 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-03-14 07:50:50 ----A---- C:\Windows\system32\wwansvc.dll
2014-03-14 07:50:50 ----A---- C:\Windows\system32\wer.dll
2014-03-14 07:50:49 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-03-14 07:50:49 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-03-14 07:50:49 ----A---- C:\Windows\system32\win32k.sys
2014-03-14 07:50:49 ----A---- C:\Windows\system32\iertutil.dll
2014-03-14 07:50:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-14 07:50:48 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-03-14 07:50:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-03-14 07:50:48 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-03-14 07:50:48 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-03-14 07:50:47 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-03-14 07:50:47 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-03-14 07:50:47 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-03-14 07:50:47 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-03-14 07:50:47 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-03-14 07:50:47 ----A---- C:\Windows\system32\urlmon.dll
2014-03-14 07:50:47 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-14 07:50:47 ----A---- C:\Windows\system32\iernonce.dll
2014-03-14 07:50:47 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-14 07:50:46 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-03-14 07:50:46 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-03-14 07:50:46 ----A---- C:\Windows\system32\iesetup.dll
2014-03-14 07:50:46 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-14 07:50:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-03-14 07:50:45 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-03-14 07:50:45 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-03-14 07:50:45 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-14 07:50:45 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-14 07:50:45 ----A---- C:\Windows\system32\jscript9.dll
2014-03-14 07:50:45 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-14 07:50:45 ----A---- C:\Windows\system32\ieui.dll
2014-03-14 07:50:45 ----A---- C:\Windows\system32\ieframe.dll
2014-03-14 07:50:45 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-14 07:50:44 ----A---- C:\Windows\system32\wininet.dll
2014-03-14 07:50:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-14 07:50:44 ----A---- C:\Windows\system32\msrating.dll
2014-03-14 07:50:44 ----A---- C:\Windows\system32\mshtml.dll
2014-03-14 07:50:44 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-14 07:50:11 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-03-14 07:50:11 ----A---- C:\Windows\system32\qedit.dll
2014-03-14 07:50:10 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-03-14 07:50:10 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-03-12 19:26:15 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-03-12 19:26:15 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-03-12 17:10:56 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-03-12 17:10:56 ----A---- C:\Windows\system32\amdhcp64.dll
2014-03-12 17:10:54 ----A---- C:\Windows\system32\atimpc64.dll
2014-03-12 17:10:54 ----A---- C:\Windows\system32\amdpcom64.dll
2014-03-12 17:10:52 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-03-12 17:10:52 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-03-12 17:10:46 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-03-12 17:10:46 ----A---- C:\Windows\system32\atiuxp64.dll
2014-03-12 17:10:44 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-03-12 17:10:44 ----A---- C:\Windows\system32\atiu9p64.dll
2014-03-12 17:10:42 ----A---- C:\Windows\system32\aticfx64.dll
2014-03-12 17:10:40 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-03-12 17:10:36 ----A---- C:\Windows\system32\atidxx64.dll
2014-03-12 17:10:32 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-03-12 17:10:24 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-03-12 17:10:18 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-03-12 17:10:12 ----A---- C:\Windows\system32\atiumd6a.dll
2014-03-12 17:10:08 ----A---- C:\Windows\system32\atiumd64.dll
2014-03-12 17:06:56 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-03-12 17:04:42 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-03-12 16:50:10 ----A---- C:\Windows\system32\clinfo.exe
2014-03-12 16:49:52 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-03-12 16:49:46 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-03-12 16:49:40 ----A---- C:\Windows\system32\OVDecode64.dll
2014-03-12 16:49:36 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-03-12 16:49:30 ----A---- C:\Windows\system32\amdocl64.dll
2014-03-12 16:47:00 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-03-12 16:44:40 ----A---- C:\Windows\system32\OpenCL.dll
2014-03-12 16:44:36 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-03-12 16:27:48 ----A---- C:\Windows\system32\atio6axx.dll
2014-03-12 16:24:28 ----A---- C:\Windows\system32\atiapfxx.exe
2014-03-12 16:24:18 ----A---- C:\Windows\system32\aticalrt64.dll
2014-03-12 16:24:16 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-03-12 16:24:08 ----A---- C:\Windows\system32\aticalcl64.dll
2014-03-12 16:24:04 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-03-12 16:23:50 ----A---- C:\Windows\system32\aticaldd64.dll
2014-03-12 16:20:36 ----A---- C:\Windows\system32\mantle64.dll
2014-03-12 16:20:24 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-03-12 16:20:16 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-03-12 16:19:54 ----A---- C:\Windows\system32\amdmantle64.dll
2014-03-12 16:07:08 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-03-12 16:06:06 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-03-12 16:03:26 ----A---- C:\Windows\system32\atidemgy.dll
2014-03-12 16:03:14 ----A---- C:\Windows\system32\atimuixx.dll
2014-03-12 16:03:06 ----A---- C:\Windows\system32\atieclxx.exe
2014-03-12 16:02:08 ----A---- C:\Windows\system32\atiesrxx.exe
2014-03-12 16:00:32 ----A---- C:\Windows\system32\atitmm64.dll
2014-03-12 15:53:38 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-03-12 15:53:28 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-03-12 15:50:22 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-03-12 15:50:18 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-03-12 15:34:38 ----A---- C:\Windows\system32\coinst_13.350.dll
2014-03-12 15:26:32 ----A---- C:\Windows\system32\atig6pxx.dll
2014-03-12 15:26:26 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-03-12 15:26:26 ----A---- C:\Windows\system32\atiglpxx.dll
2014-03-12 15:26:22 ----A---- C:\Windows\system32\atig6txx.dll
2014-03-12 15:25:58 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-03-12 15:25:34 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-03-12 15:24:42 ----A---- C:\Windows\system32\amdave64.dll
2014-03-12 15:24:36 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-03-12 15:24:24 ----A---- C:\Windows\system32\atisamu64.dll
2014-03-12 15:24:20 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-03-12 15:20:08 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-03-12 12:00:28 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-03-12 11:55:40 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-03-12 11:36:14 ----A---- C:\Windows\system32\amdacpusl.dll
2014-03-12 11:36:04 ----A---- C:\Windows\SYSWOW64\amdacpusl.dll
2014-03-12 09:15:43 ----D---- C:\Program Files (x86)\Ubisoft
2014-03-10 20:54:40 ----RHD---- C:\Users\radek\AppData\Roaming\SecuROM
2014-03-10 20:04:03 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-03-10 20:04:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-03-10 20:04:03 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-03-10 20:04:03 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-03-10 20:04:01 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-03-10 20:04:01 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-03-09 20:47:45 ----D---- C:\Program Files (x86)\Google
2014-03-09 20:33:12 ----D---- C:\Users\radek\AppData\Roaming\Opera Software
2014-03-09 20:33:10 ----D---- C:\Program Files (x86)\Opera
2014-03-09 18:33:27 ----D---- C:\Windows\Minidump
2014-03-09 16:28:04 ----D---- C:\ProgramData\EA Core
2014-03-09 16:28:02 ----D---- C:\ProgramData\EA Logs
2014-03-09 13:56:21 ----D---- C:\Program Files (x86)\Microsoft Works
2014-03-09 13:55:54 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2014-03-09 13:55:38 ----D---- C:\Windows\PCHEALTH
2014-03-09 13:54:05 ----D---- C:\Program Files\Microsoft Office
2014-03-09 13:54:02 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2014-03-09 13:53:48 ----D---- C:\Program Files (x86)\Microsoft Office
2014-03-09 13:53:47 ----D---- C:\ProgramData\Microsoft Help
2014-03-09 13:53:37 ----RD---- C:\MSOCache
2014-03-09 10:59:19 ----D---- C:\Windows\High Quality Cinema ENB Series for Mass Effect 3
2014-03-09 10:28:23 ----D---- C:\Windows\46ED2B6485C74E1F920CA555B21F2E4C.TMP
2014-03-08 16:00:38 ----D---- C:\AIDA64.4.00.2766_softarchive.net
2014-03-08 15:53:02 ----D---- C:\SteamLibrary
2014-03-08 13:48:28 ----D---- C:\Users\radek\AppData\Roaming\vlc
2014-03-08 13:48:14 ----D---- C:\Program Files (x86)\VideoLAN
2014-03-08 13:12:18 ----A---- C:\Windows\system32\ardnat.exe
2014-03-08 13:12:17 ----D---- C:\Program Files\Ainvo
2014-03-07 21:55:33 ----A---- C:\Windows\SYSWOW64\pbsvc.exe
2014-03-07 13:43:09 ----D---- C:\Program Files (x86)\Origin Games
2014-03-07 12:54:48 ----D---- C:\Program Files (x86)\Dell
2014-03-07 12:41:16 ----D---- C:\Program Files (x86)\Diablo III
2014-03-07 12:40:00 ----D---- C:\Users\radek\AppData\Roaming\Battle.net
2014-03-07 12:39:56 ----D---- C:\ProgramData\Blizzard Entertainment
2014-03-07 12:38:12 ----D---- C:\ProgramData\Battle.net
2014-03-07 11:23:11 ----D---- C:\Program Files\CPUID
2014-03-07 10:29:22 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-03-07 10:29:22 ----A---- C:\Windows\system32\vbscript.dll
2014-03-07 10:28:55 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-03-07 10:28:55 ----A---- C:\Windows\explorer.exe
2014-03-07 10:28:54 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-03-07 10:28:54 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-03-07 10:28:54 ----A---- C:\Windows\system32\d3d10warp.dll
2014-03-07 10:28:54 ----A---- C:\Windows\system32\d2d1.dll
2014-03-07 10:28:53 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-03-07 10:28:53 ----A---- C:\Windows\system32\mstscax.dll
2014-03-07 10:28:49 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-03-07 10:28:49 ----A---- C:\Windows\system32\WMPhoto.dll
2014-03-07 10:28:48 ----A---- C:\Windows\system32\spoolsv.exe
2014-03-07 10:28:48 ----A---- C:\Windows\splwow64.exe
2014-03-07 10:25:15 ----A---- C:\Windows\system32\drivers\IOMap64.sys
2014-03-07 10:19:04 ----D---- C:\Windows\Migration
2014-03-07 10:18:28 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-03-07 10:15:27 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-03-07 10:15:25 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-03-07 10:15:25 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-03-07 10:15:25 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-03-07 10:15:25 ----A---- C:\Windows\system32\elshyph.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\url.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-03-07 10:15:24 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-03-07 10:15:23 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-03-07 10:15:23 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-03-07 10:15:23 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-03-07 10:15:23 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-03-07 10:15:23 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-03-07 10:15:23 ----A---- C:\Windows\system32\msls31.dll
2014-03-07 10:15:23 ----A---- C:\Windows\system32\msfeedssync.exe
2014-03-07 10:15:23 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-03-07 10:15:23 ----A---- C:\Windows\system32\jsIntl.dll
2014-03-07 10:15:23 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\wextract.exe
2014-03-07 10:15:22 ----A---- C:\Windows\system32\webcheck.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\url.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\pngfilt.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\occache.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\mshtmler.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\mshtmled.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\mshta.exe
2014-03-07 10:15:22 ----A---- C:\Windows\system32\licmgr10.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\jscript.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\inseng.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\iexpress.exe
2014-03-07 10:15:22 ----A---- C:\Windows\system32\iesysprep.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\iedkcs32.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\ieapfltr.dat
2014-03-07 10:15:22 ----A---- C:\Windows\system32\icardie.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\dxtrans.dll
2014-03-07 10:15:22 ----A---- C:\Windows\system32\dxtmsft.dll
2014-03-07 10:15:21 ----A---- C:\Windows\system32\imgutil.dll
2014-03-07 10:15:21 ----A---- C:\Windows\system32\iepeers.dll
2014-03-07 10:00:23 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-03-07 10:00:23 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-03-07 10:00:23 ----A---- C:\Windows\system32\wmploc.DLL
2014-03-07 10:00:22 ----A---- C:\Windows\system32\wmp.dll
2014-03-07 09:52:49 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-03-07 09:52:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-03-07 09:52:45 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-03-07 09:52:45 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-03-07 09:52:44 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-03-07 09:52:44 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-03-07 09:52:44 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-03-07 09:52:44 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-03-07 09:52:44 ----A---- C:\Windows\system32\wksprtPS.dll
2014-03-07 09:52:44 ----A---- C:\Windows\system32\wksprt.exe
2014-03-07 09:52:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-03-07 09:52:44 ----A---- C:\Windows\system32\tsgqec.dll
2014-03-07 09:52:44 ----A---- C:\Windows\system32\mstsc.exe
2014-03-07 09:52:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-03-07 09:52:43 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-03-07 09:52:43 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-03-07 09:49:41 ----D---- C:\ProgramData\Intel(R) Update Manager
2014-03-07 09:48:52 ----D---- C:\Users\radek\AppData\Roaming\RadeonPro
2014-03-07 09:48:25 ----D---- C:\Program Files (x86)\RadeonPro
2014-03-07 09:37:00 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-03-07 09:36:59 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-03-07 09:36:57 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-03-07 09:36:57 ----A---- C:\Windows\system32\rdpudd.dll
2014-03-07 09:36:57 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-03-07 09:36:57 ----A---- C:\Windows\system32\rdpcorets.dll
2014-03-07 09:27:22 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-03-07 09:27:22 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-03-07 09:27:22 ----A---- C:\Windows\system32\UIAnimation.dll
2014-03-07 09:27:22 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-03-07 09:26:51 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-03-07 09:26:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-03-07 09:26:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-03-07 09:26:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-03-07 09:26:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-03-07 09:26:50 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-03-07 09:26:50 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-03-07 09:26:50 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-03-07 09:26:50 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-03-07 09:26:50 ----A---- C:\Windows\system32\d3d10_1.dll
2014-03-07 09:26:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-03-07 09:26:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-03-07 09:26:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-03-07 09:26:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-03-07 09:26:49 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-03-07 09:26:49 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\XpsPrint.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\FntCache.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\dxgi.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\d3d10level9.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\d3d10core.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-03-07 09:26:49 ----A---- C:\Windows\system32\d3d10.dll
2014-03-07 09:26:48 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-03-07 09:26:48 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-03-07 09:26:48 ----A---- C:\Windows\system32\DWrite.dll
2014-03-07 09:22:48 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-03-07 09:22:48 ----A---- C:\Windows\system32\d3d11.dll
2014-03-07 09:22:08 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-03-07 09:22:08 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-03-07 09:21:54 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-03-07 09:21:53 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-03-07 09:21:53 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-03-07 09:21:53 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-03-07 09:21:53 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-03-07 09:21:53 ----A---- C:\Windows\system32\RMActivate.exe
2014-03-07 09:21:52 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-03-07 09:21:52 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-03-07 09:21:52 ----A---- C:\Windows\system32\secproc_isv.dll
2014-03-07 09:21:52 ----A---- C:\Windows\system32\secproc.dll
2014-03-07 09:21:52 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-03-07 09:21:52 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-03-07 09:21:52 ----A---- C:\Windows\system32\msdrm.dll
2014-03-07 09:21:51 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-03-07 09:21:51 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-03-07 09:21:51 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-03-07 09:21:51 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-03-07 09:21:51 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-03-07 09:21:51 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-03-07 09:21:29 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-03-07 09:21:29 ----A---- C:\Windows\system32\KernelBase.dll
2014-03-07 09:21:28 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-03-07 09:21:28 ----A---- C:\Windows\system32\winsrv.dll
2014-03-07 09:21:28 ----A---- C:\Windows\system32\smss.exe
2014-03-07 09:21:28 ----A---- C:\Windows\system32\kernel32.dll
2014-03-07 09:21:28 ----A---- C:\Windows\system32\csrsrv.dll
2014-03-07 09:21:28 ----A---- C:\Windows\system32\conhost.exe
2014-03-07 09:21:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-03-07 09:21:27 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-03-07 09:21:26 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-03-07 09:21:25 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-03-07 09:21:24 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-03-07 09:21:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-03-07 09:21:23 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-03-07 09:21:23 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-03-07 09:21:23 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-03-07 09:21:22 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-03-07 09:21:22 ----A---- C:\Windows\system32\apisetschema.dll
2014-03-07 09:21:04 ----A---- C:\Windows\system32\wintrust.dll
2014-03-07 09:21:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-03-07 09:20:31 ----A---- C:\Windows\system32\consent.exe
2014-03-07 09:20:31 ----A---- C:\Windows\system32\appinfo.dll
2014-03-07 09:20:19 ----D---- C:\Users\radek\AppData\Roaming\WinRAR
2014-03-07 09:19:15 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-03-07 09:19:15 ----A---- C:\Windows\system32\schannel.dll
2014-03-07 09:19:15 ----A---- C:\Windows\system32\lsasrv.dll
2014-03-07 09:19:15 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-03-07 09:19:15 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-03-07 09:19:15 ----A---- C:\Windows\system32\drivers\cng.sys
2014-03-07 09:19:14 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-03-07 09:19:14 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-03-07 09:19:14 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-03-07 09:19:14 ----A---- C:\Windows\system32\sspisrv.dll
2014-03-07 09:19:14 ----A---- C:\Windows\system32\sspicli.dll
2014-03-07 09:19:14 ----A---- C:\Windows\system32\secur32.dll
2014-03-07 09:19:14 ----A---- C:\Windows\system32\ncrypt.dll
2014-03-07 09:19:14 ----A---- C:\Windows\system32\lsass.exe
2014-03-07 09:18:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-03-07 09:18:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-03-07 09:18:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-03-07 09:18:57 ----A---- C:\Windows\system32\rpcrt4.dll
2014-03-07 09:18:56 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-03-07 09:18:56 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-03-07 09:18:56 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-03-07 09:18:56 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-03-07 09:18:56 ----A---- C:\Windows\system32\lpk.dll
2014-03-07 09:18:56 ----A---- C:\Windows\system32\fontsub.dll
2014-03-07 09:18:56 ----A---- C:\Windows\system32\dciman32.dll
2014-03-07 09:18:56 ----A---- C:\Windows\system32\atmfd.dll
2014-03-07 09:18:55 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-03-07 09:18:55 ----A---- C:\Windows\system32\atmlib.dll
2014-03-07 09:18:53 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-03-07 09:18:53 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-03-07 09:18:53 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-03-07 09:18:53 ----A---- C:\Windows\system32\nlasvc.dll
2014-03-07 09:18:53 ----A---- C:\Windows\system32\netcorehc.dll
2014-03-07 09:18:53 ----A---- C:\Windows\system32\ncsi.dll
2014-03-07 09:18:53 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-03-07 09:18:52 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-03-07 09:18:52 ----A---- C:\Windows\system32\nlaapi.dll
2014-03-07 09:18:52 ----A---- C:\Windows\system32\netevent.dll
2014-03-07 09:18:52 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-03-07 09:18:31 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-03-07 09:18:31 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-03-07 09:18:31 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-03-07 09:18:31 ----A---- C:\Windows\system32\cryptsvc.dll
2014-03-07 09:18:31 ----A---- C:\Windows\system32\cryptnet.dll
2014-03-07 09:18:31 ----A---- C:\Windows\system32\crypt32.dll
2014-03-07 09:18:00 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-03-07 09:18:00 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-03-07 09:18:00 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-03-07 09:18:00 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-03-07 09:17:47 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-03-07 09:17:47 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-03-07 09:17:47 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-03-07 09:17:47 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-03-07 09:17:47 ----A---- C:\Windows\system32\credui.dll
2014-03-07 09:17:47 ----A---- C:\Windows\system32\authui.dll
2014-03-07 09:17:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-03-07 09:17:28 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-03-07 09:17:28 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-03-07 09:17:28 ----A---- C:\Windows\system32\WebClnt.dll
2014-03-07 09:17:28 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-03-07 09:17:28 ----A---- C:\Windows\system32\davclnt.dll
2014-03-07 09:17:27 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-03-07 09:17:27 ----A---- C:\Windows\system32\msieftp.dll
2014-03-07 09:17:25 ----A---- C:\Windows\system32\drivers\afd.sys
2014-03-07 09:17:23 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-03-07 09:17:23 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-03-07 09:17:23 ----A---- C:\Windows\system32\msxml3r.dll
2014-03-07 09:17:23 ----A---- C:\Windows\system32\msxml3.dll
2014-03-07 09:17:10 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-03-07 09:17:10 ----A---- C:\Windows\system32\tzres.dll
2014-03-07 09:16:44 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-03-07 09:16:44 ----A---- C:\Windows\system32\imagehlp.dll
2014-03-07 09:16:43 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-03-07 09:16:43 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-03-07 09:16:41 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-03-07 09:16:41 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-03-07 09:16:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-03-07 09:16:41 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-03-07 09:16:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-03-07 09:16:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-03-07 09:16:40 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-03-07 09:16:40 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-03-07 09:16:39 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-03-07 09:16:39 ----A---- C:\Windows\system32\qdvd.dll
2014-03-07 09:16:38 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-03-07 09:16:38 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-03-07 09:16:38 ----A---- C:\Windows\system32\comctl32.dll
2014-03-07 09:16:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-03-07 09:16:35 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-03-07 09:16:35 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2014-03-07 09:16:34 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-03-07 09:16:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-03-07 09:15:54 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-03-07 09:15:54 ----A---- C:\Windows\system32\drivers\netio.sys
2014-03-07 09:15:53 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-03-07 09:15:53 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-03-07 09:15:53 ----A---- C:\Windows\system32\tdh.dll
2014-03-07 09:15:53 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-03-07 09:15:53 ----A---- C:\Windows\system32\ntdll.dll
2014-03-07 09:15:53 ----A---- C:\Windows\system32\advapi32.dll
2014-03-07 09:15:52 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-03-07 09:15:52 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-03-07 09:15:52 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-03-07 09:15:52 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-03-07 09:15:52 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-03-07 09:15:52 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-03-07 09:15:52 ----A---- C:\Windows\system32\wow64.dll
2014-03-07 09:15:51 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-03-07 09:15:51 ----A---- C:\Windows\SYSWOW64\user.exe
2014-03-07 09:15:30 ----A---- C:\Windows\system32\mswsock.dll
2014-03-07 09:15:29 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-03-07 09:15:26 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-03-07 09:15:26 ----A---- C:\Windows\system32\cryptdlg.dll
2014-03-07 09:15:11 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-03-07 09:15:11 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-03-07 09:15:10 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-03-07 09:15:10 ----A---- C:\Windows\system32\shell32.dll
2014-03-07 09:15:09 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-03-07 09:15:09 ----A---- C:\Windows\system32\shdocvw.dll
2014-03-07 09:15:01 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-03-07 09:14:57 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-03-07 09:13:45 ----A---- C:\Windows\system32\taskhost.exe
2014-03-07 09:12:31 ----D---- C:\Users\radek\AppData\Roaming\Spyware Terminator
2014-03-07 09:12:31 ----D---- C:\ProgramData\Spyware Terminator
2014-03-07 09:12:31 ----A---- C:\Windows\system32\drivers\stflt.sys
2014-03-07 09:12:27 ----D---- C:\Program Files (x86)\Spyware Terminator
2014-03-07 09:12:27 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-03-07 09:12:27 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-03-07 09:12:27 ----A---- C:\Windows\system32\nshwfp.dll
2014-03-07 09:12:27 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-03-07 09:12:27 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-03-07 09:12:26 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-03-07 09:12:26 ----A---- C:\Windows\system32\win32spl.dll
2014-03-07 09:12:01 ----D---- C:\Program Files\CCleaner
2014-03-07 09:11:54 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-03-07 09:11:54 ----A---- C:\Windows\system32\gdi32.dll
2014-03-07 09:11:43 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-03-07 09:11:43 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-03-07 09:11:43 ----A---- C:\Windows\system32\cdd.dll
2014-03-07 09:11:35 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-03-07 09:11:35 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-03-07 09:11:35 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-03-07 09:11:35 ----A---- C:\Windows\system32\wscript.exe
2014-03-07 09:11:35 ----A---- C:\Windows\system32\scrrun.dll
2014-03-07 09:11:35 ----A---- C:\Windows\system32\cscript.exe
2014-03-07 09:11:30 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-03-07 09:11:30 ----A---- C:\Windows\system32\certutil.exe
2014-03-07 09:11:29 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-03-07 09:11:29 ----A---- C:\Windows\system32\certenc.dll
2014-03-07 09:11:26 ----A---- C:\Windows\system32\scavengeui.dll
2014-03-07 09:10:38 ----D---- C:\Program Files (x86)\GPU-Z
2014-03-07 09:10:03 ----D---- C:\Program Files (x86)\ASUS
2014-03-07 09:09:49 ----D---- C:\Windows\Downloaded Installations
2014-03-07 09:07:48 ----D---- C:\Program Files\WinRAR
2014-03-07 09:07:15 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2014-03-07 09:06:22 ----D---- C:\Users\radek\AppData\Roaming\ATI
2014-03-07 09:04:55 ----D---- C:\ProgramData\AMD
2014-03-07 09:04:32 ----D---- C:\Program Files\AMD
2014-03-07 09:04:21 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-03-07 09:00:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-03-07 08:59:22 ----D---- C:\ProgramData\Package Cache
2014-03-07 08:59:11 ----D---- C:\Program Files\ATI
2014-03-07 08:58:40 ----D---- C:\AMD
2014-03-07 08:38:38 ----D---- C:\Program Files (x86)\CrystalDiskInfo
2014-03-07 08:36:25 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2014-03-07 08:36:22 ----A---- C:\Windows\SYSWOW64\log.txt
2014-03-07 08:36:21 ----D---- C:\ProgramData\Intel
2014-03-07 08:36:19 ----D---- C:\Program Files\Intel
2014-03-07 08:35:01 ----D---- C:\Users\radek\AppData\Roaming\InstallShield
2014-03-07 08:33:50 ----D---- C:\ProgramData\Auslogics
2014-03-07 08:33:46 ----D---- C:\Program Files (x86)\Auslogics
2014-03-07 08:31:36 ----D---- C:\Users\radek\AppData\Roaming\Origin
2014-03-07 08:30:33 ----D---- C:\Windows\system32\SPReview
2014-03-07 08:30:31 ----D---- C:\ProgramData\Origin
2014-03-07 08:30:30 ----D---- C:\Windows\system32\EventProviders
2014-03-07 08:30:30 ----D---- C:\ProgramData\Electronic Arts
2014-03-07 08:30:02 ----D---- C:\Program Files (x86)\Origin
2014-03-07 08:23:46 ----A---- C:\Windows\system32\netfxperf.dll
2014-03-07 08:23:45 ----A---- C:\Windows\system32\dfshim.dll
2014-03-07 08:23:43 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-03-07 08:23:38 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2014-03-07 08:23:38 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2014-03-07 08:23:37 ----A---- C:\Windows\system32\sysmain.dll
2014-03-07 08:23:37 ----A---- C:\Windows\system32\MSVidCtl.dll
2014-03-07 08:23:36 ----A---- C:\Windows\system32\mscoree.dll
2014-03-07 08:23:35 ----A---- C:\Windows\system32\xpsservices.dll
2014-03-07 08:23:35 ----A---- C:\Windows\system32\mmcndmgr.dll
2014-03-07 08:23:35 ----A---- C:\Windows\system32\mf.dll
2014-03-07 08:23:34 ----A---- C:\Windows\system32\schedsvc.dll
2014-03-07 08:23:34 ----A---- C:\Windows\system32\ole32.dll
2014-03-07 08:23:33 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-03-07 08:23:33 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-03-07 08:23:33 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\wevtsvc.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\vssapi.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\taskschd.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\spwizui.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\RacEngn.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-03-07 08:23:33 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-03-07 08:23:33 ----A---- C:\Windows\system32\diagperf.dll
2014-03-07 08:23:32 ----A---- C:\Windows\system32\UIRibbon.dll
2014-03-07 08:23:32 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2014-03-07 08:23:32 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2014-03-07 08:23:31 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-03-07 08:23:31 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-03-07 08:23:31 ----A---- C:\Windows\system32\WsmSvc.dll
2014-03-07 08:23:31 ----A---- C:\Windows\system32\WMVCORE.DLL
2014-03-07 08:23:31 ----A---- C:\Windows\system32\WinSAT.exe
2014-03-07 08:23:31 ----A---- C:\Windows\system32\spreview.exe
2014-03-07 08:23:31 ----A---- C:\Windows\system32\spinstall.exe
2014-03-07 08:23:31 ----A---- C:\Windows\system32\rdpdd.dll
2014-03-07 08:23:31 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-03-07 08:23:31 ----A---- C:\Windows\system32\PresentationHost.exe
2014-03-07 08:23:31 ----A---- C:\Windows\system32\MPSSVC.dll
2014-03-07 08:23:31 ----A---- C:\Windows\system32\d3d9.dll
2014-03-07 08:23:31 ----A---- C:\Windows\system32\CertEnroll.dll
2014-03-07 08:23:30 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-03-07 08:23:30 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2014-03-07 08:23:30 ----A---- C:\Windows\system32\SearchFolder.dll
2014-03-07 08:23:30 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2014-03-07 08:23:29 ----A---- C:\Windows\SYSWOW64\ole32.dll
2014-03-07 08:23:29 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-03-07 08:23:29 ----A---- C:\Windows\system32\VSSVC.exe
2014-03-07 08:23:29 ----A---- C:\Windows\system32\gpsvc.dll
2014-03-07 08:23:29 ----A---- C:\Windows\system32\dwmcore.dll
2014-03-07 08:23:29 ----A---- C:\Windows\system32\drivers\http.sys
2014-03-07 08:23:29 ----A---- C:\Windows\system32\dbgeng.dll
2014-03-07 08:23:29 ----A---- C:\Windows\system32\audiosrv.dll
2014-03-07 08:23:29 ----A---- C:\Windows\system32\actxprxy.dll
2014-03-07 08:23:28 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2014-03-07 08:23:28 ----A---- C:\Windows\system32\winhttp.dll
2014-03-07 08:23:28 ----A---- C:\Windows\system32\termsrv.dll
2014-03-07 08:23:28 ----A---- C:\Windows\system32\qmgr.dll
2014-03-07 08:23:28 ----A---- C:\Windows\system32\netlogon.dll
2014-03-07 08:23:28 ----A---- C:\Windows\system32\imapi2fs.dll
2014-03-07 08:23:27 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2014-03-07 08:23:27 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-03-07 08:23:27 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\WSDApi.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\werconcpl.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\wbengine.exe
2014-03-07 08:23:27 ----A---- C:\Windows\system32\user32.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\taskeng.exe
2014-03-07 08:23:27 ----A---- C:\Windows\system32\setupapi.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\rpcss.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\QAGENTRT.DLL
2014-03-07 08:23:27 ----A---- C:\Windows\system32\propsys.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\odbc32.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\msv1_0.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\drivers\tdx.sys
2014-03-07 08:23:27 ----A---- C:\Windows\system32\dhcpcore.dll
2014-03-07 08:23:27 ----A---- C:\Windows\system32\certmgr.dll
2014-03-07 08:23:26 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2014-03-07 08:23:26 ----A---- C:\Windows\SYSWOW64\certcli.dll
2014-03-07 08:23:26 ----A---- C:\Windows\system32\tsmf.dll

rado145
Návštěvník
Návštěvník
Příspěvky: 64
Registrován: 22 bře 2014 08:49

Re: TrojanMC

#20 Příspěvek od rado145 »

2014-03-07 08:23:26 ----A---- C:\Windows\system32\shlwapi.dll
2014-03-07 08:23:26 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2014-03-07 08:23:26 ----A---- C:\Windows\system32\netshell.dll
2014-03-07 08:23:26 ----A---- C:\Windows\system32\msdtctm.dll
2014-03-07 08:23:26 ----A---- C:\Windows\system32\framedynos.dll
2014-03-07 08:23:26 ----A---- C:\Windows\system32\drivers\netbt.sys
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2014-03-07 08:23:25 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\ws2_32.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\wpdshext.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\wmpps.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\wmicmiplugin.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\winlogon.exe
2014-03-07 08:23:25 ----A---- C:\Windows\system32\Query.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\QAGENT.DLL
2014-03-07 08:23:25 ----A---- C:\Windows\system32\netcfgx.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\lsm.exe
2014-03-07 08:23:25 ----A---- C:\Windows\system32\drvstore.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\comdlg32.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\BFE.DLL
2014-03-07 08:23:25 ----A---- C:\Windows\system32\azroles.dll
2014-03-07 08:23:25 ----A---- C:\Windows\system32\apphelp.dll
2014-03-07 08:23:24 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2014-03-07 08:23:24 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-03-07 08:23:24 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2014-03-07 08:23:24 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2014-03-07 08:23:24 ----A---- C:\Windows\system32\Vault.dll
2014-03-07 08:23:24 ----A---- C:\Windows\system32\samsrv.dll
2014-03-07 08:23:24 ----A---- C:\Windows\system32\lpksetup.exe
2014-03-07 08:23:24 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2014-03-07 08:23:24 ----A---- C:\Windows\system32\cmd.exe
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\upnp.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\Query.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2014-03-07 08:23:23 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\Wldap32.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\winsta.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\webservices.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\taskcomp.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\sxs.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\sqlsrv32.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\SessEnv.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\pnidui.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\mfds.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\mcbuilder.exe
2014-03-07 08:23:23 ----A---- C:\Windows\system32\ipsmsnap.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\hgprint.dll
2014-03-07 08:23:23 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2014-03-07 08:23:22 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2014-03-07 08:23:22 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2014-03-07 08:23:22 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2014-03-07 08:23:22 ----A---- C:\Windows\system32\prncache.dll
2014-03-07 08:23:22 ----A---- C:\Windows\system32\mcmde.dll
2014-03-07 08:23:22 ----A---- C:\Windows\system32\fveapi.dll
2014-03-07 08:23:22 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-03-07 08:23:22 ----A---- C:\Windows\system32\drivers\msrpc.sys
2014-03-07 08:23:22 ----A---- C:\Windows\system32\dot3api.dll
2014-03-07 08:23:21 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2014-03-07 08:23:21 ----A---- C:\Windows\SYSWOW64\userenv.dll
2014-03-07 08:23:21 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2014-03-07 08:23:21 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-03-07 08:23:21 ----A---- C:\Windows\SYSWOW64\cmd.exe
2014-03-07 08:23:21 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\wmpmde.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\WMPEncEn.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\wmpeffects.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\WMNetMgr.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\wlanpref.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\vpnike.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\userenv.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\SyncCenter.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\srvsvc.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\sppobjs.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\schtasks.exe
2014-03-07 08:23:21 ----A---- C:\Windows\system32\photowiz.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\mfreadwrite.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\IPSECSVC.DLL
2014-03-07 08:23:21 ----A---- C:\Windows\system32\FXSSVC.exe
2014-03-07 08:23:21 ----A---- C:\Windows\system32\framedyn.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\evr.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\drivers\rdbss.sys
2014-03-07 08:23:21 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2014-03-07 08:23:21 ----A---- C:\Windows\system32\AudioSes.dll
2014-03-07 08:23:21 ----A---- C:\Windows\system32\aepdu.dll
2014-03-07 08:23:20 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2014-03-07 08:23:20 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-03-07 08:23:20 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-03-07 08:23:20 ----A---- C:\Windows\SYSWOW64\mfds.dll
2014-03-07 08:23:20 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\WinSATAPI.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\tcpipcfg.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\stobject.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\shsvcs.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\QSHVHOST.DLL
2014-03-07 08:23:20 ----A---- C:\Windows\system32\netid.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\netdiagfx.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\localsec.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\inetpp.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\imapi2.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\fde.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\drivers\udfs.sys
2014-03-07 08:23:20 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-03-07 08:23:20 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-03-07 08:23:20 ----A---- C:\Windows\system32\aeinv.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\spp.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2014-03-07 08:23:19 ----A---- C:\Windows\SYSWOW64\azroles.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\wusa.exe
2014-03-07 08:23:19 ----A---- C:\Windows\system32\wiaservc.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\vds.exe
2014-03-07 08:23:19 ----A---- C:\Windows\system32\spp.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\scansetting.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\rpchttp.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\printui.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\pla.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2014-03-07 08:23:19 ----A---- C:\Windows\system32\mspbda.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\msinfo32.exe
2014-03-07 08:23:19 ----A---- C:\Windows\system32\msdri.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\mscms.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2014-03-07 08:23:19 ----A---- C:\Windows\system32\drivers\pci.sys
2014-03-07 08:23:19 ----A---- C:\Windows\system32\biocpl.dll
2014-03-07 08:23:19 ----A---- C:\Windows\system32\aitagent.exe
2014-03-07 08:23:18 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2014-03-07 08:23:18 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2014-03-07 08:23:18 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2014-03-07 08:23:18 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2014-03-07 08:23:18 ----A---- C:\Windows\SYSWOW64\evr.dll
2014-03-07 08:23:18 ----A---- C:\Windows\SYSWOW64\calc.exe
2014-03-07 08:23:18 ----A---- C:\Windows\system32\XpsRasterService.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\wpdbusenum.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\wisptis.exe
2014-03-07 08:23:18 ----A---- C:\Windows\system32\wcncsvc.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\upnp.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\sppwinob.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\PkgMgr.exe
2014-03-07 08:23:18 ----A---- C:\Windows\system32\ocsetup.exe
2014-03-07 08:23:18 ----A---- C:\Windows\system32\ocsetapi.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\mprapi.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\eapphost.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\eapp3hst.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\DXP.dll
2014-03-07 08:23:18 ----A---- C:\Windows\system32\drivers\volmgr.sys
2014-03-07 08:23:18 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2014-03-07 08:23:18 ----A---- C:\Windows\system32\drivers\msdsm.sys
2014-03-07 08:23:18 ----A---- C:\Windows\system32\ci.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\sxs.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\prncache.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\printui.dll
2014-03-07 08:23:17 ----A---- C:\Windows\SYSWOW64\netshell.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\thumbcache.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\themeui.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\t2embed.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\scecli.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\Robocopy.exe
2014-03-07 08:23:17 ----A---- C:\Windows\system32\puiobj.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\onex.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2014-03-07 08:23:17 ----A---- C:\Windows\system32\msasn1.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\iasrad.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\hal.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\DxpTaskSync.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\dwmredir.dll
2014-03-07 08:23:17 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2014-03-07 08:23:17 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2014-03-07 08:23:17 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-03-07 08:23:16 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2014-03-07 08:23:16 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2014-03-07 08:23:16 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2014-03-07 08:23:16 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-03-07 08:23:16 ----A---- C:\Windows\SYSWOW64\net1.exe
2014-03-07 08:23:16 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\wscapi.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\wlangpui.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\wiadefui.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\wdc.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\VAN.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\StructuredQuery.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\SndVol.exe
2014-03-07 08:23:16 ----A---- C:\Windows\system32\sdengin2.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\scesrv.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\samcli.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\rasmans.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\netcenter.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\msftedit.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\iasacct.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\dskquoui.dll
2014-03-07 08:23:16 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\webservices.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\pla.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2014-03-07 08:23:15 ----A---- C:\Windows\SYSWOW64\fde.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\tapisrv.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\TabSvc.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\srchadmin.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\setupcl.exe
2014-03-07 08:23:15 ----A---- C:\Windows\system32\regapi.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\rastls.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\QUTIL.DLL
2014-03-07 08:23:15 ----A---- C:\Windows\system32\netiohlp.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\msconfig.exe
2014-03-07 08:23:15 ----A---- C:\Windows\system32\mimefilt.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\ListSvc.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\hgcpl.dll
2014-03-07 08:23:15 ----A---- C:\Windows\system32\drivers\termdd.sys
2014-03-07 08:23:15 ----A---- C:\Windows\system32\drivers\raspptp.sys
2014-03-07 08:23:15 ----A---- C:\Windows\system32\drivers\msahci.sys
2014-03-07 08:23:15 ----A---- C:\Windows\system32\drivers\acpi.sys
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\onex.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2014-03-07 08:23:14 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\themecpl.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\sharemediacpl.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\SensorsCpl.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\RpcRtRemote.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\riched20.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\powercpl.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\nci.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\mtxclu.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\lsmproxy.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\logoncli.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\fdeploy.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\eudcedit.exe
2014-03-07 08:23:14 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2014-03-07 08:23:14 ----A---- C:\Windows\system32\drivers\ks.sys
2014-03-07 08:23:14 ----A---- C:\Windows\system32\dnscmmc.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\clusapi.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\basecsp.dll
2014-03-07 08:23:14 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\samcli.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\regapi.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\proquota.exe
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\msutb.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\autochk.exe
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2014-03-07 08:23:13 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\wwanconn.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\wpd_ci.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\wlanui.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\wkssvc.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\vpnikeapi.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\sppcomapi.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\SmiEngine.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\shsetup.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\sdclt.exe
2014-03-07 08:23:13 ----A---- C:\Windows\system32\prntvpt.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\nshipsec.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\netjoin.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\Narrator.exe
2014-03-07 08:23:13 ----A---- C:\Windows\system32\mscorier.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\fms.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\Faultrep.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\drivers\wanarp.sys
2014-03-07 08:23:13 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2014-03-07 08:23:13 ----A---- C:\Windows\system32\drivers\scsiport.sys
2014-03-07 08:23:13 ----A---- C:\Windows\system32\dps.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\cabview.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\bcdsrv.dll
2014-03-07 08:23:13 ----A---- C:\Windows\system32\autochk.exe
2014-03-07 08:23:13 ----A---- C:\Windows\system32\autofmt.exe
2014-03-07 08:23:13 ----A---- C:\Windows\system32\autoconv.exe
2014-03-07 08:23:13 ----A---- C:\Windows\system32\audiodg.exe
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\wdc.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\Vault.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\untfs.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\netid.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\nci.dll
2014-03-07 08:23:12 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\wpccpl.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\wmpsrcwp.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\usercpl.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\sppsvc.exe
2014-03-07 08:23:12 ----A---- C:\Windows\system32\rtutils.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\provsvc.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\mprddm.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\mblctr.exe
2014-03-07 08:23:12 ----A---- C:\Windows\system32\fontext.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\Display.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\DiagCpl.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\credssp.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\bootres.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\batmeter.dll
2014-03-07 08:23:12 ----A---- C:\Windows\system32\AxInstSv.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\userinit.exe
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\Display.dll
2014-03-07 08:23:11 ----A---- C:\Windows\SYSWOW64\cabview.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\userinit.exe
2014-03-07 08:23:11 ----A---- C:\Windows\system32\untfs.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\taskmgr.exe
2014-03-07 08:23:11 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\rasppp.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\proquota.exe
2014-03-07 08:23:11 ----A---- C:\Windows\system32\prnfldr.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\pdh.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2014-03-07 08:23:11 ----A---- C:\Windows\system32\hbaapi.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\dxdiagn.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2014-03-07 08:23:11 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2014-03-07 08:23:11 ----A---- C:\Windows\system32\dot3cfg.dll
2014-03-07 08:23:11 ----A---- C:\Windows\system32\accessibilitycpl.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\scecli.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\mscms.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\localsec.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\fontext.dll
2014-03-07 08:23:10 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\zipfldr.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\sud.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\slui.exe
2014-03-07 08:23:10 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\networkmap.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\dot3svc.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\DeviceCenter.dll
2014-03-07 08:23:10 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2014-03-07 08:23:09 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\uxlib.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\tzutil.exe
2014-03-07 08:23:09 ----A---- C:\Windows\system32\twext.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\taskbarcpl.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\systemcpl.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\syncui.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\sisbkup.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\shwebsvc.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\sdcpl.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\recovery.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\recdisc.exe
2014-03-07 08:23:09 ----A---- C:\Windows\system32\OobeFldr.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\netplwiz.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\isoburn.exe
2014-03-07 08:23:09 ----A---- C:\Windows\system32\httpapi.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\efscore.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\dsuiext.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\drivers\mpio.sys
2014-03-07 08:23:09 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2014-03-07 08:23:09 ----A---- C:\Windows\system32\cryptui.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\cca.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\bcdedit.exe
2014-03-07 08:23:09 ----A---- C:\Windows\system32\azroleui.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\autoplay.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\asycfilt.dll
2014-03-07 08:23:09 ----A---- C:\Windows\system32\ActionCenter.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\sud.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\ftp.exe
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-03-07 08:23:08 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\wlanmsm.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\vdsutil.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\termmgr.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\sysclass.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\spwizeng.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\sethc.exe
2014-03-07 08:23:08 ----A---- C:\Windows\system32\sdrsvc.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\ReAgent.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\ntlanman.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\ncryptui.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\msvidc32.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\msscp.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\MFPlay.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\certcli.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2014-03-07 08:23:08 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\syncui.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\sethc.exe
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\riched20.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\efscore.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2014-03-07 08:23:07 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\wmdrmsdk.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\wavemsp.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\ssText3d.scr
2014-03-07 08:23:07 ----A---- C:\Windows\system32\srvcli.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\srrstr.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\sqlcese30.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\slwga.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\rdpd3d.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\ntprint.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\nslookup.exe
2014-03-07 08:23:07 ----A---- C:\Windows\system32\NAPHLPR.DLL
2014-03-07 08:23:07 ----A---- C:\Windows\system32\msiexec.exe
2014-03-07 08:23:07 ----A---- C:\Windows\system32\iyuv_32.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\iTVData.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\iprtrmgr.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\drmmgrtn.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2014-03-07 08:23:07 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2014-03-07 08:23:07 ----A---- C:\Windows\system32\bcdboot.exe
2014-03-07 08:23:07 ----A---- C:\Windows\system32\acppage.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\migisol.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\fms.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\dpx.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2014-03-07 08:23:06 ----A---- C:\Windows\SYSWOW64\activeds.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\wvc.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\wsqmcons.exe
2014-03-07 08:23:06 ----A---- C:\Windows\system32\wsnmp32.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\wmpdxm.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\wkscli.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\WinSCard.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\TSpkg.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\sppnp.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\remotepg.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\networkexplorer.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\net1.exe
2014-03-07 08:23:06 ----A---- C:\Windows\system32\ftp.exe
2014-03-07 08:23:06 ----A---- C:\Windows\system32\dfrgui.exe
2014-03-07 08:23:06 ----A---- C:\Windows\system32\certprop.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\cabinet.dll
2014-03-07 08:23:06 ----A---- C:\Windows\system32\blackbox.dll
2014-03-07 08:23:05 ----A---- C:\Windows\twain_32.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\wvc.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\twext.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\slwga.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\qcap.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\qasf.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\mstask.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-03-07 08:23:05 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\wmpshell.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\wmdrmdev.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2014-03-07 08:23:05 ----A---- C:\Windows\system32\WerFaultSecure.exe
2014-03-07 08:23:05 ----A---- C:\Windows\system32\unimdmat.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\tsbyuv.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\seclogon.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\Ribbons.scr
2014-03-07 08:23:05 ----A---- C:\Windows\system32\perfmon.exe
2014-03-07 08:23:05 ----A---- C:\Windows\system32\OpcServices.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\Mystify.scr
2014-03-07 08:23:05 ----A---- C:\Windows\system32\muifontsetup.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\msyuv.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\msrle32.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\mfps.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\mapistub.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\mapi32.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\iscsium.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\ifsutil.dll
2014-03-07 08:23:05 ----A---- C:\Windows\system32\drivers\umbus.sys
2014-03-07 08:23:05 ----A---- C:\Windows\system32\diskraid.exe
2014-03-07 08:23:05 ----A---- C:\Windows\system32\Bubbles.scr
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\runonce.exe
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\raschap.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\onexui.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\msscp.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\input.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2014-03-07 08:23:04 ----A---- C:\Windows\SYSWOW64\acppage.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\wpdwcn.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\WMVSDECD.DLL
2014-03-07 08:23:04 ----A---- C:\Windows\system32\WMADMOD.DLL
2014-03-07 08:23:04 ----A---- C:\Windows\system32\wiavideo.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\vdsbas.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\umb.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\tlscsp.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\syssetup.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\runonce.exe
2014-03-07 08:23:04 ----A---- C:\Windows\system32\rdpencom.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\raschap.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\qasf.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\netutils.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2014-03-07 08:23:04 ----A---- C:\Windows\system32\MdSched.exe
2014-03-07 08:23:04 ----A---- C:\Windows\system32\Mcx2Svc.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\FXSAPI.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\dbghelp.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\AzSqlExt.dll
2014-03-07 08:23:04 ----A---- C:\Windows\system32\ActionQueue.dll
2014-03-07 08:23:04 ----A---- C:\Windows\bfsvc.exe
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\shacct.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\logman.exe
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\logagent.exe
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2014-03-07 08:23:03 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2014-03-07 08:23:03 ----A---- C:\Windows\system32\WPDSp.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2014-03-07 08:23:03 ----A---- C:\Windows\system32\wmdrmnet.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\vss_ps.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\tabcal.exe
2014-03-07 08:23:03 ----A---- C:\Windows\system32\spbcd.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\shacct.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2014-03-07 08:23:03 ----A---- C:\Windows\system32\qdv.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\qcap.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\nltest.exe
2014-03-07 08:23:03 ----A---- C:\Windows\system32\mstask.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\msnetobj.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\logman.exe
2014-03-07 08:23:03 ----A---- C:\Windows\system32\fphc.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\drivers\rmcast.sys
2014-03-07 08:23:03 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2014-03-07 08:23:03 ----A---- C:\Windows\system32\dot3ui.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\cscapi.dll
2014-03-07 08:23:03 ----A---- C:\Windows\system32\bitsadmin.exe
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\utildll.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\takeown.exe
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\qdv.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\fphc.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\cca.dll
2014-03-07 08:23:02 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\WavDest.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\vfwwdm32.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\takeown.exe
2014-03-07 08:23:02 ----A---- C:\Windows\system32\shimgvw.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\QCLIPROV.DLL
2014-03-07 08:23:02 ----A---- C:\Windows\system32\PnPUnattend.exe
2014-03-07 08:23:02 ----A---- C:\Windows\system32\nrpsrv.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\iasrecst.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\EhStorAPI.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\djoin.exe
2014-03-07 08:23:02 ----A---- C:\Windows\system32\cmstp.exe
2014-03-07 08:23:02 ----A---- C:\Windows\system32\CertPolEng.dll
2014-03-07 08:23:02 ----A---- C:\Windows\system32\amstream.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\relog.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\itircl.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2014-03-07 08:23:01 ----A---- C:\Windows\SYSWOW64\amstream.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\sscore.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\relog.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\mydocs.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\MultiDigiMon.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\msdmo.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\mobsync.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\mciqtz32.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\KMSVC.DLL
2014-03-07 08:23:01 ----A---- C:\Windows\system32\itircl.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\iscsicli.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\choice.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\FXSTIFF.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\findstr.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\fdProxy.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\eappgnui.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\drivers\pacer.sys
2014-03-07 08:23:01 ----A---- C:\Windows\system32\dot3msm.dll
2014-03-07 08:23:01 ----A---- C:\Windows\system32\diskpart.exe
2014-03-07 08:23:01 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\sppc.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\spopk.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\netutils.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\findstr.exe
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2014-03-07 08:23:00 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\sppc.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\spopk.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\schedcli.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\repair-bde.exe
2014-03-07 08:23:00 ----A---- C:\Windows\system32\RDPENCDD.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\onexui.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\odbcconf.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\manage-bde.exe
2014-03-07 08:23:00 ----A---- C:\Windows\system32\luainstall.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\inetmib1.dll
2014-03-07 08:23:00 ----A---- C:\Windows\system32\fixmapi.exe
2014-03-07 08:23:00 ----A---- C:\Windows\system32\drivers\tunnel.sys
2014-03-07 08:23:00 ----A---- C:\Windows\system32\drivers\dfsc.sys
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\perfts.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\imm32.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2014-03-07 08:22:59 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\wshbth.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\UIRibbonRes.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\TRAPI.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\napdsnap.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\LogonUI.exe
2014-03-07 08:22:59 ----A---- C:\Windows\system32\FXSUNATD.exe
2014-03-07 08:22:59 ----A---- C:\Windows\system32\FXSMON.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\elsTrans.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\dsauth.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2014-03-07 08:22:59 ----A---- C:\Windows\system32\drivers\tdi.sys
2014-03-07 08:22:59 ----A---- C:\Windows\system32\drivers\acpipmi.sys

rado145
Návštěvník
Návštěvník
Příspěvky: 64
Registrován: 22 bře 2014 08:49

Re: TrojanMC

#21 Příspěvek od rado145 »

2014-03-07 08:22:59 ----A---- C:\Windows\system32\cscdll.dll
2014-03-07 08:22:59 ----A---- C:\Windows\system32\bitsperf.dll
2014-03-07 08:22:58 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2014-03-07 08:22:58 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2014-03-07 08:22:58 ----A---- C:\Windows\SYSWOW64\sscore.dll
2014-03-07 08:22:58 ----A---- C:\Windows\SYSWOW64\shgina.dll
2014-03-07 08:22:58 ----A---- C:\Windows\SYSWOW64\riched32.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\wshirda.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\wsdchngr.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\spwmp.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\shgina.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\riched32.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\rdpcfgex.dll
2014-03-07 08:22:58 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2014-03-07 08:22:58 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2014-03-07 08:22:58 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-03-07 08:22:58 ----A---- C:\Windows\system32\drivers\hidusb.sys
2014-03-07 08:22:58 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2014-03-07 08:22:58 ----A---- C:\Windows\system32\drivers\appid.sys
2014-03-07 08:22:58 ----A---- C:\Windows\system32\C_ISCII.DLL
2014-03-07 08:22:58 ----A---- C:\Windows\system32\browseui.dll
2014-03-07 08:22:57 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\SYSWOW64\browseui.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\spwizres.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\shunimpl.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\pifmgr.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\nlsbres.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDUS.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDTURME.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDTUQ.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDTUF.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDSG.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDSF.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDPO.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDNEPR.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDMON.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDMAORI.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDLT1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\kbdlk41a.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINTEL.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINTAM.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINORI.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINMAR.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINKAN.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINHIN.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDINBEN.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDGR1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDGKL.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDGEO.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDCZ1.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDBULG.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDBLR.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-03-07 08:22:57 ----A---- C:\Windows\system32\dxmasf.dll
2014-03-07 08:22:57 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2014-03-07 08:22:57 ----A---- C:\Windows\system32\drivers\scfilter.sys
2014-03-07 08:22:57 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2014-03-07 08:22:57 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-03-07 08:22:57 ----A---- C:\Windows\system32\drivers\cdrom.sys
2014-03-07 08:22:57 ----A---- C:\Windows\system32\BlbEvents.dll
2014-03-07 08:22:53 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2014-03-07 08:22:53 ----A---- C:\Windows\system32\dpx.dll
2014-03-07 08:22:50 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2014-03-07 08:22:45 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2014-03-07 08:22:14 ----A---- C:\Windows\system32\wbemcomn.dll
2014-03-07 08:22:11 ----A---- C:\Windows\system32\sqmapi.dll
2014-03-07 08:15:53 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-03-07 08:15:53 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-03-07 08:15:53 ----A---- C:\Windows\system32\fsutil.exe
2014-03-07 08:15:53 ----A---- C:\Windows\system32\esent.dll
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\storport.sys
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-03-07 08:15:53 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-03-07 07:28:31 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-03-07 00:21:30 ----D---- C:\Windows\SYSWOW64\Wat
2014-03-07 00:21:30 ----D---- C:\Windows\system32\Wat
2014-03-07 00:09:53 ----D---- C:\Windows\system32\MRT
2014-03-07 00:09:52 ----A---- C:\Windows\system32\MRT.exe
2014-03-06 23:57:47 ----D---- C:\Program Files\Microsoft Silverlight
2014-03-06 23:57:47 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-03-06 23:53:23 ----A---- C:\Windows\system32\Wdfres.dll
2014-03-06 23:53:23 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-03-06 23:49:35 ----D---- C:\Users\radek\AppData\Roaming\Macromedia
2014-03-06 23:49:35 ----D---- C:\Users\radek\AppData\Roaming\Adobe
2014-03-06 23:47:31 ----N---- C:\Windows\Updreg.EXE
2014-03-06 23:47:17 ----D---- C:\Users\radek\AppData\Roaming\Creative
2014-03-06 23:46:25 ----A---- C:\Windows\system32\browserchoice.exe
2014-03-06 23:43:30 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-03-06 23:43:29 ----D---- C:\Windows\SYSWOW64\Macromed
2014-03-06 23:43:28 ----D---- C:\Windows\system32\Macromed
2014-03-06 23:38:00 ----A---- C:\Windows\XENMCcfg.ini
2014-03-06 23:38:00 ----A---- C:\Windows\XENDefE.exe
2014-03-06 23:38:00 ----A---- C:\Windows\XENcfg.ini
2014-03-06 23:38:00 ----A---- C:\Windows\SYSWOW64\XENCFX32.dll
2014-03-06 23:38:00 ----A---- C:\Windows\SYSWOW64\XENAPO32.dll
2014-03-06 23:38:00 ----A---- C:\Windows\system32\xfiXEN.ini
2014-03-06 23:38:00 ----A---- C:\Windows\system32\XENpld64.dll
2014-03-06 23:38:00 ----A---- C:\Windows\system32\XENcInst.dll
2014-03-06 23:38:00 ----A---- C:\Windows\system32\XENCFX64.dll
2014-03-06 23:38:00 ----A---- C:\Windows\system32\XENAPO64.dll
2014-03-06 23:38:00 ----A---- C:\Windows\system32\drivers\XENfiltv.sys
2014-03-06 23:38:00 ----A---- C:\Windows\AddCat.exe
2014-03-06 23:37:58 ----N---- C:\Windows\SYSWOW64\Sens_oal.dll
2014-03-06 23:37:58 ----N---- C:\Windows\system32\Sens_oal.dll
2014-03-06 23:37:56 ----N---- C:\Windows\Ctregrun.exe
2014-03-06 23:35:49 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-03-06 23:35:49 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-03-06 23:35:49 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-03-06 23:35:49 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-03-06 23:35:48 ----A---- C:\Windows\system32\WUDFx.dll
2014-03-06 23:35:48 ----A---- C:\Windows\system32\WUDFHost.exe
2014-03-06 23:35:48 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-03-06 23:35:35 ----D---- C:\Program Files (x86)\Intel
2014-03-06 23:35:35 ----A---- C:\Windows\system32\drivers\USB3Ver.dll
2014-03-06 23:35:31 ----D---- C:\Intel
2014-03-06 23:29:42 ----A---- C:\Users\radek\AppData\Roaming\GPU MeterV2_Settings.ini
2014-03-06 23:28:54 ----A---- C:\Users\radek\AppData\Roaming\All CPU MeterV3_Settings.ini
2014-03-06 23:27:55 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-03-06 23:27:55 ----A---- C:\Windows\system32\wmi.dll
2014-03-06 23:27:55 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-03-06 23:26:43 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-03-06 23:26:43 ----A---- C:\Windows\system32\webio.dll
2014-03-06 23:26:41 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-03-06 23:26:41 ----A---- C:\Windows\system32\ntshrui.dll
2014-03-06 23:26:29 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-03-06 23:26:19 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-03-06 23:26:19 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-03-06 23:26:19 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-03-06 23:26:19 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-03-06 23:26:19 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-03-06 23:26:19 ----A---- C:\Windows\system32\tquery.dll
2014-03-06 23:26:19 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-03-06 23:26:19 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-03-06 23:26:19 ----A---- C:\Windows\system32\mssvp.dll
2014-03-06 23:26:19 ----A---- C:\Windows\system32\mssrch.dll
2014-03-06 23:26:18 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-03-06 23:26:18 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-03-06 23:26:18 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-03-06 23:26:18 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-03-06 23:26:18 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-03-06 23:26:18 ----A---- C:\Windows\system32\mssphtb.dll
2014-03-06 23:26:18 ----A---- C:\Windows\system32\mssph.dll
2014-03-06 23:26:18 ----A---- C:\Windows\system32\msscntrs.dll
2014-03-06 23:26:12 ----A---- C:\Windows\system32\wow64win.dll
2014-03-06 23:26:11 ----A---- C:\Windows\system32\wow64cpu.dll
2014-03-06 23:26:11 ----A---- C:\Windows\system32\ntvdm64.dll
2014-03-06 23:26:05 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-03-06 23:26:05 ----A---- C:\Windows\system32\poqexec.exe
2014-03-06 23:25:56 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-03-06 23:25:56 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-03-06 23:25:56 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-03-06 23:25:56 ----A---- C:\Windows\system32\odbctrac.dll
2014-03-06 23:25:56 ----A---- C:\Windows\system32\odbccu32.dll
2014-03-06 23:25:56 ----A---- C:\Windows\system32\odbccr32.dll
2014-03-06 23:25:56 ----A---- C:\Windows\system32\odbccp32.dll
2014-03-06 23:25:55 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-03-06 23:25:55 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-03-06 23:25:47 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-03-06 23:25:47 ----A---- C:\Windows\system32\quartz.dll
2014-03-06 23:25:45 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-03-06 23:25:45 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-03-06 23:25:45 ----A---- C:\Windows\system32\sbe.dll
2014-03-06 23:25:45 ----A---- C:\Windows\system32\CPFilters.dll
2014-03-06 23:25:43 ----A---- C:\Windows\system32\mfc42u.dll
2014-03-06 23:25:42 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-03-06 23:25:42 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-03-06 23:25:42 ----A---- C:\Windows\system32\mfc42.dll
2014-03-06 23:25:38 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-03-06 23:25:38 ----A---- C:\Windows\system32\rdpwsx.dll
2014-03-06 23:25:38 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-03-06 23:25:37 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-03-06 23:25:37 ----A---- C:\Windows\system32\xmllite.dll
2014-03-06 23:25:37 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-03-06 23:25:36 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-03-06 23:25:36 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-03-06 23:25:36 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-03-06 23:25:31 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-03-06 23:25:31 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-03-06 23:25:31 ----A---- C:\Windows\system32\Wpc.dll
2014-03-06 23:25:31 ----A---- C:\Windows\system32\gameux.dll
2014-03-06 23:25:23 ----A---- C:\Windows\system32\msxml6.dll
2014-03-06 23:25:23 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-03-06 23:25:23 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-03-06 23:25:23 ----A---- C:\Windows\system32\drivers\srv.sys
2014-03-06 23:25:22 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-03-06 23:25:22 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-03-06 23:25:22 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-03-06 23:25:22 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-03-06 23:25:22 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-03-06 23:25:22 ----A---- C:\Windows\system32\dnsapi.dll
2014-03-06 23:25:21 ----A---- C:\Windows\system32\profsvc.dll
2014-03-06 23:25:21 ----A---- C:\Windows\system32\profprov.dll
2014-03-06 23:25:20 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-03-06 23:25:20 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2014-03-06 23:25:20 ----A---- C:\Windows\system32\dpnet.dll
2014-03-06 23:25:20 ----A---- C:\Windows\system32\dpnaddr.dll
2014-03-06 23:25:19 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-03-06 23:25:18 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-03-06 23:25:18 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-03-06 23:25:18 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-03-06 23:25:18 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-03-06 23:25:18 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-03-06 23:25:18 ----A---- C:\Windows\system32\cfgmgr32.dll
2014-03-06 23:25:06 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-03-06 23:25:05 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-03-06 23:25:05 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-03-06 23:25:05 ----A---- C:\Windows\system32\netapi32.dll
2014-03-06 23:25:05 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-03-06 23:25:05 ----A---- C:\Windows\system32\browser.dll
2014-03-06 23:25:05 ----A---- C:\Windows\system32\browcli.dll
2014-03-06 23:25:03 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-03-06 23:25:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-03-06 23:25:03 ----A---- C:\Windows\system32\srcore.dll
2014-03-06 23:25:03 ----A---- C:\Windows\system32\rstrui.exe
2014-03-06 23:25:03 ----A---- C:\Windows\system32\msi.dll
2014-03-06 23:25:03 ----A---- C:\Windows\system32\kerberos.dll
2014-03-06 23:25:02 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-03-06 23:25:02 ----A---- C:\Windows\system32\winresume.exe
2014-03-06 23:25:02 ----A---- C:\Windows\system32\winload.exe
2014-03-06 23:25:02 ----A---- C:\Windows\system32\setbcdlocale.dll
2014-03-06 23:25:02 ----A---- C:\Windows\system32\kdusb.dll
2014-03-06 23:25:02 ----A---- C:\Windows\system32\kdcom.dll
2014-03-06 23:25:02 ----A---- C:\Windows\system32\kd1394.dll
2014-03-06 23:25:01 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-03-06 23:25:01 ----A---- C:\Windows\system32\inetcomm.dll
2014-03-06 23:25:00 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-03-06 23:25:00 ----A---- C:\Windows\system32\usp10.dll
2014-03-06 23:24:59 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-03-06 23:24:59 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-03-06 23:24:59 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-03-06 23:24:59 ----A---- C:\Windows\system32\synceng.dll
2014-03-06 23:24:59 ----A---- C:\Windows\system32\psisdecd.dll
2014-03-06 23:24:59 ----A---- C:\Windows\system32\prevhost.exe
2014-03-06 23:24:57 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-03-06 23:24:56 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-03-06 23:24:56 ----A---- C:\Windows\system32\WFS.exe
2014-03-06 23:24:56 ----A---- C:\Windows\system32\msvcrt.dll
2014-03-06 23:24:56 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-03-06 23:24:56 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-03-06 23:22:23 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-03-06 23:22:21 ----A---- C:\Windows\system32\localspl.dll
2014-03-06 23:21:10 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-03-06 23:21:10 ----A---- C:\Windows\system32\cdosys.dll
2014-03-06 23:21:07 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-03-06 23:21:07 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-03-06 23:21:07 ----A---- C:\Windows\system32\oleaut32.dll
2014-03-06 23:21:07 ----A---- C:\Windows\system32\oleacc.dll
2014-03-06 23:21:06 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-03-06 23:21:06 ----A---- C:\Windows\system32\EncDec.dll
2014-03-06 23:21:02 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-03-06 23:21:02 ----A---- C:\Windows\system32\packager.dll
2014-03-06 23:17:18 ----D---- C:\Program Files (x86)\OSCAR Editor X7
2014-03-06 23:17:01 ----D---- C:\Program Files (x86)\OscarEditor
2014-03-06 23:16:33 ----D---- C:\Program Files (x86)\X7 Oscar Keyboard Editor
2014-03-06 23:16:17 ----D---- C:\Program Files (x86)\OscarKB
2014-03-06 23:11:55 ----D---- C:\Users\radek\AppData\Roaming\Mozilla
2014-03-06 23:11:52 ----D---- C:\ProgramData\Mozilla
2014-03-06 23:10:06 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-03-06 23:10:06 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-03-06 23:10:06 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-03-06 23:10:06 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-03-06 23:10:05 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-03-06 23:10:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-03-06 23:10:05 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-03-06 23:10:05 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-03-06 23:10:04 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-03-06 23:10:03 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-03-06 23:10:03 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-03-06 23:10:03 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-03-06 23:10:03 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-03-06 23:10:03 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-03-06 23:10:03 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-03-06 23:10:02 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-03-06 23:10:02 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-03-06 23:10:01 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-03-06 23:10:01 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-03-06 23:10:00 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-03-06 23:10:00 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-03-06 23:10:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-03-06 23:10:00 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-03-06 23:10:00 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-03-06 23:10:00 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-03-06 23:09:59 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-03-06 23:09:59 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-03-06 23:09:59 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-03-06 23:09:59 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-03-06 23:09:58 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-03-06 23:09:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-03-06 23:09:58 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-03-06 23:09:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-03-06 23:09:58 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-03-06 23:09:58 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-03-06 23:09:58 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-03-06 23:09:58 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-03-06 23:09:58 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-03-06 23:09:58 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-03-06 23:09:57 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-03-06 23:09:57 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-03-06 23:09:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-03-06 23:09:57 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-03-06 23:09:57 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-03-06 23:09:57 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-03-06 23:09:56 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-03-06 23:09:56 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-03-06 23:09:56 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-03-06 23:09:56 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-03-06 23:09:56 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-03-06 23:09:56 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-03-06 23:09:55 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-03-06 23:09:55 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-03-06 23:09:55 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-03-06 23:09:55 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-03-06 23:09:55 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-03-06 23:09:55 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-03-06 23:09:54 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-03-06 23:09:54 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-03-06 23:09:53 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-03-06 23:09:53 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-03-06 23:09:53 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-03-06 23:09:53 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-03-06 23:09:53 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-03-06 23:09:53 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-03-06 23:09:53 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-03-06 23:09:53 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-03-06 23:09:52 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-03-06 23:09:52 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-03-06 23:09:52 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-03-06 23:09:52 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-03-06 23:09:52 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-03-06 23:09:52 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-03-06 23:09:51 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-03-06 23:09:51 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-03-06 23:09:51 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-03-06 23:09:51 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-03-06 23:09:51 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-03-06 23:09:51 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-03-06 23:09:51 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-03-06 23:09:51 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-03-06 23:09:51 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-03-06 23:09:51 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-03-06 23:09:50 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-03-06 23:09:50 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-03-06 23:09:50 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-03-06 23:09:50 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-03-06 23:09:49 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-03-06 23:09:49 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-03-06 23:09:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-03-06 23:09:49 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-03-06 23:09:49 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-03-06 23:09:49 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-03-06 23:09:48 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-03-06 23:09:48 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-03-06 23:09:47 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-03-06 23:09:47 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-03-06 23:09:47 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-03-06 23:09:47 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-03-06 23:09:47 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-03-06 23:09:47 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-03-06 23:09:46 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-03-06 23:09:46 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-03-06 23:09:46 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-03-06 23:09:46 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-03-06 23:09:46 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-03-06 23:09:46 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-03-06 23:09:46 ----A---- C:\Windows\system32\xinput1_3.dll
2014-03-06 23:09:46 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-03-06 23:09:46 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-03-06 23:09:46 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-03-06 23:09:46 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-03-06 23:09:46 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-03-06 23:09:45 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-03-06 23:09:45 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-03-06 23:09:44 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-03-06 23:09:44 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-03-06 23:09:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-03-06 23:09:44 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-03-06 23:09:44 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-03-06 23:09:44 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-03-06 23:09:43 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-03-06 23:09:43 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-03-06 23:09:42 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-03-06 23:09:42 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-03-06 23:09:42 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-03-06 23:09:42 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-03-06 23:09:42 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-03-06 23:09:42 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-03-06 23:09:42 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-03-06 23:09:42 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-03-06 23:09:42 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-03-06 23:09:42 ----A---- C:\Windows\system32\d3dx10.dll
2014-03-06 23:09:41 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-03-06 23:09:41 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-03-06 23:09:41 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-03-06 23:09:41 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-03-06 23:09:40 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-03-06 23:09:40 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-03-06 23:09:40 ----A---- C:\Windows\system32\xinput1_2.dll
2014-03-06 23:09:40 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-03-06 23:09:39 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-03-06 23:09:39 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-03-06 23:09:39 ----A---- C:\Windows\system32\xinput1_1.dll
2014-03-06 23:09:39 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-03-06 23:09:37 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-03-06 23:09:37 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-03-06 23:09:37 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-03-06 23:09:37 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-03-06 23:09:37 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-03-06 23:09:37 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-03-06 23:09:36 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-03-06 23:09:36 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-03-06 23:09:36 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-03-06 23:09:36 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-03-06 23:09:36 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-03-06 23:09:36 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-03-06 23:09:35 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-03-06 23:09:35 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-03-06 23:09:35 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-03-06 23:09:35 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-03-06 23:09:35 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-03-06 23:09:35 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-03-06 23:08:26 ----N---- C:\Windows\system32\MpSigStub.exe
2014-03-06 23:06:32 ----HD---- C:\Program Files (x86)\Creative Installation Information
2014-03-06 23:06:27 ----D---- C:\Program Files\Creative
2014-03-06 23:06:12 ----D---- C:\ProgramData\Creative
2014-03-06 23:06:12 ----A---- C:\Windows\SYSWOW64\cttele32.dll
2014-03-06 23:06:12 ----A---- C:\Windows\system32\cttele64.dll
2014-03-06 23:06:10 ----D---- C:\Program Files (x86)\OpenAL
2014-03-06 23:06:10 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2014-03-06 23:06:10 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2014-03-06 23:06:10 ----A---- C:\Windows\system32\wrap_oal.dll
2014-03-06 23:06:10 ----A---- C:\Windows\system32\OpenAL32.dll
2014-03-06 23:06:09 ----A---- C:\Windows\SYSWOW64\CmdRtr.DLL
2014-03-06 23:06:09 ----A---- C:\Windows\SYSWOW64\APOMngr.DLL
2014-03-06 23:06:09 ----A---- C:\Windows\system32\CmdRtr64.DLL
2014-03-06 23:06:09 ----A---- C:\Windows\system32\APOMgr64.DLL
2014-03-06 23:05:56 ----D---- C:\Windows\SYSWOW64\Data
2014-03-06 23:05:56 ----D---- C:\Windows\system32\Data
2014-03-06 23:05:56 ----D---- C:\Program Files (x86)\Creative
2014-03-06 23:05:56 ----A---- C:\Windows\SYSWOW64\INRES.DLL
2014-03-06 23:05:56 ----A---- C:\Windows\system32\INRES.DLL
2014-03-06 23:05:11 ----D---- C:\Program Files (x86)\Microsoft Security Client
2014-03-06 23:05:00 ----SHD---- C:\Windows\Installer
2014-03-06 23:05:00 ----D---- C:\Program Files\Microsoft Security Client
2014-03-06 23:03:37 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-03-06 23:03:37 ----A---- C:\Windows\system32\rdpcore.dll
2014-03-06 23:03:36 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-03-06 23:01:38 ----D---- C:\Dell
2014-03-06 23:01:06 ----A---- C:\Windows\system32\wups2.dll
2014-03-06 23:01:06 ----A---- C:\Windows\system32\wucltux.dll
2014-03-06 23:01:06 ----A---- C:\Windows\system32\wuaueng.dll
2014-03-06 23:01:06 ----A---- C:\Windows\system32\wuauclt.exe
2014-03-06 23:01:04 ----A---- C:\Windows\system32\wuwebv.dll
2014-03-06 23:01:04 ----A---- C:\Windows\system32\wups.dll
2014-03-06 23:01:04 ----A---- C:\Windows\system32\wudriver.dll
2014-03-06 23:01:04 ----A---- C:\Windows\system32\wuapp.exe
2014-03-06 23:01:04 ----A---- C:\Windows\system32\wuapi.dll
2014-03-06 23:00:15 ----A---- C:\Windows\system32\RTNUninst64.dll
2014-03-06 23:00:15 ----A---- C:\Windows\system32\RtNicProp64.dll
2014-03-06 23:00:15 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2014-03-06 23:00:12 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-03-06 23:00:12 ----D---- C:\Program Files (x86)\Realtek
2014-03-06 22:59:07 ----D---- C:\Users\radek\AppData\Roaming\Identities
2014-03-06 22:59:03 ----SD---- C:\Users\radek\AppData\Roaming\Microsoft
2014-03-06 22:59:03 ----D---- C:\Users\radek\AppData\Roaming\Media Center Programs
2014-03-06 22:59:00 ----SHD---- C:\ProgramData\Šablony
2014-03-06 22:59:00 ----SHD---- C:\ProgramData\Plocha
2014-03-06 22:59:00 ----SHD---- C:\ProgramData\Oblíbené položky
2014-03-06 22:59:00 ----SHD---- C:\ProgramData\Nabídka Start
2014-03-06 22:59:00 ----SHD---- C:\ProgramData\Dokumenty
2014-03-06 22:59:00 ----SHD---- C:\ProgramData\Data aplikací
2014-03-06 22:59:00 ----D---- C:\Recovery
2014-03-06 22:58:57 ----D---- C:\Windows\SoftwareDistribution
2014-03-06 22:54:52 ----D---- C:\Windows\Prefetch
2014-03-06 22:54:44 ----SHD---- C:\System Volume Information
2014-03-06 22:54:44 ----ASH---- C:\hiberfil.sys
2014-03-06 22:54:20 ----D---- C:\Windows\Panther
2014-03-06 15:42:23 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2014-03-06 15:42:23 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2014-03-06 15:42:23 ----A---- C:\Windows\system32\drivers\iusb3hcs.sys

======List of files/folders modified in the last 1 month======

2014-03-22 14:48:57 ----D---- C:\Windows\system32\config
2014-03-22 14:35:44 ----D---- C:\Windows\System32
2014-03-22 14:35:44 ----D---- C:\Windows\inf
2014-03-22 14:35:44 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-03-22 14:33:57 ----D---- C:\Windows
2014-03-22 14:27:04 ----A---- C:\Windows\system.ini
2014-03-22 14:25:44 ----D---- C:\Windows\SYSWOW64\drivers
2014-03-22 14:25:44 ----D---- C:\Windows\SysWOW64
2014-03-22 14:25:44 ----D---- C:\Windows\AppPatch
2014-03-22 14:25:44 ----D---- C:\Program Files (x86)\Common Files
2014-03-22 14:23:29 ----D---- C:\Windows\system32\drivers
2014-03-22 12:41:42 ----RD---- C:\Program Files (x86)
2014-03-22 10:26:22 ----D---- C:\ProgramData
2014-03-22 09:07:54 ----RD---- C:\Program Files
2014-03-22 08:27:49 ----D---- C:\Windows\system32\catroot2
2014-03-22 08:27:49 ----D---- C:\Windows\Downloaded Program Files
2014-03-22 06:51:42 ----D---- C:\Windows\system32\catroot
2014-03-21 09:03:57 ----D---- C:\Windows\Logs
2014-03-21 08:04:55 ----RSD---- C:\Windows\assembly
2014-03-20 20:01:11 ----D---- C:\Windows\winsxs
2014-03-19 08:11:46 ----D---- C:\Windows\Microsoft.NET
2014-03-18 14:35:58 ----D---- C:\Windows\system32\DriverStore
2014-03-16 14:45:13 ----D---- C:\Windows\system32\wdi
2014-03-16 14:31:18 ----D---- C:\Windows\system32\LogFiles
2014-03-16 14:21:52 ----D---- C:\Windows\LiveKernelReports
2014-03-14 14:38:33 ----D---- C:\Program Files\Internet Explorer
2014-03-14 14:38:33 ----D---- C:\Program Files (x86)\Internet Explorer
2014-03-14 14:32:03 ----D---- C:\Windows\debug
2014-03-12 15:27:02 ----A---- C:\Windows\system32\atiadlxx.dll
2014-03-12 15:26:48 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-03-10 08:02:27 ----D---- C:\Windows\rescache
2014-03-09 21:03:16 ----D---- C:\Windows\Tasks
2014-03-09 21:03:16 ----D---- C:\Windows\system32\Tasks
2014-03-09 14:18:32 ----A---- C:\Windows\win.ini
2014-03-09 14:08:13 ----RSD---- C:\Windows\Fonts
2014-03-09 13:56:18 ----D---- C:\Program Files (x86)\MSBuild
2014-03-09 13:55:52 ----D---- C:\Windows\ShellNew
2014-03-09 13:55:38 ----SD---- C:\ProgramData\Microsoft
2014-03-09 13:55:22 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-03-07 10:32:11 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-03-07 10:32:11 ----D---- C:\Windows\system32\cs-CZ
2014-03-07 10:24:34 ----D---- C:\Windows\SYSWOW64\migration
2014-03-07 10:24:34 ----D---- C:\Windows\SYSWOW64\en-US
2014-03-07 10:24:34 ----D---- C:\Windows\system32\migration
2014-03-07 10:24:34 ----D---- C:\Windows\system32\en-US
2014-03-07 10:24:34 ----D---- C:\Windows\PolicyDefinitions
2014-03-07 10:11:26 ----D---- C:\Windows\SYSWOW64\wbem
2014-03-07 10:11:26 ----D---- C:\Windows\system32\wbem
2014-03-07 10:11:26 ----D---- C:\Windows\system32\drivers\en-US
2014-03-07 10:11:26 ----D---- C:\Program Files\Windows Media Player
2014-03-07 10:11:26 ----D---- C:\Program Files\Windows Defender
2014-03-07 10:11:26 ----D---- C:\Program Files (x86)\Windows Media Player
2014-03-07 10:11:26 ----D---- C:\Program Files (x86)\Windows Defender
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\it-IT
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\es-ES
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\el-GR
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\de-DE
2014-03-07 10:11:24 ----D---- C:\Windows\SYSWOW64\da-DK
2014-03-07 10:11:23 ----D---- C:\Windows\system32\zh-TW
2014-03-07 10:11:23 ----D---- C:\Windows\system32\zh-HK
2014-03-07 10:11:23 ----D---- C:\Windows\system32\zh-CN
2014-03-07 10:11:23 ----D---- C:\Windows\system32\tr-TR
2014-03-07 10:11:23 ----D---- C:\Windows\system32\sv-SE
2014-03-07 10:11:23 ----D---- C:\Windows\system32\ru-RU
2014-03-07 10:11:23 ----D---- C:\Windows\system32\pt-PT
2014-03-07 10:11:23 ----D---- C:\Windows\system32\pt-BR
2014-03-07 10:11:23 ----D---- C:\Windows\system32\pl-PL
2014-03-07 10:11:23 ----D---- C:\Windows\system32\nl-NL
2014-03-07 10:11:23 ----D---- C:\Windows\system32\nb-NO
2014-03-07 10:11:23 ----D---- C:\Windows\system32\ko-KR
2014-03-07 10:11:23 ----D---- C:\Windows\system32\ja-JP
2014-03-07 10:11:23 ----D---- C:\Windows\system32\it-IT
2014-03-07 10:11:23 ----D---- C:\Windows\system32\hu-HU
2014-03-07 10:11:23 ----D---- C:\Windows\system32\fr-FR
2014-03-07 10:11:23 ----D---- C:\Windows\system32\fi-FI
2014-03-07 10:11:23 ----D---- C:\Windows\system32\es-ES
2014-03-07 10:11:23 ----D---- C:\Windows\system32\el-GR
2014-03-07 10:11:23 ----D---- C:\Windows\system32\de-DE
2014-03-07 10:11:23 ----D---- C:\Windows\system32\da-DK
2014-03-07 10:11:23 ----D---- C:\Program Files\Windows Journal
2014-03-07 09:04:21 ----D---- C:\Program Files\Common Files
2014-03-07 08:51:19 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-03-07 08:51:19 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-03-07 08:51:19 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-03-07 08:51:19 ----D---- C:\Program Files (x86)\Windows Mail
2014-03-07 08:51:18 ----D---- C:\Windows\SYSWOW64\Setup
2014-03-07 08:51:18 ----D---- C:\Windows\SYSWOW64\oobe
2014-03-07 08:51:18 ----D---- C:\Windows\SYSWOW64\cs
2014-03-07 08:51:18 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-03-07 08:51:18 ----D---- C:\Windows\servicing
2014-03-07 08:51:18 ----D---- C:\Windows\ehome
2014-03-07 08:51:18 ----D---- C:\Program Files\Windows Sidebar
2014-03-07 08:51:18 ----D---- C:\Program Files\Windows Portable Devices
2014-03-07 08:51:18 ----D---- C:\Program Files\Windows Photo Viewer
2014-03-07 08:51:18 ----D---- C:\Program Files\Windows Mail
2014-03-07 08:51:18 ----D---- C:\Program Files\DVD Maker
2014-03-07 08:51:18 ----D---- C:\Program Files\Common Files\System
2014-03-07 08:51:17 ----D---- C:\Windows\SYSWOW64\sppui
2014-03-07 08:51:17 ----D---- C:\Windows\SYSWOW64\migwiz
2014-03-07 08:51:17 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-03-07 08:51:17 ----D---- C:\Windows\SYSWOW64\Dism
2014-03-07 08:51:16 ----D---- C:\Windows\system32\sppui
2014-03-07 08:51:16 ----D---- C:\Windows\system32\Setup
2014-03-07 08:51:16 ----D---- C:\Windows\system32\oobe
2014-03-07 08:51:16 ----D---- C:\Windows\system32\migwiz
2014-03-07 08:51:16 ----D---- C:\Windows\system32\manifeststore
2014-03-07 08:51:16 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-03-07 08:51:16 ----D---- C:\Windows\system32\Dism
2014-03-07 08:51:16 ----D---- C:\Windows\system32\cs
2014-03-07 08:51:16 ----D---- C:\Windows\system32\AdvancedInstallers
2014-03-07 08:51:13 ----D---- C:\Windows\system32\Boot
2014-03-07 08:48:57 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-03-07 08:48:57 ----A---- C:\Windows\system32\msclmd.dll
2014-03-06 23:06:55 ----D---- C:\Windows\system32\CodeIntegrity
2014-03-06 23:00:09 ----D---- C:\Windows\system32\restore
2014-03-06 22:59:03 ----RD---- C:\Users
2014-03-06 22:59:00 ----D---- C:\Program Files\Windows NT
2014-03-06 22:56:20 ----D---- C:\Windows\system32\sysprep

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-05-21 19264]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-09-27 248240]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R2 amdacpksd;ACP Kernel Service Driver; \??\C:\Windows\system32\drivers\amdacpksd.sys [2014-03-12 273632]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-09-27 134944]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; C:\Windows\system32\DRIVERS\stflt.sys [2014-03-07 51496]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-03-12 13929984]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-03-12 636928]
R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2011-08-22 202840]
R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2011-08-22 580696]
R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2011-08-22 687192]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2011-08-22 1417304]
R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2011-08-22 15960]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2011-08-22 213080]
R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2011-08-22 118360]
R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2011-08-22 1561688]
R3 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [2013-07-02 24824]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-05-21 357184]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-05-21 789824]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-17 62784]
R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2011-08-22 179288]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-10-25 769168]
R3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Users\radek\AppData\Local\Temp\tmp5494.tmp []
R3 XENfiltv;XENfiltv; C:\Windows\system32\drivers\XENfiltv.sys [2009-07-31 25600]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-12-19 94720]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2011-08-22 202840]
S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2011-08-22 1417304]
S3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2011-08-22 94808]
S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2011-08-22 94808]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 xnacc;Služba ovladače pro řadič XBOX 360 pro systém Windows; C:\Windows\system32\DRIVERS\xnacc.sys [2009-07-14 679936]
S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys [2009-08-13 73984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-03-12 240128]
R2 amdacpusrsvc;ACP User Service; C:\AMD\amdacpusrsvc.exe [2014-03-12 82432]
R2 ASGT;ASGT; C:\Windows\SysWOW64\ASGT.exe [2012-01-17 55296]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2011-10-19 423424]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-10-23 23808]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-03-20 75064]
R2 RadeonPro Support Service;RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [2013-11-04 20608]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [2013-10-22 1149104]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-10-23 348376]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-02-25 568512]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12 257928]
S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2014-03-06 79360]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2014-03-06 79360]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 111616]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-03-07 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: TrojanMC

#22 Příspěvek od Márty84 »

:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe a ulozte nejlepe na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
AdobeFlashPlayerUpdateSvc

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SpywareTerminatorShield"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

rado145
Návštěvník
Návštěvník
Příspěvky: 64
Registrován: 22 bře 2014 08:49

Re: TrojanMC

#23 Příspěvek od rado145 »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: radek
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 9276269 bytes
->FireFox cache emptied: 4178626 bytes
->Flash cache emptied: 506 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 602112 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1826 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 43644 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 43282777 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 55,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: radek
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

Error creating restore point.
========== SERVICES/DRIVERS ==========
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorShield not found.

OTM by OldTimer - Version 3.1.21.0 log created on 03222014_154905

Files moved on Reboot...
C:\Users\radek\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\radek\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: TrojanMC

#24 Příspěvek od Márty84 »

:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow: Prejmenujte ComboFix na Uninstall a spustte ho. CF by se mel odinstalovat.

:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.piriform.com/ccleaner/download/slim a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc. Jestli vse pujde jak ma, mame hotovo.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

rado145
Návštěvník
Návštěvník
Příspěvky: 64
Registrován: 22 bře 2014 08:49

Re: TrojanMC

#25 Příspěvek od rado145 »

Vše jsem nainstaloval dle návodu a počítač pracuje jak má.Děkuji za pomoc

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: TrojanMC

#26 Příspěvek od Márty84 »

Neni zac! :)

Mejte se a treba zase nekdy :bye:

:closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno