Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spomaleny, mrznuci NTB

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Spomaleny, mrznuci NTB

#1 Příspěvek od orli »

Dobry den

Pred dvoma dnami mi zacal strasne mrznut a spravat sa spomalene NTB, spustil som znamy adware cleaner, ten nieco odstranil, ale problem stale pretrvava. Pridavam RSIT log, poprosim o kontrolu, dakujem za pomoc:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2015-06-11 18:54:15
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 394 GB (83%) free of 477 GB
Total RAM: 4063 MB (25% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:22:18, on 11. 6. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files\trend micro\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll
O3 - Toolbar: Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [PSUAMain] "C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe" /LaunchSysTray
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Panda Security URL Filtering] "C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filtering.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Panda Protection Service (NanoServiceMain) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Panda Devices Agent (PandaAgent) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
O23 - Service: panda_url_filtering Service (panda_url_filtering) - Panda Security - C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filteringb.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Panda Product Service (PSUAService) - Panda Security, S.L. - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8073 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe"
"C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe"
"C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filteringb.exe" --
"C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\iTunes\iTunesHelper.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files\iPod\bin\iPodService.exe"
"C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe" /LaunchSysTray
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {ACEBB850-5D02-4ECA-AA7F-B5EF99367959}
"C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe" /Stationary
"C:\Program Files\Sony\VAIO Update\vuagent.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\wuauclt.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Admin\Downloads\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"taskhost.exe"
C:\Windows\System32\svchost.exe -k WerSvcGroup
taskeng.exe {A5A7C14D-D7CC-460D-B1E3-6A7DB1D2AA63}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /ua /installsource scheduler
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=Doplnok iTunes Detector
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled


C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default\extensions\
{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-05-19 553896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}]
Panda Security Toolbar - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-02-10 131096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-05-19 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}]
Panda Security Toolbar - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-02-10 115224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - Panda Security Toolbar - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-02-10 131096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - Panda Security Toolbar - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-02-10 115224]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-04-27 7938080]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2015-04-27 1833504]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-04-07 169768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-06-04 2892992]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2015-04-28 25700400]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
"PSUAMain"=C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [2015-02-27 40184]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-04-30 642304]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe aml []
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2014-10-02 421888]
"Panda Security URL Filtering"=C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filtering.exe []

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NanoServiceMain]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PSUAService]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2015-06-11 19:02:31 ----SHD---- C:\Config.Msi
2015-06-11 18:54:16 ----D---- C:\Program Files\trend micro
2015-06-11 18:54:15 ----D---- C:\rsit
2015-06-11 00:16:50 ----A---- C:\Windows\ntbtlog.txt
2015-06-10 17:13:57 ----A---- C:\Windows\system32\wmp.dll
2015-06-10 17:13:56 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-06-10 17:13:53 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-06-10 17:13:53 ----A---- C:\Windows\system32\spwmp.dll
2015-06-10 17:13:52 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-06-10 17:13:52 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-06-10 17:13:52 ----A---- C:\Windows\system32\dxmasf.dll
2015-06-10 17:13:51 ----A---- C:\Windows\system32\wmploc.DLL
2015-06-10 17:12:23 ----A---- C:\Windows\system32\drivers\stream.sys
2015-06-10 17:12:14 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-06-10 17:12:14 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-06-10 17:12:14 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-06-10 17:12:14 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-06-10 17:12:14 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-06-10 17:12:13 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-06-10 17:12:13 ----A---- C:\Windows\system32\iernonce.dll
2015-06-10 17:12:13 ----A---- C:\Windows\system32\ie4uinit.exe
2015-06-10 17:12:12 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-06-10 17:12:12 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-06-10 17:12:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-06-10 17:12:11 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-06-10 17:12:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-06-10 17:12:11 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-06-10 17:12:11 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-10 17:12:10 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-06-10 17:12:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-06-10 17:12:09 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-06-10 17:12:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-06-10 17:12:08 ----A---- C:\Windows\system32\urlmon.dll
2015-06-10 17:12:08 ----A---- C:\Windows\system32\iedkcs32.dll
2015-06-10 17:12:07 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-06-10 17:12:07 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-06-10 17:12:07 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-06-10 17:12:06 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-06-10 17:12:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-06-10 17:12:05 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-10 17:12:04 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-06-10 17:12:04 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-06-10 17:12:04 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-06-10 17:12:04 ----A---- C:\Windows\system32\msfeeds.dll
2015-06-10 17:12:04 ----A---- C:\Windows\system32\dxtrans.dll
2015-06-10 17:12:03 ----A---- C:\Windows\system32\iesetup.dll
2015-06-10 17:12:02 ----A---- C:\Windows\system32\ieapfltr.dll
2015-06-10 17:12:01 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-06-10 17:12:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-06-10 17:12:01 ----A---- C:\Windows\system32\vbscript.dll
2015-06-10 17:12:01 ----A---- C:\Windows\system32\iertutil.dll
2015-06-10 17:12:00 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-06-10 17:12:00 ----A---- C:\Windows\system32\jsproxy.dll
2015-06-10 17:12:00 ----A---- C:\Windows\system32\ieUnatt.exe
2015-06-10 17:11:59 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-06-10 17:11:57 ----A---- C:\Windows\system32\ieui.dll
2015-06-10 17:11:57 ----A---- C:\Windows\system32\ieframe.dll
2015-06-10 17:11:57 ----A---- C:\Windows\system32\dxtmsft.dll
2015-06-10 17:11:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-06-10 17:11:56 ----A---- C:\Windows\system32\mshtmled.dll
2015-06-10 17:11:55 ----A---- C:\Windows\system32\jscript9diag.dll
2015-06-10 17:11:55 ----A---- C:\Windows\system32\jscript9.dll
2015-06-10 17:11:55 ----A---- C:\Windows\system32\jscript.dll
2015-06-10 17:11:54 ----A---- C:\Windows\system32\wininet.dll
2015-06-10 17:11:53 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-06-10 17:11:52 ----A---- C:\Windows\system32\msrating.dll
2015-06-10 17:11:51 ----A---- C:\Windows\system32\mshtml.dll
2015-06-09 08:02:35 ----A---- C:\Windows\system32\drivers\PSKMAD.sys
2015-05-30 14:38:16 ----D---- C:\Windows\Minidump
2015-05-21 03:00:53 ----D---- C:\Windows\Migration
2015-05-19 14:39:40 ----D---- C:\Program Files\glassfish-4.1
2015-05-19 14:32:42 ----D---- C:\Program Files\NetBeans 8.0.2
2015-05-19 14:21:40 ----A---- C:\Windows\system32\javaws.exe
2015-05-19 14:21:15 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2015-05-19 14:21:15 ----A---- C:\Windows\system32\javaw.exe
2015-05-19 14:21:15 ----A---- C:\Windows\system32\java.exe
2015-05-19 14:19:00 ----D---- C:\Program Files\Java
2015-05-18 18:36:08 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-05-15 19:04:55 ----D---- C:\Users\Admin\AppData\Roaming\Poedit
2015-05-15 19:02:19 ----D---- C:\Program Files (x86)\Poedit
2015-05-15 15:15:00 ----D---- C:\ProgramData\eSellerate
2015-05-15 15:00:26 ----D---- C:\Users\Admin\AppData\Roaming\Out of the Park Developments
2015-05-15 15:00:19 ----D---- C:\Program Files (x86)\Out of the Park Developments
2015-05-14 05:11:38 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-14 05:11:38 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 12:05:47 ----A---- C:\Windows\system32\schannel.dll
2015-05-13 12:05:47 ----A---- C:\Windows\system32\certcli.dll
2015-05-13 12:05:46 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-05-13 12:05:46 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-05-13 12:04:21 ----A---- C:\Windows\system32\services.exe
2015-05-13 12:04:09 ----A---- C:\Windows\system32\UtcResources.dll
2015-05-13 12:04:09 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-05-13 12:04:09 ----A---- C:\Windows\system32\diagtrack.dll
2015-05-13 12:04:08 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-05-13 12:04:08 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-05-13 12:04:08 ----A---- C:\Windows\system32\ntdll.dll
2015-05-13 12:04:07 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-05-13 12:04:07 ----A---- C:\Windows\system32\tdh.dll
2015-05-13 12:04:06 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-05-13 12:04:06 ----A---- C:\Windows\system32\msv1_0.dll
2015-05-13 12:04:06 ----A---- C:\Windows\system32\lsasrv.dll
2015-05-13 12:04:06 ----A---- C:\Windows\system32\kernel32.dll
2015-05-13 12:04:06 ----A---- C:\Windows\system32\advapi32.dll
2015-05-13 12:04:05 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-05-13 12:04:05 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-05-13 12:04:05 ----A---- C:\Windows\system32\wow64.dll
2015-05-13 12:04:05 ----A---- C:\Windows\system32\KernelBase.dll
2015-05-13 12:04:04 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-05-13 12:04:04 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-05-13 12:04:04 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-05-13 12:04:04 ----A---- C:\Windows\system32\winsrv.dll
2015-05-13 12:04:04 ----A---- C:\Windows\system32\tracerpt.exe
2015-05-13 12:04:04 ----A---- C:\Windows\system32\srcore.dll
2015-05-13 12:04:04 ----A---- C:\Windows\system32\sechost.dll
2015-05-13 12:04:04 ----A---- C:\Windows\system32\logman.exe
2015-05-13 12:04:04 ----A---- C:\Windows\system32\kerberos.dll
2015-05-13 12:04:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-05-13 12:04:04 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-05-13 12:04:04 ----A---- C:\Windows\system32\conhost.exe
2015-05-13 12:04:03 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-05-13 12:04:03 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-05-13 12:04:03 ----A---- C:\Windows\system32\wdigest.dll
2015-05-13 12:04:03 ----A---- C:\Windows\system32\smss.exe
2015-05-13 12:04:03 ----A---- C:\Windows\system32\rstrui.exe
2015-05-13 12:04:02 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-05-13 12:04:01 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-05-13 12:04:01 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-05-13 12:04:01 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-05-13 12:04:01 ----A---- C:\Windows\system32\typeperf.exe
2015-05-13 12:04:01 ----A---- C:\Windows\system32\ncrypt.dll
2015-05-13 12:04:00 ----A---- C:\Windows\system32\TSpkg.dll
2015-05-13 12:04:00 ----A---- C:\Windows\system32\sspicli.dll
2015-05-13 12:03:59 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-05-13 12:03:59 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-05-13 12:03:59 ----A---- C:\Windows\system32\relog.exe
2015-05-13 12:03:59 ----A---- C:\Windows\system32\lsass.exe
2015-05-13 12:03:59 ----A---- C:\Windows\system32\auditpol.exe
2015-05-13 12:03:58 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-05-13 12:03:58 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-05-13 12:03:58 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-05-13 12:03:58 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-05-13 12:03:58 ----A---- C:\Windows\system32\wow64win.dll
2015-05-13 12:03:58 ----A---- C:\Windows\system32\srclient.dll
2015-05-13 12:03:58 ----A---- C:\Windows\system32\secur32.dll
2015-05-13 12:03:58 ----A---- C:\Windows\system32\ntvdm64.dll
2015-05-13 12:03:58 ----A---- C:\Windows\system32\diskperf.exe
2015-05-13 12:03:58 ----A---- C:\Windows\system32\csrsrv.dll
2015-05-13 12:03:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-05-13 12:03:57 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-05-13 12:03:57 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-05-13 12:03:57 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-05-13 12:03:57 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-05-13 12:03:57 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-05-13 12:03:57 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-05-13 12:03:57 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-05-13 12:03:57 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-05-13 12:03:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-05-13 12:03:57 ----A---- C:\Windows\system32\wow64cpu.dll
2015-05-13 12:03:57 ----A---- C:\Windows\system32\sspisrv.dll
2015-05-13 12:03:57 ----A---- C:\Windows\system32\credssp.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-05-13 12:03:56 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-05-13 12:03:55 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-05-13 12:03:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-05-13 12:03:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-05-13 12:03:54 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-05-13 12:03:54 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-05-13 12:03:54 ----A---- C:\Windows\SYSWOW64\user.exe
2015-05-13 12:03:54 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-05-13 12:03:54 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-05-13 12:03:54 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-05-13 12:03:54 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-05-13 12:03:54 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-05-13 12:03:54 ----A---- C:\Windows\system32\msobjs.dll
2015-05-13 12:03:54 ----A---- C:\Windows\system32\msaudite.dll
2015-05-13 12:03:54 ----A---- C:\Windows\system32\apisetschema.dll
2015-05-13 12:03:54 ----A---- C:\Windows\system32\adtschema.dll
2015-05-13 12:03:39 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-05-13 12:03:39 ----A---- C:\Windows\system32\FntCache.dll
2015-05-13 12:03:39 ----A---- C:\Windows\system32\DWrite.dll
2015-05-13 12:03:38 ----A---- C:\Windows\system32\win32k.sys
2015-05-13 12:03:29 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-05-13 12:03:29 ----A---- C:\Windows\system32\InkEd.dll
2015-05-13 12:03:28 ----A---- C:\Windows\system32\jnwmon.dll
2015-05-13 12:03:26 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-05-13 12:03:26 ----A---- C:\Windows\system32\wpdshext.dll
2015-05-13 12:03:19 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-05-13 12:03:19 ----A---- C:\Windows\system32\poqexec.exe
2015-05-13 12:03:13 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-05-13 12:03:13 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-05-13 12:03:13 ----A---- C:\Windows\system32\shimeng.dll
2015-05-13 12:03:13 ----A---- C:\Windows\system32\sdbinst.exe
2015-05-13 12:03:13 ----A---- C:\Windows\system32\apphelp.dll
2015-05-13 12:03:13 ----A---- C:\Windows\system32\aelupsvc.dll
2015-05-13 12:03:12 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2015-05-11 09:11:12 ----D---- C:\Users\Admin\AppData\Roaming\uTorrent
2015-05-05 11:03:12 ----D---- C:\Users\Admin\AppData\Roaming\Sublime Text 2
2015-05-05 11:02:51 ----D---- C:\Program Files\Sublime Text 2
2015-05-02 21:04:59 ----D---- C:\Users\Admin\AppData\Roaming\MPC-HC
2015-05-02 10:16:44 ----D---- C:\AdwCleaner
2015-05-02 09:58:37 ----A---- C:\autoexec.bat
2015-05-02 09:57:46 ----D---- C:\Program Files\Enigma Software Group
2015-05-02 09:55:42 ----D---- C:\Windows\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP
2015-05-01 13:54:53 ----D---- C:\Users\Admin\AppData\Roaming\vlc
2015-05-01 13:51:54 ----D---- C:\Program Files (x86)\VideoLAN
2015-05-01 12:51:43 ----D---- C:\Users\Admin\AppData\Roaming\WinRAR
2015-05-01 12:51:02 ----D---- C:\Program Files\WinRAR
2015-04-30 11:14:39 ----D---- C:\Program Files (x86)\iExplorer
2015-04-30 11:12:49 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-04-30 11:09:24 ----D---- C:\Program Files (x86)\QuickTime
2015-04-29 10:31:42 ----D---- C:\Users\Admin\AppData\Roaming\iMobie
2015-04-29 10:31:23 ----D---- C:\Program Files (x86)\iMobie
2015-04-29 10:01:52 ----D---- C:\Users\Admin\AppData\Roaming\Apple Computer
2015-04-29 10:00:16 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys
2015-04-29 10:00:09 ----DC---- C:\Windows\system32\DRVSTORE
2015-04-29 09:58:27 ----D---- C:\Program Files (x86)\iTunes
2015-04-29 09:58:26 ----D---- C:\Program Files\iPod
2015-04-29 09:58:19 ----D---- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-04-29 09:58:19 ----D---- C:\ProgramData\Apple Computer
2015-04-29 09:58:19 ----D---- C:\Program Files\iTunes
2015-04-29 09:55:18 ----D---- C:\Program Files (x86)\Apple Software Update
2015-04-29 09:54:01 ----D---- C:\Program Files\Bonjour
2015-04-29 09:54:01 ----D---- C:\Program Files (x86)\Bonjour
2015-04-29 09:53:04 ----D---- C:\Program Files\Common Files\Apple
2015-04-29 09:51:51 ----D---- C:\ProgramData\Apple
2015-04-28 17:08:21 ----D---- C:\Users\Admin\AppData\Roaming\GHISLER
2015-04-28 17:08:21 ----D---- C:\Program Files (x86)\totalcmd
2015-04-28 17:08:21 ----A---- C:\Windows\UC.PIF
2015-04-28 17:08:21 ----A---- C:\Windows\RAR.PIF
2015-04-28 17:08:21 ----A---- C:\Windows\PKZIP.PIF
2015-04-28 17:08:21 ----A---- C:\Windows\PKUNZIP.PIF
2015-04-28 17:08:21 ----A---- C:\Windows\LHA.PIF
2015-04-28 17:08:21 ----A---- C:\Windows\ARJ.PIF
2015-04-28 07:58:44 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-04-28 07:58:44 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2015-04-28 00:02:00 ----D---- C:\Users\Admin\AppData\Roaming\The Creative Assembly
2015-04-28 00:00:08 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2015-04-28 00:00:08 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2015-04-28 00:00:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2015-04-28 00:00:08 ----A---- C:\Windows\system32\D3DX9_40.dll
2015-04-28 00:00:08 ----A---- C:\Windows\system32\d3dx10_40.dll
2015-04-28 00:00:08 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2015-04-28 00:00:07 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2015-04-28 00:00:07 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2015-04-28 00:00:07 ----A---- C:\Windows\system32\XAudio2_3.dll
2015-04-28 00:00:07 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2015-04-28 00:00:04 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2015-04-28 00:00:04 ----A---- C:\Windows\system32\xactengine3_3.dll
2015-04-28 00:00:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2015-04-28 00:00:03 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2015-04-28 00:00:02 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2015-04-28 00:00:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2015-04-28 00:00:02 ----A---- C:\Windows\system32\XAudio2_2.dll
2015-04-28 00:00:02 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2015-04-28 00:00:01 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2015-04-28 00:00:01 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2015-04-28 00:00:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2015-04-28 00:00:01 ----A---- C:\Windows\system32\xactengine3_2.dll
2015-04-28 00:00:01 ----A---- C:\Windows\system32\d3dx10_39.dll
2015-04-28 00:00:01 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2015-04-27 23:59:59 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2015-04-27 23:59:59 ----A---- C:\Windows\system32\D3DX9_39.dll
2015-04-27 23:59:58 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2015-04-27 23:59:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2015-04-27 23:59:58 ----A---- C:\Windows\system32\XAudio2_1.dll
2015-04-27 23:59:58 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2015-04-27 23:59:57 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2015-04-27 23:59:57 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2015-04-27 23:59:57 ----A---- C:\Windows\system32\xactengine3_1.dll
2015-04-27 23:59:57 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2015-04-27 23:59:56 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2015-04-27 23:59:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2015-04-27 23:59:56 ----A---- C:\Windows\system32\d3dx10_38.dll
2015-04-27 23:59:56 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2015-04-27 23:59:55 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2015-04-27 23:59:55 ----A---- C:\Windows\system32\D3DX9_38.dll
2015-04-27 23:59:54 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2015-04-27 23:59:54 ----A---- C:\Windows\system32\XAudio2_0.dll
2015-04-27 23:59:52 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2015-04-27 23:59:52 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2015-04-27 23:59:52 ----A---- C:\Windows\system32\xactengine3_0.dll
2015-04-27 23:59:52 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2015-04-27 23:59:51 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2015-04-27 23:59:51 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2015-04-27 23:59:51 ----A---- C:\Windows\system32\d3dx10_37.dll
2015-04-27 23:59:51 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2015-04-27 23:59:50 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2015-04-27 23:59:50 ----A---- C:\Windows\system32\D3DX9_37.dll
2015-04-27 23:59:49 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2015-04-27 23:59:49 ----A---- C:\Windows\system32\xactengine2_10.dll
2015-04-27 23:59:48 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2015-04-27 23:59:48 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2015-04-27 23:59:48 ----A---- C:\Windows\system32\d3dx10_36.dll
2015-04-27 23:59:48 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2015-04-27 23:59:47 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2015-04-27 23:59:47 ----A---- C:\Windows\system32\d3dx9_36.dll
2015-04-27 23:59:46 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2015-04-27 23:59:46 ----A---- C:\Windows\system32\xactengine2_9.dll
2015-04-27 23:59:45 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2015-04-27 23:59:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2015-04-27 23:59:45 ----A---- C:\Windows\system32\d3dx10_35.dll
2015-04-27 23:59:45 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2015-04-27 23:59:44 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2015-04-27 23:59:44 ----A---- C:\Windows\system32\d3dx9_35.dll
2015-04-27 23:59:43 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2015-04-27 23:59:43 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2015-04-27 23:59:43 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2015-04-27 23:59:43 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2015-04-27 23:59:43 ----A---- C:\Windows\system32\xactengine2_8.dll
2015-04-27 23:59:43 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2015-04-27 23:59:43 ----A---- C:\Windows\system32\d3dx10_34.dll
2015-04-27 23:59:43 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2015-04-27 23:59:42 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2015-04-27 23:59:42 ----A---- C:\Windows\system32\d3dx9_34.dll
2015-04-27 23:59:41 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2015-04-27 23:59:41 ----A---- C:\Windows\system32\xinput1_3.dll
2015-04-27 23:59:40 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2015-04-27 23:59:40 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2015-04-27 23:59:40 ----A---- C:\Windows\system32\xactengine2_7.dll
2015-04-27 23:59:40 ----A---- C:\Windows\system32\d3dx10_33.dll
2015-04-27 23:59:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2015-04-27 23:59:39 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2015-04-27 23:59:38 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2015-04-27 23:59:38 ----A---- C:\Windows\system32\d3dx9_33.dll
2015-04-27 23:59:37 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2015-04-27 23:59:37 ----A---- C:\Windows\system32\xactengine2_6.dll
2015-04-27 23:59:36 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2015-04-27 23:59:36 ----A---- C:\Windows\system32\xactengine2_5.dll
2015-04-27 23:59:35 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2015-04-27 23:59:35 ----A---- C:\Windows\system32\d3dx10.dll
2015-04-27 23:59:34 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2015-04-27 23:59:34 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2015-04-27 23:59:34 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2015-04-27 23:59:34 ----A---- C:\Windows\system32\xactengine2_4.dll
2015-04-27 23:59:34 ----A---- C:\Windows\system32\x3daudio1_1.dll
2015-04-27 23:59:34 ----A---- C:\Windows\system32\d3dx9_32.dll
2015-04-27 23:59:32 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2015-04-27 23:59:32 ----A---- C:\Windows\system32\d3dx9_31.dll
2015-04-27 23:59:31 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2015-04-27 23:59:31 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2015-04-27 23:59:31 ----A---- C:\Windows\system32\xinput1_2.dll
2015-04-27 23:59:31 ----A---- C:\Windows\system32\xactengine2_3.dll
2015-04-27 23:59:28 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2015-04-27 23:59:28 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2015-04-27 23:59:28 ----A---- C:\Windows\system32\xinput1_1.dll
2015-04-27 23:59:28 ----A---- C:\Windows\system32\xactengine2_2.dll
2015-04-27 23:59:25 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2015-04-27 23:59:25 ----A---- C:\Windows\system32\xactengine2_1.dll
2015-04-27 23:58:58 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2015-04-27 23:58:58 ----A---- C:\Windows\system32\d3dx9_30.dll
2015-04-27 23:58:54 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2015-04-27 23:58:54 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2015-04-27 23:58:54 ----A---- C:\Windows\system32\xactengine2_0.dll
2015-04-27 23:58:54 ----A---- C:\Windows\system32\x3daudio1_0.dll
2015-04-27 23:58:53 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2015-04-27 23:58:53 ----A---- C:\Windows\system32\d3dx9_29.dll
2015-04-27 23:58:51 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2015-04-27 23:58:51 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2015-04-27 23:58:51 ----A---- C:\Windows\system32\d3dx9_28.dll
2015-04-27 23:58:51 ----A---- C:\Windows\system32\d3dx9_27.dll
2015-04-27 23:58:49 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2015-04-27 23:58:49 ----A---- C:\Windows\system32\d3dx9_26.dll
2015-04-27 23:58:48 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2015-04-27 23:58:48 ----A---- C:\Windows\system32\d3dx9_25.dll
2015-04-27 23:58:47 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2015-04-27 23:58:47 ----A---- C:\Windows\system32\d3dx9_24.dll
2015-04-27 16:18:03 ----D---- C:\Program Files\Dolby
2015-04-27 16:17:21 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-04-27 16:17:21 ----D---- C:\Program Files\Realtek
2015-04-27 16:17:03 ----A---- C:\Windows\system32\SRSWOW64.dll
2015-04-27 16:17:03 ----A---- C:\Windows\system32\SRSTSX64.dll
2015-04-27 16:17:03 ----A---- C:\Windows\system32\SRSTSH64.dll
2015-04-27 16:17:02 ----A---- C:\Windows\system32\SRSHP64.dll
2015-04-27 16:17:02 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-04-27 16:17:02 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2015-04-27 16:17:02 ----A---- C:\Windows\system32\RtkCfg64.dll
2015-04-27 16:17:02 ----A---- C:\Windows\system32\RtkAPO64.dll
2015-04-27 16:17:02 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-04-27 16:17:01 ----A---- C:\Windows\system32\RtkApi64.dll
2015-04-27 16:17:01 ----A---- C:\Windows\system32\RTCOM64.dll
2015-04-27 16:17:01 ----A---- C:\Windows\system32\RP3DHT64.dll
2015-04-27 16:17:01 ----A---- C:\Windows\system32\RP3DAA64.dll
2015-04-27 16:17:01 ----A---- C:\Windows\system32\RCoInst64.dll
2015-04-27 16:17:01 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2015-04-27 16:17:00 ----D---- C:\Program Files (x86)\Realtek
2015-04-27 16:17:00 ----A---- C:\Windows\system32\FMAPO64.dll
2015-04-27 16:17:00 ----A---- C:\Windows\system32\AERTAR64.dll
2015-04-27 16:17:00 ----A---- C:\Windows\system32\AERTAC64.dll
2015-04-27 16:16:58 ----HD---- C:\Program Files (x86)\Temp
2015-04-27 16:16:58 ----A---- C:\Windows\RtlExUpd.dll
2015-04-27 15:27:34 ----D---- C:\Users\Admin\AppData\Roaming\ATI
2015-04-27 15:27:34 ----D---- C:\ProgramData\ATI
2015-04-27 15:27:15 ----D---- C:\ProgramData\AMD
2015-04-27 15:27:12 ----D---- C:\Program Files (x86)\AMD AVT
2015-04-27 15:27:08 ----D---- C:\Program Files (x86)\AMD APP
2015-04-27 15:27:00 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-04-27 15:24:05 ----D---- C:\Program Files (x86)\ATI Technologies
2015-04-27 15:23:56 ----D---- C:\Program Files\ATI
2015-04-27 15:18:43 ----D---- C:\Program Files\ATI Technologies
2015-04-27 15:17:31 ----D---- C:\AMD
2015-04-27 14:51:52 ----D---- C:\Update
2015-04-27 14:49:43 ----D---- C:\Program Files\Sony
2015-04-27 14:18:58 ----D---- C:\Users\Admin\AppData\Roaming\DRPSu
2015-04-27 13:35:16 ----D---- C:\Users\Admin\AppData\Roaming\Sony Corporation
2015-04-27 13:35:00 ----D---- C:\ProgramData\Sony Corporation
2015-04-27 13:35:00 ----D---- C:\Program Files (x86)\Sony
2015-04-27 13:34:59 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-27 07:56:20 ----A---- C:\Windows\explorer.exe
2015-04-27 07:56:19 ----A---- C:\Windows\SYSWOW64\explorer.exe
2015-04-27 07:54:21 ----A---- C:\Windows\system32\d3d10warp.dll
2015-04-27 07:54:20 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-04-27 07:54:19 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-04-27 07:54:19 ----A---- C:\Windows\system32\d2d1.dll
2015-04-27 07:51:49 ----A---- C:\Windows\system32\spoolsv.exe
2015-04-27 07:51:48 ----A---- C:\Windows\splwow64.exe
2015-04-26 22:23:45 ----D---- C:\Program Files (x86)\Steam
2015-04-26 22:19:49 ----D---- C:\ProgramData\panda_url_filtering
2015-04-26 22:19:48 ----D---- C:\ProgramData\Panda Security URL Filtering
2015-04-26 22:19:08 ----D---- C:\Program Files (x86)\pandasecuritytb
2015-04-26 22:19:03 ----D---- C:\Users\Admin\AppData\Roaming\Panda Security
2015-04-26 22:18:33 ----D---- C:\Program Files (x86)\Panda Security
2015-04-26 22:15:42 ----D---- C:\ProgramData\Panda Security
2015-04-26 22:12:27 ----D---- C:\Program Files (x86)\Google
2015-04-26 21:55:00 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-04-26 21:55:00 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-04-26 21:54:53 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-04-26 21:54:53 ----A---- C:\Windows\system32\WMPhoto.dll
2015-04-26 21:47:42 ----D---- C:\Users\Admin\AppData\Roaming\Adobe
2015-04-26 21:38:18 ----SD---- C:\Windows\SYSWOW64\GWX
2015-04-26 21:38:18 ----SD---- C:\Windows\system32\GWX
2015-04-26 21:38:17 ----SD---- C:\Windows\system32\CompatTel
2015-04-26 21:38:17 ----D---- C:\Windows\system32\appraiser
2015-04-26 21:13:24 ----A---- C:\Windows\system32\IEUDINIT.EXE
2015-04-26 21:05:09 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\wextract.exe
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\url.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\msls31.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\mshta.exe
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\inseng.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2015-04-26 21:05:05 ----A---- C:\Windows\SYSWOW64\icardie.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\wextract.exe
2015-04-26 21:05:05 ----A---- C:\Windows\system32\webcheck.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\url.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-04-26 21:05:05 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-04-26 21:05:05 ----A---- C:\Windows\system32\pngfilt.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\occache.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\msls31.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\mshtmler.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\mshta.exe
2015-04-26 21:05:05 ----A---- C:\Windows\system32\msfeedssync.exe
2015-04-26 21:05:05 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\licmgr10.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\jsIntl.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\inseng.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\imgutil.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\iexpress.exe
2015-04-26 21:05:05 ----A---- C:\Windows\system32\iesysprep.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\iepeers.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\ieapfltr.dat
2015-04-26 21:05:05 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\icardie.dll
2015-04-26 21:05:05 ----A---- C:\Windows\system32\elshyph.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-04-26 21:02:32 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2015-04-26 21:02:32 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\XpsPrint.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\UIAnimation.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\dxgi.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\d3d10level9.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\d3d10core.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\d3d10_1.dll
2015-04-26 21:02:32 ----A---- C:\Windows\system32\d3d10.dll
2015-04-26 19:38:21 ----D---- C:\Windows\system32\MRT
2015-04-26 19:38:17 ----A---- C:\Windows\system32\MRT.exe
2015-04-26 19:28:23 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2015-04-26 19:28:23 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2015-04-26 19:28:22 ----A---- C:\Windows\system32\WUDFx.dll
2015-04-26 19:28:22 ----A---- C:\Windows\system32\WUDFSvc.dll
2015-04-26 19:28:22 ----A---- C:\Windows\system32\WUDFPlatform.dll
2015-04-26 19:28:22 ----A---- C:\Windows\system32\WUDFHost.exe
2015-04-26 19:28:22 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2015-04-26 11:27:46 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\system32\KBDYAK.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\system32\KBDTAT.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\system32\KBDRU1.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\system32\KBDRU.DLL
2015-04-26 11:27:46 ----A---- C:\Windows\system32\KBDBASH.DLL
2015-04-26 11:27:45 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-04-26 11:27:44 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-04-26 11:27:42 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2015-04-26 11:27:42 ----A---- C:\Windows\SYSWOW64\esent.dll
2015-04-26 11:27:42 ----A---- C:\Windows\system32\fsutil.exe
2015-04-26 11:27:42 ----A---- C:\Windows\system32\esent.dll
2015-04-26 11:27:42 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-04-26 11:27:42 ----A---- C:\Windows\system32\drivers\nvstor.sys
2015-04-26 11:27:42 ----A---- C:\Windows\system32\drivers\nvraid.sys
2015-04-26 11:27:42 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2015-04-26 11:27:42 ----A---- C:\Windows\system32\drivers\amdxata.sys
2015-04-26 11:27:42 ----A---- C:\Windows\system32\drivers\amdsata.sys
2015-04-24 14:00:11 ----D---- C:\Windows\SYSWOW64\Wat
2015-04-24 14:00:11 ----D---- C:\Windows\system32\Wat
2015-04-24 13:49:52 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2015-04-24 13:49:51 ----A---- C:\Windows\SYSWOW64\wmi.dll
2015-04-24 13:49:51 ----A---- C:\Windows\system32\wmi.dll
2015-04-24 13:42:02 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2015-04-24 13:42:02 ----A---- C:\Windows\SYSWOW64\icardres.dll
2015-04-24 13:42:02 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2015-04-24 13:42:02 ----A---- C:\Windows\system32\infocardapi.dll
2015-04-24 13:42:02 ----A---- C:\Windows\system32\icardres.dll
2015-04-24 13:42:02 ----A---- C:\Windows\system32\icardagt.exe
2015-04-24 13:41:51 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2015-04-24 13:41:51 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-04-24 13:39:46 ----A---- C:\Windows\system32\powertracker.dll
2015-04-24 13:39:46 ----A---- C:\Windows\system32\perftrack.dll
2015-04-24 13:39:45 ----A---- C:\Windows\SYSWOW64\wdi.dll
2015-04-24 13:39:45 ----A---- C:\Windows\system32\wdi.dll
2015-04-24 13:39:45 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2015-04-24 13:39:45 ----A---- C:\Windows\system32\drivers\usbcir.sys
2015-04-24 13:39:29 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-04-24 13:39:28 ----A---- C:\Windows\system32\drivers\netio.sys
2015-04-24 13:39:28 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-04-24 13:39:22 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-04-24 13:39:22 ----A---- C:\Windows\system32\drmv2clt.dll
2015-04-24 13:39:22 ----A---- C:\Windows\system32\blackbox.dll
2015-04-24 13:39:21 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-04-24 13:39:20 ----A---- C:\Windows\system32\mf.dll
2015-04-24 13:39:19 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-04-24 13:39:19 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-04-24 13:39:19 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-04-24 13:39:18 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-04-24 13:39:17 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-04-24 13:39:17 ----A---- C:\Windows\system32\crypt32.dll
2015-04-24 13:39:16 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-04-24 13:39:16 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-04-24 13:39:16 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-04-24 13:39:16 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-04-24 13:39:16 ----A---- C:\Windows\system32\ci.dll
2015-04-24 13:39:15 ----A---- C:\Windows\system32\wintrust.dll
2015-04-24 13:39:15 ----A---- C:\Windows\system32\winresume.exe
2015-04-24 13:39:15 ----A---- C:\Windows\system32\winload.exe
2015-04-24 13:39:15 ----A---- C:\Windows\system32\quartz.dll
2015-04-24 13:39:15 ----A---- C:\Windows\system32\cryptsvc.dll
2015-04-24 13:39:15 ----A---- C:\Windows\system32\audiosrv.dll
2015-04-24 13:39:14 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-04-24 13:39:14 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-04-24 13:39:14 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-04-24 13:39:14 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-04-24 13:39:14 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-04-24 13:39:14 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\qdvd.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\pcasvc.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\mfplat.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\evr.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\cryptui.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\cryptnet.dll
2015-04-24 13:39:14 ----A---- C:\Windows\system32\AudioEng.dll
2015-04-24 13:39:13 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-04-24 13:39:13 ----A---- C:\Windows\system32\EncDump.dll
2015-04-24 13:39:13 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-04-24 13:39:12 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-04-24 13:39:12 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-04-24 13:39:12 ----A---- C:\Windows\system32\cryptsp.dll
2015-04-24 13:39:12 ----A---- C:\Windows\system32\AudioSes.dll
2015-04-24 13:39:11 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-04-24 13:39:11 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-04-24 13:39:11 ----A---- C:\Windows\system32\msscp.dll
2015-04-24 13:39:10 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-04-24 13:39:10 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-04-24 13:39:10 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-04-24 13:39:10 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-04-24 13:39:10 ----A---- C:\Windows\system32\rrinstaller.exe
2015-04-24 13:39:10 ----A---- C:\Windows\system32\msnetobj.dll
2015-04-24 13:39:10 ----A---- C:\Windows\system32\drivers\appid.sys
2015-04-24 13:39:10 ----A---- C:\Windows\system32\audiodg.exe
2015-04-24 13:39:10 ----A---- C:\Windows\system32\appidsvc.dll
2015-04-24 13:39:10 ----A---- C:\Windows\system32\appidapi.dll
2015-04-24 13:39:09 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-04-24 13:39:09 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-04-24 13:39:09 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-04-24 13:39:09 ----A---- C:\Windows\system32\pcawrk.exe
2015-04-24 13:39:09 ----A---- C:\Windows\system32\pcadm.dll
2015-04-24 13:39:09 ----A---- C:\Windows\system32\msmmsp.dll
2015-04-24 13:39:09 ----A---- C:\Windows\system32\mfps.dll
2015-04-24 13:39:09 ----A---- C:\Windows\system32\mfpmp.exe
2015-04-24 13:39:09 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-04-24 13:39:09 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-04-24 13:39:08 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-04-24 13:39:08 ----A---- C:\Windows\system32\pcalua.exe
2015-04-24 13:39:08 ----A---- C:\Windows\system32\pcaevts.dll
2015-04-24 13:39:08 ----A---- C:\Windows\system32\mferror.dll
2015-04-24 13:38:29 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2015-04-24 13:38:29 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2015-04-24 13:38:29 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2015-04-24 13:38:29 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2015-04-24 13:38:29 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2015-04-24 13:38:29 ----A---- C:\Windows\system32\RMActivate_isv.exe
2015-04-24 13:38:29 ----A---- C:\Windows\system32\RMActivate.exe
2015-04-24 13:38:28 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2015-04-24 13:38:28 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2015-04-24 13:38:28 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2015-04-24 13:38:28 ----A---- C:\Windows\SYSWOW64\secproc.dll
2015-04-24 13:38:28 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2015-04-24 13:38:28 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2015-04-24 13:38:28 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2015-04-24 13:38:28 ----A---- C:\Windows\system32\secproc_ssp.dll
2015-04-24 13:38:28 ----A---- C:\Windows\system32\secproc_isv.dll
2015-04-24 13:38:28 ----A---- C:\Windows\system32\secproc.dll
2015-04-24 13:38:28 ----A---- C:\Windows\system32\msdrm.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\invagent.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\generaltel.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\devinv.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\appraiser.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\aitstatic.exe
2015-04-24 13:38:23 ----A---- C:\Windows\system32\aepic.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\aepdu.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\aeinv.dll
2015-04-24 13:38:23 ----A---- C:\Windows\system32\acmigration.dll
2015-04-24 13:38:04 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-24 13:38:04 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-24 13:38:04 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-24 13:38:04 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-24 13:38:04 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-24 13:38:04 ----A---- C:\Windows\system32\wucltux.dll
2015-04-24 13:38:04 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-24 13:38:04 ----A---- C:\Windows\system32\wuapp.exe
2015-04-24 13:38:04 ----A---- C:\Windows\system32\wuapi.dll
2015-04-24 13:38:04 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-24 13:38:03 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-24 13:38:03 ----A---- C:\Windows\system32\wups2.dll
2015-04-24 13:38:03 ----A---- C:\Windows\system32\wups.dll
2015-04-24 13:38:03 ----A---- C:\Windows\system32\wudriver.dll
2015-04-24 13:38:03 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-24 13:38:03 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-24 13:37:58 ----A---- C:\Windows\system32\ncsi.dll
2015-04-24 13:37:56 ----A---- C:\Windows\system32\netcorehc.dll
2015-04-24 13:37:56 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-04-24 13:37:55 ----A---- C:\Windows\SYSWOW64\netevent.dll
2015-04-24 13:37:55 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2015-04-24 13:37:55 ----A---- C:\Windows\system32\nlaapi.dll
2015-04-24 13:37:55 ----A---- C:\Windows\system32\netevent.dll
2015-04-24 13:37:55 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-04-24 13:37:47 ----A---- C:\Windows\SYSWOW64\objsel.dll
2015-04-24 13:37:47 ----A---- C:\Windows\system32\objsel.dll
2015-04-24 13:37:46 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2015-04-24 13:37:46 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\system32\wincredprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\system32\dpapiprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\system32\dimsroam.dll
2015-04-24 13:37:46 ----A---- C:\Windows\system32\cngprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\system32\capiprovider.dll
2015-04-24 13:37:46 ----A---- C:\Windows\system32\adprovider.dll
2015-04-24 13:37:22 ----A---- C:\Windows\system32\winlogon.exe
2015-04-24 13:37:20 ----A---- C:\Windows\SYSWOW64\winsta.dll
2015-04-24 13:37:20 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-04-24 13:37:20 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2015-04-24 13:37:20 ----A---- C:\Windows\system32\winsta.dll
2015-04-24 13:37:20 ----A---- C:\Windows\system32\tsgqec.dll
2015-04-24 13:37:20 ----A---- C:\Windows\system32\rdrmemptylst.exe
2015-04-24 13:37:20 ----A---- C:\Windows\system32\rdpwsx.dll
2015-04-24 13:37:20 ----A---- C:\Windows\system32\rdpcorekmts.dll
2015-04-24 13:37:20 ----A---- C:\Windows\system32\mstsc.exe
2015-04-24 13:37:20 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-04-24 13:37:20 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-04-24 13:37:20 ----A---- C:\Windows\system32\aaclient.dll
2015-04-24 13:37:08 ----A---- C:\Windows\system32\termsrv.dll
2015-04-24 13:37:02 ----A---- C:\Windows\system32\d3d11.dll
2015-04-24 13:37:01 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2015-04-24 13:37:01 ----A---- C:\Windows\system32\tquery.dll
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-04-24 13:37:00 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2015-04-24 13:37:00 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-04-24 13:37:00 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-04-24 13:37:00 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-04-24 13:37:00 ----A---- C:\Windows\system32\mssvp.dll
2015-04-24 13:37:00 ----A---- C:\Windows\system32\mssrch.dll
2015-04-24 13:37:00 ----A---- C:\Windows\system32\mssphtb.dll
2015-04-24 13:37:00 ----A---- C:\Windows\system32\mssph.dll
2015-04-24 13:37:00 ----A---- C:\Windows\system32\msscntrs.dll
2015-04-24 13:36:58 ----A---- C:\Windows\SYSWOW64\osk.exe
2015-04-24 13:36:58 ----A---- C:\Windows\system32\osk.exe
2015-04-24 13:36:56 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2015-04-24 13:36:56 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2015-04-24 13:36:56 ----A---- C:\Windows\system32\mfc42u.dll
2015-04-24 13:36:56 ----A---- C:\Windows\system32\mfc42.dll
2015-04-24 13:36:46 ----A---- C:\Windows\SYSWOW64\gameux.dll
2015-04-24 13:36:46 ----A---- C:\Windows\system32\Wpc.dll
2015-04-24 13:36:46 ----A---- C:\Windows\system32\gameux.dll
2015-04-24 13:36:45 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2015-04-24 13:36:30 ----A---- C:\Windows\SYSWOW64\mscories.dll
2015-04-24 13:36:30 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2015-04-24 13:36:30 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2015-04-24 13:36:30 ----A---- C:\Windows\system32\mscories.dll
2015-04-24 13:36:30 ----A---- C:\Windows\system32\mscorier.dll
2015-04-24 13:36:30 ----A---- C:\Windows\system32\dfshim.dll
2015-04-24 13:36:29 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-04-24 13:36:29 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-04-24 13:36:29 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-04-24 13:36:29 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-04-24 13:36:29 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-04-24 13:36:29 ----A---- C:\Windows\system32\lpk.dll
2015-04-24 13:36:29 ----A---- C:\Windows\system32\fontsub.dll
2015-04-24 13:36:29 ----A---- C:\Windows\system32\dciman32.dll
2015-04-24 13:36:29 ----A---- C:\Windows\system32\atmlib.dll
2015-04-24 13:36:29 ----A---- C:\Windows\system32\atmfd.dll
2015-04-24 13:36:22 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2015-04-24 13:36:22 ----A---- C:\Windows\SYSWOW64\credui.dll
2015-04-24 13:36:22 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2015-04-24 13:36:22 ----A---- C:\Windows\system32\credui.dll
2015-04-24 13:36:00 ----A---- C:\Windows\system32\OxpsConverter.exe
2015-04-24 13:35:59 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2015-04-24 13:35:59 ----A---- C:\Windows\system32\dhcpcore6.dll
2015-04-24 13:35:58 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2015-04-24 13:35:58 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-04-24 13:35:56 ----A---- C:\Windows\system32\shell32.dll
2015-04-24 13:35:55 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-04-24 13:35:54 ----A---- C:\Windows\SYSWOW64\webio.dll
2015-04-24 13:35:54 ----A---- C:\Windows\system32\webio.dll
2015-04-24 13:35:50 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2015-04-24 13:35:50 ----A---- C:\Windows\system32\TSWorkspace.dll
2015-04-24 13:35:48 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-24 13:35:48 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-24 13:35:48 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-24 13:35:48 ----A---- C:\Windows\system32\msxml3.dll
2015-04-24 13:35:30 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-04-24 13:35:24 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2015-04-24 13:35:24 ----A---- C:\Windows\system32\ntshrui.dll
2015-04-24 13:35:22 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-04-24 13:35:22 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-04-24 13:35:22 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2015-04-24 13:35:22 ----A---- C:\Windows\system32\nlasvc.dll
2015-04-24 13:35:22 ----A---- C:\Windows\system32\imagehlp.dll
2015-04-24 13:35:20 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-04-24 13:35:19 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2015-04-24 13:35:19 ----A---- C:\Windows\system32\cdd.dll
2015-04-24 13:35:18 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2015-04-24 13:35:18 ----A---- C:\Windows\system32\dpnet.dll
2015-04-24 13:35:15 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2015-04-24 13:35:15 ----A---- C:\Windows\system32\sbe.dll
2015-04-24 13:35:15 ----A---- C:\Windows\system32\CPFilters.dll
2015-04-24 13:35:14 ----A---- C:\Windows\SYSWOW64\sbe.dll
2015-04-24 13:35:13 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2015-04-24 13:35:13 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2015-04-24 13:35:13 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2015-04-24 13:35:13 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2015-04-24 13:35:13 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2015-04-24 13:35:13 ----A---- C:\Windows\system32\odbctrac.dll
2015-04-24 13:35:13 ----A---- C:\Windows\system32\odbccu32.dll
2015-04-24 13:35:13 ----A---- C:\Windows\system32\odbccr32.dll
2015-04-24 13:35:13 ----A---- C:\Windows\system32\odbccp32.dll
2015-04-24 13:35:11 ----A---- C:\Windows\system32\drivers\ataport.sys
2015-04-24 13:35:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-04-24 13:35:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-04-24 13:35:10 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-04-24 13:35:08 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2015-04-24 13:35:08 ----A---- C:\Windows\system32\xmllite.dll
2015-04-24 13:35:07 ----A---- C:\Windows\SYSWOW64\qedit.dll
2015-04-24 13:35:07 ----A---- C:\Windows\system32\qedit.dll
2015-04-24 13:35:05 ----A---- C:\Windows\system32\wwansvc.dll
2015-04-24 13:35:05 ----A---- C:\Windows\system32\wwanprotdim.dll
2015-04-24 13:35:04 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-04-24 13:35:04 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-04-24 13:35:04 ----A---- C:\Windows\system32\wer.dll
2015-04-24 13:35:04 ----A---- C:\Windows\system32\ubpm.dll
2015-04-24 13:35:03 ----A---- C:\Windows\system32\drivers\afd.sys
2015-04-24 13:35:02 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-04-24 13:35:02 ----A---- C:\Windows\system32\Wdfres.dll
2015-04-24 13:35:02 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-04-24 13:35:02 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-04-24 13:35:02 ----A---- C:\Windows\system32\comctl32.dll
2015-04-24 13:35:00 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2015-04-24 13:35:00 ----A---- C:\Windows\system32\msieftp.dll
2015-04-24 13:35:00 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-04-24 13:35:00 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-04-24 13:35:00 ----A---- C:\Windows\system32\drivers\srv.sys
2015-04-24 13:34:59 ----A---- C:\Windows\system32\profsvc.dll
2015-04-24 13:34:58 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2015-04-24 13:34:58 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-04-24 13:34:57 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-04-24 13:34:56 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2015-04-24 13:34:55 ----A---- C:\Windows\system32\drivers\hidparse.sys
2015-04-24 13:34:55 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-04-24 13:34:54 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2015-04-24 13:34:54 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-04-24 13:34:54 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-04-24 13:34:53 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-04-24 13:34:53 ----A---- C:\Windows\system32\usp10.dll
2015-04-24 13:34:51 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-04-24 13:34:51 ----A---- C:\Windows\system32\WebClnt.dll
2015-04-24 13:34:51 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-04-24 13:34:51 ----A---- C:\Windows\system32\davclnt.dll
2015-04-24 13:34:50 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-04-24 13:34:49 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2015-04-24 13:34:49 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2015-04-24 13:34:49 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-04-24 13:34:49 ----A---- C:\Windows\system32\dnscacheugc.exe
2015-04-24 13:34:49 ----A---- C:\Windows\system32\dnsapi.dll
2015-04-24 13:34:44 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-04-24 13:34:44 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2015-04-24 13:34:43 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2015-04-24 13:34:43 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-04-24 13:34:43 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-04-24 13:34:43 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-04-24 13:34:38 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-04-24 13:34:38 ----A---- C:\Windows\system32\drivers\drmk.sys
2015-04-24 13:34:25 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-04-24 13:34:24 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-24 13:34:24 ----A---- C:\Windows\system32\gdi32.dll
2015-04-24 13:34:19 ----A---- C:\Windows\system32\drivers\partmgr.sys
2015-04-24 13:33:56 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2015-04-24 13:33:56 ----A---- C:\Windows\system32\mswsock.dll
2015-04-24 13:33:52 ----A---- C:\Windows\system32\drivers\cng.sys
2015-04-24 13:33:30 ----A---- C:\Windows\system32\scavengeui.dll
2015-04-24 13:33:09 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-04-24 13:33:09 ----A---- C:\Windows\system32\pku2u.dll
2015-04-24 13:32:56 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-04-24 13:32:53 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2015-04-24 13:32:53 ----A---- C:\Windows\system32\shdocvw.dll
2015-04-24 13:32:35 ----A---- C:\Windows\SYSWOW64\certutil.exe
2015-04-24 13:32:35 ----A---- C:\Windows\SYSWOW64\certenc.dll
2015-04-24 13:32:35 ----A---- C:\Windows\system32\certutil.exe
2015-04-24 13:32:35 ----A---- C:\Windows\system32\certenc.dll
2015-04-24 13:32:29 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2015-04-24 13:32:29 ----A---- C:\Windows\system32\cryptdlg.dll
2015-04-24 13:32:27 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2015-04-24 13:32:27 ----A---- C:\Windows\system32\msvcrt.dll
2015-04-24 13:32:21 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-04-24 13:32:21 ----A---- C:\Windows\system32\mstscax.dll
2015-04-24 13:32:20 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2015-04-24 13:32:17 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2015-04-24 13:32:17 ----A---- C:\Windows\system32\cdosys.dll
2015-04-24 13:32:13 ----A---- C:\Windows\system32\msi.dll
2015-04-24 13:32:12 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-04-24 13:32:12 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-04-24 13:32:12 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-04-24 13:32:12 ----A---- C:\Windows\system32\msihnd.dll
2015-04-24 13:32:12 ----A---- C:\Windows\system32\consent.exe
2015-04-24 13:32:12 ----A---- C:\Windows\system32\authui.dll
2015-04-24 13:32:12 ----A---- C:\Windows\system32\appinfo.dll
2015-04-24 13:32:06 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2015-04-24 13:32:06 ----A---- C:\Windows\system32\oleacc.dll
2015-04-24 13:32:03 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2015-04-24 13:32:03 ----A---- C:\Windows\system32\iologmsg.dll
2015-04-24 13:32:03 ----A---- C:\Windows\system32\drivers\storport.sys
2015-04-24 13:32:03 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-04-24 13:32:03 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2015-04-24 13:31:59 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-04-24 13:31:59 ----A---- C:\Windows\system32\tzres.dll
2015-04-24 13:31:52 ----A---- C:\Windows\SYSWOW64\synceng.dll
2015-04-24 13:31:52 ----A---- C:\Windows\system32\synceng.dll
2015-04-24 13:31:51 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2015-04-24 13:31:51 ----A---- C:\Windows\system32\win32spl.dll
2015-04-24 13:31:49 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2015-04-24 13:31:49 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2015-04-24 13:31:49 ----A---- C:\Windows\SYSWOW64\devobj.dll
2015-04-24 13:31:49 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2015-04-24 13:31:49 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-04-24 13:31:48 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2015-04-24 13:31:48 ----A---- C:\Windows\system32\psisdecd.dll
2015-04-24 13:31:48 ----A---- C:\Windows\system32\localspl.dll
2015-04-24 13:31:47 ----A---- C:\Windows\system32\taskhost.exe
2015-04-24 13:31:46 ----A---- C:\Windows\system32\EncDec.dll
2015-04-24 13:31:45 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2015-04-24 13:31:44 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2015-04-24 13:31:44 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2015-04-24 13:31:44 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2015-04-24 13:31:44 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2015-04-24 13:31:44 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2015-04-24 13:31:44 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-04-24 13:31:44 ----A---- C:\Windows\system32\WsmSvc.dll
2015-04-24 13:31:44 ----A---- C:\Windows\system32\WsmAuto.dll
2015-04-24 13:31:44 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-04-24 13:31:44 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-04-24 13:31:43 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-04-24 13:31:43 ----A---- C:\Windows\system32\scesrv.dll
2015-04-24 13:31:42 ----A---- C:\Windows\system32\inetcomm.dll
2015-04-24 13:31:41 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-04-24 13:31:40 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-04-24 13:31:40 ----A---- C:\Windows\system32\msctf.dll
2015-04-24 13:31:39 ----A---- C:\Windows\system32\drivers\bowser.sys
2015-04-24 13:31:38 ----A---- C:\Windows\system32\kdusb.dll
2015-04-24 13:31:38 ----A---- C:\Windows\system32\kdcom.dll
2015-04-24 13:31:38 ----A---- C:\Windows\system32\kd1394.dll
2015-04-24 13:31:36 ----A---- C:\Windows\system32\FXSCOVER.exe
2015-04-24 13:31:31 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2015-04-24 13:31:31 ----A---- C:\Windows\system32\prevhost.exe
2015-04-24 13:31:30 ----A---- C:\Windows\SYSWOW64\charmap.exe
2015-04-24 13:31:30 ----A---- C:\Windows\system32\charmap.exe
2015-04-24 13:31:30 ----A---- C:\Windows\system32\drivers\fvevol.sys
2015-04-24 13:31:29 ----A---- C:\Windows\SYSWOW64\rastls.dll
2015-04-24 13:31:29 ----A---- C:\Windows\system32\rastls.dll
2015-04-24 13:31:28 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-04-24 13:31:28 ----A---- C:\Windows\system32\oleaut32.dll
2015-04-24 13:31:27 ----A---- C:\Windows\system32\msxml6.dll
2015-04-24 13:31:26 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2015-04-24 13:31:26 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-04-24 13:31:26 ----A---- C:\Windows\system32\msxml6r.dll
2015-04-24 13:31:24 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-04-24 13:31:24 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-04-24 13:31:24 ----A---- C:\Windows\system32\nshwfp.dll
2015-04-24 13:31:24 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-04-24 13:31:24 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-04-24 13:31:23 ----A---- C:\Windows\SYSWOW64\packager.dll
2015-04-24 13:31:23 ----A---- C:\Windows\system32\packager.dll
2015-04-24 13:31:22 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-24 13:31:22 ----A---- C:\Windows\system32\browser.dll
2015-04-24 13:31:21 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2015-04-24 13:31:21 ----A---- C:\Windows\SYSWOW64\browcli.dll
2015-04-24 13:31:21 ----A---- C:\Windows\system32\netapi32.dll
2015-04-24 13:31:21 ----A---- C:\Windows\system32\browcli.dll
2015-04-24 13:31:20 ----A---- C:\Windows\SYSWOW64\wscript.exe
2015-04-24 13:31:20 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2015-04-24 13:31:20 ----A---- C:\Windows\SYSWOW64\cscript.exe
2015-04-24 13:31:20 ----A---- C:\Windows\system32\wscript.exe
2015-04-24 13:31:20 ----A---- C:\Windows\system32\scrrun.dll
2015-04-24 13:31:20 ----A---- C:\Windows\system32\cscript.exe
2015-04-24 13:31:19 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-24 13:31:19 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-24 13:31:19 ----A---- C:\Windows\system32\clfs.sys
2015-04-24 13:08:46 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-04-24 13:08:46 ----A---- C:\Windows\system32\rpcrt4.dll
2015-04-24 12:55:10 ----D---- C:\Program Files (x86)\Adobe
2015-04-24 12:54:17 ----D---- C:\ProgramData\Adobe
2015-04-24 12:53:44 ----A---- C:\Windows\SYSWOW64\unrar.dll
2015-04-24 12:53:44 ----A---- C:\Windows\system32\unrar64.dll
2015-04-24 12:53:38 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2015-04-24 12:50:56 ----D---- C:\Program Files (x86)\Microsoft Works
2015-04-24 12:50:49 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2015-04-24 12:50:41 ----D---- C:\Windows\PCHEALTH
2015-04-24 12:50:41 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-04-24 12:49:02 ----D---- C:\Program Files\Microsoft Office
2015-04-24 12:48:36 ----D---- C:\ProgramData\Microsoft Help
2015-04-24 12:48:36 ----D---- C:\Program Files (x86)\Microsoft Office
2015-04-24 12:48:26 ----SHD---- C:\Windows\Installer
2015-04-24 12:48:12 ----RHD---- C:\MSOCache
2015-04-24 11:47:02 ----D---- C:\Windows\Panther
2015-04-24 11:31:16 ----D---- C:\Users\Admin\AppData\Roaming\Mozilla
2015-04-24 11:31:00 ----D---- C:\ProgramData\Mozilla
2015-04-24 11:31:00 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-24 11:17:51 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2015-04-24 11:17:51 ----A---- C:\Windows\system32\rdpcore.dll
2015-04-24 11:17:51 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2015-04-24 10:54:28 ----D---- C:\Users\Admin\AppData\Roaming\Identities
2015-04-24 10:54:11 ----SD---- C:\Users\Admin\AppData\Roaming\Microsoft
2015-04-24 10:54:11 ----D---- C:\Users\Admin\AppData\Roaming\Media Center Programs
2015-04-24 10:54:03 ----SHD---- C:\Recovery
2015-04-24 10:50:40 ----D---- C:\Windows\SoftwareDistribution
2015-04-24 10:48:24 ----D---- C:\Windows\Prefetch
2015-04-24 10:47:37 ----ASH---- C:\pagefile.sys
2015-04-24 10:47:36 ----SHD---- C:\System Volume Information
2015-04-24 10:47:36 ----ASH---- C:\hiberfil.sys
2015-04-21 17:28:16 ----A---- C:\Windows\system32\drivers\PSINAflt.sys

======List of files/folders modified in the last 3 months======

2015-06-11 19:22:17 ----D---- C:\Windows\Temp
2015-06-11 19:12:28 ----D---- C:\Windows\Microsoft.NET
2015-06-11 19:09:22 ----RSD---- C:\Windows\assembly
2015-06-11 19:08:58 ----D---- C:\Windows\System32
2015-06-11 19:08:58 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-06-11 19:08:57 ----D---- C:\Windows\inf
2015-06-11 19:07:18 ----D---- C:\Windows\SysWOW64
2015-06-11 19:03:04 ----D---- C:\Windows\SYSWOW64\en-US
2015-06-11 19:03:04 ----D---- C:\Windows\system32\en-US
2015-06-11 19:02:40 ----SD---- C:\ProgramData\Microsoft
2015-06-11 18:54:16 ----RD---- C:\Program Files
2015-06-11 18:42:16 ----D---- C:\Windows\system32\config
2015-06-11 18:28:31 ----D---- C:\Windows\system32\drivers
2015-06-11 01:35:47 ----D---- C:\Windows\rescache
2015-06-11 00:16:50 ----D---- C:\Windows
2015-06-10 23:51:11 ----D---- C:\Windows\winsxs
2015-06-10 23:29:40 ----D---- C:\Program Files (x86)\Windows Media Player
2015-06-10 23:29:39 ----D---- C:\Program Files\Windows Media Player
2015-06-10 22:31:07 ----D---- C:\Program Files\Internet Explorer
2015-06-10 22:31:06 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-06-10 22:31:05 ----D---- C:\Windows\system32\sk-SK
2015-06-10 22:31:05 ----D---- C:\Windows\PolicyDefinitions
2015-06-10 22:31:04 ----D---- C:\Program Files (x86)\Internet Explorer
2015-06-10 17:09:05 ----D---- C:\Windows\system32\catroot2
2015-05-31 10:28:33 ----D---- C:\Windows\Logs
2015-05-19 08:58:26 ----RD---- C:\Program Files (x86)
2015-05-15 15:15:00 ----HD---- C:\ProgramData
2015-05-15 15:15:00 ----D---- C:\Program Files (x86)\Common Files
2015-05-15 09:17:54 ----D---- C:\Windows\Tasks
2015-05-15 08:59:40 ----D---- C:\Windows\system32\NDF
2015-05-15 02:06:57 ----D---- C:\Windows\system32\drivers\UMDF
2015-05-15 02:04:57 ----D---- C:\Windows\AppPatch
2015-05-15 02:04:55 ----D---- C:\Program Files\Windows Journal
2015-05-15 02:04:54 ----D---- C:\Windows\system32\AdvancedInstallers
2015-05-15 02:04:49 ----D---- C:\Windows\system32\DriverStore
2015-05-07 08:19:38 ----D---- C:\Windows\system32\wdi
2015-05-02 10:12:02 ----D---- C:\Windows\system32\Tasks
2015-04-29 09:53:04 ----D---- C:\Program Files\Common Files
2015-04-27 16:26:42 ----D---- C:\Windows\system32\catroot
2015-04-27 15:24:02 ----D---- C:\Program Files\Common Files\Microsoft Shared
2015-04-27 07:40:31 ----D---- C:\Windows\AppCompat
2015-04-26 23:00:22 ----D---- C:\Windows\system32\LogFiles
2015-04-26 22:18:33 ----RSD---- C:\Windows\Fonts
2015-04-26 21:39:13 ----D---- C:\Windows\ehome
2015-04-26 21:39:11 ----D---- C:\Program Files\Common Files\System
2015-04-26 21:39:03 ----D---- C:\Windows\SYSWOW64\migration
2015-04-26 21:39:01 ----D---- C:\Windows\system32\migration
2015-04-26 21:38:58 ----D---- C:\Windows\SYSWOW64\pt-BR
2015-04-26 21:38:58 ----D---- C:\Windows\SYSWOW64\it-IT
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\zh-TW
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\zh-HK
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\zh-CN
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\tr-TR
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\sv-SE
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\ru-RU
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\pt-PT
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\pl-PL
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\nl-NL
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\nb-NO
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\ko-KR
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\ja-JP
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\hu-HU
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\fr-FR
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\fi-FI
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\es-ES
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\el-GR
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\de-DE
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\da-DK
2015-04-26 21:38:57 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-04-26 21:38:56 ----D---- C:\Windows\system32\pt-PT
2015-04-26 21:38:56 ----D---- C:\Windows\system32\pt-BR
2015-04-26 21:38:56 ----D---- C:\Windows\system32\it-IT
2015-04-26 21:38:55 ----D---- C:\Windows\system32\zh-TW
2015-04-26 21:38:55 ----D---- C:\Windows\system32\zh-HK
2015-04-26 21:38:55 ----D---- C:\Windows\system32\zh-CN
2015-04-26 21:38:55 ----D---- C:\Windows\system32\tr-TR
2015-04-26 21:38:55 ----D---- C:\Windows\system32\sv-SE
2015-04-26 21:38:55 ----D---- C:\Windows\system32\ru-RU
2015-04-26 21:38:55 ----D---- C:\Windows\system32\pl-PL
2015-04-26 21:38:55 ----D---- C:\Windows\system32\nl-NL
2015-04-26 21:38:55 ----D---- C:\Windows\system32\nb-NO
2015-04-26 21:38:55 ----D---- C:\Windows\system32\ko-KR
2015-04-26 21:38:55 ----D---- C:\Windows\system32\ja-JP
2015-04-26 21:38:55 ----D---- C:\Windows\system32\hu-HU
2015-04-26 21:38:55 ----D---- C:\Windows\system32\fr-FR
2015-04-26 21:38:55 ----D---- C:\Windows\system32\fi-FI
2015-04-26 21:38:55 ----D---- C:\Windows\system32\es-ES
2015-04-26 21:38:55 ----D---- C:\Windows\system32\el-GR
2015-04-26 21:38:55 ----D---- C:\Windows\system32\de-DE
2015-04-26 21:38:55 ----D---- C:\Windows\system32\cs-CZ
2015-04-26 21:38:54 ----D---- C:\Windows\system32\da-DK
2015-04-26 21:38:48 ----D---- C:\Windows\SYSWOW64\Dism
2015-04-26 21:38:47 ----D---- C:\Windows\system32\Dism
2015-04-26 21:38:45 ----D---- C:\Windows\system32\CodeIntegrity
2015-04-26 21:38:45 ----D---- C:\Windows\system32\Boot
2015-04-26 21:38:24 ----D---- C:\Windows\system32\drivers\en-US
2015-04-26 21:38:21 ----D---- C:\Program Files\Windows Defender
2015-04-26 21:38:21 ----D---- C:\Program Files (x86)\Windows Defender
2015-04-26 21:38:18 ----D---- C:\Windows\system32\wbem
2015-04-26 19:38:21 ----D---- C:\Windows\debug
2015-04-24 14:00:11 ----D---- C:\Windows\tracing
2015-04-24 12:48:59 ----D---- C:\Windows\ShellNew
2015-04-24 12:48:53 ----A---- C:\Windows\win.ini
2015-04-24 10:56:16 ----D---- C:\Windows\system32\restore
2015-04-24 10:54:25 ----SHD---- C:\$Recycle.Bin
2015-04-24 10:54:11 ----RD---- C:\Users
2015-04-24 10:51:04 ----D---- C:\Windows\system32\sysprep
2015-04-24 10:48:20 ----D---- C:\Windows\CSC

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#2 Příspěvek od orli »

druha polka logu:

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 NNSALPC;NNSAlpc; C:\Windows\system32\DRIVERS\NNSAlpc.sys [2015-02-09 93968]
R1 NNSHTTP;NNSHttp; C:\Windows\system32\DRIVERS\NNSHttp.sys [2015-02-09 202000]
R1 NNSHTTPS;NNSHttps; C:\Windows\system32\DRIVERS\NNSHttps.sys [2015-02-09 110864]
R1 NNSIDS;NNSids; C:\Windows\system32\DRIVERS\NNSIds.sys [2015-02-09 116496]
R1 NNSNAHSL;Network Activity Hook Server LightWeight Filter Driver; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [2014-12-31 48400]
R1 NNSPICC;NNSPicc; C:\Windows\system32\DRIVERS\NNSPicc.sys [2015-02-09 99600]
R1 NNSPIHSW;NNSPihsw; C:\Windows\system32\DRIVERS\NNSPihsw.sys [2015-02-09 69904]
R1 NNSPOP3;NNSPop3; C:\Windows\system32\DRIVERS\NNSPop3.sys [2015-02-09 124176]
R1 NNSPROT;NNSProt; C:\Windows\system32\DRIVERS\NNSProt.sys [2015-02-09 299792]
R1 NNSPRV;NNSPrv; C:\Windows\system32\DRIVERS\NNSPrv.sys [2015-02-09 166160]
R1 NNSSMTP;NNSSmtp; C:\Windows\system32\DRIVERS\NNSSmtp.sys [2015-02-09 113424]
R1 NNSSTRM;NNSStrm; C:\Windows\system32\DRIVERS\NNSStrm.sys [2015-02-09 257296]
R1 NNSTLSC;NNSTlsc; C:\Windows\system32\DRIVERS\NNSTlsc.sys [2015-02-09 106256]
R1 PSINKNC;PSINKnc; C:\Windows\system32\DRIVERS\psinknc.sys [2015-02-25 197392]
R2 PSINAflt;PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [2015-04-21 163600]
R2 PSINFile;PSINFile; C:\Windows\system32\DRIVERS\PSINFile.sys [2015-02-25 121616]
R2 PSINProc;PSINProc; C:\Windows\system32\DRIVERS\PSINProc.sys [2015-02-25 124176]
R2 PSINProt;PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [2015-02-25 133904]
R2 PSINReg;PSINReg; C:\Windows\system32\DRIVERS\PSINReg.sys [2015-02-25 107792]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-04-30 359936]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-10-03 33240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-04-27 1822112]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
R3 panda_url_filteringd;panda_url_filteringd driver; \??\C:\ProgramData\Panda Security URL Filtering\panda_url_filteringd.sys [2014-03-19 51288]
R3 PSKMAD;PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [2015-01-29 61712]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
R3 SFEP;Sony Firmware Extension Parser; C:\Windows\system32\DRIVERS\SFEP.sys [2010-07-26 12032]
R3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
R3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
R3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-04-30 11922944]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2014-08-15 54784]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-05-01 81088]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-04-30 238080]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-01-19 77128]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-26 107848]
R2 NanoServiceMain;Panda Protection Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [2015-02-27 142584]
R2 panda_url_filtering;panda_url_filtering Service; C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filteringb.exe [2014-09-19 296760]
R2 PandaAgent;Panda Devices Agent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [2014-10-09 66808]
R2 PSUAService;Panda Product Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [2015-02-27 38136]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-04-27 189984]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-04-07 643880]
R3 VUAgent;VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [2014-02-28 1642544]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-26 107848]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-05-22 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-05-18 148080]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-06-04 837312]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-04-24 1255736]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Spomaleny, mrznuci NTB

#3 Příspěvek od altrok »

Zdravim :bye:


:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne kose).

:arrow: Nainstalujte MBAM a udelejte vlastni sken vsech disku - http://forum.viry.cz/viewtopic.php?f=29&t=137928
  • Upozorneni: tento sken zabere od 30 minut po nekolik hodin
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#4 Příspěvek od orli »

Pouzil som scan ale nic nenaslo bohuzial.

Malwarebytes Anti-Malware
www.malwarebytes.org

Dátum skenovania: 11. 6. 2015
Scan ??as: 20:09:31
Logfile: malb.txt
Správca: áno

Verzia: 2.01.6.1022
Malware databázy: v2015.04.05.02
Rootkit databázy: v2015.06.02.01
Licencia: Zadarmo
Ochrana pred škodlivým softvérom: Telesne
Škodlivých webových stránok Ochrana: Telesne
Sebaobrany: Telesne

OS: Windows 7 Service Pack 1
CPU: x64
Systém súborov: NTFS
Používateľ: Admin

Typ skenu: Hrozba Scan
Výsledok: Dokon??ené
Objekty naskenované: 348188
Uplynulý ??as: 23 min, 9 sec

Pamäť: Povolené
Pri spustení: Povolené
Súborový systém: Povolené
Archív: Povolené
Rootkity: Telesne
Heuristiky: Povolené
ŠTEŇA: Povolené
VYKUROVAC: Povolené

Procesy: 0
(Žiadne zákernej položky neboli zistené)

Moduly: 0
(Žiadne zákernej položky neboli zistené)

Kľú??e databázy Registry: 0
(Žiadne zákernej položky neboli zistené)

Hodnoty databázy Registry: 0
(Žiadne zákernej položky neboli zistené)

Údaje databázy Registry: 0
(Žiadne zákernej položky neboli zistené)

Prie??inky: 0
(Žiadne zákernej položky neboli zistené)

Súbory: 0
(Žiadne zákernej položky neboli zistené)

Fyzický sektory: 0
(Žiadne zákernej položky neboli zistené)


(end)

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Spomaleny, mrznuci NTB

#5 Příspěvek od altrok »

  • Stahnete Crystal Disk Info (CDI) http://sourceforge.jp/frs/redir.php?m=j ... o6_2_2.zip
  • archiv extrahujte a spustte vyextrahovany soubor DiskInfo.exe
  • ve spustenem programu kliknete nahore na Upravy -> Kopirovat (log mate nyni zkopirovany ve schrance)
  • log vlozte do dalsi odpovedi (Ctrl + V)


:arrow: Dejte log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#6 Příspěvek od orli »

----------------------------------------------------------------------------
CrystalDiskInfo 6.2.2 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Professional SP1 [6.1 Build 7601] (x64)
Date : 2015/06/12 19:15:14

-- Controller Map ----------------------------------------------------------
+ ATA Channel 1 (1) [ATA]
- Optiarc BD ROM BC-5500S4 ATA Device
+ Standard AHCI 1.0 Serial ATA Controller [ATA]
+ ATA Channel 0 (0)
- TOSHIBA MK5055GSX ATA Device
- ATA Channel 1 (1)

-- Disk List ---------------------------------------------------------------
(1) TOSHIBA MK5055GSX : 500,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) TOSHIBA MK5055GSX
----------------------------------------------------------------------------
Model : TOSHIBA MK5055GSX
Firmware : FG001A
Serial Number : 693IF5IWS
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : Unknown
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : ---- | SATA/150
Power On Hours : 29597 hours
Power On Count : 6272 count
Temperature : 44 C (111 F)
Health Status : Caution
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Read Error Rate
02 100 100 _50 000000000000 Throughput Performance
03 100 100 __1 00000000064D Spin-Up Time
04 100 100 __0 000000001918 Start/Stop Count
05 100 100 _50 000000000020 Reallocated Sectors Count
07 100 100 _50 000000000000 Seek Error Rate
08 100 100 _50 000000000000 Seek Time Performance
09 _27 _27 __0 00000000739D Power-On Hours
0A 228 100 _30 000000000000 Spin Retry Count
0C 100 100 __0 000000001880 Power Cycle Count
BF 100 100 __0 0000000000AB G-Sense Error Rate
C0 100 100 __0 000000000023 Power-off Retract Count
C1 _85 _85 __0 000000026A49 Load/Unload Cycle Count
C2 100 100 __0 00320000002C Temperature
C4 100 100 __0 00000000001A Reallocation Event Count
C5 100 100 __0 00000000001F Current Pending Sector Count
C6 100 100 __0 000000000000 Uncorrectable Sector Count
C7 200 200 __0 000000000001 UltraDMA CRC Error Count
DC 100 100 __0 000000000048 Disk Shift
DE _64 _64 __0 000000003940 Loaded Hours
DF 100 100 __0 000000000000 Load/Unload Retry Count
E0 100 100 __0 000000000000 Load Friction
E2 100 100 __0 0000000000F0 Load 'In'-time
F0 100 100 __1 000000000000 Head Flying Hours

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2036 3933 4946 3549 5753
020: 0000 4000 0000 4647 3030 3141 2020 544F 5348 4942
030: 4120 4D4B 3530 3535 4753 5820 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F02 0000 004C 0040
080: 01F8 0000 746B 7D09 6163 7469 3C09 6163 003F 005A
090: 0000 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 4000 0000 5000 0391
110: D700 0B24 0000 0000 0000 0000 0000 0000 0000 0000
120: 0000 0000 0000 0000 0000 0000 0000 0000 0009 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 0039 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 6FA5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 27 00 64 64 4D
020: 06 00 00 00 00 00 04 32 00 64 64 18 19 00 00 00
030: 00 00 05 33 00 64 64 20 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 1B 1B 9D 73 00 00 00
060: 00 00 0A 33 00 E4 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 80 18 00 00 00 00 00 BF 32 00 64 64 AB
080: 00 00 00 00 00 00 C0 32 00 64 64 23 00 00 00 00
090: 00 00 C1 32 00 55 55 49 6A 02 00 00 00 00 C2 22
0A0: 00 64 64 2C 00 00 00 32 00 00 C4 32 00 64 64 1A
0B0: 00 00 00 00 00 00 C5 32 00 64 64 1F 00 00 00 00
0C0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 32
0D0: 00 C8 C8 01 00 00 00 00 00 00 DC 02 00 64 64 48
0E0: 00 00 00 00 00 00 DE 32 00 40 40 40 39 00 00 00
0F0: 00 00 DF 32 00 64 64 00 00 00 00 00 00 00 E0 22
100: 00 64 64 00 00 00 00 00 00 00 E2 26 00 64 64 F0
110: 00 00 00 00 00 00 F0 01 00 64 64 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 78 00 00 5B
170: 03 00 01 00 02 BF 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 20

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 32 00 00 00 00 00 00 00 00 00 00 02 32
010: 00 00 00 00 00 00 00 00 00 00 03 01 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 32 00 00 00 00 00 00 00 00 00 00 07 32
040: 00 00 00 00 00 00 00 00 00 00 08 32 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 1E 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DC 00 00 00 00 00
0E0: 00 00 00 00 00 00 DE 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E0 00
100: 00 00 00 00 00 00 00 00 00 00 E2 00 00 00 00 00
110: 00 00 00 00 00 00 F0 01 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 36

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#7 Příspěvek od orli »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:08-06-2015
Ran by Admin (administrator) on SONY on 12-06-2015 20:09:51
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(Panda Security) C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filteringb.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(forum.viry.cz) C:\Users\Admin\Desktop\FRSTLauncher.exe

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#8 Příspěvek od orli »

Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-06-2015
Ran by Admin at 2015-06-12 20:10:34
Running from C:\Users\Admin\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Admin (S-1-5-21-4134901655-2086103567-1239661727-1000 - Administrator - Enabled) => C:\Users\Admin
Administrator (S-1-5-21-4134901655-2086103567-1239661727-500 - Administrator - Disabled)
Guest (S-1-5-21-4134901655-2086103567-1239661727-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-4134901655-2086103567-1239661727-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Panda Free Antivirus (Enabled - Up to date) {3456760B-FDAA-FFFD-06C2-7BB528D2066C}
AS: Panda Free Antivirus (Enabled - Up to date) {8F3797EF-DB90-F073-3C72-40C753554CD1}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Panda Firewall (Disabled) {0C6DF72E-B7C5-FEA5-2D9D-D280D6014117}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-4134901655-2086103567-1239661727-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
Adobe Reader XI (11.0.11) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{FAF03106-1653-15E1-3C0C-E7AE4FAE6EBF}) (Version: 8.0.877.0 - Advanced Micro Devices, Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Dolby Control Center (HKLM\...\{D035FBF6-FDEF-487D-89CA-6F9DD07B783F}) (Version: 1.2.0702 - Dolby)
Empire: Total War (HKLM-x32\...\Steam App 10500) (Version: - The Creative Assembly)
GlassFish Server Open Source Edition 4.1 (HKLM\...\nbi-glassfish-mod-4.1.0.13.0) (Version: - )
Google Drive (HKLM-x32\...\{35574F09-89F9-4B16-B69B-64F3E25901B8}) (Version: 1.21.9226.6034 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Spoločnosť Google Inc.)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
HydraVision (x32 Version: 4.2.234.0 - Advanced Micro Devices, Inc.) Hidden
iExplorer 3.7.3.0 (HKLM-x32\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version: - Macroplant LLC)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle)
Java SE Development Kit 7 Update 79 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle)
K-Lite Codec Pack 10.2.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.2.0 - )
Malwarebytes Anti-Malware verzia 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Standard 2007 (HKLM-x32\...\STANDARD) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 38.0.1 (x86 sk) (HKLM-x32\...\Mozilla Firefox 38.0.1 (x86 sk)) (Version: 38.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
NetBeans IDE 8.0.2 (HKLM\...\nbi-nb-base-8.0.2.0.201411181905) (Version: 8.0.2 - NetBeans.org)
Out of the Park Baseball 16 (HKLM-x32\...\Out of the Park Baseball16) (Version: 16 - Out of the Park Developments)
Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.04 - Panda Security)
Panda Devices Agent (x32 Version: 1.05.00 - Panda Security) Hidden
Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 15.01.00.0004 - Panda Security)
Panda Free Antivirus (Version: 7.82.00.0000 - Panda Security) Hidden
Panda Security Toolbar (HKLM-x32\...\pandasecuritytb) (Version: 4.2.3.1 - Panda Security)
Panda Security URL Filtering (HKLM-x32\...\Panda Security URL Filtering) (Version: 2.0.2.0 - Panda Security)
Podpora Apple aplikácií (32-bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Podpora Apple aplikácií(64-bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Poedit (HKLM-x32\...\{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1) (Version: 1.7.6 - Vaclav Slavik)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5886 - Realtek Semiconductor Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sublime Text 2.0.2 (HKLM\...\Sublime Text 2_is1) (Version: - )
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
VAIO Control Center (HKLM-x32\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 4.0.0.07280 - Sony Corporation)
VAIO Update (HKLM-x32\...\{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}) (Version: 7.0.1.02280 - Sony Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden
VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04CC27EC-934B-431B-A719-FD075D510732} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2014-02-28] (Sony Corporation)
Task: {1D1C9573-61E5-40A4-ACF9-65492E8EB5B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-26] (Google Inc.)
Task: {261BF95C-813D-41D2-AA0C-C3D0ED08781D} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {354005B5-AA73-43CE-B877-9DEB8B65AE22} - System32\Tasks\{2AE15251-732C-4478-851B-E50CD9B9B231} => pcalua.exe -a "C:\Program Files (x86)\iMobie\PhoneTrans\PhoneTrans.exe" -d "C:\Program Files (x86)\iMobie\PhoneTrans"
Task: {368C17B5-F629-4BBF-A428-F0B9D1E565EC} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation)
Task: {5FE1BFC0-9360-4F26-8879-078E804C1885} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2015-04-24] (Microsoft Corporation)
Task: {632928BE-3F39-45DD-8BD6-09F03FD5FD37} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-26] (Google Inc.)
Task: {9DE09F33-3636-4FC4-8DC0-93CBFFD7AC09} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {CE5EFE37-61C2-4CA6-AA90-D3A4D93CDA42} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {D0EC47C4-3D08-4D6C-8B99-03191FDA0C78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-16] (Microsoft Corporation)
Task: {DAF6E5E6-D807-4DD0-A164-B02C57027D8A} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2014-03-01] (Sony Corporation)
Task: {F590FB0E-D06D-4BB2-91F2-A393A67CBA8D} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Spomaleny, mrznuci NTB

#9 Příspěvek od altrok »

:arrow: Nainstalujte a spustte HD Tune - http://www.hdtune.com/files/hdtune_255.exe
  • Prejdete na zalozku Health a zkontrolujte, ze je ve sloupecku Status vsude hodnota OK a dole sviti zelene Health status: OK
  • Na zalozce Error Scan kliknete na Start. Po dokonceni testu udelejte screen a prilozte ho k dalsi odpovedi.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#10 Příspěvek od orli »

Health a health status vsetko OK

Screenshot ma aj cervene bodky
Přílohy
HDTune_Error_Scan_TOSHIBA_MK5055GSX.png
HDTune_Error_Scan_TOSHIBA_MK5055GSX.png (35.12 KiB) Zobrazeno 2208 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Spomaleny, mrznuci NTB

#11 Příspěvek od altrok »

:arrow: Start -> spustit -> eventvwr, vlevo rozkliknete Protokoly systemu Windows, pravej klik na System, vyberte Ulozit vsechny udalosti jako, typ souboru *.evtx, vysledny soubor zabalte a upnete na leteckou postu - link (odkaz na stazeni) dejte do pristi odpovedi.


:arrow: Spustte jen samotny FRST64.exe (bez FRSTLauncheru) a spustte sken. Obsah logu FRST.txt vlozte do pristi odpovedi.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#12 Příspěvek od orli »

eventviewer: http://leteckaposta.cz/278163774

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-06-2015
Ran by Admin (administrator) on SONY on 14-06-2015 11:24:49
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin (Available Profiles: Admin)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(Panda Security) C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filteringb.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7938080 2015-04-27] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] => C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2015-04-27] (Realtek Semiconductor Corp.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [40184 2015-02-27] (Panda Security, S.L.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642304 2013-04-30] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] => C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [20992 2012-03-19] ()
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [Panda Security URL Filtering] => "C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filtering.exe"
HKU\S-1-5-21-4134901655-2086103567-1239661727-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2892992 2015-06-04] (Valve Corporation)
HKU\S-1-5-21-4134901655-2086103567-1239661727-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21969480 2015-05-19] (Google)
HKU\S-1-5-21-4134901655-2086103567-1239661727-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [393216 2012-11-16] (AMD)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2015-05-19] (Oracle Corporation)
BHO: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-02-10] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-05-19] (Oracle Corporation)
BHO-x32: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-02-10] ()
Toolbar: HKLM - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-02-10] ()
Toolbar: HKLM-x32 - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-02-10] ()
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default
FF Plugin: @java.com/DTPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-05-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-05-19] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Extension: Panda Security Toolbar - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default\Extensions\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} [2015-04-26]
FF Extension: YouTube Video and Audio Downloader - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default\Extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi [2015-05-12]
FF Extension: Firebug - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default\Extensions\firebug@software.joehewitt.com.xpi [2015-04-28]
FF Extension: Download YouTube Videos as MP4 - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2015-05-11]
FF Extension: Video DownloadHelper - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\x1mwknn8.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-05-12]

Chrome:
=======
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (BIODIGITAL HUMAN) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\agoenciogemlojlhccbcpcfflicgnaak [2015-05-02]
CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-15]
CHR Extension: (Adblock Plus) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-05-02]
CHR Extension: (Video Downloader professional) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2015-05-02]
CHR Extension: (AdBlock) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-05-02]
CHR Extension: (No Name) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdikp [2015-06-11]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-04-30]
CHR Extension: (Google Mail Checker) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2015-05-02]
CHR Extension: (Google Wallet) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-26]
CHR HKU\S-1-5-21-4134901655-2086103567-1239661727-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Admin\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2015-05-11]
CHR HKU\S-1-5-21-4134901655-2086103567-1239661727-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [142584 2015-02-27] (Panda Security, S.L.)
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [66808 2014-10-09] (Panda Security, S.L.)
R2 panda_url_filtering; C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filteringb.exe [296760 2014-09-19] (Panda Security)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136 2015-02-27] (Panda Security, S.L.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [189984 2015-04-27] (Realtek Semiconductor)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-28] (Sony Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [93968 2015-02-09] (Panda Security, S.L.)
R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [202000 2015-02-09] (Panda Security, S.L.)
R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [110864 2015-02-09] (Panda Security, S.L.)
R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [116496 2015-02-09] (Panda Security, S.L.)
R1 NNSNAHSL; C:\Windows\System32\DRIVERS\NNSNAHSL.sys [48400 2014-12-31] (Panda Security, S.L.)
R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [99600 2015-02-09] (Panda Security, S.L.)
R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [69904 2015-02-09] (Panda Security, S.L.)
R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [124176 2015-02-09] (Panda Security, S.L.)
R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [299792 2015-02-09] (Panda Security, S.L.)
R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [166160 2015-02-09] (Panda Security, S.L.)
R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [113424 2015-02-09] (Panda Security, S.L.)
R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [257296 2015-02-09] (Panda Security, S.L.)
R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106256 2015-02-09] (Panda Security, S.L.)
R3 panda_url_filteringd; C:\ProgramData\Panda Security URL Filtering\panda_url_filteringd.sys [51288 2014-03-19] (Visicom Media Inc.)
R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [163600 2015-04-21] (Panda Security, S.L.)
R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [121616 2015-02-25] (Panda Security, S.L.)
R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [197392 2015-02-25] (Panda Security, S.L.)
R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124176 2015-02-25] (Panda Security, S.L.)
R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [133904 2015-02-25] (Panda Security, S.L.)
R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [107792 2015-02-25] (Panda Security, S.L.)
R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [61712 2015-01-29] (Panda Security, S.L.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-14 11:24 - 2015-06-14 11:24 - 00000000 ____D C:\Users\Admin\Desktop\FRST-OlderVersion
2015-06-14 11:18 - 2015-06-14 11:18 - 00442078 _____ C:\Users\Admin\Desktop\eventlog.rar
2015-06-14 11:15 - 2015-06-14 11:15 - 07409664 _____ C:\Users\Admin\Desktop\eventlog.evtx
2015-06-14 11:15 - 2015-06-14 11:15 - 00000000 ____D C:\Users\Admin\Desktop\LocaleMetaData
2015-06-13 04:13 - 2015-06-13 04:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2015-06-13 04:13 - 2015-06-13 04:14 - 00000000 ____D C:\Program Files (x86)\HD Tune
2015-06-13 04:10 - 2015-06-13 04:10 - 00642632 _____ (EFD Software ) C:\Users\Admin\Downloads\hdtune_255.exe
2015-06-12 20:10 - 2015-06-12 20:10 - 00009563 _____ C:\Users\Admin\Desktop\Addition.txt
2015-06-12 20:09 - 2015-06-14 11:24 - 00014603 _____ C:\Users\Admin\Desktop\FRST.txt
2015-06-12 19:59 - 2015-06-12 19:59 - 00112640 _____ (forum.viry.cz) C:\Users\Admin\Downloads\FRSTLauncher.exe
2015-06-12 19:58 - 2015-06-14 11:24 - 02109952 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2015-06-12 19:55 - 2015-06-14 11:24 - 00000000 ____D C:\FRST
2015-06-12 19:50 - 2015-06-12 19:50 - 02108928 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe
2015-06-12 19:00 - 2015-06-12 19:13 - 00000000 ____D C:\Users\Admin\Downloads\CrystalDiskInfo6_2_2
2015-06-12 18:34 - 2015-06-12 18:37 - 02817875 _____ C:\Users\Admin\Downloads\CrystalDiskInfo6_2_2.zip
2015-06-11 20:39 - 2015-06-11 20:39 - 00001230 _____ C:\Users\Admin\Desktop\malb.txt
2015-06-11 20:08 - 2015-06-11 20:37 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-06-11 20:07 - 2015-06-11 20:07 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-06-11 20:07 - 2015-06-11 20:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-06-11 20:07 - 2015-06-11 20:07 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-11 20:07 - 2015-06-11 20:07 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-06-11 20:07 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-06-11 20:07 - 2015-04-14 09:37 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-06-11 20:07 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-06-11 20:04 - 2015-06-11 20:06 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-2.1.6.1022.exe
2015-06-11 18:54 - 2015-06-11 19:22 - 00000000 ____D C:\rsit
2015-06-11 18:54 - 2015-06-11 19:22 - 00000000 ____D C:\Program Files\trend micro
2015-06-11 18:53 - 2015-06-11 18:53 - 01222144 _____ C:\Users\Admin\Downloads\RSITx64.exe
2015-06-11 18:47 - 2015-06-11 18:47 - 04151848 _____ (Reason Software Company Inc.) C:\Users\Admin\Downloads\reason-core-security-setup.exe
2015-06-11 00:25 - 2015-06-11 00:25 - 02231296 _____ C:\Users\Admin\Downloads\AdwCleaner.exe
2015-06-10 17:13 - 2015-05-25 20:24 - 05569984 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-06-10 17:13 - 2015-05-25 20:23 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-06-10 17:13 - 2015-05-25 20:23 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-06-10 17:13 - 2015-05-25 20:21 - 01728960 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 01255424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 01162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-06-10 17:13 - 2015-05-25 20:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-06-10 17:13 - 2015-05-25 20:18 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-06-10 17:13 - 2015-05-25 20:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-06-10 17:13 - 2015-05-25 20:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-06-10 17:13 - 2015-05-25 20:18 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-06-10 17:13 - 2015-05-25 20:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-06-10 17:13 - 2015-05-25 20:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 17:13 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 17:13 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-10 17:13 - 2015-05-25 20:07 - 03989440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-06-10 17:13 - 2015-05-25 20:07 - 03934144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-06-10 17:13 - 2015-05-25 20:04 - 01310744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-06-10 17:13 - 2015-05-25 20:01 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-06-10 17:13 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-06-10 17:13 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-06-10 17:13 - 2015-05-25 20:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-06-10 17:13 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-06-10 17:13 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-06-10 17:13 - 2015-05-25 20:00 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-06-10 17:13 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-06-10 17:13 - 2015-05-25 19:59 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-06-10 17:13 - 2015-05-25 19:59 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-06-10 17:13 - 2015-05-25 19:59 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-06-10 17:13 - 2015-05-25 19:59 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-06-10 17:13 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-10 17:13 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 17:13 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 17:13 - 2015-05-22 20:18 - 01021440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-06-10 17:13 - 2015-05-22 20:18 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-06-10 17:13 - 2015-05-22 20:18 - 00700416 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-06-10 17:13 - 2015-05-22 20:18 - 00423424 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-06-10 17:13 - 2015-05-22 20:18 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-06-10 17:13 - 2015-05-22 20:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-06-10 17:13 - 2015-05-22 20:13 - 01119232 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-06-10 17:13 - 2015-05-21 15:19 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-06-10 17:13 - 2015-04-29 20:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-06-10 17:13 - 2015-04-29 20:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-06-10 17:13 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-06-10 17:13 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-06-10 17:13 - 2015-04-29 20:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-06-10 17:13 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-06-10 17:13 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-06-10 17:13 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-06-10 17:13 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-06-10 17:13 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-06-10 17:12 - 2015-06-01 21:16 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-06-10 17:12 - 2015-06-01 20:07 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-06-10 17:12 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-06-10 17:12 - 2015-05-25 20:14 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-06-10 17:12 - 2015-05-25 20:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 20:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-06-10 17:12 - 2015-05-25 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:55 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 19:08 - 03206144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-06-10 17:12 - 2015-05-25 19:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-06-10 17:12 - 2015-05-25 18:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-06-10 17:12 - 2015-05-25 18:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-06-10 17:12 - 2015-05-25 18:48 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 18:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 18:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-10 17:12 - 2015-05-25 18:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-10 17:12 - 2015-05-23 05:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-06-10 17:12 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-06-10 17:12 - 2015-05-23 05:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-06-10 17:12 - 2015-05-23 05:15 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-06-10 17:12 - 2015-05-23 05:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-06-10 17:12 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-06-10 17:12 - 2015-05-23 05:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-06-10 17:12 - 2015-05-23 05:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-06-10 17:12 - 2015-05-23 05:06 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-06-10 17:12 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-06-10 17:12 - 2015-05-23 05:05 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-06-10 17:12 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-06-10 17:12 - 2015-05-23 04:57 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-06-10 17:12 - 2015-05-23 04:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-06-10 17:12 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-06-10 17:12 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-06-10 17:12 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-06-10 17:12 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-06-10 17:12 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-06-10 17:12 - 2015-05-23 04:37 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-06-10 17:12 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-06-10 17:12 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-06-10 17:12 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-06-10 17:12 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-06-10 17:12 - 2015-05-22 21:16 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-06-10 17:12 - 2015-05-22 21:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-06-10 17:12 - 2015-05-22 21:01 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-06-10 17:12 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-06-10 17:12 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-06-10 17:12 - 2015-05-22 21:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-06-10 17:12 - 2015-05-22 20:53 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-06-10 17:12 - 2015-05-22 20:52 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-06-10 17:12 - 2015-05-22 20:47 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-06-10 17:12 - 2015-05-22 20:47 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-06-10 17:12 - 2015-05-22 20:40 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-06-10 17:12 - 2015-05-22 20:29 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-06-10 17:12 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-06-10 17:12 - 2015-05-22 20:07 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-06-10 17:12 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-06-10 17:12 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-06-10 17:12 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-06-10 17:12 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-06-10 17:12 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-06-10 17:12 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-06-10 17:12 - 2015-04-11 05:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-06-10 17:11 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-06-10 17:11 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-06-10 17:11 - 2015-05-23 04:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-06-10 17:11 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-06-10 17:11 - 2015-05-22 20:59 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-06-10 17:11 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-06-10 17:11 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-06-10 17:11 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-06-10 17:11 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-06-10 17:11 - 2015-05-22 20:36 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-06-10 17:11 - 2015-05-22 20:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-06-10 17:11 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-06-10 17:11 - 2015-05-22 20:05 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-06-10 17:11 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-06-10 17:11 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-06-09 18:55 - 2015-06-09 19:04 - 00000000 ____D C:\Users\Admin\Downloads\TURN.S02E10.HDTV.x264-KILLERS[ettv]
2015-06-09 18:54 - 2015-06-09 18:55 - 00030744 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e10.hdtv.x264.killers.ettv.torrent
2015-06-09 08:02 - 2015-01-29 19:21 - 00061712 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys
2015-06-08 18:38 - 2015-06-08 18:58 - 00000000 ____D C:\Users\Admin\Downloads\Game.of.Thrones.S05E09.PROPER.HDTV.x264-KILLERS[ettv]
2015-06-08 18:36 - 2015-06-08 18:36 - 00038698 _____ C:\Users\Admin\Downloads\[kat.cr]game.of.thrones.s05e09.proper.hdtv.x264.killers.ettv (1).torrent
2015-06-08 18:23 - 2015-06-08 18:23 - 00038698 _____ C:\Users\Admin\Downloads\[kat.cr]game.of.thrones.s05e09.proper.hdtv.x264.killers.ettv.torrent
2015-06-07 23:36 - 2015-06-07 23:36 - 04549632 _____ C:\Users\Admin\Downloads\2007-iz-clinic.ppt
2015-06-07 23:03 - 2015-06-07 23:03 - 00611840 _____ C:\Users\Admin\Downloads\izfundamentalsjcu.ppt
2015-06-05 11:45 - 2015-06-05 11:45 - 00281680 _____ C:\Windows\Minidump\060515-22698-01.dmp
2015-06-02 11:38 - 2015-06-02 11:43 - 00000000 ____D C:\Users\Admin\Downloads\TURN.S02E09.HDTV.x264-KILLERS[ettv]
2015-06-02 11:37 - 2015-06-02 11:37 - 00028013 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e09.hdtv.x264.killers.ettv.torrent
2015-06-01 10:24 - 2015-06-01 10:24 - 00000000 ____D C:\Users\Admin\AppData\Local\GWX
2015-06-01 10:01 - 2015-06-01 10:02 - 00000000 ____D C:\Users\Admin\Downloads\Game.of.Thrones.S05E08.HDTV.x264-KILLERS[ettv]
2015-06-01 10:00 - 2015-06-01 10:00 - 00036846 _____ C:\Users\Admin\Downloads\[kat.cr]game.of.thrones.s05e08.hdtv.x264.killers.ettv.torrent
2015-06-01 00:35 - 2015-06-01 00:35 - 00000000 ____D C:\Users\Admin\Downloads\25845_03_big
2015-05-31 21:54 - 2015-05-31 21:55 - 00016106 _____ C:\Users\Admin\Downloads\[kat.cr]the.bree.daniels.experience.new.2015.girlfriends.films.dvd.rip.all.8.split.scenes.torrent
2015-05-31 21:26 - 2015-05-31 23:05 - 303094641 _____ C:\Users\Admin\Downloads\25845_03_big.rar
2015-05-30 14:38 - 2015-06-05 11:45 - 478899409 _____ C:\Windows\MEMORY.DMP
2015-05-30 14:38 - 2015-06-05 11:45 - 00000000 ____D C:\Windows\Minidump
2015-05-30 14:38 - 2015-05-30 14:38 - 00281680 _____ C:\Windows\Minidump\053015-23212-01.dmp
2015-05-28 18:08 - 2015-05-28 18:08 - 00000053 _____ C:\Users\Admin\Downloads\google638cea59eb6d579f.html
2015-05-26 13:19 - 2015-05-26 13:19 - 00000000 ____D C:\Users\Admin\Downloads\TURN.S02E08.HDTV.x264-ASAP[ettv]
2015-05-26 13:17 - 2015-05-26 13:17 - 00024794 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e08.hdtv.x264.asap.ettv.torrent
2015-05-25 09:17 - 2015-05-25 09:17 - 00000000 ____D C:\Users\Admin\Downloads\Game.of.Thrones.S05E07.HDTV.x264-ASAP[ettv]
2015-05-25 09:14 - 2015-05-25 09:14 - 00028987 _____ C:\Users\Admin\Downloads\[kat.cr]game.of.thrones.s05e07.hdtv.x264.asap.ettv.torrent
2015-05-22 15:42 - 2015-05-22 15:42 - 00000000 ____D C:\Users\Admin\Downloads\Turn S02E03 DVB Rip x264 [StB]
2015-05-22 15:40 - 2015-05-22 15:40 - 00015639 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e03.dvb.rip.x264.stb.torrent
2015-05-22 15:37 - 2015-05-22 15:41 - 328925018 _____ C:\Users\Admin\Downloads\TURN.S02E03.HDTV.x264-KILLERS.mp4
2015-05-22 15:36 - 2015-05-22 15:36 - 00013103 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e03.hdtv.x264.killers.eztv.torrent
2015-05-22 13:18 - 2015-05-22 13:34 - 389309153 _____ C:\Users\Admin\Downloads\TURN.S02E01-E02.720p.HDTV.2CH.x265.HEVC-PSA.mkv
2015-05-22 13:16 - 2015-05-22 13:16 - 00008277 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e01.e02.720p.hdtv.2ch.x265.hevc.psa.torrent
2015-05-22 13:16 - 2015-05-22 13:16 - 00000000 ____D C:\Users\Admin\Downloads\TURN.S02E01-E02.720p.HDTV.x264-KILLERS[rarbg]
2015-05-22 13:15 - 2015-05-22 13:15 - 00083987 _____ C:\Users\Admin\Downloads\[kat.cr]turn.s02e01.e02.720p.hdtv.x264.killers.rarbg.torrent
2015-05-21 00:44 - 2015-05-21 00:44 - 00019697 _____ C:\Users\Admin\Downloads\turn.challenge.(2014).eng.1cd.(5699536).zip
2015-05-21 00:44 - 2015-05-21 00:44 - 00000000 ____D C:\Users\Admin\Downloads\turn.challenge.(2014).eng.1cd.(5699536)
2015-05-20 21:43 - 2015-05-20 21:43 - 00000000 ____D C:\Users\Admin\Downloads\turn.mercy.moment.murder.measure.(2014).eng.1cd.(5688973)
2015-05-20 21:41 - 2015-05-20 21:41 - 00018264 _____ C:\Users\Admin\Downloads\turn.mercy.moment.murder.measure.(2014).eng.1cd.(5688973).zip
2015-05-20 21:39 - 2015-05-20 21:39 - 00018892 _____ C:\Users\Admin\Downloads\turn.mercy.moment.murder.measure.(2014).eng.1cd.(5688967).zip
2015-05-20 21:39 - 2015-05-20 21:39 - 00000000 ____D C:\Users\Admin\Downloads\turn.mercy.moment.murder.measure.(2014).eng.1cd.(5688967)
2015-05-20 20:52 - 2015-05-20 20:52 - 00000000 ____D C:\Users\Admin\Downloads\turn.mr.culpeper.(2014).eng.1cd.(5677277)
2015-05-20 20:51 - 2015-05-20 20:51 - 00019209 _____ C:\Users\Admin\Downloads\turn.mr.culpeper.(2014).eng.1cd.(5677277).zip
2015-05-20 20:46 - 2015-05-20 20:46 - 00000000 ____D C:\Users\Admin\Downloads\turn.mr.culpeper.(2014).eng.1cd.(5677271)
2015-05-20 20:45 - 2015-05-20 20:45 - 00019722 _____ C:\Users\Admin\Downloads\turn.mr.culpeper.(2014).eng.1cd.(5677271).zip
2015-05-20 19:58 - 2015-05-20 19:58 - 00020255 _____ C:\Users\Admin\Downloads\turn.epiphany.(2014).eng.1cd.(5658078).zip
2015-05-20 19:58 - 2015-05-20 19:58 - 00000000 ____D C:\Users\Admin\Downloads\turn.epiphany.(2014).eng.1cd.(5658078)
2015-05-20 19:57 - 2015-05-20 19:57 - 00145708 _____ C:\Users\Admin\Downloads\turn.epiphany.(2014).tv.s01.e05.eng.8cd.zip
2015-05-20 19:14 - 2015-05-20 19:14 - 00000000 ____D C:\Users\Admin\Downloads\turn.eternity.how.long.(2014).eng.1cd.(5644945)
2015-05-20 19:11 - 2015-05-20 19:11 - 00020007 _____ C:\Users\Admin\Downloads\turn.eternity.how.long.(2014).eng.1cd.(5644945).zip
2015-05-20 18:28 - 2015-05-20 18:28 - 00000000 ____D C:\Users\Admin\Downloads\turn.of.cabbages.and.kings.(2014).eng.1cd.(5633717)
2015-05-20 18:27 - 2015-05-20 18:27 - 00020302 _____ C:\Users\Admin\Downloads\turn.of.cabbages.and.kings.(2014).eng.1cd.(5633717).zip
2015-05-20 17:34 - 2015-05-20 17:34 - 00000000 ____D C:\Users\Admin\Downloads\turn.who.by.fire.(2014).eng.1cd.(5626156)
2015-05-20 17:29 - 2015-05-20 17:29 - 00020101 _____ C:\Users\Admin\Downloads\turn.who.by.fire.(2014).eng.1cd.(5626156).zip
2015-05-20 16:16 - 2015-05-20 16:16 - 00027900 _____ C:\Users\Admin\Downloads\turn.pilot.(2014).eng.1cd.(5616797) (1).zip
2015-05-20 16:16 - 2015-05-20 16:16 - 00000000 ____D C:\Users\Admin\Downloads\turn.pilot.(2014).eng.1cd.(5616797)
2015-05-20 16:14 - 2015-05-20 16:14 - 00027902 _____ C:\Users\Admin\Downloads\turn.pilot.(2014).eng.1cd.(5616797).zip
2015-05-20 14:10 - 2015-05-20 14:11 - 00000000 ____D C:\Users\Admin\Downloads\Turn Season 1 HDTV.XviD-AFG[Pawulon]
2015-05-20 14:06 - 2015-05-20 14:06 - 00075621 _____ C:\Users\Admin\Downloads\[kat.cr]turn.season.1.hdtv.xvid.afg.pawulon.torrent
2015-05-19 15:16 - 2015-05-19 15:24 - 196536043 _____ C:\Users\Admin\Downloads\68988183.mp4
2015-05-19 14:39 - 2015-05-19 14:40 - 00000000 ____D C:\Program Files\glassfish-4.1
2015-05-19 14:35 - 2015-05-19 14:35 - 00002039 _____ C:\Users\Public\Desktop\NetBeans IDE 8.0.2.lnk
2015-05-19 14:35 - 2015-05-19 14:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans
2015-05-19 14:32 - 2015-05-19 14:44 - 00000000 ____D C:\Program Files\NetBeans 8.0.2
2015-05-19 14:31 - 2015-05-19 15:18 - 00000000 ____D C:\Users\Admin\.nbi
2015-05-19 14:21 - 2015-05-19 14:21 - 00320424 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2015-05-19 14:21 - 2015-05-19 14:21 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2015-05-19 14:21 - 2015-05-19 14:21 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2015-05-19 14:21 - 2015-05-19 14:21 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2015-05-19 14:21 - 2015-05-19 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-05-19 14:20 - 2015-05-19 14:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2015-05-19 14:19 - 2015-05-19 14:21 - 00000000 ____D C:\Program Files\Java
2015-05-19 14:10 - 2015-05-19 14:16 - 146861984 _____ (Oracle Corporation) C:\Users\Admin\Downloads\jdk-7u79-windows-x64.exe
2015-05-19 13:00 - 2015-05-19 13:09 - 214038168 _____ C:\Users\Admin\Downloads\netbeans-8.0.2-windows.exe
2015-05-18 18:36 - 2015-06-12 20:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-05-18 17:59 - 2015-05-18 17:59 - 00000000 ____D C:\Users\Admin\Downloads\Socialbuttons v1.1.0 - Theme123.Net
2015-05-18 17:58 - 2015-05-18 17:58 - 00396903 _____ C:\Users\Admin\Downloads\Socialbuttons v1.1.0 - Theme123.Net.rar
2015-05-18 08:41 - 2015-05-18 08:42 - 00000000 ____D C:\Users\Admin\Downloads\Game.of.Thrones.S05E06.HDTV.x264-ASAP[ettv]
2015-05-18 08:41 - 2015-05-18 08:41 - 00028102 _____ C:\Users\Admin\Downloads\[kat.cr]game.of.thrones.s05e06.hdtv.x264.asap.ettv.torrent
2015-05-17 22:26 - 2015-05-17 22:26 - 00000000 ____D C:\Users\Admin\Downloads\Hover-master
2015-05-17 22:25 - 2015-05-17 22:25 - 00162880 _____ C:\Users\Admin\Downloads\Hover-master.zip
2015-05-17 20:08 - 2015-05-17 21:20 - 00000000 ____D C:\Users\Admin\Downloads\PartyOfThree - Eva Lovia, Sasha Meow, Alina Li - Amateur Lesbians Fuck mp4s
2015-05-17 20:07 - 2015-05-17 20:07 - 00029215 _____ C:\Users\Admin\Downloads\[kat.cr]partyofthree.eva.lovia.sasha.meow.alina.li.amateur.lesbians.torrent
2015-05-17 18:43 - 2015-05-17 18:45 - 41951701 _____ C:\Users\Admin\Desktop\DB Play Man Coverage Technique @ Oregon with Coach Neal.mp4
2015-05-17 17:52 - 2015-05-17 18:02 - 248353226 _____ C:\Users\Admin\Desktop\DB Play Man Coverage by Robert Tucker @ Boise State.webm
2015-05-17 17:43 - 2015-05-17 17:51 - 204536548 _____ C:\Users\Admin\Desktop\DB Play Drills and Tech by Harlon Barnett @ Mich State.webm
2015-05-17 17:35 - 2015-05-17 17:41 - 199930140 _____ C:\Users\Admin\Desktop\DB Play Man Motor Coverage by Ron Cooper @LSU.webm
2015-05-17 17:18 - 2015-05-17 17:31 - 159992783 _____ C:\Users\Admin\Desktop\Jimmy Gaines - Full Defensive Game Film vs. Duke.mp4
2015-05-17 17:16 - 2015-05-17 17:31 - 182344372 _____ C:\Users\Admin\Desktop\Jimmy Gaines - Full Defensive Game Film vs. Florida State.webm
2015-05-17 16:55 - 2015-05-17 16:58 - 111901198 _____ C:\Users\Admin\Desktop\Alden Darby - Full Defensive Game Film vs. Washington State.mp4
2015-05-17 16:36 - 2015-05-17 16:51 - 133139984 _____ C:\Users\Admin\Desktop\Alden Darby - Full Defensive Game Film vs. USC.mp4
2015-05-17 16:35 - 2015-05-17 16:47 - 82066686 _____ C:\Users\Admin\Desktop\Memories At TCU Cam White.mp4
2015-05-17 16:21 - 2015-05-17 16:22 - 25921630 _____ C:\Users\Admin\Desktop\How to play Linebacker Drills & Tech..webm
2015-05-17 16:11 - 2015-05-17 16:14 - 68264071 _____ C:\Users\Admin\Desktop\Robert Henson#51 TCU.mp4
2015-05-17 15:49 - 2015-05-17 15:53 - 53299915 _____ C:\Users\Admin\Desktop\Jacob Sykes Virginia Tech.webm
2015-05-17 15:33 - 2015-05-17 15:39 - 89545817 _____ C:\Users\Admin\Desktop\TCU LB Kenny Cain Highlights 2013 #51.webm
2015-05-17 15:30 - 2015-05-17 15:35 - 85001954 _____ C:\Users\Admin\Desktop\VTS 01 2.mp4
2015-05-17 15:28 - 2015-05-17 15:30 - 36581786 _____ C:\Users\Admin\Desktop\VTS 01 3.mp4
2015-05-17 15:14 - 2015-05-17 15:25 - 338099297 _____ C:\Users\Admin\Desktop\Offensive Drills.mp4
2015-05-17 15:05 - 2015-05-17 15:12 - 168906559 _____ C:\Users\Admin\Desktop\Defensive Drills.mp4
2015-05-17 15:02 - 2015-05-17 15:03 - 21193478 _____ C:\Users\Admin\Desktop\OHIO STATE QB DRILLS.mp4
2015-05-17 15:02 - 2015-05-17 15:02 - 00000000 ____D C:\Users\Admin\dwhelper
2015-05-16 18:50 - 2015-05-16 18:50 - 00027331 _____ C:\Users\Admin\Downloads\woochimp.pot
2015-05-15 19:04 - 2015-05-15 19:05 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Poedit
2015-05-15 19:02 - 2015-05-15 19:02 - 00001037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Poedit.lnk
2015-05-15 19:02 - 2015-05-15 19:02 - 00000000 ____D C:\Program Files (x86)\Poedit
2015-05-15 18:59 - 2015-05-15 19:00 - 12082184 _____ (Vaclav Slavik ) C:\Users\Admin\Downloads\Poedit-1.7.6-setup.exe
2015-05-15 15:15 - 2015-05-15 15:15 - 00000000 ____D C:\ProgramData\eSellerate
2015-05-15 15:14 - 2015-05-15 15:14 - 00002274 _____ C:\Users\Public\Desktop\OOTP Baseball 16.lnk
2015-05-15 15:14 - 2015-05-15 15:14 - 00000000 ____D C:\Users\Admin\Documents\Out of the Park Developments
2015-05-15 15:00 - 2015-05-15 15:00 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Out of the Park Developments
2015-05-15 15:00 - 2015-05-15 15:00 - 00000000 ____D C:\Program Files (x86)\Out of the Park Developments
2015-05-15 14:26 - 2015-05-15 14:26 - 00224657 _____ C:\Users\Admin\Downloads\Recepty.zip
2015-05-15 14:26 - 2015-05-15 14:26 - 00000000 ____D C:\Users\Admin\Downloads\Recepty
2015-05-15 14:16 - 2015-05-15 14:16 - 00000000 ____D C:\Users\Admin\Downloads\cheesecake
2015-05-15 14:15 - 2015-05-15 14:15 - 00039645 _____ C:\Users\Admin\Downloads\cheesecake.zip
2015-05-15 14:07 - 2015-05-15 14:07 - 00058684 _____ C:\Users\Admin\Downloads\Kakaový_cheesecake_06.zip
2015-05-15 14:07 - 2015-05-15 14:07 - 00000000 ____D C:\Users\Admin\Downloads\Kakaový_cheesecake_06
2015-05-15 13:54 - 2015-05-15 13:54 - 00000000 ____D C:\Users\Admin\Downloads\IKONKY
2015-05-15 13:53 - 2015-05-15 13:53 - 00027776 _____ C:\Users\Admin\Downloads\IKONKY.zip
2015-05-15 11:33 - 2015-05-15 12:08 - 984890768 _____ C:\Users\Admin\Downloads\ootp16setup.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-14 11:22 - 2015-04-26 22:12 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-14 11:06 - 2009-07-14 06:45 - 00022208 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-14 11:06 - 2009-07-14 06:45 - 00022208 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-14 11:01 - 2015-04-24 10:50 - 02187647 _____ C:\Windows\WindowsUpdate.log
2015-06-14 10:51 - 2015-04-30 17:44 - 00000000 ___RD C:\Users\Admin\Disk Google
2015-06-14 10:51 - 2015-04-26 22:23 - 00000000 ____D C:\Program Files (x86)\Steam
2015-06-14 10:50 - 2015-04-26 22:12 - 00000932 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-14 10:50 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-14 10:50 - 2009-07-14 06:51 - 00069835 _____ C:\Windows\setupact.log
2015-06-13 22:31 - 2015-04-26 22:19 - 00000000 ____D C:\ProgramData\panda_url_filtering
2015-06-13 04:31 - 2015-04-30 11:12 - 00766780 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-06-13 04:31 - 2009-07-14 07:13 - 00766780 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-13 04:09 - 2015-04-30 17:35 - 00002042 _____ C:\Users\Public\Desktop\Google Slides.lnk
2015-06-13 04:09 - 2015-04-30 17:35 - 00002040 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2015-06-13 04:09 - 2015-04-30 17:35 - 00002030 _____ C:\Users\Public\Desktop\Google Docs.lnk
2015-06-13 04:09 - 2015-04-30 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-06-12 19:44 - 2015-04-26 21:59 - 00007591 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
2015-06-12 13:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-06-12 08:25 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-06-12 08:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\sk-SK
2015-06-12 08:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sk-SK
2015-06-12 08:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-06-11 22:21 - 2010-11-21 05:47 - 00177562 _____ C:\Windows\PFRO.log
2015-06-11 22:21 - 2009-07-14 06:45 - 00340584 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-11 22:19 - 2015-04-26 21:38 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-06-11 22:19 - 2015-04-26 21:38 - 00000000 ____D C:\Windows\system32\appraiser
2015-06-11 00:28 - 2015-05-02 10:16 - 00000000 ____D C:\AdwCleaner
2015-06-10 23:30 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-06-10 17:21 - 2015-04-26 19:38 - 00000000 ____D C:\Windows\system32\MRT
2015-06-10 17:16 - 2015-04-26 19:38 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-06-09 20:00 - 2015-05-11 09:11 - 00000000 ____D C:\Users\Admin\AppData\Roaming\uTorrent
2015-06-09 19:59 - 2015-05-01 13:54 - 00000000 ____D C:\Users\Admin\AppData\Roaming\vlc
2015-06-09 19:25 - 2015-04-26 22:14 - 00002195 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-05-25 09:05 - 2015-04-24 11:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-05-21 03:00 - 2015-04-26 21:38 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-05-21 03:00 - 2015-04-26 21:38 - 00000000 ___SD C:\Windows\system32\GWX
2015-05-19 14:31 - 2015-04-24 10:54 - 00000000 ____D C:\Users\Admin
2015-05-15 15:14 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-05-15 09:17 - 2015-04-26 22:12 - 00003932 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-15 09:17 - 2015-04-26 22:12 - 00003680 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-15 09:08 - 2015-04-24 12:55 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-15 08:59 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2015-05-15 02:04 - 2011-04-12 15:41 - 00000000 ____D C:\Program Files\Windows Journal
2015-05-15 02:04 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers

==================== Files in the root of some directories =======

2015-04-26 21:59 - 2015-06-12 19:44 - 0007591 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
C:\Users\Admin\AppData\Local\Temp\Quarantine.exe
C:\Users\Admin\AppData\Local\Temp\SHSetup.exe
C:\Users\Admin\AppData\Local\Temp\sqlite3.dll
C:\Users\Admin\AppData\Local\Temp\{9D31C33F-4676-41EE-96B6-3129E3F0F2E3}.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-06-13 00:31

==================== End of log ============================

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Spomaleny, mrznuci NTB

#13 Příspěvek od altrok »

:arrow: Vyprazdnete obsah adresare C:\Users\Admin\AppData\Local\Temp. Jinak po haveti ani vidu ani slechu. Vidim, ze Vam nekolikrat vyskocila BSOD (modra smrt) - obsah slozky C:\Windows\Minidump zabalte do raru/zipu a taktez uploadnete na leteckoupostu.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

orli
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 19 úno 2013 10:27

Re: Spomaleny, mrznuci NTB

#14 Příspěvek od orli »

cele to asi zacalo mam pocit stredu vecer, po desiatej, ked som zapol NTB a totalne mrznutie a spomalenie, ani net nesiel poriadne...tiez bol pomaly...

pokracovalo to cely vecer, skusil som stiahnut updaty a nainstalovat ich, ale cely proces bol strasne pomaly, vo stvrtok sa mi napriek spomaleniu podarilo naistalovat updaty, kazdopadne po restarte sa nevedeli ani len nakonfigurovat a vypisalo to hned ze sa odstranuju a ntb sa vypina... kazdopadne notebook sa ani len nevedel sam vypnut, ostala len cierna obrazovka a bezal dalej... takze som niekolkokrat ho musel rucne vypnut, i ked bol zmrznuty totalne

nasledne ten stvrtok uz ani ho neslo spustit, ked ma po starte zobrazit konto, tak len cierna obrazovka, spustil som nejake recovery a safe mode ale nic som nevymyslel, piatok po praci isiel znovu spustit ale znovu po chvili sa brutalne spomaloval, miestami siel ok

netusim ci je to disk teda, alebo premazat cely windows?

obsah adresara vymazany co islo

http://leteckaposta.cz/513940367

MiliNess
Přítel fóra
Přítel fóra
Příspěvky: 4144
Registrován: 15 říj 2009 18:15
Bydliště: Cheb

Re: Spomaleny, mrznuci NTB

#15 Příspěvek od MiliNess »

Ten disk je mrtvola a způsobuje všechny ty problémy okolo.
I ty BSOD s kódem KERNEL_DATA_INPAGE_ERROR (selhání při obsluze výpadku paměťové stránky), jsou následek vady disku.
Další řešení, vyjma výměny HDD, je ztráta času.
Kup nový disk, operační systém budeš muset instalovat znovu. Ten současný již bude poškozený.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde

Odpovědět