Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnych

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#16 Příspěvek od michelangelo »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladimir at 2014-07-28 15:26:43
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 402 GB (86%) free of 469 GB
Total RAM: 16236 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:26:49, on 28.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17207)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\PROGRAMS\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Acer Bio Protection\EgisTSR.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Vladimir.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll
O2 - BHO: EgisPBIE - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\Acer Bio Protection\EgisPBIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [VitaKeyTSR] "C:\Program Files (x86)\Acer Bio Protection\EgisTSR.exe" /run
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "C:\PROGRAMS\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKCU\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
O4 - HKCU\..\Run: [Bitdefender Wallet] "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
O4 - HKCU\..\Run: [Bitdefender Wallet Application Agent] "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] msiexec.exe /qn /x{voidguid} (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EgisTec Service - Egis Technology Inc. - C:\Program Files (x86)\Acer Bio Protection\EgisService.exe
O23 - Service: EgisTec Ticket Service - Egis Technology Inc. - C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
O23 - Service: SafeBox - Bitdefender - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: Intel(R) Turbo Boost Technology Monitor 2.0 (TurboBoost) - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: Bitdefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11823 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\Bitdefender\Bitdefender\vsserv.exe" /service
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Acer Bio Protection\EgisService.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 23708272
\??\C:\Windows\system32\conhost.exe "-9176292771917784919651960578-173020902118922996161391745250-52328550-1436546768
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe"
"C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe" /service
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe"
WLIDSvcM.exe 2940
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
"C:\Program Files\Bitdefender\Bitdefender\bdagent.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\igfxext.exe -Embedding
"C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
"C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
C:\Windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Dolby PCEE4\pcee4.exe" -autostart
"C:\PROGRAMS\Acronis\TrueImageHome\TrueImageMonitor.exe"
"C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Acer Bio Protection\EgisTSR.exe"
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "http://forum.viry.cz/viewtopic.php?f=13&t=139387"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3120.0.963901825\1908764881" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,5,16 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2345 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --renderer-print-preview --enable-threaded-compositing --enable-delegated-renderer --disable-accelerated-video-decode --channel="3120.1.110254714\101976623" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group9 pct:10i stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SettingsEnforcement/no_enforcement/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-threaded-compositing --enable-delegated-renderer --disable-accelerated-video-decode --channel="3120.2.527375084\44143829" /prefetch:673131151

"C:\Users\Vladimir\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A}]
Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll [2014-02-17 193992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9}]
EgisPBIE Class - C:\Program Files (x86)\Acer Bio Protection\x64\EgisPBIE.dll [2011-01-11 858160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A}]
Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll [2014-02-17 156400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9}]
EgisPBIE Class - C:\Program Files (x86)\Acer Bio Protection\EgisPBIE.dll [2011-01-11 635440]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-03-31 167960]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-03-31 392216]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-03-31 415768]
"IntelTBRunOnce"=wscript.exe //b //nologo C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs []
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-05-18 11855976]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-05-17 2226280]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2011-02-22 1796200]
"Acronis Scheduler2 Service"=C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [2013-07-18 518424]
"Bdagent"=C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [2014-05-21 1743088]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-04-30 2199840]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27 558496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Bitdefender Wallet Agent"=C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [2014-05-20 568400]
"Bitdefender Wallet"=C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [2014-04-09 1002048]
"Bitdefender Wallet Application Agent"=C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [2014-04-09 614744]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-07-23 6265624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acer VCM.lnk]
C:\PROGRA~2\Acer\ACERVC~1\AcerVCM.exe [2010-10-05 704104]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-13 283160]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2010-11-05 407920]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2010-11-05 202096]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2011-02-11 1070160]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"Dolby Home Theater v4"=C:\Dolby PCEE4\pcee4.exe [2011-02-03 506712]
"VitaKeyTSR"=C:\Program Files (x86)\Acer Bio Protection\EgisTSR.exe [2011-01-11 189488]
"TrueImageMonitor.exe"=C:\PROGRAMS\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-11-22 7805824]
"AcronisTibMounterMonitor"=C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-10-10 1102192]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-07-22 2694040]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-03-26 385024]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
EgisPwdFilter
EgisDSPwdFilter

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-07-28 13:19:13 ----D---- C:\ProgramData\Malwarebytes
2014-07-28 12:16:34 ----A---- C:\Windows\SYSWOW64\sqlite3.dll
2014-07-28 12:16:13 ----D---- C:\AdwCleaner
2014-07-28 12:11:12 ----A---- C:\Windows\wininit.ini
2014-07-28 11:22:45 ----A---- C:\Windows\system32\mfds.dll
2014-07-28 11:15:37 ----D---- C:\rsit
2014-07-28 11:15:37 ----D---- C:\Program Files\trend micro
2014-07-28 07:56:15 ----A---- C:\autoexec.bat
2014-07-28 07:55:58 ----D---- C:\Program Files\Enigma Software Group
2014-07-28 07:55:42 ----D---- C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-07-28 07:42:54 ----D---- C:\Program Files\CCleaner
2014-07-27 23:00:24 ----A---- C:\Windows\SYSWOW64\subinacl.exe
2014-07-27 23:00:23 ----D---- C:\Program Files\Common Files\Microsoft
2014-07-27 23:00:23 ----D---- C:\Program Files\Adware-Removal-Tool
2014-07-27 22:09:37 ----D---- C:\ProgramData\Spybot - Search & Destroy
2014-07-27 22:09:30 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-07-27 21:46:45 ----D---- C:\Program Files\Common Files\Goobzo
2014-07-27 21:45:45 ----D---- C:\Program Files (x86)\Seznam.cz
2014-07-27 21:45:16 ----D---- C:\Users\Vladimir\AppData\Roaming\Seznam.cz
2014-07-27 21:45:02 ----D---- C:\ProgramData\Standard
2014-07-27 21:37:40 ----D---- C:\ProgramData\Package Cache
2014-07-27 21:24:38 ----D---- C:\Windows\pss
2014-07-27 21:18:30 ----D---- C:\Windows\SYSWOW64\NV
2014-07-27 21:18:30 ----D---- C:\Windows\system32\NV
2014-07-27 21:12:13 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-07-27 21:12:13 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-07-27 21:12:13 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-07-27 21:12:13 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-07-27 21:12:13 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-07-27 21:12:13 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-07-27 21:11:51 ----D---- C:\Program Files (x86)\AGEIA Technologies
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nvvsvc.exe
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nvsvcr.dll
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nvsvc64.dll
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nvshext.dll
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nvmctray.dll
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nvcpl.dll
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nv3dappshextr.dll
2014-07-27 21:11:41 ----A---- C:\Windows\system32\nv3dappshext.dll
2014-07-27 21:11:31 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-07-27 21:11:31 ----A---- C:\Windows\system32\OpenCL.dll
2014-07-27 21:11:28 ----D---- C:\ProgramData\NVIDIA Corporation
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-07-27 21:07:06 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvumdshimx.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvopencl.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvoglv64.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvoglshim64.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvinitx.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\NvIFR64.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\NvFBC64.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvdispgenco6433788.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvdispco6433788.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvcuvid.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvcuvenc.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvcuda.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvcompiler.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\nvapi64.dll
2014-07-27 21:07:06 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2014-07-27 21:07:06 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-07-27 18:11:03 ----A---- C:\Windows\system32\bdsandboxuiskin32.dll
2014-07-27 17:37:08 ----A---- C:\bdlog.txt
2014-07-27 17:12:18 ----A---- C:\Windows\system32\WdfCoInstaller01009.dll
2014-07-27 17:12:17 ----D---- C:\ProgramData\BDLogging
2014-07-27 17:12:04 ----A---- C:\Windows\system32\drivers\bdvedisk.sys
2014-07-27 17:11:42 ----A---- C:\Windows\SYSWOW64\bdsandboxuiskin32.dll
2014-07-27 17:11:42 ----A---- C:\Windows\system32\drivers\bdsandbox.sys
2014-07-27 17:11:42 ----A---- C:\Windows\system32\drivers\BdfNdisf6.sys
2014-07-27 17:11:42 ----A---- C:\Windows\capicom.dll
2014-07-27 17:11:40 ----A---- C:\Windows\system32\drivers\avchv.sys
2014-07-27 17:11:40 ----A---- C:\Windows\system32\drivers\avckf.sys
2014-07-27 17:11:40 ----A---- C:\Windows\system32\drivers\avc3.sys
2014-07-27 17:07:48 ----D---- C:\Users\Vladimir\AppData\Roaming\Media Player Classic
2014-07-27 17:00:28 ----D---- C:\Users\Vladimir\AppData\Roaming\Bitdefender
2014-07-27 16:58:17 ----D---- C:\ProgramData\Bitdefender
2014-07-27 16:58:17 ----A---- C:\Windows\system32\drivers\gzflt.sys
2014-07-27 16:58:17 ----A---- C:\Windows\system32\BDSandBoxUISkin.dll
2014-07-27 16:58:17 ----A---- C:\Windows\system32\BDSandBoxUH.dll
2014-07-27 16:58:16 ----D---- C:\Program Files\Bitdefender
2014-07-27 16:58:16 ----A---- C:\Windows\system32\drivers\trufos.sys
2014-07-27 16:57:50 ----D---- C:\Users\Vladimir\AppData\Roaming\QuickScan
2014-07-27 16:51:40 ----D---- C:\Windows\OEMTemp
2014-07-27 16:50:06 ----D---- C:\Program Files\Common Files\Bitdefender
2014-07-26 23:08:31 ----A---- C:\Windows\system32\perfi005.dat
2014-07-26 23:08:31 ----A---- C:\Windows\system32\perfh005.dat
2014-07-26 23:08:31 ----A---- C:\Windows\system32\perfd005.dat
2014-07-26 23:08:31 ----A---- C:\Windows\system32\perfc005.dat
2014-07-26 23:08:09 ----D---- C:\Windows\SYSWOW64\cs
2014-07-26 23:08:08 ----D---- C:\Windows\SYSWOW64\XPSViewer
2014-07-26 23:08:08 ----D---- C:\Windows\SYSWOW64\drivers\cs-CZ
2014-07-26 23:08:08 ----D---- C:\Windows\system32\cs
2014-07-26 23:08:08 ----D---- C:\Windows\cs-CZ
2014-07-26 23:08:07 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-07-26 23:02:16 ----D---- C:\Windows\NAPP_Dism_Log
2014-07-26 22:52:06 ----D---- C:\Program Files\Microsoft Silverlight
2014-07-26 22:52:06 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-07-26 22:09:55 ----A---- C:\Windows\system32\drivers\afcdp.sys
2014-07-26 22:09:54 ----D---- C:\ProgramData\Acronis
2014-07-26 22:09:53 ----A---- C:\Windows\system32\drivers\tdrpman.sys
2014-07-26 22:09:52 ----A---- C:\Windows\system32\drivers\tib_mounter.sys
2014-07-26 22:09:51 ----A---- C:\Windows\system32\drivers\tib.sys
2014-07-26 22:09:49 ----A---- C:\Windows\system32\drivers\vidsflt.sys
2014-07-26 22:09:49 ----A---- C:\Windows\system32\drivers\vididr.sys
2014-07-26 22:09:47 ----A---- C:\Windows\system32\drivers\snapman.sys
2014-07-26 22:09:47 ----A---- C:\Windows\system32\drivers\fltsrv.sys
2014-07-26 22:09:37 ----D---- C:\PROGRAMS
2014-07-26 21:53:59 ----D---- C:\Users\Vladimir\AppData\Roaming\Acronis
2014-07-26 19:42:52 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-07-26 19:42:52 ----A---- C:\Windows\system32\mstscax.dll
2014-07-26 19:42:48 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-07-26 19:42:48 ----A---- C:\Windows\system32\rdpcorets.dll
2014-07-26 19:32:01 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-07-26 19:32:00 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-07-26 19:32:00 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-07-26 19:32:00 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-07-26 19:32:00 ----A---- C:\Windows\system32\tsgqec.dll
2014-07-26 19:32:00 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-07-26 19:31:59 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-07-26 19:31:59 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-07-26 19:31:59 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-07-26 19:31:59 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-07-26 19:31:59 ----A---- C:\Windows\system32\wksprtPS.dll
2014-07-26 19:31:59 ----A---- C:\Windows\system32\wksprt.exe
2014-07-26 19:31:59 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-07-26 19:31:59 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-07-26 19:31:59 ----A---- C:\Windows\system32\mstsc.exe
2014-07-26 19:31:59 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-07-26 19:31:39 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-07-26 19:31:39 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys
2014-07-26 19:31:39 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-07-26 19:31:38 ----A---- C:\Windows\system32\rdpudd.dll
2014-07-26 19:31:38 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-07-26 19:13:27 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-07-26 19:13:27 ----A---- C:\Windows\explorer.exe
2014-07-26 19:13:26 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-07-26 19:13:26 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-07-26 19:13:26 ----A---- C:\Windows\system32\d3d10warp.dll
2014-07-26 19:13:26 ----A---- C:\Windows\system32\d2d1.dll
2014-07-26 19:13:25 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-07-26 19:13:25 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-07-26 19:13:25 ----A---- C:\Windows\system32\WMPhoto.dll
2014-07-26 19:13:25 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-07-26 19:13:25 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-26 19:13:19 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-07-26 19:13:19 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-07-26 19:13:19 ----A---- C:\Windows\system32\fsutil.exe
2014-07-26 19:13:19 ----A---- C:\Windows\system32\esent.dll
2014-07-26 19:13:19 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-07-26 19:13:19 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-07-26 19:13:19 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-07-26 19:13:19 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-07-26 19:13:19 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-07-26 19:13:19 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-07-26 19:13:16 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2014-07-26 19:13:16 ----A---- C:\Windows\system32\drivers\bthport.sys
2014-07-26 19:13:15 ----A---- C:\Windows\system32\spoolsv.exe
2014-07-26 19:13:15 ----A---- C:\Windows\splwow64.exe
2014-07-26 19:08:23 ----D---- C:\Program Files (x86)\Google
2014-07-26 19:06:09 ----D---- C:\Users\Vladimir\AppData\Roaming\Adobe
2014-07-26 19:01:14 ----SD---- C:\Windows\system32\CompatTel
2014-07-26 19:01:04 ----D---- C:\Windows\SYSWOW64\Wat
2014-07-26 19:01:04 ----D---- C:\Windows\system32\Wat
2014-07-26 18:58:30 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-07-26 18:58:30 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-07-26 18:58:30 ----A---- C:\Windows\system32\wmploc.DLL
2014-07-26 18:58:29 ----A---- C:\Windows\system32\wmp.dll
2014-07-26 18:52:48 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-07-26 18:51:27 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-07-26 18:51:26 ----D---- C:\Windows\Migration
2014-07-26 18:47:37 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-07-26 18:43:12 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\url.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-07-26 18:43:04 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\wininet.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\wextract.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\webcheck.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\vbscript.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\urlmon.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\url.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\pngfilt.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\occache.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\msrating.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\msls31.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\mshtmler.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\mshtmled.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\mshtml.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\mshta.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\msfeedssync.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\msfeeds.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\licmgr10.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\jsproxy.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\jsIntl.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\jscript9diag.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\jscript9.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\jscript.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\inseng.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\imgutil.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iexpress.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieUnatt.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieui.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iesysprep.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iesetup.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iertutil.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iernonce.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iepeers.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieframe.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\iedkcs32.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieapfltr.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ieapfltr.dat
2014-07-26 18:43:04 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\ie4uinit.exe
2014-07-26 18:43:04 ----A---- C:\Windows\system32\icardie.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\elshyph.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\dxtrans.dll
2014-07-26 18:43:04 ----A---- C:\Windows\system32\dxtmsft.dll
2014-07-26 18:33:28 ----D---- C:\Windows\system32\MRT
2014-07-26 18:33:26 ----A---- C:\Windows\system32\MRT.exe
2014-07-26 18:31:57 ----A---- C:\Windows\system32\browserchoice.exe
2014-07-26 18:28:10 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-07-26 18:28:10 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-07-26 18:28:07 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-07-26 18:28:07 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-07-26 18:28:06 ----A---- C:\Windows\system32\WUDFx.dll
2014-07-26 18:28:06 ----A---- C:\Windows\system32\WUDFHost.exe
2014-07-26 18:28:06 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-07-26 18:09:51 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-07-26 18:09:51 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-07-26 18:09:51 ----A---- C:\Windows\system32\UIAnimation.dll
2014-07-26 18:09:51 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-07-26 18:09:48 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-07-26 18:09:48 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-07-26 18:09:48 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-07-26 18:09:48 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-07-26 18:09:48 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-07-26 18:09:48 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-07-26 18:09:48 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-07-26 18:09:48 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-07-26 18:09:48 ----A---- C:\Windows\system32\dxgi.dll
2014-07-26 18:09:48 ----A---- C:\Windows\system32\d3d10level9.dll
2014-07-26 18:09:48 ----A---- C:\Windows\system32\d3d10core.dll
2014-07-26 18:09:48 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-07-26 18:09:48 ----A---- C:\Windows\system32\d3d10_1.dll
2014-07-26 18:09:47 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-07-26 18:09:47 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-07-26 18:09:47 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-07-26 18:09:47 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-07-26 18:09:47 ----A---- C:\Windows\system32\XpsPrint.dll
2014-07-26 18:09:47 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-07-26 18:09:47 ----A---- C:\Windows\system32\FntCache.dll
2014-07-26 18:09:47 ----A---- C:\Windows\system32\DWrite.dll
2014-07-26 18:09:47 ----A---- C:\Windows\system32\d3d10.dll
2014-07-26 18:09:04 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-07-26 18:09:04 ----A---- C:\Windows\system32\wmi.dll
2014-07-26 18:09:04 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-07-26 18:01:32 ----A---- C:\Windows\system32\aepdu.dll
2014-07-26 18:01:32 ----A---- C:\Windows\system32\aeinv.dll
2014-07-26 18:01:30 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-07-26 18:01:30 ----A---- C:\Windows\system32\mswsock.dll
2014-07-26 18:01:09 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-07-26 18:01:09 ----A---- C:\Windows\system32\wintrust.dll
2014-07-26 18:01:04 ----A---- C:\Windows\system32\ncsi.dll
2014-07-26 18:01:03 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-07-26 18:01:03 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-07-26 18:01:03 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-07-26 18:01:03 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-07-26 18:01:03 ----A---- C:\Windows\system32\nlasvc.dll
2014-07-26 18:01:03 ----A---- C:\Windows\system32\nlaapi.dll
2014-07-26 18:01:03 ----A---- C:\Windows\system32\netevent.dll
2014-07-26 18:01:03 ----A---- C:\Windows\system32\netcorehc.dll
2014-07-26 18:01:03 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-07-26 18:01:03 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-07-26 18:00:39 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-07-26 18:00:39 ----A---- C:\Windows\system32\certutil.exe
2014-07-26 18:00:38 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-07-26 18:00:38 ----A---- C:\Windows\system32\certenc.dll
2014-07-26 18:00:30 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-07-26 18:00:30 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-07-26 18:00:30 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-07-26 18:00:30 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-07-26 18:00:30 ----A---- C:\Windows\system32\credui.dll
2014-07-26 18:00:30 ----A---- C:\Windows\system32\authui.dll
2014-07-26 18:00:26 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-07-26 18:00:26 ----A---- C:\Windows\system32\webio.dll
2014-07-26 18:00:24 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-07-26 18:00:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-07-26 18:00:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-07-26 18:00:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-07-26 18:00:20 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-07-26 18:00:20 ----A---- C:\Windows\system32\cryptsvc.dll
2014-07-26 18:00:20 ----A---- C:\Windows\system32\crypt32.dll
2014-07-26 18:00:19 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-07-26 18:00:19 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-07-26 18:00:19 ----A---- C:\Windows\system32\cryptnet.dll
2014-07-26 18:00:10 ----A---- C:\Windows\system32\kernel32.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-07-26 18:00:09 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-07-26 18:00:09 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-07-26 18:00:09 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-07-26 18:00:09 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-07-26 18:00:09 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-07-26 18:00:09 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-07-26 18:00:09 ----A---- C:\Windows\system32\wow64win.dll
2014-07-26 18:00:09 ----A---- C:\Windows\system32\wow64cpu.dll
2014-07-26 18:00:09 ----A---- C:\Windows\system32\wow64.dll
2014-07-26 18:00:09 ----A---- C:\Windows\system32\winsrv.dll
2014-07-26 18:00:09 ----A---- C:\Windows\system32\ntvdm64.dll
2014-07-26 18:00:09 ----A---- C:\Windows\system32\conhost.exe
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-07-26 18:00:08 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-07-26 18:00:08 ----A---- C:\Windows\SYSWOW64\user.exe
2014-07-26 17:59:53 ----A---- C:\Windows\system32\advapi32.dll
2014-07-26 17:59:52 ----A---- C:\Windows\system32\tdh.dll
2014-07-26 17:59:52 ----A---- C:\Windows\system32\ntdll.dll
2014-07-26 17:59:51 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-07-26 17:59:51 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-07-26 17:59:51 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-07-26 17:59:47 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-07-26 17:59:47 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-07-26 17:59:47 ----A---- C:\Windows\system32\Wpc.dll
2014-07-26 17:59:47 ----A---- C:\Windows\system32\gameux.dll
2014-07-26 17:59:40 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-07-26 17:59:39 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-07-26 17:59:39 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-07-26 17:59:39 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-07-26 17:59:39 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-07-26 17:59:39 ----A---- C:\Windows\system32\msxml6r.dll
2014-07-26 17:59:39 ----A---- C:\Windows\system32\msxml6.dll
2014-07-26 17:59:39 ----A---- C:\Windows\system32\msxml3r.dll
2014-07-26 17:59:39 ----A---- C:\Windows\system32\msxml3.dll
2014-07-26 17:59:37 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-07-26 17:59:37 ----A---- C:\Windows\system32\xmllite.dll
2014-07-26 17:59:36 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-07-26 17:59:36 ----A---- C:\Windows\system32\msvcrt.dll
2014-07-26 17:59:35 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-07-26 17:59:35 ----A---- C:\Windows\system32\comctl32.dll
2014-07-26 17:59:29 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-07-26 17:59:29 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-07-26 17:59:27 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-07-26 17:59:27 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-07-26 17:59:27 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-07-26 17:59:27 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-07-26 17:59:27 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-07-26 17:59:27 ----A---- C:\Windows\system32\lpk.dll
2014-07-26 17:59:27 ----A---- C:\Windows\system32\fontsub.dll
2014-07-26 17:59:27 ----A---- C:\Windows\system32\dciman32.dll
2014-07-26 17:59:27 ----A---- C:\Windows\system32\atmlib.dll
2014-07-26 17:59:27 ----A---- C:\Windows\system32\atmfd.dll
2014-07-26 17:59:26 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-07-26 17:59:24 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-07-26 17:59:24 ----A---- C:\Windows\system32\qedit.dll
2014-07-26 17:59:24 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-07-26 17:58:51 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-07-26 17:58:51 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-07-26 17:58:46 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-07-26 17:58:46 ----A---- C:\Windows\system32\poqexec.exe
2014-07-26 17:58:31 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-07-26 17:58:31 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-07-26 17:58:31 ----A---- C:\Windows\system32\drivers\srv.sys
2014-07-26 17:58:28 ----A---- C:\Windows\system32\shell32.dll
2014-07-26 17:58:27 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-07-26 17:58:18 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-07-26 17:58:18 ----A---- C:\Windows\system32\imagehlp.dll
2014-07-26 17:58:14 ----A---- C:\Windows\system32\win32k.sys
2014-07-26 17:58:13 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-07-26 17:58:13 ----A---- C:\Windows\system32\osk.exe
2014-07-26 17:58:00 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-07-26 17:58:00 ----A---- C:\Windows\system32\msi.dll
2014-07-26 17:57:50 ----A---- C:\Windows\system32\inetcomm.dll
2014-07-26 17:57:50 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-07-26 17:57:50 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-07-26 17:57:49 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-07-26 17:57:43 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-07-26 17:57:43 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-07-26 17:57:42 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-07-26 17:57:42 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-07-26 17:57:41 ----A---- C:\Windows\system32\qdvd.dll
2014-07-26 17:57:38 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-07-26 17:57:38 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-07-26 17:57:33 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-07-26 17:57:33 ----A---- C:\Windows\system32\wer.dll
2014-07-26 17:56:50 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-07-26 17:56:50 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-07-26 17:56:50 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-07-26 17:56:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-07-26 17:56:50 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-07-26 17:56:50 ----A---- C:\Windows\system32\RMActivate.exe
2014-07-26 17:56:49 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-07-26 17:56:49 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-07-26 17:56:49 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-07-26 17:56:49 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-07-26 17:56:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-07-26 17:56:49 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-07-26 17:56:49 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-07-26 17:56:49 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-07-26 17:56:49 ----A---- C:\Windows\system32\secproc_isv.dll
2014-07-26 17:56:49 ----A---- C:\Windows\system32\secproc.dll
2014-07-26 17:56:49 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-07-26 17:56:49 ----A---- C:\Windows\system32\msdrm.dll
2014-07-26 17:56:12 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-07-26 17:56:12 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-07-26 17:56:12 ----A---- C:\Windows\system32\winlogon.exe
2014-07-26 17:56:12 ----A---- C:\Windows\system32\objsel.dll
2014-07-26 17:56:12 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-07-26 17:56:12 ----A---- C:\Windows\system32\KernelBase.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\wincredprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\smss.exe
2014-07-26 17:56:11 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\dimsroam.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\csrsrv.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\cngprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\capiprovider.dll
2014-07-26 17:56:11 ----A---- C:\Windows\system32\adprovider.dll
2014-07-26 17:56:09 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-07-26 17:56:09 ----A---- C:\Windows\system32\apisetschema.dll
2014-07-26 17:55:50 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-07-26 17:55:50 ----A---- C:\Windows\system32\d3d11.dll
2014-07-26 17:55:46 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-07-26 17:55:46 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-07-26 17:55:46 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-07-26 17:55:46 ----A---- C:\Windows\system32\schannel.dll
2014-07-26 17:55:46 ----A---- C:\Windows\system32\ncrypt.dll
2014-07-26 17:55:46 ----A---- C:\Windows\system32\msv1_0.dll
2014-07-26 17:55:46 ----A---- C:\Windows\system32\kerberos.dll
2014-07-26 17:55:45 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-07-26 17:55:45 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-07-26 17:55:45 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-07-26 17:55:45 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-07-26 17:55:45 ----A---- C:\Windows\system32\wdigest.dll
2014-07-26 17:55:45 ----A---- C:\Windows\system32\TSpkg.dll
2014-07-26 17:55:45 ----A---- C:\Windows\system32\credssp.dll
2014-07-26 17:55:35 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-07-26 17:55:35 ----A---- C:\Windows\system32\EncDec.dll
2014-07-26 17:55:30 ----A---- C:\Windows\system32\Wdfres.dll
2014-07-26 17:55:30 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-07-26 17:55:30 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-07-26 17:54:51 ----A---- C:\Windows\system32\lsasrv.dll
2014-07-26 17:54:51 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-07-26 17:54:51 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-07-26 17:54:51 ----A---- C:\Windows\system32\drivers\cng.sys
2014-07-26 17:54:50 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-07-26 17:54:50 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-07-26 17:54:50 ----A---- C:\Windows\system32\sspisrv.dll
2014-07-26 17:54:50 ----A---- C:\Windows\system32\sspicli.dll
2014-07-26 17:54:50 ----A---- C:\Windows\system32\secur32.dll
2014-07-26 17:54:50 ----A---- C:\Windows\system32\lsass.exe
2014-07-26 17:54:43 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-07-26 17:54:42 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-07-26 17:54:39 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-07-26 17:54:39 ----A---- C:\Windows\system32\dpnet.dll
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-07-26 17:54:38 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-07-26 17:54:38 ----A---- C:\Windows\system32\tquery.dll
2014-07-26 17:54:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-07-26 17:54:38 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-07-26 17:54:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-07-26 17:54:38 ----A---- C:\Windows\system32\mssvp.dll
2014-07-26 17:54:38 ----A---- C:\Windows\system32\mssrch.dll
2014-07-26 17:54:38 ----A---- C:\Windows\system32\mssphtb.dll
2014-07-26 17:54:38 ----A---- C:\Windows\system32\mssph.dll
2014-07-26 17:54:38 ----A---- C:\Windows\system32\msscntrs.dll
2014-07-26 17:54:29 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-07-26 17:54:29 ----A---- C:\Windows\system32\shdocvw.dll
2014-07-26 17:54:25 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-07-26 17:54:25 ----A---- C:\Windows\system32\ntshrui.dll
2014-07-26 17:54:23 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-07-26 17:54:23 ----A---- C:\Windows\system32\drivers\netio.sys
2014-07-26 17:54:23 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-07-26 17:54:17 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-07-26 17:54:17 ----A---- C:\Windows\system32\iologmsg.dll
2014-07-26 17:54:17 ----A---- C:\Windows\system32\drivers\storport.sys
2014-07-26 17:54:17 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-07-26 17:54:17 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-07-26 17:54:13 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-07-26 17:54:13 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-07-26 17:54:13 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-07-26 17:54:13 ----A---- C:\Windows\system32\rpcrt4.dll
2014-07-26 17:54:13 ----A---- C:\Windows\system32\oleaut32.dll
2014-07-26 17:54:13 ----A---- C:\Windows\system32\oleacc.dll
2014-07-26 17:54:13 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-07-26 17:54:11 ----A---- C:\Windows\system32\taskhost.exe
2014-07-26 17:54:11 ----A---- C:\Windows\system32\localspl.dll
2014-07-26 17:54:05 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-07-26 17:54:05 ----A---- C:\Windows\system32\tzres.dll
2014-07-26 17:53:54 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-07-26 17:53:54 ----A---- C:\Windows\system32\cryptdlg.dll
2014-07-26 17:53:45 ----A---- C:\Windows\system32\drivers\afd.sys
2014-07-26 17:53:42 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-07-26 17:53:42 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-07-26 17:53:42 ----A---- C:\Windows\system32\WebClnt.dll
2014-07-26 17:53:42 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-07-26 17:53:42 ----A---- C:\Windows\system32\davclnt.dll
2014-07-26 17:52:59 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-07-26 17:52:58 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-07-26 17:52:58 ----A---- C:\Windows\system32\usp10.dll
2014-07-26 17:52:56 ----A---- C:\Windows\system32\scavengeui.dll
2014-07-26 17:52:54 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-07-26 17:52:54 ----A---- C:\Windows\system32\rdpwsx.dll
2014-07-26 17:52:54 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-07-26 17:52:53 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-07-26 17:52:53 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-07-26 17:52:53 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-07-26 17:52:32 ----A---- C:\Windows\system32\consent.exe
2014-07-26 17:52:32 ----A---- C:\Windows\system32\appinfo.dll
2014-07-26 17:52:22 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-07-26 17:52:22 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-07-26 17:52:22 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-07-26 17:52:22 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-07-26 17:52:22 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-07-26 17:52:22 ----A---- C:\Windows\system32\odbctrac.dll
2014-07-26 17:52:22 ----A---- C:\Windows\system32\odbccu32.dll
2014-07-26 17:52:22 ----A---- C:\Windows\system32\odbccr32.dll
2014-07-26 17:52:22 ----A---- C:\Windows\system32\odbccp32.dll
2014-07-26 17:52:20 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-07-26 17:52:20 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-07-26 17:52:20 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-07-26 17:52:20 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-07-26 17:52:20 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-07-26 17:52:14 ----A---- C:\Windows\system32\psisdecd.dll
2014-07-26 17:52:13 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-07-26 17:52:11 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-07-26 17:52:11 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-07-26 17:52:11 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-07-26 17:52:11 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-07-26 17:52:11 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-07-26 17:52:09 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-07-26 17:52:09 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-07-26 17:52:09 ----A---- C:\Windows\system32\quartz.dll
2014-07-26 17:52:09 ----A---- C:\Windows\system32\gdi32.dll
2014-07-26 17:52:02 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-07-26 17:52:02 ----A---- C:\Windows\system32\srcore.dll
2014-07-26 17:52:01 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-07-26 17:52:01 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-07-26 17:51:59 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-07-26 17:51:59 ----A---- C:\Windows\system32\win32spl.dll
2014-07-26 17:51:59 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-07-26 17:51:58 ----A---- C:\Windows\system32\profsvc.dll
2014-07-26 17:51:57 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-07-26 17:51:57 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-07-26 17:51:57 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-07-26 17:51:57 ----A---- C:\Windows\system32\wscript.exe
2014-07-26 17:51:57 ----A---- C:\Windows\system32\scrrun.dll
2014-07-26 17:51:57 ----A---- C:\Windows\system32\cscript.exe
2014-07-26 17:51:56 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-07-26 17:51:56 ----A---- C:\Windows\system32\synceng.dll
2014-07-26 17:51:54 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-07-26 17:51:54 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-07-26 17:51:54 ----A---- C:\Windows\system32\netapi32.dll
2014-07-26 17:51:54 ----A---- C:\Windows\system32\browser.dll
2014-07-26 17:51:54 ----A---- C:\Windows\system32\browcli.dll
2014-07-26 17:51:53 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-07-26 17:51:53 ----A---- C:\Windows\system32\wwansvc.dll
2014-07-26 17:51:53 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-07-26 17:51:53 ----A---- C:\Windows\system32\msieftp.dll
2014-07-26 17:51:52 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-07-26 17:51:52 ----A---- C:\Windows\system32\prevhost.exe
2014-07-26 17:51:51 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-07-26 17:45:22 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-07-26 17:45:22 ----A---- C:\Windows\system32\cdosys.dll
2014-07-26 17:45:06 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-07-26 17:45:06 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-07-26 17:45:06 ----A---- C:\Windows\system32\cdd.dll
2014-07-26 17:45:05 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-07-26 17:45:04 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-07-26 17:45:04 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-07-26 17:45:04 ----A---- C:\Windows\system32\nshwfp.dll
2014-07-26 17:45:04 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-07-26 17:45:03 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-07-26 17:45:03 ----A---- C:\Windows\system32\packager.dll
2014-07-26 15:20:13 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-07-26 15:20:13 ----A---- C:\Windows\system32\rdpcore.dll
2014-07-26 15:20:13 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-07-26 15:16:48 ----D---- C:\Users\Vladimir\AppData\Roaming\Intel Corporation
2014-07-26 15:16:44 ----D---- C:\Users\Vladimir\AppData\Roaming\Macromedia
2014-07-26 15:16:24 ----D---- C:\Users\Vladimir\AppData\Roaming\Identities
2014-07-26 15:15:18 ----A---- C:\Windows\system32\wups2.dll
2014-07-26 15:15:18 ----A---- C:\Windows\system32\wucltux.dll
2014-07-26 15:15:18 ----A---- C:\Windows\system32\wuaueng.dll
2014-07-26 15:15:18 ----A---- C:\Windows\system32\wuauclt.exe
2014-07-26 15:15:12 ----D---- C:\Users\Vladimir\AppData\Roaming\CyberLink
2014-07-26 15:15:01 ----A---- C:\Windows\system32\wups.dll
2014-07-26 15:15:01 ----A---- C:\Windows\system32\wudriver.dll
2014-07-26 15:15:01 ----A---- C:\Windows\system32\wuapi.dll
2014-07-26 15:14:52 ----A---- C:\Windows\system32\wuwebv.dll
2014-07-26 15:14:52 ----A---- C:\Windows\system32\wuapp.exe
2014-07-26 15:14:31 ----SD---- C:\Users\Vladimir\AppData\Roaming\Microsoft
2014-07-26 15:14:31 ----D---- C:\Users\Vladimir\AppData\Roaming\Media Center Programs
2014-07-26 15:14:18 ----SHD---- C:\Recovery
2014-07-26 15:14:18 ----SHD---- C:\ProgramData\Šablony
2014-07-26 15:14:18 ----SHD---- C:\ProgramData\Plocha
2014-07-26 15:14:18 ----SHD---- C:\ProgramData\Oblíbené položky
2014-07-26 15:14:18 ----SHD---- C:\ProgramData\Nabídka Start
2014-07-26 15:14:18 ----SHD---- C:\ProgramData\Dokumenty
2014-07-26 15:14:18 ----SHD---- C:\ProgramData\Data aplikací
2014-07-26 13:44:37 ----D---- C:\ProgramData\CLSK
2014-07-26 13:43:01 ----D---- C:\ProgramData\CyberLink
2014-07-26 13:43:01 ----AD---- C:\ProgramData\Temp
2014-07-26 13:39:39 ----D---- C:\Program Files (x86)\Acer Bio Protection
2014-07-26 13:38:00 ----D---- C:\ProgramData\FLEXnet
2014-07-26 13:36:43 ----D---- C:\Program Files (x86)\ArcadeIO
2014-07-26 13:35:22 ----D---- C:\Program Files (x86)\Microsoft Office
2014-07-26 13:34:09 ----D---- C:\ProgramData\boost_interprocess
2014-07-26 13:34:08 ----D---- C:\Program Files (x86)\Microsoft
2014-07-26 13:30:07 ----A---- C:\Windows\system32\drivers\btwrchid.sys
2014-07-26 13:30:07 ----A---- C:\Windows\system32\drivers\btwl2cap.sys
2014-07-26 13:30:07 ----A---- C:\Windows\system32\drivers\btwavdt.sys
2014-07-26 13:30:07 ----A---- C:\Windows\system32\drivers\btwaudio.sys
2014-07-26 13:30:07 ----A---- C:\Windows\system32\drivers\btwampfl.sys
2014-07-26 13:30:07 ----A---- C:\Windows\system32\btwcoins.dll
2014-07-26 13:29:39 ----D---- C:\Program Files\WIDCOMM
2014-07-26 13:28:10 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2014-07-26 13:28:08 ----A---- C:\Windows\SYSWOW64\log.txt
2014-07-26 13:27:31 ----D---- C:\Dolby PCEE4
2014-07-26 13:27:25 ----D---- C:\Windows\SYSWOW64\RTCOM
2014-07-26 13:27:17 ----D---- C:\Program Files\Realtek
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RtPCEE4.DAT
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RtPCEE3.DAT
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\rtkhdaud.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RtHdatEx.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RTHDAEQ1.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RTEQEX3.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RTEQEX2.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RTEQEX1.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RTEQEX0.dat
2014-07-26 13:27:17 ----A---- C:\Windows\system32\drivers\RTConvEQ.dat
2014-07-26 13:27:15 ----N---- C:\Windows\SYSWOW64\SFCOM.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\WavesGUILib.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SRSWOW64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SRSTSX64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SRSTSH64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SRSHP64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SFSS_APO.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SFNHK64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SFCOM64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\SFAPO64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\RtPgEx64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\RtkCfg64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\RtkAPO64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\RtkApi64.dll
2014-07-26 13:27:15 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RTEEP64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RTEEL64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RTEEG64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RTEED64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RTCOM64.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RP3DHT64.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RP3DAA64.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RCoRes64.dat
2014-07-26 13:27:14 ----A---- C:\Windows\system32\RCoInst64.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\R4EEP64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\R4EEL64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\R4EEG64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\R4EED64A.dll
2014-07-26 13:27:14 ----A---- C:\Windows\system32\R4EEA64A.dll
2014-07-26 13:27:13 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-07-26 13:27:13 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2014-07-26 13:27:13 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2014-07-26 13:27:13 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2014-07-26 13:27:13 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2014-07-26 13:27:12 ----HD---- C:\Program Files (x86)\Temp
2014-07-26 13:27:12 ----A---- C:\Windows\system32\FMAPO64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\AERTAR64.dll
2014-07-26 13:27:12 ----A---- C:\Windows\system32\AERTAC64.dll
2014-07-26 13:27:11 ----A---- C:\Windows\RtlExUpd.dll
2014-07-26 13:26:26 ----D---- C:\Program Files (x86)\Renesas Electronics
2014-07-26 13:26:22 ----D---- C:\ProgramData\Downloaded Installations
2014-07-26 13:25:27 ----D---- C:\Program Files\Intel
2014-07-26 13:24:06 ----D---- C:\Program Files (x86)\Launch Manager
2014-07-26 13:23:01 ----N---- C:\Windows\SYSWOW64\NBMatS1SDK.dll
2014-07-26 13:23:01 ----A---- C:\Windows\system32\NBMatS1SDK.dll
2014-07-26 13:22:59 ----A---- C:\Windows\system32\drivers\FPSensor.sys
2014-07-26 13:21:51 ----D---- C:\ProgramData\NVIDIA
2014-07-26 13:21:18 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-07-26 13:20:43 ----D---- C:\Program Files\NVIDIA Corporation
2014-07-26 13:18:21 ----D---- C:\ProgramData\EgisTec
2014-07-26 13:18:10 ----D---- C:\ProgramData\Intel
2014-07-26 13:15:15 ----D---- C:\Windows\SoftwareDistribution
2014-07-26 13:14:56 ----D---- C:\Program Files\Common Files\Intel
2014-07-26 13:12:20 ----SHD---- C:\System Volume Information
2014-07-26 13:12:20 ----ASH---- C:\pagefile.sys
2014-07-26 13:12:20 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2014-07-28 15:26:32 ----D---- C:\Windows\Temp
2014-07-28 15:26:29 ----D---- C:\Windows\system32\drivers
2014-07-28 15:18:47 ----D---- C:\Windows\system32\drivers\etc
2014-07-28 13:19:13 ----HD---- C:\ProgramData
2014-07-28 12:36:34 ----D---- C:\Windows\System32
2014-07-28 12:36:34 ----D---- C:\Windows\inf
2014-07-28 12:36:34 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-07-28 12:35:50 ----D---- C:\Windows\system32\config
2014-07-28 12:16:34 ----D---- C:\Windows\SysWOW64
2014-07-28 12:11:56 ----D---- C:\Windows
2014-07-28 12:11:13 ----SD---- C:\ProgramData\Microsoft
2014-07-28 11:22:51 ----RD---- C:\Program Files
2014-07-28 09:40:49 ----SHD---- C:\Windows\Installer
2014-07-28 09:40:49 ----D---- C:\Windows\system32\Tasks
2014-07-28 07:55:42 ----D---- C:\Program Files (x86)\Common Files
2014-07-28 07:45:36 ----D---- C:\Windows\Panther
2014-07-28 07:45:36 ----D---- C:\Windows\Logs
2014-07-28 07:45:36 ----D---- C:\Windows\debug
2014-07-27 23:00:23 ----D---- C:\Program Files\Common Files
2014-07-27 22:09:30 ----RD---- C:\Program Files (x86)
2014-07-27 21:40:47 ----D---- C:\ProgramData\Adobe
2014-07-27 21:37:20 ----D---- C:\Program Files (x86)\Adobe
2014-07-27 21:20:27 ----D---- C:\Windows\Microsoft.NET
2014-07-27 21:11:53 ----D---- C:\Windows\system32\DriverStore
2014-07-27 21:11:53 ----D---- C:\Windows\system32\catroot
2014-07-27 21:11:21 ----D---- C:\Windows\system32\catroot2
2014-07-27 21:07:14 ----RD---- C:\Users
2014-07-27 18:51:42 ----D---- C:\Windows\Prefetch
2014-07-27 18:46:27 ----D---- C:\Windows\rescache
2014-07-27 17:50:48 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-27 17:50:39 ----D---- C:\Program Files (x86)\Acer
2014-07-27 17:50:32 ----D---- C:\Windows\winsxs
2014-07-27 17:36:19 ----D---- C:\Program Files\Preload
2014-07-27 17:35:23 ----SHD---- C:\$Recycle.Bin
2014-07-27 17:00:47 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-07-27 16:54:40 ----D---- C:\Windows\Tasks
2014-07-27 16:52:28 ----D---- C:\ProgramData\BackupManager
2014-07-27 16:51:40 ----D---- C:\Program Files\Acer
2014-07-27 16:17:56 ----D---- C:\Program Files (x86)\Windows Live
2014-07-27 16:17:43 ----RSD---- C:\Windows\assembly
2014-07-27 16:03:00 ----D---- C:\ProgramData\EgisTec IPS
2014-07-26 23:10:31 ----D---- C:\Windows\SYSWOW64\winrm
2014-07-26 23:10:31 ----D---- C:\Windows\SYSWOW64\WCN
2014-07-26 23:10:31 ----D---- C:\Windows\SYSWOW64\slmgr
2014-07-26 23:10:31 ----D---- C:\Windows\SYSWOW64\en
2014-07-26 23:10:31 ----D---- C:\Windows\SYSWOW64\DriverStore
2014-07-26 23:10:31 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2014-07-26 23:10:31 ----D---- C:\Windows\system32\winrm
2014-07-26 23:10:31 ----D---- C:\Windows\system32\WCN
2014-07-26 23:10:31 ----D---- C:\Windows\system32\slmgr
2014-07-26 23:10:31 ----D---- C:\Windows\system32\en
2014-07-26 23:10:31 ----D---- C:\Windows\system32\Boot
2014-07-26 23:10:31 ----D---- C:\Windows\Speech
2014-07-26 23:10:31 ----D---- C:\Windows\servicing
2014-07-26 23:10:31 ----D---- C:\Windows\en-US
2014-07-26 23:08:09 ----D---- C:\Windows\SYSWOW64\migwiz
2014-07-26 23:08:09 ----D---- C:\Program Files\Windows Sidebar
2014-07-26 23:08:09 ----D---- C:\Program Files\Windows Photo Viewer
2014-07-26 23:08:09 ----D---- C:\Program Files\Windows Mail
2014-07-26 23:08:09 ----D---- C:\Program Files\DVD Maker
2014-07-26 23:08:09 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-07-26 23:08:09 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-07-26 23:08:09 ----D---- C:\Program Files (x86)\Windows Mail
2014-07-26 23:08:08 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2014-07-26 23:08:08 ----D---- C:\Windows\SYSWOW64\MUI
2014-07-26 23:08:08 ----D---- C:\Windows\SYSWOW64\drivers
2014-07-26 23:08:08 ----D---- C:\Windows\SYSWOW64\com
2014-07-26 23:08:08 ----D---- C:\Windows\system32\oobe
2014-07-26 23:08:08 ----D---- C:\Windows\system32\migwiz
2014-07-26 23:08:08 ----D---- C:\Windows\IME
2014-07-26 23:08:07 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2014-07-26 23:08:07 ----D---- C:\Windows\system32\MUI
2014-07-26 23:08:07 ----D---- C:\Windows\system32\com
2014-07-26 22:07:19 ----D---- C:\Windows\system32\drivers\UMDF
2014-07-26 19:43:19 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-07-26 19:43:18 ----D---- C:\Windows\system32\cs-CZ
2014-07-26 19:33:58 ----D---- C:\Windows\SYSWOW64\wbem
2014-07-26 19:33:58 ----D---- C:\Windows\system32\drivers\en-US
2014-07-26 19:33:57 ----D---- C:\Windows\SYSWOW64\en-US
2014-07-26 19:33:57 ----D---- C:\Windows\system32\wbem
2014-07-26 19:33:57 ----D---- C:\Windows\system32\en-US
2014-07-26 19:33:57 ----D---- C:\Windows\PolicyDefinitions
2014-07-26 19:01:30 ----D---- C:\Program Files\Windows Media Player
2014-07-26 19:01:30 ----D---- C:\Program Files (x86)\Windows Media Player
2014-07-26 19:01:28 ----D---- C:\Program Files\Common Files\System
2014-07-26 19:01:27 ----D---- C:\Program Files\Internet Explorer
2014-07-26 19:01:27 ----D---- C:\Program Files (x86)\Internet Explorer
2014-07-26 19:01:24 ----D---- C:\Windows\SYSWOW64\migration
2014-07-26 19:01:21 ----D---- C:\Windows\system32\migration
2014-07-26 19:01:19 ----D---- C:\Windows\AppPatch
2014-07-26 19:01:18 ----D---- C:\Windows\ehome
2014-07-26 19:01:18 ----D---- C:\Program Files\Windows Journal
2014-07-26 19:01:13 ----RSD---- C:\Windows\Fonts
2014-07-26 19:01:13 ----D---- C:\Windows\SYSWOW64\Dism
2014-07-26 19:01:13 ----D---- C:\Windows\system32\Dism
2014-07-26 19:01:08 ----D---- C:\Program Files\Windows Defender
2014-07-26 19:01:08 ----D---- C:\Program Files (x86)\Windows Defender
2014-07-26 18:19:34 ----D---- C:\Windows\system32\LogFiles
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\it-IT
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-07-26 18:14:06 ----D---- C:\Windows\SYSWOW64\el-GR
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\es-ES
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\de-DE
2014-07-26 18:14:05 ----D---- C:\Windows\SYSWOW64\da-DK
2014-07-26 18:14:05 ----D---- C:\Windows\system32\pt-BR
2014-07-26 18:14:04 ----D---- C:\Windows\system32\zh-HK
2014-07-26 18:14:04 ----D---- C:\Windows\system32\tr-TR
2014-07-26 18:14:04 ----D---- C:\Windows\system32\sv-SE
2014-07-26 18:14:04 ----D---- C:\Windows\system32\pt-PT
2014-07-26 18:14:04 ----D---- C:\Windows\system32\pl-PL
2014-07-26 18:14:04 ----D---- C:\Windows\system32\nl-NL
2014-07-26 18:14:04 ----D---- C:\Windows\system32\ko-KR
2014-07-26 18:14:04 ----D---- C:\Windows\system32\it-IT
2014-07-26 18:14:04 ----D---- C:\Windows\system32\hu-HU
2014-07-26 18:14:04 ----D---- C:\Windows\system32\fr-FR
2014-07-26 18:14:04 ----D---- C:\Windows\system32\fi-FI
2014-07-26 18:14:04 ----D---- C:\Windows\system32\es-ES
2014-07-26 18:14:04 ----D---- C:\Windows\system32\el-GR
2014-07-26 18:14:03 ----D---- C:\Windows\system32\zh-TW
2014-07-26 18:14:03 ----D---- C:\Windows\system32\zh-CN
2014-07-26 18:14:03 ----D---- C:\Windows\system32\ru-RU
2014-07-26 18:14:03 ----D---- C:\Windows\system32\ja-JP
2014-07-26 18:14:03 ----D---- C:\Windows\system32\de-DE
2014-07-26 18:14:02 ----D---- C:\Windows\system32\nb-NO
2014-07-26 18:14:02 ----D---- C:\Windows\system32\da-DK
2014-07-26 17:33:46 ----D---- C:\Windows\system32\wdi
2014-07-26 15:16:50 ----D---- C:\Windows\system32\OEM
2014-07-26 15:16:43 ----D---- C:\ProgramData\oem
2014-07-26 15:15:50 ----HD---- C:\OEM
2014-07-26 15:14:18 ----D---- C:\Windows\system32\Recovery
2014-07-26 15:14:18 ----D---- C:\Program Files\Windows NT
2014-07-26 14:51:09 ----D---- C:\Windows\system32\restore
2014-07-26 14:15:14 ----D---- C:\Windows\system32\sysprep
2014-07-26 13:55:04 ----D---- C:\Windows\Help
2014-07-26 13:43:11 ----D---- C:\Windows\system32\CodeIntegrity
2014-07-26 13:39:48 ----D---- C:\Program Files (x86)\EgisTec IPS
2014-07-26 13:39:40 ----D---- C:\Program Files\EgisTec IPS
2014-07-26 13:29:55 ----SD---- C:\Windows\system32\Microsoft
2014-07-26 13:28:07 ----D---- C:\Program Files (x86)\Intel
2014-07-26 13:27:12 ----D---- C:\Program Files (x86)\Realtek
2014-07-26 13:18:38 ----AD---- C:\Windows\DeployWinRE2
2014-07-26 13:14:25 ----D---- C:\Intel

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#17 Příspěvek od michelangelo »

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\Windows\system32\DRIVERS\avc3.sys [2013-12-02 893440]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2014-07-26 116000]
R0 gzflt;gzflt; C:\Windows\system32\DRIVERS\gzflt.sys [2013-08-23 150256]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2011-01-13 439320]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2014-05-20 32544]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2014-07-26 269600]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2014-07-26 1120032]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2014-07-26 198432]
R0 trufos;trufos; C:\Windows\system32\DRIVERS\trufos.sys [2013-08-07 389240]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2014-07-26 161568]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2014-07-26 117024]
R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver; \??\c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2013-11-13 93600]
R1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [2011-11-14 103504]
R1 BDVEDISK;BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [2012-04-17 76944]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 FPSensor;EgisTec-Corp Fingerprint Reader Driver (FPSensor.sys); C:\Windows\System32\Drivers\FPSensor.sys [2014-07-26 35888]
R2 TurboB;Turbo Boost UI Monitor driver; C:\Windows\system32\DRIVERS\TurboB.sys [2010-10-08 19192]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2014-07-26 367200]
R3 avckf;avckf; C:\Windows\system32\DRIVERS\avckf.sys [2013-12-02 635392]
R3 avchv;avchv Function Driver; C:\Windows\system32\DRIVERS\avchv.sys [2012-11-02 261056]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2011-03-01 4720704]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-03-26 12222080]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-05-18 2874856]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-12-10 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-12-10 181248]
R3 qicflt;upper Device Filter Driver; C:\Windows\system32\DRIVERS\qicflt.sys [2010-07-02 29288]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-10-26 406632]
S2 SPDRIVER_1.37.0.202;SPDRIVER_1.37.0.202; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.202\jsdrv.sys []
S3 bdfwfpf_pc;bdfwfpf_pc; \??\C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [2013-07-02 121928]
S3 BDSandBox;BDSandBox; \??\C:\Windows\system32\drivers\bdsandbox.sys [2013-11-04 82824]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 BTWAMPFL;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2010-12-10 349224]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2010-08-20 106536]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2010-09-14 138280]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2010-12-10 39464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2010-09-14 21416]
S3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2014-07-26 1464096]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S4 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [2013-07-18 1142584]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2014-07-26 3869688]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-12-10 953632]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2011-02-11 346704]
R2 EgisTec Service;EgisTec Service; C:\Program Files (x86)\Acer Bio Protection\EgisService.exe [2011-01-11 318000]
R2 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2011-01-11 258096]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-02-22 873064]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-13 13336]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-01-31 244624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-20 325656]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-05-20 927520]
R2 RS_Service;Raw Socket Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [2010-01-30 260640]
R2 SafeBox;SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [2013-07-08 94624]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-10-22 7142320]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-20 2656280]
R2 UPDATESRV;Bitdefender Desktop Update Service; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [2013-10-07 67320]
R2 VSSERV;Bitdefender Virus Shield; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [2014-05-21 1526800]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-26 116648]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-07-26 655624]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-26 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-07-26 111616]
S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2010-10-08 150016]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-07-26 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 BdDesktopParental;Bitdefender Desktop Parental Control; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [2013-11-21 77632]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------


PS—Znamena to, ze mam PC zase ciste a tudiz neni nutno system obnovovat a muzu klidne pokracovat v instalovani SW (pochopitelne s tim, ze si dam pozor na instalatory typu Shark007 codecs atp.)?

PS2—Jinak hadam, ze karantenu AdwCleaneru muzu smazat (obsahuje nekolik ShopperPro slozek souboru), spolecne s .txt reporty celeho dnesniho ocistovani?

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#18 Příspěvek od Márty84 »

:???: Vidite jeste nejake priznaky tech nezadoucich programu?


Preinstalace systemu urcite nutna nebude. Ale dal bych jeste jeden sken, abychom dorazili pripadne zbytky


:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#19 Příspěvek od Márty84 »

Jo a ten ADWCleaner znovu spustte jako spravce a kliknete na Uninstall. Program se odinstaluje a smaze i vse slozky a logy. Nebo by aspon mel :-D
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#20 Příspěvek od michelangelo »

Zkousim to znovu. Behem prvniho skenu vyskocila hlaska, ze na plose nelze vytvorit nejaky soubor. Bohuzel jsem zapomnel jak se jmenoval a o jaky typ slo. Program potom prestal reagovat a zasekl v nasledujicim stavu ↓
Obrázek

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#21 Příspěvek od Márty84 »

Obcas se to stane, ze OTL tuhle chybku vyhodi :roll:

Jestli nedojede...

Spustte ho podle stejneho navodu jeste jednou, ale s timto upravenym skriptem

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#22 Příspěvek od michelangelo »

1/3 OTL

OTL logfile created on: 28.7.2014 16:37:31 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Vladimir\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

15,86 Gb Total Physical Memory | 12,07 Gb Available Physical Memory | 76,12% Memory free
31,71 Gb Paging File | 28,01 Gb Available in Paging File | 88,34% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 458,48 Gb Total Space | 394,38 Gb Free Space | 86,02% Space Free | Partition Type: NTFS
Drive D: | 698,64 Gb Total Space | 330,11 Gb Free Space | 47,25% Space Free | Partition Type: NTFS

Computer Name: VVV | User Name: Vladimir | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014.07.28 15:46:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Vladimir\Desktop\OTL.exe
PRC - [2014.07.26 22:09:53 | 003,869,688 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
PRC - [2014.07.15 11:24:50 | 000,860,488 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014.04.30 20:28:45 | 002,199,840 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
PRC - [2014.04.30 20:28:32 | 001,617,696 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
PRC - [2014.04.09 00:11:34 | 000,614,744 | ---- | M] (Bitdefender) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
PRC - [2013.11.22 13:10:04 | 007,805,824 | ---- | M] (Acronis) -- C:\PROGRAMS\Acronis\TrueImageHome\TrueImageMonitor.exe
PRC - [2013.10.22 20:29:22 | 007,142,320 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
PRC - [2013.10.10 12:41:26 | 001,102,192 | ---- | M] (Acronis International GmbH) -- C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
PRC - [2011.02.11 14:49:46 | 000,332,368 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LMworker.exe
PRC - [2011.02.11 14:49:44 | 001,070,160 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LManager.exe
PRC - [2011.02.11 14:49:44 | 000,346,704 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe
PRC - [2011.01.31 22:55:14 | 000,244,624 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe
PRC - [2011.01.13 03:00:42 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2011.01.13 03:00:38 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011.01.11 17:35:04 | 000,318,000 | ---- | M] (Egis Technology Inc. ) -- C:\Program Files (x86)\Acer Bio Protection\EgisService.exe
PRC - [2011.01.11 17:34:10 | 000,258,096 | ---- | M] (Egis Technology Inc. ) -- C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
PRC - [2011.01.11 17:33:56 | 000,189,488 | ---- | M] (Egis Technology Inc. ) -- C:\Program Files (x86)\Acer Bio Protection\EgisTSR.exe
PRC - [2010.12.20 12:30:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010.12.20 12:30:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010.11.17 09:53:16 | 000,113,288 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
PRC - [2010.11.05 18:54:36 | 000,407,920 | ---- | M] (Egis Technology Inc.) -- C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
PRC - [2010.11.05 18:54:24 | 000,202,096 | ---- | M] (Egis Technology Inc.) -- C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
PRC - [2010.01.30 01:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe


========== Modules (No Company Name) ==========

MOD - [2014.07.26 19:52:51 | 000,475,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\fe51f1fc1d649f0f9278946af8a76ee4\IAStorUtil.ni.dll
MOD - [2014.07.26 19:52:51 | 000,014,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\921a4977671bce1f2f553e9adcdb06ee\IAStorCommon.ni.dll
MOD - [2014.07.26 19:11:21 | 000,774,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\98c91b8d3f1d54c41ada5f37e0935303\System.Runtime.Remoting.ni.dll
MOD - [2014.07.26 19:10:58 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll
MOD - [2014.07.26 19:10:52 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll
MOD - [2014.07.26 19:10:48 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll
MOD - [2014.07.26 19:10:45 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dll
MOD - [2014.07.26 19:10:32 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1d696b2d3de530f7ee971070263667ff\WindowsBase.ni.dll
MOD - [2014.07.26 19:10:30 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll
MOD - [2014.07.26 19:10:21 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll
MOD - [2014.07.15 11:24:48 | 000,353,096 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ppgooglenaclpluginchrome.dll
MOD - [2014.07.15 11:24:44 | 008,537,928 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\pdf.dll
MOD - [2014.07.15 11:24:38 | 000,718,664 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\libglesv2.dll
MOD - [2014.07.15 11:24:36 | 000,126,280 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\libegl.dll
MOD - [2014.07.15 11:24:35 | 001,732,936 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ffmpegsumo.dll
MOD - [2014.03.15 01:05:14 | 000,204,280 | ---- | M] () -- C:\Program Files\Bitdefender\Bitdefender\antispam32\txmlutil.dll
MOD - [2013.11.22 13:03:32 | 000,028,024 | ---- | M] () -- C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll
MOD - [2013.11.22 13:03:28 | 000,036,672 | ---- | M] () -- C:\PROGRAMS\Acronis\TrueImageHome\qt_icontray_ex.dll
MOD - [2013.07.08 14:43:52 | 000,303,104 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2013.07.08 14:43:52 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_cs_b77a5c561934e089\System.Runtime.Remoting.resources.dll


========== Services (SafeList) ==========

SRV:64bit: - [2014.07.26 18:43:04 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014.05.21 12:29:33 | 001,526,800 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender\vsserv.exe -- (VSSERV)
SRV:64bit: - [2013.11.21 19:41:50 | 000,077,632 | ---- | M] (Bitdefender) [Disabled | Stopped] -- C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe -- (BdDesktopParental)
SRV:64bit: - [2013.10.07 12:33:30 | 000,067,320 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe -- (UPDATESRV)
SRV:64bit: - [2013.07.08 15:59:09 | 000,094,624 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe -- (SafeBox)
SRV:64bit: - [2013.05.27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2011.02.22 21:00:46 | 000,873,064 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc)
SRV:64bit: - [2011.01.31 22:55:14 | 000,244,624 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Live Updater Service)
SRV:64bit: - [2010.12.10 15:53:34 | 000,953,632 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
SRV:64bit: - [2010.10.08 02:24:16 | 000,150,016 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost)
SRV - [2014.07.26 22:09:53 | 003,869,688 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv)
SRV - [2014.07.26 13:37:58 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2014.04.30 20:28:32 | 001,617,696 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
SRV - [2013.10.22 20:29:22 | 007,142,320 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe -- (syncagentsrv)
SRV - [2013.09.11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013.07.18 11:52:00 | 001,142,584 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
SRV - [2011.02.11 14:49:44 | 000,346,704 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe -- (DsiWMIService)
SRV - [2011.01.13 03:00:42 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2011.01.11 17:35:04 | 000,318,000 | ---- | M] (Egis Technology Inc. ) [Auto | Running] -- C:\Program Files (x86)\Acer Bio Protection\EgisService.exe -- (EgisTec Service)
SRV - [2011.01.11 17:34:10 | 000,258,096 | ---- | M] (Egis Technology Inc. ) [Auto | Running] -- C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe -- (EgisTec Ticket Service)
SRV - [2010.12.20 12:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010.12.20 12:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010.01.30 01:52:58 | 000,260,640 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe -- (RS_Service)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)
DRV:64bit: - [2014.07.26 22:09:55 | 000,367,200 | ---- | M] (Acronis) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\afcdp.sys -- (afcdp)
DRV:64bit: - [2014.07.26 22:09:53 | 001,464,096 | ---- | M] (Acronis International GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tdrpman.sys -- (tdrpman)
DRV:64bit: - [2014.07.26 22:09:52 | 000,198,432 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tib_mounter.sys -- (tib_mounter)
DRV:64bit: - [2014.07.26 22:09:51 | 001,120,032 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tib.sys -- (tib)
DRV:64bit: - [2014.07.26 22:09:49 | 000,161,568 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vididr.sys -- (vididr)
DRV:64bit: - [2014.07.26 22:09:49 | 000,117,024 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vidsflt.sys -- (vidsflt)
DRV:64bit: - [2014.07.26 22:09:47 | 000,269,600 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\snapman.sys -- (snapman)
DRV:64bit: - [2014.07.26 22:09:47 | 000,116,000 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fltsrv.sys -- (fltsrv)
DRV:64bit: - [2014.07.26 13:22:59 | 000,035,888 | ---- | M] (EgisTec) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\FPSensor.sys -- (FPSensor)
DRV:64bit: - [2014.05.20 04:44:03 | 000,032,544 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
DRV:64bit: - [2013.12.02 12:58:48 | 000,635,392 | ---- | M] (BitDefender) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\avckf.sys -- (avckf)
DRV:64bit: - [2013.12.02 12:56:50 | 000,893,440 | ---- | M] (BitDefender) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avc3.sys -- (avc3)
DRV:64bit: - [2013.11.13 16:41:29 | 000,093,600 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- c:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys -- (BdfNdisf)
DRV:64bit: - [2013.11.04 16:47:36 | 000,082,824 | ---- | M] (BitDefender SRL) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bdsandbox.sys -- (BDSandBox)
DRV:64bit: - [2013.10.02 04:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013.08.23 13:48:49 | 000,150,256 | ---- | M] (BitDefender LLC) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\gzflt.sys -- (gzflt)
DRV:64bit: - [2013.08.07 13:46:28 | 000,389,240 | ---- | M] (BitDefender S.R.L.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\trufos.sys -- (trufos)
DRV:64bit: - [2013.07.02 14:04:11 | 000,121,928 | ---- | M] (Bitdefender SRL) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys -- (bdfwfpf_pc)
DRV:64bit: - [2012.11.02 14:17:46 | 000,261,056 | ---- | M] (BitDefender) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avchv.sys -- (avchv)
DRV:64bit: - [2012.08.23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012.08.23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012.04.17 14:34:26 | 000,076,944 | ---- | M] (BitDefender) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bdvedisk.sys -- (BDVEDISK)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.11.14 20:16:37 | 000,103,504 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys -- (bdfwfpf)
DRV:64bit: - [2011.03.26 10:19:48 | 012,222,080 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.03.01 16:33:16 | 004,720,704 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2011.01.13 02:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010.12.10 13:50:36 | 000,181,248 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2010.12.10 13:50:36 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2010.12.10 10:05:02 | 000,039,464 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)
DRV:64bit: - [2010.12.10 10:04:52 | 000,349,224 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (BTWAMPFL)
DRV:64bit: - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.10.26 05:08:08 | 000,406,632 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010.10.19 10:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010.10.14 19:28:16 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2010.10.08 02:23:38 | 000,019,192 | ---- | M] (Intel(R) Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TurboB.sys -- (TurboB)
DRV:64bit: - [2010.09.14 07:59:16 | 000,138,280 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2010.09.14 07:59:10 | 000,021,416 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2010.08.20 09:21:38 | 000,106,536 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:64bit: - [2010.07.02 01:46:58 | 000,029,288 | ---- | M] (Quanta Computer) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\qicflt.sys -- (qicflt)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,NewTabPageShow = 1
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252}: "URL" = http://www.google.com/search?q={searchT ... utEncoding?}


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,NewTabPageShow = 1
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\..\SearchScopes\{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252}: "URL" = http://www.google.com/search?q={searchT ... utEncoding?}
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect_x86_64: C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\bdThunderbird@bitdefender.com: C:\PROGRAM FILES\BITDEFENDER\BITDEFENDER\BDTBEXT [2014.05.22 15:29:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{41ecbc0b-34d5-4cd4-935f-253a30e2cb7e}: C:\Program Files (x86)\Acer Bio Protection\FFExt [2014.07.26 13:39:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ffpwdman@bitdefender.com: C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ [2014.05.22 15:30:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\bdThunderbird@bitdefender.com: C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014.05.22 15:29:01 | 000,000,000 | ---D | M]


========== Chrome ==========

CHR - homepage:
CHR - plugin: Error reading preferences file
CHR - Extension: Dokumenty Google = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_1\
CHR - Extension: Disk Google = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\
CHR - Extension: YouTube = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: Vyhledávání Google = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: Minimal = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnfhcmjkebafbfikmbkhdpbmfpfjgiog\1.0_0\
CHR - Extension: Peněženka Google = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_1\
CHR - Extension: Modern New Tab Page = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\
CHR - Extension: Gmail = C:\Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\

O1 HOSTS File: ([2014.07.28 07:56:15 | 000,000,000 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Bitdefender Wallet ) - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
O2:64bit: - BHO: (EgisPBIE Class) - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\Acer Bio Protection\x64\EgisPBIE.dll (Egis Technology Inc.)
O2 - BHO: (Bitdefender Wallet) - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\antispam32\pmbxie.dll (Bitdefender)
O2 - BHO: (EgisPBIE Class) - {7B51CCBE-4AF9-44A6-BDAB-D7F7E4C4E6F9} - C:\Program Files (x86)\Acer Bio Protection\EgisPBIE.dll (Egis Technology Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [Acronis Scheduler2 Service] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [Bdagent] C:\Program Files\Bitdefender\Bitdefender\bdagent.exe (Bitdefender)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" File not found
O4:64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Power Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AcronisTibMounterMonitor] C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe (Acronis International GmbH)
O4 - HKLM..\Run: [Adobe Creative Cloud] C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Dolby Home Theater v4] C:\Dolby PCEE4\pcee4.exe (Dolby Laboratories Inc.)
O4 - HKLM..\Run: [EgisTecPMMUpdate] C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [EgisUpdate] C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\PROGRAMS\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKLM..\Run: [VitaKeyTSR] C:\Program Files (x86)\Acer Bio Protection\EgisTSR.exe (Egis Technology Inc. )
O4 - HKU\.DEFAULT..\Run: [Bitdefender Wallet] C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe (Bitdefender)
O4 - HKU\.DEFAULT..\Run: [Bitdefender Wallet Agent] C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Bitdefender)
O4 - HKU\.DEFAULT..\Run: [Bitdefender Wallet Application Agent] C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe (Bitdefender)
O4 - HKU\S-1-5-18..\Run: [Bitdefender Wallet] C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe (Bitdefender)
O4 - HKU\S-1-5-18..\Run: [Bitdefender Wallet Agent] C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Bitdefender)
O4 - HKU\S-1-5-18..\Run: [Bitdefender Wallet Application Agent] C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe (Bitdefender)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-831295870-2414406303-1306686280-1001..\Run: [Bitdefender Wallet] C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe (Bitdefender)
O4 - HKU\S-1-5-21-831295870-2414406303-1306686280-1001..\Run: [Bitdefender Wallet Agent] C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe (Bitdefender)
O4 - HKU\S-1-5-21-831295870-2414406303-1306686280-1001..\Run: [Bitdefender Wallet Application Agent] C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe (Bitdefender)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\..Trusted Domains: localhost ([]http in Internet)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B83E4C17-1C98-4BC3-A2B4-D4F46BADA7C4}: DhcpNameServer = 192.168.2.1
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll (Skype Technologies)
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2014.07.28 07:56:15 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point


Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014.07.28 15:46:02 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Vladimir\Desktop\OTL.exe
[2014.07.28 13:19:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014.07.28 12:16:34 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\Windows\SysWow64\sqlite3.dll
[2014.07.28 12:16:13 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.07.28 11:22:45 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2014.07.28 11:15:37 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2014.07.28 11:15:37 | 000,000,000 | ---D | C] -- C:\rsit
[2014.07.28 07:55:58 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2014.07.28 07:55:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
[2014.07.27 23:00:24 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\subinacl.exe
[2014.07.27 23:00:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft
[2014.07.27 23:00:23 | 000,000,000 | ---D | C] -- C:\Program Files\Adware-Removal-Tool
[2014.07.27 22:09:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2014.07.27 21:46:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Goobzo
[2014.07.27 21:45:55 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Programs
[2014.07.27 21:45:50 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\CrashRpt
[2014.07.27 21:45:16 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Seznam.cz
[2014.07.27 21:45:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Standard
[2014.07.27 21:40:28 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Creative Cloud Files
[2014.07.27 21:37:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2014.07.27 21:28:40 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\Desktop\—
[2014.07.27 21:24:38 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2014.07.27 21:18:30 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\NV
[2014.07.27 21:18:30 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\NV
[2014.07.27 21:12:13 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2014.07.27 21:12:13 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2014.07.27 21:12:13 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2014.07.27 21:12:13 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2014.07.27 21:12:13 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2014.07.27 21:12:13 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2014.07.27 21:12:02 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\NVIDIA Corporation
[2014.07.27 21:12:02 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\NVIDIA
[2014.07.27 21:11:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2014.07.27 21:11:41 | 006,769,096 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcpl.dll
[2014.07.27 21:11:41 | 003,514,144 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvc64.dll
[2014.07.27 21:11:41 | 002,560,968 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvcr.dll
[2014.07.27 21:11:41 | 001,078,616 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nv3dappshext.dll
[2014.07.27 21:11:41 | 000,387,528 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvmctray.dll
[2014.07.27 21:11:41 | 000,076,064 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nv3dappshextr.dll
[2014.07.27 21:11:41 | 000,062,808 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvshext.dll
[2014.07.27 21:11:31 | 000,061,216 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2014.07.27 21:11:31 | 000,052,056 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2014.07.27 21:11:28 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2014.07.27 21:07:06 | 031,387,936 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
[2014.07.27 21:07:06 | 025,256,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
[2014.07.27 21:07:06 | 024,025,376 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
[2014.07.27 21:07:06 | 018,531,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
[2014.07.27 21:07:06 | 017,561,544 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
[2014.07.27 21:07:06 | 017,480,432 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
[2014.07.27 21:07:06 | 016,003,912 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
[2014.07.27 21:07:06 | 014,434,704 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
[2014.07.27 21:07:06 | 011,644,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
[2014.07.27 21:07:06 | 011,599,072 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll
[2014.07.27 21:07:06 | 009,735,256 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
[2014.07.27 21:07:06 | 009,697,640 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
[2014.07.27 21:07:06 | 003,141,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
[2014.07.27 21:07:06 | 003,109,248 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll
[2014.07.27 21:07:06 | 002,953,672 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
[2014.07.27 21:07:06 | 002,785,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvenc.dll
[2014.07.27 21:07:06 | 002,730,208 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
[2014.07.27 21:07:06 | 002,412,376 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvenc.dll
[2014.07.27 21:07:06 | 001,889,112 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6433788.dll
[2014.07.27 21:07:06 | 001,541,576 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6433788.dll
[2014.07.27 21:07:06 | 000,952,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvumdshimx.dll
[2014.07.27 21:07:06 | 000,895,776 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll
[2014.07.27 21:07:06 | 000,892,704 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll
[2014.07.27 21:07:06 | 000,867,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
[2014.07.27 21:07:06 | 000,861,128 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
[2014.07.27 21:07:06 | 000,837,056 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll
[2014.07.27 21:07:06 | 000,354,016 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll
[2014.07.27 21:07:06 | 000,305,600 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
[2014.07.27 21:07:06 | 000,166,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvinitx.dll
[2014.07.27 21:07:06 | 000,146,480 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll
[2014.07.27 21:07:06 | 000,032,544 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvpciflt.sys
[2014.07.27 18:11:03 | 000,074,512 | ---- | C] (BitDefender SRL) -- C:\Windows\SysNative\bdsandboxuiskin32.dll
[2014.07.27 17:50:52 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam
[2014.07.27 17:46:34 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\Documents\Youcam
[2014.07.27 17:12:18 | 001,721,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01009.dll
[2014.07.27 17:12:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender
[2014.07.27 17:12:17 | 000,000,000 | ---D | C] -- C:\ProgramData\BDLogging
[2014.07.27 17:12:04 | 000,076,944 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\bdvedisk.sys
[2014.07.27 17:11:42 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\capicom.dll
[2014.07.27 17:11:42 | 000,093,600 | ---- | C] (BitDefender LLC) -- C:\Windows\SysNative\drivers\BdfNdisf6.sys
[2014.07.27 17:11:42 | 000,082,824 | ---- | C] (BitDefender SRL) -- C:\Windows\SysNative\drivers\bdsandbox.sys
[2014.07.27 17:11:42 | 000,074,512 | ---- | C] (BitDefender SRL) -- C:\Windows\SysWow64\bdsandboxuiskin32.dll
[2014.07.27 17:11:40 | 000,893,440 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avc3.sys
[2014.07.27 17:11:40 | 000,635,392 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avckf.sys
[2014.07.27 17:11:40 | 000,261,056 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avchv.sys
[2014.07.27 17:07:48 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Media Player Classic
[2014.07.27 17:00:28 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Bitdefender
[2014.07.27 16:58:17 | 000,150,256 | ---- | C] (BitDefender LLC) -- C:\Windows\SysNative\drivers\gzflt.sys
[2014.07.27 16:58:17 | 000,084,848 | ---- | C] (BitDefender SRL) -- C:\Windows\SysNative\BDSandBoxUISkin.dll
[2014.07.27 16:58:17 | 000,034,384 | ---- | C] (BitDefender SRL) -- C:\Windows\SysNative\BDSandBoxUH.dll
[2014.07.27 16:58:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Bitdefender
[2014.07.27 16:58:16 | 000,389,240 | ---- | C] (BitDefender S.R.L.) -- C:\Windows\SysNative\drivers\trufos.sys
[2014.07.27 16:58:16 | 000,000,000 | ---D | C] -- C:\Program Files\Bitdefender
[2014.07.27 16:57:50 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\QuickScan
[2014.07.27 16:51:40 | 000,000,000 | ---D | C] -- C:\Windows\OEMTemp
[2014.07.27 16:50:06 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Bitdefender
[2014.07.27 16:50:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Bitdefender
[2014.07.26 23:08:09 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\cs
[2014.07.26 23:08:08 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\XPSViewer
[2014.07.26 23:08:08 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\cs-CZ
[2014.07.26 23:08:08 | 000,000,000 | ---D | C] -- C:\Windows\cs-CZ
[2014.07.26 23:08:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\cs
[2014.07.26 23:08:07 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\cs-CZ
[2014.07.26 23:07:46 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\usbrpm.sys.mui
[2014.07.26 23:07:40 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\fvevol.sys.mui
[2014.07.26 23:07:32 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\nwifi.sys.mui
[2014.07.26 23:07:32 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\qwavedrv.sys.mui
[2014.07.26 23:07:32 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\qwavedrv.sys.mui
[2014.07.26 23:07:30 | 000,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\cs-CZ\BrSerId.sys.mui
[2014.07.26 23:07:30 | 000,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\cs-CZ\BrSerIb.sys.mui
[2014.07.26 23:07:30 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\MTConfig.sys.mui
[2014.07.26 23:07:29 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\serial.sys.mui
[2014.07.26 23:07:29 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\battc.sys.mui
[2014.07.26 23:07:29 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\IPMIDrv.sys.mui
[2014.07.26 23:07:29 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tpm.sys.mui
[2014.07.26 23:07:29 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\parport.sys.mui
[2014.07.26 23:07:28 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mpio.sys.mui
[2014.07.26 23:07:28 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\usbport.sys.mui
[2014.07.26 23:07:28 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\volsnap.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\processr.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\intelppm.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\amdppm.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\amdk8.sys.mui
[2014.07.26 23:07:28 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\usbhub.sys.mui
[2014.07.26 23:07:28 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ohci1394.sys.mui
[2014.07.26 23:07:28 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\1394ohci.sys.mui
[2014.07.26 23:07:28 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\i8042prt.sys.mui
[2014.07.26 23:07:28 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\acpi.sys.mui
[2014.07.26 23:07:28 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pci.sys.mui
[2014.07.26 23:07:28 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\msdsm.sys.mui
[2014.07.26 23:07:28 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bthport.sys.mui
[2014.07.26 23:07:28 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\sermouse.sys.mui
[2014.07.26 23:07:28 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\kbdclass.sys.mui
[2014.07.26 23:07:28 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bthpan.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\wacompen.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vhdmp.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vdrvroot.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pcmcia.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mouclass.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\hdaudbus.sys.mui
[2014.07.26 23:07:28 | 000,003,584 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\cs-CZ\pscr.sys.mui
[2014.07.26 23:07:28 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\isapnp.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\umbus.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mssmbios.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\hidbth.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\GAGP30KX.SYS.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ataport.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\cs-CZ\atikmdag.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vwifibus.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ULIAGPKX.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\UAGP35.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pnpmem.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\NV_AGP.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mouhid.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\kbdhid.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\BTHUSB.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\AGP440.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\wd.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\disk.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\cdrom.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bthenum.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\amdide.sys.mui
[2014.07.26 23:07:26 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tcpip.sys.mui
[2014.07.26 23:07:26 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tsusbflt.sys.mui
[2014.07.26 23:07:26 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\portcls.sys.mui
[2014.07.26 23:07:26 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\HdAudio.sys.mui
[2014.07.26 23:07:26 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rndismpx.sys.mui
[2014.07.26 23:07:26 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rndismp6.sys.mui
[2014.07.26 23:07:26 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\serscan.sys.mui
[2014.07.26 23:07:26 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\Dot4usb.sys.mui
[2014.07.26 23:07:26 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\cs-CZ\BrParwdm.sys.mui
[2014.07.26 23:07:23 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pacer.sys.mui
[2014.07.26 23:07:23 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rdpwd.sys.mui
[2014.07.26 23:07:22 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bfe.dll.mui
[2014.07.26 23:07:21 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\afd.sys.mui
[2014.07.26 23:07:21 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\modem.sys.mui
[2014.07.26 23:07:21 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\volmgrx.sys.mui
[2014.07.26 23:07:20 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ntfs.sys.mui
[2014.07.26 23:07:20 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tunnel.sys.mui
[2014.07.26 23:07:20 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\luafv.sys.mui
[2014.07.26 23:07:20 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\ndiscap.sys.mui
[2014.07.26 23:07:20 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rdbss.sys.mui
[2014.07.26 23:07:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\scfilter.sys.mui
[2014.07.26 23:07:19 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ndisuio.sys.mui
[2014.07.26 23:07:19 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\partmgr.sys.mui
[2014.07.26 23:07:19 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mountmgr.sys.mui
[2014.07.26 23:07:17 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\tcpip.sys.mui
[2014.07.26 23:07:17 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ndiscap.sys.mui
[2014.07.26 23:07:17 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\scfilter.sys.mui
[2014.07.26 23:07:15 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ndis.sys.mui
[2014.07.26 23:07:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\fltmgr.sys.mui
[2014.07.26 23:07:12 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\http.sys.mui
[2014.07.26 23:07:12 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\bfe.dll.mui
[2014.07.26 23:07:12 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\pacer.sys.mui
[2014.07.26 23:07:12 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ws2ifsl.sys.mui
[2014.07.26 23:02:16 | 000,000,000 | ---D | C] -- C:\Windows\NAPP_Dism_Log
[2014.07.26 22:53:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2014.07.26 22:52:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2014.07.26 22:52:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2014.07.26 22:09:55 | 000,367,200 | ---- | C] (Acronis) -- C:\Windows\SysNative\drivers\afcdp.sys
[2014.07.26 22:09:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Acronis
[2014.07.26 22:09:53 | 001,464,096 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\tdrpman.sys
[2014.07.26 22:09:52 | 000,198,432 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\tib_mounter.sys
[2014.07.26 22:09:51 | 001,120,032 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\tib.sys
[2014.07.26 22:09:49 | 000,161,568 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\vididr.sys
[2014.07.26 22:09:49 | 000,117,024 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\vidsflt.sys
[2014.07.26 22:09:47 | 000,269,600 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\snapman.sys
[2014.07.26 22:09:47 | 000,116,000 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\fltsrv.sys
[2014.07.26 22:09:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
[2014.07.26 22:09:37 | 000,000,000 | ---D | C] -- C:\PROGRAMS
[2014.07.26 22:09:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Acronis
[2014.07.26 21:53:59 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Acronis
[2014.07.26 20:15:59 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Adobe
[2014.07.26 19:42:52 | 006,574,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014.07.26 19:42:52 | 005,694,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014.07.26 19:42:48 | 003,178,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2014.07.26 19:42:48 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
[2014.07.26 19:32:01 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2014.07.26 19:32:00 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2014.07.26 19:32:00 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2014.07.26 19:32:00 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2014.07.26 19:32:00 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2014.07.26 19:32:00 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2014.07.26 19:31:59 | 001,147,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2014.07.26 19:31:59 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2014.07.26 19:31:59 | 001,057,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
[2014.07.26 19:31:59 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
[2014.07.26 19:31:59 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2014.07.26 19:31:59 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe
[2014.07.26 19:31:59 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsRdpWebAccess.dll
[2014.07.26 19:31:59 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MsRdpWebAccess.dll
[2014.07.26 19:31:59 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprtPS.dll
[2014.07.26 19:31:59 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wksprtPS.dll
[2014.07.26 19:31:39 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp_winip.dll
[2014.07.26 19:31:39 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbGD.sys
[2014.07.26 19:31:39 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
[2014.07.26 19:31:38 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2014.07.26 19:31:38 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp_winip.dll
[2014.07.26 19:13:27 | 002,871,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014.07.26 19:13:27 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2014.07.26 19:13:26 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2014.07.26 19:13:26 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014.07.26 19:13:25 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2014.07.26 19:13:25 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014.07.26 19:13:25 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2014.07.26 19:13:25 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2014.07.26 19:13:19 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2014.07.26 19:13:19 | 001,699,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2014.07.26 19:13:19 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
[2014.07.26 19:13:19 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsutil.exe
[2014.07.26 19:13:19 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fsutil.exe
[2014.07.26 19:13:19 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
[2014.07.26 19:13:15 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2014.07.26 19:09:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014.07.26 19:08:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2014.07.26 19:08:17 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Google
[2014.07.26 19:07:48 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Deployment
[2014.07.26 19:07:48 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Apps
[2014.07.26 19:07:27 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\AppData\Local\EmieUserList
[2014.07.26 19:07:27 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\AppData\Local\EmieSiteList
[2014.07.26 19:06:09 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Adobe
[2014.07.26 19:01:14 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\CompatTel
[2014.07.26 19:01:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat
[2014.07.26 19:01:04 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat
[2014.07.26 18:58:30 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2014.07.26 18:58:30 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2014.07.26 18:58:30 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2014.07.26 18:58:29 | 014,631,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2014.07.26 18:51:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2014.07.26 18:51:26 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014.07.26 18:47:37 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
[2014.07.26 18:43:12 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014.07.26 18:43:04 | 005,721,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.07.26 18:43:04 | 002,040,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.07.26 18:43:04 | 001,964,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.07.26 18:43:04 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014.07.26 18:43:04 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014.07.26 18:43:04 | 000,942,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2014.07.26 18:43:04 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014.07.26 18:43:04 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014.07.26 18:43:04 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014.07.26 18:43:04 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014.07.26 18:43:04 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2014.07.26 18:43:04 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.07.26 18:43:04 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014.07.26 18:43:04 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014.07.26 18:43:04 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014.07.26 18:43:04 | 000,608,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014.07.26 18:43:04 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.07.26 18:43:04 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014.07.26 18:43:04 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.07.26 18:43:04 | 000,452,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.07.26 18:43:04 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.07.26 18:43:04 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014.07.26 18:43:04 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014.07.26 18:43:04 | 000,292,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.07.26 18:43:04 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014.07.26 18:43:04 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014.07.26 18:43:04 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014.07.26 18:43:04 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014.07.26 18:43:04 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014.07.26 18:43:04 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014.07.26 18:43:04 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014.07.26 18:43:04 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014.07.26 18:43:04 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014.07.26 18:43:04 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014.07.26 18:43:04 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014.07.26 18:43:04 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.07.26 18:43:04 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014.07.26 18:43:04 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014.07.26 18:43:04 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014.07.26 18:43:04 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014.07.26 18:43:04 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.07.26 18:43:04 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014.07.26 18:43:04 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014.07.26 18:43:04 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014.07.26 18:43:04 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014.07.26 18:43:04 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014.07.26 18:43:04 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014.07.26 18:43:04 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014.07.26 18:43:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.07.26 18:43:04 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014.07.26 18:43:04 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014.07.26 18:43:04 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014.07.26 18:43:04 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014.07.26 18:43:04 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014.07.26 18:43:04 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014.07.26 18:43:04 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.07.26 18:43:04 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014.07.26 18:43:04 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014.07.26 18:43:04 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014.07.26 18:43:04 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014.07.26 18:43:04 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014.07.26 18:43:04 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014.07.26 18:43:04 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014.07.26 18:43:04 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014.07.26 18:43:04 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014.07.26 18:43:04 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014.07.26 18:43:04 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014.07.26 18:43:04 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014.07.26 18:43:04 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014.07.26 18:43:04 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014.07.26 18:43:04 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014.07.26 18:43:04 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014.07.26 18:43:04 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014.07.26 18:43:04 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014.07.26 18:43:04 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014.07.26 18:35:32 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\wdf01000.sys.mui
[2014.07.26 18:33:28 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2014.07.26 18:31:57 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browserchoice.exe
[2014.07.26 18:28:07 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2014.07.26 18:28:06 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2014.07.26 18:28:06 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2014.07.26 18:28:06 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2014.07.26 18:09:51 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2014.07.26 18:09:51 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2014.07.26 18:09:51 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2014.07.26 18:09:51 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2014.07.26 18:09:48 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2014.07.26 18:09:48 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2014.07.26 18:09:48 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2014.07.26 18:09:48 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2014.07.26 18:09:48 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2014.07.26 18:09:48 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2014.07.26 18:09:48 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2014.07.26 18:09:48 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014.07.26 18:09:48 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014.07.26 18:09:48 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014.07.26 18:09:48 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014.07.26 18:09:48 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014.07.26 18:09:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014.07.26 18:09:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2014.07.26 18:09:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2014.07.26 18:09:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014.07.26 18:09:48 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014.07.26 18:09:48 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014.07.26 18:09:47 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2014.07.26 18:09:47 | 001,643,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2014.07.26 18:09:47 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2014.07.26 18:09:47 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2014.07.26 18:09:47 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2014.07.26 18:09:04 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys
[2014.07.26 18:01:32 | 000,519,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.07.26 18:01:32 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.07.26 18:01:09 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2014.07.26 18:01:04 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2014.07.26 18:01:03 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcorehc.dll
[2014.07.26 18:01:03 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcorehc.dll
[2014.07.26 18:01:03 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2014.07.26 18:01:03 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netevent.dll
[2014.07.26 18:01:03 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netevent.dll
[2014.07.26 18:00:39 | 001,192,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certutil.exe
[2014.07.26 18:00:39 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certutil.exe
[2014.07.26 18:00:38 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certenc.dll
[2014.07.26 18:00:38 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certenc.dll
[2014.07.26 18:00:30 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2014.07.26 18:00:30 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2014.07.26 18:00:30 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2014.07.26 18:00:30 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2014.07.26 18:00:30 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2014.07.26 18:00:26 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2014.07.26 18:00:26 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2014.07.26 18:00:24 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcore6.dll
[2014.07.26 18:00:24 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dhcpcore6.dll
[2014.07.26 18:00:24 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcsvc6.dll
[2014.07.26 18:00:20 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2014.07.26 18:00:19 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2014.07.26 18:00:10 | 001,163,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2014.07.26 18:00:09 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2014.07.26 18:00:09 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2014.07.26 18:00:09 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2014.07.26 18:00:09 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2014.07.26 18:00:09 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014.07.26 18:00:09 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2014.07.26 18:00:09 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014.07.26 18:00:09 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2014.07.26 18:00:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014.07.26 18:00:09 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2014.07.26 18:00:09 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2014.07.26 18:00:09 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2014.07.26 18:00:09 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014.07.26 18:00:09 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2014.07.26 18:00:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2014.07.26 18:00:09 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.07.26 18:00:09 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.07.26 18:00:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2014.07.26 18:00:08 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2014.07.26 18:00:08 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2014.07.26 18:00:08 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2014.07.26 18:00:08 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#23 Příspěvek od michelangelo »

2/3 OTL

[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2014.07.26 18:00:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2014.07.26 18:00:08 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014.07.26 17:59:53 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2014.07.26 17:59:52 | 001,732,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2014.07.26 17:59:52 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2014.07.26 17:59:51 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2014.07.26 17:59:47 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2014.07.26 17:59:47 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2014.07.26 17:59:47 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll
[2014.07.26 17:59:47 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
[2014.07.26 17:59:47 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs
[2014.07.26 17:59:47 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cero.rs
[2014.07.26 17:59:47 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs
[2014.07.26 17:59:47 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysNative\esrb.rs
[2014.07.26 17:59:47 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs
[2014.07.26 17:59:47 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysNative\fpb.rs
[2014.07.26 17:59:47 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs
[2014.07.26 17:59:47 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc-nz.rs
[2014.07.26 17:59:47 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs
[2014.07.26 17:59:47 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegibbfc.rs
[2014.07.26 17:59:47 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs
[2014.07.26 17:59:47 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysNative\csrr.rs
[2014.07.26 17:59:47 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs
[2014.07.26 17:59:47 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cob-au.rs
[2014.07.26 17:59:47 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs
[2014.07.26 17:59:47 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysNative\usk.rs
[2014.07.26 17:59:47 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs
[2014.07.26 17:59:47 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc.rs
[2014.07.26 17:59:47 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs
[2014.07.26 17:59:47 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysNative\grb.rs
[2014.07.26 17:59:47 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs
[2014.07.26 17:59:47 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-pt.rs
[2014.07.26 17:59:47 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs
[2014.07.26 17:59:47 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-fi.rs
[2014.07.26 17:59:47 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs
[2014.07.26 17:59:47 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi.rs
[2014.07.26 17:59:47 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs
[2014.07.26 17:59:47 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysNative\djctq.rs
[2014.07.26 17:59:39 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml6r.dll
[2014.07.26 17:59:39 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml6r.dll
[2014.07.26 17:59:39 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2014.07.26 17:59:39 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2014.07.26 17:59:37 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xmllite.dll
[2014.07.26 17:59:36 | 000,634,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcrt.dll
[2014.07.26 17:59:35 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2014.07.26 17:59:29 | 001,030,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2014.07.26 17:59:29 | 000,792,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2014.07.26 17:59:27 | 000,368,128 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2014.07.26 17:59:27 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2014.07.26 17:59:27 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2014.07.26 17:59:27 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2014.07.26 17:59:27 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2014.07.26 17:59:27 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2014.07.26 17:59:27 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2014.07.26 17:59:27 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2014.07.26 17:59:26 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OxpsConverter.exe
[2014.07.26 17:59:24 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2014.07.26 17:59:24 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2014.07.26 17:59:24 | 000,155,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2014.07.26 17:58:51 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2014.07.26 17:58:51 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2014.07.26 17:58:46 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe
[2014.07.26 17:58:46 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe
[2014.07.26 17:58:18 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2014.07.26 17:58:13 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\osk.exe
[2014.07.26 17:58:13 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\osk.exe
[2014.07.26 17:58:00 | 003,216,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2014.07.26 17:57:50 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
[2014.07.26 17:57:50 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
[2014.07.26 17:57:43 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2014.07.26 17:57:43 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2014.07.26 17:57:42 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2014.07.26 17:57:41 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2014.07.26 17:57:40 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2014.07.26 17:57:40 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2014.07.26 17:57:38 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\RNDISMP.sys
[2014.07.26 17:57:33 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wer.dll
[2014.07.26 17:57:33 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2014.07.26 17:56:50 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2014.07.26 17:56:50 | 000,626,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2014.07.26 17:56:50 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2014.07.26 17:56:50 | 000,572,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2014.07.26 17:56:50 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2014.07.26 17:56:50 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2014.07.26 17:56:49 | 000,553,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2014.07.26 17:56:49 | 000,528,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2014.07.26 17:56:49 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2014.07.26 17:56:49 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2014.07.26 17:56:49 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2014.07.26 17:56:49 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2014.07.26 17:56:49 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2014.07.26 17:56:49 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2014.07.26 17:56:49 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2014.07.26 17:56:49 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2014.07.26 17:56:49 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2014.07.26 17:56:12 | 005,550,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014.07.26 17:56:12 | 003,969,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2014.07.26 17:56:12 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2014.07.26 17:56:12 | 000,722,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\objsel.dll
[2014.07.26 17:56:12 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2014.07.26 17:56:12 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2014.07.26 17:56:11 | 000,538,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\objsel.dll
[2014.07.26 17:56:11 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2014.07.26 17:56:11 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cngprovider.dll
[2014.07.26 17:56:11 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adprovider.dll
[2014.07.26 17:56:11 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\capiprovider.dll
[2014.07.26 17:56:11 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpapiprovider.dll
[2014.07.26 17:56:11 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cngprovider.dll
[2014.07.26 17:56:11 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adprovider.dll
[2014.07.26 17:56:11 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\capiprovider.dll
[2014.07.26 17:56:11 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpapiprovider.dll
[2014.07.26 17:56:11 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dimsroam.dll
[2014.07.26 17:56:11 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2014.07.26 17:56:11 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wincredprovider.dll
[2014.07.26 17:56:11 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dimsroam.dll
[2014.07.26 17:56:11 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wincredprovider.dll
[2014.07.26 17:56:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2014.07.26 17:56:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2014.07.26 17:55:50 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2014.07.26 17:55:50 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2014.07.26 17:55:46 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2014.07.26 17:55:35 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll
[2014.07.26 17:55:35 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2014.07.26 17:55:30 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys
[2014.07.26 17:55:30 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wdfres.dll
[2014.07.26 17:54:51 | 001,460,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014.07.26 17:54:50 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2014.07.26 17:54:50 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2014.07.26 17:54:50 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2014.07.26 17:54:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2014.07.26 17:54:43 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2014.07.26 17:54:42 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2014.07.26 17:54:39 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnet.dll
[2014.07.26 17:54:39 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnet.dll
[2014.07.26 17:54:38 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2014.07.26 17:54:38 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2014.07.26 17:54:38 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2014.07.26 17:54:38 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2014.07.26 17:54:38 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2014.07.26 17:54:38 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2014.07.26 17:54:38 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssph.dll
[2014.07.26 17:54:38 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
[2014.07.26 17:54:38 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2014.07.26 17:54:38 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchProtocolHost.exe
[2014.07.26 17:54:38 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFilterHost.exe
[2014.07.26 17:54:38 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscntrs.dll
[2014.07.26 17:54:38 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
[2014.07.26 17:54:29 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2014.07.26 17:54:25 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2014.07.26 17:54:23 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014.07.26 17:54:23 | 000,288,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2014.07.26 17:54:17 | 000,190,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2014.07.26 17:54:17 | 000,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2014.07.26 17:54:17 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iologmsg.dll
[2014.07.26 17:54:17 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iologmsg.dll
[2014.07.26 17:54:13 | 001,217,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2014.07.26 17:54:13 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2014.07.26 17:54:13 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll
[2014.07.26 17:54:11 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2014.07.26 17:54:11 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2014.07.26 17:53:54 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptdlg.dll
[2014.07.26 17:53:54 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptdlg.dll
[2014.07.26 17:53:42 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2014.07.26 17:53:17 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\Documents\CyberLink
[2014.07.26 17:53:10 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Cyberlink
[2014.07.26 17:52:58 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2014.07.26 17:52:56 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2014.07.26 17:52:54 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2014.07.26 17:52:54 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2014.07.26 17:52:54 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdrmemptylst.exe
[2014.07.26 17:52:32 | 000,111,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2014.07.26 17:52:22 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2014.07.26 17:52:22 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2014.07.26 17:52:22 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2014.07.26 17:52:22 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2014.07.26 17:52:22 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2014.07.26 17:52:22 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccu32.dll
[2014.07.26 17:52:22 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccr32.dll
[2014.07.26 17:52:22 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll
[2014.07.26 17:52:22 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll
[2014.07.26 17:52:20 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2014.07.26 17:52:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2014.07.26 17:52:14 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2014.07.26 17:52:13 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2014.07.26 17:52:13 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2014.07.26 17:52:13 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2014.07.26 17:52:11 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2014.07.26 17:52:11 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
[2014.07.26 17:52:09 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2014.07.26 17:52:09 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2014.07.26 17:52:09 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014.07.26 17:52:02 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2014.07.26 17:51:59 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2014.07.26 17:51:59 | 000,492,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2014.07.26 17:51:59 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys
[2014.07.26 17:51:57 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
[2014.07.26 17:51:57 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2014.07.26 17:51:57 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
[2014.07.26 17:51:57 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
[2014.07.26 17:51:57 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2014.07.26 17:51:57 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2014.07.26 17:51:56 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\synceng.dll
[2014.07.26 17:51:56 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\synceng.dll
[2014.07.26 17:51:54 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2014.07.26 17:51:54 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2014.07.26 17:51:54 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2014.07.26 17:51:53 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2014.07.26 17:51:53 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2014.07.26 17:51:53 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2014.07.26 17:51:52 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2014.07.26 17:51:52 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2014.07.26 17:45:22 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2014.07.26 17:45:22 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2014.07.26 17:45:06 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2014.07.26 17:45:06 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2014.07.26 17:45:04 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2014.07.26 17:45:04 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2014.07.26 17:45:04 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2014.07.26 17:45:04 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2014.07.26 17:45:03 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2014.07.26 17:45:03 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2014.07.26 17:34:25 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\EgisTec
[2014.07.26 15:20:13 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2014.07.26 15:20:13 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2014.07.26 15:16:48 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Intel Corporation
[2014.07.26 15:16:44 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Macromedia
[2014.07.26 15:16:44 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\EgisTec IPS
[2014.07.26 15:16:30 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014.07.26 15:16:30 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Searches
[2014.07.26 15:16:30 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014.07.26 15:16:24 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Identities
[2014.07.26 15:16:21 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Contacts
[2014.07.26 15:15:18 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2014.07.26 15:15:18 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2014.07.26 15:15:18 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2014.07.26 15:15:12 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\CyberLink
[2014.07.26 15:15:11 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Acer
[2014.07.26 15:15:01 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2014.07.26 15:15:01 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2014.07.26 15:15:01 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2014.07.26 15:14:52 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2014.07.26 15:14:52 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2014.07.26 15:14:43 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\VirtualStore
[2014.07.26 15:14:31 | 000,000,000 | --SD | C] -- C:\Users\Vladimir\AppData\Roaming\Microsoft
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Videos
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Saved Games
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Pictures
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Music
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Links
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Favorites
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Downloads
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Documents
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\Desktop
[2014.07.26 15:14:31 | 000,000,000 | R--D | C] -- C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\AppData\Local\Temporary Internet Files
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Šablony
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Soubory cookie
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\SendTo
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Poslední
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Okolní tiskárny
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Okolní síť
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Documents\Obrázky
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Nabídka Start
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Local Settings
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Documents\Hudba
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\AppData\Local\History
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Documents\Filmy
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Dokumenty
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\Data aplikací
[2014.07.26 15:14:31 | 000,000,000 | -HSD | C] -- C:\Users\Vladimir\AppData\Local\Data aplikací
[2014.07.26 15:14:31 | 000,000,000 | -H-D | C] -- C:\Users\Vladimir\AppData
[2014.07.26 15:14:31 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Temp
[2014.07.26 15:14:31 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Local\Microsoft
[2014.07.26 15:14:31 | 000,000,000 | ---D | C] -- C:\Users\Vladimir\AppData\Roaming\Media Center Programs
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Šablony
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\Recovery
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Plocha
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Obrázky
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Oblíbené položky
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Nabídka Start
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Hudba
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Filmy
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2014.07.26 15:14:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\Data aplikací
[2014.07.26 13:44:37 | 000,000,000 | ---D | C] -- C:\ProgramData\CLSK
[2014.07.26 13:43:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Temp
[2014.07.26 13:43:01 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink
[2014.07.26 13:39:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Acer Bio Protection
[2014.07.26 13:38:00 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2014.07.26 13:37:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared
[2014.07.26 13:36:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ArcadeIO
[2014.07.26 13:35:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2014.07.26 13:34:09 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess
[2014.07.26 13:34:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft
[2014.07.26 13:30:07 | 000,349,224 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwampfl.sys
[2014.07.26 13:30:07 | 000,138,280 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwavdt.sys
[2014.07.26 13:30:07 | 000,106,536 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwaudio.sys
[2014.07.26 13:30:07 | 000,039,464 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwl2cap.sys
[2014.07.26 13:30:07 | 000,022,056 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\btwcoins.dll
[2014.07.26 13:30:07 | 000,021,416 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwrchid.sys
[2014.07.26 13:29:39 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2014.07.26 13:28:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent
[2014.07.26 13:27:31 | 000,000,000 | ---D | C] -- C:\Dolby PCEE4
[2014.07.26 13:27:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
[2014.07.26 13:27:25 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2014.07.26 13:27:17 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2014.07.26 13:27:15 | 003,137,128 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2014.07.26 13:27:15 | 002,601,816 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2014.07.26 13:27:15 | 002,405,992 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2014.07.26 13:27:15 | 001,559,656 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2014.07.26 13:27:15 | 000,648,808 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2014.07.26 13:27:15 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2014.07.26 13:27:15 | 000,332,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2014.07.26 13:27:15 | 000,220,512 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2014.07.26 13:27:15 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2014.07.26 13:27:15 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2014.07.26 13:27:15 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2014.07.26 13:27:15 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2014.07.26 13:27:15 | 000,121,744 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2014.07.26 13:27:15 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2014.07.26 13:27:15 | 000,078,176 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2014.07.26 13:27:15 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2014.07.26 13:27:14 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2014.07.26 13:27:14 | 001,242,216 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2014.07.26 13:27:14 | 001,060,864 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2014.07.26 13:27:14 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2014.07.26 13:27:14 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2014.07.26 13:27:14 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2014.07.26 13:27:14 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2014.07.26 13:27:14 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2014.07.26 13:27:14 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2014.07.26 13:27:14 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2014.07.26 13:27:14 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2014.07.26 13:27:14 | 000,091,240 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInst64.dll
[2014.07.26 13:27:14 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2014.07.26 13:27:14 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2014.07.26 13:27:13 | 002,238,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2014.07.26 13:27:13 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2014.07.26 13:27:13 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2014.07.26 13:27:13 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2014.07.26 13:27:13 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2014.07.26 13:27:12 | 002,085,440 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2014.07.26 13:27:12 | 001,327,208 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2014.07.26 13:27:12 | 001,179,752 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2014.07.26 13:27:12 | 001,111,656 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2014.07.26 13:27:12 | 000,504,936 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2014.07.26 13:27:12 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2014.07.26 13:27:12 | 000,475,752 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2014.07.26 13:27:12 | 000,317,032 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2014.07.26 13:27:12 | 000,269,928 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2014.07.26 13:27:12 | 000,266,856 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2014.07.26 13:27:12 | 000,200,800 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2014.07.26 13:27:12 | 000,126,056 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2014.07.26 13:27:12 | 000,125,544 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2014.07.26 13:27:12 | 000,125,032 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2014.07.26 13:27:12 | 000,108,960 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2014.07.26 13:27:12 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2014.07.26 13:27:11 | 001,284,712 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2014.07.26 13:27:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2014.07.26 13:26:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Renesas Electronics
[2014.07.26 13:26:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Renesas Electronics
[2014.07.26 13:26:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Downloaded Installations
[2014.07.26 13:25:27 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2014.07.26 13:24:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
[2014.07.26 13:24:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Launch Manager
[2014.07.26 13:23:01 | 000,573,040 | ---- | C] (EgisTec) -- C:\Windows\SysNative\NBMatS1SDK.dll
[2014.07.26 13:23:01 | 000,486,512 | ---- | C] (EgisTec) -- C:\Windows\SysWow64\NBMatS1SDK.dll
[2014.07.26 13:22:59 | 000,035,888 | ---- | C] (EgisTec) -- C:\Windows\SysNative\drivers\FPSensor.sys
[2014.07.26 13:21:51 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2014.07.26 13:21:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation
[2014.07.26 13:20:43 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2014.07.26 13:18:21 | 000,000,000 | ---D | C] -- C:\ProgramData\EgisTec
[2014.07.26 13:18:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem
[2014.07.26 13:18:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2014.07.26 13:15:15 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2014.07.26 13:14:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2014.07.26 13:14:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel
[2014.07.26 13:12:20 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014.07.28 16:38:50 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.07.28 16:13:33 | 000,135,425 | ---- | M] () -- C:\Users\Vladimir\Desktop\41032.jpg
[2014.07.28 16:13:00 | 000,000,956 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.07.28 15:46:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Vladimir\Desktop\OTL.exe
[2014.07.28 12:36:34 | 001,582,262 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.07.28 12:36:34 | 000,668,376 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014.07.28 12:36:34 | 000,653,724 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.07.28 12:36:34 | 000,141,004 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014.07.28 12:36:34 | 000,121,596 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.07.28 12:26:06 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.07.28 12:26:06 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.07.28 12:18:52 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.07.28 12:18:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.07.28 12:18:39 | 4178,464,766 | -HS- | M] () -- C:\hiberfil.sys
[2014.07.28 12:11:14 | 000,000,085 | ---- | M] () -- C:\Windows\wininit.ini
[2014.07.28 12:09:03 | 001,367,289 | ---- | M] () -- C:\Users\Vladimir\Desktop\adwcleaner_3.300.exe
[2014.07.28 11:24:52 | 000,135,125 | ---- | M] () -- C:\Users\Vladimir\Desktop\416530163502.jpg
[2014.07.28 11:23:48 | 000,030,592 | ---- | M] () -- C:\Users\Vladimir\Desktop\10320.jpg
[2014.07.28 11:14:28 | 001,222,144 | ---- | M] () -- C:\Users\Vladimir\Desktop\RSITx64.exe
[2014.07.28 10:16:42 | 000,000,074 | ---- | M] () -- C:\Users\Vladimir\Desktop\VIRY.CZ • Zobrazit téma - Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnych.url
[2014.07.28 07:56:15 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014.07.28 07:56:15 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2014.07.27 23:00:24 | 000,290,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\subinacl.exe
[2014.07.27 22:59:43 | 000,753,184 | ---- | M] () -- C:\Users\Vladimir\Desktop\Adware-Removal-Tool-v3.9.1.exe
[2014.07.27 21:17:43 | 000,096,660 | ---- | M] () -- C:\Users\Vladimir\Desktop\The.Zero.Theorem.2013.1080p.BluRay.H264.AAC-RARBG.srt
[2014.07.27 18:11:03 | 000,074,512 | ---- | M] (BitDefender SRL) -- C:\Windows\SysNative\bdsandboxuiskin32.dll
[2014.07.27 17:20:42 | 000,805,186 | ---- | M] () -- C:\ProgramData\1406473070.bdinstall.bin
[2014.07.27 17:12:35 | 000,000,385 | ---- | M] () -- C:\Windows\SysNative\user_gensett.xml
[2014.07.27 17:12:23 | 000,253,404 | -H-- | M] () -- C:\bdr-ld01
[2014.07.27 17:12:23 | 000,009,216 | -H-- | M] () -- C:\bdr-ld01.mbr
[2014.07.27 17:12:23 | 000,000,684 | -H-- | M] () -- C:\bdr-cf01
[2014.07.27 17:12:18 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf
[2014.07.27 17:07:42 | 004,411,392 | ---- | M] (Gabest) -- C:\Users\Vladimir\Desktop\mplayerc.exe
[2014.07.27 16:57:10 | 000,276,128 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014.07.27 16:51:13 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014.07.26 23:08:01 | 000,292,004 | ---- | M] () -- C:\Windows\SysNative\perfi005.dat
[2014.07.26 23:08:01 | 000,036,232 | ---- | M] () -- C:\Windows\SysNative\perfd005.dat
[2014.07.26 23:07:46 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\usbrpm.sys.mui
[2014.07.26 23:07:40 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\fvevol.sys.mui
[2014.07.26 23:07:34 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\UMDF\cs-CZ\WpdMtpDr.dll.mui
[2014.07.26 23:07:32 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\nwifi.sys.mui
[2014.07.26 23:07:32 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\qwavedrv.sys.mui
[2014.07.26 23:07:32 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\qwavedrv.sys.mui
[2014.07.26 23:07:30 | 000,009,728 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\cs-CZ\BrSerId.sys.mui
[2014.07.26 23:07:30 | 000,009,728 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\cs-CZ\BrSerIb.sys.mui
[2014.07.26 23:07:30 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\MTConfig.sys.mui
[2014.07.26 23:07:29 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\serial.sys.mui
[2014.07.26 23:07:29 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\battc.sys.mui
[2014.07.26 23:07:29 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\IPMIDrv.sys.mui
[2014.07.26 23:07:29 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tpm.sys.mui
[2014.07.26 23:07:29 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\parport.sys.mui
[2014.07.26 23:07:28 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mpio.sys.mui
[2014.07.26 23:07:28 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\usbport.sys.mui
[2014.07.26 23:07:28 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\volsnap.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\processr.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\intelppm.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\amdppm.sys.mui
[2014.07.26 23:07:28 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\amdk8.sys.mui
[2014.07.26 23:07:28 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\usbhub.sys.mui
[2014.07.26 23:07:28 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ohci1394.sys.mui
[2014.07.26 23:07:28 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\1394ohci.sys.mui
[2014.07.26 23:07:28 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\i8042prt.sys.mui
[2014.07.26 23:07:28 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\acpi.sys.mui
[2014.07.26 23:07:28 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pci.sys.mui
[2014.07.26 23:07:28 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\msdsm.sys.mui
[2014.07.26 23:07:28 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bthport.sys.mui
[2014.07.26 23:07:28 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\UMDF\cs-CZ\WUDFUsbccidDriver.dll.mui
[2014.07.26 23:07:28 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\sermouse.sys.mui
[2014.07.26 23:07:28 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\kbdclass.sys.mui
[2014.07.26 23:07:28 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bthpan.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\wacompen.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vhdmp.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vdrvroot.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pcmcia.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mouclass.sys.mui
[2014.07.26 23:07:28 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\hdaudbus.sys.mui
[2014.07.26 23:07:28 | 000,003,584 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\cs-CZ\pscr.sys.mui
[2014.07.26 23:07:28 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\isapnp.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\umbus.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mssmbios.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\hidbth.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\GAGP30KX.SYS.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ataport.sys.mui
[2014.07.26 23:07:28 | 000,003,072 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\cs-CZ\atikmdag.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vwifibus.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ULIAGPKX.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\UAGP35.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pnpmem.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\NV_AGP.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mouhid.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\kbdhid.sys.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\BTHUSB.SYS.mui
[2014.07.26 23:07:28 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\AGP440.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\wd.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\disk.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\cdrom.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bthenum.sys.mui
[2014.07.26 23:07:28 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\amdide.sys.mui
[2014.07.26 23:07:26 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tcpip.sys.mui
[2014.07.26 23:07:26 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tsusbflt.sys.mui
[2014.07.26 23:07:26 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\portcls.sys.mui
[2014.07.26 23:07:26 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\HdAudio.sys.mui
[2014.07.26 23:07:26 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rndismpx.sys.mui
[2014.07.26 23:07:26 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rndismp6.sys.mui
[2014.07.26 23:07:26 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\serscan.sys.mui
[2014.07.26 23:07:26 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\Dot4usb.sys.mui
[2014.07.26 23:07:26 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\cs-CZ\BrParwdm.sys.mui
[2014.07.26 23:07:23 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\pacer.sys.mui
[2014.07.26 23:07:23 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rdpwd.sys.mui
[2014.07.26 23:07:22 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\bfe.dll.mui
[2014.07.26 23:07:21 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\afd.sys.mui
[2014.07.26 23:07:21 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\modem.sys.mui
[2014.07.26 23:07:21 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\volmgrx.sys.mui
[2014.07.26 23:07:20 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ntfs.sys.mui
[2014.07.26 23:07:20 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\tunnel.sys.mui
[2014.07.26 23:07:20 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\luafv.sys.mui
[2014.07.26 23:07:20 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\ndiscap.sys.mui
[2014.07.26 23:07:20 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\rdbss.sys.mui
[2014.07.26 23:07:20 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\scfilter.sys.mui
[2014.07.26 23:07:19 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ndisuio.sys.mui
[2014.07.26 23:07:19 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\partmgr.sys.mui
[2014.07.26 23:07:19 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\mountmgr.sys.mui
[2014.07.26 23:07:17 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\tcpip.sys.mui
[2014.07.26 23:07:17 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ndiscap.sys.mui
[2014.07.26 23:07:17 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\scfilter.sys.mui
[2014.07.26 23:07:15 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ndis.sys.mui
[2014.07.26 23:07:15 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\fltmgr.sys.mui
[2014.07.26 23:07:12 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\http.sys.mui
[2014.07.26 23:07:12 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\bfe.dll.mui
[2014.07.26 23:07:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\cs-CZ\pacer.sys.mui
[2014.07.26 23:07:12 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\ws2ifsl.sys.mui
[2014.07.26 23:02:16 | 000,011,453 | ---- | M] () -- C:\Windows\ChangeLang_Done.tag
[2014.07.26 22:09:55 | 000,367,200 | ---- | M] (Acronis) -- C:\Windows\SysNative\drivers\afcdp.sys
[2014.07.26 22:09:53 | 001,464,096 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\tdrpman.sys
[2014.07.26 22:09:52 | 000,198,432 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\tib_mounter.sys
[2014.07.26 22:09:51 | 001,120,032 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\tib.sys
[2014.07.26 22:09:49 | 000,161,568 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\vididr.sys
[2014.07.26 22:09:49 | 000,117,024 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\vidsflt.sys
[2014.07.26 22:09:47 | 000,269,600 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\snapman.sys
[2014.07.26 22:09:47 | 000,116,000 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\fltsrv.sys
[2014.07.26 22:07:21 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014.07.26 19:31:22 | 001,558,096 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.07.26 18:43:12 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014.07.26 18:43:04 | 005,721,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.07.26 18:43:04 | 002,040,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.07.26 18:43:04 | 001,964,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.07.26 18:43:04 | 001,249,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014.07.26 18:43:04 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014.07.26 18:43:04 | 000,942,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2014.07.26 18:43:04 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014.07.26 18:43:04 | 000,774,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014.07.26 18:43:04 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014.07.26 18:43:04 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014.07.26 18:43:04 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2014.07.26 18:43:04 | 000,631,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.07.26 18:43:04 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014.07.26 18:43:04 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014.07.26 18:43:04 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014.07.26 18:43:04 | 000,608,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014.07.26 18:43:04 | 000,598,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.07.26 18:43:04 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014.07.26 18:43:04 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.07.26 18:43:04 | 000,452,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.07.26 18:43:04 | 000,442,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.07.26 18:43:04 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014.07.26 18:43:04 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014.07.26 18:43:04 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.07.26 18:43:04 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014.07.26 18:43:04 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014.07.26 18:43:04 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014.07.26 18:43:04 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014.07.26 18:43:04 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014.07.26 18:43:04 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014.07.26 18:43:04 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014.07.26 18:43:04 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014.07.26 18:43:04 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014.07.26 18:43:04 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014.07.26 18:43:04 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014.07.26 18:43:04 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.07.26 18:43:04 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014.07.26 18:43:04 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014.07.26 18:43:04 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014.07.26 18:43:04 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014.07.26 18:43:04 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.07.26 18:43:04 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014.07.26 18:43:04 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014.07.26 18:43:04 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014.07.26 18:43:04 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014.07.26 18:43:04 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014.07.26 18:43:04 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014.07.26 18:43:04 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014.07.26 18:43:04 | 000,085,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.07.26 18:43:04 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014.07.26 18:43:04 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014.07.26 18:43:04 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014.07.26 18:43:04 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014.07.26 18:43:04 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014.07.26 18:43:04 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014.07.26 18:43:04 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.07.26 18:43:04 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014.07.26 18:43:04 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014.07.26 18:43:04 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014.07.26 18:43:04 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014.07.26 18:43:04 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014.07.26 18:43:04 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014.07.26 18:43:04 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014.07.26 18:43:04 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014.07.26 18:43:04 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014.07.26 18:43:04 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014.07.26 18:43:04 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014.07.26 18:43:04 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014.07.26 18:43:04 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014.07.26 18:43:04 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014.07.26 18:43:04 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014.07.26 18:43:04 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2014.07.26 18:43:04 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2014.07.26 18:43:04 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014.07.26 18:43:04 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014.07.26 18:43:04 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014.07.26 18:43:04 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014.07.26 17:59:19 | 000,001,024 | RH-- | M] () -- C:\Users\Public\Documents\NTIMMV9Acer.dll
[2014.07.26 14:26:30 | 000,289,413 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2014.07.26 14:26:30 | 000,289,413 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2014.07.26 13:41:19 | 000,000,017 | ---- | M] () -- C:\Windows\ClearFi.tag
[2014.07.26 13:39:12 | 000,001,024 | RH-- | M] () -- C:\Users\Public\Documents\NTILiveUpdateV9.dll
[2014.07.26 13:37:58 | 000,001,024 | RH-- | M] () -- C:\Users\Public\Documents\NTIMMV9REGET.dll
[2014.07.26 13:31:54 | 000,749,152 | ---- | M] () -- C:\Windows\SysNative\oem25.inf
[2014.07.26 13:30:11 | 000,000,834 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2014.07.26 13:24:08 | 000,000,184 | ---- | M] () -- C:\Windows\LMv4.UNI
[2014.07.26 13:23:01 | 000,573,040 | ---- | M] (EgisTec) -- C:\Windows\SysNative\NBMatS1SDK.dll
[2014.07.26 13:23:01 | 000,486,512 | ---- | M] (EgisTec) -- C:\Windows\SysWow64\NBMatS1SDK.dll
[2014.07.26 13:22:59 | 000,035,888 | ---- | M] (EgisTec) -- C:\Windows\SysNative\drivers\FPSensor.sys
[2014.07.26 13:17:53 | 000,019,482 | ---- | M] () -- C:\Windows\SysNative\results.xml
[2014.06.30 04:09:33 | 000,519,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.06.30 04:04:49 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#24 Příspěvek od michelangelo »

3/3 OTL

========== Files Created - No Company Name ==========

[2014.07.28 16:13:33 | 000,135,425 | ---- | C] () -- C:\Users\Vladimir\Desktop\41032.jpg
[2014.07.28 15:48:42 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.07.28 12:11:12 | 000,000,085 | ---- | C] () -- C:\Windows\wininit.ini
[2014.07.28 12:08:59 | 001,367,289 | ---- | C] () -- C:\Users\Vladimir\Desktop\adwcleaner_3.300.exe
[2014.07.28 11:24:52 | 000,135,125 | ---- | C] () -- C:\Users\Vladimir\Desktop\416530163502.jpg
[2014.07.28 11:23:48 | 000,030,592 | ---- | C] () -- C:\Users\Vladimir\Desktop\10320.jpg
[2014.07.28 11:14:28 | 001,222,144 | ---- | C] () -- C:\Users\Vladimir\Desktop\RSITx64.exe
[2014.07.28 10:16:42 | 000,000,074 | ---- | C] () -- C:\Users\Vladimir\Desktop\VIRY.CZ • Zobrazit téma - Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnych.url
[2014.07.28 07:56:15 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2014.07.27 22:59:42 | 000,753,184 | ---- | C] () -- C:\Users\Vladimir\Desktop\Adware-Removal-Tool-v3.9.1.exe
[2014.07.27 21:37:48 | 000,001,313 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
[2014.07.27 21:17:43 | 000,096,660 | ---- | C] () -- C:\Users\Vladimir\Desktop\The.Zero.Theorem.2013.1080p.BluRay.H264.AAC-RARBG.srt
[2014.07.27 21:11:41 | 003,774,821 | ---- | C] () -- C:\Windows\SysNative\nvcoproc.bin
[2014.07.27 21:07:06 | 000,026,069 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb
[2014.07.27 17:20:42 | 000,805,186 | ---- | C] () -- C:\ProgramData\1406473070.bdinstall.bin
[2014.07.27 17:12:35 | 000,000,385 | ---- | C] () -- C:\Windows\SysNative\user_gensett.xml
[2014.07.27 17:12:23 | 000,000,684 | -H-- | C] () -- C:\bdr-cf01
[2014.07.27 17:12:18 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf
[2014.07.27 17:00:23 | 046,879,860 | -H-- | C] () -- C:\bdr-im01.gz
[2014.07.27 17:00:23 | 003,271,472 | -H-- | C] () -- C:\bdr-bz01
[2014.07.27 17:00:23 | 000,009,216 | -H-- | C] () -- C:\bdr-ld01.mbr
[2014.07.27 17:00:22 | 000,253,404 | -H-- | C] () -- C:\bdr-ld01
[2014.07.26 23:10:47 | 000,011,453 | ---- | C] () -- C:\Windows\ChangeLang_Done.tag
[2014.07.26 23:08:31 | 000,668,376 | ---- | C] () -- C:\Windows\SysNative\perfh005.dat
[2014.07.26 23:08:31 | 000,292,004 | ---- | C] () -- C:\Windows\SysNative\perfi005.dat
[2014.07.26 23:08:31 | 000,141,004 | ---- | C] () -- C:\Windows\SysNative\perfc005.dat
[2014.07.26 23:08:31 | 000,036,232 | ---- | C] () -- C:\Windows\SysNative\perfd005.dat
[2014.07.26 22:50:25 | 000,001,912 | ---- | C] () -- C:\Windows\epplauncher.mif
[2014.07.26 22:07:21 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014.07.26 19:08:28 | 000,000,956 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.07.26 19:08:27 | 000,000,952 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.07.26 18:52:48 | 001,558,096 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.07.26 18:43:04 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2014.07.26 18:43:04 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2014.07.26 18:28:05 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2014.07.26 17:55:30 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2014.07.26 15:16:31 | 000,001,397 | ---- | C] () -- C:\Users\Vladimir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014.07.26 15:14:50 | 000,001,955 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fooz Kids.lnk
[2014.07.26 13:41:19 | 000,000,017 | ---- | C] () -- C:\Windows\ClearFi.tag
[2014.07.26 13:39:12 | 000,001,024 | RH-- | C] () -- C:\Users\Public\Documents\NTILiveUpdateV9.dll
[2014.07.26 13:37:58 | 000,001,024 | RH-- | C] () -- C:\Users\Public\Documents\NTIMMV9REGET.dll
[2014.07.26 13:37:58 | 000,001,024 | RH-- | C] () -- C:\Users\Public\Documents\NTIMMV9Acer.dll
[2014.07.26 13:35:22 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
[2014.07.26 13:31:56 | 000,749,152 | ---- | C] () -- C:\Windows\SysNative\oem25.inf
[2014.07.26 13:29:43 | 000,000,834 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2014.07.26 13:28:10 | 000,008,192 | ---- | C] () -- C:\Windows\SysNative\drivers\IntelMEFWVer.dll
[2014.07.26 13:27:17 | 000,247,560 | ---- | C] () -- C:\Windows\SysNative\drivers\RTConvEQ.dat
[2014.07.26 13:27:17 | 000,039,672 | ---- | C] () -- C:\Windows\SysNative\drivers\RtPCEE3.DAT
[2014.07.26 13:27:17 | 000,033,076 | ---- | C] () -- C:\Windows\SysNative\drivers\RtPCEE4.DAT
[2014.07.26 13:27:17 | 000,001,448 | ---- | C] () -- C:\Windows\SysNative\drivers\RtHdatEx.dat
[2014.07.26 13:27:17 | 000,000,520 | ---- | C] () -- C:\Windows\SysNative\drivers\RTEQEX3.dat
[2014.07.26 13:27:17 | 000,000,520 | ---- | C] () -- C:\Windows\SysNative\drivers\RTEQEX2.dat
[2014.07.26 13:27:17 | 000,000,520 | ---- | C] () -- C:\Windows\SysNative\drivers\RTEQEX1.dat
[2014.07.26 13:27:17 | 000,000,520 | ---- | C] () -- C:\Windows\SysNative\drivers\RTEQEX0.dat
[2014.07.26 13:27:17 | 000,000,176 | ---- | C] () -- C:\Windows\SysNative\drivers\RTHDAEQ1.dat
[2014.07.26 13:27:17 | 000,000,032 | ---- | C] () -- C:\Windows\SysNative\drivers\rtkhdaud.dat
[2014.07.26 13:24:08 | 000,000,184 | ---- | C] () -- C:\Windows\LMv4.UNI
[2014.07.26 13:17:53 | 000,019,482 | ---- | C] () -- C:\Windows\SysNative\results.xml
[2014.07.26 13:12:20 | 4178,464,766 | -HS- | C] () -- C:\hiberfil.sys
[2011.05.12 14:39:10 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe

========== ZeroAccess Check ==========

[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014.03.25 04:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014.03.25 04:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2014.07.26 21:53:59 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Acronis
[2014.07.27 17:12:42 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Bitdefender
[2014.07.27 16:57:50 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\QuickScan
[2014.07.27 21:57:36 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Seznam.cz

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,011,002 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2014.07.26 19:08:27 | 000,000,952 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014.07.26 19:08:28 | 000,000,956 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_552ea5111ec825a6\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_3b457059383c66e6\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_3be7afc0514717fa\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.21 05:24:27 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.21 05:23:53 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011.02.26 07:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011.02.25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011.02.26 08:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010.11.21 05:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011.02.25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010.11.21 05:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe

< MD5 for: HAL.DLL >
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.21 05:24:08 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\SysNative\drivers\tcpip.sys
[2014.04.05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18438_none_113260637d1284ef\tcpip.sys
[2012.10.03 19:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013.09.08 04:30:37 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=40AF23633D197905F03AB5628C558C51 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_1118bb977d265d27\tcpip.sys
[2014.04.05 04:37:43 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=4F80944B03112F486212DC20BE166079 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22648_none_11b12f2896383dd1\tcpip.sys
[2010.11.21 05:24:08 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013.09.07 04:27:48 | 001,896,896 | ---- | M] (Microsoft Corporation) MD5=75F9106B74585D38C8FF6BB5CAD262D7 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_11ad2a34963bde27\tcpip.sys
[2011.03.19 09:45:16 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=CB6A53EF141CC3DA32DA54F7E75D301B -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21687_none_118505f696597a9d\tcpip.sys
[2012.10.03 19:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2011.03.19 09:39:54 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=DC08410DB2D0CC542DACAC7A90E6CB7A -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17582_none_10f667b97d405c20\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.21 05:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.21 05:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.21 05:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2014.03.04 13:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\SysNative\winlogon.exe
[2014.03.04 11:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2014.07.26 21:53:59 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Acronis
[2014.07.27 21:40:28 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Adobe
[2014.07.27 17:12:42 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Bitdefender
[2014.07.27 17:46:38 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\CyberLink
[2014.07.26 15:16:24 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Identities
[2014.07.26 15:16:48 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Intel Corporation
[2014.07.26 15:16:44 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Macromedia
[2010.11.21 09:16:41 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Media Center Programs
[2014.07.28 07:45:37 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Media Player Classic
[2014.07.28 09:41:05 | 000,000,000 | --SD | M] -- C:\Users\Vladimir\AppData\Roaming\Microsoft
[2014.07.27 16:57:50 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\QuickScan
[2014.07.27 21:57:36 | 000,000,000 | ---D | M] -- C:\Users\Vladimir\AppData\Roaming\Seznam.cz

< %APPDATA%\*.exe /s >

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2014.07.28 12:18:52 | 000,000,952 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014.07.28 16:13:00 | 000,000,956 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2014.07.26 18:43:04 | 000,367,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxtmsft.dll
[2014.07.26 18:43:04 | 000,239,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxtrans.dll
[2014.07.26 18:43:12 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\elshyph.dll
[2014.07.26 18:43:04 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\html.iec
[2014.07.26 18:43:04 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icardie.dll
[2014.07.26 18:43:04 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IEAdvpack.dll
[2014.07.26 18:43:04 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieapfltr.dat
[2014.07.26 18:43:04 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieapfltr.dll
[2014.07.26 18:43:04 | 000,240,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iedkcs32.dll
[2014.07.26 18:43:04 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieetwproxystub.dll
[2014.07.26 18:43:04 | 011,742,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieframe.dll
[2014.07.26 18:43:04 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iepeers.dll
[2014.07.26 18:43:04 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iernonce.dll
[2014.07.26 18:43:04 | 002,179,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iertutil.dll
[2014.07.26 18:43:04 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iesetup.dll
[2014.07.26 18:43:04 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iesysprep.dll
[2014.07.26 18:43:04 | 000,442,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieui.dll
[2014.07.26 18:43:04 | 000,016,284 | ---- | M] () -- C:\Windows\system32\ieuinit.inf
[2014.07.26 18:43:04 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieUnatt.exe
[2014.07.26 18:43:04 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iexpress.exe
[2014.07.26 18:43:04 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imgutil.dll
[2014.07.26 18:43:04 | 001,964,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inetcpl.cpl
[2014.07.26 18:43:04 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inseng.dll
[2014.07.26 18:43:04 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\JavaScriptCollectionAgent.dll
[2014.07.26 18:43:04 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jscript.dll
[2014.07.26 18:43:04 | 004,254,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jscript9.dll
[2014.07.26 18:43:04 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jscript9diag.dll
[2014.07.26 18:43:04 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jsIntl.dll
[2014.07.26 18:43:04 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jsproxy.dll
[2014.07.26 14:26:30 | 000,289,413 | ---- | M] () -- C:\Windows\system32\license.rtf
[2014.07.26 18:43:04 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\licmgr10.dll
[2014.07.28 12:21:04 | 000,000,018 | ---- | M] () -- C:\Windows\system32\log.txt
[2014.07.26 18:43:04 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msfeeds.dll
[2014.07.26 18:43:04 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msfeedsbs.dll
[2014.07.26 18:43:04 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msfeedssync.exe
[2014.07.26 18:43:04 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshta.exe
[2014.07.26 18:43:04 | 017,276,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtml.dll
[2014.07.26 18:43:04 | 002,724,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtml.tlb
[2014.07.26 18:43:04 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MshtmlDac.dll
[2014.07.26 18:43:04 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtmled.dll
[2014.07.26 18:43:04 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtmler.dll
[2014.07.26 18:43:04 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtmlmedia.dll
[2014.07.26 18:43:04 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msls31.dll
[2014.07.26 18:43:04 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrating.dll
[2014.07.26 13:23:01 | 000,486,512 | ---- | M] (EgisTec) -- C:\Windows\system32\NBMatS1SDK.dll
[2014.07.26 18:43:04 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\occache.dll
[2014.07.26 19:31:22 | 001,558,096 | ---- | M] () -- C:\Windows\system32\PerfStringBackup.INI
[2014.07.26 18:43:04 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pngfilt.dll
[2014.07.26 18:43:04 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RegisterIEPKEYs.exe
[2014.07.26 18:43:04 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SetIEInstalledDate.exe
[2014.07.27 23:00:24 | 000,290,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\subinacl.exe
[2014.07.26 18:43:04 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tdc.ocx
[2014.07.26 18:43:04 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\url.dll
[2014.07.26 18:43:04 | 001,139,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\urlmon.dll
[2014.07.26 18:43:04 | 000,455,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vbscript.dll
[2014.07.26 18:43:04 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\webcheck.dll
[2014.07.26 18:43:04 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wextract.exe
[2014.07.26 18:43:04 | 001,791,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wininet.dll

< %SYSTEMDRIVE%\*.exe >

< >

< *crack* /s >
[2014.07.28 08:45:22 | 000,010,620 | ---- | M] () -- \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_003600.log
[2014.07.28 08:40:21 | 000,007,218 | ---- | M] () -- \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_006852.log
[8 \Users\Vladimir\AppData\Local\Temp\*.tmp files -> \Users\Vladimir\AppData\Local\Temp\*.tmp -> ]

< *keygen* /s >

< *AntiWPA* /s >

< *loader* /s >
[2012.05.04 21:15:18 | 000,127,464 | ---- | M] () -- \Program Files (x86)\Acer\Acer Crystal Eye Webcam\Koan\pyloader.dll
[2012.05.04 21:14:46 | 000,021,172 | ---- | M] () -- \Program Files (x86)\Acer\Acer Crystal Eye Webcam\subsys\Uploader\PyUploader.kc
[2012.05.07 17:19:56 | 000,233,960 | ---- | M] () -- \Program Files (x86)\Acer\Acer Crystal Eye Webcam\subsys\Uploader\_PyUploader.pyd
[2013.10.07 19:12:34 | 000,024,576 | ---- | M] () -- \Program Files (x86)\Common Files\Acronis\TrueImageHome\tnd_loader.bin
[2013.05.15 15:20:24 | 000,747,096 | ---- | M] () -- \Program Files (x86)\Common Files\Bitdefender\setupinformation\setupdownloader.exe
[2013.05.16 20:47:03 | 000,000,032 | ---- | M] () -- \Program Files (x86)\Common Files\Bitdefender\setupinformation\setupdownloader.exe.md5
[2013.05.16 20:39:27 | 000,489,472 | ---- | M] () -- \Program Files (x86)\Common Files\Bitdefender\setupinformation\en-US\setupdownloader.ui
[2013.05.16 20:47:04 | 000,000,032 | ---- | M] () -- \Program Files (x86)\Common Files\Bitdefender\setupinformation\en-US\setupdownloader.ui.md5
[2013.12.20 01:37:56 | 000,065,344 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2013.12.20 01:37:56 | 000,067,904 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2013.12.20 01:37:44 | 000,073,536 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader.dll
[2013.12.20 01:37:44 | 000,080,704 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXUpdateLoader64.dll
[2014.06.03 16:26:54 | 000,003,208 | ---- | M] () -- \Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\skin\ajax-loader.gif
[2014.06.26 09:46:50 | 000,009,418 | ---- | M] () -- \Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\gifloader.gif
[2014.04.03 19:13:02 | 000,000,919 | ---- | M] () -- \Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js\lazyloader.js
[2014.02.11 13:16:46 | 000,415,448 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\downloader.exe
[2013.02.08 14:40:59 | 000,000,597 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\logging\downloader.logger.xml
[2013.02.14 14:37:33 | 000,008,519 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\sb_loader.gif
[2013.02.08 14:44:11 | 000,061,907 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\browser\obk_loader.png
[2013.03.14 17:09:13 | 000,003,373 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\common\ico_hold_loader_progress.png
[2013.02.08 14:44:02 | 000,002,196 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\common\loader.gif
[2013.02.08 14:44:16 | 000,008,439 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\common\loader.png
[2013.03.14 18:37:37 | 000,005,779 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\common\loader_progress.png
[2013.02.08 14:44:03 | 000,008,519 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\common\sb_loader.gif
[2013.05.15 15:20:24 | 000,747,096 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe
[2013.05.16 20:47:03 | 000,000,032 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe.md5
[2013.05.16 20:39:27 | 000,489,472 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\en-US\setupdownloader.ui
[2013.05.16 20:47:04 | 000,000,032 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\en-US\setupdownloader.ui.md5
[2014.04.03 19:13:02 | 000,000,919 | ---- | M] () -- \Users\Vladimir\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js\lazyloader.js
[2014.07.28 09:40:50 | 000,085,673 | ---- | M] () -- \Users\Vladimir\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TP365F4N\sf_preloader[1].js
[2013.08.02 04:12:19 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\63e7d454eeb6cdac5bd05042201891bd\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\63e7d454eeb6cdac5bd05042201891bd\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\b5eb64a2a2d59058733468e222ed35e9\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\b5eb64a2a2d59058733468e222ed35e9\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 04:12:19 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\f6446aa2f5f86c06820f4e4200db84ac\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | ---- | M] () -- \Windows\SoftwareDistribution\Download\f6446aa2f5f86c06820f4e4200db84ac\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:38:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:38:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 04:12:19 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 19:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 07:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 08:20:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_695e76beab8ff095\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 04:18:31 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_694dd858ab9ba72a\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 13:03:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_69637bfcab8b6996\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:28:21 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_69353b6eabae8d55\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.07.26 23:08:02 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2014.07.26 23:08:02 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2014.07.26 23:08:02 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2014.07.26 23:08:02 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2014.07.26 23:08:02 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2011.05.12 14:21:18 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.05.12 14:21:18 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.efi_75834aa0
[2011.05.12 14:21:18 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winload.exe_75835076
[2011.05.12 14:21:18 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.efi_85cd069f
[2011.05.12 14:21:18 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2014.07.26 23:04:11 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2010.11.21 05:16:35 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011.02.05 19:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2011.02.05 15:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:45:15 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 03:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.10.04 18:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.11.30 06:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.02 07:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.29 03:54:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_0d2f3cd4f33e35f4\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.03.04 12:35:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_0d44e078f32df860\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.04.12 04:03:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_0d169feaf3511c1f\api-ms-win-core-libraryloader-l1-1-0.dll

< *minodlogin* /s >

< *tnod* /s >
[2011.05.30 05:01:45 | 000,000,750 | ---- | M] () -- \OEM\Preload\Autorun\APP\clear.fi v1.0\PCinema\Config\CopyRightNoDTS.ini

< *AutoKMS* /s >

< *activator* /s >
[2013.11.22 13:04:26 | 000,603,744 | ---- | M] () -- \PROGRAMS\Acronis\TrueImageHome\license_activator.exe

< *serial* /s >
[2014.05.13 23:17:02 | 000,434,368 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014.07.26 22:52:22 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2014.07.26 23:07:37 | 000,090,112 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2013.02.08 14:44:57 | 000,095,398 | ---- | M] () -- \Program Files\Bitdefender\Bitdefender\skin\images\common\bg_certification_serial.png
[2014.05.13 23:48:16 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014.07.26 22:52:50 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2014.07.26 23:07:37 | 000,090,112 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\cs\System.RunTime.Serialization.Resources.dll
[2014.07.26 23:07:23 | 000,011,776 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014.07.26 19:10:59 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\553e7bfc9cac5e4feaa83d8ee1e187bd\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.07.26 19:11:46 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\f177ea74036d5fdc6c6b9c967dc877cf\System.Runtime.Serialization.ni.dll
[2014.07.26 19:07:38 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\8653acb87b4a219a84e4ce58df35e62a\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.07.26 19:09:41 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\b73fbf8a2db2192752ad2b13744a393b\System.Runtime.Serialization.ni.dll
[2014.07.26 19:55:56 | 000,309,760 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\abb3fbf787b74b7d2513a8c409b5ef74\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.07.26 19:55:56 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\abb3fbf787b74b7d2513a8c409b5ef74\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014.07.26 19:55:56 | 002,825,216 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f6d7bb59f318c130d68816a89335d05e\System.Runtime.Serialization.ni.dll
[2014.07.26 19:55:56 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f6d7bb59f318c130d68816a89335d05e\System.Runtime.Serialization.ni.dll.aux
[2014.07.26 19:56:39 | 000,026,624 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll
[2014.07.26 19:56:39 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll.aux
[2014.07.26 22:40:56 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\3b1e2119f9cdfbc454bf08eb1ed9f023\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014.07.26 22:40:56 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\3b1e2119f9cdfbc454bf08eb1ed9f023\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014.07.26 22:40:56 | 003,640,320 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\7e7ed14f2b9a7e3d94307462aa99f5b9\System.Runtime.Serialization.ni.dll
[2014.07.26 22:40:56 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\7e7ed14f2b9a7e3d94307462aa99f5b9\System.Runtime.Serialization.ni.dll.aux
[2014.07.27 15:57:51 | 000,028,672 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll
[2014.07.27 15:57:51 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll.aux
[2013.09.11 22:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\v4.0_4.0.0.0_cs_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 22:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 21:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Json\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Json.dll
[2013.09.11 21:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Primitives\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Primitives.dll
[2013.09.11 22:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.RunTime.Serialization.resources\v4.0_4.0.0.0_cs_b77a5c561934e089\System.RunTime.Serialization.resources.dll
[2013.09.11 21:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Xml\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Xml.dll
[2013.09.11 22:33:38 | 001,052,320 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013.09.11 21:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2013.09.11 21:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.XmlSerializer\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Xml.XmlSerializer.dll
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2014.07.26 23:07:26 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013.09.11 22:33:38 | 001,052,320 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2013.09.11 22:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 21:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013.09.11 21:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013.09.11 21:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013.09.11 21:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2013.09.11 21:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.XmlSerializer.dll
[2013.09.11 22:33:38 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 22:33:38 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2014.07.26 23:07:22 | 000,011,776 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\cs\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013.09.11 22:33:38 | 001,052,320 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2013.09.11 22:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013.09.11 21:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013.09.11 21:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013.09.11 21:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013.09.11 21:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2013.09.11 21:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.XmlSerializer.dll
[2013.09.11 20:32:16 | 000,027,920 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2013.09.11 20:32:16 | 000,113,864 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\cs\System.RunTime.Serialization.resources.dll
[2012.10.05 22:09:22 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_ar-sa_da66fe5d47789091.manifest
[2012.10.05 22:03:20 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_da-dk_622a3c9da1a8c4d8.manifest
[2012.10.05 20:10:04 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_de-de_626f1d4da174828e.manifest
[2012.10.05 22:02:37 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_el-gr_8f546afdbfc776f0.manifest
[2012.10.05 20:09:41 | 000,000,531 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_en-us_8f4bb639bfcd9db1.manifest
[2012.10.05 21:54:09 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_es-es_8f50994bbfc949f4.manifest
[2012.10.05 22:02:40 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_fi-fi_bd1d8c79dd71129a.manifest
[2012.10.05 20:08:58 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_fr-fr_bcc53fc7ddb1f222.manifest
[2012.10.05 22:01:09 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_he-il_17cecb28196cb924.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_hu-hu_177d7e9619a74ce6.manifest
[2012.10.05 22:12:18 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_it-it_44f22512378ff514.manifest
[2012.10.05 21:11:25 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_ja-jp_7275361e55708151.manifest
[2012.10.05 21:10:37 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_ko-kr_9fd8712c7363f96b.manifest
[2012.10.05 22:02:32 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_nb-no_282c61bccd26f48f.manifest
[2012.10.05 22:12:15 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_nl-nl_2856d464cd059e22.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_pl-pl_832c821908e5590e.manifest
[2012.10.05 21:51:35 | 000,001,635 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_pt-br_82f38a4d090ef34a.manifest
[2012.10.05 22:12:12 | 000,001,632 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_pt-pt_82de0509091f034e.manifest
[2012.10.05 22:03:52 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_ru-ru_dda9e31b4505f382.manifest
[2012.10.05 22:12:13 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_sv-se_0bc2b8ff62732b3f.manifest
[2012.10.05 22:12:16 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_tr-tr_389cffb580d00e96.manifest
[2012.10.05 21:15:11 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_zh-cn_493f19f4345813af.manifest
[2012.10.05 21:15:20 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_zh-tw_48ddeaee34a0debf.manifest
[2012.10.05 21:54:03 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_ar-sa_c395599f61238589.manifest
[2012.10.05 21:54:13 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_da-dk_4b5897dfbb53b9d0.manifest
[2012.10.05 19:58:55 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_de-de_4b9d788fbb1f7786.manifest
[2012.10.05 21:53:49 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_el-gr_7882c63fd9726be8.manifest
[2012.10.05 19:57:17 | 000,000,531 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_en-us_787a117bd97892a9.manifest
[2012.10.05 21:48:11 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_es-es_787ef48dd9743eec.manifest
[2012.10.05 21:52:37 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_fi-fi_a64be7bbf71c0792.manifest
[2012.10.05 20:00:18 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_fr-fr_a5f39b09f75ce71a.manifest
[2012.10.05 21:54:34 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_he-il_00fd266a3317ae1c.manifest
[2012.10.05 21:59:30 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_hu-hu_00abd9d8335241de.manifest
[2012.10.05 21:59:26 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_it-it_2e208054513aea0c.manifest
[2012.10.05 21:01:19 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_ja-jp_5ba391606f1b7649.manifest
[2012.10.05 21:03:36 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_ko-kr_8906cc6e8d0eee63.manifest
[2012.10.05 21:54:16 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_nb-no_115abcfee6d1e987.manifest
[2012.10.05 22:00:42 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_nl-nl_11852fa6e6b0931a.manifest
[2012.10.05 22:00:50 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_pl-pl_6c5add5b22904e06.manifest
[2012.10.05 21:48:47 | 000,001,635 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_pt-br_6c21e58f22b9e842.manifest
[2012.10.05 22:00:41 | 000,001,632 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_pt-pt_6c0c604b22c9f846.manifest
[2012.10.05 21:54:16 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_ru-ru_c6d83e5d5eb0e87a.manifest
[2012.10.05 22:00:43 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_sv-se_f4f114417c1e2037.manifest
[2012.10.05 22:00:35 | 000,001,626 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_tr-tr_21cb5af79a7b038e.manifest
[2012.10.05 21:03:52 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_zh-cn_326d75364e0308a7.manifest
[2012.10.05 21:03:53 | 000,001,638 | ---- | M] () -- \Windows\SoftwareDistribution\Download\d49f800287b6feea051b21e010caccde\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_zh-tw_320c46304e4bd3b7.manifest
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2014.07.26 23:07:17 | 000,005,120 | ---- | M] () -- \Windows\System32\cs-CZ\serialui.dll.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2014.07.26 23:07:17 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\cs-CZ\serialui.dll.mui
[2014.07.26 23:07:22 | 000,011,776 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_1e527062c1f59d5f\System.Runtime.Serialization.Formatters.Soap.Resources.dll
[2014.07.26 23:07:26 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23\serialui.dll.mui
[2009.07.14 03:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2014.07.26 23:07:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_bb9a1800691e639c\System.RunTime.Serialization.Resources.dll
[2014.07.26 23:07:29 | 000,009,728 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_20ab142d65ed6acc\serial.sys.mui
[2009.07.14 02:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009.06.10 22:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2009.06.10 22:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012.10.05 12:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2010.11.21 05:24:53 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012.10.05 12:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2012.10.05 12:56:11 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2011.05.12 14:21:18 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.05.12 14:21:18 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8_kdcom.dll_db5e7744
[2014.07.26 23:08:02 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_aa5fd338fd5bcb23_serialui.dll.mui_7d29d2a3
[2009.07.14 04:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2014.07.26 23:08:02 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed_serialui.dll.mui_7d29d2a3
[2009.07.14 04:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009.07.14 04:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011.02.05 19:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011.02.05 15:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009.07.14 04:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2010.11.21 05:17:50 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012.10.05 20:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2012.10.05 20:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2010.11.21 05:17:50 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012.10.05 20:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2012.10.05 20:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2010.11.21 05:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012.10.05 19:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2012.10.05 19:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2014.07.26 23:06:06 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0.manifest
[2012.10.05 22:12:17 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f.manifest
[2012.10.05 21:59:28 | 000,001,626 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797.manifest
[2010.11.21 05:17:50 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012.10.05 19:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2012.10.05 19:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2010.11.21 05:18:20 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012.10.05 19:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2012.10.05 19:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2009.06.10 23:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2014.07.26 23:07:23 | 000,011,776 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ters.soap.resources_b03f5f7f11d50a3a_6.1.7600.16385_cs-cz_d5c3552dd9b47144\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012.10.05 12:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2012.10.05 12:56:07 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2014.07.26 23:07:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_cs-cz_34555b4d83cf58b0\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:02:06 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_cs-cz_342f3c238422529f\System.RunTime.Serialization.Resources.dll
[2010.11.13 04:37:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_cs-cz_1d5d97659dcd4797\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:24:53 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2014.07.26 23:07:26 | 000,011,776 | ---- | M] () -- \Windows\winsxs\wow64_microsoft-windows-n..xcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_28a71ab4f6565f5a\System.Runtime.Serialization.Formatters.Soap.resources.dll
[2014.07.26 23:07:17 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_4e4137b544fe59ed\serialui.dll.mui
[2009.07.14 03:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2014.07.26 23:07:37 | 000,090,112 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-wcfcorecomp.resources_31bf3856ad364e35_6.1.7601.17514_cs-cz_5f7b7c7cb0c0f266\System.RunTime.Serialization.Resources.dll
[2010.11.21 05:25:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012.10.05 12:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2012.10.05 12:56:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll

< *w7lxe* /s >

========== Alternate Data Streams ==========

@Alternate Data Stream - 122 bytes -> C:\ProgramData\Temp:56E2E879

< End of report >

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#25 Příspěvek od michelangelo »

1/1 EXTRAS

OTL Extras logfile created on: 28.7.2014 16:37:31 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Vladimir\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

15,86 Gb Total Physical Memory | 12,07 Gb Available Physical Memory | 76,12% Memory free
31,71 Gb Paging File | 28,01 Gb Available in Paging File | 88,34% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 458,48 Gb Total Space | 394,38 Gb Free Space | 86,02% Space Free | Partition Type: NTFS
Drive D: | 698,64 Gb Total Space | 330,11 Gb Free Space | 47,25% Space Free | Partition Type: NTFS

Computer Name: VVV | User Name: Vladimir | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0DFEE47A-1206-40A3-8693-3D0D9F4A12F2}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{228E7ED4-6A86-43BC-B949-4491521B2026}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2A64F727-15F1-40F7-AF3E-9F47006CE239}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{37A9CEE7-FA44-4030-9839-8E28BA4CD38D}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{718E527F-1EB2-4A80-956D-C74964F416FF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{8B59C97F-8D4C-4C26-ACCB-A48506A3883D}" = lport=10243 | protocol=6 | dir=in | app=system |
"{91F85EA7-8235-4D3F-BBB8-21CBCBDE9D50}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{967E2EC4-8678-4B95-A032-F2D05DA5EAAF}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{9D5C4C96-D16D-49A2-8227-4206FC2B7665}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A496A598-25BA-4857-8F0B-84312B296365}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C27DFB6D-FA5F-4B01-9102-46E9A6860734}" = lport=2869 | protocol=6 | dir=in | app=system |
"{CB5233BD-A6DB-4C09-A152-CAB3DF36FBCD}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F13693EF-47F4-47ED-B1E5-EB981F2607EF}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{FC17FE85-1A01-4DD4-9BF9-55D6ED2BDB7F}" = rport=10243 | protocol=6 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0382F78A-3A4F-44AA-9B80-D31E1D7CE885}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{07DED7CC-C9F1-4DBA-A0E5-5AE5A08BB4B6}" = protocol=6 | dir=out | app=system |
"{14006653-8F48-4580-AF1A-67A7D04B9504}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{21E0D5F8-F770-45FC-8E37-8FCA116CBE0B}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{338B65AB-8B42-482C-B022-AAC8CFAEA73D}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4D119AA8-B291-4AE8-9471-4F846F1DF7F1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{56FF9543-4D10-4BB4-82E7-3FCC5764B6E8}" = dir=in | app=c:\program files (x86)\acer\acer vcm\vc.exe |
"{60A188EF-A50F-424B-B0E3-66909A582DDE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{781DEF34-5818-43ED-9582-CF860DD5FBD0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7DA57D58-120D-4535-A028-2E55022C90E8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8C8249BC-6A97-416F-B662-56EE32ABE6E5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9ACADA8B-9678-49E1-B845-0B516EEAA16B}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{9DABD4F6-7067-4548-B6BE-E57B5B7EBF65}" = dir=in | app=c:\program files (x86)\acer\acer vcm\rs_service.exe |
"{A2384605-A369-4719-92D1-65B91C0AC9D1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{AA1BE3CE-6217-4434-8FD0-DEB2116E86E4}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{B956162E-AF21-4766-95DA-980923DD0C9F}" = protocol=17 | dir=in | app=c:\program files (x86)\common files\acronis\syncagent\syncagentsrv.exe |
"{BEFCAB98-53CF-43B3-B891-3D9C6FD963DD}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D2D71D54-A0E1-4228-84CA-8AD33AAF65CF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D6C49F2D-DED7-4F63-8CE6-1E7328B983E7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{D830B936-5040-4778-AEE5-0883E43C759B}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{DD95AF5F-E9FD-4568-91D8-00FAAE68463E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E8ACC869-80A1-420E-8C3A-B8EB794753B0}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\acronis\syncagent\syncagentsrv.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}" = WIDCOMM Bluetooth Software
"{50813B8C-FCBB-3C61-8039-EAAA93029066}" = Microsoft .NET Framework 4.5.1 (CSY)
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029" = Microsoft .NET Framework 4.5.1 (čeština)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A000F75A-A246-44A7-8079-9E9E7F9054B2}" = BioExcess
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 337.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 337.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 12.4.67
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.13.1220
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}" = Intel(R) Turbo Boost Technology Monitor 2.0
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"Bitdefender" = Bitdefender Total Security

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{047F790A-7A2A-4B6A-AD02-38092BA63DAC}" = Acer VCM
"{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack
"{0654EA5D-308A-4196-882B-5C09744A5D81}" = Windows Live Photo Common
"{06B05153-97E4-427E-B1A8-E098F6C5E52F}" = Windows Live Essentials
"{073F306D-9851-4969-B828-7B6444D07D55}" = Windows Live Photo Common
"{09922FFE-D153-44AE-8B60-EA3CB8088F93}" = Windows Live UX Platform Language Pack
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0C1931EB-8339-4837-8BEC-75029BF42734}" = Windows Live UX Platform Language Pack
"{0EC0B576-90F9-43C3-8FAD-A4902DF4B8F4}" = Galeria de Fotografias do Windows Live
"{1203DC60-D9BD-44F9-B372-2B8F227E6094}" = Windows Live Temel Parçalar
"{120C160F-F53D-4A15-A873-E79BF5B98B48}" = Windows Live Photo Common
"{128133D3-037A-4C62-B1B7-55666A10587A}" = Windows Live UX Platform Language Pack
"{133D9D67-D475-4407-AC3C-D558087B2453}" = Windows Live Movie Maker
"{168E7302-890A-4138-9109-A225ACAF7AD1}" = Windows Live Photo Common
"{17835B63-8308-427F-8CF5-D76E0D5FE457}" = Windows Live Essentials
"{17F99FCE-8F03-4439-860A-25C5A5434E18}" = Windows Live Essentials
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{1A72337E-D126-4BAF-AC89-E6122DB71866}" = Windows Liven valokuvavalikoima
"{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}" = Windows Live UX Platform Language Pack
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20381A8A-808E-4A53-B6CD-AD2B85E16365}" = Windows Live UX Platform Language Pack
"{220C7F8C-929D-4F71-9DC7-F7A6823B38E4}" = Windows Live UX Platform Language Pack
"{226F0D93-76DE-4F1C-B14D-DE10443ADB60}" = Windows Live Movie Maker
"{24DF33E0-F924-4D0D-9B96-11F28F0D602D}" = Windows Live UX Platform Language Pack
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{27996809-446F-7261-6C69-6B654C656F6E}" =
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{28B9D2D8-4304-483F-AD71-51890A063A74}" = Windows Live Photo Common
"{29373E24-AC72-424E-8F2A-FB0F9436F21F}" = Windows Live Photo Common
"{2A07C35B-8384-4DA4-9A95-442B6C89A073}" = Windows Live Essentials
"{2C4E06CC-1F04-4C25-8B3C-93A9049EC42C}" = Windows Live UX Platform Language Pack
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{370F888E-42A7-4911-9E34-7D74632E17EB}" = Windows Live Photo Common
"{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
"{3B72C1E0-26A1-40F6-8516-D50C651DFB3C}" = Windows Live Essentials
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{40BFD84C-64CD-42CC-9909-8734C50429C6}" = Windows Live UX Platform Language Pack
"{410DF0AA-882D-450D-9E1B-F5397ACFFA80}" = Windows Live Essentials
"{429DF1A0-3610-4E9E-8ACE-3C8AC1BA8FCA}" = Windows Live Photo Gallery
"{43B43577-2514-4CE0-B14A-7E85C17C0453}" = Windows Live Essentials
"{4444F27C-B1A8-464E-9486-4C37BAB39A09}" = Фотогалерия на Windows Live
"{4736B0ED-F6A1-48EC-A1B7-C053027648F1}" = Galeria fotogràfica del Windows Live
"{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live
"{4A04DB63-8F81-4EF4-9D09-61A2057EF419}" = Windows Live Essentials
"{4C378B16-46B7-4DA1-A2CE-2EE676F74680}" = Windows Live UX Platform Language Pack
"{4D141929-141B-4605-95D6-2B8650C1C6DA}" = Windows Live UX Platform Language Pack
"{4D83F339-5A5C-4B21-8FD3-5D407B981E72}" = Windows Live Photo Common
"{506FC723-8E6C-4417-9CFF-351F99130425}" = Windows Live UX Platform Language Pack
"{523DF2BB-3A85-4047-9898-29DC8AEB7E69}" = Windows Live UX Platform Language Pack
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{5495E9A4-501A-4D4C-87C9-E80916CA9478}" = Windows Live UX Platform Language Pack
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5858B1D6-8056-471C-8A29-6A1765BBC0BE}" = Acronis True Image 2014
"{5C2F5C1B-9732-4F81-8FBF-6711627DC508}" = Windows Live Fotogalleri
"{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
"{5E627606-53B9-42D1-97E1-D03F6229E248}" = Windows Live UX Platform Language Pack
"{60C3C026-DB53-4DAB-8B97-7C1241F9A847}" = Windows Live Movie Maker
"{640798A0-A4FB-4C52-AC72-755134767F1E}" = Windows Live Movie Maker
"{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}" = Windows Live Essentials
"{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}" = Windows Live Movie Maker
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6A4ABCDC-0A49-4132-944E-01FBCCB3465C}" = Windows Live UX Platform Language Pack
"{6B556C37-8919-4991-AC34-93D018B9EA49}" = Windows Live Photo Common
"{6CB36609-E3A6-446C-A3C1-C71E311D2B9C}" = Windows Live Movie Maker
"{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker
"{6EF2BE2C-3121-48B7-B7A6-C56046B3A588}" = Windows Live Movie Maker
"{6F37D92B-41AA-44B7-80D2-457ABDE11896}" = Windows Live Photo Common
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{71527C7C-5289-4CB2-88C9-23344C0FF6C1}" = Windows Live Movie Maker
"{7272F232-A7E0-4B2B-A5D2-71B7C5E2379C}" = Windows Live Fotótár
"{7327080F-6673-421F-BBD9-B618F357EEB3}" = Windows Live UX Platform Language Pack
"{7373E17D-18E0-44A7-AC3A-6A3BFB85D3B3}" = Windows Live Movie Maker
"{73FC3510-6421-40F7-9503-EDAE4D0CF70D}" = Windows Live Photo Common
"{7465A996-0FCA-4D2D-A52C-F833B0829B5B}" = Windows Live Movie Maker
"{74E8A7F6-575D-42C7-9178-E87D1B3BEFE8}" = Windows Live UX Platform Language Pack
"{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
"{77F69CA1-E53D-4D77-8BA3-FA07606CC851}" = Фотоальбом Windows Live
"{78906B56-0E81-42A7-AC25-F54C946E1538}" = Windows Live Photo Common
"{7A9D47BA-6D50-4087-866F-0800D8B89383}" = Podstawowe programy Windows Live
"{7ADFA72D-2A9F-4DEC-80A5-2FAA27E23F0F}" = Windows Live Photo Common
"{7AF8E500-B349-4A77-8265-9854E9A47925}" = Windows Live Movie Maker
"{7C2A3479-A5A0-412B-B0E6-6D64CBB9B251}" = Windows Live Photo Common
"{7D0DE76C-874E-4BDE-A204-F4240160693E}" = Windows Live Photo Common
"{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
"{7D99B933-E29C-4599-92F0-DAED2AF041E3}" = Windows Live Essentials
"{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX
"{827D3E4A-0186-48B7-9801-7D1E9DD40C07}" = Windows Live Essentials
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{84267681-BF16-40B6-9564-27BC57D7D71C}" = Windows Live Photo Common
"{84A411F9-40A5-4CDA-BF46-E09FBB2BC313}" = Windows Live Essentials
"{85373DA7-834E-4850-8AF5-1D99F7526857}" = Windows Live Photo Common
"{861B1145-7762-4794-B40C-3FF0A389DFE6}" = Windows Live Photo Gallery
"{86F444A5-C9B9-41DC-AF28-B5E46F5497C7}" = Windows Live Argazki Galeria
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{885F1BCD-C344-4758-85BD-09640CF449A5}" = Windows Live Photo Gallery
"{8909CFA8-97BF-4077-AC0F-6925243FFE08}" = Windows Liven asennustyökalu
"{8CF5D47D-27B7-49D6-A14F-10550B92749D}" = Windows Live UX Platform Language Pack
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{97F77D62-5110-4FA3-A2D3-410B92D31199}" = Windows Live Fotogaléria
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BD262D0-B788-4546-A0A5-F4F56EC3834B}" = Windows Live Photo Common
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DB90178-B5B0-45BD-B0A7-D40A6A1DF1CA}" = Windows Live Movie Maker
"{A0382E3C-7384-429A-9BFA-AF5888E5A193}" = Acer Crystal Eye Webcam
"{A101F637-2E56-42C0-8E08-F1E9086BFAF3}" = Windows Live Movie Maker
"{A199DB88-E22D-4CE7-90AC-B8BE396D7BF4}" = Windows Live Movie Maker
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
"{A60B3BF0-954B-42AF-B8D8-2C1D34B613AA}" = Windows Live Photo Gallery
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{ABD534B7-E951-470E-92C2-CD5AF1735726}" = Windows Live Essentials
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI
"{AD4BF37B-6882-4FD4-B440-96576446884C}" = Acer Arcade Instant On
"{ADFE4AED-7F8E-4658-8D6E-742B15B9F120}" = Windows Live Photo Common
"{B0AD205F-60D0-4084-AFB8-34D9A706D9A8}" = Windows Live Essentials
"{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B26438B4-BF51-49C3-9567-7F14A5E40CB9}" = Dolby Home Theater v4
"{B2BCA478-EC0F-45EE-A9E9-5EABE87EA72D}" = Windows Live Photo Common
"{B33B61FE-701F-425F-98AB-2B85725CBF68}" = Windows Live Photo Common
"{B618C3BF-5142-4630-81DD-F96864F97C7E}" = Windows Live Essentials
"{BD4EBDB5-EB14-4120-BB04-BE0A26C7FB3E}" = Windows Live Photo Common
"{BD695C2F-3EA0-4DA4-92D5-154072468721}" = Windows Live Fotoğraf Galerisi
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{BF022D76-9F72-4203-B8FA-6522DC66DFDA}" = Windows Live Movie Maker
"{C00C2A91-6CB3-483F-80B3-2958E29468F1}" = Συλλογή φωτογραφιών του Windows Live
"{C01FCACE-CC3D-49A2-ADC2-583A49857C58}" = Windows Live Essentials
"{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
"{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}" = Galeria fotografii usługi Windows Live
"{CB66242D-12B1-4494-82D2-6F53A7E024A3}" = Galerie foto Windows Live
"{CB7224D9-6DCA-43F1-8F83-6B1E39A00F92}" = Windows Live Movie Maker
"{CD442136-9115-4236-9C14-278F6A9DCB3F}" = Windows Live Movie Maker
"{CD7CB1E6-267A-408F-877D-B532AD2C882E}" = Windows Live Photo Common
"{CE929F09-3853-4180-BD90-30764BFF7136}" = גלריית התמונות של Windows Live
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF671BFE-6BA3-44E7-98C1-500D9C51D947}" = Windows Live Photo Gallery
"{D299197D-CDEA-41A6-A363-F532DE4114FD}" = Windows Live UX Platform Language Pack
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}" = Windows Live UX Platform Language Pack
"{DAEF48AD-89C8-4A93-B1DD-45B7E4FB6071}" = Windows Live Movie Maker
"{DB1208F4-B2FE-44E9-BFE6-8824DBD7891B}" = Windows Live Movie Maker
"{DDC1E1BD-7615-4186-89E1-F5F43F9B6491}" = Windows Live Movie Maker
"{DEF91E0F-D266-453D-B6F2-1BA002B40CB6}" = Windows Live Essentials
"{DF71ABBB-B834-41C0-BB58-80B0545D754C}" = Windows Live UX Platform Language Pack
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
"{E5377D46-83C5-445A-A1F1-830336B42A10}" = Windows Live Galerija fotografija
"{E59969EA-3B5B-4B24-8B94-43842A7FBFE9}" = Fotogalerija Windows Live
"{E5DD4723-FE0B-436E-A815-DC23CF902A0B}" = Windows Live UX Platform Language Pack
"{E83DC314-C926-4214-AD58-147691D6FE9F}" = Основные компоненты Windows Live
"{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
"{EA777812-4905-4C08-8F6E-13BDCC734609}" = Windows Live UX Platform Language Pack
"{ED16B700-D91F-44B0-867C-7EB5253CA38D}" = Raccolta foto di Windows Live
"{EEF99142-3357-402C-B298-DEC303E12D92}" = Windows Live 影像中心
"{EF7EAB13-46FC-49DD-8E3C-AAF8A286C5BB}" = Windows Live 程式集
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F0F5D89A-197C-495B-827E-3E98B811CD2E}" = Windows Live Photo Common
"{F0F9505B-3ACF-4158-9311-D0285136AA00}" = Windows Live Essentials
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F4BEA6C1-AAC3-4810-AAEA-588E26E0F237}" = Windows Live UX Platform Language Pack
"{F53A49E6-9FB1-4A5A-B1D9-82BA116196B7}" = Acer USB Charge Manager
"{F7A46527-DF1F-4B0F-9637-98547E189442}" = Windows Live Galeria de Fotos
"{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}" = Windows Live Movie Maker
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
"{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}" = Windows Live Movie Maker
"{FB79FDB7-4DE1-453D-99FE-9A880F57380E}" = Windows Live Fotogalerie
"{FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69}" = معرض صور Windows Live
"{FD588AD4-9150-4A41-83E8-61596E0954E4}" = Fingerprint Solution
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}" = Windows Live Essentials
"{FEEF7F78-5876-438B-B554-C4CC426A4302}" = Windows Live Essentials
"{FF105207-8423-4E13-B0B1-50753170B245}" = Windows Live Movie Maker
"{FF3DFA01-1E98-46B4-A065-DA8AD47C9598}" = Windows Live Movie Maker
"{FF737490-5A2D-4269-9D82-97DB2F7C0B09}" = Windows Live Movie Maker
"Adobe AIR" = Adobe AIR
"Adobe Creative Cloud" = Adobe Creative Cloud
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Google Chrome" = Google Chrome
"Identity Card" = Identity Card
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}" = Acer Crystal Eye Webcam
"InstallShield_{FD588AD4-9150-4A41-83E8-61596E0954E4}" = Acer Bio Protection
"LManager" = Launch Manager
"WinLiveSuite" = Windows Live Essentials

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 27.7.2014 15:45:58 | Computer Name = vvv | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Shark007\filters\DivXMFSource.dll
se nezdařilo. Závislé sestavení Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 27.7.2014 15:49:03 | Computer Name = vvv | Source = Application Hang | ID = 1002
Description = Program iexplore.exe verze 11.0.9600.17207 přestal spolupracovat se
systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID
procesu: 1d24 Čas spuštění: 01cfa9d3b483b667 Čas ukončení: 5 Cesta k aplikaci: C:\Program
Files\Internet Explorer\iexplore.exe ID hlášení: f744707a-15c6-11e4-98b4-e89a8f86ca18


Error - 27.7.2014 15:56:16 | Computer Name = vvv | Source = WinMgmt | ID = 10
Description =

Error - 28.7.2014 1:29:04 | Computer Name = vvv | Source = WinMgmt | ID = 10
Description =

Error - 28.7.2014 2:41:04 | Computer Name = vvv | Source = Application Hang | ID = 1002
Description = Program Spy_Hunter_4_Crack_Full.exe verze 2.0.0.106 přestal spolupracovat
se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací
o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID
procesu: 1ac4 Čas spuštění: 01cfaa2e8ab744cd Čas ukončení: 2 Cesta k aplikaci: C:\Users\Vladimir\Desktop\Spy_Hunter_4_Crack_Full.exe

ID
hlášení: 238b83ca-1622-11e4-8304-e89a8f86ca18

Error - 28.7.2014 5:22:46 | Computer Name = vvv | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Shark007\filters\DivXMFSource.dll
se nezdařilo. Závislé sestavení Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 28.7.2014 5:22:50 | Computer Name = vvv | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files\Shark007\filters\divxmfsource.dll
se nezdařilo. Závislé sestavení Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 28.7.2014 6:13:43 | Computer Name = vvv | Source = WinMgmt | ID = 10
Description =

Error - 28.7.2014 6:18:51 | Computer Name = vvv | Source = WinMgmt | ID = 10
Description =

Error - 28.7.2014 8:48:23 | Computer Name = vvv | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro c:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 28.7.2014 8:48:24 | Computer Name = vvv | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro c:\program files (x86)\Adobe\adobe
creative cloud\Utils\Creative Cloud Uninstaller.exe se nezdařilo. Chyba v souboru
manifestu nebo zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu
s jinou verzí součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Součást
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

[ System Events ]
Error - 26.7.2014 16:47:45 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 16:47:45 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 16:48:23 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 16:48:23 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 16:48:23 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 16:57:09 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 16:57:09 | Computer Name = vvv | Source = Microsoft Antimalware | ID = 2001
Description =

Error - 26.7.2014 17:03:39 | Computer Name = vvv | Source = Service Control Manager | ID = 7043
Description = Služba Kontrola sítě Microsoft se po přijetí pokynu pro vypnutí neukončila
správně.

Error - 27.7.2014 9:49:44 | Computer Name = vvv | Source = volsnap | ID = 393245
Description = Stínové kopie svazku C: byly přerušeny během rozpoznávání.

Error - 27.7.2014 10:52:31 | Computer Name = vvv | Source = Service Control Manager | ID = 7034
Description = Služba NTI IScheduleSvc byla neočekávaně ukončena. Tento stav nastal
již 1krát.


< End of report >

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#26 Příspěvek od michelangelo »

Nedojel ani podruhe, ale podle nejnovejsi instrukce uz to napotreti zvladl.

ADWCleaner jsem odinstaloval a s nim zmizel i obsah karanteny (vcetne slozky samotne).

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#27 Příspěvek od Márty84 »

Pokud to jeste v pc mate, odinstalujte Spybota, Adware-Removal-Tool



:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
esgiguard
gupdate
gupdatem

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:otl
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,NewTabPageShow = 1
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main,NewTabPageShow = 1
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O15 - HKU\S-1-5-21-831295870-2414406303-1306686280-1001\..Trusted Domains: localhost ([]http in Internet)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2014.07.28 13:19:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014.07.27 23:00:23 | 000,000,000 | ---D | C] -- C:\Program Files\Adware-Removal-Tool
[2014.07.27 22:09:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2014.07.27 22:59:43 | 000,753,184 | ---- | M] () -- C:\Users\Vladimir\Desktop\Adware-Removal-Tool-v3.9.1.exe
[2 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[4 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
[2014.07.28 08:45:22 | 000,010,620 | ---- | M] () -- \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_003600.log
[2014.07.28 08:40:21 | 000,007,218 | ---- | M] () -- \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_006852.log
[8 \Users\Vladimir\AppData\Local\Temp\*.tmp files -> \Users\Vladimir\AppData\Local\Temp\*.tmp -> ]
@Alternate Data Stream - 122 bytes -> C:\ProgramData\Temp:56E2E879

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=-
"Adobe Creative Cloud"=-
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#28 Příspěvek od michelangelo »

Adware-Removal-Tool je pouze jako "Adware-Removal-Tool-v3.9.1.exe", coz jsem smazal. Spybota jsme tez odinstaloval.

Antivirovou ochranu jsem docasne vypl a OTL jsem spustil podle instrukce. Jen jsem nezaskrtaval zadne dalsi moznosti jako u predchozich skenu. A tady je vysledek:


All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

User: Vladimir
->Temp folder emptied: 157821 bytes
->Temporary Internet Files folder emptied: 4187851 bytes
->Google Chrome cache emptied: 349503493 bytes
->Flash cache emptied: 470 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1715911 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 135377 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 55237293 bytes
RecycleBin emptied: 1744603 bytes

Total Files Cleaned = 394,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: Vladimir
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service esgiguard stopped successfully!
Service esgiguard deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\NewTabPageShow| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKU\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\NewTabPageShow| /E : value set successfully!
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry key HKEY_USERS\S-1-5-21-831295870-2414406303-1306686280-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\localhost\ deleted successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware folder moved successfully.
C:\ProgramData\Malwarebytes folder moved successfully.
C:\Program Files\Adware-Removal-Tool\scanlogs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Reports folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Web Applications\_crx_aohghmighlieiainnegkcijnfilokake folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Web Applications folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Sync Data folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage\ext\chrome-signin\def\GPUCache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage\ext\chrome-signin\def\databases folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage\ext\chrome-signin\def\Cache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage\ext\chrome-signin\def folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage\ext\chrome-signin folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage\ext folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Storage folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Session Storage folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\s.ytimg.com folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com\support\flashplayer\sys\#s.ytimg.com folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com\support\flashplayer\sys\#film.moviezone.cz folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com\support\flashplayer\sys\#aukro.cz folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com\support\flashplayer\sys folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com\support\flashplayer folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com\support folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\macromedia.com folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\film.moviezone.cz\swf\ad-player\muvi-player-real.swf folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\film.moviezone.cz\swf\ad-player folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\film.moviezone.cz\swf folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\film.moviezone.cz folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\aukro.cz\site_images\common\allh2.swf folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\aukro.cz\site_images\common folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\aukro.cz\site_images folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F\aukro.cz folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\37NK8X2F folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\WritableRoot folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\LZK5W8CQ folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data\Shockwave Flash folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Pepper Data folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Media Cache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Local Storage folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Local Extension Settings folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\JumpListIconsOld folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\JumpListIcons folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\IndexedDB\https_www.google.cz_0.indexeddb.leveldb folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\IndexedDB folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\GPUCache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\GCM Store folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\File System\Origins folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\File System\000\p\Paths folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\File System\000\p\00 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\File System\000\p folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\File System\000 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\File System folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\__MACOSX\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\__MACOSX folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\se folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\no folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\en folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\_locales\es_419 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\_locales\en_US folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\json folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js\colorPicker\js folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js\colorPicker\images folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js\colorPicker\css folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js\colorPicker folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\js folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\imgs\tiles folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\imgs\bookmarks folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\imgs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\css\font folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0\css folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo\2014.4.4_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\ogllliimbhgmclkgjldeffhjbhaenapo folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nb folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\et folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es_419 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en_GB folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\html folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\css folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\hnfhcmjkebafbfikmbkhdpbmfpfjgiog\1.0_0\_locales\en folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\hnfhcmjkebafbfikmbkhdpbmfpfjgiog\1.0_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\hnfhcmjkebafbfikmbkhdpbmfpfjgiog\1.0_0\i folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\hnfhcmjkebafbfikmbkhdpbmfpfjgiog\1.0_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\hnfhcmjkebafbfikmbkhdpbmfpfjgiog folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_metadata folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\te folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\nb folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\he folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\en folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\search folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\no folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\he folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\et folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\es_419 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\en_US folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\en_GB folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\en folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_metadata folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\te folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ta folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\nb folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ms folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\he folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\fa folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\et folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\es_419 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\en_US folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\en_GB folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\bn folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\skin\social folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\skin\fonts folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\skin\features folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\skin folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\lib folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\jquery-ui\js folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\jquery-ui\css\smoothness\images folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\jquery-ui\css\smoothness folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\jquery-ui\css folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\jquery-ui folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\icons folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\ext folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\no folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\he folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\en folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\no folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ms folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\hr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\he folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\eu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\et folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\es_419 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\en_US folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\en_GB folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_metadata folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\zh_TW folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\zh_CN folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\vi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\uk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\tr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\th folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sk folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ru folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ro folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pt_PT folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pt_BR folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\no folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\nl folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ms folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\lv folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\lt folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ko folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ja folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\it folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\id folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\hu folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\hi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\he folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fr folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fil folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fi folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\et folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\es_419 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\es folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\en_US folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\en_GB folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\el folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\de folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\da folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\cs folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ca folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\bg folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ar folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0 folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions\aohghmighlieiainnegkcijnfilokake folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extensions folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Extension State folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\databases folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Cache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Application Cache\Cache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default\Application Cache folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome\Default folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine\Google Chrome folder moved successfully.
C:\Program Files\Adware-Removal-Tool\Quarantine folder moved successfully.
C:\Program Files\Adware-Removal-Tool folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Logs folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Cleaning folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy folder moved successfully.
File C:\Users\Vladimir\Desktop\Adware-Removal-Tool-v3.9.1.exe not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2145.tmp\System.Security.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP2145.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP6B8E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP7A8B.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
File delete failed. C:\Windows\Temp\~bdBD14.tmp scheduled to be deleted on reboot.
File move failed. \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_003600.log scheduled to be moved on reboot.
File move failed. \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_006852.log scheduled to be moved on reboot.
\Users\Vladimir\AppData\Local\Temp\bdB8A4.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\sbw6547.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\sbw6558.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\sbw6568.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\tmp94E0.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\tmpEE16.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\_iu14D2N.tmp deleted successfully.
\Users\Vladimir\AppData\Local\Temp\~nsu.tmp\Au_.exe deleted successfully.
\Users\Vladimir\AppData\Local\Temp\~nsu.tmp folder deleted successfully.
ADS C:\ProgramData\Temp:56E2E879 deleted successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring not found.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Adobe Creative Cloud deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 07282014_174005

Files\Folders moved on Reboot...
C:\Users\Vladimir\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot.
File\Folder C:\Windows\temp\~bd5B64.tmp not found!
File\Folder C:\Windows\Temp\~bdBD14.tmp not found!
File move failed. \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_003600.log scheduled to be moved on reboot.
File move failed. \Users\Vladimir\AppData\Local\Temp\Spy_Hunter_4_Crack_Full_006852.log scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#29 Příspěvek od Márty84 »

Znovu spustte OTL jako spravce a kliknete na napis Vycisti. Program po sobe uklidi a zrejme restartuje pc.


Pozorujete jeste nejake nezadouci programy, nebo divne chovani pc?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

michelangelo
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 28 črc 2014 08:56

Re: Prosim o pomoc s odstranenim Shopper-Pro a jemu podobnyc

#30 Příspěvek od michelangelo »

Hotovo. Zadne pochybne chovani nepozoruji jiz po prvnich krocich. Myslite ale, ze je ted moje PC zcela v poradku, bez nejakych zavaznych der v zabezpeceni? O to jde v prvni rade.

Paklize je, tak bych rad podekoval za Vas cas a energii. D I K Y !

PS—Mozna bych mohl dostat jeste nejaky uzitecny typ ohledne zabezpeceni (tedy krome obezretnosti). Mam vlastne jenom Total Security od Bitdefenderu a tak nejak doufam, ze to staci :)

Zamčeno