Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Podozrenie na malware/trojan + RSIT

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Podozrenie na malware/trojan + RSIT

#1 Příspěvek od ciffi »

Zdravim,

pouzivam Win8.1 x64, nedavno sa mi nedopatrenim podarilo zad*bat OS hlupostami (klasicke downloadery ktore pomimo bez vedomia nainstaluju plno bordelu .. my bad). Od toho okamihu sa mi v chrome vkuse objavuju doplnky (aj po odstraneni a naslednom restarte sa znova obnovia). Preto mam podozrenie na malware alebo inu hnusobu. Konkretne:
Obrázek
Pridavam sem preto RSIT log .. ak sa niekto na to pozriete a pomozete mi to odstranic budem velmi vdacny
// sorka za zbytocne rozkuskovany log.. pisal som to narychlo a popravde sa mi s tym nechcelo moc hrat

Logfile of random's system information tool 1.10 (written by random/random)
Run by ciffi at 2015-02-28 01:52:28
Microsoft Windows 8.1 Pro
System drive C: has 368 GB (80%) free of 460 GB
Total RAM: 4030 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 01:53:53, on 28-Feb-15
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Programs\Skype\Phone\Skype.exe
C:\Programs\QIP\qip.exe
C:\Programs\puush\puush.exe
C:\ProgramData\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\Dead Island Update 5 v1 3 0 P2P.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\Battle.net\Agent\Agent.3789\Agent.exe
C:\Games\Battle.net\Battle.net.5566\Battle.net.exe
C:\Program Files\trend micro\ciffi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... R7761R7761
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.swellsearch.info/?pid= ... Z&unqvl=84
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... R7761R7761
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.swellsearch.info/?pid= ... Z&unqvl=84
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: UniDeals - {41e6dcb6-faef-42a8-bcba-af1a9b5e6f98} - C:\Program Files (x86)\UniDeals\jBkPbKHc1xusPP.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: youtubeadblocker - {d1d3a494-d7ef-4138-8fbc-879769719c88} - C:\Program Files (x86)\youtubeadblocker\lEQsp6sD9tiL1K.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: UnIDeealsa - {fd885416-9602-46c0-ae12-86c6f95ce6be} - C:\Program Files (x86)\UnIDeealsa\uRLAXHU0czJh1P.dll (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Skype] "C:\Programs\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [QIP2005] C:\Programs\QIP\qip.exe
O4 - HKCU\..\Run: [Steam] "C:\Games\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [puush] C:\Programs\puush\puush.exe
O4 - HKCU\..\Run: [NBFC-ClientApplication] "C:\Program Files (x86)\NoteBook FanControl\NoteBook FanControl.exe" -tray
O4 - Startup: Dead Island Update 5 v1 3 0 P2P.lnk = C:\ProgramData\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\Dead Island Update 5 v1 3 0 P2P.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) - Foxit Software Inc. - C:\Programs\Foxit Reader\Foxit Cloud\FCUpdateService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NoteBook FanControl Service (NbfcService) - Stefan Hirschmann - StagWare - C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Programs\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Programs\Tunngle\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8487 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\PragmaMonitor\PragmaMonitor.dll",serv
"C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\PragmaMonitor\PragmaMonitor.dll",serv
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Programs\Foxit Reader\Foxit Cloud\FCUpdateService.exe"
"C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe"
C:\Windows\system32\svchost.exe -k imgsvc


atieclxx
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Programs\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programs\QIP\qip.exe"
"C:\Programs\puush\puush.exe"
"C:\Program Files (x86)\NoteBook FanControl\NoteBook FanControl.exe" -tray
"C:\ProgramData\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\Dead Island Update 5 v1 3 0 P2P.exe" --startup=1
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow

"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\ProgramData\Battle.net\Agent\Agent.3789\Agent.exe" --locale=enGB --session=565455030135737849
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Games\Battle.net\Battle.net.5566\Battle.net.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 564 568 576 65536 572
"C:\Users\ciffi\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}]
UniDeals - C:\Program Files (x86)\UniDeals\jBkPbKHc1xusPP.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d1d3a494-d7ef-4138-8fbc-879769719c88}]
youtubeadblocker - C:\Program Files (x86)\youtubeadblocker\lEQsp6sD9tiL1K.x64.dll [2015-02-26 707072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fd885416-9602-46c0-ae12-86c6f95ce6be}]
UnIDeealsa - C:\Program Files (x86)\UnIDeealsa\uRLAXHU0czJh1P.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}]
UniDeals - C:\Program Files (x86)\UniDeals\jBkPbKHc1xusPP.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-25 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d1d3a494-d7ef-4138-8fbc-879769719c88}]
youtubeadblocker - C:\Program Files (x86)\youtubeadblocker\lEQsp6sD9tiL1K.dll [2015-02-26 557056]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-25 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fd885416-9602-46c0-ae12-86c6f95ce6be}]
UnIDeealsa - C:\Program Files (x86)\UnIDeealsa\uRLAXHU0czJh1P.dll []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-09-24 172016]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-09-24 399856]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-09-24 442352]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-10-24 1664000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Programs\Skype\Phone\Skype.exe [2015-01-23 31090792]
"QIP2005"=C:\Programs\QIP\qip.exe [2010-10-29 3330560]
"Steam"=C:\Games\Steam\steam.exe [2015-02-19 2874048]
"puush"=C:\Programs\puush\puush.exe [2015-02-21 567880]
"NBFC-ClientApplication"=C:\Program Files (x86)\NoteBook FanControl\NoteBook FanControl.exe [2014-05-22 419328]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2015-02-06 55568]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17 508800]

C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dead Island Update 5 v1 3 0 P2P.lnk - C:\ProgramData\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\Dead Island Update 5 v1 3 0 P2P.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-06-27 442880]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
Naposledy upravil(a) ciffi dne 28 úno 2015 02:02, celkem upraveno 1 x.

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#2 Příspěvek od ciffi »

======List of files/folders created in the last 1 month======

2015-02-28 01:52:29 ----D---- C:\Program Files\trend micro
2015-02-28 01:52:28 ----D---- C:\rsit
2015-02-27 10:07:11 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2015-02-27 10:07:04 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2015-02-27 10:06:53 ----A---- C:\Windows\system32\gpsvc.dll
2015-02-27 10:06:52 ----A---- C:\Windows\system32\mfcore.dll
2015-02-27 10:06:52 ----A---- C:\Windows\system32\d3d10warp.dll
2015-02-27 10:06:50 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2015-02-27 10:06:48 ----A---- C:\Windows\system32\workfolderssvc.dll
2015-02-27 10:06:46 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-02-27 10:06:46 ----A---- C:\Windows\system32\drivers\srv.sys
2015-02-27 10:06:46 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-02-27 10:06:45 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2015-02-27 10:06:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-02-27 10:06:45 ----A---- C:\Windows\system32\wlansvc.dll
2015-02-27 10:06:44 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-02-27 10:06:43 ----A---- C:\Windows\system32\XpsPrint.dll
2015-02-27 10:06:42 ----A---- C:\Windows\system32\SRH.dll
2015-02-27 10:06:41 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-02-27 10:06:41 ----A---- C:\Windows\system32\srvsvc.dll
2015-02-27 10:06:41 ----A---- C:\Windows\system32\spoolsv.exe
2015-02-27 10:06:40 ----A---- C:\Windows\system32\Windows.Media.dll
2015-02-27 10:06:40 ----A---- C:\Windows\system32\SHCore.dll
2015-02-27 10:06:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2015-02-27 10:06:39 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-02-27 10:06:39 ----A---- C:\Windows\system32\storagewmi.dll
2015-02-27 10:06:38 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2015-02-27 10:06:38 ----A---- C:\Windows\system32\WorkfoldersControl.dll
2015-02-27 10:06:38 ----A---- C:\Windows\system32\mfplat.dll
2015-02-27 10:06:38 ----A---- C:\Windows\system32\comdlg32.dll
2015-02-27 10:06:38 ----A---- C:\Windows\system32\AppxPackaging.dll
2015-02-27 10:06:37 ----A---- C:\Windows\system32\wuapi.dll
2015-02-27 10:06:37 ----A---- C:\Windows\system32\usbmon.dll
2015-02-27 10:06:37 ----A---- C:\Windows\system32\drivers\spaceport.sys
2015-02-27 10:06:36 ----A---- C:\Windows\system32\wisp.dll
2015-02-27 10:06:36 ----A---- C:\Windows\system32\winload.exe
2015-02-27 10:06:36 ----A---- C:\Windows\system32\netcfgx.dll
2015-02-27 10:06:36 ----A---- C:\Windows\system32\defragsvc.dll
2015-02-27 10:06:35 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2015-02-27 10:06:35 ----A---- C:\Windows\system32\drivers\volsnap.sys
2015-02-27 10:06:35 ----A---- C:\Windows\system32\aclui.dll
2015-02-27 10:06:34 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2015-02-27 10:06:34 ----A---- C:\Windows\system32\wsecedit.dll
2015-02-27 10:06:34 ----A---- C:\Windows\system32\winresume.exe
2015-02-27 10:06:34 ----A---- C:\Windows\system32\printui.dll
2015-02-27 10:06:33 ----A---- C:\Windows\SYSWOW64\SRH.dll
2015-02-27 10:06:32 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2015-02-27 10:06:32 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2015-02-27 10:06:32 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-02-27 10:06:31 ----A---- C:\Windows\system32\winmmbase.dll
2015-02-27 10:06:31 ----A---- C:\Windows\system32\drivers\nwifi.sys
2015-02-27 10:06:31 ----A---- C:\Windows\system32\drivers\ks.sys
2015-02-27 10:06:30 ----A---- C:\Windows\system32\wpdbusenum.dll
2015-02-27 10:06:30 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-02-27 10:06:30 ----A---- C:\Windows\system32\mfreadwrite.dll
2015-02-27 10:06:30 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-02-27 10:06:29 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2015-02-27 10:06:29 ----A---- C:\Windows\system32\VAN.dll
2015-02-27 10:06:29 ----A---- C:\Windows\system32\SettingSync.dll
2015-02-27 10:06:29 ----A---- C:\Windows\system32\mftranscode.dll
2015-02-27 10:06:29 ----A---- C:\Windows\system32\conhost.exe
2015-02-27 10:06:28 ----A---- C:\Windows\SYSWOW64\winmmbase.dll
2015-02-27 10:06:28 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2015-02-27 10:06:28 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-02-27 10:06:28 ----A---- C:\Windows\system32\AppxSip.dll
2015-02-27 10:06:27 ----A---- C:\Windows\SYSWOW64\mftranscode.dll
2015-02-27 10:06:27 ----A---- C:\Windows\system32\SndVol.exe
2015-02-27 10:06:27 ----A---- C:\Windows\system32\clusapi.dll
2015-02-27 10:06:26 ----A---- C:\Windows\SYSWOW64\wisp.dll
2015-02-27 10:06:26 ----A---- C:\Windows\SYSWOW64\printui.dll
2015-02-27 10:06:26 ----A---- C:\Windows\SYSWOW64\aclui.dll
2015-02-27 10:06:26 ----A---- C:\Windows\system32\osk.exe
2015-02-27 10:06:25 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-02-27 10:06:25 ----A---- C:\Windows\system32\bcryptprimitives.dll
2015-02-27 10:06:24 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2015-02-27 10:06:24 ----A---- C:\Windows\system32\WorkFoldersGPExt.dll
2015-02-27 10:06:24 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-02-27 10:06:23 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2015-02-27 10:06:23 ----A---- C:\Windows\system32\winmm.dll
2015-02-27 10:06:23 ----A---- C:\Windows\system32\Windows.Networking.dll
2015-02-27 10:06:23 ----A---- C:\Windows\system32\drivers\NdisImPlatform.sys
2015-02-27 10:06:23 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-02-27 10:06:23 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2015-02-27 10:06:22 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2015-02-27 10:06:22 ----A---- C:\Windows\system32\wlanmsm.dll
2015-02-27 10:06:22 ----A---- C:\Windows\system32\twinapi.dll
2015-02-27 10:06:22 ----A---- C:\Windows\system32\mfps.dll
2015-02-27 10:06:22 ----A---- C:\Windows\system32\dwmapi.dll
2015-02-27 10:06:21 ----A---- C:\Windows\system32\wucltux.dll
2015-02-27 10:06:20 ----A---- C:\Windows\SYSWOW64\wsecedit.dll
2015-02-27 10:06:19 ----A---- C:\Windows\system32\WorkFoldersShell.dll
2015-02-27 10:06:19 ----A---- C:\Windows\system32\GdiPlus.dll
2015-02-27 10:06:17 ----A---- C:\Windows\system32\gpedit.dll
2015-02-27 10:06:17 ----A---- C:\Windows\system32\Display.dll
2015-02-27 10:06:16 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2015-02-27 10:06:16 ----A---- C:\Windows\SYSWOW64\winmm.dll
2015-02-27 10:06:14 ----A---- C:\Windows\system32\iasnap.dll
2015-02-27 10:06:13 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2015-02-27 10:06:13 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-02-27 10:06:13 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2015-02-27 10:06:13 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2015-02-27 10:06:13 ----A---- C:\Windows\system32\WebClnt.dll
2015-02-27 10:06:12 ----A---- C:\Windows\SYSWOW64\VAN.dll
2015-02-27 10:06:12 ----A---- C:\Windows\SYSWOW64\Display.dll
2015-02-27 10:06:11 ----A---- C:\Windows\system32\wups.dll
2015-02-27 10:06:11 ----A---- C:\Windows\system32\drivers\pci.sys
2015-02-27 10:06:10 ----A---- C:\Windows\system32\mispace.dll
2015-02-27 10:06:08 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2015-02-27 10:06:07 ----A---- C:\Windows\system32\wwanconn.dll
2015-02-27 10:06:07 ----A---- C:\Windows\system32\wcmcsp.dll
2015-02-27 10:06:07 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-02-27 10:06:07 ----A---- C:\Windows\system32\stobject.dll
2015-02-27 10:06:07 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2015-02-27 10:06:07 ----A---- C:\Windows\system32\dab.dll
2015-02-27 10:06:07 ----A---- C:\Windows\system32\AppxSysprep.dll
2015-02-27 10:06:06 ----A---- C:\Windows\SYSWOW64\iasnap.dll
2015-02-27 10:06:06 ----A---- C:\Windows\system32\wuauclt.exe
2015-02-27 10:06:05 ----A---- C:\Windows\SYSWOW64\rsaenh.dll
2015-02-27 10:06:05 ----A---- C:\Windows\SYSWOW64\gpedit.dll
2015-02-27 10:06:05 ----A---- C:\Windows\system32\ActionCenter.dll
2015-02-27 10:06:04 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-02-27 10:06:04 ----A---- C:\Windows\system32\wups2.dll
2015-02-27 10:06:04 ----A---- C:\Windows\system32\wlanapi.dll
2015-02-27 10:06:04 ----A---- C:\Windows\system32\rsaenh.dll
2015-02-27 10:06:03 ----A---- C:\Windows\SYSWOW64\osk.exe
2015-02-27 10:06:03 ----A---- C:\Windows\SYSWOW64\mispace.dll
2015-02-27 10:06:03 ----A---- C:\Windows\system32\wshbth.dll
2015-02-27 10:06:02 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2015-02-27 10:06:02 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2015-02-27 10:06:02 ----A---- C:\Windows\system32\PrintDialogs.dll
2015-02-27 10:06:01 ----A---- C:\Windows\system32\wlansvcpal.dll
2015-02-27 10:06:01 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-02-27 10:06:01 ----A---- C:\Windows\system32\browser.dll
2015-02-27 10:06:00 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2015-02-27 10:06:00 ----A---- C:\Windows\SYSWOW64\stobject.dll
2015-02-27 10:06:00 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2015-02-27 10:05:59 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-02-27 10:05:59 ----A---- C:\Windows\SYSWOW64\KBDRUM.DLL
2015-02-27 10:05:59 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2015-02-27 10:05:59 ----A---- C:\Windows\system32\KBDRUM.DLL
2015-02-27 10:05:59 ----A---- C:\Windows\system32\Defrag.exe
2015-02-27 10:05:58 ----A---- C:\Windows\system32\KBDRU.DLL
2015-02-27 10:05:57 ----A---- C:\Windows\system32\KBDYAK.DLL
2015-02-27 10:05:57 ----A---- C:\Windows\system32\KBDRU1.DLL
2015-02-27 10:05:57 ----A---- C:\Windows\system32\KBDBASH.DLL
2015-02-27 10:05:56 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2015-02-27 10:05:56 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2015-02-27 10:05:56 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2015-02-27 10:05:56 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2015-02-27 10:05:56 ----A---- C:\Windows\system32\BluetoothApis.dll
2015-02-27 10:05:52 ----A---- C:\Windows\SYSWOW64\PrintDialogs.dll
2015-02-27 10:05:52 ----A---- C:\Windows\system32\wwanmm.dll
2015-02-27 10:05:52 ----A---- C:\Windows\system32\KBDTAT.DLL
2015-02-27 10:05:52 ----A---- C:\Windows\system32\drivers\bthpan.sys
2015-02-27 10:05:51 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2015-02-27 10:05:51 ----A---- C:\Windows\SYSWOW64\BluetoothApis.dll
2015-02-27 10:05:51 ----A---- C:\Windows\system32\SndVolSSO.dll
2015-02-27 10:05:50 ----A---- C:\Windows\system32\wlansec.dll
2015-02-27 10:05:49 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-02-27 10:05:48 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-02-27 10:05:48 ----A---- C:\Windows\system32\wudriver.dll
2015-02-27 10:05:47 ----A---- C:\Windows\SYSWOW64\KBDTT102.DLL
2015-02-27 10:05:47 ----A---- C:\Windows\system32\KBDTT102.DLL
2015-02-27 09:59:13 ----A---- C:\Windows\system32\jscript9.dll
2015-02-27 09:59:10 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-02-26 13:22:56 ----D---- C:\ProgramData\RELOADED
2015-02-26 13:05:57 ----D---- C:\Program Files (x86)\PragmaMonitor
2015-02-26 13:04:58 ----D---- C:\ProgramData\flfoblmaajbjepjcmfnbplkpdlaeafii
2015-02-26 13:04:16 ----D---- C:\ProgramData\{6f5986ea-bc80-8e06-6f59-986eabc81baa}
2015-02-26 12:59:36 ----D---- C:\Users\ciffi\AppData\Roaming\EZDownloader
2015-02-26 12:51:14 ----D---- C:\Program Files (x86)\youtubeadblocker
2015-02-26 12:50:44 ----D---- C:\ProgramData\8781354689114478618
2015-02-26 12:50:16 ----D---- C:\ProgramData\jhngegniaokbgddmacoiofkgpaiphibn
2015-02-26 12:49:35 ----D---- C:\ProgramData\{cfb5f05b-9352-77ee-cfb5-5f05b935c16e}
2015-02-26 12:41:52 ----D---- C:\Users\ciffi\AppData\Roaming\Tunngle
2015-02-26 12:41:52 ----D---- C:\ProgramData\Tunngle
2015-02-26 12:41:52 ----A---- C:\Windows\system32\drivers\tap0901t.sys
2015-02-25 20:06:48 ----D---- C:\ProgramData\SystemRequirementsLab
2015-02-25 20:06:48 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2015-02-25 20:05:30 ----D---- C:\ProgramData\Sun
2015-02-25 20:05:29 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-02-25 20:04:32 ----D---- C:\ProgramData\Oracle
2015-02-25 20:04:21 ----D---- C:\Program Files (x86)\Java
2015-02-25 15:51:56 ----D---- C:\Users\ciffi\AppData\Roaming\Foxit Software
2015-02-25 12:12:14 ----A---- C:\Windows\system32\WSDMon.dll
2015-02-25 12:12:14 ----A---- C:\Windows\system32\tcpmon.dll
2015-02-25 12:12:12 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2015-02-25 12:12:03 ----A---- C:\Windows\SYSWOW64\explorer.exe
2015-02-25 12:12:03 ----A---- C:\Windows\explorer.exe
2015-02-25 12:12:01 ----A---- C:\Windows\SYSWOW64\UXInit.dll
2015-02-25 12:12:01 ----A---- C:\Windows\system32\UXInit.dll
2015-02-25 12:12:01 ----A---- C:\Windows\system32\uDWM.dll
2015-02-25 12:11:55 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-02-25 12:11:55 ----A---- C:\Windows\system32\authui.dll
2015-02-25 12:11:54 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-02-25 12:11:54 ----A---- C:\Windows\system32\msi.dll
2015-02-25 12:11:53 ----A---- C:\Windows\system32\appinfo.dll
2015-02-25 12:11:51 ----A---- C:\Windows\system32\schannel.dll
2015-02-25 12:11:50 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-02-25 12:11:49 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-02-25 12:11:49 ----A---- C:\Windows\system32\scesrv.dll
2015-02-25 12:11:42 ----A---- C:\Windows\system32\mshtml.dll
2015-02-25 12:11:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-02-25 12:09:53 ----A---- C:\Windows\system32\ieframe.dll
2015-02-25 12:09:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-02-25 12:09:09 ----A---- C:\Windows\system32\wininet.dll
2015-02-25 12:09:07 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-02-25 12:09:06 ----A---- C:\Windows\system32\urlmon.dll
2015-02-25 12:09:06 ----A---- C:\Windows\system32\iertutil.dll
2015-02-25 12:09:05 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-02-25 12:09:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-02-25 12:09:03 ----A---- C:\Windows\system32\inetcomm.dll
2015-02-25 12:09:02 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-02-25 12:09:02 ----A---- C:\Windows\system32\actxprxy.dll
2015-02-25 12:09:01 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-02-25 12:09:00 ----A---- C:\Windows\system32\jscript9diag.dll
2015-02-25 12:09:00 ----A---- C:\Windows\system32\jscript.dll
2015-02-25 12:08:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-02-25 12:08:59 ----A---- C:\Windows\system32\msfeeds.dll
2015-02-25 12:08:59 ----A---- C:\Windows\system32\ieui.dll
2015-02-25 12:08:58 ----A---- C:\Windows\system32\ieapfltr.dll
2015-02-25 12:08:57 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-02-25 12:08:57 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-02-25 12:08:56 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-02-25 12:08:56 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-02-25 12:08:55 ----A---- C:\Windows\system32\vbscript.dll
2015-02-25 12:08:54 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-02-25 12:08:54 ----A---- C:\Windows\system32\iedkcs32.dll
2015-02-25 12:08:54 ----A---- C:\Windows\system32\ie4uinit.exe
2015-02-25 12:08:53 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-25 12:08:53 ----A---- C:\Windows\system32\dxtmsft.dll
2015-02-25 12:08:52 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-02-25 12:08:52 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-02-25 12:08:52 ----A---- C:\Windows\system32\dxtrans.dll
2015-02-25 12:08:50 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-02-25 12:08:50 ----A---- C:\Windows\system32\webcheck.dll
2015-02-25 12:08:49 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-02-25 12:08:48 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-02-25 12:08:48 ----A---- C:\Windows\SYSWOW64\hlink.dll
2015-02-25 12:08:48 ----A---- C:\Windows\system32\iepeers.dll
2015-02-25 12:08:48 ----A---- C:\Windows\system32\hlink.dll
2015-02-25 12:08:47 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-02-25 12:08:47 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-02-25 12:08:46 ----A---- C:\Windows\SYSWOW64\inseng.dll
2015-02-25 12:08:46 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-02-25 12:08:46 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-02-25 12:08:46 ----A---- C:\Windows\system32\inseng.dll
2015-02-25 12:08:46 ----A---- C:\Windows\system32\iesysprep.dll
2015-02-25 12:08:45 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2015-02-25 12:08:45 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2015-02-25 12:08:45 ----A---- C:\Windows\system32\mshtmled.dll
2015-02-25 12:08:45 ----A---- C:\Windows\system32\ieUnatt.exe
2015-02-25 12:08:45 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-02-25 12:08:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-02-25 12:08:44 ----A---- C:\Windows\system32\jsproxy.dll
2015-02-25 12:08:43 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-02-25 12:08:43 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-02-25 12:08:43 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-02-25 12:08:43 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2015-02-25 12:08:43 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2015-02-25 12:08:43 ----A---- C:\Windows\system32\occache.dll
2015-02-25 12:08:43 ----A---- C:\Windows\system32\msrating.dll
2015-02-25 12:08:43 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-02-25 12:08:42 ----A---- C:\Windows\SYSWOW64\wextract.exe
2015-02-25 12:08:42 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2015-02-25 12:08:42 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2015-02-25 12:08:42 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2015-02-25 12:08:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-02-25 12:08:42 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-02-25 12:08:42 ----A---- C:\Windows\system32\pngfilt.dll
2015-02-25 12:08:42 ----A---- C:\Windows\system32\licmgr10.dll
2015-02-25 12:08:42 ----A---- C:\Windows\system32\imgutil.dll
2015-02-25 12:08:41 ----A---- C:\Windows\SYSWOW64\url.dll
2015-02-25 12:08:41 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-02-25 12:08:41 ----A---- C:\Windows\system32\url.dll
2015-02-25 12:08:41 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-02-25 12:08:41 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-02-25 12:08:40 ----A---- C:\Windows\system32\wextract.exe
2015-02-25 12:08:39 ----A---- C:\Windows\SYSWOW64\mshta.exe
2015-02-25 12:08:39 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2015-02-25 12:08:39 ----A---- C:\Windows\system32\mshta.exe
2015-02-25 12:08:39 ----A---- C:\Windows\system32\msfeedssync.exe
2015-02-25 12:08:39 ----A---- C:\Windows\system32\iexpress.exe
2015-02-25 12:08:39 ----A---- C:\Windows\system32\iesetup.dll
2015-02-25 12:08:39 ----A---- C:\Windows\system32\iernonce.dll
2015-02-25 12:08:19 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2015-02-25 12:08:19 ----A---- C:\Windows\system32\ncryptsslp.dll
2015-02-25 12:08:19 ----A---- C:\Windows\system32\dpapisrv.dll
2015-02-25 12:08:03 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-02-25 12:08:03 ----A---- C:\Windows\system32\rpcrt4.dll
2015-02-25 12:08:02 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-02-25 12:08:01 ----A---- C:\Windows\system32\ntdll.dll
2015-02-25 12:08:00 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-02-25 12:08:00 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-02-25 12:08:00 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-02-25 12:08:00 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-02-25 12:08:00 ----A---- C:\Windows\system32\wow64cpu.dll
2015-02-25 12:08:00 ----A---- C:\Windows\system32\wow64.dll
2015-02-25 12:07:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-02-25 12:07:59 ----A---- C:\Windows\SYSWOW64\user.exe
2015-02-25 12:07:59 ----A---- C:\Windows\system32\ntvdm64.dll
2015-02-25 12:07:56 ----A---- C:\Windows\SYSWOW64\SkyDriveShell.dll
2015-02-25 12:07:56 ----A---- C:\Windows\system32\SkyDriveShell.dll
2015-02-25 12:07:46 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2015-02-25 12:07:39 ----A---- C:\Windows\system32\SyncEngine.dll
2015-02-25 12:07:38 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2015-02-25 12:07:34 ----A---- C:\Windows\system32\WSShared.dll
2015-02-25 12:07:34 ----A---- C:\Windows\system32\SkyDrive.exe
2015-02-25 12:07:34 ----A---- C:\Windows\system32\KernelBase.dll
2015-02-25 12:07:33 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-02-25 12:07:33 ----A---- C:\Windows\system32\SearchFolder.dll
2015-02-25 12:07:32 ----A---- C:\Windows\system32\propsys.dll
2015-02-25 12:07:31 ----A---- C:\Windows\system32\mstscax.dll
2015-02-25 12:07:30 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2015-02-25 12:07:30 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2015-02-25 12:07:29 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2015-02-25 12:07:29 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-02-25 12:07:29 ----A---- C:\Windows\system32\Wldap32.dll
2015-02-25 12:07:28 ----A---- C:\Windows\SYSWOW64\propsys.dll
2015-02-25 12:07:27 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-02-25 12:07:27 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-02-25 12:07:27 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-02-25 12:07:26 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-02-25 12:07:26 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-02-25 12:07:25 ----A---- C:\Windows\system32\bisrv.dll
2015-02-25 12:07:24 ----A---- C:\Windows\system32\rdvidcrl.dll
2015-02-25 12:07:24 ----A---- C:\Windows\system32\ProximityService.dll
2015-02-25 12:07:24 ----A---- C:\Windows\system32\pcsvDevice.dll
2015-02-25 12:07:24 ----A---- C:\Windows\system32\httpprxm.dll
2015-02-25 12:07:24 ----A---- C:\Windows\system32\drivers\bridge.sys
2015-02-25 12:07:24 ----A---- C:\Windows\system32\adhsvc.dll
2015-02-25 12:07:23 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-25 12:07:23 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2015-02-25 12:07:22 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-25 12:07:10 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-02-25 12:07:09 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-02-25 11:31:35 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-02-25 11:31:35 ----A---- C:\Windows\system32\lsasrv.dll
2015-02-25 11:31:35 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-02-25 11:31:35 ----A---- C:\Windows\system32\drivers\cng.sys
2015-02-25 11:31:35 ----A---- C:\Windows\system32\certcli.dll
2015-02-25 11:31:34 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-02-25 11:31:34 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-02-25 11:31:34 ----A---- C:\Windows\system32\msaudite.dll
2015-02-25 11:31:34 ----A---- C:\Windows\system32\adtschema.dll
2015-02-25 11:30:34 ----A---- C:\Windows\system32\rdpcorets.dll
2015-02-25 11:30:32 ----A---- C:\Windows\system32\rfxvmt.dll
2015-02-25 11:30:32 ----A---- C:\Windows\system32\rdpudd.dll
2015-02-25 11:30:32 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2015-02-25 11:29:23 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-02-25 11:29:23 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-25 11:29:10 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2015-02-25 11:29:10 ----A---- C:\Windows\system32\dxgi.dll
2015-02-25 11:29:10 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-02-25 11:29:09 ----A---- C:\Windows\system32\dwmcore.dll
2015-02-25 11:24:18 ----A---- C:\Windows\system32\profsvc.dll
2015-02-25 11:22:45 ----A---- C:\Windows\system32\drivers\afd.sys
2015-02-25 11:22:43 ----A---- C:\Windows\system32\schedsvc.dll
2015-02-25 11:21:37 ----A---- C:\Windows\SYSWOW64\rastls.dll
2015-02-25 11:21:37 ----A---- C:\Windows\system32\rastls.dll
2015-02-25 11:21:35 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-02-25 11:21:35 ----A---- C:\Windows\system32\gdi32.dll
2015-02-25 11:21:33 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-02-25 11:21:32 ----A---- C:\Windows\system32\drivers\ahcache.sys
2015-02-25 11:20:55 ----A---- C:\Windows\system32\WpcMon.exe
2015-02-25 11:20:55 ----A---- C:\Windows\system32\Wpc.dll
2015-02-25 11:20:54 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2015-02-25 11:20:54 ----A---- C:\Windows\system32\WpcWebSync.dll
2015-02-25 11:20:52 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-02-25 11:20:47 ----A---- C:\Windows\system32\ubpm.dll
2015-02-25 11:20:45 ----A---- C:\Windows\system32\storewuauth.dll
2015-02-25 11:20:44 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-02-25 11:20:44 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-02-25 11:20:44 ----A---- C:\Windows\system32\wuwebv.dll
2015-02-25 11:20:44 ----A---- C:\Windows\system32\wuapp.exe
2015-02-25 11:19:21 ----A---- C:\Windows\system32\user32.dll
2015-02-25 11:19:20 ----A---- C:\Windows\SYSWOW64\user32.dll
2015-02-25 11:19:20 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2015-02-25 11:19:19 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys
2015-02-25 11:19:18 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2015-02-25 11:19:17 ----A---- C:\Windows\SYSWOW64\winshfhc.dll
2015-02-25 11:19:17 ----A---- C:\Windows\system32\winshfhc.dll
2015-02-25 11:16:30 ----A---- C:\Windows\system32\msxml3.dll
2015-02-25 11:16:29 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-02-25 11:16:26 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2015-02-25 11:16:26 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-02-25 11:15:47 ----D---- C:\Users\ciffi\AppData\Roaming\RStudio
2015-02-25 11:14:30 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2015-02-25 11:14:30 ----A---- C:\Windows\system32\drvinst.exe
2015-02-25 11:14:30 ----A---- C:\Windows\system32\drvcfg.exe
2015-02-25 11:14:11 ----A---- C:\Windows\system32\d3d9.dll
2015-02-25 11:14:10 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2015-02-25 11:14:08 ----A---- C:\Windows\system32\vpnike.dll
2015-02-25 11:14:08 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-02-25 11:14:07 ----A---- C:\Windows\system32\framedynos.dll
2015-02-25 11:14:06 ----A---- C:\Windows\system32\dhcpcore.dll
2015-02-25 11:14:05 ----A---- C:\Windows\system32\dhcpcore6.dll
2015-02-25 11:14:04 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2015-02-25 11:14:04 ----A---- C:\Windows\system32\bdesvc.dll
2015-02-25 11:13:59 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2015-02-25 11:13:50 ----A---- C:\Windows\system32\fveapi.dll
2015-02-25 11:13:48 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2015-02-25 11:13:47 ----A---- C:\Windows\system32\drivers\agilevpn.sys
2015-02-25 11:13:47 ----A---- C:\Windows\system32\BFE.DLL
2015-02-25 11:13:46 ----A---- C:\Windows\system32\ncobjapi.dll
2015-02-25 11:13:46 ----A---- C:\Windows\system32\framedyn.dll
2015-02-25 11:13:45 ----A---- C:\Windows\SYSWOW64\ncobjapi.dll
2015-02-25 11:13:44 ----A---- C:\Windows\system32\drivers\vwifimp.sys
2015-02-25 11:13:43 ----A---- C:\Windows\system32\Robocopy.exe
2015-02-25 11:13:43 ----A---- C:\Windows\system32\dhcpcsvc.dll
2015-02-25 11:13:42 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2015-02-25 11:13:42 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2015-02-25 11:13:42 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-02-25 11:13:42 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-02-25 11:13:41 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2015-02-25 11:13:41 ----A---- C:\Windows\SYSWOW64\dhcpcsvc.dll
2015-02-25 11:13:41 ----A---- C:\Windows\system32\fvecpl.dll
2015-02-25 11:13:41 ----A---- C:\Windows\system32\drivers\vwififlt.sys
2015-02-25 11:13:40 ----A---- C:\Windows\SYSWOW64\d3d8thk.dll
2015-02-25 11:13:39 ----A---- C:\Windows\system32\fvewiz.dll
2015-02-25 11:13:37 ----A---- C:\Windows\system32\srms.dat
2015-02-25 11:13:37 ----A---- C:\Windows\system32\reseteng.dll
2015-02-25 11:13:37 ----A---- C:\Windows\system32\BdeHdCfgLib.dll
2015-02-25 11:13:37 ----A---- C:\Windows\system32\BdeHdCfg.exe
2015-02-25 11:11:47 ----A---- C:\Windows\SYSWOW64\packager.dll
2015-02-25 11:11:47 ----A---- C:\Windows\system32\packager.dll
2015-02-25 11:11:46 ----A---- C:\Windows\system32\FntCache.dll
2015-02-25 11:11:46 ----A---- C:\Windows\system32\DWrite.dll
2015-02-25 11:11:45 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-02-25 11:11:19 ----A---- C:\Windows\system32\gpprefcl.dll
2015-02-25 11:11:19 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2015-02-25 11:11:19 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-02-25 11:11:18 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2015-02-25 11:11:18 ----A---- C:\Windows\system32\WUDFSvc.dll
2015-02-25 11:11:18 ----A---- C:\Windows\system32\WUDFPlatform.dll
2015-02-25 11:11:18 ----A---- C:\Windows\system32\WUDFHost.exe
2015-02-25 11:11:18 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2015-02-25 11:11:16 ----A---- C:\Windows\SYSWOW64\DaOtpCredentialProvider.dll
2015-02-25 11:11:16 ----A---- C:\Windows\system32\hal.dll
2015-02-25 11:11:16 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-02-25 11:11:16 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-02-25 11:11:16 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-02-25 11:11:16 ----A---- C:\Windows\system32\DaOtpCredentialProvider.dll
2015-02-25 11:11:16 ----A---- C:\Windows\system32\cscui.dll
2015-02-25 11:10:38 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-02-25 11:10:35 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-02-25 11:10:22 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2015-02-25 11:10:21 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2015-02-25 11:10:21 ----A---- C:\Windows\system32\wmpmde.dll
2015-02-25 11:10:21 ----A---- C:\Windows\system32\winmde.dll
2015-02-25 11:10:21 ----A---- C:\Windows\system32\services.exe
2015-02-25 11:10:20 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2015-02-25 11:10:18 ----A---- C:\Windows\SYSWOW64\winmde.dll
2015-02-25 11:10:18 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2015-02-25 11:10:18 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-02-25 11:10:18 ----A---- C:\Windows\system32\mfsvr.dll
2015-02-25 11:10:17 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2015-02-25 11:10:17 ----A---- C:\Windows\system32\ploptin.dll
2015-02-25 11:10:17 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-02-25 11:10:16 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2015-02-25 11:10:16 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2015-02-25 11:10:16 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-02-25 11:10:16 ----A---- C:\Windows\system32\swprv.dll
2015-02-25 11:10:16 ----A---- C:\Windows\system32\resutils.dll
2015-02-25 11:10:16 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2015-02-25 11:10:16 ----A---- C:\Windows\system32\MDEServer.exe
2015-02-25 11:10:16 ----A---- C:\Windows\system32\drivers\fvevol.sys
2015-02-25 11:10:16 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2015-02-25 11:10:15 ----A---- C:\Windows\system32\wscsvc.dll
2015-02-25 11:10:15 ----A---- C:\Windows\system32\VSSVC.exe
2015-02-25 11:10:15 ----A---- C:\Windows\system32\tscfgwmi.dll
2015-02-25 11:10:15 ----A---- C:\Windows\system32\rpchttp.dll
2015-02-25 11:10:15 ----A---- C:\Windows\system32\rdpencom.dll
2015-02-25 11:10:15 ----A---- C:\Windows\system32\MSVideoDSP.dll
2015-02-25 11:10:15 ----A---- C:\Windows\system32\gpapi.dll
2015-02-25 11:10:15 ----A---- C:\Windows\system32\drivers\storport.sys
2015-02-25 11:10:15 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-02-25 11:10:14 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2015-02-25 11:10:14 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2015-02-25 11:10:14 ----A---- C:\Windows\SYSWOW64\MSVideoDSP.dll
2015-02-25 11:10:14 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-02-25 11:10:14 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2015-02-25 11:10:14 ----A---- C:\Windows\system32\mf.dll
2015-02-25 11:10:14 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2015-02-25 11:10:13 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-02-25 11:10:13 ----A---- C:\Windows\system32\wintrust.dll
2015-02-25 11:10:13 ----A---- C:\Windows\system32\tlscsp.dll
2015-02-25 11:10:13 ----A---- C:\Windows\system32\srcore.dll
2015-02-25 11:10:13 ----A---- C:\Windows\system32\mfpmp.exe
2015-02-25 11:10:13 ----A---- C:\Windows\system32\energyprov.dll
2015-02-25 11:10:12 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2015-02-25 11:10:12 ----A---- C:\Windows\SYSWOW64\resutils.dll
2015-02-25 11:10:12 ----A---- C:\Windows\system32\BootMenuUX.dll
2015-02-25 11:10:09 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-02-25 11:10:09 ----A---- C:\Windows\system32\tsgqec.dll
2015-02-25 11:10:09 ----A---- C:\Windows\system32\srclient.dll
2015-02-25 11:10:09 ----A---- C:\Windows\system32\rstrui.exe
2015-02-25 11:10:08 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll
2015-02-25 11:10:08 ----A---- C:\Windows\system32\wlanhlp.dll
2015-02-25 11:08:56 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-02-25 11:08:56 ----A---- C:\Windows\system32\msihnd.dll
2015-02-25 11:08:56 ----A---- C:\Windows\system32\consent.exe
2015-02-25 11:08:49 ----A---- C:\Windows\system32\nlasvc.dll
2015-02-25 11:08:49 ----A---- C:\Windows\system32\ncsi.dll
2015-02-25 11:08:48 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-02-25 11:08:48 ----A---- C:\Windows\system32\qedit.dll
2015-02-25 11:08:48 ----A---- C:\Windows\system32\nlaapi.dll
2015-02-25 11:08:47 ----A---- C:\Windows\SYSWOW64\qedit.dll
2015-02-25 11:08:38 ----A---- C:\Windows\system32\wpccpl.dll
2015-02-25 11:08:38 ----A---- C:\Windows\system32\drivers\wpcfltr.sys
2015-02-25 11:08:33 ----A---- C:\Windows\system32\MDMAgent.exe
2015-02-25 11:08:33 ----A---- C:\Windows\system32\drivers\sdbus.sys
2015-02-25 11:08:33 ----A---- C:\Windows\system32\drivers\pdc.sys
2015-02-25 11:08:33 ----A---- C:\Windows\system32\drivers\intelpep.sys
2015-02-25 11:08:33 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2015-02-25 11:08:28 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-02-25 11:08:28 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-02-25 11:08:28 ----A---- C:\Windows\system32\pku2u.dll
2015-02-25 11:08:28 ----A---- C:\Windows\system32\kerberos.dll
2015-02-25 11:08:27 ----A---- C:\Windows\system32\win32k.sys
2015-02-25 11:08:25 ----A---- C:\Windows\system32\shell32.dll
2015-02-25 11:08:24 ----A---- C:\Windows\system32\twinui.dll
2015-02-25 11:08:21 ----A---- C:\Windows\SYSWOW64\twinui.dll
2015-02-25 11:08:20 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-02-25 11:08:14 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-02-25 11:08:13 ----A---- C:\Windows\system32\SettingsHandlers.dll
2015-02-25 11:08:13 ----A---- C:\Windows\system32\MrmCoreR.dll
2015-02-25 11:08:13 ----A---- C:\Windows\system32\localspl.dll
2015-02-25 11:08:12 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll
2015-02-25 11:08:12 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2015-02-25 11:08:12 ----A---- C:\Windows\system32\MFMediaEngine.dll
2015-02-25 11:08:12 ----A---- C:\Windows\system32\drivers\netio.sys
2015-02-25 11:08:11 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2015-02-25 11:08:10 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2015-02-25 11:08:10 ----A---- C:\Windows\system32\win32spl.dll
2015-02-25 11:08:09 ----A---- C:\Windows\system32\puiobj.dll
2015-02-25 11:08:07 ----A---- C:\Windows\system32\WsmSvc.dll
2015-02-25 11:08:06 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2015-02-25 11:08:06 ----A---- C:\Windows\system32\pmcsnap.dll
2015-02-25 11:08:05 ----A---- C:\Windows\system32\DafPrintProvider.dll
2015-02-25 11:08:04 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2015-02-25 11:08:04 ----A---- C:\Windows\SYSWOW64\DafPrintProvider.dll
2015-02-25 11:08:03 ----A---- C:\Windows\SYSWOW64\prnntfy.dll
2015-02-25 11:08:03 ----A---- C:\Windows\system32\winbici.dll
2015-02-25 11:08:03 ----A---- C:\Windows\system32\puiapi.dll
2015-02-25 11:08:03 ----A---- C:\Windows\system32\prnntfy.dll
2015-02-25 11:08:03 ----A---- C:\Windows\system32\ppcsnap.dll
2015-02-25 11:08:03 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-02-25 11:08:03 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-02-25 11:08:03 ----A---- C:\Windows\system32\BulkOperationHost.exe
2015-02-25 11:08:02 ----A---- C:\Windows\SYSWOW64\puiapi.dll
2015-02-25 11:08:01 ----A---- C:\Windows\SYSWOW64\untfs.dll
2015-02-25 11:08:01 ----A---- C:\Windows\system32\untfs.dll
2015-02-25 11:08:01 ----A---- C:\Windows\system32\FXSCOMEX.dll
2015-02-25 11:08:00 ----A---- C:\Windows\SYSWOW64\FXSAPI.dll
2015-02-25 11:08:00 ----A---- C:\Windows\system32\FXSAPI.dll
2015-02-25 11:08:00 ----A---- C:\Windows\system32\compstui.dll
2015-02-25 11:07:40 ----A---- C:\Windows\system32\audiosrv.dll
2015-02-25 11:07:39 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-02-25 11:07:39 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-02-25 11:07:39 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-02-25 11:07:39 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-02-25 11:07:39 ----A---- C:\Windows\system32\wer.dll
2015-02-25 11:07:39 ----A---- C:\Windows\system32\AudioSes.dll
2015-02-25 11:07:39 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-02-25 11:07:39 ----A---- C:\Windows\system32\AudioEng.dll
2015-02-25 11:07:39 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-02-25 11:07:39 ----A---- C:\Windows\system32\audiodg.exe
2015-02-25 11:07:38 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2015-02-25 11:07:38 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2015-02-25 11:07:38 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2015-02-25 11:07:38 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2015-02-25 11:07:38 ----A---- C:\Windows\system32\wermgr.exe
2015-02-25 11:07:38 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-02-25 11:07:38 ----A---- C:\Windows\system32\WerFault.exe
2015-02-25 11:07:38 ----A---- C:\Windows\system32\Faultrep.dll
2015-02-25 11:07:38 ----A---- C:\Windows\system32\EncDump.dll
2015-02-25 11:07:38 ----A---- C:\Windows\system32\ci.dll
2015-02-25 11:07:37 ----A---- C:\Windows\SYSWOW64\werdiagcontroller.dll
2015-02-25 11:07:37 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-02-25 11:07:18 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-02-25 11:07:17 ----A---- C:\Windows\system32\msvcr120_clr0400.dll
2015-02-25 11:07:03 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll
2015-02-25 11:07:03 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll
2015-02-25 11:07:03 ----A---- C:\Windows\system32\twinui.appcore.dll
2015-02-25 11:07:03 ----A---- C:\Windows\system32\twinapi.appcore.dll
2015-02-25 11:07:02 ----A---- C:\Windows\system32\WSReset.exe
2015-02-24 12:30:43 ----A---- C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2015-02-24 12:30:36 ----A---- C:\Windows\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2015-02-24 12:30:33 ----A---- C:\Windows\system32\msftedit.dll
2015-02-24 12:30:32 ----A---- C:\Windows\system32\msxml6.dll
2015-02-24 12:30:31 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2015-02-24 12:30:30 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-02-24 12:30:29 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-02-24 12:30:28 ----A---- C:\Windows\system32\d3d11.dll
2015-02-24 12:30:27 ----A---- C:\Windows\system32\ole32.dll
2015-02-24 12:30:26 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2015-02-24 12:30:25 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2015-02-24 12:30:24 ----A---- C:\Windows\system32\wlidprov.dll
2015-02-24 12:30:24 ----A---- C:\Windows\system32\kernel32.dll
2015-02-24 12:30:24 ----A---- C:\Windows\system32\dnsapi.dll
2015-02-24 12:30:22 ----A---- C:\Windows\system32\dcomp.dll
2015-02-24 12:30:20 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2015-02-24 12:30:20 ----A---- C:\Windows\system32\rasapi32.dll
2015-02-24 12:30:20 ----A---- C:\Windows\system32\netlogon.dll
2015-02-24 12:30:19 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-02-24 12:30:19 ----A---- C:\Windows\system32\drivers\wof.sys
2015-02-24 12:30:18 ----A---- C:\Windows\SYSWOW64\wlidprov.dll
2015-02-24 12:30:18 ----A---- C:\Windows\system32\ReAgent.dll
2015-02-24 12:30:16 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2015-02-24 12:30:16 ----A---- C:\Windows\SYSWOW64\dcomp.dll
2015-02-24 12:30:15 ----A---- C:\Windows\SYSWOW64\rasapi32.dll
2015-02-24 12:30:15 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2015-02-24 12:30:15 ----A---- C:\Windows\system32\drivers\clfs.sys
2015-02-24 12:30:13 ----A---- C:\Windows\system32\SensorsApi.dll
2015-02-24 12:30:12 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2015-02-24 12:30:12 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-02-24 12:30:11 ----A---- C:\Windows\SYSWOW64\SensorsApi.dll
2015-02-24 12:30:10 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-02-24 12:30:09 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-02-24 12:30:09 ----A---- C:\Windows\system32\Windows.Devices.Sensors.dll
2015-02-24 12:30:09 ----A---- C:\Windows\system32\SessEnv.dll
2015-02-24 12:30:09 ----A---- C:\Windows\system32\AppXDeploymentClient.dll
2015-02-24 12:30:08 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Sensors.dll
2015-02-24 12:30:08 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll
2015-02-24 12:30:08 ----A---- C:\Windows\system32\userenv.dll
2015-02-24 12:30:08 ----A---- C:\Windows\system32\AdmTmpl.dll
2015-02-24 12:30:07 ----A---- C:\Windows\system32\pdh.dll
2015-02-24 12:30:07 ----A---- C:\Windows\system32\davclnt.dll
2015-02-24 12:30:07 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2015-02-24 12:30:06 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll
2015-02-24 12:30:06 ----A---- C:\Windows\system32\wlangpui.dll
2015-02-24 12:30:06 ----A---- C:\Windows\system32\cdd.dll
2015-02-24 12:30:05 ----A---- C:\Windows\SYSWOW64\userenv.dll
2015-02-24 12:30:05 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2015-02-24 12:30:05 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-02-24 12:30:04 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-02-24 12:30:04 ----A---- C:\Windows\system32\Windows.Graphics.Printing.dll
2015-02-24 12:30:04 ----A---- C:\Windows\system32\spp.dll
2015-02-24 12:30:04 ----A---- C:\Windows\system32\drivers\dfsc.sys
2015-02-24 12:30:04 ----A---- C:\Windows\system32\dafWfdProvider.dll
2015-02-24 12:30:03 ----A---- C:\Windows\SYSWOW64\spp.dll
2015-02-24 12:30:03 ----A---- C:\Windows\SYSWOW64\pdh.dll
2015-02-24 12:30:03 ----A---- C:\Windows\system32\drivers\wfplwfs.sys
2015-02-24 12:30:03 ----A---- C:\Windows\system32\AppxAllUserStore.dll
2015-02-24 12:30:02 ----A---- C:\Windows\system32\w32tm.exe
2015-02-24 12:30:02 ----A---- C:\Windows\system32\drivers\hidusb.sys
2015-02-24 12:30:01 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-02-24 12:30:01 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-02-24 12:30:00 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2015-02-24 12:29:59 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2015-02-24 12:29:59 ----A---- C:\Windows\SYSWOW64\CredentialMigrationHandler.dll
2015-02-24 12:29:59 ----A---- C:\Windows\system32\fveapibase.dll
2015-02-24 12:29:59 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-02-24 12:29:59 ----A---- C:\Windows\system32\CredentialMigrationHandler.dll
2015-02-24 12:29:58 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.Printing.dll
2015-02-24 12:29:58 ----A---- C:\Windows\system32\Windows.Devices.Scanners.dll
2015-02-24 12:29:58 ----A---- C:\Windows\system32\RMapi.dll
2015-02-24 12:29:58 ----A---- C:\Windows\system32\ReInfo.dll
2015-02-24 12:29:58 ----A---- C:\Windows\system32\LocationApi.dll
2015-02-24 12:29:57 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Scanners.dll
2015-02-24 12:29:57 ----A---- C:\Windows\SYSWOW64\ReInfo.dll
2015-02-24 12:29:57 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2015-02-24 12:29:57 ----A---- C:\Windows\system32\nshwfp.dll
2015-02-24 12:29:57 ----A---- C:\Windows\system32\BitLockerDeviceEncryption.exe
2015-02-24 12:29:56 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-02-24 12:29:56 ----A---- C:\Windows\SYSWOW64\LocationApi.dll
2015-02-24 12:29:56 ----A---- C:\Windows\system32\sxproxy.dll
2015-02-24 12:29:56 ----A---- C:\Windows\system32\DevPropMgr.dll
2015-02-24 12:29:55 ----A---- C:\Windows\SYSWOW64\sxproxy.dll
2015-02-24 12:29:55 ----A---- C:\Windows\system32\SetNetworkLocation.dll
2015-02-24 12:29:55 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-02-24 12:29:53 ----A---- C:\Windows\SYSWOW64\l2gpstore.dll
2015-02-24 12:29:53 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-02-24 12:29:53 ----A---- C:\Windows\system32\l2gpstore.dll
2015-02-24 12:24:45 ----A---- C:\Windows\system32\WSService.dll
2015-02-24 12:24:37 ----A---- C:\Windows\system32\glcndFilter.dll
2015-02-24 12:24:27 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2015-02-24 12:24:27 ----A---- C:\Windows\system32\OobeFldr.dll
2015-02-24 12:24:23 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2015-02-24 12:24:20 ----A---- C:\Windows\system32\wmp.dll
2015-02-24 12:24:18 ----A---- C:\Windows\system32\sppobjs.dll
2015-02-24 12:24:16 ----A---- C:\Windows\system32\tquery.dll
2015-02-24 12:24:14 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-02-24 12:24:12 ----A---- C:\Windows\system32\sysmain.dll
2015-02-24 12:24:10 ----A---- C:\Windows\system32\mssrch.dll
2015-02-24 12:24:06 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-02-24 12:24:04 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-02-24 12:24:03 ----A---- C:\Windows\system32\combase.dll
2015-02-24 12:24:01 ----A---- C:\Windows\system32\webservices.dll
2015-02-24 12:23:59 ----A---- C:\Windows\system32\wlidsvc.dll
2015-02-24 12:23:57 ----A---- C:\Windows\system32\dui70.dll
2015-02-24 12:23:56 ----A---- C:\Windows\system32\msTextPrediction.dll
2015-02-24 12:23:51 ----A---- C:\Windows\system32\mfnetsrc.dll
2015-02-24 12:23:50 ----A---- C:\Windows\SYSWOW64\combase.dll
2015-02-24 12:23:50 ----A---- C:\Windows\system32\Windows.Globalization.dll
2015-02-24 12:23:48 ----A---- C:\Windows\SYSWOW64\webservices.dll
2015-02-24 12:23:48 ----A---- C:\Windows\system32\mfnetcore.dll
2015-02-24 12:23:47 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2015-02-24 12:23:47 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-02-24 12:23:46 ----A---- C:\Windows\system32\StructuredQuery.dll
2015-02-24 12:23:45 ----A---- C:\Windows\system32\WofTasks.dll
2015-02-24 12:23:45 ----A---- C:\Windows\system32\setupapi.dll
2015-02-24 12:23:45 ----A---- C:\Windows\system32\DfpCommon.dll
2015-02-24 12:23:44 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2015-02-24 12:23:44 ----A---- C:\Windows\system32\SettingSyncHost.exe
2015-02-24 12:23:44 ----A---- C:\Windows\system32\rpcss.dll
2015-02-24 12:23:42 ----A---- C:\Windows\SYSWOW64\dui70.dll
2015-02-24 12:23:42 ----A---- C:\Windows\system32\RacEngn.dll
2015-02-24 12:23:39 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2015-02-24 12:23:39 ----A---- C:\Windows\system32\msctf.dll
2015-02-24 12:23:39 ----A---- C:\Windows\system32\drivers\acpi.sys
2015-02-24 12:23:36 ----A---- C:\Windows\system32\SettingSyncCore.dll
2015-02-24 12:23:35 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2015-02-24 12:23:34 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2015-02-24 12:23:33 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2015-02-24 12:23:33 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2015-02-24 12:23:32 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-02-24 12:23:31 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2015-02-24 12:23:31 ----A---- C:\Windows\system32\uxtheme.dll
2015-02-24 12:23:31 ----A---- C:\Windows\system32\samsrv.dll
2015-02-24 12:23:30 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2015-02-24 12:23:29 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-02-24 12:23:29 ----A---- C:\Windows\system32\mdmregistration.dll
2015-02-24 12:23:28 ----A---- C:\Windows\system32\msdrm.dll
2015-02-24 12:23:26 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2015-02-24 12:23:25 ----A---- C:\Windows\system32\MMDevAPI.dll
2015-02-24 12:23:23 ----A---- C:\Windows\system32\WinTypes.dll
2015-02-24 12:23:23 ----A---- C:\Windows\system32\Taskmgr.exe
2015-02-24 12:23:21 ----A---- C:\Windows\SYSWOW64\Taskmgr.exe
2015-02-24 12:23:21 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2015-02-24 12:23:21 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2015-02-24 12:23:20 ----A---- C:\Windows\system32\wpncore.dll
2015-02-24 12:23:19 ----A---- C:\Windows\system32\perftrack.dll
2015-02-24 12:23:18 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-02-24 12:23:18 ----A---- C:\Windows\system32\WWAHost.exe
2015-02-24 12:23:18 ----A---- C:\Windows\system32\dfpinc.dat
2015-02-24 12:23:18 ----A---- C:\Windows\system32\advapi32.dll
2015-02-24 12:23:17 ----A---- C:\Windows\system32\lsm.dll
2015-02-24 12:23:16 ----A---- C:\Windows\system32\RecoveryDrive.exe
2015-02-24 12:23:15 ----A---- C:\Windows\system32\wcmsvc.dll
2015-02-24 12:23:15 ----A---- C:\Windows\system32\energy.dll
2015-02-24 12:23:14 ----A---- C:\Windows\system32\mssvp.dll
2015-02-24 12:23:13 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2015-02-24 12:23:13 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2015-02-24 12:23:13 ----A---- C:\Windows\system32\apphelp.dll
2015-02-24 12:23:12 ----A---- C:\Windows\system32\tdh.dll
2015-02-24 12:23:09 ----A---- C:\Windows\system32\DismApi.dll
2015-02-24 12:23:08 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-02-24 12:23:08 ----A---- C:\Windows\system32\winlogon.exe
2015-02-24 12:23:07 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2015-02-24 12:23:05 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-02-24 12:23:05 ----A---- C:\Windows\system32\mssph.dll
2015-02-24 12:23:04 ----A---- C:\Windows\SYSWOW64\SettingSyncCore.dll
2015-02-24 12:23:03 ----A---- C:\Windows\system32\werconcpl.dll
2015-02-24 12:22:57 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-02-24 12:22:56 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2015-02-24 12:22:56 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2015-02-24 12:22:56 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-02-24 12:22:53 ----A---- C:\Windows\system32\WofUtil.dll
2015-02-24 12:22:53 ----A---- C:\Windows\system32\wimgapi.dll
2015-02-24 12:22:52 ----A---- C:\Windows\SYSWOW64\mdmregistration.dll
2015-02-24 12:22:52 ----A---- C:\Windows\system32\sppwinob.dll
2015-02-24 12:22:52 ----A---- C:\Windows\system32\ntshrui.dll
2015-02-24 12:22:51 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-02-24 12:22:51 ----A---- C:\Windows\system32\recimg.exe
2015-02-24 12:22:51 ----A---- C:\Windows\system32\iuilp.dll
2015-02-24 12:22:51 ----A---- C:\Windows\system32\dfp.exe
2015-02-24 12:22:50 ----A---- C:\Windows\system32\wlidcli.dll
2015-02-24 12:22:50 ----A---- C:\Windows\system32\thumbcache.dll
2015-02-24 12:22:49 ----A---- C:\Windows\system32\aelupsvc.dll
2015-02-24 12:22:48 ----A---- C:\Windows\SYSWOW64\slc.dll
2015-02-24 12:22:48 ----A---- C:\Windows\system32\slc.dll
2015-02-24 12:22:48 ----A---- C:\Windows\system32\MrmIndexer.dll
2015-02-24 12:22:47 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2015-02-24 12:22:47 ----A---- C:\Windows\system32\Dism.exe
2015-02-24 12:22:46 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-02-24 12:22:46 ----A---- C:\Windows\system32\nettrace.dll
2015-02-24 12:22:46 ----A---- C:\Windows\system32\AppReadiness.dll
2015-02-24 12:22:45 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2015-02-24 12:22:45 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-02-24 12:22:45 ----A---- C:\Windows\system32\pnidui.dll
2015-02-24 12:22:43 ----A---- C:\Windows\system32\WMPDMC.exe
2015-02-24 12:22:43 ----A---- C:\Windows\system32\dwmredir.dll
2015-02-24 12:22:41 ----A---- C:\Windows\system32\psmsrv.dll
2015-02-24 12:22:39 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2015-02-24 12:22:39 ----A---- C:\Windows\system32\WlanMM.dll
2015-02-24 12:22:38 ----A---- C:\Windows\system32\InputSwitch.dll
2015-02-24 12:22:37 ----A---- C:\Windows\system32\ninput.dll
2015-02-24 12:22:37 ----A---- C:\Windows\system32\msvproc.dll
2015-02-24 12:22:36 ----A---- C:\Windows\system32\authz.dll
2015-02-24 12:22:35 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-02-24 12:22:33 ----A---- C:\Windows\system32\SyncCenter.dll
2015-02-24 12:22:32 ----A---- C:\Windows\system32\taskeng.exe
2015-02-24 12:22:32 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2015-02-24 12:22:31 ----A---- C:\Windows\system32\themeui.dll
2015-02-24 12:22:30 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2015-02-24 12:22:30 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2015-02-24 12:22:30 ----A---- C:\Windows\system32\wlidcredprov.dll
2015-02-24 12:22:30 ----A---- C:\Windows\system32\wersvc.dll
2015-02-24 12:22:30 ----A---- C:\Windows\system32\rdbui.dll
2015-02-24 12:22:29 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-02-24 12:22:29 ----A---- C:\Windows\SYSWOW64\DismApi.dll
2015-02-24 12:22:29 ----A---- C:\Windows\system32\sqmapi.dll
2015-02-24 12:22:28 ----A---- C:\Windows\system32\wbengine.exe
2015-02-24 12:22:28 ----A---- C:\Windows\system32\rdpcore.dll
2015-02-24 12:22:27 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2015-02-24 12:22:27 ----A---- C:\Windows\SYSWOW64\themeui.dll
2015-02-24 12:22:26 ----A---- C:\Windows\SYSWOW64\MrmIndexer.dll
2015-02-24 12:22:25 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2015-02-24 12:22:24 ----A---- C:\Windows\SYSWOW64\Dism.exe
2015-02-24 12:22:23 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2015-02-24 12:22:23 ----A---- C:\Windows\SYSWOW64\InputSwitch.dll
2015-02-24 12:22:23 ----A---- C:\Windows\system32\sppc.dll
2015-02-24 12:22:23 ----A---- C:\Windows\system32\msctfuimanager.dll
2015-02-24 12:22:22 ----A---- C:\Windows\system32\bcrypt.dll
2015-02-24 12:22:19 ----A---- C:\Windows\system32\aepdu.dll
2015-02-24 12:22:18 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2015-02-24 12:22:17 ----A---- C:\Windows\system32\WSClient.dll
2015-02-24 12:22:17 ----A---- C:\Windows\system32\PkgMgr.exe
2015-02-24 12:22:16 ----A---- C:\Windows\SYSWOW64\sppc.dll
2015-02-24 12:22:16 ----A---- C:\Windows\system32\WLanConn.dll
2015-02-24 12:22:16 ----A---- C:\Windows\system32\wimserv.exe
2015-02-24 12:22:15 ----A---- C:\Windows\system32\wscinterop.dll
2015-02-24 12:22:15 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2015-02-24 12:22:13 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2015-02-24 12:22:13 ----A---- C:\Windows\system32\PurchaseWindowsLicense.dll
2015-02-24 12:22:13 ----A---- C:\Windows\system32\gameux.dll
2015-02-24 12:22:12 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeui.exe
2015-02-24 12:22:12 ----A---- C:\Windows\system32\fhcfg.dll
2015-02-24 12:22:11 ----A---- C:\Windows\SYSWOW64\WlanMM.dll
2015-02-24 12:22:11 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2015-02-24 12:22:11 ----A---- C:\Windows\system32\dwm.exe
2015-02-24 12:22:10 ----A---- C:\Windows\SYSWOW64\msctfuimanager.dll
2015-02-24 12:22:10 ----A---- C:\Windows\system32\taskhost.exe
2015-02-24 12:22:09 ----A---- C:\Windows\system32\winsrv.dll
2015-02-24 12:22:09 ----A---- C:\Windows\system32\rasgcw.dll
2015-02-24 12:22:09 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-02-24 12:22:09 ----A---- C:\Windows\system32\drivers\luafv.sys
2015-02-24 12:22:08 ----A---- C:\Windows\SYSWOW64\authz.dll
2015-02-24 12:22:08 ----A---- C:\Windows\system32\dmdskmgr.dll
2015-02-24 12:22:07 ----A---- C:\Windows\system32\wscapi.dll
2015-02-24 12:22:06 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2015-02-24 12:22:06 ----A---- C:\Windows\system32\srchadmin.dll
2015-02-24 12:22:05 ----A---- C:\Windows\system32\usercpl.dll
2015-02-24 12:22:02 ----A---- C:\Windows\SYSWOW64\ninput.dll
2015-02-24 12:21:58 ----A---- C:\Windows\system32\wsqmcons.exe
2015-02-24 12:21:58 ----A---- C:\Windows\system32\smss.exe
2015-02-24 12:21:57 ----A---- C:\Windows\system32\imm32.dll
2015-02-24 12:21:57 ----A---- C:\Windows\system32\BioCredProv.dll
2015-02-24 12:21:57 ----A---- C:\Windows\system32\AltTab.dll
2015-02-24 12:21:56 ----A---- C:\Windows\system32\vmrdvcore.dll
2015-02-24 12:21:56 ----A---- C:\Windows\system32\vdsbas.dll
2015-02-24 12:21:56 ----A---- C:\Windows\system32\systemreset.exe
2015-02-24 12:21:56 ----A---- C:\Windows\system32\RASMM.dll
2015-02-24 12:21:55 ----A---- C:\Windows\system32\PlayToManager.dll
2015-02-24 12:21:55 ----A---- C:\Windows\system32\fhcpl.dll
2015-02-24 12:21:54 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2015-02-24 12:21:54 ----A---- C:\Windows\system32\netid.dll
2015-02-24 12:21:54 ----A---- C:\Windows\system32\fsutil.exe
2015-02-24 12:21:52 ----A---- C:\Windows\system32\taskhostex.exe
2015-02-24 12:21:52 ----A---- C:\Windows\system32\sharemediacpl.dll
2015-02-24 12:21:52 ----A---- C:\Windows\system32\das.dll
2015-02-24 12:21:51 ----A---- C:\Windows\system32\CloudNotifications.exe
2015-02-24 12:21:50 ----A---- C:\Windows\system32\WSDApi.dll
2015-02-24 12:21:50 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-02-24 12:21:50 ----A---- C:\Windows\system32\sdclt.exe
2015-02-24 12:21:49 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2015-02-24 12:21:49 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2015-02-24 12:21:49 ----A---- C:\Windows\system32\drivers\fileinfo.sys
2015-02-24 12:21:48 ----A---- C:\Windows\SYSWOW64\CloudNotifications.exe
2015-02-24 12:21:47 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2015-02-24 12:21:47 ----A---- C:\Windows\system32\WMPhoto.dll
2015-02-24 12:21:47 ----A---- C:\Windows\system32\drivers\refs.sys
2015-02-24 12:21:46 ----A---- C:\Windows\SYSWOW64\imm32.dll
2015-02-24 12:21:46 ----A---- C:\Windows\system32\powrprof.dll
2015-02-24 12:21:46 ----A---- C:\Windows\system32\mssprxy.dll
2015-02-24 12:21:45 ----A---- C:\Windows\SYSWOW64\WMPDMC.exe
2015-02-24 12:21:45 ----A---- C:\Windows\system32\rascustom.dll
2015-02-24 12:21:45 ----A---- C:\Windows\system32\newdev.dll
2015-02-24 12:21:45 ----A---- C:\Windows\system32\drivers\BasicRender.sys
2015-02-24 12:21:44 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Connectivity.dll
2015-02-24 12:21:44 ----A---- C:\Windows\SYSWOW64\gameux.dll
2015-02-24 12:21:44 ----A---- C:\Windows\system32\zipfldr.dll
2015-02-24 12:21:44 ----A---- C:\Windows\system32\wusa.exe
2015-02-24 12:21:44 ----A---- C:\Windows\system32\aepic.dll
2015-02-24 12:21:43 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2015-02-24 12:21:43 ----A---- C:\Windows\system32\drivers\sdstor.sys
2015-02-24 12:21:43 ----A---- C:\Windows\system32\dmvdsitf.dll
2015-02-24 12:21:42 ----A---- C:\Windows\system32\RestoreOptIn.exe
2015-02-24 12:21:41 ----A---- C:\Windows\system32\vds.exe
2015-02-24 12:21:41 ----A---- C:\Windows\system32\spwizeng.dll
2015-02-24 12:21:40 ----A---- C:\Windows\system32\wow64win.dll
2015-02-24 12:21:40 ----A---- C:\Windows\system32\UserAccountBroker.exe
2015-02-24 12:21:40 ----A---- C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2015-02-24 12:21:40 ----A---- C:\Windows\system32\LockScreenContent.dll
2015-02-24 12:21:39 ----A---- C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2015-02-24 12:21:39 ----A---- C:\Windows\system32\MbaeApiPublic.dll
2015-02-24 12:21:38 ----A---- C:\Windows\SYSWOW64\WLanConn.dll
2015-02-24 12:21:38 ----A---- C:\Windows\SYSWOW64\powrprof.dll
2015-02-24 12:21:38 ----A---- C:\Windows\SYSWOW64\PlayToManager.dll
2015-02-24 12:21:37 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2015-02-24 12:21:37 ----A---- C:\Windows\SYSWOW64\rasgcw.dll
2015-02-24 12:21:36 ----A---- C:\Windows\SYSWOW64\RestoreOptIn.exe
2015-02-24 12:21:36 ----A---- C:\Windows\system32\Windows.Networking.Vpn.dll
2015-02-24 12:21:35 ----A---- C:\Windows\system32\dot3mm.dll
2015-02-24 12:21:35 ----A---- C:\Windows\system32\bcd.dll
2015-02-24 12:21:33 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2015-02-24 12:21:33 ----A---- C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2015-02-24 12:21:33 ----A---- C:\Windows\system32\clrhost.dll
2015-02-24 12:21:32 ----A---- C:\Windows\SYSWOW64\UserAccountBroker.exe
2015-02-24 12:21:32 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2015-02-24 12:21:32 ----A---- C:\Windows\SYSWOW64\newdev.dll
2015-02-24 12:21:31 ----A---- C:\Windows\SYSWOW64\wscinterop.dll
2015-02-24 12:21:31 ----A---- C:\Windows\system32\easinvoker.exe
2015-02-24 12:21:30 ----A---- C:\Windows\system32\DAMM.dll
2015-02-24 12:21:30 ----A---- C:\Windows\system32\bootux.dll
2015-02-24 12:21:29 ----A---- C:\Windows\SYSWOW64\bcd.dll
2015-02-24 12:21:29 ----A---- C:\Windows\system32\drivers\dumpfve.sys
2015-02-24 12:21:26 ----A---- C:\Windows\SYSWOW64\cleanmgr.exe
2015-02-24 12:21:25 ----A---- C:\Windows\system32\samlib.dll
2015-02-24 12:21:25 ----A---- C:\Windows\system32\cleanmgr.exe
2015-02-24 12:21:24 ----A---- C:\Windows\system32\provsvc.dll
2015-02-24 12:21:24 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2015-02-24 12:21:21 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2015-02-24 12:21:21 ----A---- C:\Windows\system32\rasmans.dll
2015-02-24 12:21:21 ----A---- C:\Windows\system32\drivers\UCX01000.SYS
2015-02-24 12:21:21 ----A---- C:\Windows\system32\AuthHost.exe
2015-02-24 12:21:20 ----A---- C:\Windows\system32\netiohlp.dll
2015-02-24 12:21:19 ----A---- C:\Windows\system32\korwbrkr.dll
2015-02-24 12:21:19 ----A---- C:\Windows\system32\deviceaccess.dll
2015-02-24 12:21:18 ----A---- C:\Windows\SYSWOW64\netid.dll
2015-02-24 12:21:18 ----A---- C:\Windows\SYSWOW64\BioCredProv.dll
2015-02-24 12:21:17 ----A---- C:\Windows\SYSWOW64\dmvdsitf.dll
2015-02-24 12:21:16 ----A---- C:\Windows\system32\scrrun.dll
2015-02-24 12:21:16 ----A---- C:\Windows\system32\drivers\http.sys
2015-02-24 12:21:15 ----A---- C:\Windows\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2015-02-24 12:21:15 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2015-02-24 12:21:15 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2015-02-24 12:21:15 ----A---- C:\Windows\SYSWOW64\clrhost.dll
2015-02-24 12:21:15 ----A---- C:\Windows\system32\easwrt.dll
2015-02-24 12:21:13 ----A---- C:\Windows\system32\netplwiz.dll
2015-02-24 12:21:13 ----A---- C:\Windows\system32\CloudStorageWizard.exe
2015-02-24 12:21:13 ----A---- C:\Windows\system32\acppage.dll
2015-02-24 12:21:12 ----A---- C:\Windows\SYSWOW64\dmdskmgr.dll
2015-02-24 12:21:11 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2015-02-24 12:21:11 ----A---- C:\Windows\system32\scrobj.dll
2015-02-24 12:21:10 ----A---- C:\Windows\system32\LockScreenContentServer.exe
2015-02-24 12:21:10 ----A---- C:\Windows\system32\AuthBroker.dll
2015-02-24 12:21:09 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2015-02-24 12:21:09 ----A---- C:\Windows\system32\winbrand.dll
2015-02-24 12:21:08 ----A---- C:\Windows\SYSWOW64\samlib.dll
2015-02-24 12:21:08 ----A---- C:\Windows\SYSWOW64\MicrosoftAccountTokenProvider.dll
2015-02-24 12:21:08 ----A---- C:\Windows\system32\slpts.dll
2015-02-24 12:21:07 ----A---- C:\Windows\SYSWOW64\MbaeApiPublic.dll
2015-02-24 12:21:07 ----A---- C:\Windows\SYSWOW64\deviceaccess.dll
2015-02-24 12:21:07 ----A---- C:\Windows\system32\DWWIN.EXE
2015-02-24 12:21:07 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2015-02-24 12:21:06 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2015-02-24 12:21:06 ----A---- C:\Windows\SYSWOW64\acppage.dll
2015-02-24 12:21:06 ----A---- C:\Windows\system32\wpnprv.dll
2015-02-24 12:21:06 ----A---- C:\Windows\system32\wbadmin.exe
2015-02-24 12:21:06 ----A---- C:\Windows\system32\bcdedit.exe
2015-02-24 12:21:05 ----A---- C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-02-24 12:21:05 ----A---- C:\Windows\system32\autofmt.exe
2015-02-24 12:21:05 ----A---- C:\Windows\system32\autoconv.exe
2015-02-24 12:21:04 ----A---- C:\Windows\system32\Windows.Media.Renewal.dll
2015-02-24 12:21:04 ----A---- C:\Windows\system32\wbiosrvc.dll
2015-02-24 12:21:04 ----A---- C:\Windows\system32\SysResetErr.exe
2015-02-24 12:21:04 ----A---- C:\Windows\system32\sud.dll
2015-02-24 12:21:03 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-02-24 12:21:03 ----A---- C:\Windows\SYSWOW64\scrobj.dll
2015-02-24 12:21:03 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2015-02-24 12:21:03 ----A---- C:\Windows\system32\sppnp.dll
2015-02-24 12:21:02 ----A---- C:\Windows\SYSWOW64\wlidcredprov.dll
2015-02-24 12:21:02 ----A---- C:\Windows\system32\bcdboot.exe
2015-02-24 12:21:02 ----A---- C:\Windows\system32\autochk.exe
2015-02-24 12:21:01 ----A---- C:\Windows\SYSWOW64\slpts.dll
2015-02-24 12:21:01 ----A---- C:\Windows\system32\spbcd.dll
2015-02-24 12:21:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-02-24 12:21:00 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2015-02-24 12:21:00 ----A---- C:\Windows\system32\migisol.dll
2015-02-24 12:20:59 ----A---- C:\Windows\SYSWOW64\winbrand.dll
2015-02-24 12:20:59 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2015-02-24 12:20:57 ----A---- C:\Windows\SYSWOW64\autochk.exe
2015-02-24 12:20:57 ----A---- C:\Windows\system32\DAConn.dll
2015-02-24 12:20:56 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2015-02-24 12:20:56 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2015-02-24 12:20:56 ----A---- C:\Windows\system32\fhevents.dll
2015-02-24 12:20:56 ----A---- C:\Windows\system32\dafBth.dll
2015-02-24 12:20:55 ----A---- C:\Windows\system32\IdCtrls.dll
2015-02-24 12:20:54 ----A---- C:\Windows\SYSWOW64\DWWIN.EXE
2015-02-24 12:20:54 ----A---- C:\Windows\SYSWOW64\AuthBroker.dll
2015-02-24 12:20:54 ----A---- C:\Windows\system32\spcompat.dll
2015-02-24 12:20:53 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-02-24 12:20:53 ----A---- C:\Windows\SYSWOW64\StorageContextHandler.dll
2015-02-24 12:20:53 ----A---- C:\Windows\system32\vdsutil.dll
2015-02-24 12:20:53 ----A---- C:\Windows\system32\drivers\watchdog.sys
2015-02-24 12:20:52 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2015-02-24 12:20:52 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-02-24 12:20:52 ----A---- C:\Windows\system32\cscript.exe
2015-02-24 12:20:51 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2015-02-24 12:20:51 ----A---- C:\Windows\SYSWOW64\mssprxy.dll
2015-02-24 12:20:51 ----A---- C:\Windows\system32\energytask.dll
2015-02-24 12:20:50 ----A---- C:\Windows\SYSWOW64\WimBootCompress.ini
2015-02-24 12:20:50 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2015-02-24 12:20:50 ----A---- C:\Windows\system32\diskpart.exe
2015-02-24 12:20:49 ----A---- C:\Windows\system32\WimBootCompress.ini
2015-02-24 12:20:49 ----A---- C:\Windows\system32\werui.dll
2015-02-24 12:20:49 ----A---- C:\Windows\system32\devinv.dll
2015-02-24 12:20:47 ----A---- C:\Windows\system32\powercfg.exe
2015-02-24 12:20:43 ----A---- C:\Windows\SYSWOW64\sud.dll
2015-02-24 12:20:43 ----A---- C:\Windows\system32\RelPost.exe
2015-02-24 12:20:42 ----A---- C:\Windows\system32\pnpclean.dll
2015-02-24 12:20:41 ----A---- C:\Windows\SYSWOW64\wlidcli.dll
2015-02-24 12:20:41 ----A---- C:\Windows\system32\SettingMonitor.dll
2015-02-24 12:20:41 ----A---- C:\Windows\system32\deviceassociation.dll
2015-02-24 12:20:39 ----A---- C:\Windows\SYSWOW64\SettingMonitor.dll
2015-02-24 12:20:39 ----A---- C:\Windows\system32\PlayToDevice.dll
2015-02-24 12:20:39 ----A---- C:\Windows\system32\pcaui.exe
2015-02-24 12:20:39 ----A---- C:\Windows\system32\dasHost.exe
2015-02-24 12:20:37 ----A---- C:\Windows\system32\srrstr.dll
2015-02-24 12:20:36 ----A---- C:\Windows\SYSWOW64\pcaui.exe
2015-02-24 12:20:36 ----A---- C:\Windows\SYSWOW64\offreg.dll
2015-02-24 12:20:36 ----A---- C:\Windows\system32\ReAgentc.exe
2015-02-24 12:20:35 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-02-24 12:20:35 ----A---- C:\Windows\system32\offreg.dll
2015-02-24 12:20:35 ----A---- C:\Windows\system32\ActionQueue.dll
2015-02-24 12:20:34 ----A---- C:\Windows\SYSWOW64\winsku.dll
2015-02-24 12:20:34 ----A---- C:\Windows\SYSWOW64\SSShim.dll
2015-02-24 12:20:34 ----A---- C:\Windows\SYSWOW64\IdCtrls.dll
2015-02-24 12:20:34 ----A---- C:\Windows\SYSWOW64\CloudStorageWizard.exe
2015-02-24 12:20:34 ----A---- C:\Windows\system32\dfrgui.exe
2015-02-24 12:20:33 ----A---- C:\Windows\SYSWOW64\UserLanguagesCpl.dll
2015-02-24 12:20:33 ----A---- C:\Windows\SYSWOW64\PlayToDevice.dll
2015-02-24 12:20:33 ----A---- C:\Windows\SYSWOW64\deviceassociation.dll
2015-02-24 12:20:33 ----A---- C:\Windows\system32\msshooks.dll
2015-02-24 12:20:32 ----A---- C:\Windows\SYSWOW64\werui.dll
2015-02-24 12:20:32 ----A---- C:\Windows\SYSWOW64\powercfg.exe
2015-02-24 12:20:32 ----A---- C:\Windows\system32\SystemSettings.Handlers.dll
2015-02-24 12:20:32 ----A---- C:\Windows\system32\mf3216.dll
2015-02-24 12:20:31 ----A---- C:\Windows\SYSWOW64\migisol.dll
2015-02-24 12:20:31 ----A---- C:\Windows\system32\f3ahvoas.dll
2015-02-24 12:20:30 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2015-02-24 12:20:30 ----A---- C:\Windows\system32\SrTasks.exe
2015-02-24 12:20:29 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2015-02-24 12:20:29 ----A---- C:\Windows\system32\winsku.dll
2015-02-24 12:20:29 ----A---- C:\Windows\system32\wercplsupport.dll
2015-02-24 12:20:28 ----A---- C:\Windows\SYSWOW64\easwrt.dll
2015-02-24 12:20:28 ----A---- C:\Windows\system32\vdsdyn.dll
2015-02-24 12:20:27 ----A---- C:\Windows\system32\themecpl.dll
2015-02-24 12:20:27 ----A---- C:\Windows\system32\LockScreenContentHost.dll
2015-02-24 12:20:27 ----A---- C:\Windows\system32\AepRoam.dll
2015-02-24 12:20:26 ----A---- C:\Windows\system32\DevicePairing.dll
2015-02-24 12:20:25 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2015-02-24 12:20:24 ----A---- C:\Windows\SYSWOW64\cscript.exe
2015-02-24 12:20:23 ----A---- C:\Windows\SYSWOW64\sxshared.dll
2015-02-24 12:20:23 ----A---- C:\Windows\SYSWOW64\msshooks.dll
2015-02-24 12:20:22 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-02-24 12:20:22 ----A---- C:\Windows\SYSWOW64\ConfigureExpandedStorage.dll
2015-02-24 12:20:22 ----A---- C:\Windows\system32\ConfigureExpandedStorage.dll
2015-02-24 12:20:21 ----A---- C:\Windows\SYSWOW64\wusa.exe
2015-02-24 12:20:21 ----A---- C:\Windows\system32\scavengeui.dll
2015-02-24 12:20:16 ----A---- C:\Windows\system32\wincorlib.dll
2015-02-24 12:20:15 ----AH---- C:\Windows\SYSWOW64\ext-ms-win-session-winsta-l1-1-0.dll
2015-02-24 12:20:14 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2015-02-24 12:20:13 ----A---- C:\Windows\SYSWOW64\wincorlib.dll
2015-02-24 12:20:06 ----A---- C:\Windows\system32\syncui.dll
2015-02-24 12:20:06 ----A---- C:\Windows\system32\SettingSyncPolicy.dll
2015-02-24 12:20:05 ----A---- C:\Windows\SYSWOW64\finger.exe
2015-02-24 12:20:03 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2015-02-24 12:20:03 ----A---- C:\Windows\SYSWOW64\SettingSyncPolicy.dll
2015-02-24 12:20:03 ----A---- C:\Windows\system32\wmpdxm.dll
2015-02-24 12:20:02 ----A---- C:\Windows\system32\GlobCollationHost.dll
2015-02-24 12:20:01 ----A---- C:\Windows\system32\ocsetapi.dll
2015-02-24 12:19:59 ----AH---- C:\Windows\system32\ext-ms-win-session-winsta-l1-1-0.dll
2015-02-24 12:19:59 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2015-02-24 12:19:59 ----A---- C:\Windows\SYSWOW64\GlobCollationHost.dll
2015-02-24 12:19:59 ----A---- C:\Windows\system32\StorageContextHandler.dll
2015-02-24 12:19:58 ----A---- C:\Windows\system32\dataclen.dll
2015-02-24 12:19:58 ----A---- C:\Windows\system32\aitagent.exe
2015-02-24 12:19:57 ----A---- C:\Windows\SYSWOW64\korwbrkr.dll
2015-02-24 12:19:56 ----AH---- C:\Windows\SYSWOW64\ext-ms-win-kernel32-package-l1-1-1.dll
2015-02-24 12:19:56 ----AH---- C:\Windows\system32\ext-ms-win-kernel32-package-l1-1-1.dll
2015-02-24 12:19:56 ----A---- C:\Windows\system32\shsetup.dll
2015-02-24 12:19:53 ----A---- C:\Windows\SYSWOW64\dataclen.dll
2015-02-24 12:19:53 ----A---- C:\Windows\system32\fhsvcctl.dll
2015-02-24 12:19:52 ----AH---- C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-1.dll
2015-02-24 12:19:52 ----A---- C:\Windows\system32\shimeng.dll
2015-02-24 12:19:52 ----A---- C:\Windows\system32\lpksetupproxyserv.dll
2015-02-24 12:19:51 ----AH---- C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-0.dll
2015-02-24 12:19:51 ----A---- C:\Windows\system32\dxmasf.dll
2015-02-24 12:19:51 ----A---- C:\Windows\system32\aeinv.dll
2015-02-24 12:19:50 ----AH---- C:\Windows\SYSWOW64\ext-ms-win-ntuser-private-l1-1-1.dll
2015-02-24 12:19:50 ----AH---- C:\Windows\SYSWOW64\ext-ms-win-ntuser-private-l1-1-0.dll
2015-02-24 12:19:49 ----AH---- C:\Windows\SYSWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll
2015-02-24 12:19:49 ----A---- C:\Windows\system32\fveskybackup.dll
2015-02-24 12:19:49 ----A---- C:\Windows\system32\finger.exe
2015-02-24 12:19:47 ----A---- C:\Windows\SYSWOW64\f3ahvoas.dll
2015-02-23 17:55:25 ----D---- C:\Windows\system32\MRT
2015-02-23 17:55:20 ----A---- C:\Windows\system32\MRT.exe
2015-02-23 17:31:11 ----A---- C:\Windows\system32\pnrpsvc.dll
2015-02-23 17:31:11 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2015-02-23 17:31:09 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2015-02-23 17:31:08 ----A---- C:\Windows\system32\sti.dll
2015-02-23 17:31:08 ----A---- C:\Windows\system32\drivers\rdbss.sys
2015-02-23 17:31:07 ----A---- C:\Windows\SYSWOW64\sti.dll
2015-02-23 17:31:07 ----A---- C:\Windows\SYSWOW64\OEMLicense.dll
2015-02-23 17:31:07 ----A---- C:\Windows\system32\OEMLicense.dll
2015-02-23 17:29:58 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2015-02-23 17:29:56 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2015-02-23 17:29:52 ----A---- C:\Windows\system32\Windows.Web.Http.dll
2015-02-23 17:29:51 ----A---- C:\Windows\system32\TSWorkspace.dll
2015-02-23 17:29:50 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2015-02-23 17:29:49 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-02-23 17:29:48 ----A---- C:\Windows\system32\d3d10level9.dll
2015-02-23 17:29:46 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2015-02-23 17:29:46 ----A---- C:\Windows\system32\eapphost.dll
2015-02-23 17:29:45 ----A---- C:\Windows\system32\kd_02_8086.dll
2015-02-23 17:29:44 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2015-02-23 17:29:43 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2015-02-23 17:29:43 ----A---- C:\Windows\system32\tsmf.dll
2015-02-23 17:29:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2015-02-23 17:29:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2015-02-23 17:29:42 ----A---- C:\Windows\system32\eapp3hst.dll
2015-02-23 17:29:40 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2015-02-23 17:29:40 ----A---- C:\Windows\system32\msched.dll
2015-02-23 17:29:40 ----A---- C:\Windows\system32\embeddedapplauncher.exe
2015-02-23 17:29:39 ----A---- C:\Windows\SYSWOW64\Windows.Web.Http.dll
2015-02-23 17:29:37 ----A---- C:\Windows\system32\wldp.dll
2015-02-23 17:29:37 ----A---- C:\Windows\system32\miutils.dll
2015-02-23 17:29:37 ----A---- C:\Windows\system32\ipnathlp.dll
2015-02-23 17:29:36 ----A---- C:\Windows\system32\drivers\stornvme.sys
2015-02-23 17:29:33 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2015-02-23 17:29:33 ----A---- C:\Windows\system32\eappcfg.dll
2015-02-23 17:29:32 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2015-02-23 17:29:31 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2015-02-23 17:29:31 ----A---- C:\Windows\SYSWOW64\eappcfg.dll
2015-02-23 17:29:31 ----A---- C:\Windows\system32\eappgnui.dll
2015-02-23 17:29:30 ----A---- C:\Windows\SYSWOW64\miutils.dll
2015-02-23 17:29:29 ----A---- C:\Windows\SYSWOW64\ftp.exe
2015-02-23 17:29:27 ----A---- C:\Windows\system32\rdpclip.exe
2015-02-23 17:29:27 ----A---- C:\Windows\system32\ftp.exe
2015-02-23 17:27:07 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2015-02-23 17:27:06 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-02-23 17:26:59 ----A---- C:\Windows\system32\mfds.dll
2015-02-23 17:26:57 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.dll
2015-02-23 17:26:57 ----A---- C:\Windows\SYSWOW64\mfds.dll
2015-02-23 17:26:57 ----A---- C:\Windows\system32\Windows.Graphics.dll
2015-02-23 17:26:56 ----A---- C:\Windows\system32\msieftp.dll
2015-02-23 17:26:56 ----A---- C:\Windows\system32\drivers\ipnat.sys
2015-02-23 17:26:56 ----A---- C:\Windows\system32\drivers\BtaMPM.sys
2015-02-23 17:26:56 ----A---- C:\Windows\system32\bi.dll
2015-02-23 17:26:55 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2015-02-23 17:26:55 ----A---- C:\Windows\system32\deviceregistration.dll
2015-02-23 17:26:07 ----A---- C:\Windows\system32\drivers\SerCx2.sys
2015-02-23 17:26:07 ----A---- C:\Windows\system32\appmgr.dll
2015-02-23 17:26:06 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2015-02-23 17:25:51 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-23 17:25:04 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2015-02-23 17:24:56 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-02-23 17:24:50 ----A---- C:\Windows\system32\mfsrcsnk.dll
2015-02-23 17:24:45 ----A---- C:\Windows\system32\sspicli.dll
2015-02-23 17:24:44 ----A---- C:\Windows\system32\tpmvsc.dll
2015-02-23 17:24:42 ----A---- C:\Windows\system32\WinSCard.dll
2015-02-23 17:24:41 ----A---- C:\Windows\system32\livessp.dll
2015-02-23 17:24:40 ----A---- C:\Windows\system32\wcncsvc.dll
2015-02-23 17:24:39 ----A---- C:\Windows\system32\TetheringMgr.dll
2015-02-23 17:24:35 ----A---- C:\Windows\system32\msra.exe
2015-02-23 17:24:35 ----A---- C:\Windows\system32\DscCoreConfProv.dll
2015-02-23 17:24:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-02-23 17:24:34 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2015-02-23 17:24:34 ----A---- C:\Windows\system32\DscCore.dll
2015-02-23 17:24:32 ----A---- C:\Windows\system32\fdprint.dll
2015-02-23 17:24:29 ----A---- C:\Windows\system32\riched20.dll
2015-02-23 17:24:28 ----A---- C:\Windows\system32\Windows.Devices.Usb.dll
2015-02-23 17:24:28 ----A---- C:\Windows\system32\WebcamUi.dll
2015-02-23 17:24:26 ----A---- C:\Windows\system32\pcasvc.dll
2015-02-23 17:24:24 ----A---- C:\Windows\system32\CryptoWinRT.dll
2015-02-23 17:24:23 ----A---- C:\Windows\system32\drivers\VerifierExt.sys
2015-02-23 17:24:22 ----A---- C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2015-02-23 17:24:22 ----A---- C:\Windows\system32\PSHED.DLL
2015-02-23 17:24:22 ----A---- C:\Windows\system32\AxInstSv.dll
2015-02-23 17:24:21 ----A---- C:\Windows\SYSWOW64\WebcamUi.dll
2015-02-23 17:24:21 ----A---- C:\Windows\system32\Utilman.exe
2015-02-23 17:24:21 ----A---- C:\Windows\system32\SensorsClassExtension.dll
2015-02-23 17:24:20 ----A---- C:\Windows\system32\rdsdwmdr.dll
2015-02-23 17:24:19 ----A---- C:\Windows\system32\efswrt.dll
2015-02-23 17:24:19 ----A---- C:\Windows\system32\DeviceCenter.dll
2015-02-23 17:24:18 ----A---- C:\Windows\SYSWOW64\riched20.dll
2015-02-23 17:24:18 ----A---- C:\Windows\system32\BthRadioMedia.dll
2015-02-23 17:24:17 ----A---- C:\Windows\SYSWOW64\WorkFoldersRes.dll
2015-02-23 17:24:17 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Usb.dll
2015-02-23 17:24:17 ----A---- C:\Windows\SYSWOW64\CryptoWinRT.dll
2015-02-23 17:24:17 ----A---- C:\Windows\system32\WorkFoldersRes.dll
2015-02-23 17:24:17 ----A---- C:\Windows\system32\WorkFolders.exe
2015-02-23 17:24:17 ----A---- C:\Windows\system32\pcaui.dll
2015-02-23 17:24:16 ----A---- C:\Windows\SYSWOW64\fdprint.dll
2015-02-23 17:24:15 ----A---- C:\Windows\SYSWOW64\pcaui.dll
2015-02-23 17:24:15 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2015-02-23 17:24:14 ----A---- C:\Windows\system32\fontsub.dll
2015-02-23 17:24:14 ----A---- C:\Windows\system32\drivers\appid.sys
2015-02-23 17:24:13 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2015-02-23 17:24:13 ----A---- C:\Windows\SYSWOW64\efswrt.dll
2015-02-23 17:24:12 ----A---- C:\Windows\SYSWOW64\Utilman.exe
2015-02-23 17:24:12 ----A---- C:\Windows\system32\mcbuilder.exe
2015-02-23 17:24:11 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-02-23 17:24:09 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-02-23 17:18:42 ----A---- C:\Windows\system32\imagehlp.dll
2015-02-23 17:18:41 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2015-02-23 17:18:19 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-02-23 17:17:41 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-02-23 17:17:41 ----A---- C:\Windows\system32\d2d1.dll
2015-02-23 17:17:39 ----A---- C:\Windows\system32\WSCollect.exe
2015-02-23 17:17:37 ----A---- C:\Windows\system32\sppsvc.exe
2015-02-23 17:17:35 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2015-02-23 17:17:35 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2015-02-23 17:17:35 ----A---- C:\Windows\system32\dbghelp.dll
2015-02-23 17:17:35 ----A---- C:\Windows\system32\dbgeng.dll
2015-02-23 17:17:34 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-02-23 17:17:34 ----A---- C:\Windows\system32\sppcomapi.dll
2015-02-23 17:17:00 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-02-23 17:17:00 ----A---- C:\Windows\system32\crypt32.dll
2015-02-23 17:16:38 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-02-23 17:16:38 ----A---- C:\Windows\system32\poqexec.exe
2015-02-23 17:15:58 ----D---- C:\Users\ciffi\AppData\Roaming\NoteBook FanControl
2015-02-23 17:13:08 ----D---- C:\ProgramData\NbfcService
2015-02-23 17:13:04 ----D---- C:\Program Files (x86)\NoteBook FanControl
2015-02-23 14:37:32 ----D---- C:\Program Files\Intel
2015-02-23 14:36:59 ----D---- C:\ProgramData\IntelDLM
2015-02-23 14:35:48 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2015-02-23 14:33:05 ----D---- C:\Users\ciffi\AppData\Roaming\Raptr
2015-02-23 14:33:05 ----D---- C:\Program Files (x86)\Raptr
2015-02-23 10:36:16 ----D---- C:\Users\ciffi\AppData\Roaming\Notepad++
2015-02-23 10:31:14 ----D---- C:\Users\ciffi\AppData\Roaming\vlc
2015-02-23 10:26:27 ----D---- C:\Users\ciffi\AppData\Roaming\uTorrent
2015-02-22 06:49:55 ----ASH---- C:\hiberfil.sys
2015-02-22 06:48:16 ----D---- C:\Windows\Prefetch
2015-02-22 06:47:46 ----ASH---- C:\swapfile.sys
2015-02-22 06:47:46 ----ASH---- C:\pagefile.sys
2015-02-22 06:47:44 ----SHD---- C:\System Volume Information
2015-02-22 06:47:18 ----D---- C:\Windows\Panther
2015-02-22 01:38:29 ----D---- C:\Users\ciffi\AppData\Roaming\Battle.net
2015-02-22 01:38:21 ----D---- C:\ProgramData\Blizzard Entertainment
2015-02-22 01:37:09 ----D---- C:\ProgramData\Battle.net
2015-02-22 01:14:47 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2015-02-22 01:14:47 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2015-02-22 01:14:46 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2015-02-22 01:14:46 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2015-02-22 01:14:46 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2015-02-22 01:14:46 ----A---- C:\Windows\system32\XAudio2_7.dll
2015-02-22 01:14:46 ----A---- C:\Windows\system32\xactengine3_7.dll
2015-02-22 01:14:46 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2015-02-22 01:14:45 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-02-22 01:14:45 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-02-22 01:14:45 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2015-02-22 01:14:45 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-02-22 01:14:45 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-02-22 01:14:45 ----A---- C:\Windows\system32\d3dcsx_43.dll
2015-02-22 01:14:44 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2015-02-22 01:14:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2015-02-22 01:14:44 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-02-22 01:14:44 ----A---- C:\Windows\system32\XAudio2_6.dll
2015-02-22 01:14:44 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2015-02-22 01:14:44 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-02-22 01:14:43 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2015-02-22 01:14:43 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2015-02-22 01:14:43 ----A---- C:\Windows\system32\xactengine3_6.dll
2015-02-22 01:14:43 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2015-02-22 01:14:42 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2015-02-22 01:14:42 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2015-02-22 01:14:42 ----A---- C:\Windows\system32\XAudio2_5.dll
2015-02-22 01:14:42 ----A---- C:\Windows\system32\xactengine3_5.dll
2015-02-22 01:14:41 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2015-02-22 01:14:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2015-02-22 01:14:41 ----A---- C:\Windows\system32\d3dcsx_42.dll
2015-02-22 01:14:41 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2015-02-22 01:14:40 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2015-02-22 01:14:40 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2015-02-22 01:14:40 ----A---- C:\Windows\system32\d3dx11_42.dll
2015-02-22 01:14:40 ----A---- C:\Windows\system32\d3dx10_42.dll
2015-02-22 01:14:39 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2015-02-22 01:14:39 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2015-02-22 01:14:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2015-02-22 01:14:39 ----A---- C:\Windows\system32\D3DX9_42.dll
2015-02-22 01:14:39 ----A---- C:\Windows\system32\d3dx10_41.dll
2015-02-22 01:14:39 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2015-02-22 01:14:38 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2015-02-22 01:14:38 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2015-02-22 01:14:38 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2015-02-22 01:14:38 ----A---- C:\Windows\system32\XAudio2_4.dll
2015-02-22 01:14:38 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2015-02-22 01:14:38 ----A---- C:\Windows\system32\D3DX9_41.dll
2015-02-22 01:14:37 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2015-02-22 01:14:37 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2015-02-22 01:14:37 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2015-02-22 01:14:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2015-02-22 01:14:37 ----A---- C:\Windows\system32\xactengine3_4.dll
2015-02-22 01:14:37 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2015-02-22 01:14:37 ----A---- C:\Windows\system32\d3dx10_40.dll
2015-02-22 01:14:37 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2015-02-22 01:14:36 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2015-02-22 01:14:36 ----A---- C:\Windows\system32\D3DX9_40.dll
2015-02-22 01:14:35 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2015-02-22 01:14:35 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2015-02-22 01:14:35 ----A---- C:\Windows\system32\XAudio2_3.dll
2015-02-22 01:14:35 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2015-02-22 01:14:34 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2015-02-22 01:14:34 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2015-02-22 01:14:34 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2015-02-22 01:14:34 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2015-02-22 01:14:34 ----A---- C:\Windows\system32\XAudio2_2.dll
2015-02-22 01:14:34 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2015-02-22 01:14:34 ----A---- C:\Windows\system32\xactengine3_3.dll
2015-02-22 01:14:34 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2015-02-22 01:14:33 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2015-02-22 01:14:33 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2015-02-22 01:14:33 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2015-02-22 01:14:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2015-02-22 01:14:33 ----A---- C:\Windows\system32\xactengine3_2.dll
2015-02-22 01:14:33 ----A---- C:\Windows\system32\D3DX9_39.dll
2015-02-22 01:14:33 ----A---- C:\Windows\system32\d3dx10_39.dll
2015-02-22 01:14:33 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2015-02-22 01:14:32 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2015-02-22 01:14:32 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2015-02-22 01:14:32 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2015-02-22 01:14:32 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2015-02-22 01:14:32 ----A---- C:\Windows\system32\XAudio2_1.dll
2015-02-22 01:14:32 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2015-02-22 01:14:32 ----A---- C:\Windows\system32\xactengine3_1.dll
2015-02-22 01:14:32 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2015-02-22 01:14:31 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2015-02-22 01:14:31 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2015-02-22 01:14:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2015-02-22 01:14:31 ----A---- C:\Windows\system32\D3DX9_38.dll
2015-02-22 01:14:31 ----A---- C:\Windows\system32\d3dx10_38.dll
2015-02-22 01:14:31 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2015-02-22 01:14:30 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2015-02-22 01:14:30 ----A---- C:\Windows\system32\XAudio2_0.dll
2015-02-22 01:14:29 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2015-02-22 01:14:29 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2015-02-22 01:14:29 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2015-02-22 01:14:29 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2015-02-22 01:14:29 ----A---- C:\Windows\system32\xactengine3_0.dll
2015-02-22 01:14:29 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2015-02-22 01:14:29 ----A---- C:\Windows\system32\d3dx10_37.dll
2015-02-22 01:14:29 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2015-02-22 01:14:28 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2015-02-22 01:14:28 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2015-02-22 01:14:28 ----A---- C:\Windows\system32\xactengine2_10.dll
2015-02-22 01:14:28 ----A---- C:\Windows\system32\D3DX9_37.dll
2015-02-22 01:14:27 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2015-02-22 01:14:27 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2015-02-22 01:14:27 ----A---- C:\Windows\system32\d3dx10_36.dll
2015-02-22 01:14:27 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2015-02-22 01:14:26 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2015-02-22 01:14:26 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2015-02-22 01:14:26 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2015-02-22 01:14:26 ----A---- C:\Windows\system32\xactengine2_9.dll
2015-02-22 01:14:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2015-02-22 01:14:26 ----A---- C:\Windows\system32\d3dx10_35.dll
2015-02-22 01:14:25 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2015-02-22 01:14:25 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2015-02-22 01:14:25 ----A---- C:\Windows\system32\d3dx9_35.dll
2015-02-22 01:14:25 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2015-02-22 01:14:24 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2015-02-22 01:14:24 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2015-02-22 01:14:24 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2015-02-22 01:14:24 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2015-02-22 01:14:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2015-02-22 01:14:24 ----A---- C:\Windows\system32\xactengine2_8.dll
2015-02-22 01:14:24 ----A---- C:\Windows\system32\X3DAudio1_2.dll

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#3 Příspěvek od ciffi »

2015-02-22 01:14:24 ----A---- C:\Windows\system32\d3dx9_34.dll
2015-02-22 01:14:24 ----A---- C:\Windows\system32\d3dx10_34.dll
2015-02-22 01:14:24 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2015-02-22 01:14:23 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-02-22 01:14:23 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2015-02-22 01:14:23 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2015-02-22 01:14:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2015-02-22 01:14:23 ----A---- C:\Windows\system32\xinput1_3.dll
2015-02-22 01:14:23 ----A---- C:\Windows\system32\xactengine2_7.dll
2015-02-22 01:14:23 ----A---- C:\Windows\system32\d3dx10_33.dll
2015-02-22 01:14:23 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2015-02-22 01:14:22 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2015-02-22 01:14:22 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2015-02-22 01:14:22 ----A---- C:\Windows\system32\xactengine2_6.dll
2015-02-22 01:14:22 ----A---- C:\Windows\system32\d3dx9_33.dll
2015-02-22 01:14:21 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2015-02-22 01:14:21 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2015-02-22 01:14:21 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2015-02-22 01:14:21 ----A---- C:\Windows\system32\xactengine2_5.dll
2015-02-22 01:14:21 ----A---- C:\Windows\system32\d3dx9_32.dll
2015-02-22 01:14:21 ----A---- C:\Windows\system32\d3dx10.dll
2015-02-22 01:14:20 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2015-02-22 01:14:20 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2015-02-22 01:14:20 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2015-02-22 01:14:20 ----A---- C:\Windows\system32\xactengine2_4.dll
2015-02-22 01:14:20 ----A---- C:\Windows\system32\x3daudio1_1.dll
2015-02-22 01:14:20 ----A---- C:\Windows\system32\d3dx9_31.dll
2015-02-22 01:14:19 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2015-02-22 01:14:19 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2015-02-22 01:14:19 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2015-02-22 01:14:19 ----A---- C:\Windows\system32\xinput1_2.dll
2015-02-22 01:14:19 ----A---- C:\Windows\system32\xactengine2_3.dll
2015-02-22 01:14:19 ----A---- C:\Windows\system32\xactengine2_2.dll
2015-02-22 01:14:18 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2015-02-22 01:14:18 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2015-02-22 01:14:18 ----A---- C:\Windows\system32\xinput1_1.dll
2015-02-22 01:14:18 ----A---- C:\Windows\system32\xactengine2_1.dll
2015-02-22 01:14:14 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2015-02-22 01:14:14 ----A---- C:\Windows\system32\d3dx9_30.dll
2015-02-22 01:14:13 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2015-02-22 01:14:13 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2015-02-22 01:14:13 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2015-02-22 01:14:13 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2015-02-22 01:14:13 ----A---- C:\Windows\system32\xactengine2_0.dll
2015-02-22 01:14:13 ----A---- C:\Windows\system32\x3daudio1_0.dll
2015-02-22 01:14:13 ----A---- C:\Windows\system32\d3dx9_29.dll
2015-02-22 01:14:13 ----A---- C:\Windows\system32\d3dx9_28.dll
2015-02-22 01:14:12 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2015-02-22 01:14:12 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2015-02-22 01:14:12 ----A---- C:\Windows\system32\d3dx9_27.dll
2015-02-22 01:14:12 ----A---- C:\Windows\system32\d3dx9_26.dll
2015-02-22 01:14:11 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2015-02-22 01:14:11 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2015-02-22 01:14:11 ----A---- C:\Windows\system32\d3dx9_25.dll
2015-02-22 01:14:11 ----A---- C:\Windows\system32\d3dx9_24.dll
2015-02-21 23:27:21 ----D---- C:\Users\ciffi\AppData\Roaming\Synaptics
2015-02-21 23:19:44 ----D---- C:\Users\ciffi\AppData\Roaming\puush
2015-02-21 23:18:39 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-02-21 23:18:39 ----D---- C:\Program Files (x86)\MSBuild
2015-02-21 23:18:32 ----D---- C:\Program Files\Reference Assemblies
2015-02-21 23:18:32 ----D---- C:\Program Files\MSBuild
2015-02-21 23:17:17 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2015-02-21 23:17:17 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-21 23:17:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2015-02-21 23:17:17 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-21 23:14:26 ----D---- C:\Users\ciffi\AppData\Roaming\library_dir
2015-02-21 23:13:39 ----D---- C:\Program Files (x86)\AMD AVT
2015-02-21 23:13:02 ----D---- C:\Program Files (x86)\AMD
2015-02-21 23:12:45 ----D---- C:\ProgramData\ATI
2015-02-21 23:12:41 ----A---- C:\Windows\system32\drivers\amdkmpfd.sys
2015-02-21 23:10:36 ----D---- C:\Program Files\AMD
2015-02-21 23:08:18 ----D---- C:\AMD
2015-02-21 23:00:49 ----D---- C:\Games
2015-02-21 22:57:07 ----A---- C:\Windows\system32\stlang64.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\IDTNX.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\IDTNJ.exe
2015-02-21 22:57:07 ----A---- C:\Windows\system32\IDTNHP.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\IDTNGUI.exe
2015-02-21 22:57:07 ----A---- C:\Windows\system32\HPToneCtrls64.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\AESTEC64.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\AESTCo64.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\AESTAR64.dll
2015-02-21 22:57:07 ----A---- C:\Windows\system32\AESTAC64.dll
2015-02-21 22:57:07 ----A---- C:\Windows\sttray64.exe
2015-02-21 22:57:06 ----D---- C:\Windows\system32\SRSLabs
2015-02-21 22:56:39 ----A---- C:\Windows\system32\stcplx64.dll
2015-02-21 22:56:39 ----A---- C:\Windows\system32\stapo64.dll
2015-02-21 22:56:39 ----A---- C:\Windows\system32\drivers\stwrt64.sys
2015-02-21 22:56:38 ----N---- C:\Windows\system32\stapi64.dll
2015-02-21 22:56:38 ----A---- C:\Windows\system32\st646433.dll
2015-02-21 22:56:32 ----D---- C:\Program Files\IDT
2015-02-21 22:56:31 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-02-21 22:56:08 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2015-02-21 22:56:06 ----A---- C:\Windows\SYSWOW64\log.txt
2015-02-21 22:53:29 ----D---- C:\ProgramData\Intel
2015-02-21 22:53:19 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2015-02-21 22:53:18 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2015-02-21 22:43:38 ----D---- C:\Users\ciffi\AppData\Roaming\Macromedia
2015-02-21 22:41:59 ----D---- C:\Users\ciffi\AppData\Roaming\Skype
2015-02-21 22:41:54 ----D---- C:\Program Files (x86)\Skype
2015-02-21 22:41:49 ----D---- C:\ProgramData\Skype
2015-02-21 22:40:23 ----D---- C:\Programs
2015-02-21 22:31:22 ----D---- C:\Program Files (x86)\Intel
2015-02-21 22:31:21 ----D---- C:\Intel
2015-02-21 22:26:43 ----D---- C:\Program Files\Common Files\Atheros
2015-02-21 22:25:32 ----D---- C:\Program Files\Synaptics
2015-02-21 22:21:34 ----D---- C:\Users\ciffi\AppData\Roaming\ATI
2015-02-21 22:21:28 ----D---- C:\ProgramData\AMD
2015-02-21 22:20:43 ----A---- C:\Windows\SYSWOW64\atipblup.dat
2015-02-21 22:20:39 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-02-21 22:20:02 ----D---- C:\Program Files (x86)\ATI Technologies
2015-02-21 22:19:44 ----D---- C:\ProgramData\Package Cache
2015-02-21 22:19:27 ----D---- C:\Program Files\ATI
2015-02-21 22:18:59 ----D---- C:\Program Files\ATI Technologies
2015-02-21 22:18:19 ----D---- C:\SwSetup
2015-02-21 21:59:47 ----D---- C:\Program Files (x86)\Google
2015-02-21 21:57:07 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-21 21:55:30 ----D---- C:\Users\ciffi\AppData\Roaming\Adobe
2015-02-21 21:55:23 ----SD---- C:\Users\ciffi\AppData\Roaming\Microsoft
2015-02-21 21:52:45 ----D---- C:\Windows\CSC
2015-02-21 21:52:36 ----A---- C:\Windows\SYSWOW64\PrintConfig.dll
2015-02-21 21:52:29 ----D---- C:\Windows\SoftwareDistribution

======List of files/folders modified in the last 1 month======

2015-02-28 01:52:29 ----RD---- C:\Program Files
2015-02-28 01:00:00 ----D---- C:\Windows\system32\sru
2015-02-28 00:38:07 ----RD---- C:\Windows\System32
2015-02-28 00:38:07 ----D---- C:\Windows\Inf
2015-02-28 00:33:26 ----D---- C:\Windows\system32\config
2015-02-28 00:33:23 ----D---- C:\Windows\Microsoft.NET
2015-02-28 00:33:19 ----D---- C:\Windows\WinSxS
2015-02-28 00:32:50 ----D---- C:\Windows\Temp
2015-02-27 19:20:54 ----RD---- C:\Windows\ToastData
2015-02-27 19:20:54 ----D---- C:\Windows\SysWOW64
2015-02-27 19:20:47 ----D---- C:\Windows\SYSWOW64\wbem
2015-02-27 19:20:47 ----D---- C:\Windows\SYSWOW64\setup
2015-02-27 19:20:47 ----D---- C:\Windows\SYSWOW64\en-US
2015-02-27 19:20:47 ----D---- C:\Program Files\Windows Journal
2015-02-27 19:20:46 ----RD---- C:\Windows\ImmersiveControlPanel
2015-02-27 19:20:46 ----D---- C:\Windows\system32\drivers\en-US
2015-02-27 19:20:46 ----D---- C:\Windows\PolicyDefinitions
2015-02-27 19:20:45 ----D---- C:\Windows\system32\wbem
2015-02-27 19:20:45 ----D---- C:\Windows\system32\setup
2015-02-27 19:20:45 ----D---- C:\Windows\system32\oobe
2015-02-27 19:20:45 ----D---- C:\Windows\system32\en-US
2015-02-27 19:20:45 ----D---- C:\Windows\system32\drivers
2015-02-27 19:20:45 ----D---- C:\Windows\system32\Boot
2015-02-27 19:20:43 ----RSD---- C:\Windows\Fonts
2015-02-27 19:20:42 ----D---- C:\Windows\apppatch
2015-02-27 19:20:41 ----D---- C:\Windows\SYSWOW64\InputMethod
2015-02-27 19:20:41 ----D---- C:\Windows\system32\DriverStore
2015-02-27 18:43:37 ----RSD---- C:\Windows\assembly
2015-02-27 12:18:28 ----D---- C:\Windows\system32\NDF
2015-02-27 09:56:27 ----D---- C:\Windows\system32\catroot2
2015-02-27 09:52:32 ----D---- C:\Windows\CbsTemp
2015-02-27 00:26:04 ----D---- C:\Windows\system32\sr-Latn-RS
2015-02-27 00:26:04 ----D---- C:\Windows\system32\sr-Latn-CS
2015-02-27 00:26:01 ----D---- C:\Program Files\Windows Defender
2015-02-27 00:26:00 ----D---- C:\Program Files (x86)\Windows Defender
2015-02-27 00:25:47 ----D---- C:\Windows\system32\migration
2015-02-27 00:25:39 ----D---- C:\Windows\SYSWOW64\migration
2015-02-27 00:25:39 ----D---- C:\Program Files (x86)\Internet Explorer
2015-02-27 00:25:33 ----D---- C:\Program Files\Internet Explorer
2015-02-27 00:25:32 ----D---- C:\Windows
2015-02-27 00:25:28 ----D---- C:\Windows\WinStore
2015-02-26 13:22:56 ----HD---- C:\ProgramData
2015-02-26 13:13:42 ----D---- C:\Windows\system32\CodeIntegrity
2015-02-26 13:13:39 ----D---- C:\Windows\MediaViewer
2015-02-26 13:13:37 ----D---- C:\Windows\FileManager
2015-02-26 13:13:37 ----D---- C:\Windows\Camera
2015-02-26 13:07:00 ----RD---- C:\Program Files (x86)
2015-02-26 13:00:36 ----SHD---- C:\Windows\Installer
2015-02-25 20:49:11 ----D---- C:\Windows\system32\drivers\UMDF
2015-02-25 20:05:30 ----D---- C:\Program Files (x86)\Common Files
2015-02-24 22:41:13 ----D---- C:\Windows\AppReadiness
2015-02-24 22:23:48 ----D---- C:\Program Files\Windows Portable Devices
2015-02-24 22:23:48 ----D---- C:\Program Files\Windows Multimedia Platform
2015-02-24 22:23:48 ----D---- C:\Program Files\Windows Media Player
2015-02-24 22:23:48 ----D---- C:\Program Files (x86)\Windows Portable Devices
2015-02-24 22:23:48 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2015-02-24 22:23:48 ----D---- C:\Program Files (x86)\Windows Media Player
2015-02-24 22:23:47 ----D---- C:\Windows\servicing
2015-02-24 22:23:44 ----D---- C:\Windows\SYSWOW64\Dism
2015-02-24 22:23:43 ----D---- C:\Windows\SYSWOW64\oobe
2015-02-24 22:23:35 ----D---- C:\Windows\en-US
2015-02-24 22:23:31 ----D---- C:\Windows\system32\sk-SK
2015-02-24 22:23:31 ----D---- C:\Windows\system32\lv-LV
2015-02-24 22:23:31 ----D---- C:\Windows\system32\ko-KR
2015-02-24 22:23:31 ----D---- C:\Windows\system32\hr-HR
2015-02-24 22:23:31 ----D---- C:\Windows\system32\et-EE
2015-02-24 22:23:31 ----D---- C:\Windows\system32\da-DK
2015-02-24 22:23:29 ----D---- C:\Windows\system32\Sysprep
2015-02-24 22:23:29 ----D---- C:\Windows\system32\it-IT
2015-02-24 22:23:29 ----D---- C:\Windows\system32\en-GB
2015-02-24 22:23:29 ----D---- C:\Windows\system32\el-GR
2015-02-24 22:23:29 ----D---- C:\Windows\system32\de-DE
2015-02-24 22:23:28 ----D---- C:\Windows\system32\zh-TW
2015-02-24 22:23:28 ----D---- C:\Windows\system32\zh-CN
2015-02-24 22:23:28 ----D---- C:\Windows\system32\uk-UA
2015-02-24 22:23:28 ----D---- C:\Windows\system32\sv-SE
2015-02-24 22:23:28 ----D---- C:\Windows\system32\sl-SI
2015-02-24 22:23:28 ----D---- C:\Windows\system32\ru-RU
2015-02-24 22:23:28 ----D---- C:\Windows\system32\pt-PT
2015-02-24 22:23:28 ----D---- C:\Windows\system32\pl-PL
2015-02-24 22:23:28 ----D---- C:\Windows\system32\ja-JP
2015-02-24 22:23:28 ----D---- C:\Windows\system32\hu-HU
2015-02-24 22:23:28 ----D---- C:\Windows\system32\he-IL
2015-02-24 22:23:28 ----D---- C:\Windows\system32\fr-FR
2015-02-24 22:23:28 ----D---- C:\Windows\system32\fi-FI
2015-02-24 22:23:28 ----D---- C:\Windows\system32\es-ES
2015-02-24 22:23:28 ----D---- C:\Windows\system32\cs-CZ
2015-02-24 22:23:28 ----D---- C:\Windows\system32\bg-BG
2015-02-24 22:23:27 ----D---- C:\Windows\system32\tr-TR
2015-02-24 22:23:27 ----D---- C:\Windows\system32\th-TH
2015-02-24 22:23:27 ----D---- C:\Windows\system32\ro-RO
2015-02-24 22:23:26 ----D---- C:\Windows\system32\zh-HK
2015-02-24 22:23:26 ----D---- C:\Windows\system32\SystemResetPlatform
2015-02-24 22:23:26 ----D---- C:\Windows\system32\nl-NL
2015-02-24 22:23:26 ----D---- C:\Windows\system32\nb-NO
2015-02-24 22:23:26 ----D---- C:\Windows\system32\migwiz
2015-02-24 22:23:26 ----D---- C:\Windows\system32\lt-LT
2015-02-24 22:23:26 ----D---- C:\Windows\system32\ar-SA
2015-02-24 22:23:25 ----D---- C:\Windows\system32\pt-BR
2015-02-24 22:23:25 ----D---- C:\Windows\system32\Dism
2015-02-24 13:08:02 ----D---- C:\Windows\rescache
2015-02-24 12:57:40 ----SH---- C:\Windows\system32\desktop.ini
2015-02-24 12:42:18 ----D---- C:\Windows\Logs
2015-02-23 18:20:54 ----D---- C:\Windows\system32\wdi
2015-02-23 18:16:04 ----D---- C:\Windows\system32\SecureBootUpdates
2015-02-23 14:32:09 ----D---- C:\Windows\system32\catroot
2015-02-23 07:06:15 ----HD---- C:\Program Files\WindowsApps
2015-02-22 06:50:59 ----D---- C:\Windows\debug
2015-02-22 06:49:18 ----D---- C:\Windows\system32\Recovery
2015-02-22 01:40:38 ----D---- C:\Windows\system32\Tasks
2015-02-21 23:27:07 ----SD---- C:\ProgramData\Microsoft
2015-02-21 22:26:43 ----D---- C:\Program Files\Common Files
2015-02-21 22:26:28 ----D---- C:\Windows\twain_32
2015-02-21 22:19:57 ----D---- C:\Program Files\Common Files\microsoft shared
2015-02-21 22:19:30 ----D---- C:\Windows\system32\restore
2015-02-21 21:59:49 ----D---- C:\Windows\Tasks
2015-02-21 21:56:17 ----SHD---- C:\$Recycle.Bin
2015-02-21 21:55:20 ----RD---- C:\Users
2015-02-03 20:31:19 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem13.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\Windows\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-03-13 157016]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R1 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [2015-02-23 14544]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athwnx.sys [2013-06-18 3680256]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2014-07-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-06-27 5361920]
R3 IntcDAud;@oem5.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2013-07-01 342528]
R3 MEIx64;@oem8.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2011-09-22 56600]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SNP2UVC;@oem3.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2012-11-28 1866080]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\Windows\system32\DRIVERS\stwrt64.sys [2012-10-24 543744]
R3 SynTP;@oem10.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-09-04 524016]
R3 tap0901t;@oem16.inf,%DeviceDescription%;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224]
S3 WDC_SAM;@oem14.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-01-27 14464]
S3 WinUsb;@winusb.inf,%WinUSB_SvcDesc%;WinUsb Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2013-08-22 78848]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 6ad8e7a1;PragmaMonitor; C:\Windows\syswow64\rundll32.exe [2013-08-22 49664]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-11-21 244736]
R2 FoxitCloudUpdateService;Foxit Cloud Safe Update Service; C:\Programs\Foxit Reader\Foxit Cloud\FCUpdateService.exe [2014-10-28 244448]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-01-19 325912]
R2 NbfcService;NoteBook FanControl Service; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [2014-05-22 9728]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2012-10-24 327680]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-01-19 2594584]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-21 107848]
S2 SkypeUpdate;Skype Updater; C:\Programs\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-09-24 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-21 107848]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 TunngleService;TunngleService; C:\Programs\Tunngle\TnglCtrl.exe [2015-01-17 762320]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Podozrenie na malware/trojan + RSIT

#4 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#5 Příspěvek od ciffi »

Dik za odpoved, prikladam logy


adw:
# AdwCleaner v4.111 - Logfile created 28/02/2015 at 11:13:52
# Updated 18/02/2015 by Xplode
# Database : 2015-02-18.3 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : ciffi - CIFFI-PC
# Running from : C:\Users\ciffi\Desktop\adwcleaner_4.111.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\8781354689114478618
Folder Deleted : C:\Program Files (x86)\youtubeadblocker
Folder Deleted : C:\Users\ciffi\AppData\Roaming\EZDownloader
Folder Deleted : C:\ProgramData\flfoblmaajbjepjcmfnbplkpdlaeafii
Folder Deleted : C:\ProgramData\jhngegniaokbgddmacoiofkgpaiphibn
File Deleted : C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
File Deleted : C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\P41e6dcb6_faef_42a8_bcba_af1a9b5e6f98_.P41e6dcb6_faef_42a8_bcba_af1a9b5e6f98_
Key Deleted : HKLM\SOFTWARE\Classes\P41e6dcb6_faef_42a8_bcba_af1a9b5e6f98_.P41e6dcb6_faef_42a8_bcba_af1a9b5e6f98_.9
Key Deleted : HKLM\SOFTWARE\Classes\Pd1d3a494_d7ef_4138_8fbc_879769719c88_.Pd1d3a494_d7ef_4138_8fbc_879769719c88_
Key Deleted : HKLM\SOFTWARE\Classes\Pd1d3a494_d7ef_4138_8fbc_879769719c88_.Pd1d3a494_d7ef_4138_8fbc_879769719c88_.9
Key Deleted : HKLM\SOFTWARE\Classes\Pfd885416_9602_46c0_ae12_86c6f95ce6be_.Pfd885416_9602_46c0_ae12_86c6f95ce6be_
Key Deleted : HKLM\SOFTWARE\Classes\Pfd885416_9602_46c0_ae12_86c6f95ce6be_.Pfd885416_9602_46c0_ae12_86c6f95ce6be_.9
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{6ad8e7a1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{d1d3a494-d7ef-4138-8fbc-879769719c88}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{fd885416-9602-46c0-ae12-86c6f95ce6be}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{89310413-97E0-4F09-AA75-390A7F4D4918}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d1d3a494-d7ef-4138-8fbc-879769719c88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fd885416-9602-46c0-ae12-86c6f95ce6be}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{d1d3a494-d7ef-4138-8fbc-879769719c88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{fd885416-9602-46c0-ae12-86c6f95ce6be}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{d1d3a494-d7ef-4138-8fbc-879769719c88}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{fd885416-9602-46c0-ae12-86c6f95ce6be}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41e6dcb6-faef-42a8-bcba-af1a9b5e6f98}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d1d3a494-d7ef-4138-8fbc-879769719c88}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fd885416-9602-46c0-ae12-86c6f95ce6be}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\HomeTab
Key Deleted : HKCU\Software\simplytech
Key Deleted : HKCU\Software\WajIntEnhance
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\SOFTWARE\AskPartnerNetwork
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\Iminent
Key Deleted : HKLM\SOFTWARE\SearchProtect
Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware
Key Deleted : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Key Deleted : HKLM\SOFTWARE\WajIntEnhance
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v40.0.2214.115

[C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.swellsearch.info/?l=1&q={searchTerms}&pid=22159&r=2015/02/26&hid=13506067040956029179&lg=EN&cc=CZ&unqvl=84

*************************

AdwCleaner[R0].txt - [9203 bytes] - [28/02/2015 11:12:01]
AdwCleaner[S0].txt - [7552 bytes] - [28/02/2015 11:13:52]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7611 bytes] ##########




zoek:
Zoek.exe v5.0.0.0 Updated 26-February-2015
Tool run by ciffi on 28-Feb-15 at 11:21:04.27.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\ciffi\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

28-Feb-15 11:22:13 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\Program Files\ATI Technologies deleted successfully
C:\Users\ciffi\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\6ad8e7a1 deleted successfully

==== Deleting Files \ Folders ======================

C:\PROGRA~2\PragmaMonitor deleted
C:\PROGRA~2\SystemRequirementsLab deleted
C:\PROGRA~3\{cfb5f05b-9352-77ee-cfb5-5f05b935c16e} deleted
C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\Dead Island Update 5 v1 3 0 P2P.lnk deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoteBook FanControl deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\4954046f2a462c00" not deleted
"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\84a9a23a0d92cbd4" not deleted
"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\Dead Island Update 5 v1 3 0 P2P.exe" deleted
"C:\PROGRA~2\Windows Multimedia Platform" deleted
"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}" not deleted

==== Chromium Look ======================


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\ciffi\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\ciffi\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=35 folders=27 26034273 bytes)

==== Empty Temp Folders ======================

C:\Users\ciffi\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\ciffi\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\4954046f2a462c00" not found
"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}\84a9a23a0d92cbd4" not found
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found
"C:\PROGRA~3\{6f5986ea-bc80-8e06-6f59-986eabc81baa}" not found

==== EOF on 28-Feb-15 at 11:34:24.18 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Podozrenie na malware/trojan + RSIT

#6 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#7 Příspěvek od ciffi »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01
Ran by ciffi (administrator) on CIFFI-PC on 28-02-2015 11:59:04
Running from C:\Users\ciffi\Desktop
Loaded Profiles: ciffi (Available profiles: ciffi)
Platform: Windows 8.1 Pro (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Foxit Software Inc.) C:\Programs\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(Stefan Hirschmann - StagWare) C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Skype Technologies S.A.) C:\Programs\Skype\Phone\Skype.exe
(The Author of QIP) C:\Programs\QIP\qip.exe
() C:\Programs\puush\puush.exe
(Stefan Hirschmann - StagWare) C:\Program Files (x86)\NoteBook FanControl\NoteBook FanControl.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) C:\Games\Steam\Steam.exe
(Valve Corporation) C:\Games\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Games\Steam\bin\steamwebhelper.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.3789\Agent.exe
(Blizzard Entertainment) C:\Games\Battle.net\Battle.net.5566\Battle.net.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\ciffi\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2012-10-24] (IDT, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-02-06] (Raptr, Inc)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [Skype] => C:\Programs\Skype\Phone\Skype.exe [31090792 2015-01-23] (Skype Technologies S.A.)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [QIP2005] => C:\Programs\QIP\qip.exe [3330560 2010-10-29] (The Author of QIP)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [Steam] => C:\Games\Steam\steam.exe [2874048 2015-02-19] (Valve Corporation)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [puush] => C:\Programs\puush\puush.exe [567880 2015-02-21] ()
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [NBFC-ClientApplication] => C:\Program Files (x86)\NoteBook FanControl\NoteBook FanControl.exe [419328 2014-05-22] (Stefan Hirschmann - StagWare)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-71113301-2735499236-4153118286-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HomePage: Default -> hxxp://www.google.sk/
CHR StartupUrls: Default -> "hxxp://www.google.sk/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-21]
CHR Extension: (Google Docs) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-21]
CHR Extension: (Google Drive) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-21]
CHR Extension: (YouTube) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-21]
CHR Extension: (Adblock Plus) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-02-21]
CHR Extension: (Google Search) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-21]
CHR Extension: (Google Sheets) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-21]
CHR Extension: (Google Wallet) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-21]
CHR Extension: (Gmail) - C:\Users\ciffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-21]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation) [File not signed]
R2 FoxitCloudUpdateService; C:\Programs\Foxit Reader\Foxit Cloud\FCUpdateService.exe [244448 2014-10-28] (Foxit Software Inc.)
R2 NbfcService; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [9728 2014-05-22] (Stefan Hirschmann - StagWare) [File not signed]
S2 SkypeUpdate; C:\Programs\Skype\Updater\Updater.exe [315488 2015-01-02] (Skype Technologies)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [327680 2012-10-24] (IDT, Inc.) [File not signed]
S3 TunngleService; C:\Programs\Tunngle\TnglCtrl.exe [762320 2015-01-17] (Tunngle.net GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.)
R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R3 SNP2UVC; C:\Windows\system32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
R3 tap0901t; C:\Windows\system32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R1 WinRing0_1_2_0; C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [14544 2015-02-23] (OpenLibSys.org)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-28 11:59 - 2015-02-28 11:59 - 00011036 _____ () C:\Users\ciffi\Desktop\FRST.txt
2015-02-28 11:58 - 2015-02-28 11:59 - 00000000 ____D () C:\FRST
2015-02-28 11:56 - 2015-02-28 11:56 - 02087936 _____ (Farbar) C:\Users\ciffi\Desktop\FRST64.exe
2015-02-28 11:56 - 2015-02-28 11:56 - 00112640 _____ (forum.viry.cz) C:\Users\ciffi\Desktop\FRSTLauncher.exe
2015-02-28 11:36 - 2015-02-28 11:36 - 00007047 _____ () C:\Users\ciffi\Desktop\zoek-results.txt
2015-02-28 11:34 - 2015-02-28 11:34 - 00000000 ____D () C:\Users\ciffi\AppData\Local\VirtualStore
2015-02-28 11:30 - 2015-02-28 11:20 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-02-28 11:21 - 2015-02-28 11:34 - 00007047 _____ () C:\zoek-results.log
2015-02-28 11:21 - 2015-02-28 11:29 - 00000000 ____D () C:\zoek_backup
2015-02-28 11:20 - 2015-02-28 11:20 - 01304576 _____ () C:\Users\ciffi\Desktop\zoek.exe
2015-02-28 11:19 - 2015-02-28 11:19 - 00007735 _____ () C:\Users\ciffi\Desktop\AdwCleaner[S0].txt
2015-02-28 11:11 - 2015-02-28 11:13 - 00000000 ____D () C:\AdwCleaner
2015-02-28 11:11 - 2015-02-28 11:11 - 02126848 _____ () C:\Users\ciffi\Desktop\adwcleaner_4.111.exe
2015-02-28 01:52 - 2015-02-28 01:53 - 00000000 ____D () C:\rsit
2015-02-28 01:52 - 2015-02-28 01:53 - 00000000 ____D () C:\Program Files\trend micro
2015-02-28 01:52 - 2015-02-28 01:52 - 01222144 _____ () C:\Users\ciffi\Desktop\RSITx64.exe
2015-02-27 10:07 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-02-27 10:07 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-02-27 10:06 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-02-27 10:06 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-02-27 10:06 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-02-27 10:06 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-02-27 10:06 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-02-27 10:06 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-02-27 10:06 - 2014-07-24 16:20 - 00645592 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-02-27 10:06 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-02-27 10:06 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-02-27 10:06 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-02-27 10:06 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-02-27 10:06 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-02-27 10:06 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-02-27 10:06 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-02-27 10:06 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-02-27 10:06 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-02-27 10:06 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-02-27 10:06 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-02-27 10:06 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-02-27 10:06 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2015-02-27 10:06 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-02-27 10:06 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-02-27 10:06 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2015-02-27 10:06 - 2014-07-24 14:46 - 00477200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-02-27 10:06 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-02-27 10:06 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-02-27 10:06 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-02-27 10:06 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2015-02-27 10:06 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-02-27 10:06 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-02-27 10:06 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-02-27 10:06 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-02-27 10:06 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2015-02-27 10:06 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2015-02-27 10:06 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-02-27 10:06 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-02-27 10:06 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2015-02-27 10:06 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2015-02-27 10:06 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-02-27 10:06 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2015-02-27 10:06 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-02-27 10:06 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-02-27 10:06 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-02-27 10:06 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-02-27 10:06 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-02-27 10:06 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-02-27 10:06 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-02-27 10:06 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2015-02-27 10:06 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2015-02-27 10:06 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-02-27 10:06 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2015-02-27 10:06 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2015-02-27 10:06 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-02-27 10:06 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-02-27 10:06 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-02-27 10:06 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-02-27 10:06 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-02-27 10:06 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-02-27 10:06 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-02-27 10:06 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-02-27 10:06 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-02-27 10:06 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-02-27 10:06 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-02-27 10:06 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-02-27 10:06 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-02-27 10:06 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-02-27 10:06 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-02-27 10:06 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-02-27 10:06 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-02-27 10:06 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-02-27 10:06 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2015-02-27 10:06 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-02-27 10:06 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-02-27 10:06 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-02-27 10:06 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-02-27 10:06 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-02-27 10:06 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-02-27 10:06 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-02-27 10:06 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-02-27 10:06 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-02-27 10:06 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-02-27 10:06 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-02-27 10:06 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-02-27 10:06 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-02-27 10:06 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-02-27 10:06 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-02-27 10:06 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2015-02-27 10:06 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-02-27 10:06 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-02-27 10:06 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-02-27 10:06 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-02-27 10:06 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-02-27 10:06 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2015-02-27 10:06 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-02-27 10:06 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-02-27 10:06 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-02-27 10:06 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-02-27 10:06 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-02-27 10:06 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-02-27 10:06 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-02-27 10:06 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-02-27 10:06 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2015-02-27 10:06 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-02-27 10:06 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2015-02-27 10:06 - 2014-07-24 05:11 - 00513544 _____ () C:\Windows\SysWOW64\locale.nls
2015-02-27 10:06 - 2014-07-24 05:11 - 00513544 _____ () C:\Windows\system32\locale.nls
2015-02-27 10:06 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2015-02-27 10:06 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2015-02-27 10:06 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-02-27 10:06 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2015-02-27 10:06 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-02-27 10:06 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2015-02-27 10:06 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2015-02-27 10:06 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2015-02-27 10:06 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-02-27 10:06 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-02-27 10:06 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2015-02-27 10:06 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-02-27 10:06 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-02-27 10:06 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-02-27 10:06 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-02-27 10:06 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-02-27 10:06 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-02-27 10:06 - 2014-06-05 15:00 - 01118040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-02-27 10:06 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2015-02-27 10:06 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2015-02-27 10:06 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2015-02-27 10:06 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2015-02-27 10:06 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-02-27 10:06 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-02-27 10:06 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-02-27 10:06 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-02-27 10:06 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-02-27 10:06 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-02-27 10:06 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-02-27 10:06 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-02-27 10:06 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-02-27 10:06 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-02-27 10:06 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-02-27 10:05 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2015-02-27 10:05 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-02-27 10:05 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL
2015-02-27 10:05 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-02-27 10:05 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-02-27 10:05 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-02-27 10:05 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-02-27 10:05 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2015-02-27 10:05 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-02-27 10:05 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL
2015-02-27 10:05 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-02-27 10:05 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2015-02-27 10:05 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-02-27 10:05 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-02-27 10:05 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-02-27 10:05 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-02-27 10:05 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2015-02-27 10:05 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-02-27 10:05 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2015-02-27 10:05 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-02-27 10:05 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2015-02-27 10:05 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2015-02-27 10:05 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-02-27 10:05 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-02-27 10:05 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-02-27 10:05 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-02-27 10:05 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-02-27 10:05 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-02-27 09:59 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-27 09:59 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-26 14:35 - 2015-02-26 14:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-02-26 13:27 - 2015-02-26 14:25 - 00000000 ____D () C:\Users\ciffi\Downloads\Dead.Island.Update.5.v1.3.0-P2P
2015-02-26 13:22 - 2015-02-26 13:22 - 00000000 ____D () C:\Users\ciffi\Documents\Dead Island
2015-02-26 13:22 - 2015-02-26 13:22 - 00000000 ____D () C:\ProgramData\RELOADED
2015-02-26 13:00 - 2015-02-26 13:00 - 00000562 _____ () C:\Windows\wmsetup.log
2015-02-26 13:00 - 2015-02-26 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deep Silver
2015-02-26 12:41 - 2015-02-27 18:15 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Tunngle
2015-02-26 12:41 - 2015-02-27 18:15 - 00000000 ____D () C:\ProgramData\Tunngle
2015-02-26 12:41 - 2015-02-26 12:41 - 00000000 ____D () C:\Users\Public\Documents\Tunngle
2015-02-26 12:41 - 2015-02-26 12:41 - 00000000 ____D () C:\Users\ciffi\Documents\Tunngle
2015-02-26 12:41 - 2015-02-26 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle
2015-02-26 12:41 - 2009-09-16 07:02 - 00031232 _____ (Tunngle.net) C:\Windows\system32\Drivers\tap0901t.sys
2015-02-25 20:49 - 2015-02-25 20:49 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-02-25 20:06 - 2015-02-25 20:06 - 00000000 ____D () C:\ProgramData\SystemRequirementsLab
2015-02-25 20:05 - 2015-02-25 20:05 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-02-25 20:05 - 2015-02-25 20:05 - 00000000 ____D () C:\ProgramData\Sun
2015-02-25 20:05 - 2015-02-25 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-25 20:04 - 2015-02-25 20:04 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-25 20:04 - 2015-02-25 20:04 - 00000000 ____D () C:\Program Files (x86)\Java
2015-02-25 18:38 - 2015-02-25 18:41 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-02-25 15:51 - 2015-02-25 15:51 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Foxit Software
2015-02-25 12:12 - 2014-08-23 08:48 - 02374784 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-02-25 12:12 - 2014-08-23 08:13 - 02084520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-02-25 12:12 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-02-25 12:12 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-02-25 12:12 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-02-25 12:12 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-02-25 12:12 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-02-25 12:12 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2015-02-25 12:11 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-25 12:11 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-25 12:11 - 2015-01-10 08:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-25 12:11 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-25 12:11 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-25 12:11 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-25 12:11 - 2014-08-29 02:58 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-02-25 12:11 - 2014-08-29 02:32 - 02779136 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-02-25 12:11 - 2014-08-29 01:59 - 03117568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-02-25 12:11 - 2014-08-29 00:56 - 02646016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-02-25 12:11 - 2014-08-29 00:47 - 02321920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-02-25 12:09 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-25 12:09 - 2015-01-12 03:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-25 12:09 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-25 12:09 - 2015-01-12 02:58 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-02-25 12:09 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-02-25 12:09 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-25 12:09 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-02-25 12:09 - 2015-01-12 02:27 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-02-25 12:09 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-25 12:09 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-25 12:09 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-25 12:09 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-25 12:09 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-25 12:09 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-25 12:08 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-25 12:08 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-25 12:08 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-25 12:08 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-25 12:08 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-25 12:08 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-25 12:08 - 2015-01-12 02:51 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-02-25 12:08 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-25 12:08 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-25 12:08 - 2015-01-12 02:48 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-25 12:08 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-25 12:08 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-25 12:08 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-02-25 12:08 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-02-25 12:08 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-25 12:08 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-25 12:08 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-25 12:08 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-25 12:08 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-25 12:08 - 2015-01-10 10:10 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-25 12:08 - 2015-01-10 10:10 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-02-25 12:08 - 2015-01-10 09:28 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-02-25 12:08 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-02-25 12:08 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-02-25 12:08 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-02-25 12:08 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-25 12:08 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-25 12:08 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-25 12:08 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-02-25 12:08 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-02-25 12:08 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-02-25 12:08 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-02-25 12:08 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-02-25 12:08 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-02-25 12:08 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-25 12:08 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-25 12:08 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-25 12:08 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-25 12:08 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-02-25 12:08 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-25 12:08 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2015-02-25 12:08 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-25 12:08 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-25 12:08 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-02-25 12:08 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-25 12:08 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-02-25 12:08 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-02-25 12:08 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-02-25 12:08 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-25 12:08 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-02-25 12:08 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-02-25 12:08 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-02-25 12:08 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-02-25 12:08 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-02-25 12:08 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-02-25 12:08 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-02-25 12:08 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-02-25 12:08 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-02-25 12:08 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-25 12:08 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-25 12:08 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-25 12:08 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-25 12:08 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-02-25 12:08 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-25 12:08 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2015-02-25 12:08 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-25 12:08 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-25 12:08 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-02-25 12:08 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-25 12:08 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-02-25 12:08 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-02-25 12:08 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-02-25 12:08 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-25 12:08 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-02-25 12:08 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-02-25 12:08 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-02-25 12:08 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-02-25 12:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-02-25 12:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-02-25 12:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-02-25 12:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-02-25 12:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-02-25 12:08 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2015-02-25 12:08 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2015-02-25 12:08 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-02-25 12:08 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-02-25 12:08 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-02-25 12:07 - 2015-01-13 23:11 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-25 12:07 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-25 12:07 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-02-25 12:07 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-02-25 12:07 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-02-25 12:07 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-02-25 12:07 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-02-25 12:07 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-02-25 12:07 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-02-25 12:07 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-02-25 12:07 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-02-25 12:07 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2015-02-25 12:07 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2015-02-25 12:07 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-02-25 12:07 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2015-02-25 12:07 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2015-02-25 12:07 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-02-25 12:07 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2015-02-25 12:07 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-25 12:07 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-02-25 12:07 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-02-25 12:07 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2015-02-25 12:07 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-25 12:07 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-02-25 12:07 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-02-25 12:07 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2015-02-25 12:07 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-02-25 12:07 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-02-25 12:07 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-02-25 12:07 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-02-25 12:07 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-02-25 12:07 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-02-25 12:07 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-02-25 12:07 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-02-25 12:07 - 2014-07-24 12:42 - 01200640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-02-25 12:07 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2015-02-25 12:07 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-02-25 12:07 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-02-25 11:31 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-25 11:31 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-25 11:31 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-02-25 11:31 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-02-25 11:31 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-25 11:31 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-25 11:31 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-25 11:31 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-25 11:31 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-25 11:30 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-02-25 11:30 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-02-25 11:30 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-02-25 11:30 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-02-25 11:29 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-25 11:29 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-25 11:29 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-02-25 11:29 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-02-25 11:29 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-02-25 11:29 - 2014-06-06 12:34 - 02133504 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-02-25 11:24 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-02-25 11:22 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-02-25 11:22 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-02-25 11:21 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-02-25 11:21 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-02-25 11:21 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-02-25 11:21 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-02-25 11:21 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-02-25 11:21 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-02-25 11:20 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-02-25 11:20 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2015-02-25 11:20 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-02-25 11:20 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2015-02-25 11:20 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-02-25 11:20 - 2014-04-11 04:54 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-02-25 11:20 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-02-25 11:20 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-02-25 11:20 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-02-25 11:20 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-02-25 11:20 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-02-25 11:19 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-02-25 11:19 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-02-25 11:19 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-02-25 11:19 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-02-25 11:19 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-02-25 11:19 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-02-25 11:19 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-02-25 11:16 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-02-25 11:16 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-02-25 11:16 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-02-25 11:16 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-02-25 11:15 - 2015-02-25 11:15 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\RStudio
2015-02-25 11:14 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2015-02-25 11:14 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2015-02-25 11:14 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2015-02-25 11:14 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-02-25 11:14 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-02-25 11:14 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-02-25 11:14 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-02-25 11:14 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2015-02-25 11:14 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-02-25 11:14 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2015-02-25 11:14 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-02-25 11:14 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-02-25 11:13 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-02-25 11:13 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2015-02-25 11:13 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-02-25 11:13 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2015-02-25 11:13 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2015-02-25 11:13 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2015-02-25 11:13 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat
2015-02-25 11:13 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys
2015-02-25 11:13 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-02-25 11:13 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-02-25 11:13 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-02-25 11:13 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-02-25 11:13 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-02-25 11:13 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2015-02-25 11:13 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-02-25 11:13 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-02-25 11:13 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-02-25 11:13 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-02-25 11:13 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2015-02-25 11:13 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-02-25 11:13 - 2014-04-26 19:41 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe
2015-02-25 11:13 - 2014-04-26 19:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll
2015-02-25 11:13 - 2014-04-26 19:04 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2015-02-25 11:13 - 2014-04-26 18:36 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2015-02-25 11:13 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2015-02-25 11:11 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-02-25 11:11 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-02-25 11:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-02-25 11:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-02-25 11:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-02-25 11:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-02-25 11:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-02-25 11:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-02-25 11:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-02-25 11:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-02-25 11:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-02-25 11:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-02-25 11:11 - 2014-05-29 07:21 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2015-02-25 11:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll
2015-02-25 11:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll
2015-02-25 11:11 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-02-25 11:11 - 2014-04-30 05:30 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2015-02-25 11:11 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-02-25 11:11 - 2014-04-30 04:52 - 00590336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2015-02-25 11:11 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-02-25 11:10 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-02-25 11:10 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2015-02-25 11:10 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2015-02-25 11:10 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2015-02-25 11:10 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-02-25 11:10 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-02-25 11:10 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2015-02-25 11:10 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-02-25 11:10 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2015-02-25 11:10 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2015-02-25 11:10 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-02-25 11:10 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-02-25 11:10 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-02-25 11:10 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2015-02-25 11:10 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2015-02-25 11:10 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-02-25 11:10 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-02-25 11:10 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-02-25 11:10 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-02-25 11:10 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-02-25 11:10 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-02-25 11:10 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2015-02-25 11:10 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-02-25 11:10 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-02-25 11:10 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-02-25 11:10 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-02-25 11:10 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-25 11:10 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-25 11:10 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2015-02-25 11:10 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-25 11:10 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-25 11:10 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-02-25 11:10 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2015-02-25 11:10 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2015-02-25 11:10 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-02-25 11:10 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2015-02-25 11:10 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-02-25 11:10 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2015-02-25 11:10 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2015-02-25 11:10 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-02-25 11:10 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-02-25 11:10 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-02-25 11:10 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2015-02-25 11:10 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-02-25 11:10 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-02-25 11:10 - 2014-03-21 05:14 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2015-02-25 11:10 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-02-25 11:10 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-02-25 11:10 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2015-02-25 11:10 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-02-25 11:10 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-02-25 11:10 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-02-25 11:10 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-02-25 11:10 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-02-25 11:10 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-02-25 11:09 - 2015-02-25 11:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RStudio
2015-02-25 11:08 - 2015-01-10 09:22 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-25 11:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-02-25 11:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-02-25 11:08 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-25 11:08 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-25 11:08 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-02-25 11:08 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-02-25 11:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-02-25 11:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-02-25 11:08 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-02-25 11:08 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-02-25 11:08 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-02-25 11:08 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-02-25 11:08 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-02-25 11:08 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-02-25 11:08 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-02-25 11:08 - 2014-09-07 23:08 - 00389176 _____ () C:\Windows\system32\ApnDatabase.xml
2015-02-25 11:08 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-02-25 11:08 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-02-25 11:08 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-02-25 11:08 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-02-25 11:08 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-02-25 11:08 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-02-25 11:08 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-02-25 11:08 - 2014-09-04 00:57 - 00921600 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-02-25 11:08 - 2014-09-04 00:49 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-02-25 11:08 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-02-25 11:08 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-02-25 11:08 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-02-25 11:08 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2015-02-25 11:08 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2015-02-25 11:08 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-02-25 11:08 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2015-02-25 11:08 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-02-25 11:08 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-02-25 11:08 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-02-25 11:08 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-02-25 11:08 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-02-25 11:08 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-02-25 11:08 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-02-25 11:08 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2015-02-25 11:08 - 2014-07-24 12:22 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-02-25 11:08 - 2014-07-24 10:58 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\pmcsnap.dll
2015-02-25 11:08 - 2014-07-24 10:54 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\ppcsnap.dll
2015-02-25 11:08 - 2014-07-24 10:53 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-02-25 11:08 - 2014-07-24 10:13 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-02-25 11:08 - 2014-07-24 09:20 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-02-25 11:08 - 2014-07-24 09:08 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-02-25 11:08 - 2014-07-24 08:49 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-02-25 11:08 - 2014-07-24 08:43 - 00200192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-02-25 11:08 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-02-25 11:08 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-02-25 11:08 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-02-25 11:08 - 2014-06-04 10:27 - 00114520 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-02-25 11:08 - 2014-06-04 06:31 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-02-25 11:08 - 2014-06-04 05:43 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-02-25 11:08 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe
2015-02-25 11:08 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-02-25 11:08 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-02-25 11:07 - 2015-02-25 11:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R
2015-02-25 11:07 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-02-25 11:07 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-02-25 11:07 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-02-25 11:07 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-02-25 11:07 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-02-25 11:07 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-02-25 11:07 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-02-25 11:07 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-02-25 11:07 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-02-25 11:07 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-02-25 11:07 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2015-02-25 11:07 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-02-25 11:07 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-02-25 11:07 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-02-25 11:07 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-02-25 11:07 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-02-25 11:07 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2015-02-25 11:07 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-02-25 11:07 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-02-25 11:07 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-02-25 11:07 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-02-25 11:07 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2015-02-25 11:07 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-02-25 11:07 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-02-25 11:07 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-02-25 11:07 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-02-25 11:07 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-02-25 11:07 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-02-25 11:07 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-02-25 11:07 - 2014-04-11 06:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-02-24 15:56 - 2015-02-26 11:10 - 00000000 ____D () C:\Users\ciffi\Downloads\Dead Island Game Of The Year Edition
2015-02-24 12:30 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-02-24 12:30 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-02-24 12:30 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-02-24 12:30 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-02-24 12:30 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-02-24 12:30 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-02-24 12:30 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-02-24 12:30 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-02-24 12:30 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-02-24 12:30 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-02-24 12:30 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-02-24 12:30 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-02-24 12:30 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2015-02-24 12:30 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-02-24 12:30 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-02-24 12:30 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-02-24 12:30 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-02-24 12:30 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-02-24 12:30 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-02-24 12:30 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-02-24 12:30 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-02-24 12:30 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-02-24 12:30 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-02-24 12:30 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-02-24 12:30 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-02-24 12:30 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-02-24 12:30 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-02-24 12:30 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2015-02-24 12:30 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-02-24 12:30 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-02-24 12:30 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-02-24 12:30 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-02-24 12:30 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-02-24 12:30 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-02-24 12:30 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2015-02-24 12:30 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-02-24 12:30 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2015-02-24 12:30 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-02-24 12:30 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-02-24 12:30 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-02-24 12:30 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-02-24 12:30 - 2014-03-06 07:51 - 02900992 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-02-24 12:30 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2015-02-24 12:30 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-02-24 12:30 - 2014-03-06 07:23 - 02270208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-02-24 12:30 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2015-02-24 12:30 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-02-24 12:30 - 2014-03-06 07:09 - 01764864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-02-24 12:30 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2015-02-24 12:30 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-02-24 12:30 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-02-24 12:30 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2015-02-24 12:30 - 2014-03-04 09:11 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2015-02-24 12:30 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-02-24 12:30 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-02-24 12:30 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-02-24 12:30 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2015-02-24 12:30 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-02-24 12:30 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2015-02-24 12:30 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2015-02-24 12:30 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2015-02-24 12:30 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-02-24 12:30 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-02-24 12:29 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-02-24 12:29 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-02-24 12:29 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2015-02-24 12:29 - 2014-03-11 15:25 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2015-02-24 12:29 - 2014-03-11 15:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2015-02-24 12:29 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2015-02-24 12:29 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-02-24 12:29 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2015-02-24 12:29 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-02-24 12:29 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-02-24 12:29 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-02-24 12:29 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-02-24 12:29 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2015-02-24 12:29 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2015-02-24 12:29 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2015-02-24 12:29 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-02-24 12:29 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2015-02-24 12:29 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2015-02-24 12:29 - 2014-03-04 08:26 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AdmTmpl.dll
2015-02-24 12:29 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2015-02-24 12:29 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2015-02-24 12:29 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-02-24 12:29 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-02-24 12:29 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-02-24 12:29 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-02-24 12:25 - 2014-02-08 02:08 - 00139600 _____ () C:\Windows\system32\systemsf.ebd
2015-02-24 12:24 - 2014-02-22 16:55 - 01435304 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-02-24 12:24 - 2014-02-22 16:53 - 03394384 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2015-02-24 12:24 - 2014-02-22 16:46 - 01927600 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2015-02-24 12:24 - 2014-02-22 16:46 - 01445616 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2015-02-24 12:24 - 2014-02-22 13:08 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2015-02-24 12:24 - 2014-02-22 12:17 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll
2015-02-24 12:24 - 2014-02-22 11:34 - 11742720 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll
2015-02-24 12:24 - 2014-02-22 11:02 - 08946688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll
2015-02-24 12:24 - 2014-02-22 10:47 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-02-24 12:24 - 2014-02-22 10:28 - 02643456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-02-24 12:24 - 2014-02-22 10:23 - 03494912 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-02-24 12:24 - 2014-02-22 10:16 - 11776000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#8 Příspěvek od ciffi »

2015-02-24 12:24 - 2014-02-22 10:01 - 13933568 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-02-24 12:24 - 2014-02-22 09:40 - 02368512 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-02-24 12:24 - 2014-02-22 09:37 - 01716736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-02-24 12:23 - 2014-02-22 17:59 - 01290688 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-02-24 12:23 - 2014-02-22 17:15 - 01929608 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2015-02-24 12:23 - 2014-02-22 17:15 - 01206000 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2015-02-24 12:23 - 2014-02-22 17:00 - 00249688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-02-24 12:23 - 2014-02-22 16:46 - 01000424 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2015-02-24 12:23 - 2014-02-22 16:46 - 00669896 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-02-24 12:23 - 2014-02-22 16:44 - 00539992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-02-24 12:23 - 2014-02-22 16:41 - 01215832 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2015-02-24 12:23 - 2014-02-22 16:41 - 00800552 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2015-02-24 12:23 - 2014-02-22 16:41 - 00391008 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2015-02-24 12:23 - 2014-02-22 15:52 - 01767440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2015-02-24 12:23 - 2014-02-22 15:51 - 01063976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2015-02-24 12:23 - 2014-02-22 15:42 - 01017936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-02-24 12:23 - 2014-02-22 15:38 - 01374384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2015-02-24 12:23 - 2014-02-22 15:38 - 01077944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2015-02-24 12:23 - 2014-02-22 15:04 - 01011280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2015-02-24 12:23 - 2014-02-22 15:04 - 00650736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2015-02-24 12:23 - 2014-02-22 15:04 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2015-02-24 12:23 - 2014-02-22 13:24 - 02825216 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-02-24 12:23 - 2014-02-22 13:22 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-02-24 12:23 - 2014-02-22 13:07 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-02-24 12:23 - 2014-02-22 12:28 - 02428928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-02-24 12:23 - 2014-02-22 12:16 - 00617472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-02-24 12:23 - 2014-02-22 11:38 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\DfpCommon.dll
2015-02-24 12:23 - 2014-02-22 11:36 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-02-24 12:23 - 2014-02-22 11:25 - 01428480 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2015-02-24 12:23 - 2014-02-22 11:18 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-02-24 12:23 - 2014-02-22 11:09 - 01224192 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2015-02-24 12:23 - 2014-02-22 11:01 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-02-24 12:23 - 2014-02-22 10:59 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2015-02-24 12:23 - 2014-02-22 10:57 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2015-02-24 12:23 - 2014-02-22 10:53 - 00825344 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2015-02-24 12:23 - 2014-02-22 10:52 - 01132032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-02-24 12:23 - 2014-02-22 10:45 - 00562176 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-02-24 12:23 - 2014-02-22 10:38 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2015-02-24 12:23 - 2014-02-22 10:35 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-02-24 12:23 - 2014-02-22 10:35 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WofTasks.dll
2015-02-24 12:23 - 2014-02-22 10:34 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2015-02-24 12:23 - 2014-02-22 10:33 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\DismApi.dll
2015-02-24 12:23 - 2014-02-22 10:26 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-02-24 12:23 - 2014-02-22 10:26 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-02-24 12:23 - 2014-02-22 10:23 - 01576960 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2015-02-24 12:23 - 2014-02-22 10:23 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\msTextPrediction.dll
2015-02-24 12:23 - 2014-02-22 10:14 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2015-02-24 12:23 - 2014-02-22 10:13 - 01728000 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll
2015-02-24 12:23 - 2014-02-22 10:11 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2015-02-24 12:23 - 2014-02-22 10:10 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-02-24 12:23 - 2014-02-22 10:04 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-02-24 12:23 - 2014-02-22 10:00 - 01341440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dui70.dll
2015-02-24 12:23 - 2014-02-22 10:00 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2015-02-24 12:23 - 2014-02-22 09:59 - 01621504 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2015-02-24 12:23 - 2014-02-22 09:59 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2015-02-24 12:23 - 2014-02-22 09:54 - 00647168 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2015-02-24 12:23 - 2014-02-22 09:51 - 01258496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2015-02-24 12:23 - 2014-02-22 09:47 - 00517120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2015-02-24 12:23 - 2014-02-22 09:45 - 00845824 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-02-24 12:23 - 2014-02-22 09:22 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2015-02-24 12:23 - 2014-02-22 09:21 - 00600576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2015-02-24 12:23 - 2014-02-22 09:06 - 01640960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2015-02-24 12:23 - 2014-02-22 09:03 - 01496576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2015-02-24 12:23 - 2014-02-22 09:01 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-02-24 12:23 - 2014-02-22 09:00 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-02-24 12:23 - 2014-02-22 05:33 - 00262335 _____ () C:\Windows\system32\dfpinc.dat
2015-02-24 12:23 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-02-24 12:23 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-02-24 12:22 - 2014-02-22 17:59 - 00289752 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2015-02-24 12:22 - 2014-02-22 17:02 - 00170952 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2015-02-24 12:22 - 2014-02-22 17:02 - 00083120 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-02-24 12:22 - 2014-02-22 16:55 - 00244848 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2015-02-24 12:22 - 2014-02-22 16:55 - 00152848 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2015-02-24 12:22 - 2014-02-22 16:50 - 00761792 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2015-02-24 12:22 - 2014-02-22 16:48 - 01791752 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2015-02-24 12:22 - 2014-02-22 16:41 - 00372360 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2015-02-24 12:22 - 2014-02-22 15:38 - 00506120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2015-02-24 12:22 - 2014-02-22 15:11 - 00490136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-02-24 12:22 - 2014-02-22 15:04 - 00317584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2015-02-24 12:22 - 2014-02-22 13:20 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2015-02-24 12:22 - 2014-02-22 13:14 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2015-02-24 12:22 - 2014-02-22 13:11 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-02-24 12:22 - 2014-02-22 13:09 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-02-24 12:22 - 2014-02-22 13:07 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll
2015-02-24 12:22 - 2014-02-22 13:02 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-02-24 12:22 - 2014-02-22 12:57 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2015-02-24 12:22 - 2014-02-22 12:54 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2015-02-24 12:22 - 2014-02-22 12:41 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2015-02-24 12:22 - 2014-02-22 12:34 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll
2015-02-24 12:22 - 2014-02-22 12:25 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\recimg.exe
2015-02-24 12:22 - 2014-02-22 12:06 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2015-02-24 12:22 - 2014-02-22 12:05 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2015-02-24 12:22 - 2014-02-22 11:56 - 02862592 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2015-02-24 12:22 - 2014-02-22 11:56 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2015-02-24 12:22 - 2014-02-22 11:52 - 02288640 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2015-02-24 12:22 - 2014-02-22 11:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\dfp.exe
2015-02-24 12:22 - 2014-02-22 11:41 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-02-24 12:22 - 2014-02-22 11:37 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2015-02-24 12:22 - 2014-02-22 11:18 - 00722432 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeui.exe
2015-02-24 12:22 - 2014-02-22 11:17 - 00693248 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2015-02-24 12:22 - 2014-02-22 11:15 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2015-02-24 12:22 - 2014-02-22 11:14 - 02811392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2015-02-24 12:22 - 2014-02-22 11:14 - 02165760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll
2015-02-24 12:22 - 2014-02-22 11:12 - 00797696 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.dll
2015-02-24 12:22 - 2014-02-22 11:09 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-02-24 12:22 - 2014-02-22 11:05 - 01757184 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2015-02-24 12:22 - 2014-02-22 11:04 - 00935424 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll
2015-02-24 12:22 - 2014-02-22 11:04 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll
2015-02-24 12:22 - 2014-02-22 11:02 - 00258560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-02-24 12:22 - 2014-02-22 11:01 - 01227776 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-02-24 12:22 - 2014-02-22 11:00 - 00217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2015-02-24 12:22 - 2014-02-22 10:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2015-02-24 12:22 - 2014-02-22 10:48 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-02-24 12:22 - 2014-02-22 10:45 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-02-24 12:22 - 2014-02-22 10:45 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-02-24 12:22 - 2014-02-22 10:44 - 00675328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-02-24 12:22 - 2014-02-22 10:43 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2015-02-24 12:22 - 2014-02-22 10:36 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\Dism.exe
2015-02-24 12:22 - 2014-02-22 10:34 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2015-02-24 12:22 - 2014-02-22 10:32 - 01162752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2015-02-24 12:22 - 2014-02-22 10:31 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2015-02-24 12:22 - 2014-02-22 10:28 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2015-02-24 12:22 - 2014-02-22 10:25 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2015-02-24 12:22 - 2014-02-22 10:24 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-02-24 12:22 - 2014-02-22 10:15 - 00211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dism.exe
2015-02-24 12:22 - 2014-02-22 10:14 - 00752640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-02-24 12:22 - 2014-02-22 10:12 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DismApi.dll
2015-02-24 12:22 - 2014-02-22 10:10 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2015-02-24 12:22 - 2014-02-22 10:09 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2015-02-24 12:22 - 2014-02-22 10:07 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-02-24 12:22 - 2014-02-22 09:54 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2015-02-24 12:22 - 2014-02-22 09:54 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll
2015-02-24 12:22 - 2014-02-22 09:53 - 00876544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2015-02-24 12:22 - 2014-02-22 09:52 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2015-02-24 12:22 - 2014-02-22 09:51 - 00716288 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-02-24 12:22 - 2014-02-22 09:51 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2015-02-24 12:22 - 2014-02-22 09:49 - 00755200 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2015-02-24 12:22 - 2014-02-22 09:47 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll
2015-02-24 12:22 - 2014-02-22 09:45 - 00169472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2015-02-24 12:22 - 2014-02-22 09:43 - 00644608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-02-24 12:22 - 2014-02-22 09:43 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2015-02-24 12:22 - 2014-02-22 09:43 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2015-02-24 12:22 - 2014-02-22 09:42 - 00943104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlanMM.dll
2015-02-24 12:22 - 2014-02-22 09:42 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2015-02-24 12:22 - 2014-02-22 09:39 - 00556032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2015-02-24 12:22 - 2014-02-22 09:37 - 00658432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-02-24 12:22 - 2014-02-22 09:36 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\InputSwitch.dll
2015-02-24 12:22 - 2014-02-22 09:33 - 00609792 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2015-02-24 12:22 - 2014-02-22 09:29 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputSwitch.dll
2015-02-24 12:22 - 2014-02-22 09:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\MrmIndexer.dll
2015-02-24 12:22 - 2014-02-22 09:22 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-24 12:22 - 2014-02-22 09:21 - 00518144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmIndexer.dll
2015-02-24 12:22 - 2014-01-31 10:55 - 03596800 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-02-24 12:22 - 2014-01-31 10:35 - 03085824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-02-24 12:22 - 2014-01-31 10:10 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2015-02-24 12:22 - 2014-01-29 09:52 - 00551256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2015-02-24 12:22 - 2014-01-17 18:24 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\ninput.dll
2015-02-24 12:22 - 2014-01-17 18:04 - 00292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ninput.dll
2015-02-24 12:22 - 2013-12-10 08:35 - 00530944 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2015-02-24 12:21 - 2014-02-22 17:59 - 00209160 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2015-02-24 12:21 - 2014-02-22 17:15 - 00275312 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll
2015-02-24 12:21 - 2014-02-22 17:15 - 00188464 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2015-02-24 12:21 - 2014-02-22 17:15 - 00071888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2015-02-24 12:21 - 2014-02-22 17:02 - 00080048 _____ (Microsoft Corporation) C:\Windows\system32\taskhostex.exe
2015-02-24 12:21 - 2014-02-22 17:00 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys
2015-02-24 12:21 - 2014-02-22 16:59 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2015-02-24 12:21 - 2014-02-22 16:55 - 00162176 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe
2015-02-24 12:21 - 2014-02-22 16:55 - 00131168 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2015-02-24 12:21 - 2014-02-22 16:50 - 00101216 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe
2015-02-24 12:21 - 2014-02-22 16:50 - 00043408 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2015-02-24 12:21 - 2014-02-22 16:50 - 00032544 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountBroker.exe
2015-02-24 12:21 - 2014-02-22 16:49 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-02-24 12:21 - 2014-02-22 16:49 - 00189784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS
2015-02-24 12:21 - 2014-02-22 16:49 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys
2015-02-24 12:21 - 2014-02-22 16:44 - 00924504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2015-02-24 12:21 - 2014-02-22 16:43 - 00142576 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-02-24 12:21 - 2014-02-22 16:43 - 00094560 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll
2015-02-24 12:21 - 2014-02-22 15:52 - 00251504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powrprof.dll
2015-02-24 12:21 - 2014-02-22 15:51 - 00140456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2015-02-24 12:21 - 2014-02-22 15:42 - 00232896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2015-02-24 12:21 - 2014-02-22 15:18 - 00089848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe
2015-02-24 12:21 - 2014-02-22 15:18 - 00041320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2015-02-24 12:21 - 2014-02-22 15:18 - 00029912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountBroker.exe
2015-02-24 12:21 - 2014-02-22 15:08 - 00079496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll
2015-02-24 12:21 - 2014-02-22 13:20 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2015-02-24 12:21 - 2014-02-22 13:17 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2015-02-24 12:21 - 2014-02-22 13:17 - 00890880 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2015-02-24 12:21 - 2014-02-22 13:17 - 00874496 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2015-02-24 12:21 - 2014-02-22 13:14 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
2015-02-24 12:21 - 2014-02-22 13:07 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-02-24 12:21 - 2014-02-22 13:07 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\clrhost.dll
2015-02-24 12:21 - 2014-02-22 13:03 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-02-24 12:21 - 2014-02-22 13:03 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-02-24 12:21 - 2014-02-22 12:50 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2015-02-24 12:21 - 2014-02-22 12:47 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2015-02-24 12:21 - 2014-02-22 12:47 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-02-24 12:21 - 2014-02-22 12:46 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-02-24 12:21 - 2014-02-22 12:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll
2015-02-24 12:21 - 2014-02-22 12:42 - 00038680 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-02-24 12:21 - 2014-02-22 12:27 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\dot3mm.dll
2015-02-24 12:21 - 2014-02-22 12:25 - 00307712 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-02-24 12:21 - 2014-02-22 12:25 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2015-02-24 12:21 - 2014-02-22 12:25 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2015-02-24 12:21 - 2014-02-22 12:22 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2015-02-24 12:21 - 2014-02-22 12:22 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-02-24 12:21 - 2014-02-22 12:17 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\DAMM.dll
2015-02-24 12:21 - 2014-02-22 12:16 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2015-02-24 12:21 - 2014-02-22 12:16 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clrhost.dll
2015-02-24 12:21 - 2014-02-22 12:15 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2015-02-24 12:21 - 2014-02-22 12:14 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\cleanmgr.exe
2015-02-24 12:21 - 2014-02-22 12:05 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll
2015-02-24 12:21 - 2014-02-22 12:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContent.dll
2015-02-24 12:21 - 2014-02-22 12:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2015-02-24 12:21 - 2014-02-22 12:01 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2015-02-24 12:21 - 2014-02-22 11:59 - 01283584 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2015-02-24 12:21 - 2014-02-22 11:58 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2015-02-24 12:21 - 2014-02-22 11:57 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll
2015-02-24 12:21 - 2014-02-22 11:57 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-02-24 12:21 - 2014-02-22 11:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll
2015-02-24 12:21 - 2014-02-22 11:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2015-02-24 12:21 - 2014-02-22 11:52 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2015-02-24 12:21 - 2014-02-22 11:51 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2015-02-24 12:21 - 2014-02-22 11:47 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdskmgr.dll
2015-02-24 12:21 - 2014-02-22 11:47 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2015-02-24 12:21 - 2014-02-22 11:46 - 00283136 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2015-02-24 12:21 - 2014-02-22 11:41 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2015-02-24 12:21 - 2014-02-22 11:33 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2015-02-24 12:21 - 2014-02-22 11:30 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe
2015-02-24 12:21 - 2014-02-22 11:27 - 00397824 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2015-02-24 12:21 - 2014-02-22 11:21 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll
2015-02-24 12:21 - 2014-02-22 11:20 - 01152512 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2015-02-24 12:21 - 2014-02-22 11:16 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll
2015-02-24 12:21 - 2014-02-22 11:16 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2015-02-24 12:21 - 2014-02-22 11:14 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2015-02-24 12:21 - 2014-02-22 11:13 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2015-02-24 12:21 - 2014-02-22 11:13 - 00307200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2015-02-24 12:21 - 2014-02-22 11:04 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll
2015-02-24 12:21 - 2014-02-22 10:56 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2015-02-24 12:21 - 2014-02-22 10:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll
2015-02-24 12:21 - 2014-02-22 10:49 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2015-02-24 12:21 - 2014-02-22 10:45 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2015-02-24 12:21 - 2014-02-22 10:44 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll
2015-02-24 12:21 - 2014-02-22 10:43 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-02-24 12:21 - 2014-02-22 10:40 - 02537472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-02-24 12:21 - 2014-02-22 10:36 - 01392640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2015-02-24 12:21 - 2014-02-22 10:36 - 00835584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll
2015-02-24 12:21 - 2014-02-22 10:36 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WLanConn.dll
2015-02-24 12:21 - 2014-02-22 10:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2015-02-24 12:21 - 2014-02-22 10:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2015-02-24 12:21 - 2014-02-22 10:25 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2015-02-24 12:21 - 2014-02-22 10:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2015-02-24 12:21 - 2014-02-22 10:23 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2015-02-24 12:21 - 2014-02-22 10:22 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2015-02-24 12:21 - 2014-02-22 10:18 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll
2015-02-24 12:21 - 2014-02-22 10:08 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2015-02-24 12:21 - 2014-02-22 10:07 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2015-02-24 12:21 - 2014-02-22 10:06 - 00251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2015-02-24 12:21 - 2014-02-22 10:04 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\slpts.dll
2015-02-24 12:21 - 2014-02-22 10:02 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-02-24 12:21 - 2014-02-22 09:55 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2015-02-24 12:21 - 2014-02-22 09:55 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slpts.dll
2015-02-24 12:21 - 2014-02-22 09:54 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-02-24 12:21 - 2014-02-22 09:54 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-02-24 12:21 - 2014-02-22 09:51 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2015-02-24 12:21 - 2014-02-22 09:48 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\BioCredProv.dll
2015-02-24 12:21 - 2014-02-22 09:47 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll
2015-02-24 12:21 - 2014-02-22 09:47 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\AltTab.dll
2015-02-24 12:21 - 2014-02-22 09:46 - 03312128 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2015-02-24 12:21 - 2014-02-22 09:45 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2015-02-24 12:21 - 2014-02-22 09:44 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2015-02-24 12:21 - 2014-02-22 09:44 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2015-02-24 12:21 - 2014-02-22 09:44 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2015-02-24 12:21 - 2014-02-22 09:43 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BioCredProv.dll
2015-02-24 12:21 - 2014-02-22 09:43 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Renewal.dll
2015-02-24 12:21 - 2014-02-22 09:40 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2015-02-24 12:21 - 2014-02-22 09:39 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2015-02-24 12:21 - 2014-02-22 09:39 - 00321536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2015-02-24 12:21 - 2014-02-22 09:38 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2015-02-24 12:21 - 2014-02-22 09:30 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2015-02-24 12:21 - 2014-02-22 09:20 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2015-02-24 12:21 - 2014-02-22 09:17 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe
2015-02-24 12:21 - 2014-02-22 08:54 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2015-02-24 12:21 - 2014-01-31 10:15 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2015-02-24 12:21 - 2014-01-31 10:08 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2015-02-24 12:21 - 2014-01-31 10:04 - 00409600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2015-02-24 12:21 - 2014-01-29 09:40 - 00994136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-02-24 12:21 - 2014-01-29 01:36 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2015-02-24 12:21 - 2014-01-29 01:18 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2015-02-24 12:21 - 2014-01-29 01:17 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2015-02-24 12:21 - 2014-01-27 20:53 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-02-24 12:21 - 2014-01-27 20:48 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-02-24 12:21 - 2014-01-22 07:21 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2015-02-24 12:21 - 2014-01-22 06:50 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2015-02-24 12:21 - 2013-11-27 10:10 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2015-02-24 12:21 - 2013-11-27 09:56 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2015-02-24 12:21 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-02-24 12:21 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-02-24 12:21 - 2013-11-11 00:41 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2015-02-24 12:20 - 2014-02-22 13:17 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\f3ahvoas.dll
2015-02-24 12:20 - 2014-02-22 13:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys
2015-02-24 12:20 - 2014-02-22 13:08 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2015-02-24 12:20 - 2014-02-22 13:08 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2015-02-24 12:20 - 2014-02-22 13:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2015-02-24 12:20 - 2014-02-22 13:01 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\spcompat.dll
2015-02-24 12:20 - 2014-02-22 13:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2015-02-24 12:20 - 2014-02-22 12:59 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe
2015-02-24 12:20 - 2014-02-22 12:50 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2015-02-24 12:20 - 2014-02-22 12:48 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2015-02-24 12:20 - 2014-02-22 12:47 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll
2015-02-24 12:20 - 2014-02-22 12:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll
2015-02-24 12:20 - 2014-02-22 12:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2015-02-24 12:20 - 2014-02-22 12:32 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2015-02-24 12:20 - 2014-02-22 12:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2015-02-24 12:20 - 2014-02-22 12:24 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2015-02-24 12:20 - 2014-02-22 12:24 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe
2015-02-24 12:20 - 2014-02-22 12:24 - 00780288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe
2015-02-24 12:20 - 2014-02-22 12:24 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll
2015-02-24 12:20 - 2014-02-22 12:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-session-winsta-l1-1-0.dll
2015-02-24 12:20 - 2014-02-22 12:16 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-02-24 12:20 - 2014-02-22 12:16 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-02-24 12:20 - 2014-02-22 12:13 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2015-02-24 12:20 - 2014-02-22 12:11 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2015-02-24 12:20 - 2014-02-22 12:09 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2015-02-24 12:20 - 2014-02-22 12:08 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2015-02-24 12:20 - 2014-02-22 12:07 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-02-24 12:20 - 2014-02-22 12:05 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2015-02-24 12:20 - 2014-02-22 12:05 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentHost.dll
2015-02-24 12:20 - 2014-02-22 12:04 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2015-02-24 12:20 - 2014-02-22 11:59 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2015-02-24 12:20 - 2014-02-22 11:58 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\DAConn.dll
2015-02-24 12:20 - 2014-02-22 11:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2015-02-24 12:20 - 2014-02-22 11:55 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe
2015-02-24 12:20 - 2014-02-22 11:50 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe
2015-02-24 12:20 - 2014-02-22 11:47 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2015-02-24 12:20 - 2014-02-22 11:41 - 02566656 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2015-02-24 12:20 - 2014-02-22 11:40 - 00304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-02-24 12:20 - 2014-02-22 11:40 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2015-02-24 12:20 - 2014-02-22 11:38 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2015-02-24 12:20 - 2014-02-22 11:36 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-24 12:20 - 2014-02-22 11:35 - 00504832 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2015-02-24 12:20 - 2014-02-22 11:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2015-02-24 12:20 - 2014-02-22 11:32 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-02-24 12:20 - 2014-02-22 11:25 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-02-24 12:20 - 2014-02-22 11:21 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2015-02-24 12:20 - 2014-02-22 11:17 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2015-02-24 12:20 - 2014-02-22 11:16 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2015-02-24 12:20 - 2014-02-22 11:12 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2015-02-24 12:20 - 2014-02-22 11:09 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2015-02-24 12:20 - 2014-02-22 11:03 - 02544128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2015-02-24 12:20 - 2014-02-22 10:59 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2015-02-24 12:20 - 2014-02-22 10:54 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-02-24 12:20 - 2014-02-22 10:54 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2015-02-24 12:20 - 2014-02-22 10:52 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2015-02-24 12:20 - 2014-02-22 10:48 - 01136128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2015-02-24 12:20 - 2014-02-22 10:48 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2015-02-24 12:20 - 2014-02-22 10:46 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll
2015-02-24 12:20 - 2014-02-22 10:39 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2015-02-24 12:20 - 2014-02-22 10:28 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll
2015-02-24 12:20 - 2014-02-22 10:26 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-02-24 12:20 - 2014-02-22 10:26 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe
2015-02-24 12:20 - 2014-02-22 10:25 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbrand.dll
2015-02-24 12:20 - 2014-02-22 10:23 - 00256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2015-02-24 12:20 - 2014-02-22 10:22 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll
2015-02-24 12:20 - 2014-02-22 10:19 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-02-24 12:20 - 2014-02-22 10:16 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxshared.dll
2015-02-24 12:20 - 2014-02-22 10:09 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-02-24 12:20 - 2014-02-22 10:02 - 00559104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll
2015-02-24 12:20 - 2014-02-22 09:58 - 00544768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2015-02-24 12:20 - 2014-02-22 09:55 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll
2015-02-24 12:20 - 2014-02-22 09:55 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll
2015-02-24 12:20 - 2014-02-22 09:55 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2015-02-24 12:20 - 2014-02-22 09:54 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\AepRoam.dll
2015-02-24 12:20 - 2014-02-22 09:49 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2015-02-24 12:20 - 2014-02-22 09:48 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2015-02-24 12:20 - 2014-02-22 09:48 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2015-02-24 12:20 - 2014-02-22 09:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2015-02-24 12:20 - 2014-02-22 09:45 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2015-02-24 12:20 - 2014-02-22 09:40 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2015-02-24 12:20 - 2014-02-22 09:35 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\SettingMonitor.dll
2015-02-24 12:20 - 2014-02-22 09:33 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingMonitor.dll
2015-02-24 12:20 - 2014-02-22 09:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2015-02-24 12:20 - 2014-02-22 09:24 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll
2015-02-24 12:20 - 2014-02-22 09:22 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2015-02-24 12:20 - 2014-02-22 09:20 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2015-02-24 12:20 - 2014-02-22 09:19 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2015-02-24 12:20 - 2014-02-22 09:17 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe
2015-02-24 12:20 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-02-24 12:20 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-02-24 12:20 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-02-24 12:20 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-02-24 12:20 - 2014-02-08 02:08 - 00100197 _____ () C:\Windows\SysWOW64\RacRules.xml
2015-02-24 12:20 - 2014-02-08 02:08 - 00100197 _____ () C:\Windows\system32\RacRules.xml
2015-02-24 12:20 - 2014-02-01 07:00 - 00007762 _____ () C:\Windows\SysWOW64\connectedsearch-suggestions.searchconnector-ms
2015-02-24 12:20 - 2014-02-01 07:00 - 00007762 _____ () C:\Windows\system32\connectedsearch-suggestions.searchconnector-ms
2015-02-24 12:20 - 2014-02-01 07:00 - 00007130 _____ () C:\Windows\SysWOW64\connectedsearch-zeroinput.searchconnector-ms
2015-02-24 12:20 - 2014-02-01 07:00 - 00007130 _____ () C:\Windows\system32\connectedsearch-zeroinput.searchconnector-ms
2015-02-24 12:20 - 2014-02-01 07:00 - 00002255 _____ () C:\Windows\SysWOW64\WimBootCompress.ini
2015-02-24 12:20 - 2014-02-01 07:00 - 00002255 _____ () C:\Windows\system32\WimBootCompress.ini
2015-02-24 12:20 - 2014-01-31 13:09 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-02-24 12:20 - 2014-01-31 10:19 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2015-02-24 12:20 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2015-02-24 12:20 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2015-02-24 12:20 - 2013-11-27 10:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\finger.exe
2015-02-24 12:19 - 2014-02-22 13:17 - 00008192 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-1.dll
2015-02-24 12:19 - 2014-02-22 13:17 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-session-winsta-l1-1-0.dll
2015-02-24 12:19 - 2014-02-22 13:17 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-0.dll
2015-02-24 12:19 - 2014-02-22 13:17 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-kernel32-package-l1-1-1.dll
2015-02-24 12:19 - 2014-02-22 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-02-24 12:19 - 2014-02-22 13:08 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-02-24 12:19 - 2014-02-22 13:08 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-02-24 12:19 - 2014-02-22 13:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2015-02-24 12:19 - 2014-02-22 12:39 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll
2015-02-24 12:19 - 2014-02-22 12:25 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\f3ahvoas.dll
2015-02-24 12:19 - 2014-02-22 12:25 - 00008192 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-ntuser-private-l1-1-1.dll
2015-02-24 12:19 - 2014-02-22 12:25 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-ntuser-private-l1-1-0.dll
2015-02-24 12:19 - 2014-02-22 12:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll
2015-02-24 12:19 - 2014-02-22 12:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-kernel32-package-l1-1-1.dll
2015-02-24 12:19 - 2014-02-22 12:16 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-24 12:19 - 2014-02-22 12:08 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2015-02-24 12:19 - 2014-02-22 12:07 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-02-24 12:19 - 2014-02-22 11:59 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll
2015-02-24 12:19 - 2014-02-22 11:35 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2015-02-24 12:19 - 2014-02-22 10:51 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll
2015-02-24 12:19 - 2014-02-22 10:27 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-02-24 12:19 - 2014-02-22 10:19 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\korwbrkr.dll
2015-02-24 12:19 - 2014-02-22 09:55 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll
2015-02-24 12:19 - 2014-02-22 09:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll
2015-02-24 12:19 - 2014-02-22 09:39 - 00193024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2015-02-24 12:19 - 2014-02-22 05:43 - 00002440 ___RS () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk
2015-02-24 12:19 - 2014-02-01 07:00 - 00011109 _____ () C:\Windows\SysWOW64\connectedsearch-results.searchconnector-ms
2015-02-24 12:19 - 2014-02-01 07:00 - 00011109 _____ () C:\Windows\system32\connectedsearch-results.searchconnector-ms
2015-02-24 12:19 - 2013-11-27 10:47 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe
2015-02-24 00:35 - 2015-02-24 00:35 - 00000000 ____D () C:\Users\Public\Documents\Sports Interactive
2015-02-24 00:35 - 2015-02-24 00:35 - 00000000 ____D () C:\Users\ciffi\Documents\Sports Interactive
2015-02-24 00:35 - 2015-02-24 00:35 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Sports Interactive
2015-02-24 00:30 - 2015-02-24 00:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Football Manager 2015
2015-02-24 00:22 - 2015-02-24 00:23 - 00000000 ____D () C:\Users\ciffi\Downloads\Football Manager 2015
2015-02-23 17:55 - 2015-02-23 17:58 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-23 17:55 - 2015-01-29 17:49 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-23 17:31 - 2014-01-04 16:54 - 00138240 _____ () C:\Windows\system32\OEMLicense.dll
2015-02-23 17:31 - 2014-01-04 16:08 - 00103936 _____ () C:\Windows\SysWOW64\OEMLicense.dll
2015-02-23 17:31 - 2013-12-31 00:34 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2015-02-23 17:31 - 2013-12-31 00:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2015-02-23 17:31 - 2013-12-27 09:57 - 00842752 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2015-02-23 17:31 - 2013-12-27 08:03 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2015-02-23 17:31 - 2013-12-21 08:21 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2015-02-23 17:31 - 2013-12-17 08:21 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2015-02-23 17:29 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2015-02-23 17:29 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2015-02-23 17:29 - 2013-10-22 09:18 - 00096088 _____ (Microsoft Corporation) C:\Windows\system32\embeddedapplauncher.exe
2015-02-23 17:29 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2015-02-23 17:29 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2015-02-23 17:29 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2015-02-23 17:29 - 2013-10-05 16:25 - 00057176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2015-02-23 17:29 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-02-23 17:29 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-02-23 17:29 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-02-23 17:29 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-02-23 17:29 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2015-02-23 17:29 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-02-23 17:29 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll
2015-02-23 17:29 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-02-23 17:29 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2015-02-23 17:29 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-02-23 17:29 - 2013-09-17 10:06 - 01067080 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2015-02-23 17:29 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2015-02-23 17:29 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2015-02-23 17:29 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2015-02-23 17:29 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2015-02-23 17:29 - 2013-09-14 10:11 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2015-02-23 17:29 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2015-02-23 17:29 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2015-02-23 17:29 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-02-23 17:29 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-02-23 17:29 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-02-23 17:29 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-02-23 17:29 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-02-23 17:29 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-02-23 17:29 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-02-23 17:29 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-02-23 17:29 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll
2015-02-23 17:27 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-02-23 17:27 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-02-23 17:26 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys
2015-02-23 17:26 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-02-23 17:26 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-02-23 17:26 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2015-02-23 17:26 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2015-02-23 17:26 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll
2015-02-23 17:26 - 2013-11-23 08:13 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
2015-02-23 17:26 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll
2015-02-23 17:26 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2015-02-23 17:26 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2015-02-23 17:26 - 2013-11-08 06:23 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2015-02-23 17:26 - 2013-11-08 05:42 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll
2015-02-23 17:26 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys
2015-02-23 17:25 - 2014-12-31 12:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-23 17:25 - 2013-09-21 10:09 - 00796928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2015-02-23 17:24 - 2013-09-25 08:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2015-02-23 17:24 - 2013-09-25 06:40 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2015-02-23 17:24 - 2013-09-24 07:55 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2015-02-23 17:24 - 2013-09-24 06:59 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2015-02-23 17:24 - 2013-09-24 04:56 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-02-23 17:24 - 2013-09-21 11:56 - 00101208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-23 17:24 - 2013-09-21 11:53 - 00934856 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2015-02-23 17:24 - 2013-09-21 11:45 - 00171968 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-23 17:24 - 2013-09-21 08:50 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2015-02-23 17:24 - 2013-09-21 07:55 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2015-02-23 17:24 - 2013-09-21 06:57 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\livessp.dll
2015-02-23 17:24 - 2013-09-21 06:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-23 17:24 - 2013-09-21 05:38 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2015-02-23 17:24 - 2013-09-21 05:37 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2015-02-23 17:24 - 2013-09-19 08:19 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersRes.dll
2015-02-23 17:24 - 2013-09-19 07:39 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.dll
2015-02-23 17:24 - 2013-09-19 07:27 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2015-02-23 17:24 - 2013-09-19 07:23 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WorkFoldersRes.dll
2015-02-23 17:24 - 2013-09-19 07:17 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2015-02-23 17:24 - 2013-09-19 06:47 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.dll
2015-02-23 17:24 - 2013-09-19 06:29 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2015-02-23 17:24 - 2013-09-19 05:25 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-02-23 17:24 - 2013-09-17 07:58 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-02-23 17:24 - 2013-09-17 06:26 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-02-23 17:24 - 2013-09-14 15:06 - 00175960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VerifierExt.sys
2015-02-23 17:24 - 2013-09-14 15:06 - 00066904 _____ (Microsoft Corporation) C:\Windows\system32\PSHED.DLL
2015-02-23 17:24 - 2013-09-14 12:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-02-23 17:24 - 2013-09-13 10:52 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\SensorsClassExtension.dll
2015-02-23 17:24 - 2013-09-13 09:54 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2015-02-23 17:24 - 2013-09-13 09:10 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2015-02-23 17:24 - 2013-09-12 08:37 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2015-02-23 17:24 - 2013-09-07 13:44 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\fdprint.dll
2015-02-23 17:24 - 2013-09-07 13:29 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2015-02-23 17:24 - 2013-09-07 13:00 - 00256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdprint.dll
2015-02-23 17:24 - 2013-09-07 12:50 - 00482816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2015-02-23 17:24 - 2013-09-07 12:45 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2015-02-23 17:24 - 2013-09-07 12:22 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2015-02-23 17:24 - 2013-09-07 12:07 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2015-02-23 17:24 - 2013-09-05 07:42 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe
2015-02-23 17:24 - 2013-09-05 06:40 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Utilman.exe
2015-02-23 17:24 - 2013-09-04 06:47 - 00492032 _____ (Microsoft Corporation) C:\Windows\system32\tpmvsc.dll
2015-02-23 17:24 - 2013-09-04 06:12 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\DscCoreConfProv.dll
2015-02-23 17:24 - 2013-09-04 05:57 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2015-02-23 17:24 - 2013-08-31 13:04 - 00638464 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2015-02-23 17:24 - 2013-08-31 11:46 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll
2015-02-23 17:24 - 2013-08-30 08:31 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2015-02-23 17:24 - 2013-08-28 08:49 - 00597504 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2015-02-23 17:24 - 2013-08-28 08:09 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll
2015-02-23 17:24 - 2013-08-27 07:09 - 00970752 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2015-02-23 17:24 - 2013-08-27 06:24 - 00813568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2015-02-23 17:18 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-23 17:18 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-23 17:18 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-23 17:18 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-02-23 17:18 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-02-23 17:17 - 2014-01-27 20:07 - 04175360 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-02-23 17:17 - 2014-01-27 19:23 - 02873344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-02-23 17:17 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-02-23 17:17 - 2014-01-27 18:18 - 01486848 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-02-23 17:17 - 2014-01-27 18:00 - 01238016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-02-23 17:17 - 2013-12-21 15:51 - 06353960 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-02-23 17:17 - 2013-12-21 09:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-02-23 17:17 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-02-23 17:17 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-02-23 17:17 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-02-23 17:17 - 2013-10-16 16:58 - 01943536 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-23 17:17 - 2013-10-16 14:54 - 01581968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-23 17:16 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-02-23 17:16 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-02-23 17:15 - 2015-02-23 17:15 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\NoteBook FanControl
2015-02-23 17:13 - 2015-02-23 17:13 - 00000000 ____D () C:\ProgramData\NbfcService
2015-02-23 17:13 - 2015-02-23 17:13 - 00000000 ____D () C:\Program Files (x86)\NoteBook FanControl
2015-02-23 14:37 - 2015-02-23 14:37 - 00000000 ____D () C:\Program Files\Intel
2015-02-23 14:36 - 2015-02-23 14:36 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Intel
2015-02-23 14:36 - 2015-02-23 14:36 - 00000000 ____D () C:\ProgramData\IntelDLM
2015-02-23 14:35 - 2015-02-23 14:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
2015-02-23 14:35 - 2015-02-23 14:35 - 00000000 ____D () C:\Program Files (x86)\Intel Driver Update Utility
2015-02-23 14:33 - 2015-02-26 13:25 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Raptr
2015-02-23 14:33 - 2015-02-23 14:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-02-23 14:33 - 2015-02-23 14:33 - 00000000 ____D () C:\Program Files (x86)\Raptr
2015-02-23 11:29 - 2015-02-23 11:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2015-02-23 10:38 - 2015-02-23 10:38 - 00000000 ____D () C:\Users\Public\Foxit Software
2015-02-23 10:36 - 2015-02-23 10:36 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Notepad++
2015-02-23 10:36 - 2015-02-23 10:36 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-02-23 10:36 - 2015-02-23 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-02-23 10:31 - 2015-02-28 01:06 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\vlc
2015-02-23 10:26 - 2015-02-27 10:20 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\uTorrent
2015-02-22 06:47 - 2015-02-28 11:30 - 00007008 _____ () C:\Windows\PFRO.log
2015-02-22 06:47 - 2015-02-21 21:55 - 00000000 ____D () C:\Windows\Panther
2015-02-22 01:58 - 2015-02-22 01:58 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Blizzard
2015-02-22 01:43 - 2015-02-22 01:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2015-02-22 01:42 - 2015-02-22 01:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2015-02-22 01:40 - 2015-02-22 01:40 - 00003228 _____ () C:\Windows\System32\Tasks\{00901803-9CFA-4CA7-92AD-7C5AD37EC057}
2015-02-22 01:38 - 2015-02-28 12:00 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Battle.net
2015-02-22 01:38 - 2015-02-22 01:39 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Battle.net
2015-02-22 01:38 - 2015-02-22 01:38 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Blizzard Entertainment
2015-02-22 01:38 - 2015-02-22 01:38 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2015-02-22 01:37 - 2015-02-22 01:37 - 00000000 ____D () C:\ProgramData\Battle.net
2015-02-22 01:14 - 2015-02-26 13:02 - 00027522 _____ () C:\Windows\DirectX.log
2015-02-22 01:14 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2015-02-22 01:14 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2015-02-22 01:14 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2015-02-22 01:14 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2015-02-22 01:14 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2015-02-22 01:14 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-02-22 01:14 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2015-02-22 01:14 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2015-02-22 01:14 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2015-02-22 01:14 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2015-02-22 01:14 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2015-02-22 01:14 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2015-02-22 01:14 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2015-02-22 01:14 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2015-02-22 01:14 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2015-02-22 01:14 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2015-02-22 01:14 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2015-02-22 01:14 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2015-02-22 01:14 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2015-02-22 01:14 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2015-02-22 01:14 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2015-02-22 01:14 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2015-02-22 01:14 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2015-02-22 01:14 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2015-02-22 01:14 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2015-02-22 01:14 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2015-02-22 01:14 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2015-02-22 01:14 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2015-02-22 01:14 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2015-02-22 01:14 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2015-02-22 01:14 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2015-02-22 01:14 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2015-02-22 01:14 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2015-02-22 01:14 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2015-02-22 01:14 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2015-02-22 01:14 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2015-02-22 01:14 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2015-02-22 01:14 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2015-02-22 01:14 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2015-02-22 01:14 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2015-02-22 01:14 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2015-02-22 01:14 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2015-02-22 01:14 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2015-02-22 01:14 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2015-02-22 01:14 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2015-02-22 01:14 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2015-02-22 01:14 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2015-02-22 01:14 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2015-02-22 01:14 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2015-02-22 01:14 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2015-02-22 01:14 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2015-02-22 01:14 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2015-02-22 01:14 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2015-02-22 01:14 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2015-02-22 01:14 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2015-02-22 01:14 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2015-02-22 01:14 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2015-02-22 01:14 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2015-02-22 01:14 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2015-02-22 01:14 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2015-02-22 01:14 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2015-02-22 01:14 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2015-02-22 01:14 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2015-02-22 01:14 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2015-02-22 01:14 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2015-02-22 01:14 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2015-02-22 01:14 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2015-02-22 01:14 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2015-02-22 01:14 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2015-02-22 01:14 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2015-02-22 01:14 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2015-02-22 01:14 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2015-02-22 01:14 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2015-02-22 01:14 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2015-02-22 01:14 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2015-02-22 01:14 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2015-02-22 01:14 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2015-02-22 01:14 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2015-02-22 01:14 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2015-02-22 01:14 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2015-02-22 01:14 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2015-02-22 01:14 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2015-02-22 01:14 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2015-02-22 01:14 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2015-02-22 01:14 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2015-02-22 01:14 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2015-02-22 01:14 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2015-02-22 01:14 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2015-02-22 01:14 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2015-02-22 01:14 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2015-02-22 01:14 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2015-02-22 01:14 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2015-02-22 01:14 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2015-02-22 01:14 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2015-02-22 01:14 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#9 Příspěvek od ciffi »

2015-02-22 01:14 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2015-02-22 01:14 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2015-02-22 01:14 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2015-02-22 01:14 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2015-02-22 01:14 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2015-02-22 01:14 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2015-02-22 01:14 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2015-02-22 01:14 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2015-02-22 01:14 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2015-02-22 01:14 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2015-02-22 01:14 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2015-02-22 01:14 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2015-02-22 01:14 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2015-02-22 01:14 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2015-02-22 01:14 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2015-02-22 01:14 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2015-02-22 01:14 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2015-02-22 01:14 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2015-02-22 01:14 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2015-02-22 01:14 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2015-02-22 01:14 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2015-02-22 01:14 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2015-02-22 01:14 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2015-02-22 01:14 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2015-02-22 01:14 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2015-02-22 01:14 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2015-02-22 01:14 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2015-02-22 01:14 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2015-02-22 01:14 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2015-02-22 01:14 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2015-02-22 01:14 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2015-02-22 01:14 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2015-02-22 01:14 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2015-02-22 01:14 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2015-02-22 01:14 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2015-02-22 01:14 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2015-02-22 01:14 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2015-02-22 01:14 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2015-02-22 01:14 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2015-02-22 01:14 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2015-02-22 01:14 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2015-02-22 01:14 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2015-02-22 01:14 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2015-02-22 01:14 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2015-02-22 01:14 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2015-02-22 01:14 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2015-02-22 01:14 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2015-02-22 01:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-02-22 01:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2015-02-22 01:14 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2015-02-22 01:14 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2015-02-22 01:14 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2015-02-22 01:14 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2015-02-22 01:14 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2015-02-22 01:14 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2015-02-21 23:39 - 2015-02-27 15:23 - 00000000 ____D () C:\Users\ciffi\Downloads\Vikings 3
2015-02-21 23:39 - 2015-02-27 10:02 - 00000000 ____D () C:\Users\ciffi\Downloads\Suits 4
2015-02-21 23:39 - 2015-02-24 16:06 - 00000000 ____D () C:\Users\ciffi\Downloads\Better Call Saul 1
2015-02-21 23:39 - 2015-02-23 10:35 - 00000000 ____D () C:\Users\ciffi\Downloads\The Walking Dead 5
2015-02-21 23:27 - 2015-02-21 23:27 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-02-21 23:27 - 2015-02-21 23:27 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Synaptics
2015-02-21 23:19 - 2015-02-21 23:19 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\puush
2015-02-21 23:18 - 2015-02-21 23:18 - 00000000 ____D () C:\Program Files\Reference Assemblies
2015-02-21 23:18 - 2015-02-21 23:18 - 00000000 ____D () C:\Program Files\MSBuild
2015-02-21 23:18 - 2015-02-21 23:18 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2015-02-21 23:18 - 2015-02-21 23:18 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-02-21 23:17 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-02-21 23:17 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-21 23:17 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-02-21 23:17 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-21 23:16 - 2015-02-21 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\puush
2015-02-21 23:14 - 2015-02-21 23:14 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\library_dir
2015-02-21 23:13 - 2015-02-21 23:13 - 00053564 _____ () C:\Windows\SysWOW64\CCCInstall_201502212313367122.log
2015-02-21 23:13 - 2015-02-21 23:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-02-21 23:13 - 2015-02-21 23:13 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2015-02-21 23:13 - 2015-02-21 23:13 - 00000000 ____D () C:\Program Files (x86)\AMD
2015-02-21 23:12 - 2015-02-21 23:12 - 00000000 ____D () C:\ProgramData\ATI
2015-02-21 23:12 - 2015-02-21 23:12 - 00000000 _____ () C:\Windows\ativpsrm.bin
2015-02-21 23:12 - 2014-10-28 00:46 - 00062152 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2015-02-21 23:10 - 2015-02-23 14:32 - 00000000 ____D () C:\Program Files\AMD
2015-02-21 23:08 - 2015-02-21 23:08 - 00000000 ____D () C:\AMD
2015-02-21 23:04 - 2015-02-21 23:04 - 00002990 _____ () C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2015-02-21 23:04 - 2015-02-21 23:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-02-21 23:04 - 2015-02-21 23:04 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Steam
2015-02-21 23:03 - 2015-02-21 23:06 - 00006572 _____ () C:\Windows\DPINST.LOG
2015-02-21 23:02 - 2015-02-21 23:06 - 00001332 _____ () C:\Windows\Synaptics.log
2015-02-21 23:00 - 2015-02-26 12:43 - 00000000 ____D () C:\Games
2015-02-21 23:00 - 2015-02-21 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-02-21 22:57 - 2015-02-21 22:57 - 00001658 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Premium Sound.lnk
2015-02-21 22:57 - 2015-02-21 22:57 - 00000000 ____D () C:\Windows\system32\SRSLabs
2015-02-21 22:57 - 2012-10-24 22:53 - 08013312 _____ (IDT, Inc.) C:\Windows\system32\IDTNHP.dll
2015-02-21 22:57 - 2012-10-24 22:53 - 08003072 _____ (IDT, Inc.) C:\Windows\system32\IDTNGUI.exe
2015-02-21 22:57 - 2012-10-24 22:53 - 06102016 _____ (IDT, Inc.) C:\Windows\system32\stlang64.dll
2015-02-21 22:57 - 2012-10-24 22:53 - 02216448 _____ (IDT, Inc.) C:\Windows\system32\IDTNX.dll
2015-02-21 22:57 - 2012-10-24 22:53 - 01821184 _____ (IDT, Inc.) C:\Windows\system32\IDTNC64.cpl
2015-02-21 22:57 - 2012-10-24 22:53 - 01664000 _____ (IDT, Inc.) C:\Windows\sttray64.exe
2015-02-21 22:57 - 2012-10-24 22:53 - 00253952 _____ (IDT, Inc.) C:\Windows\system32\IDTNJ.exe
2015-02-21 22:57 - 2012-10-24 22:53 - 00224256 _____ (IDT, Inc.) C:\Windows\system32\HPToneCtrls64.dll
2015-02-21 22:57 - 2012-03-29 22:48 - 00200288 _____ (Andrea Electronics Corporation) C:\Windows\system32\AESTAC64.dll
2015-02-21 22:57 - 2012-03-29 22:48 - 00074336 _____ (Andrea Electronics Corporation) C:\Windows\system32\AESTAR64.dll
2015-02-21 22:57 - 2009-10-10 00:45 - 00442368 _____ (Andrea Electronics Corporation) C:\Windows\system32\AESTEC64.dll
2015-02-21 22:57 - 2009-03-03 01:47 - 00090624 _____ (Andrea Electronics Corporation) C:\Windows\system32\AESTCo64.dll
2015-02-21 22:56 - 2015-02-21 22:57 - 00000000 ____D () C:\Program Files\IDT
2015-02-21 22:56 - 2015-02-21 22:56 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-21 22:56 - 2012-10-24 22:53 - 02189312 _____ (IDT, Inc.) C:\Windows\system32\stapo64.dll
2015-02-21 22:56 - 2012-10-24 22:53 - 00672256 ____N (IDT, Inc.) C:\Windows\system32\stapi64.dll
2015-02-21 22:56 - 2012-10-24 22:53 - 00543744 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys
2015-02-21 22:56 - 2012-10-24 22:53 - 00499200 _____ (IDT, Inc.) C:\Windows\system32\stcplx64.dll
2015-02-21 22:56 - 2012-10-24 22:53 - 00256000 _____ (IDT, Inc.) C:\Windows\system32\st646433.dll
2015-02-21 22:56 - 2012-02-21 13:17 - 00008192 _____ () C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-02-21 22:53 - 2015-02-21 22:53 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-02-21 22:53 - 2015-02-21 22:53 - 00000000 ____D () C:\ProgramData\Intel
2015-02-21 22:53 - 2012-05-15 07:13 - 00144896 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2015-02-21 22:53 - 2012-05-15 06:20 - 00104448 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2015-02-21 22:46 - 2015-02-21 22:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QIP 2005
2015-02-21 22:43 - 2015-02-21 22:43 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Macromedia
2015-02-21 22:42 - 2015-02-21 22:42 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Skype
2015-02-21 22:41 - 2015-02-28 11:48 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Skype
2015-02-21 22:41 - 2015-02-21 22:41 - 00000000 ____D () C:\ProgramData\Skype
2015-02-21 22:41 - 2015-02-21 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-02-21 22:41 - 2015-02-21 22:41 - 00000000 ____D () C:\Program Files (x86)\Skype
2015-02-21 22:31 - 2015-02-21 22:56 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-02-21 22:31 - 2015-02-21 22:52 - 00000000 ____D () C:\Intel
2015-02-21 22:26 - 2015-02-21 22:26 - 00000000 ____D () C:\Program Files\Common Files\Atheros
2015-02-21 22:25 - 2015-02-21 22:25 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2015-02-21 22:25 - 2015-02-21 22:25 - 00000000 ____D () C:\Program Files\Synaptics
2015-02-21 22:21 - 2015-02-21 23:13 - 00000000 ____D () C:\ProgramData\AMD
2015-02-21 22:21 - 2015-02-21 22:21 - 00066879 _____ () C:\Windows\SysWOW64\CCCInstall_201502212221218537.log
2015-02-21 22:21 - 2015-02-21 22:21 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\ATI
2015-02-21 22:21 - 2015-02-21 22:21 - 00000000 ____D () C:\Users\ciffi\AppData\Local\ATI
2015-02-21 22:20 - 2015-02-21 22:20 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2015-02-21 22:20 - 2015-02-21 22:20 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2015-02-21 22:20 - 2011-09-12 18:05 - 00003917 _____ () C:\Windows\SysWOW64\atipblup.dat
2015-02-21 22:19 - 2015-02-21 22:19 - 00000000 ____D () C:\Program Files\ATI
2015-02-21 22:18 - 2015-02-22 19:11 - 00000000 ____D () C:\SwSetup
2015-02-21 22:00 - 2015-02-26 17:30 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-71113301-2735499236-4153118286-1001
2015-02-21 22:00 - 2015-02-21 22:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-02-21 21:59 - 2015-02-28 11:34 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-21 21:59 - 2015-02-28 02:04 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-21 21:59 - 2015-02-21 22:00 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Google
2015-02-21 21:59 - 2015-02-21 22:00 - 00000000 ____D () C:\Program Files (x86)\Google
2015-02-21 21:59 - 2015-02-21 21:59 - 00003924 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-21 21:59 - 2015-02-21 21:59 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-21 21:57 - 2015-02-28 11:37 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-21 21:55 - 2015-02-24 23:18 - 00000000 ____D () C:\Users\ciffi
2015-02-21 21:55 - 2015-02-21 21:56 - 00000000 ____D () C:\Users\ciffi\AppData\Local\Packages
2015-02-21 21:55 - 2015-02-21 21:55 - 00001442 _____ () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-21 21:55 - 2015-02-21 21:55 - 00000020 ___SH () C:\Users\ciffi\ntuser.ini
2015-02-21 21:55 - 2015-02-21 21:55 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Adobe
2015-02-21 21:55 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-21 21:55 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-21 21:55 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-21 21:55 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\ciffi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-21 21:52 - 2015-02-28 11:55 - 01582609 _____ () C:\Windows\WindowsUpdate.log
2015-02-21 21:52 - 2015-02-21 21:52 - 00000000 ____D () C:\Windows\CSC
2015-02-21 21:52 - 2014-08-16 03:55 - 02407936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-02-20 19:52 - 2015-02-15 23:19 - 00000431 _____ () C:\Users\ciffi\Desktop\hodiny.txt
2015-02-20 19:52 - 2015-02-10 15:53 - 00000086 _____ () C:\Users\ciffi\Desktop\!!!.txt
2015-02-20 19:33 - 2015-02-21 23:29 - 00000000 ____D () C:\Users\ciffi\Documents\school

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-28 11:31 - 2013-08-22 15:46 - 00016870 _____ () C:\Windows\setupact.log
2015-02-28 11:31 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-28 11:15 - 2013-08-22 15:44 - 00337840 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-28 02:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-02-27 19:20 - 2013-08-22 20:11 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2015-02-27 19:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-27 19:20 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-02-27 18:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-02-27 12:18 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-27 00:26 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-27 00:26 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-27 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2015-02-27 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2015-02-27 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-27 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-02-27 00:25 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2015-02-26 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-02-26 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2015-02-26 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2015-02-24 22:41 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\uk-UA
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\th-TH
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sl-SI
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sk-SK
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\ro-RO
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\lv-LV
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\lt-LT
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\hr-HR
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\he-IL
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\et-EE
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\en-GB
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\bg-BG
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\ar-SA
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2015-02-24 22:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
2015-02-24 22:23 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-02-24 22:23 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-02-24 22:23 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-02-24 22:23 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-02-24 22:23 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing
2015-02-24 13:08 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2015-02-23 18:17 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-02-23 18:16 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-02-23 17:26 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-02-22 06:49 - 2013-08-22 16:37 - 00001720 _____ () C:\Windows\DtcInstall.log
2015-02-22 06:49 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery
2015-02-22 06:47 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2015-02-21 22:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore
2015-02-21 22:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-02-03 20:31 - 2013-08-22 16:38 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-02-03 20:31 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-22 06:47




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:449.69 GB) (Free:360.31 GB) NTFS
Drive d: () (Fixed) (Total:146.14 GB) (Free:146.03 GB) NTFS

Available physical RAM: 2234.28 MB
Total physical RAM: 4030.36 MB
Percentage of memory in use: 44%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: C2E30232)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=146.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=449.7 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\ciffi\Desktop" je 6 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.zip
(6.08 KiB) Staženo 34 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Podozrenie na malware/trojan + RSIT

#10 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation)
    HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [Skype] => C:\Programs\Skype\Phone\Skype.exe [31090792 2015-01-23] (Skype Technologies S.A.)
    HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [QIP2005] => C:\Programs\QIP\qip.exe [3330560 2010-10-29] (The Author of QIP)
    HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [Steam] => C:\Games\Steam\steam.exe [2874048 2015-02-19] (Valve Corporation)
    HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [puush] => C:\Programs\puush\puush.exe [567880 2015-02-21] ()
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    
    HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
    
    2015-02-28 11:59 - 2015-02-28 11:59 - 00011036 _____ () C:\Users\ciffi\Desktop\FRST.txt
    2015-02-28 11:56 - 2015-02-28 11:56 - 00112640 _____ (forum.viry.cz) C:\Users\ciffi\Desktop\FRSTLauncher.exe
    2015-02-28 11:36 - 2015-02-28 11:36 - 00007047 _____ () C:\Users\ciffi\Desktop\zoek-results.txt
    2015-02-28 11:30 - 2015-02-28 11:20 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2015-02-28 11:21 - 2015-02-28 11:34 - 00007047 _____ () C:\zoek-results.log
    2015-02-28 11:21 - 2015-02-28 11:29 - 00000000 ____D () C:\zoek_backup
    2015-02-28 11:20 - 2015-02-28 11:20 - 01304576 _____ () C:\Users\ciffi\Desktop\zoek.exe
    2015-02-28 11:19 - 2015-02-28 11:19 - 00007735 _____ () C:\Users\ciffi\Desktop\AdwCleaner[S0].txt
    2015-02-28 11:11 - 2015-02-28 11:13 - 00000000 ____D () C:\AdwCleaner
    2015-02-28 11:11 - 2015-02-28 11:11 - 02126848 _____ () C:\Users\ciffi\Desktop\adwcleaner_4.111.exe
    2015-02-28 01:52 - 2015-02-28 01:53 - 00000000 ____D () C:\rsit
    2015-02-28 01:52 - 2015-02-28 01:53 - 00000000 ____D () C:\Program Files\trend micro
    2015-02-28 01:52 - 2015-02-28 01:52 - 01222144 _____ () C:\Users\ciffi\Desktop\RSITx64.exe
    
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#11 Příspěvek od ciffi »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-03-2015
Ran by ciffi at 2015-03-02 17:36:32 Run:1
Running from C:\Users\ciffi\Desktop
Loaded Profiles: ciffi (Available profiles: ciffi)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [Skype] => C:\Programs\Skype\Phone\Skype.exe [31090792 2015-01-23] (Skype Technologies S.A.)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [QIP2005] => C:\Programs\QIP\qip.exe [3330560 2010-10-29] (The Author of QIP)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [Steam] => C:\Games\Steam\steam.exe [2874048 2015-02-19] (Valve Corporation)
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\...\Run: [puush] => C:\Programs\puush\puush.exe [567880 2015-02-21] ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp

2015-02-28 11:59 - 2015-02-28 11:59 - 00011036 _____ () C:\Users\ciffi\Desktop\FRST.txt
2015-02-28 11:56 - 2015-02-28 11:56 - 00112640 _____ (forum.viry.cz) C:\Users\ciffi\Desktop\FRSTLauncher.exe
2015-02-28 11:36 - 2015-02-28 11:36 - 00007047 _____ () C:\Users\ciffi\Desktop\zoek-results.txt
2015-02-28 11:30 - 2015-02-28 11:20 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-02-28 11:21 - 2015-02-28 11:34 - 00007047 _____ () C:\zoek-results.log
2015-02-28 11:21 - 2015-02-28 11:29 - 00000000 ____D () C:\zoek_backup
2015-02-28 11:20 - 2015-02-28 11:20 - 01304576 _____ () C:\Users\ciffi\Desktop\zoek.exe
2015-02-28 11:19 - 2015-02-28 11:19 - 00007735 _____ () C:\Users\ciffi\Desktop\AdwCleaner[S0].txt
2015-02-28 11:11 - 2015-02-28 11:13 - 00000000 ____D () C:\AdwCleaner
2015-02-28 11:11 - 2015-02-28 11:11 - 02126848 _____ () C:\Users\ciffi\Desktop\adwcleaner_4.111.exe
2015-02-28 01:52 - 2015-02-28 01:53 - 00000000 ____D () C:\rsit
2015-02-28 01:52 - 2015-02-28 01:53 - 00000000 ____D () C:\Program Files\trend micro
2015-02-28 01:52 - 2015-02-28 01:52 - 01222144 _____ () C:\Users\ciffi\Desktop\RSITx64.exe

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => value deleted successfully.
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Windows\CurrentVersion\Run\\QIP2005 => value deleted successfully.
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Steam => value deleted successfully.
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Windows\CurrentVersion\Run\\puush => value deleted successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
HKU\S-1-5-21-71113301-2735499236-4153118286-1001\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache => value deleted successfully.
C:\Users\ciffi\Desktop\FRST.txt => Moved successfully.
"C:\Users\ciffi\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\Users\ciffi\Desktop\zoek-results.txt => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\ciffi\Desktop\zoek.exe => Moved successfully.
C:\Users\ciffi\Desktop\AdwCleaner[S0].txt => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\ciffi\Desktop\adwcleaner_4.111.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\ciffi\Desktop\RSITx64.exe => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 422.7 MB temporary data.


The system needed a reboot.

==== End of Fixlog 17:37:01 ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Podozrenie na malware/trojan + RSIT

#12 Příspěvek od vyosek »

Jak se chova PC??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

ciffi
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 28 úno 2015 01:50

Re: Podozrenie na malware/trojan + RSIT

#13 Příspěvek od ciffi »

Spominane problemy som uz nepostrehol .. Vdaka za rady a pomoc pri cisteni :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Podozrenie na malware/trojan + RSIT

#14 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remote disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět