
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Nelze nainstalovat aktualizace
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Nelze nainstalovat aktualizace
Počítač je pár dní po přeinstalaci, mám nastavené, aby počítač jen upozornoval na aktualizace. Dnes jsem zase aktualizoval a spousta aktualizací nebylo nainstalováno viz:
Aktualizace zabezpečení produktu Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2538243)
Aktualizace zabezpečení produktu Microsoft Visual C++ 2010 Redistributable Package (KB2467173)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2891804)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2918077)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2952664)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3006137)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2563227)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2985461)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3068708)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2547666)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2640148)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2763523)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2820331)
Aktualizace zabezpečení aplikace Internet Explorer 11 pro systém Windows 7 pro systémy platformy x64 (KB3087985)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2800095)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2919469)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2966583)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3020370)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2660075)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB3035583)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2834140)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2843630)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2853952)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2893519)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2970228)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3013531)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3021917)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2545698)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2603229)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3040272)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2719857)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2750841)
Aktualizace pro architekturu ovladačů v uživatelském režimu verze 1.11 pro systém Windows 7 pro systémy pro platformu x64 (KB2685813)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3014406)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3020338)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2726535)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2732059)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2773072)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2791765)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2908783)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3006121)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3006625)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3054476)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2732487)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2761217)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3013410)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3045645)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2808679)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB982018)
Aktualizace zabezpečení systému Windows 7 pro systémy na platformě x64 (KB2532531)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2799926)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2928562)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2506928)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2977728)
Spustil jsem program Windows Update troubleshooter a našel mi tohle:
Log z RSIT jsem nemohl poslat ani jako druhou zprávu, vždy dostanu tuhle hlášku: Vaše zpráva obsahuje 103974 znaků. Maximální povolený počet znaků je 100000.
Aktualizace zabezpečení produktu Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2538243)
Aktualizace zabezpečení produktu Microsoft Visual C++ 2010 Redistributable Package (KB2467173)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2891804)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2918077)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2952664)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3006137)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2563227)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2985461)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3068708)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2547666)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2640148)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2763523)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2820331)
Aktualizace zabezpečení aplikace Internet Explorer 11 pro systém Windows 7 pro systémy platformy x64 (KB3087985)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2800095)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2919469)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2966583)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3020370)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2660075)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB3035583)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2834140)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2843630)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2853952)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2893519)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2970228)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3013531)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3021917)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2545698)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2603229)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3040272)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2719857)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2750841)
Aktualizace pro architekturu ovladačů v uživatelském režimu verze 1.11 pro systém Windows 7 pro systémy pro platformu x64 (KB2685813)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3014406)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3020338)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2726535)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2732059)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2773072)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2791765)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2908783)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3006121)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3006625)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3054476)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2732487)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2761217)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3013410)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB3045645)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2808679)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB982018)
Aktualizace zabezpečení systému Windows 7 pro systémy na platformě x64 (KB2532531)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2799926)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2928562)
Aktualizace systému Windows 7 pro systémy s procesorem x64 (KB2506928)
Aktualizace systému Windows 7 pro systémy na platformě x64 (KB2977728)
Spustil jsem program Windows Update troubleshooter a našel mi tohle:
Log z RSIT jsem nemohl poslat ani jako druhou zprávu, vždy dostanu tuhle hlášku: Vaše zpráva obsahuje 103974 znaků. Maximální povolený počet znaků je 100000.
Re: Nelze nainstalovat aktualizace
Zdravim 
Kdyby nesly nainstalovat zadne, bylo by to neco jineho, ale takhle, kdyz nektere jdou a nektere ne, je to spise otazka pro technickou podporu microsoftu. Vycisteni pc na to nemusi mit zadny vliv.
Postupujte podle navodu kolegy
Rozdelte ho do dvou prispevku.
Kdyby nesly nainstalovat zadne, bylo by to neco jineho, ale takhle, kdyz nektere jdou a nektere ne, je to spise otazka pro technickou podporu microsoftu. Vycisteni pc na to nemusi mit zadny vliv.
vyosek píše:Stahnete Service Repair http://kb.eset.com/library/ESET/KB%20Te ... Repair.exe
- Ulozte nejlepe na Plochu
- Spustte a potvrdte Yes abyste potvrdil reinstalaci sluzeb
- Nasledne kliknutim na Yes potvrdte restart PC
- Na Plose vznikne slozka CC Support, najdete tam log SvcRepair.txt - mel by byt CC Support\Logs\SvcRepair.txt - vlozte mi jej sem
SGC píše:Log z RSIT jsem nemohl poslat ani jako druhou zprávu, vždy dostanu tuhle hlášku: Vaše zpráva obsahuje 103974 znaků. Maximální povolený počet znaků je 100000.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Nelze nainstalovat aktualizace
RSIT log, část první
Logfile of random's system information tool 1.10 (written by random/random)
Run by Chuck at 2015-08-29 18:36:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 104 GB (67%) free of 155 GB
Total RAM: 3552 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:36:15, on sobota.29.8.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17937)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
C:\Program Files (x86)\MagicDisc\MagicDisc.exe
C:\Program Files (x86)\Microsoft Office\Office15\WINWORD.EXE
D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\FirefoxPortable.exe
D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\App\firefox\firefox.exe
C:\Program Files\trend micro\Chuck.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [IDMan] C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IDMan.exe /onboot
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe
O8 - Extra context menu item: Download all links with IDM - C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEExt.htm
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - https://catalog.update.microsoft.com/v7 ... 9752415659
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) - AOMEI Tech Co., Ltd. - C:\Program Files (x86)\AOMEI Backupper\ABService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Everything - Unknown owner - C:\Program Files\Everything\Everything.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Macrium Reflect Image Mounting Service (ReflectService.exe) - Paramount Software UK Ltd - C:\Program Files\Macrium\Reflect\ReflectService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\SysWOW64\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\SysWOW64\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10404 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\Hpservice.exe
"C:\Program Files\Sandboxie\SbieSvc.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\AOMEI Backupper\ABService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Everything\Everything.exe" -svc
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
"C:\Program Files\Macrium\Reflect\ReflectService.exe"
C:\Windows\SysWOW64\vmnat.exe
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
C:\Windows\SysWOW64\vmnetdhcp.exe
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
atieclxx
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Everything\Everything.exe" -startup
"C:\Program Files\Sandboxie\SbieCtrl.exe"
"C:\Program Files (x86)\MagicDisc\MagicDisc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtTray.exe"
"C:\Windows\SYSTEM32\WISPTIS.EXE" /ManualLaunch;
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Windows\system32\taskmgr.exe" /1
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Microsoft Office\Office15\WINWORD.EXE" /n "C:\Users\Chuck\Desktop\fixing.docx" /o "u"
"D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\FirefoxPortable.exe"
"D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\App\firefox\firefox.exe" -profile "D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\Data\profile"
C:\Windows\system32\DllHost.exe /Processid:{76D0CB12-7604-4048-B83C-1005C7DDC503}
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Users\Chuck\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player PPAPI Notifier.job - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe -check pepperplugin
=========Mozilla firefox=========
ProfilePath - C:\Users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1214154.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-21 881880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-07-14 2335960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 707800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2015-07-14 1729752]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=c:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [2012-04-11 97280]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-09-04 2774256]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-10-24 1664000]
"Everything"=C:\Program Files\Everything\Everything.exe [2014-08-06 1441792]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-09-25 132736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"=C:\Program Files\Sandboxie\SbieCtrl.exe [2015-06-23 787592]
"IDMan"=C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IDMan.exe /onboot []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-03-14 319360]
""= []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-10-26 343168]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-09-25 132736]
C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MagicDisc.lnk - C:\Program Files (x86)\MagicDisc\MagicDisc.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
Logfile of random's system information tool 1.10 (written by random/random)
Run by Chuck at 2015-08-29 18:36:08
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 104 GB (67%) free of 155 GB
Total RAM: 3552 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:36:15, on sobota.29.8.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17937)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
C:\Program Files (x86)\MagicDisc\MagicDisc.exe
C:\Program Files (x86)\Microsoft Office\Office15\WINWORD.EXE
D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\FirefoxPortable.exe
D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\App\firefox\firefox.exe
C:\Program Files\trend micro\Chuck.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [IDMan] C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IDMan.exe /onboot
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe
O8 - Extra context menu item: Download all links with IDM - C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEExt.htm
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~2\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~2\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - https://catalog.update.microsoft.com/v7 ... 9752415659
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) - AOMEI Tech Co., Ltd. - C:\Program Files (x86)\AOMEI Backupper\ABService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Everything - Unknown owner - C:\Program Files\Everything\Everything.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Macrium Reflect Image Mounting Service (ReflectService.exe) - Paramount Software UK Ltd - C:\Program Files\Macrium\Reflect\ReflectService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - Sandboxie Holdings, LLC - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\SysWOW64\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\SysWOW64\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10404 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\Hpservice.exe
"C:\Program Files\Sandboxie\SbieSvc.exe"
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\AOMEI Backupper\ABService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Everything\Everything.exe" -svc
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
"C:\Program Files\Macrium\Reflect\ReflectService.exe"
C:\Windows\SysWOW64\vmnat.exe
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
C:\Windows\SysWOW64\vmnetdhcp.exe
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
atieclxx
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Everything\Everything.exe" -startup
"C:\Program Files\Sandboxie\SbieCtrl.exe"
"C:\Program Files (x86)\MagicDisc\MagicDisc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtTray.exe"
"C:\Windows\SYSTEM32\WISPTIS.EXE" /ManualLaunch;
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Windows\system32\taskmgr.exe" /1
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Microsoft Office\Office15\WINWORD.EXE" /n "C:\Users\Chuck\Desktop\fixing.docx" /o "u"
"D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\FirefoxPortable.exe"
"D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\App\firefox\firefox.exe" -profile "D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\Data\profile"
C:\Windows\system32\DllHost.exe /Processid:{76D0CB12-7604-4048-B83C-1005C7DDC503}
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Users\Chuck\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player PPAPI Notifier.job - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe -check pepperplugin
=========Mozilla firefox=========
ProfilePath - C:\Users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1214154.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-21 881880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2015-07-14 2335960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2014-01-23 707800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2015-07-14 1729752]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=c:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [2012-04-11 97280]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-09-04 2774256]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-10-24 1664000]
"Everything"=C:\Program Files\Everything\Everything.exe [2014-08-06 1441792]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-09-25 132736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"=C:\Program Files\Sandboxie\SbieCtrl.exe [2015-06-23 787592]
"IDMan"=C:\Users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IDMan.exe /onboot []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-03-14 319360]
""= []
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-10-26 343168]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-09-25 132736]
C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MagicDisc.lnk - C:\Program Files (x86)\MagicDisc\MagicDisc.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
Re: Nelze nainstalovat aktualizace
RSIT log, část druhá:
======List of files/folders created in the last 1 month======
2015-08-29 18:36:08 ----D---- C:\rsit
2015-08-29 18:36:08 ----D---- C:\Program Files\trend micro
2015-08-29 18:19:17 ----D---- C:\Windows\SoftwareDistribution
2015-08-29 17:21:24 ----SD---- C:\Windows\system32\CompatTel
2015-08-29 17:21:24 ----D---- C:\Windows\system32\appraiser
2015-08-29 17:21:07 ----SD---- C:\Windows\SYSWOW64\GWX
2015-08-29 17:21:06 ----SD---- C:\Windows\system32\GWX
2015-08-29 16:54:42 ----D---- C:\Windows\Migration
2015-08-29 16:49:07 ----SHD---- C:\Config.Msi
2015-08-29 16:45:46 ----A---- C:\Windows\system32\UtcResources.dll
2015-08-29 16:45:46 ----A---- C:\Windows\system32\diagtrack.dll
2015-08-29 16:45:44 ----A---- C:\Windows\system32\tdh.dll
2015-08-29 16:45:43 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-08-29 16:45:43 ----A---- C:\Windows\system32\advapi32.dll
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-08-29 16:45:42 ----A---- C:\Windows\system32\typeperf.exe
2015-08-29 16:45:42 ----A---- C:\Windows\system32\tracerpt.exe
2015-08-29 16:45:42 ----A---- C:\Windows\system32\sechost.dll
2015-08-29 16:45:42 ----A---- C:\Windows\system32\logman.exe
2015-08-29 16:45:41 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-08-29 16:45:41 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-08-29 16:45:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-08-29 16:45:41 ----A---- C:\Windows\system32\relog.exe
2015-08-29 16:45:41 ----A---- C:\Windows\system32\diskperf.exe
2015-08-29 16:45:34 ----A---- C:\Windows\SYSWOW64\gameux.dll
2015-08-29 16:45:34 ----A---- C:\Windows\system32\Wpc.dll
2015-08-29 16:45:34 ----A---- C:\Windows\system32\gameux.dll
2015-08-29 16:45:33 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2015-08-29 16:45:25 ----A---- C:\Windows\system32\generaltel.dll
2015-08-29 16:45:25 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-08-29 16:45:25 ----A---- C:\Windows\system32\aitstatic.exe
2015-08-29 16:45:24 ----A---- C:\Windows\system32\invagent.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\devinv.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\appraiser.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\aepic.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\aepdu.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\aeinv.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\acmigration.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\wintrust.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\cryptsvc.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\cryptnet.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\crypt32.dll
2015-08-29 16:45:08 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2015-08-29 16:45:08 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2015-08-29 16:45:08 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-08-29 16:45:08 ----A---- C:\Windows\system32\dhcpcore6.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc_ssp.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\msdrm.dll
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDYAK.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDTAT.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDRU1.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDRU.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDBASH.DLL
2015-08-29 16:44:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2015-08-29 16:44:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\netevent.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\netcorehc.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-08-29 16:44:49 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2015-08-29 16:44:49 ----A---- C:\Windows\system32\TSWorkspace.dll
2015-08-29 16:44:46 ----A---- C:\Windows\system32\tquery.dll
2015-08-29 16:44:45 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-08-29 16:44:45 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-08-29 16:44:45 ----A---- C:\Windows\system32\mssrch.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\system32\mssvp.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\mssphtb.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\mssph.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\msscntrs.dll
2015-08-29 16:44:40 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2015-08-29 16:44:40 ----A---- C:\Windows\system32\ntshrui.dll
2015-08-29 16:44:36 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2015-08-29 16:44:36 ----A---- C:\Windows\SYSWOW64\credui.dll
2015-08-29 16:44:36 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2015-08-29 16:44:36 ----A---- C:\Windows\system32\credui.dll
2015-08-29 16:44:30 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2015-08-29 16:44:30 ----A---- C:\Windows\system32\msieftp.dll
2015-08-29 16:44:30 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-08-29 16:44:29 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WsmSvc.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WsmAuto.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-08-29 16:44:27 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-08-29 16:44:27 ----A---- C:\Windows\system32\wpdshext.dll
2015-08-29 16:44:26 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2015-08-29 16:44:26 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-08-29 16:44:26 ----A---- C:\Windows\system32\xmllite.dll
2015-08-29 16:44:26 ----A---- C:\Windows\system32\oleaut32.dll
2015-08-29 16:44:25 ----A---- C:\Windows\SYSWOW64\wdi.dll
2015-08-29 16:44:25 ----A---- C:\Windows\system32\wdi.dll
2015-08-29 16:44:25 ----A---- C:\Windows\system32\powertracker.dll
2015-08-29 16:44:25 ----A---- C:\Windows\system32\perftrack.dll
2015-08-29 16:44:24 ----A---- C:\Windows\system32\wwansvc.dll
2015-08-29 16:44:24 ----A---- C:\Windows\system32\wwanprotdim.dll
2015-08-29 16:44:24 ----A---- C:\Windows\system32\drivers\ataport.sys
2015-08-29 16:44:22 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-08-29 16:44:22 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-08-29 16:44:22 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-08-29 16:44:20 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2015-08-29 16:44:20 ----A---- C:\Windows\system32\iologmsg.dll
2015-08-29 16:44:20 ----A---- C:\Windows\system32\drivers\storport.sys
2015-08-29 16:44:20 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-08-29 16:44:20 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2015-08-29 16:44:18 ----A---- C:\Windows\SYSWOW64\charmap.exe
2015-08-29 16:44:18 ----A---- C:\Windows\system32\charmap.exe
2015-08-29 16:44:14 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2015-08-29 16:44:14 ----A---- C:\Windows\system32\cryptdlg.dll
2015-08-29 16:44:12 ----A---- C:\Windows\system32\drivers\stream.sys
2015-08-29 16:39:18 ----A---- C:\Windows\system32\OxpsConverter.exe
2015-08-29 16:38:53 ----A---- C:\Windows\system32\drivers\fvevol.sys
2015-08-29 16:36:24 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2015-08-29 16:36:24 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-08-29 16:36:24 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-08-29 16:36:24 ----A---- C:\Windows\system32\shimeng.dll
2015-08-29 16:36:24 ----A---- C:\Windows\system32\sdbinst.exe
2015-08-29 16:36:24 ----A---- C:\Windows\system32\apphelp.dll
2015-08-29 16:36:24 ----A---- C:\Windows\system32\aelupsvc.dll
2015-08-29 16:36:17 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-08-29 16:36:17 ----A---- C:\Windows\system32\tzres.dll
2015-08-29 16:36:08 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-08-29 16:36:02 ----A---- C:\Windows\system32\esent.dll
2015-08-29 16:36:01 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2015-08-29 16:36:01 ----A---- C:\Windows\SYSWOW64\esent.dll
2015-08-29 16:36:01 ----A---- C:\Windows\system32\fsutil.exe
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\nvstor.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\nvraid.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\amdxata.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\amdsata.sys
2015-08-29 16:35:30 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2015-08-29 16:35:30 ----A---- C:\Windows\system32\prevhost.exe
2015-08-29 16:24:56 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-08-29 16:24:56 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2015-08-29 10:34:40 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-29 10:34:20 ----D---- C:\Windows\PCHEALTH
2015-08-29 10:34:20 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-08-29 10:32:47 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2015-08-29 10:32:07 ----D---- C:\ProgramData\Microsoft Help
2015-08-29 10:30:51 ----D---- C:\Program Files (x86)\Microsoft Office
2015-08-29 10:30:27 ----D---- C:\Program Files\Microsoft Office
2015-08-29 10:28:59 ----RHD---- C:\MSOCache
2015-08-28 12:20:49 ----D---- C:\ProgramData\Microsoft Toolkit
2015-08-27 16:09:39 ----D---- C:\Program Files (x86)\MagicDisc
2015-08-27 16:09:39 ----A---- C:\Windows\SYSWOW64\drivers\mcdbus.sys
2015-08-27 16:09:39 ----A---- C:\Windows\system32\drivers\mcdbus.sys
2015-08-27 14:51:31 ----D---- C:\Users\Chuck\AppData\Roaming\DMCache
2015-08-27 00:45:29 ----D---- C:\Windows\SYSWOW64\Wat
2015-08-27 00:45:29 ----D---- C:\Windows\system32\Wat
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-08-27 00:33:04 ----A---- C:\Windows\system32\iertutil.dll
2015-08-27 00:33:04 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-08-27 00:33:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-08-27 00:33:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-27 00:33:03 ----A---- C:\Windows\system32\iernonce.dll
2015-08-27 00:33:03 ----A---- C:\Windows\system32\ie4uinit.exe
2015-08-27 00:33:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-08-27 00:33:01 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-08-27 00:33:01 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-08-27 00:33:01 ----A---- C:\Windows\system32\iedkcs32.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-08-27 00:33:00 ----A---- C:\Windows\system32\urlmon.dll
2015-08-27 00:33:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-08-27 00:32:59 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-08-27 00:32:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-08-27 00:32:59 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-08-27 00:32:59 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-27 00:32:59 ----A---- C:\Windows\system32\msfeeds.dll
2015-08-27 00:32:59 ----A---- C:\Windows\system32\dxtrans.dll
2015-08-27 00:32:58 ----A---- C:\Windows\system32\iesetup.dll
2015-08-27 00:32:58 ----A---- C:\Windows\system32\ieapfltr.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-08-27 00:32:56 ----A---- C:\Windows\system32\vbscript.dll
2015-08-27 00:32:56 ----A---- C:\Windows\system32\jsproxy.dll
2015-08-27 00:32:56 ----A---- C:\Windows\system32\ieUnatt.exe
2015-08-27 00:32:55 ----A---- C:\Windows\system32\ieui.dll
2015-08-27 00:32:55 ----A---- C:\Windows\system32\ieframe.dll
2015-08-27 00:32:55 ----A---- C:\Windows\system32\dxtmsft.dll
2015-08-27 00:32:54 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-08-27 00:32:54 ----A---- C:\Windows\system32\mshtmled.dll
2015-08-27 00:32:54 ----A---- C:\Windows\system32\jscript.dll
2015-08-27 00:32:53 ----A---- C:\Windows\system32\wininet.dll
2015-08-27 00:32:53 ----A---- C:\Windows\system32\jscript9diag.dll
2015-08-27 00:32:53 ----A---- C:\Windows\system32\jscript9.dll
2015-08-27 00:32:52 ----A---- C:\Windows\system32\msrating.dll
2015-08-27 00:32:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-08-27 00:32:51 ----A---- C:\Windows\system32\mshtml.dll
2015-08-26 23:37:32 ----A---- C:\Windows\system32\scavengeui.dll
2015-08-26 21:24:15 ----A---- C:\Windows\system32\blackbox.dll
2015-08-26 21:24:14 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-08-26 21:24:14 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-08-26 21:24:14 ----A---- C:\Windows\system32\drmv2clt.dll
2015-08-26 21:24:12 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-08-26 21:24:12 ----A---- C:\Windows\system32\mf.dll
2015-08-26 21:24:11 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-08-26 21:24:11 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-08-26 21:24:11 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-08-26 21:24:09 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-08-26 21:24:08 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-08-26 21:24:08 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-08-26 21:24:08 ----A---- C:\Windows\system32\ci.dll
2015-08-26 21:24:07 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-08-26 21:24:07 ----A---- C:\Windows\system32\quartz.dll
2015-08-26 21:24:06 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\winresume.exe
2015-08-26 21:24:06 ----A---- C:\Windows\system32\winload.exe
2015-08-26 21:24:06 ----A---- C:\Windows\system32\qdvd.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\mfplat.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\evr.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\cryptui.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\audiosrv.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-08-26 21:24:05 ----A---- C:\Windows\system32\pcasvc.dll
2015-08-26 21:24:05 ----A---- C:\Windows\system32\AudioEng.dll
2015-08-26 21:24:04 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-08-26 21:24:04 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\msscp.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\EncDump.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\cryptsp.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\AudioSes.dll
2015-08-26 21:24:03 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-08-26 21:24:03 ----A---- C:\Windows\system32\msnetobj.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\rrinstaller.exe
2015-08-26 21:24:02 ----A---- C:\Windows\system32\pcadm.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\mfps.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\drivers\appid.sys
2015-08-26 21:24:02 ----A---- C:\Windows\system32\audiodg.exe
2015-08-26 21:24:02 ----A---- C:\Windows\system32\appidsvc.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\appidapi.dll
2015-08-26 21:24:01 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-08-26 21:24:01 ----A---- C:\Windows\system32\pcawrk.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\pcalua.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\mfpmp.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-08-26 21:24:00 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-08-26 21:24:00 ----A---- C:\Windows\system32\pcaevts.dll
2015-08-26 21:24:00 ----A---- C:\Windows\system32\mferror.dll
2015-08-26 21:23:39 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-08-26 21:23:39 ----A---- C:\Windows\system32\certcli.dll
2015-08-26 21:23:25 ----A---- C:\Windows\system32\basesrv.dll
2015-08-26 21:23:11 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-08-26 21:23:10 ----A---- C:\Windows\system32\rpcrt4.dll
2015-08-26 21:23:10 ----A---- C:\Windows\system32\ntdll.dll
2015-08-26 21:23:10 ----A---- C:\Windows\system32\lsasrv.dll
2015-08-26 21:23:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-08-26 21:23:09 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\schannel.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\msv1_0.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\KernelBase.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\kernel32.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\kerberos.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\wow64win.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\wow64.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\winsrv.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\wdigest.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\TSpkg.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\sysmain.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\srcore.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\smss.exe
2015-08-26 21:23:07 ----A---- C:\Windows\system32\rstrui.exe
2015-08-26 21:23:07 ----A---- C:\Windows\system32\ncrypt.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\csrsrv.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\cryptbase.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\conhost.exe
2015-08-26 21:23:07 ----A---- C:\Windows\system32\adtschema.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\wow64cpu.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\sspisrv.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\sspicli.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\srclient.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\secur32.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\ntvdm64.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\msmmsp.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\msaudite.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\lsass.exe
2015-08-26 21:23:06 ----A---- C:\Windows\system32\credssp.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\auditpol.exe
2015-08-26 21:23:06 ----A---- C:\Windows\system32\apisetschema.dll
2015-08-26 21:23:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23:05 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23:05 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23:05 ----A---- C:\Windows\SYSWOW64\user.exe
2015-08-26 21:23:05 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-08-26 21:23:05 ----A---- C:\Windows\system32\msobjs.dll
2015-08-26 21:22:53 ----A---- C:\Windows\system32\termsrv.dll
2015-08-26 21:22:45 ----A---- C:\Windows\SYSWOW64\webio.dll
2015-08-26 21:22:45 ----A---- C:\Windows\system32\webio.dll
2015-08-26 21:22:31 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-08-26 21:22:31 ----A---- C:\Windows\system32\drivers\netio.sys
2015-08-26 21:22:31 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-08-26 21:22:30 ----A---- C:\Windows\SYSWOW64\osk.exe
2015-08-26 21:22:30 ----A---- C:\Windows\system32\osk.exe
2015-08-26 21:22:13 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-08-26 21:22:13 ----A---- C:\Windows\system32\mstscax.dll
2015-08-26 21:22:12 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-08-26 21:22:12 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2015-08-26 21:22:12 ----A---- C:\Windows\system32\tsgqec.dll
2015-08-26 21:22:12 ----A---- C:\Windows\system32\aaclient.dll
2015-08-26 21:22:09 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-08-26 21:22:08 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-08-26 21:22:08 ----A---- C:\Windows\system32\WebClnt.dll
2015-08-26 21:22:08 ----A---- C:\Windows\system32\davclnt.dll
2015-08-26 21:22:07 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-08-26 21:22:07 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-08-26 21:22:04 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-08-26 21:22:04 ----A---- C:\Windows\system32\ubpm.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbctrac.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbccu32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbccr32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbccp32.dll
2015-08-26 21:22:01 ----A---- C:\Windows\system32\services.exe
2015-08-26 21:22:00 ----A---- C:\Windows\system32\mfc42u.dll
2015-08-26 21:22:00 ----A---- C:\Windows\system32\mfc42.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2015-08-26 21:21:59 ----A---- C:\Windows\system32\nlasvc.dll
2015-08-26 21:21:59 ----A---- C:\Windows\system32\nlaapi.dll
2015-08-26 21:21:59 ----A---- C:\Windows\system32\ncsi.dll
2015-08-26 21:21:55 ----A---- C:\Windows\system32\profsvc.dll
2015-08-26 21:21:54 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-08-26 21:21:54 ----A---- C:\Windows\system32\gdi32.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml6r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml6.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml3r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml3.dll
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2015-08-26 21:21:51 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-08-26 21:21:51 ----A---- C:\Windows\system32\wer.dll
2015-08-26 21:21:50 ----A---- C:\Windows\system32\cewmdm.dll
2015-08-26 21:21:49 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2015-08-26 21:21:48 ----A---- C:\Windows\system32\qedit.dll
2015-08-26 21:21:48 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-08-26 21:21:48 ----A---- C:\Windows\system32\drivers\drmk.sys
2015-08-26 21:21:47 ----A---- C:\Windows\SYSWOW64\qedit.dll
2015-08-26 21:21:47 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-08-26 21:21:45 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-08-26 21:21:45 ----A---- C:\Windows\system32\comctl32.dll
2015-08-26 21:21:44 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-08-26 21:21:43 ----A---- C:\Windows\system32\drivers\afd.sys
2015-08-26 21:21:33 ----A---- C:\Windows\system32\objsel.dll
2015-08-26 21:21:32 ----A---- C:\Windows\SYSWOW64\objsel.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\wincredprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\dpapiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\dimsroam.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\cngprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\capiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\adprovider.dll
2015-08-26 21:21:16 ----A---- C:\Windows\system32\winlogon.exe
2015-08-26 21:21:15 ----A---- C:\Windows\SYSWOW64\winsta.dll
2015-08-26 21:21:15 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2015-08-26 21:21:15 ----A---- C:\Windows\system32\winsta.dll
2015-08-26 21:21:15 ----A---- C:\Windows\system32\rdrmemptylst.exe
2015-08-26 21:21:15 ----A---- C:\Windows\system32\rdpwsx.dll
2015-08-26 21:21:15 ----A---- C:\Windows\system32\rdpcorekmts.dll
2015-08-26 21:21:15 ----A---- C:\Windows\system32\mstsc.exe
2015-08-26 21:21:15 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-08-26 21:21:15 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-08-26 21:21:03 ----A---- C:\Windows\system32\drivers\cng.sys
2015-08-26 21:20:55 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-08-26 21:20:55 ----A---- C:\Windows\system32\ole32.dll
2015-08-26 21:20:22 ----A---- C:\Windows\SYSWOW64\certutil.exe
2015-08-26 21:20:22 ----A---- C:\Windows\system32\certutil.exe
2015-08-26 21:20:21 ----A---- C:\Windows\SYSWOW64\certenc.dll
2015-08-26 21:20:21 ----A---- C:\Windows\system32\certenc.dll
2015-08-26 21:20:13 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-08-26 21:20:13 ----A---- C:\Windows\system32\pku2u.dll
2015-08-26 21:20:08 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-08-26 21:20:08 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msimsg.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msihnd.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msiexec.exe
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msi.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\consent.exe
2015-08-26 21:19:45 ----A---- C:\Windows\system32\authui.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\appinfo.dll
2015-08-26 21:19:40 ----A---- C:\Windows\system32\psisdecd.dll
2015-08-26 21:19:39 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2015-08-26 21:19:36 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2015-08-26 21:19:36 ----A---- C:\Windows\system32\shdocvw.dll
2015-08-26 21:19:29 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2015-08-26 21:19:29 ----A---- C:\Windows\system32\drivers\usbcir.sys
2015-08-26 21:19:26 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2015-08-26 21:19:26 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-08-26 21:19:25 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2015-08-26 21:19:25 ----A---- C:\Windows\system32\dnsapi.dll
2015-08-26 21:19:24 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2015-08-26 21:19:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-08-26 21:19:24 ----A---- C:\Windows\system32\dnscacheugc.exe
2015-08-26 21:19:23 ----A---- C:\Windows\system32\drivers\hidparse.sys
2015-08-26 21:19:23 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-08-26 21:19:22 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2015-08-26 21:19:22 ----A---- C:\Windows\system32\dpnet.dll
2015-08-26 21:13:07 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-08-26 21:13:07 ----A---- C:\Windows\system32\poqexec.exe
2015-08-26 21:12:59 ----A---- C:\Windows\system32\shell32.dll
2015-08-26 21:12:58 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-08-26 21:12:52 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-08-26 21:12:52 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-08-26 21:12:52 ----A---- C:\Windows\system32\drivers\srv.sys
2015-08-26 21:12:51 ----A---- C:\Windows\system32\kdusb.dll
2015-08-26 21:12:51 ----A---- C:\Windows\system32\kdcom.dll
2015-08-26 21:12:51 ----A---- C:\Windows\system32\kd1394.dll
2015-08-26 21:12:51 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2015-08-26 21:12:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-08-26 21:12:51 ----A---- C:\Windows\system32\cdd.dll
2015-08-26 21:12:50 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2015-08-26 21:12:50 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-08-26 21:12:50 ----A---- C:\Windows\system32\rdpcore.dll
2015-08-26 21:12:50 ----A---- C:\Windows\system32\notepad.exe
2015-08-26 21:12:50 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2015-08-26 21:12:50 ----A---- C:\Windows\notepad.exe
2015-08-26 21:12:49 ----A---- C:\Windows\system32\drivers\partmgr.sys
2015-08-26 21:12:48 ----A---- C:\Windows\SYSWOW64\synceng.dll
2015-08-26 21:12:48 ----A---- C:\Windows\system32\win32spl.dll
2015-08-26 21:12:48 ----A---- C:\Windows\system32\synceng.dll
2015-08-26 21:12:47 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2015-08-26 21:12:47 ----A---- C:\Windows\SYSWOW64\rastls.dll
2015-08-26 21:12:47 ----A---- C:\Windows\system32\rastls.dll
2015-08-26 21:12:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-08-26 21:12:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-08-26 21:12:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-08-26 21:12:45 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-08-26 21:12:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuwebv.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wups2.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wups.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wudriver.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wucltux.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuauclt.exe
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuapp.exe
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuapi.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-08-26 21:12:43 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2015-08-26 21:12:43 ----A---- C:\Windows\system32\cdosys.dll
2015-08-26 21:12:42 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2015-08-26 21:12:42 ----A---- C:\Windows\system32\EncDec.dll
2015-08-26 21:12:40 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-08-26 21:12:40 ----A---- C:\Windows\system32\inetcomm.dll
2015-08-26 21:12:39 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-08-26 21:12:39 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-08-26 21:12:38 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-08-26 21:12:38 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-08-26 21:12:38 ----A---- C:\Windows\system32\nshwfp.dll
2015-08-26 21:12:37 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2015-08-26 21:12:37 ----A---- C:\Windows\system32\oleacc.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\devobj.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\browcli.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\netapi32.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\browser.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\browcli.dll
2015-08-26 21:12:35 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-08-26 21:12:35 ----A---- C:\Windows\SYSWOW64\packager.dll
2015-08-26 21:12:35 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\scesrv.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\packager.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\msvcrt.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\FXSCOVER.exe
2015-08-26 21:12:34 ----A---- C:\Windows\system32\localspl.dll
2015-08-26 21:12:34 ----A---- C:\Windows\system32\drivers\bowser.sys
2015-08-26 21:12:31 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-08-26 21:12:31 ----A---- C:\Windows\system32\clfsw32.dll
2015-08-26 21:12:31 ----A---- C:\Windows\system32\clfs.sys
2015-08-26 21:12:30 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-08-26 21:12:30 ----A---- C:\Windows\system32\WMPhoto.dll
2015-08-26 20:43:23 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-08-26 20:43:23 ----A---- C:\Windows\system32\lpk.dll
2015-08-26 20:43:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-08-26 20:43:22 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-08-26 20:43:22 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\dciman32.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\d3d10warp.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\atmlib.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\atmfd.dll
2015-08-26 20:43:21 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-08-26 20:43:21 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-08-26 20:43:21 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-08-26 20:43:21 ----A---- C:\Windows\system32\fontsub.dll
2015-08-26 20:43:21 ----A---- C:\Windows\system32\FntCache.dll
2015-08-26 20:43:21 ----A---- C:\Windows\system32\DWrite.dll
2015-08-26 20:43:20 ----A---- C:\Windows\system32\win32k.sys
2015-08-26 20:43:02 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-08-26 20:43:02 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-08-26 20:43:02 ----A---- C:\Windows\system32\spwmp.dll
2015-08-26 20:43:02 ----A---- C:\Windows\system32\dxmasf.dll
2015-08-26 20:42:59 ----A---- C:\Windows\system32\wmp.dll
2015-08-26 20:42:58 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-08-26 20:42:58 ----A---- C:\Windows\system32\wmploc.DLL
2015-08-26 20:42:57 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-08-26 20:42:41 ----A---- C:\Windows\system32\jnwmon.dll
2015-08-26 20:42:40 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-08-26 20:42:40 ----A---- C:\Windows\system32\InkEd.dll
2015-08-26 20:42:31 ----A---- C:\Windows\system32\drivers\http.sys
2015-08-26 20:42:23 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-08-26 20:42:23 ----A---- C:\Windows\system32\msctf.dll
2015-08-26 20:41:24 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-08-26 20:41:24 ----A---- C:\Windows\system32\usp10.dll
2015-08-26 20:41:16 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-08-26 20:41:16 ----A---- C:\Windows\system32\d2d1.dll
2015-08-26 20:41:10 ----A---- C:\Windows\SYSWOW64\wscript.exe
2015-08-26 20:41:10 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2015-08-26 20:41:10 ----A---- C:\Windows\SYSWOW64\cscript.exe
2015-08-26 20:41:10 ----A---- C:\Windows\system32\wscript.exe
2015-08-26 20:41:10 ----A---- C:\Windows\system32\scrrun.dll
2015-08-26 20:41:10 ----A---- C:\Windows\system32\cscript.exe
2015-08-26 20:41:04 ----A---- C:\Windows\SYSWOW64\wmi.dll
2015-08-26 20:41:04 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2015-08-26 20:41:04 ----A---- C:\Windows\system32\wmi.dll
2015-08-26 20:41:04 ----A---- C:\Windows\system32\imagehlp.dll
2015-08-26 20:41:04 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2015-08-26 20:40:41 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2015-08-26 20:40:41 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-08-26 18:43:26 ----A---- C:\Windows\system32\CPFilters.dll
2015-08-26 18:43:25 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2015-08-26 18:43:24 ----A---- C:\Windows\SYSWOW64\sbe.dll
2015-08-26 18:43:24 ----A---- C:\Windows\system32\sbe.dll
2015-08-26 18:09:42 ----D---- C:\#AutoPatcher_Temp#
2015-08-26 17:47:44 ----D---- C:\956498bbeea8045a07e23235850d
2015-08-26 15:27:14 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 15:27:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 15:18:16 ----A---- C:\Windows\SYSWOW64\mscories.dll
2015-08-26 15:18:16 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2015-08-26 15:18:16 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2015-08-26 15:18:16 ----A---- C:\Windows\system32\mscories.dll
2015-08-26 15:18:16 ----A---- C:\Windows\system32\mscorier.dll
2015-08-26 15:18:15 ----A---- C:\Windows\system32\dfshim.dll
2015-08-26 15:13:33 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2015-08-26 15:13:33 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2015-08-26 15:13:33 ----A---- C:\Windows\system32\infocardapi.dll
2015-08-26 15:13:33 ----A---- C:\Windows\system32\icardagt.exe
2015-08-26 15:13:32 ----A---- C:\Windows\SYSWOW64\icardres.dll
2015-08-26 15:13:32 ----A---- C:\Windows\system32\icardres.dll
2015-08-26 15:13:22 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2015-08-26 15:13:22 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-08-26 11:12:25 ----A---- C:\Windows\system32\IEUDINIT.EXE
2015-08-26 11:05:08 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\wextract.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\url.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\msls31.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\mshta.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\inseng.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\icardie.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\wextract.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\webcheck.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\url.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\pngfilt.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\occache.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\msls31.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\mshtmler.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\mshta.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\msfeedssync.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\licmgr10.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\jsIntl.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\inseng.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\imgutil.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\iexpress.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\iesysprep.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\iepeers.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\ieapfltr.dat
2015-08-26 11:05:00 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\icardie.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\elshyph.dll
2015-08-26 11:03:35 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2015-08-26 11:03:35 ----A---- C:\Windows\system32\mswsock.dll
2015-08-26 11:03:19 ----A---- C:\Windows\system32\taskhost.exe
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\XpsPrint.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\UIAnimation.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\dxgi.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10level9.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10_1.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10.dll
2015-08-26 10:58:54 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2015-08-26 10:58:54 ----A---- C:\Windows\system32\d3d11.dll
2015-08-25 13:54:48 ----SD---- C:\Windows\SYSWOW64\Microsoft
2015-08-24 14:41:52 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2015-08-24 14:41:38 ----A---- C:\Windows\system32\drivers\mwac.sys
2015-08-24 14:41:38 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2015-08-24 14:41:38 ----A---- C:\Windows\system32\drivers\mbam.sys
2015-08-24 14:41:37 ----D---- C:\ProgramData\Malwarebytes
2015-08-24 14:41:37 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-24 14:39:23 ----D---- C:\Program Files (x86)\MagicISO
2015-08-24 11:03:35 ----D---- C:\boot
2015-08-24 11:03:11 ----D---- C:\Program Files\Macrium
2015-08-24 10:54:39 ----D---- C:\ProgramData\Macrium
2015-08-24 09:12:08 ----A---- C:\Windows\SYSWOW64\winsevr.dat
2015-08-24 09:12:04 ----D---- C:\ProgramData\AomeiBR
2015-08-24 09:11:49 ----A---- C:\Windows\system32\ammntdrv.sys
2015-08-24 09:11:49 ----A---- C:\Windows\system32\ambakdrv.sys
2015-08-24 09:11:40 ----D---- C:\Program Files (x86)\AOMEI Backupper
2015-08-23 23:20:46 ----D---- C:\Users\Chuck\AppData\Roaming\vlc
2015-08-23 23:20:14 ----D---- C:\Program Files\VideoLAN
2015-08-23 23:03:23 ----D---- C:\Users\Chuck\AppData\Roaming\tixati
2015-08-23 20:40:49 ----A---- C:\Windows\system32\amwrtdrv.sys
2015-08-23 20:40:29 ----D---- C:\Program Files (x86)\AOMEI PE Builder 1.4
2015-08-22 12:01:52 ----D---- C:\Users\Chuck\AppData\Roaming\Everything
2015-08-22 12:01:52 ----D---- C:\Program Files\Everything
2015-08-20 13:26:46 ----D---- C:\ProgramData\AVAST Software
2015-08-19 13:50:43 ----D---- C:\Windows\SYSWOW64\Adobe
2015-08-19 00:18:23 ----D---- C:\Users\Chuck\AppData\Roaming\corz
2015-08-18 13:00:06 ----D---- C:\Users\Chuck\AppData\Roaming\IDT
2015-08-18 12:42:07 ----D---- C:\Program Files\Hewlett-Packard
2015-08-18 12:23:31 ----D---- C:\Program Files (x86)\JMicron
2015-08-18 12:23:25 ----D---- C:\Windows\SYSWOW64\SDA
2015-08-18 12:17:59 ----A---- C:\Windows\system32\RTNUninst64.dll
2015-08-18 12:17:59 ----A---- C:\Windows\system32\RtNicProp64.dll
2015-08-18 12:17:59 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2015-08-18 12:17:55 ----D---- C:\Program Files (x86)\Realtek
2015-08-18 11:27:36 ----D---- C:\ProgramData\Atheros
2015-08-18 11:27:25 ----D---- C:\Users\Chuck\AppData\Roaming\Atheros
2015-08-18 11:22:54 ----D---- C:\Program Files\Common Files\QCA_Bluetooth
2015-08-18 11:22:53 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-08-18 11:20:37 ----D---- C:\Program Files (x86)\HP HD Webcam [Fixed]
2015-08-18 11:20:37 ----A---- C:\Windows\un_dext.exe
2015-08-18 11:20:37 ----A---- C:\Windows\TWAIN2080.src
2015-08-18 11:20:37 ----A---- C:\Windows\TWAIN2080.ini
2015-08-18 11:20:37 ----A---- C:\Windows\system32\drivers\SPUVCBv_x64.sys
2015-08-18 11:20:37 ----A---- C:\Windows\system32\CoInstaller_x64.dll
2015-08-18 11:20:37 ----A---- C:\Windows\SPRemove_x64.exe
2015-08-18 11:20:37 ----A---- C:\Windows\remove.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_36.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_31.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_30.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_29.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_27.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_25.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_24.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_22.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_21.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_2052.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_20.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_19.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_18.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_17.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_16.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_14.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_13.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_12.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_11.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_1046.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_10.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_09.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_08.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_07.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_06.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_05.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_04.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_02.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_01.ini
2015-08-18 11:20:18 ----A---- C:\Windows\SYSWOW64\sigfile.exe
2015-08-18 11:16:26 ----DC---- C:\Windows\system32\DRVSTORE
2015-08-18 11:16:26 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2015-08-18 10:58:21 ----A---- C:\Windows\system32\HPToneCtrls64.dll
2015-08-18 10:58:21 ----A---- C:\Windows\system32\AESTEC64.dll
2015-08-18 10:58:21 ----A---- C:\Windows\system32\AESTAR64.dll
2015-08-18 10:58:21 ----A---- C:\Windows\system32\AESTAC64.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\stlang64.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNX.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNJ.exe
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNHP.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNGUI.exe
2015-08-18 10:58:19 ----A---- C:\Windows\system32\AESTCo64.dll
2015-08-18 10:58:19 ----A---- C:\Windows\sttray64.exe
2015-08-18 10:58:18 ----D---- C:\Windows\system32\SRSLabs
2015-08-18 10:57:27 ----N---- C:\Windows\system32\stapi64.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\stcplx64.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\stapo64.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\st646433.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\drivers\stwrt64.sys
2015-08-18 10:57:24 ----D---- C:\Program Files\IDT
2015-08-17 21:11:07 ----D---- C:\Users\Chuck\AppData\Roaming\VMware
2015-08-17 21:10:23 ----A---- C:\Windows\SYSWOW64\vsocklib.dll
2015-08-17 21:10:23 ----A---- C:\Windows\system32\vsocklib.dll
2015-08-17 21:10:23 ----A---- C:\Windows\system32\drivers\vsock.sys
2015-08-17 21:10:19 ----A---- C:\Windows\system32\drivers\vmx86.sys
2015-08-17 21:10:19 ----A---- C:\Windows\system32\drivers\VMkbd.sys
2015-08-17 21:09:48 ----A---- C:\Windows\SYSWOW64\vmnetdhcp.exe
2015-08-17 21:09:43 ----A---- C:\Windows\SYSWOW64\vmnat.exe
2015-08-17 21:09:42 ----A---- C:\Windows\system32\drivers\vmnetuserif.sys
2015-08-17 21:09:37 ----A---- C:\Windows\system32\vnetlib64.dll
2015-08-17 21:09:31 ----A---- C:\Windows\system32\drivers\hcmon.sys
2015-08-17 21:09:29 ----A---- C:\Windows\system32\drivers\vmusb.sys
2015-08-17 21:09:18 ----D---- C:\Program Files\Common Files\VMware
2015-08-17 21:09:10 ----D---- C:\ProgramData\VMware
2015-08-17 21:09:10 ----D---- C:\Program Files (x86)\VMware
2015-08-17 12:05:49 ----D---- C:\Users\Chuck\AppData\Roaming\Unity
2015-08-17 11:40:30 ----D---- C:\Users\Chuck\AppData\Roaming\ATI
2015-08-17 11:40:30 ----D---- C:\ProgramData\ATI
2015-08-17 11:37:34 ----D---- C:\Program Files (x86)\AMD APP
2015-08-17 10:56:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-08-17 10:54:37 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-08-17 05:56:25 ----D---- C:\Windows\Panther
2015-08-17 05:55:52 ----D---- C:\Windows\system32\OEM
2015-08-16 23:59:37 ----D---- C:\Users\Chuck\AppData\Roaming\Macromedia
2015-08-16 23:59:37 ----D---- C:\Users\Chuck\AppData\Roaming\Adobe
2015-08-16 23:50:22 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-08-16 23:50:20 ----D---- C:\Windows\SYSWOW64\Macromed
2015-08-16 23:50:08 ----D---- C:\Windows\system32\Macromed
2015-08-16 21:45:33 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-08-16 21:35:54 ----D---- C:\Users\Chuck\AppData\Roaming\Synaptics
2015-08-16 21:32:41 ----A---- C:\Windows\system32\Wdfres.dll
2015-08-16 21:32:41 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-08-16 21:32:29 ----D---- C:\Program Files\Synaptics
2015-08-16 21:26:05 ----D---- C:\Users\Chuck\AppData\Roaming\Mozilla
2015-08-16 21:25:58 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-08-16 21:25:57 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-16 21:08:35 ----RD---- C:\Sandbox
2015-08-16 21:04:45 ----D---- C:\Program Files (x86)\ATI Technologies
2015-08-16 21:04:37 ----D---- C:\Program Files\ATI
2015-08-16 21:04:09 ----D---- C:\Program Files\ATI Technologies
2015-08-16 21:00:11 ----A---- C:\Windows\Sandboxie.ini
2015-08-16 20:59:51 ----D---- C:\Program Files\Sandboxie
2015-08-16 20:55:02 ----D---- C:\Windows\Options
2015-08-16 20:55:02 ----A---- C:\Windows\system32\drivers\athrx.sys
2015-08-16 20:55:01 ----N---- C:\Windows\system32\athihvui.dll
2015-08-16 20:55:01 ----N---- C:\Windows\system32\athihvs.dll
2015-08-16 20:55:01 ----D---- C:\Windows\system32\nn-NO
2015-08-16 20:54:52 ----D---- C:\Program Files (x86)\Cisco
2015-08-16 20:54:51 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-16 20:54:51 ----D---- C:\Program Files (x86)\Qualcomm Atheros
2015-08-16 20:54:07 ----D---- C:\ProgramData\Qualcomm Atheros
2015-08-16 20:51:00 ----D---- C:\Users\Chuck\AppData\Roaming\hpqLog
2015-08-16 20:50:59 ----SHD---- C:\Windows\Installer
2015-08-16 20:50:55 ----D---- C:\ProgramData\Hewlett-Packard
2015-08-16 20:50:50 ----D---- C:\Swsetup
2015-08-16 20:23:25 ----D---- C:\Users\Chuck\AppData\Roaming\Identities
2015-08-16 20:23:04 ----SD---- C:\Users\Chuck\AppData\Roaming\Microsoft
2015-08-16 20:23:04 ----D---- C:\Users\Chuck\AppData\Roaming\Media Center Programs
2015-08-16 20:22:55 ----SHD---- C:\Recovery
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Šablony
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Plocha
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Oblíbené položky
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Nabídka Start
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Dokumenty
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Data aplikací
2015-08-16 19:57:59 ----D---- C:\Windows\Prefetch
2015-08-16 19:57:04 ----SHD---- C:\System Volume Information
2015-08-16 19:57:04 ----ASH---- C:\pagefile.sys
2015-08-16 19:57:04 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2015-08-29 18:36:09 ----D---- C:\Windows\Temp
2015-08-29 18:36:08 ----RD---- C:\Program Files
2015-08-29 18:21:47 ----D---- C:\Windows
2015-08-29 17:31:13 ----D---- C:\Windows\System32
2015-08-29 17:31:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-08-29 17:31:12 ----D---- C:\Windows\inf
2015-08-29 17:28:57 ----D---- C:\Windows\Microsoft.NET
2015-08-29 17:25:18 ----D---- C:\Windows\Logs
2015-08-29 17:25:17 ----D---- C:\Windows\winsxs
2015-08-29 17:24:06 ----D---- C:\Windows\system32\config
2015-08-29 17:21:27 ----D---- C:\Windows\AppCompat
2015-08-29 17:21:24 ----D---- C:\Windows\system32\wbem
2015-08-29 17:21:24 ----D---- C:\Windows\AppPatch
2015-08-29 17:21:22 ----D---- C:\Windows\SysWOW64
2015-08-29 17:21:18 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-08-29 17:21:18 ----D---- C:\Windows\system32\cs-CZ
2015-08-29 17:21:13 ----SD---- C:\ProgramData\Microsoft
2015-08-29 17:21:06 ----D---- C:\Windows\system32\AdvancedInstallers
2015-08-29 17:21:03 ----D---- C:\Windows\SYSWOW64\Dism
2015-08-29 17:21:02 ----D---- C:\Windows\system32\Dism
2015-08-29 17:21:01 ----RSD---- C:\Windows\Fonts
2015-08-29 17:20:54 ----D---- C:\Windows\tracing
2015-08-29 17:20:49 ----D---- C:\Windows\system32\drivers
2015-08-29 17:20:45 ----D---- C:\Windows\SYSWOW64\migration
2015-08-29 17:20:45 ----D---- C:\Windows\system32\migration
2015-08-29 17:20:23 ----D---- C:\Windows\system32\DriverStore
2015-08-29 17:08:34 ----RSD---- C:\Windows\assembly
2015-08-29 16:43:50 ----D---- C:\Windows\system32\catroot2
2015-08-29 15:54:06 ----A---- C:\Windows\win.ini
2015-08-29 10:41:42 ----D---- C:\Windows\system32\Tasks
2015-08-29 10:35:29 ----D---- C:\Windows\ShellNew
2015-08-29 10:35:14 ----D---- C:\Program Files (x86)\Common Files
2015-08-29 10:34:40 ----HD---- C:\ProgramData
2015-08-29 10:34:20 ----RD---- C:\Program Files (x86)
2015-08-29 10:30:51 ----D---- C:\Program Files\Common Files\Microsoft Shared
2015-08-28 23:44:51 ----D---- C:\Windows\system32\FxsTmp
2015-08-27 16:09:39 ----D---- C:\Windows\SYSWOW64\drivers
2015-08-27 00:39:34 ----D---- C:\Windows\system32\wdi
2015-08-27 00:35:31 ----D---- C:\Program Files\Internet Explorer
2015-08-27 00:35:30 ----D---- C:\Windows\SYSWOW64\en-US
2015-08-27 00:35:27 ----D---- C:\Windows\system32\en-US
2015-08-27 00:35:23 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-26 22:45:42 ----D---- C:\Program Files\Common Files\System
2015-08-26 22:45:32 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-08-26 22:45:24 ----D---- C:\Windows\ehome
2015-08-26 22:45:06 ----D---- C:\Windows\system32\CodeIntegrity
2015-08-26 22:45:06 ----D---- C:\Windows\system32\Boot
2015-08-26 22:44:37 ----D---- C:\Program Files\Windows Defender
2015-08-26 22:44:37 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-26 22:43:09 ----D---- C:\Windows\PolicyDefinitions
2015-08-26 22:05:55 ----D---- C:\Windows\system32\catroot
2015-08-26 20:47:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-26 20:47:49 ----D---- C:\Program Files\Windows Media Player
2015-08-26 20:47:48 ----D---- C:\Program Files\Windows Journal
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\pt-PT
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\pt-BR
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\pl-PL
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\ko-KR
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\it-IT
2015-08-26 11:13:51 ----D---- C:\Windows\SYSWOW64\zh-HK
2015-08-26 11:13:51 ----D---- C:\Windows\SYSWOW64\hu-HU
2015-08-26 11:13:50 ----D---- C:\Windows\SYSWOW64\el-GR
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\tr-TR
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\sv-SE
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\nl-NL
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\fr-FR
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\fi-FI
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\es-ES
2015-08-26 11:13:47 ----D---- C:\Windows\SYSWOW64\zh-TW
2015-08-26 11:13:47 ----D---- C:\Windows\SYSWOW64\de-DE
2015-08-26 11:13:46 ----D---- C:\Windows\SYSWOW64\zh-CN
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\ru-RU
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\nb-NO
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\ja-JP
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\da-DK
2015-08-26 11:13:41 ----D---- C:\Windows\system32\pt-BR
2015-08-26 11:13:41 ----D---- C:\Windows\system32\it-IT
2015-08-26 11:13:40 ----D---- C:\Windows\system32\zh-HK
2015-08-26 11:13:40 ----D---- C:\Windows\system32\pt-PT
2015-08-26 11:13:40 ----D---- C:\Windows\system32\pl-PL
2015-08-26 11:13:40 ----D---- C:\Windows\system32\ko-KR
2015-08-26 11:13:40 ----D---- C:\Windows\system32\hu-HU
2015-08-26 11:13:38 ----D---- C:\Windows\system32\nl-NL
2015-08-26 11:13:38 ----D---- C:\Windows\system32\fr-FR
2015-08-26 11:13:38 ----D---- C:\Windows\system32\fi-FI
2015-08-26 11:13:38 ----D---- C:\Windows\system32\el-GR
2015-08-26 11:13:37 ----D---- C:\Windows\system32\tr-TR
2015-08-26 11:13:36 ----D---- C:\Windows\system32\zh-TW
2015-08-26 11:13:36 ----D---- C:\Windows\system32\sv-SE
2015-08-26 11:13:36 ----D---- C:\Windows\system32\es-ES
2015-08-26 11:13:36 ----D---- C:\Windows\system32\de-DE
2015-08-26 11:13:34 ----D---- C:\Windows\system32\zh-CN
2015-08-26 11:13:34 ----D---- C:\Windows\system32\ru-RU
2015-08-26 11:13:34 ----D---- C:\Windows\system32\nb-NO
2015-08-26 11:13:34 ----D---- C:\Windows\system32\ja-JP
2015-08-26 11:13:33 ----D---- C:\Windows\system32\da-DK
2015-08-25 13:52:15 ----D---- C:\Windows\rescache
2015-08-25 12:16:43 ----D---- C:\Program Files\Windows Sidebar
2015-08-25 12:16:42 ----D---- C:\Program Files\Windows Mail
2015-08-25 12:16:40 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-25 12:16:37 ----D---- C:\Program Files (x86)\Windows Sidebar
2015-08-25 12:16:37 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-25 12:16:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-25 12:16:32 ----D---- C:\Windows\servicing
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\winrm
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\slmgr
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\migwiz
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\en
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2015-08-25 12:16:05 ----D---- C:\Windows\SYSWOW64\sl-SI
2015-08-25 12:15:40 ----D---- C:\Windows\SYSWOW64\DriverStore
2015-08-25 12:15:39 ----D---- C:\Windows\SYSWOW64\WCN
2015-08-25 12:15:39 ----D---- C:\Windows\SYSWOW64\wbem
2015-08-25 12:15:39 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2015-08-25 12:15:34 ----D---- C:\Windows\en-US
2015-08-25 12:15:32 ----D---- C:\Windows\system32\winrm
2015-08-25 12:15:32 ----D---- C:\Windows\system32\oobe
2015-08-25 12:15:32 ----D---- C:\Windows\system32\migwiz
2015-08-25 12:15:31 ----D---- C:\Windows\system32\sysprep
2015-08-25 12:15:31 ----D---- C:\Windows\system32\slmgr
2015-08-25 12:15:30 ----D---- C:\Windows\system32\en
2015-08-25 12:14:59 ----D---- C:\Windows\system32\sl-SI
2015-08-25 12:14:28 ----D---- C:\Windows\system32\drivers\en-US
2015-08-25 12:14:25 ----D---- C:\Windows\system32\WCN
2015-08-25 12:14:09 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2015-08-25 12:13:12 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-08-25 12:12:38 ----D---- C:\Windows\system32\sk-SK
2015-08-25 12:11:22 ----D---- C:\Windows\SYSWOW64\ro-RO
2015-08-25 12:10:49 ----D---- C:\Windows\system32\ro-RO
2015-08-25 12:09:30 ----D---- C:\Windows\SYSWOW64\lv-LV
2015-08-25 12:08:56 ----D---- C:\Windows\system32\lv-LV
2015-08-25 12:07:41 ----D---- C:\Windows\SYSWOW64\lt-LT
2015-08-25 12:07:08 ----D---- C:\Windows\system32\lt-LT
2015-08-25 12:05:52 ----D---- C:\Windows\SYSWOW64\hr-HR
2015-08-25 12:05:20 ----D---- C:\Windows\system32\hr-HR
2015-08-25 12:04:02 ----D---- C:\Windows\SYSWOW64\et-EE
2015-08-25 12:03:28 ----D---- C:\Windows\system32\et-EE
2015-08-25 12:02:16 ----D---- C:\Windows\SYSWOW64\bg-BG
2015-08-25 12:01:44 ----D---- C:\Windows\system32\bg-BG
2015-08-25 12:00:29 ----D---- C:\Program Files\DVD Maker
2015-08-25 11:59:22 ----D---- C:\Windows\Speech
2015-08-24 11:25:52 ----D---- C:\Windows\debug
2015-08-19 23:45:42 ----D---- C:\Windows\Tasks
2015-08-18 11:22:54 ----D---- C:\Program Files\Common Files
2015-08-18 11:20:43 ----D---- C:\Windows\twain_32
2015-08-16 21:43:23 ----D---- C:\Windows\system32\restore
2015-08-16 21:13:39 ----D---- C:\Windows\Downloaded Program Files
2015-08-16 20:47:37 ----D---- C:\Windows\system32\NDF
2015-08-16 20:38:24 ----SHD---- C:\$Recycle.Bin
2015-08-16 20:38:19 ----RD---- C:\Users
2015-08-16 20:22:55 ----D---- C:\Windows\system32\Recovery
2015-08-16 20:22:55 ----D---- C:\Program Files\Windows NT
2015-08-16 20:12:03 ----D---- C:\Windows\system32\drivers\UMDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ambakdrv;ambakdrv; C:\Windows\system32\ambakdrv.sys [2015-02-26 30648]
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2012-10-12 82600]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2012-10-12 42664]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys [2015-05-21 85584]
R0 vsock;vSockets Driver; C:\Windows\system32\drivers\vsock.sys [2015-05-21 76480]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ammntdrv;ammntdrv; \??\C:\Windows\system32\ammntdrv.sys [2015-02-26 151480]
R2 amwrtdrv;amwrtdrv; \??\C:\Windows\system32\amwrtdrv.sys [2015-02-26 17848]
R2 hcmon;VMware hcmon; \??\C:\Windows\system32\drivers\hcmon.sys [2015-05-22 55488]
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys [2015-05-31 48832]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys [2015-05-31 26816]
R2 vmx86;VMware vmx86; \??\C:\Windows\system32\drivers\vmx86.sys [2015-05-31 66752]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 amdhub30;AMD USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\amdhub30.sys [2013-02-26 108128]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-10-25 10207744]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-10-25 317952]
R3 amdxhc;AMD USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\amdxhc.sys [2013-02-26 228448]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2013-09-25 89800]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2013-08-25 4017664]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-06-06 231440]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2013-09-25 338120]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys [2013-09-25 116424]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2013-09-25 34384]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2013-09-25 179432]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2013-09-25 77464]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2013-09-25 137928]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2013-09-25 590024]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2011-07-18 25912]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2012-07-31 175928]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-06-18 25816]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2009-02-24 255552]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-28 918232]
R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [2015-06-23 190088]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2011-04-03 2614520]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\Windows\system32\DRIVERS\stwrt64.sys [2012-10-24 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-09-04 524016]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 vmkbd;VMware kbd; \??\C:\Windows\system32\drivers\VMkbd.sys [2015-05-31 33472]
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys [2015-05-31 28864]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-06-18 63704]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\drivers\nusb3hub.sys [2010-07-27 78848]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\drivers\nusb3xhc.sys [2010-07-27 180224]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 PSMounterEx;Macrium Reflect Image Explorer Driver; \??\C:\Windows\system32\drivers\psmounterex.sys [2015-02-23 169480]
S3 PSVolAcc;PSVolAcc; C:\Windows\system32\drivers\PSVolAcc.sys [2014-07-21 12760]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 vmusb;VMware USB Client Driver; C:\Windows\system32\DRIVERS\vmusb.sys [2015-05-22 46144]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Users\Chuck\AppData\Local\Temp\tmpE9A3.tmp []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-10-25 204288]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-09-25 312448]
R2 Backupper Service;AOMEI Backupper Scheduler Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [2015-08-06 29912]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Everything;Everything; C:\Program Files\Everything\Everything.exe [2014-08-06 1441792]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-03-14 197504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-03-14 365440]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2012-09-24 31040]
R2 ReflectService.exe;Macrium Reflect Image Mounting Service; C:\Program Files\Macrium\Reflect\ReflectService.exe [2015-02-23 3446224]
R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2015-06-23 175752]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-10-24 327680]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [2015-05-31 87744]
R2 VMnetDHCP;VMware DHCP Service; C:\Windows\SysWOW64\vmnetdhcp.exe [2015-05-31 359104]
R2 VMUSBArbService;VMware USB Arbitration Service; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [2015-05-22 916672]
R2 VMware NAT Service;VMware NAT Service; C:\Windows\SysWOW64\vmnat.exe [2015-05-31 438464]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-03-14 994176]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-07-16 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-13 149160]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-01-21 5132888]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-08-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
======List of files/folders created in the last 1 month======
2015-08-29 18:36:08 ----D---- C:\rsit
2015-08-29 18:36:08 ----D---- C:\Program Files\trend micro
2015-08-29 18:19:17 ----D---- C:\Windows\SoftwareDistribution
2015-08-29 17:21:24 ----SD---- C:\Windows\system32\CompatTel
2015-08-29 17:21:24 ----D---- C:\Windows\system32\appraiser
2015-08-29 17:21:07 ----SD---- C:\Windows\SYSWOW64\GWX
2015-08-29 17:21:06 ----SD---- C:\Windows\system32\GWX
2015-08-29 16:54:42 ----D---- C:\Windows\Migration
2015-08-29 16:49:07 ----SHD---- C:\Config.Msi
2015-08-29 16:45:46 ----A---- C:\Windows\system32\UtcResources.dll
2015-08-29 16:45:46 ----A---- C:\Windows\system32\diagtrack.dll
2015-08-29 16:45:44 ----A---- C:\Windows\system32\tdh.dll
2015-08-29 16:45:43 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-08-29 16:45:43 ----A---- C:\Windows\system32\advapi32.dll
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\logman.exe
2015-08-29 16:45:42 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-08-29 16:45:42 ----A---- C:\Windows\system32\typeperf.exe
2015-08-29 16:45:42 ----A---- C:\Windows\system32\tracerpt.exe
2015-08-29 16:45:42 ----A---- C:\Windows\system32\sechost.dll
2015-08-29 16:45:42 ----A---- C:\Windows\system32\logman.exe
2015-08-29 16:45:41 ----A---- C:\Windows\SYSWOW64\typeperf.exe
2015-08-29 16:45:41 ----A---- C:\Windows\SYSWOW64\relog.exe
2015-08-29 16:45:41 ----A---- C:\Windows\SYSWOW64\diskperf.exe
2015-08-29 16:45:41 ----A---- C:\Windows\system32\relog.exe
2015-08-29 16:45:41 ----A---- C:\Windows\system32\diskperf.exe
2015-08-29 16:45:34 ----A---- C:\Windows\SYSWOW64\gameux.dll
2015-08-29 16:45:34 ----A---- C:\Windows\system32\Wpc.dll
2015-08-29 16:45:34 ----A---- C:\Windows\system32\gameux.dll
2015-08-29 16:45:33 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2015-08-29 16:45:25 ----A---- C:\Windows\system32\generaltel.dll
2015-08-29 16:45:25 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-08-29 16:45:25 ----A---- C:\Windows\system32\aitstatic.exe
2015-08-29 16:45:24 ----A---- C:\Windows\system32\invagent.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\devinv.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\appraiser.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\aepic.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\aepdu.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\aeinv.dll
2015-08-29 16:45:24 ----A---- C:\Windows\system32\acmigration.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-08-29 16:45:12 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\wintrust.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\cryptsvc.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\cryptnet.dll
2015-08-29 16:45:12 ----A---- C:\Windows\system32\crypt32.dll
2015-08-29 16:45:08 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2015-08-29 16:45:08 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2015-08-29 16:45:08 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2015-08-29 16:45:08 ----A---- C:\Windows\system32\dhcpcore6.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\secproc.dll
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2015-08-29 16:45:04 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc_ssp.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc_isv.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\secproc.dll
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\RMActivate.exe
2015-08-29 16:45:04 ----A---- C:\Windows\system32\msdrm.dll
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDYAK.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDTAT.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDRU1.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDRU.DLL
2015-08-29 16:44:57 ----A---- C:\Windows\system32\KBDBASH.DLL
2015-08-29 16:44:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2015-08-29 16:44:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\netevent.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\netcorehc.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2015-08-29 16:44:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2015-08-29 16:44:49 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2015-08-29 16:44:49 ----A---- C:\Windows\system32\TSWorkspace.dll
2015-08-29 16:44:46 ----A---- C:\Windows\system32\tquery.dll
2015-08-29 16:44:45 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-08-29 16:44:45 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-08-29 16:44:45 ----A---- C:\Windows\system32\mssrch.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-08-29 16:44:44 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\system32\SearchFilterHost.exe
2015-08-29 16:44:44 ----A---- C:\Windows\system32\mssvp.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\mssphtb.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\mssph.dll
2015-08-29 16:44:44 ----A---- C:\Windows\system32\msscntrs.dll
2015-08-29 16:44:40 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2015-08-29 16:44:40 ----A---- C:\Windows\system32\ntshrui.dll
2015-08-29 16:44:36 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2015-08-29 16:44:36 ----A---- C:\Windows\SYSWOW64\credui.dll
2015-08-29 16:44:36 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2015-08-29 16:44:36 ----A---- C:\Windows\system32\credui.dll
2015-08-29 16:44:30 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2015-08-29 16:44:30 ----A---- C:\Windows\system32\msieftp.dll
2015-08-29 16:44:30 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-08-29 16:44:29 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WsmWmiPl.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WsmAuto.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WSManMigrationPlugin.dll
2015-08-29 16:44:28 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WsmWmiPl.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WsmSvc.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WsmAuto.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2015-08-29 16:44:28 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2015-08-29 16:44:27 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-08-29 16:44:27 ----A---- C:\Windows\system32\wpdshext.dll
2015-08-29 16:44:26 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2015-08-29 16:44:26 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-08-29 16:44:26 ----A---- C:\Windows\system32\xmllite.dll
2015-08-29 16:44:26 ----A---- C:\Windows\system32\oleaut32.dll
2015-08-29 16:44:25 ----A---- C:\Windows\SYSWOW64\wdi.dll
2015-08-29 16:44:25 ----A---- C:\Windows\system32\wdi.dll
2015-08-29 16:44:25 ----A---- C:\Windows\system32\powertracker.dll
2015-08-29 16:44:25 ----A---- C:\Windows\system32\perftrack.dll
2015-08-29 16:44:24 ----A---- C:\Windows\system32\wwansvc.dll
2015-08-29 16:44:24 ----A---- C:\Windows\system32\wwanprotdim.dll
2015-08-29 16:44:24 ----A---- C:\Windows\system32\drivers\ataport.sys
2015-08-29 16:44:22 ----A---- C:\Windows\system32\drivers\tdx.sys
2015-08-29 16:44:22 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-08-29 16:44:22 ----A---- C:\Windows\system32\drivers\bthport.sys
2015-08-29 16:44:20 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2015-08-29 16:44:20 ----A---- C:\Windows\system32\iologmsg.dll
2015-08-29 16:44:20 ----A---- C:\Windows\system32\drivers\storport.sys
2015-08-29 16:44:20 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2015-08-29 16:44:20 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2015-08-29 16:44:18 ----A---- C:\Windows\SYSWOW64\charmap.exe
2015-08-29 16:44:18 ----A---- C:\Windows\system32\charmap.exe
2015-08-29 16:44:14 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2015-08-29 16:44:14 ----A---- C:\Windows\system32\cryptdlg.dll
2015-08-29 16:44:12 ----A---- C:\Windows\system32\drivers\stream.sys
2015-08-29 16:39:18 ----A---- C:\Windows\system32\OxpsConverter.exe
2015-08-29 16:38:53 ----A---- C:\Windows\system32\drivers\fvevol.sys
2015-08-29 16:36:24 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2015-08-29 16:36:24 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-08-29 16:36:24 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2015-08-29 16:36:24 ----A---- C:\Windows\system32\shimeng.dll
2015-08-29 16:36:24 ----A---- C:\Windows\system32\sdbinst.exe
2015-08-29 16:36:24 ----A---- C:\Windows\system32\apphelp.dll
2015-08-29 16:36:24 ----A---- C:\Windows\system32\aelupsvc.dll
2015-08-29 16:36:17 ----A---- C:\Windows\SYSWOW64\tzres.dll
2015-08-29 16:36:17 ----A---- C:\Windows\system32\tzres.dll
2015-08-29 16:36:08 ----A---- C:\Windows\system32\drivers\ntfs.sys
2015-08-29 16:36:02 ----A---- C:\Windows\system32\esent.dll
2015-08-29 16:36:01 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2015-08-29 16:36:01 ----A---- C:\Windows\SYSWOW64\esent.dll
2015-08-29 16:36:01 ----A---- C:\Windows\system32\fsutil.exe
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\nvstor.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\nvraid.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\amdxata.sys
2015-08-29 16:36:01 ----A---- C:\Windows\system32\drivers\amdsata.sys
2015-08-29 16:35:30 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2015-08-29 16:35:30 ----A---- C:\Windows\system32\prevhost.exe
2015-08-29 16:24:56 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2015-08-29 16:24:56 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2015-08-29 10:34:40 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-29 10:34:20 ----D---- C:\Windows\PCHEALTH
2015-08-29 10:34:20 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-08-29 10:32:47 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2015-08-29 10:32:07 ----D---- C:\ProgramData\Microsoft Help
2015-08-29 10:30:51 ----D---- C:\Program Files (x86)\Microsoft Office
2015-08-29 10:30:27 ----D---- C:\Program Files\Microsoft Office
2015-08-29 10:28:59 ----RHD---- C:\MSOCache
2015-08-28 12:20:49 ----D---- C:\ProgramData\Microsoft Toolkit
2015-08-27 16:09:39 ----D---- C:\Program Files (x86)\MagicDisc
2015-08-27 16:09:39 ----A---- C:\Windows\SYSWOW64\drivers\mcdbus.sys
2015-08-27 16:09:39 ----A---- C:\Windows\system32\drivers\mcdbus.sys
2015-08-27 14:51:31 ----D---- C:\Users\Chuck\AppData\Roaming\DMCache
2015-08-27 00:45:29 ----D---- C:\Windows\SYSWOW64\Wat
2015-08-27 00:45:29 ----D---- C:\Windows\system32\Wat
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-08-27 00:33:04 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-08-27 00:33:04 ----A---- C:\Windows\system32\iertutil.dll
2015-08-27 00:33:04 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-08-27 00:33:04 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-08-27 00:33:03 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-08-27 00:33:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-27 00:33:03 ----A---- C:\Windows\system32\iernonce.dll
2015-08-27 00:33:03 ----A---- C:\Windows\system32\ie4uinit.exe
2015-08-27 00:33:02 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-08-27 00:33:01 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-08-27 00:33:01 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-08-27 00:33:01 ----A---- C:\Windows\system32\iedkcs32.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-08-27 00:33:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-08-27 00:33:00 ----A---- C:\Windows\system32\urlmon.dll
2015-08-27 00:33:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-08-27 00:32:59 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-08-27 00:32:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-08-27 00:32:59 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-08-27 00:32:59 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-27 00:32:59 ----A---- C:\Windows\system32\msfeeds.dll
2015-08-27 00:32:59 ----A---- C:\Windows\system32\dxtrans.dll
2015-08-27 00:32:58 ----A---- C:\Windows\system32\iesetup.dll
2015-08-27 00:32:58 ----A---- C:\Windows\system32\ieapfltr.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-08-27 00:32:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-08-27 00:32:56 ----A---- C:\Windows\system32\vbscript.dll
2015-08-27 00:32:56 ----A---- C:\Windows\system32\jsproxy.dll
2015-08-27 00:32:56 ----A---- C:\Windows\system32\ieUnatt.exe
2015-08-27 00:32:55 ----A---- C:\Windows\system32\ieui.dll
2015-08-27 00:32:55 ----A---- C:\Windows\system32\ieframe.dll
2015-08-27 00:32:55 ----A---- C:\Windows\system32\dxtmsft.dll
2015-08-27 00:32:54 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-08-27 00:32:54 ----A---- C:\Windows\system32\mshtmled.dll
2015-08-27 00:32:54 ----A---- C:\Windows\system32\jscript.dll
2015-08-27 00:32:53 ----A---- C:\Windows\system32\wininet.dll
2015-08-27 00:32:53 ----A---- C:\Windows\system32\jscript9diag.dll
2015-08-27 00:32:53 ----A---- C:\Windows\system32\jscript9.dll
2015-08-27 00:32:52 ----A---- C:\Windows\system32\msrating.dll
2015-08-27 00:32:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-08-27 00:32:51 ----A---- C:\Windows\system32\mshtml.dll
2015-08-26 23:37:32 ----A---- C:\Windows\system32\scavengeui.dll
2015-08-26 21:24:15 ----A---- C:\Windows\system32\blackbox.dll
2015-08-26 21:24:14 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2015-08-26 21:24:14 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2015-08-26 21:24:14 ----A---- C:\Windows\system32\drmv2clt.dll
2015-08-26 21:24:12 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-08-26 21:24:12 ----A---- C:\Windows\system32\mf.dll
2015-08-26 21:24:11 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2015-08-26 21:24:11 ----A---- C:\Windows\SYSWOW64\mf.dll
2015-08-26 21:24:11 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-08-26 21:24:09 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-08-26 21:24:08 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2015-08-26 21:24:08 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-08-26 21:24:08 ----A---- C:\Windows\system32\ci.dll
2015-08-26 21:24:07 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2015-08-26 21:24:07 ----A---- C:\Windows\system32\quartz.dll
2015-08-26 21:24:06 ----A---- C:\Windows\SYSWOW64\evr.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\winresume.exe
2015-08-26 21:24:06 ----A---- C:\Windows\system32\winload.exe
2015-08-26 21:24:06 ----A---- C:\Windows\system32\qdvd.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\mfplat.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\evr.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\cryptui.dll
2015-08-26 21:24:06 ----A---- C:\Windows\system32\audiosrv.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\quartz.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-08-26 21:24:05 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2015-08-26 21:24:05 ----A---- C:\Windows\system32\pcasvc.dll
2015-08-26 21:24:05 ----A---- C:\Windows\system32\AudioEng.dll
2015-08-26 21:24:04 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2015-08-26 21:24:04 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\msscp.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\EncDump.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\cryptsp.dll
2015-08-26 21:24:04 ----A---- C:\Windows\system32\AudioSes.dll
2015-08-26 21:24:03 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2015-08-26 21:24:03 ----A---- C:\Windows\system32\msnetobj.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\msscp.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\mfps.dll
2015-08-26 21:24:02 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\rrinstaller.exe
2015-08-26 21:24:02 ----A---- C:\Windows\system32\pcadm.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\mfps.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\drivers\appid.sys
2015-08-26 21:24:02 ----A---- C:\Windows\system32\audiodg.exe
2015-08-26 21:24:02 ----A---- C:\Windows\system32\appidsvc.dll
2015-08-26 21:24:02 ----A---- C:\Windows\system32\appidapi.dll
2015-08-26 21:24:01 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-08-26 21:24:01 ----A---- C:\Windows\system32\pcawrk.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\pcalua.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\mfpmp.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-08-26 21:24:01 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-08-26 21:24:00 ----A---- C:\Windows\SYSWOW64\mferror.dll
2015-08-26 21:24:00 ----A---- C:\Windows\system32\pcaevts.dll
2015-08-26 21:24:00 ----A---- C:\Windows\system32\mferror.dll
2015-08-26 21:23:39 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-08-26 21:23:39 ----A---- C:\Windows\system32\certcli.dll
2015-08-26 21:23:25 ----A---- C:\Windows\system32\basesrv.dll
2015-08-26 21:23:11 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-08-26 21:23:10 ----A---- C:\Windows\system32\rpcrt4.dll
2015-08-26 21:23:10 ----A---- C:\Windows\system32\ntdll.dll
2015-08-26 21:23:10 ----A---- C:\Windows\system32\lsasrv.dll
2015-08-26 21:23:09 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-08-26 21:23:09 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-08-26 21:23:08 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\schannel.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\msv1_0.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\KernelBase.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\kernel32.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\kerberos.dll
2015-08-26 21:23:08 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-08-26 21:23:07 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\wow64win.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\wow64.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\winsrv.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\wdigest.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\TSpkg.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\sysmain.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\srcore.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\smss.exe
2015-08-26 21:23:07 ----A---- C:\Windows\system32\rstrui.exe
2015-08-26 21:23:07 ----A---- C:\Windows\system32\ncrypt.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-08-26 21:23:07 ----A---- C:\Windows\system32\csrsrv.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\cryptbase.dll
2015-08-26 21:23:07 ----A---- C:\Windows\system32\conhost.exe
2015-08-26 21:23:07 ----A---- C:\Windows\system32\adtschema.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23:06 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-08-26 21:23:06 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\wow64cpu.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\sspisrv.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\sspicli.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\srclient.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\secur32.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\ntvdm64.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\msmmsp.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\msaudite.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\lsass.exe
2015-08-26 21:23:06 ----A---- C:\Windows\system32\credssp.dll
2015-08-26 21:23:06 ----A---- C:\Windows\system32\auditpol.exe
2015-08-26 21:23:06 ----A---- C:\Windows\system32\apisetschema.dll
2015-08-26 21:23:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23:05 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23:05 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23:05 ----A---- C:\Windows\SYSWOW64\user.exe
2015-08-26 21:23:05 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-08-26 21:23:05 ----A---- C:\Windows\system32\msobjs.dll
2015-08-26 21:22:53 ----A---- C:\Windows\system32\termsrv.dll
2015-08-26 21:22:45 ----A---- C:\Windows\SYSWOW64\webio.dll
2015-08-26 21:22:45 ----A---- C:\Windows\system32\webio.dll
2015-08-26 21:22:31 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-08-26 21:22:31 ----A---- C:\Windows\system32\drivers\netio.sys
2015-08-26 21:22:31 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-08-26 21:22:30 ----A---- C:\Windows\SYSWOW64\osk.exe
2015-08-26 21:22:30 ----A---- C:\Windows\system32\osk.exe
2015-08-26 21:22:13 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-08-26 21:22:13 ----A---- C:\Windows\system32\mstscax.dll
2015-08-26 21:22:12 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-08-26 21:22:12 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2015-08-26 21:22:12 ----A---- C:\Windows\system32\tsgqec.dll
2015-08-26 21:22:12 ----A---- C:\Windows\system32\aaclient.dll
2015-08-26 21:22:09 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2015-08-26 21:22:08 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-08-26 21:22:08 ----A---- C:\Windows\system32\WebClnt.dll
2015-08-26 21:22:08 ----A---- C:\Windows\system32\davclnt.dll
2015-08-26 21:22:07 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-08-26 21:22:07 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-08-26 21:22:04 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2015-08-26 21:22:04 ----A---- C:\Windows\system32\ubpm.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbctrac.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbccu32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbccr32.dll
2015-08-26 21:22:03 ----A---- C:\Windows\system32\odbccp32.dll
2015-08-26 21:22:01 ----A---- C:\Windows\system32\services.exe
2015-08-26 21:22:00 ----A---- C:\Windows\system32\mfc42u.dll
2015-08-26 21:22:00 ----A---- C:\Windows\system32\mfc42.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2015-08-26 21:21:59 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2015-08-26 21:21:59 ----A---- C:\Windows\system32\nlasvc.dll
2015-08-26 21:21:59 ----A---- C:\Windows\system32\nlaapi.dll
2015-08-26 21:21:59 ----A---- C:\Windows\system32\ncsi.dll
2015-08-26 21:21:55 ----A---- C:\Windows\system32\profsvc.dll
2015-08-26 21:21:54 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-08-26 21:21:54 ----A---- C:\Windows\system32\gdi32.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml6r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml6.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml3r.dll
2015-08-26 21:21:53 ----A---- C:\Windows\system32\msxml3.dll
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbport.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbohci.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbhub.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbehci.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbd.sys
2015-08-26 21:21:52 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2015-08-26 21:21:51 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-08-26 21:21:51 ----A---- C:\Windows\system32\wer.dll
2015-08-26 21:21:50 ----A---- C:\Windows\system32\cewmdm.dll
2015-08-26 21:21:49 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2015-08-26 21:21:48 ----A---- C:\Windows\system32\qedit.dll
2015-08-26 21:21:48 ----A---- C:\Windows\system32\drivers\portcls.sys
2015-08-26 21:21:48 ----A---- C:\Windows\system32\drivers\drmk.sys
2015-08-26 21:21:47 ----A---- C:\Windows\SYSWOW64\qedit.dll
2015-08-26 21:21:47 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-08-26 21:21:45 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-08-26 21:21:45 ----A---- C:\Windows\system32\comctl32.dll
2015-08-26 21:21:44 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-08-26 21:21:43 ----A---- C:\Windows\system32\drivers\afd.sys
2015-08-26 21:21:33 ----A---- C:\Windows\system32\objsel.dll
2015-08-26 21:21:32 ----A---- C:\Windows\SYSWOW64\objsel.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\wincredprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\dpapiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\dimsroam.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\cngprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\capiprovider.dll
2015-08-26 21:21:31 ----A---- C:\Windows\system32\adprovider.dll
2015-08-26 21:21:16 ----A---- C:\Windows\system32\winlogon.exe
2015-08-26 21:21:15 ----A---- C:\Windows\SYSWOW64\winsta.dll
2015-08-26 21:21:15 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2015-08-26 21:21:15 ----A---- C:\Windows\system32\winsta.dll
2015-08-26 21:21:15 ----A---- C:\Windows\system32\rdrmemptylst.exe
2015-08-26 21:21:15 ----A---- C:\Windows\system32\rdpwsx.dll
2015-08-26 21:21:15 ----A---- C:\Windows\system32\rdpcorekmts.dll
2015-08-26 21:21:15 ----A---- C:\Windows\system32\mstsc.exe
2015-08-26 21:21:15 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2015-08-26 21:21:15 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2015-08-26 21:21:03 ----A---- C:\Windows\system32\drivers\cng.sys
2015-08-26 21:20:55 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-08-26 21:20:55 ----A---- C:\Windows\system32\ole32.dll
2015-08-26 21:20:22 ----A---- C:\Windows\SYSWOW64\certutil.exe
2015-08-26 21:20:22 ----A---- C:\Windows\system32\certutil.exe
2015-08-26 21:20:21 ----A---- C:\Windows\SYSWOW64\certenc.dll
2015-08-26 21:20:21 ----A---- C:\Windows\system32\certenc.dll
2015-08-26 21:20:13 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-08-26 21:20:13 ----A---- C:\Windows\system32\pku2u.dll
2015-08-26 21:20:08 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-08-26 21:20:08 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-08-26 21:19:45 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msimsg.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msihnd.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msiexec.exe
2015-08-26 21:19:45 ----A---- C:\Windows\system32\msi.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\consent.exe
2015-08-26 21:19:45 ----A---- C:\Windows\system32\authui.dll
2015-08-26 21:19:45 ----A---- C:\Windows\system32\appinfo.dll
2015-08-26 21:19:40 ----A---- C:\Windows\system32\psisdecd.dll
2015-08-26 21:19:39 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2015-08-26 21:19:36 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2015-08-26 21:19:36 ----A---- C:\Windows\system32\shdocvw.dll
2015-08-26 21:19:29 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2015-08-26 21:19:29 ----A---- C:\Windows\system32\drivers\usbcir.sys
2015-08-26 21:19:26 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2015-08-26 21:19:26 ----A---- C:\Windows\system32\IMJP10K.DLL
2015-08-26 21:19:25 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2015-08-26 21:19:25 ----A---- C:\Windows\system32\dnsapi.dll
2015-08-26 21:19:24 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2015-08-26 21:19:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-08-26 21:19:24 ----A---- C:\Windows\system32\dnscacheugc.exe
2015-08-26 21:19:23 ----A---- C:\Windows\system32\drivers\hidparse.sys
2015-08-26 21:19:23 ----A---- C:\Windows\system32\drivers\hidclass.sys
2015-08-26 21:19:22 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2015-08-26 21:19:22 ----A---- C:\Windows\system32\dpnet.dll
2015-08-26 21:13:07 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-08-26 21:13:07 ----A---- C:\Windows\system32\poqexec.exe
2015-08-26 21:12:59 ----A---- C:\Windows\system32\shell32.dll
2015-08-26 21:12:58 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-08-26 21:12:52 ----A---- C:\Windows\system32\drivers\srvnet.sys
2015-08-26 21:12:52 ----A---- C:\Windows\system32\drivers\srv2.sys
2015-08-26 21:12:52 ----A---- C:\Windows\system32\drivers\srv.sys
2015-08-26 21:12:51 ----A---- C:\Windows\system32\kdusb.dll
2015-08-26 21:12:51 ----A---- C:\Windows\system32\kdcom.dll
2015-08-26 21:12:51 ----A---- C:\Windows\system32\kd1394.dll
2015-08-26 21:12:51 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2015-08-26 21:12:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2015-08-26 21:12:51 ----A---- C:\Windows\system32\cdd.dll
2015-08-26 21:12:50 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2015-08-26 21:12:50 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-08-26 21:12:50 ----A---- C:\Windows\system32\rdpcore.dll
2015-08-26 21:12:50 ----A---- C:\Windows\system32\notepad.exe
2015-08-26 21:12:50 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2015-08-26 21:12:50 ----A---- C:\Windows\notepad.exe
2015-08-26 21:12:49 ----A---- C:\Windows\system32\drivers\partmgr.sys
2015-08-26 21:12:48 ----A---- C:\Windows\SYSWOW64\synceng.dll
2015-08-26 21:12:48 ----A---- C:\Windows\system32\win32spl.dll
2015-08-26 21:12:48 ----A---- C:\Windows\system32\synceng.dll
2015-08-26 21:12:47 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2015-08-26 21:12:47 ----A---- C:\Windows\SYSWOW64\rastls.dll
2015-08-26 21:12:47 ----A---- C:\Windows\system32\rastls.dll
2015-08-26 21:12:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-08-26 21:12:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-08-26 21:12:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-08-26 21:12:45 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-08-26 21:12:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuwebv.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wups2.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wups.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wudriver.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wucltux.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuauclt.exe
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuapp.exe
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wuapi.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-08-26 21:12:45 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-08-26 21:12:43 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2015-08-26 21:12:43 ----A---- C:\Windows\system32\cdosys.dll
2015-08-26 21:12:42 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2015-08-26 21:12:42 ----A---- C:\Windows\system32\EncDec.dll
2015-08-26 21:12:40 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-08-26 21:12:40 ----A---- C:\Windows\system32\inetcomm.dll
2015-08-26 21:12:39 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-08-26 21:12:39 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-08-26 21:12:38 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-08-26 21:12:38 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-08-26 21:12:38 ----A---- C:\Windows\system32\nshwfp.dll
2015-08-26 21:12:37 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2015-08-26 21:12:37 ----A---- C:\Windows\system32\oleacc.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\devobj.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2015-08-26 21:12:36 ----A---- C:\Windows\SYSWOW64\browcli.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\umpnpmgr.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\netapi32.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\browser.dll
2015-08-26 21:12:36 ----A---- C:\Windows\system32\browcli.dll
2015-08-26 21:12:35 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-08-26 21:12:35 ----A---- C:\Windows\SYSWOW64\packager.dll
2015-08-26 21:12:35 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\scesrv.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\packager.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\msvcrt.dll
2015-08-26 21:12:35 ----A---- C:\Windows\system32\FXSCOVER.exe
2015-08-26 21:12:34 ----A---- C:\Windows\system32\localspl.dll
2015-08-26 21:12:34 ----A---- C:\Windows\system32\drivers\bowser.sys
2015-08-26 21:12:31 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-08-26 21:12:31 ----A---- C:\Windows\system32\clfsw32.dll
2015-08-26 21:12:31 ----A---- C:\Windows\system32\clfs.sys
2015-08-26 21:12:30 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-08-26 21:12:30 ----A---- C:\Windows\system32\WMPhoto.dll
2015-08-26 20:43:23 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-08-26 20:43:23 ----A---- C:\Windows\system32\lpk.dll
2015-08-26 20:43:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-08-26 20:43:22 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-08-26 20:43:22 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\dciman32.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\d3d10warp.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\atmlib.dll
2015-08-26 20:43:22 ----A---- C:\Windows\system32\atmfd.dll
2015-08-26 20:43:21 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-08-26 20:43:21 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-08-26 20:43:21 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2015-08-26 20:43:21 ----A---- C:\Windows\system32\fontsub.dll
2015-08-26 20:43:21 ----A---- C:\Windows\system32\FntCache.dll
2015-08-26 20:43:21 ----A---- C:\Windows\system32\DWrite.dll
2015-08-26 20:43:20 ----A---- C:\Windows\system32\win32k.sys
2015-08-26 20:43:02 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2015-08-26 20:43:02 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2015-08-26 20:43:02 ----A---- C:\Windows\system32\spwmp.dll
2015-08-26 20:43:02 ----A---- C:\Windows\system32\dxmasf.dll
2015-08-26 20:42:59 ----A---- C:\Windows\system32\wmp.dll
2015-08-26 20:42:58 ----A---- C:\Windows\SYSWOW64\wmp.dll
2015-08-26 20:42:58 ----A---- C:\Windows\system32\wmploc.DLL
2015-08-26 20:42:57 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2015-08-26 20:42:41 ----A---- C:\Windows\system32\jnwmon.dll
2015-08-26 20:42:40 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-08-26 20:42:40 ----A---- C:\Windows\system32\InkEd.dll
2015-08-26 20:42:31 ----A---- C:\Windows\system32\drivers\http.sys
2015-08-26 20:42:23 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-08-26 20:42:23 ----A---- C:\Windows\system32\msctf.dll
2015-08-26 20:41:24 ----A---- C:\Windows\SYSWOW64\usp10.dll
2015-08-26 20:41:24 ----A---- C:\Windows\system32\usp10.dll
2015-08-26 20:41:16 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-08-26 20:41:16 ----A---- C:\Windows\system32\d2d1.dll
2015-08-26 20:41:10 ----A---- C:\Windows\SYSWOW64\wscript.exe
2015-08-26 20:41:10 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2015-08-26 20:41:10 ----A---- C:\Windows\SYSWOW64\cscript.exe
2015-08-26 20:41:10 ----A---- C:\Windows\system32\wscript.exe
2015-08-26 20:41:10 ----A---- C:\Windows\system32\scrrun.dll
2015-08-26 20:41:10 ----A---- C:\Windows\system32\cscript.exe
2015-08-26 20:41:04 ----A---- C:\Windows\SYSWOW64\wmi.dll
2015-08-26 20:41:04 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2015-08-26 20:41:04 ----A---- C:\Windows\system32\wmi.dll
2015-08-26 20:41:04 ----A---- C:\Windows\system32\imagehlp.dll
2015-08-26 20:41:04 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2015-08-26 20:40:41 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2015-08-26 20:40:41 ----A---- C:\Windows\system32\WMVDECOD.DLL
2015-08-26 18:43:26 ----A---- C:\Windows\system32\CPFilters.dll
2015-08-26 18:43:25 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2015-08-26 18:43:24 ----A---- C:\Windows\SYSWOW64\sbe.dll
2015-08-26 18:43:24 ----A---- C:\Windows\system32\sbe.dll
2015-08-26 18:09:42 ----D---- C:\#AutoPatcher_Temp#
2015-08-26 17:47:44 ----D---- C:\956498bbeea8045a07e23235850d
2015-08-26 15:27:14 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 15:27:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 15:18:16 ----A---- C:\Windows\SYSWOW64\mscories.dll
2015-08-26 15:18:16 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2015-08-26 15:18:16 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2015-08-26 15:18:16 ----A---- C:\Windows\system32\mscories.dll
2015-08-26 15:18:16 ----A---- C:\Windows\system32\mscorier.dll
2015-08-26 15:18:15 ----A---- C:\Windows\system32\dfshim.dll
2015-08-26 15:13:33 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2015-08-26 15:13:33 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2015-08-26 15:13:33 ----A---- C:\Windows\system32\infocardapi.dll
2015-08-26 15:13:33 ----A---- C:\Windows\system32\icardagt.exe
2015-08-26 15:13:32 ----A---- C:\Windows\SYSWOW64\icardres.dll
2015-08-26 15:13:32 ----A---- C:\Windows\system32\icardres.dll
2015-08-26 15:13:22 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2015-08-26 15:13:22 ----A---- C:\Windows\system32\TsWpfWrp.exe
2015-08-26 11:12:25 ----A---- C:\Windows\system32\IEUDINIT.EXE
2015-08-26 11:05:08 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\wextract.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\url.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\msls31.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\mshta.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\inseng.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2015-08-26 11:05:00 ----A---- C:\Windows\SYSWOW64\icardie.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\wextract.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\webcheck.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\url.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\pngfilt.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\occache.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\msls31.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\mshtmler.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\mshta.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\msfeedssync.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\licmgr10.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\jsIntl.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\inseng.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\imgutil.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\iexpress.exe
2015-08-26 11:05:00 ----A---- C:\Windows\system32\iesysprep.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\iepeers.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\ieapfltr.dat
2015-08-26 11:05:00 ----A---- C:\Windows\system32\IEAdvpack.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\icardie.dll
2015-08-26 11:05:00 ----A---- C:\Windows\system32\elshyph.dll
2015-08-26 11:03:35 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2015-08-26 11:03:35 ----A---- C:\Windows\system32\mswsock.dll
2015-08-26 11:03:19 ----A---- C:\Windows\system32\taskhost.exe
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-26 11:00:58 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2015-08-26 11:00:58 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\XpsPrint.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\UIAnimation.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\dxgi.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10level9.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10_1.dll
2015-08-26 11:00:58 ----A---- C:\Windows\system32\d3d10.dll
2015-08-26 10:58:54 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2015-08-26 10:58:54 ----A---- C:\Windows\system32\d3d11.dll
2015-08-25 13:54:48 ----SD---- C:\Windows\SYSWOW64\Microsoft
2015-08-24 14:41:52 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2015-08-24 14:41:38 ----A---- C:\Windows\system32\drivers\mwac.sys
2015-08-24 14:41:38 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2015-08-24 14:41:38 ----A---- C:\Windows\system32\drivers\mbam.sys
2015-08-24 14:41:37 ----D---- C:\ProgramData\Malwarebytes
2015-08-24 14:41:37 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-24 14:39:23 ----D---- C:\Program Files (x86)\MagicISO
2015-08-24 11:03:35 ----D---- C:\boot
2015-08-24 11:03:11 ----D---- C:\Program Files\Macrium
2015-08-24 10:54:39 ----D---- C:\ProgramData\Macrium
2015-08-24 09:12:08 ----A---- C:\Windows\SYSWOW64\winsevr.dat
2015-08-24 09:12:04 ----D---- C:\ProgramData\AomeiBR
2015-08-24 09:11:49 ----A---- C:\Windows\system32\ammntdrv.sys
2015-08-24 09:11:49 ----A---- C:\Windows\system32\ambakdrv.sys
2015-08-24 09:11:40 ----D---- C:\Program Files (x86)\AOMEI Backupper
2015-08-23 23:20:46 ----D---- C:\Users\Chuck\AppData\Roaming\vlc
2015-08-23 23:20:14 ----D---- C:\Program Files\VideoLAN
2015-08-23 23:03:23 ----D---- C:\Users\Chuck\AppData\Roaming\tixati
2015-08-23 20:40:49 ----A---- C:\Windows\system32\amwrtdrv.sys
2015-08-23 20:40:29 ----D---- C:\Program Files (x86)\AOMEI PE Builder 1.4
2015-08-22 12:01:52 ----D---- C:\Users\Chuck\AppData\Roaming\Everything
2015-08-22 12:01:52 ----D---- C:\Program Files\Everything
2015-08-20 13:26:46 ----D---- C:\ProgramData\AVAST Software
2015-08-19 13:50:43 ----D---- C:\Windows\SYSWOW64\Adobe
2015-08-19 00:18:23 ----D---- C:\Users\Chuck\AppData\Roaming\corz
2015-08-18 13:00:06 ----D---- C:\Users\Chuck\AppData\Roaming\IDT
2015-08-18 12:42:07 ----D---- C:\Program Files\Hewlett-Packard
2015-08-18 12:23:31 ----D---- C:\Program Files (x86)\JMicron
2015-08-18 12:23:25 ----D---- C:\Windows\SYSWOW64\SDA
2015-08-18 12:17:59 ----A---- C:\Windows\system32\RTNUninst64.dll
2015-08-18 12:17:59 ----A---- C:\Windows\system32\RtNicProp64.dll
2015-08-18 12:17:59 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2015-08-18 12:17:55 ----D---- C:\Program Files (x86)\Realtek
2015-08-18 11:27:36 ----D---- C:\ProgramData\Atheros
2015-08-18 11:27:25 ----D---- C:\Users\Chuck\AppData\Roaming\Atheros
2015-08-18 11:22:54 ----D---- C:\Program Files\Common Files\QCA_Bluetooth
2015-08-18 11:22:53 ----D---- C:\Program Files (x86)\Bluetooth Suite
2015-08-18 11:20:37 ----D---- C:\Program Files (x86)\HP HD Webcam [Fixed]
2015-08-18 11:20:37 ----A---- C:\Windows\un_dext.exe
2015-08-18 11:20:37 ----A---- C:\Windows\TWAIN2080.src
2015-08-18 11:20:37 ----A---- C:\Windows\TWAIN2080.ini
2015-08-18 11:20:37 ----A---- C:\Windows\system32\drivers\SPUVCBv_x64.sys
2015-08-18 11:20:37 ----A---- C:\Windows\system32\CoInstaller_x64.dll
2015-08-18 11:20:37 ----A---- C:\Windows\SPRemove_x64.exe
2015-08-18 11:20:37 ----A---- C:\Windows\remove.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_36.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_31.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_30.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_29.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_27.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_25.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_24.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_22.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_21.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_2052.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_20.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_19.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_18.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_17.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_16.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_14.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_13.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_12.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_11.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_1046.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_10.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_09.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_08.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_07.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_06.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_05.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_04.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_02.ini
2015-08-18 11:20:37 ----A---- C:\Windows\Dext_01.ini
2015-08-18 11:20:18 ----A---- C:\Windows\SYSWOW64\sigfile.exe
2015-08-18 11:16:26 ----DC---- C:\Windows\system32\DRVSTORE
2015-08-18 11:16:26 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2015-08-18 10:58:21 ----A---- C:\Windows\system32\HPToneCtrls64.dll
2015-08-18 10:58:21 ----A---- C:\Windows\system32\AESTEC64.dll
2015-08-18 10:58:21 ----A---- C:\Windows\system32\AESTAR64.dll
2015-08-18 10:58:21 ----A---- C:\Windows\system32\AESTAC64.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\stlang64.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNX.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNJ.exe
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNHP.dll
2015-08-18 10:58:19 ----A---- C:\Windows\system32\IDTNGUI.exe
2015-08-18 10:58:19 ----A---- C:\Windows\system32\AESTCo64.dll
2015-08-18 10:58:19 ----A---- C:\Windows\sttray64.exe
2015-08-18 10:58:18 ----D---- C:\Windows\system32\SRSLabs
2015-08-18 10:57:27 ----N---- C:\Windows\system32\stapi64.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\stcplx64.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\stapo64.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\st646433.dll
2015-08-18 10:57:27 ----A---- C:\Windows\system32\drivers\stwrt64.sys
2015-08-18 10:57:24 ----D---- C:\Program Files\IDT
2015-08-17 21:11:07 ----D---- C:\Users\Chuck\AppData\Roaming\VMware
2015-08-17 21:10:23 ----A---- C:\Windows\SYSWOW64\vsocklib.dll
2015-08-17 21:10:23 ----A---- C:\Windows\system32\vsocklib.dll
2015-08-17 21:10:23 ----A---- C:\Windows\system32\drivers\vsock.sys
2015-08-17 21:10:19 ----A---- C:\Windows\system32\drivers\vmx86.sys
2015-08-17 21:10:19 ----A---- C:\Windows\system32\drivers\VMkbd.sys
2015-08-17 21:09:48 ----A---- C:\Windows\SYSWOW64\vmnetdhcp.exe
2015-08-17 21:09:43 ----A---- C:\Windows\SYSWOW64\vmnat.exe
2015-08-17 21:09:42 ----A---- C:\Windows\system32\drivers\vmnetuserif.sys
2015-08-17 21:09:37 ----A---- C:\Windows\system32\vnetlib64.dll
2015-08-17 21:09:31 ----A---- C:\Windows\system32\drivers\hcmon.sys
2015-08-17 21:09:29 ----A---- C:\Windows\system32\drivers\vmusb.sys
2015-08-17 21:09:18 ----D---- C:\Program Files\Common Files\VMware
2015-08-17 21:09:10 ----D---- C:\ProgramData\VMware
2015-08-17 21:09:10 ----D---- C:\Program Files (x86)\VMware
2015-08-17 12:05:49 ----D---- C:\Users\Chuck\AppData\Roaming\Unity
2015-08-17 11:40:30 ----D---- C:\Users\Chuck\AppData\Roaming\ATI
2015-08-17 11:40:30 ----D---- C:\ProgramData\ATI
2015-08-17 11:37:34 ----D---- C:\Program Files (x86)\AMD APP
2015-08-17 10:56:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-08-17 10:54:37 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-08-17 05:56:25 ----D---- C:\Windows\Panther
2015-08-17 05:55:52 ----D---- C:\Windows\system32\OEM
2015-08-16 23:59:37 ----D---- C:\Users\Chuck\AppData\Roaming\Macromedia
2015-08-16 23:59:37 ----D---- C:\Users\Chuck\AppData\Roaming\Adobe
2015-08-16 23:50:22 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-08-16 23:50:20 ----D---- C:\Windows\SYSWOW64\Macromed
2015-08-16 23:50:08 ----D---- C:\Windows\system32\Macromed
2015-08-16 21:45:33 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-08-16 21:35:54 ----D---- C:\Users\Chuck\AppData\Roaming\Synaptics
2015-08-16 21:32:41 ----A---- C:\Windows\system32\Wdfres.dll
2015-08-16 21:32:41 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2015-08-16 21:32:29 ----D---- C:\Program Files\Synaptics
2015-08-16 21:26:05 ----D---- C:\Users\Chuck\AppData\Roaming\Mozilla
2015-08-16 21:25:58 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-08-16 21:25:57 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-16 21:08:35 ----RD---- C:\Sandbox
2015-08-16 21:04:45 ----D---- C:\Program Files (x86)\ATI Technologies
2015-08-16 21:04:37 ----D---- C:\Program Files\ATI
2015-08-16 21:04:09 ----D---- C:\Program Files\ATI Technologies
2015-08-16 21:00:11 ----A---- C:\Windows\Sandboxie.ini
2015-08-16 20:59:51 ----D---- C:\Program Files\Sandboxie
2015-08-16 20:55:02 ----D---- C:\Windows\Options
2015-08-16 20:55:02 ----A---- C:\Windows\system32\drivers\athrx.sys
2015-08-16 20:55:01 ----N---- C:\Windows\system32\athihvui.dll
2015-08-16 20:55:01 ----N---- C:\Windows\system32\athihvs.dll
2015-08-16 20:55:01 ----D---- C:\Windows\system32\nn-NO
2015-08-16 20:54:52 ----D---- C:\Program Files (x86)\Cisco
2015-08-16 20:54:51 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-16 20:54:51 ----D---- C:\Program Files (x86)\Qualcomm Atheros
2015-08-16 20:54:07 ----D---- C:\ProgramData\Qualcomm Atheros
2015-08-16 20:51:00 ----D---- C:\Users\Chuck\AppData\Roaming\hpqLog
2015-08-16 20:50:59 ----SHD---- C:\Windows\Installer
2015-08-16 20:50:55 ----D---- C:\ProgramData\Hewlett-Packard
2015-08-16 20:50:50 ----D---- C:\Swsetup
2015-08-16 20:23:25 ----D---- C:\Users\Chuck\AppData\Roaming\Identities
2015-08-16 20:23:04 ----SD---- C:\Users\Chuck\AppData\Roaming\Microsoft
2015-08-16 20:23:04 ----D---- C:\Users\Chuck\AppData\Roaming\Media Center Programs
2015-08-16 20:22:55 ----SHD---- C:\Recovery
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Šablony
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Plocha
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Oblíbené položky
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Nabídka Start
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Dokumenty
2015-08-16 20:22:55 ----SHD---- C:\ProgramData\Data aplikací
2015-08-16 19:57:59 ----D---- C:\Windows\Prefetch
2015-08-16 19:57:04 ----SHD---- C:\System Volume Information
2015-08-16 19:57:04 ----ASH---- C:\pagefile.sys
2015-08-16 19:57:04 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2015-08-29 18:36:09 ----D---- C:\Windows\Temp
2015-08-29 18:36:08 ----RD---- C:\Program Files
2015-08-29 18:21:47 ----D---- C:\Windows
2015-08-29 17:31:13 ----D---- C:\Windows\System32
2015-08-29 17:31:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-08-29 17:31:12 ----D---- C:\Windows\inf
2015-08-29 17:28:57 ----D---- C:\Windows\Microsoft.NET
2015-08-29 17:25:18 ----D---- C:\Windows\Logs
2015-08-29 17:25:17 ----D---- C:\Windows\winsxs
2015-08-29 17:24:06 ----D---- C:\Windows\system32\config
2015-08-29 17:21:27 ----D---- C:\Windows\AppCompat
2015-08-29 17:21:24 ----D---- C:\Windows\system32\wbem
2015-08-29 17:21:24 ----D---- C:\Windows\AppPatch
2015-08-29 17:21:22 ----D---- C:\Windows\SysWOW64
2015-08-29 17:21:18 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-08-29 17:21:18 ----D---- C:\Windows\system32\cs-CZ
2015-08-29 17:21:13 ----SD---- C:\ProgramData\Microsoft
2015-08-29 17:21:06 ----D---- C:\Windows\system32\AdvancedInstallers
2015-08-29 17:21:03 ----D---- C:\Windows\SYSWOW64\Dism
2015-08-29 17:21:02 ----D---- C:\Windows\system32\Dism
2015-08-29 17:21:01 ----RSD---- C:\Windows\Fonts
2015-08-29 17:20:54 ----D---- C:\Windows\tracing
2015-08-29 17:20:49 ----D---- C:\Windows\system32\drivers
2015-08-29 17:20:45 ----D---- C:\Windows\SYSWOW64\migration
2015-08-29 17:20:45 ----D---- C:\Windows\system32\migration
2015-08-29 17:20:23 ----D---- C:\Windows\system32\DriverStore
2015-08-29 17:08:34 ----RSD---- C:\Windows\assembly
2015-08-29 16:43:50 ----D---- C:\Windows\system32\catroot2
2015-08-29 15:54:06 ----A---- C:\Windows\win.ini
2015-08-29 10:41:42 ----D---- C:\Windows\system32\Tasks
2015-08-29 10:35:29 ----D---- C:\Windows\ShellNew
2015-08-29 10:35:14 ----D---- C:\Program Files (x86)\Common Files
2015-08-29 10:34:40 ----HD---- C:\ProgramData
2015-08-29 10:34:20 ----RD---- C:\Program Files (x86)
2015-08-29 10:30:51 ----D---- C:\Program Files\Common Files\Microsoft Shared
2015-08-28 23:44:51 ----D---- C:\Windows\system32\FxsTmp
2015-08-27 16:09:39 ----D---- C:\Windows\SYSWOW64\drivers
2015-08-27 00:39:34 ----D---- C:\Windows\system32\wdi
2015-08-27 00:35:31 ----D---- C:\Program Files\Internet Explorer
2015-08-27 00:35:30 ----D---- C:\Windows\SYSWOW64\en-US
2015-08-27 00:35:27 ----D---- C:\Windows\system32\en-US
2015-08-27 00:35:23 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-26 22:45:42 ----D---- C:\Program Files\Common Files\System
2015-08-26 22:45:32 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-08-26 22:45:24 ----D---- C:\Windows\ehome
2015-08-26 22:45:06 ----D---- C:\Windows\system32\CodeIntegrity
2015-08-26 22:45:06 ----D---- C:\Windows\system32\Boot
2015-08-26 22:44:37 ----D---- C:\Program Files\Windows Defender
2015-08-26 22:44:37 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-26 22:43:09 ----D---- C:\Windows\PolicyDefinitions
2015-08-26 22:05:55 ----D---- C:\Windows\system32\catroot
2015-08-26 20:47:50 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-26 20:47:49 ----D---- C:\Program Files\Windows Media Player
2015-08-26 20:47:48 ----D---- C:\Program Files\Windows Journal
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\pt-PT
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\pt-BR
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\pl-PL
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\ko-KR
2015-08-26 11:13:52 ----D---- C:\Windows\SYSWOW64\it-IT
2015-08-26 11:13:51 ----D---- C:\Windows\SYSWOW64\zh-HK
2015-08-26 11:13:51 ----D---- C:\Windows\SYSWOW64\hu-HU
2015-08-26 11:13:50 ----D---- C:\Windows\SYSWOW64\el-GR
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\tr-TR
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\sv-SE
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\nl-NL
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\fr-FR
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\fi-FI
2015-08-26 11:13:49 ----D---- C:\Windows\SYSWOW64\es-ES
2015-08-26 11:13:47 ----D---- C:\Windows\SYSWOW64\zh-TW
2015-08-26 11:13:47 ----D---- C:\Windows\SYSWOW64\de-DE
2015-08-26 11:13:46 ----D---- C:\Windows\SYSWOW64\zh-CN
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\ru-RU
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\nb-NO
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\ja-JP
2015-08-26 11:13:45 ----D---- C:\Windows\SYSWOW64\da-DK
2015-08-26 11:13:41 ----D---- C:\Windows\system32\pt-BR
2015-08-26 11:13:41 ----D---- C:\Windows\system32\it-IT
2015-08-26 11:13:40 ----D---- C:\Windows\system32\zh-HK
2015-08-26 11:13:40 ----D---- C:\Windows\system32\pt-PT
2015-08-26 11:13:40 ----D---- C:\Windows\system32\pl-PL
2015-08-26 11:13:40 ----D---- C:\Windows\system32\ko-KR
2015-08-26 11:13:40 ----D---- C:\Windows\system32\hu-HU
2015-08-26 11:13:38 ----D---- C:\Windows\system32\nl-NL
2015-08-26 11:13:38 ----D---- C:\Windows\system32\fr-FR
2015-08-26 11:13:38 ----D---- C:\Windows\system32\fi-FI
2015-08-26 11:13:38 ----D---- C:\Windows\system32\el-GR
2015-08-26 11:13:37 ----D---- C:\Windows\system32\tr-TR
2015-08-26 11:13:36 ----D---- C:\Windows\system32\zh-TW
2015-08-26 11:13:36 ----D---- C:\Windows\system32\sv-SE
2015-08-26 11:13:36 ----D---- C:\Windows\system32\es-ES
2015-08-26 11:13:36 ----D---- C:\Windows\system32\de-DE
2015-08-26 11:13:34 ----D---- C:\Windows\system32\zh-CN
2015-08-26 11:13:34 ----D---- C:\Windows\system32\ru-RU
2015-08-26 11:13:34 ----D---- C:\Windows\system32\nb-NO
2015-08-26 11:13:34 ----D---- C:\Windows\system32\ja-JP
2015-08-26 11:13:33 ----D---- C:\Windows\system32\da-DK
2015-08-25 13:52:15 ----D---- C:\Windows\rescache
2015-08-25 12:16:43 ----D---- C:\Program Files\Windows Sidebar
2015-08-25 12:16:42 ----D---- C:\Program Files\Windows Mail
2015-08-25 12:16:40 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-25 12:16:37 ----D---- C:\Program Files (x86)\Windows Sidebar
2015-08-25 12:16:37 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-25 12:16:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-25 12:16:32 ----D---- C:\Windows\servicing
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\winrm
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\slmgr
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\migwiz
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\en
2015-08-25 12:16:31 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2015-08-25 12:16:05 ----D---- C:\Windows\SYSWOW64\sl-SI
2015-08-25 12:15:40 ----D---- C:\Windows\SYSWOW64\DriverStore
2015-08-25 12:15:39 ----D---- C:\Windows\SYSWOW64\WCN
2015-08-25 12:15:39 ----D---- C:\Windows\SYSWOW64\wbem
2015-08-25 12:15:39 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2015-08-25 12:15:34 ----D---- C:\Windows\en-US
2015-08-25 12:15:32 ----D---- C:\Windows\system32\winrm
2015-08-25 12:15:32 ----D---- C:\Windows\system32\oobe
2015-08-25 12:15:32 ----D---- C:\Windows\system32\migwiz
2015-08-25 12:15:31 ----D---- C:\Windows\system32\sysprep
2015-08-25 12:15:31 ----D---- C:\Windows\system32\slmgr
2015-08-25 12:15:30 ----D---- C:\Windows\system32\en
2015-08-25 12:14:59 ----D---- C:\Windows\system32\sl-SI
2015-08-25 12:14:28 ----D---- C:\Windows\system32\drivers\en-US
2015-08-25 12:14:25 ----D---- C:\Windows\system32\WCN
2015-08-25 12:14:09 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2015-08-25 12:13:12 ----D---- C:\Windows\SYSWOW64\sk-SK
2015-08-25 12:12:38 ----D---- C:\Windows\system32\sk-SK
2015-08-25 12:11:22 ----D---- C:\Windows\SYSWOW64\ro-RO
2015-08-25 12:10:49 ----D---- C:\Windows\system32\ro-RO
2015-08-25 12:09:30 ----D---- C:\Windows\SYSWOW64\lv-LV
2015-08-25 12:08:56 ----D---- C:\Windows\system32\lv-LV
2015-08-25 12:07:41 ----D---- C:\Windows\SYSWOW64\lt-LT
2015-08-25 12:07:08 ----D---- C:\Windows\system32\lt-LT
2015-08-25 12:05:52 ----D---- C:\Windows\SYSWOW64\hr-HR
2015-08-25 12:05:20 ----D---- C:\Windows\system32\hr-HR
2015-08-25 12:04:02 ----D---- C:\Windows\SYSWOW64\et-EE
2015-08-25 12:03:28 ----D---- C:\Windows\system32\et-EE
2015-08-25 12:02:16 ----D---- C:\Windows\SYSWOW64\bg-BG
2015-08-25 12:01:44 ----D---- C:\Windows\system32\bg-BG
2015-08-25 12:00:29 ----D---- C:\Program Files\DVD Maker
2015-08-25 11:59:22 ----D---- C:\Windows\Speech
2015-08-24 11:25:52 ----D---- C:\Windows\debug
2015-08-19 23:45:42 ----D---- C:\Windows\Tasks
2015-08-18 11:22:54 ----D---- C:\Program Files\Common Files
2015-08-18 11:20:43 ----D---- C:\Windows\twain_32
2015-08-16 21:43:23 ----D---- C:\Windows\system32\restore
2015-08-16 21:13:39 ----D---- C:\Windows\Downloaded Program Files
2015-08-16 20:47:37 ----D---- C:\Windows\system32\NDF
2015-08-16 20:38:24 ----SHD---- C:\$Recycle.Bin
2015-08-16 20:38:19 ----RD---- C:\Users
2015-08-16 20:22:55 ----D---- C:\Windows\system32\Recovery
2015-08-16 20:22:55 ----D---- C:\Program Files\Windows NT
2015-08-16 20:12:03 ----D---- C:\Windows\system32\drivers\UMDF
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ambakdrv;ambakdrv; C:\Windows\system32\ambakdrv.sys [2015-02-26 30648]
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2012-10-12 82600]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2012-10-12 42664]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2012-09-24 31040]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys [2015-05-21 85584]
R0 vsock;vSockets Driver; C:\Windows\system32\drivers\vsock.sys [2015-05-21 76480]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ammntdrv;ammntdrv; \??\C:\Windows\system32\ammntdrv.sys [2015-02-26 151480]
R2 amwrtdrv;amwrtdrv; \??\C:\Windows\system32\amwrtdrv.sys [2015-02-26 17848]
R2 hcmon;VMware hcmon; \??\C:\Windows\system32\drivers\hcmon.sys [2015-05-22 55488]
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys [2015-05-31 48832]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys [2015-05-31 26816]
R2 vmx86;VMware vmx86; \??\C:\Windows\system32\drivers\vmx86.sys [2015-05-31 66752]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2012-09-24 43840]
R3 amdhub30;AMD USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\amdhub30.sys [2013-02-26 108128]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-10-25 10207744]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-10-25 317952]
R3 amdxhc;AMD USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\amdxhc.sys [2013-02-26 228448]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2013-09-25 89800]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2013-08-25 4017664]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-06-06 231440]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2013-09-25 338120]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys [2013-09-25 116424]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2013-09-25 34384]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2013-09-25 179432]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2013-09-25 77464]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2013-09-25 137928]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2013-09-25 590024]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2011-07-18 25912]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2012-07-31 175928]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-06-18 25816]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2009-02-24 255552]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-03-28 918232]
R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [2015-06-23 190088]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2011-04-03 2614520]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\Windows\system32\DRIVERS\stwrt64.sys [2012-10-24 543744]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-09-04 524016]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 vmkbd;VMware kbd; \??\C:\Windows\system32\drivers\VMkbd.sys [2015-05-31 33472]
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys [2015-05-31 28864]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-06-18 63704]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\drivers\nusb3hub.sys [2010-07-27 78848]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\drivers\nusb3xhc.sys [2010-07-27 180224]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 PSMounterEx;Macrium Reflect Image Explorer Driver; \??\C:\Windows\system32\drivers\psmounterex.sys [2015-02-23 169480]
S3 PSVolAcc;PSVolAcc; C:\Windows\system32\drivers\PSVolAcc.sys [2014-07-21 12760]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 vmusb;VMware USB Client Driver; C:\Windows\system32\DRIVERS\vmusb.sys [2015-05-22 46144]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Users\Chuck\AppData\Local\Temp\tmpE9A3.tmp []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-10-25 204288]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-09-25 312448]
R2 Backupper Service;AOMEI Backupper Scheduler Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [2015-08-06 29912]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Everything;Everything; C:\Program Files\Everything\Everything.exe [2014-08-06 1441792]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2012-03-14 197504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-03-14 365440]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2012-09-24 31040]
R2 ReflectService.exe;Macrium Reflect Image Mounting Service; C:\Program Files\Macrium\Reflect\ReflectService.exe [2015-02-23 3446224]
R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2015-06-23 175752]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-10-24 327680]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [2015-05-31 87744]
R2 VMnetDHCP;VMware DHCP Service; C:\Windows\SysWOW64\vmnetdhcp.exe [2015-05-31 359104]
R2 VMUSBArbService;VMware USB Arbitration Service; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [2015-05-22 916672]
R2 VMware NAT Service;VMware NAT Service; C:\Windows\SysWOW64\vmnat.exe [2015-05-31 438464]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-03-14 994176]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-07-16 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-13 149160]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-01-21 5132888]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-08-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
-----------------EOF-----------------
Re: Nelze nainstalovat aktualizace
Začínám mít pocit, že ten Windows Update troubleshooter asi nebude moc spolehlivý, protože ve virtuálním stroji, kde mám stejnou verzi Windowsu a nainstalované z jiného CD, mi ten program ukázal stejné chyby, s tím, že problém se service registration ten program opravil. Tak jsem Windows Update troubleshooter spustil znovu a hle, opravil mi to i mimo virtuální stroj. Napotřetí mi možná opraví i tu druhou, údajnou chybu.
Mám ještě zkoušet přeinstalovat ty Windows služby?
Mám ještě zkoušet přeinstalovat ty Windows služby?
Re: Nelze nainstalovat aktualizace
Pokud to pobezi, tak nemusite.SGC píše:Mám ještě zkoušet přeinstalovat ty Windows služby?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Nelze nainstalovat aktualizace
Výsledky z MBAM:
PUP.Dialupass, D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\Data\profile\cache2\entries\70D92D7AEF3733B76D2F3D8F07C8973073DDDBEC, , [6df08c839af1c076dc9da8d848b86a96]
PUP.PassView, D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\webbrowserpassview\WebBrowserPassView.exe, , [6eefc24de2a996a0ea97b0cd24dc27d9]
PUP.WirelessNetworkTool, D:\Karol\Archive\1. Extensions\Software\Portable\x32\wifi\wirelessnetview\WirelessNetView.exe, , [1b42fa15ddae71c53dafd49994718977]
PUP.Dialupass, D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\Data\profile\cache2\entries\70D92D7AEF3733B76D2F3D8F07C8973073DDDBEC, , [6df08c839af1c076dc9da8d848b86a96]
PUP.PassView, D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\webbrowserpassview\WebBrowserPassView.exe, , [6eefc24de2a996a0ea97b0cd24dc27d9]
PUP.WirelessNetworkTool, D:\Karol\Archive\1. Extensions\Software\Portable\x32\wifi\wirelessnetview\WirelessNetView.exe, , [1b42fa15ddae71c53dafd49994718977]
Re: Nelze nainstalovat aktualizace
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Nelze nainstalovat aktualizace
Tady je ten log(ale AdwCleaner nic nenašel):
# AdwCleaner v5.005 - Logfile created 02/09/2015 at 15:15:49
# Updated 31/08/2015 by Xplode
# Database : 2015-08-31.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Chuck - CHUCK-PC
# Running from : C:\Users\Karol\Desktop\adwcleaner_5.005.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
Pouze jedna z nenainstalovaných aktualizací byla nainstalována. Ty ostatní mi Windows Update nedokáže najít. Možná je nainstaloval pod jiným kb číslem.
***** [ Files ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: Winsock settings cleared
########## EOF - \AdwCleaner\AdwCleaner[C1].txt - [627 bytes] ##########
# AdwCleaner v5.005 - Logfile created 02/09/2015 at 15:15:49
# Updated 31/08/2015 by Xplode
# Database : 2015-08-31.2 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Chuck - CHUCK-PC
# Running from : C:\Users\Karol\Desktop\adwcleaner_5.005.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
Pouze jedna z nenainstalovaných aktualizací byla nainstalována. Ty ostatní mi Windows Update nedokáže najít. Možná je nainstaloval pod jiným kb číslem.
***** [ Files ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: Winsock settings cleared
########## EOF - \AdwCleaner\AdwCleaner[C1].txt - [627 bytes] ##########
Re: Nelze nainstalovat aktualizace
Vypnete antivir i dalsi pripadne zabezpeceni.
Kliknete na ComboFix pravym mysidlem a levym na Spustit jako spravce
Odsouhlaste licencni podminky a nechte program pracovat. Jestli vam nabidne instalaci Konzoly pro zotaveni, souhlaste.
Po dobu skenu nic nespoustejte, nikam neklikejte.
Po dokonceni skenovani (muze dojit i k restartu pc) by se mel vytvorit log, ktery bude umisteny zde C:\ComboFix.txt
Jeho obsah sem zkopirujte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Nelze nainstalovat aktualizace
Tady je ten log:
ComboFix 15-09-03.01 - Chuck 03.09.2015 23:06:44.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3552.1893 [GMT 2:00]
Spuštěný z: c:\users\Chuck\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\taskmgr.exe.lnk
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-08-03 do 2015-09-03 )))))))))))))))))))))))))))))))
.
.
2015-09-03 21:12 . 2015-09-03 21:12 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-09-03 12:12 . 2015-09-03 12:12 -------- d-----w- c:\programdata\ashampoo
2015-09-03 11:01 . 2015-09-03 11:01 -------- d-----w- c:\program files\7-Zip
2015-09-01 18:51 . 2015-09-01 18:51 -------- d-----w- c:\program files (x86)\I-Doser Premium
2015-09-01 18:33 . 2015-09-01 18:33 -------- d-----w- c:\program files\FreeFileSync
2015-08-31 19:15 . 2015-08-31 19:15 -------- d-----w- c:\program files (x86)\MyPhoneExplorer
2015-08-31 19:11 . 2015-08-31 19:12 -------- d-----w- c:\program files (x86)\Anki
2015-08-31 11:17 . 2015-08-31 11:17 -------- d-----w- c:\programdata\StartMenuX
2015-08-29 17:06 . 2015-08-11 01:20 25191936 ----a-w- c:\windows\system32\mshtml.dll
2015-08-29 17:06 . 2015-08-11 01:14 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-08-29 17:06 . 2015-08-11 00:33 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2015-08-29 17:04 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2015-08-29 17:04 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2015-08-29 17:04 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2015-08-29 17:04 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- C:\rsit
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- c:\program files\trend micro
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\system32\CompatTel
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-----w- c:\windows\system32\appraiser
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\SysWow64\GWX
2015-08-29 15:21 . 2015-08-29 15:25 -------- d-s---w- c:\windows\system32\GWX
2015-08-29 14:54 . 2015-08-29 14:54 -------- d-----w- c:\windows\Migration
2015-08-29 14:44 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL
2015-08-29 14:39 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2015-08-29 14:38 . 2013-01-24 06:01 223752 ----a-w- c:\windows\system32\drivers\fvevol.sys
2015-08-29 14:35 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe
2015-08-29 14:35 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2015-08-29 14:24 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2015-08-29 14:24 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2015-08-29 13:54 . 2015-08-29 13:54 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\program files (x86)\Microsoft SQL Server
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\windows\PCHEALTH
2015-08-29 08:32 . 2015-08-29 08:32 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2015-08-29 08:32 . 2015-08-29 17:05 -------- d-----w- c:\programdata\Microsoft Help
2015-08-29 08:30 . 2015-08-29 08:30 -------- d-----w- c:\program files\Microsoft Office
2015-08-29 08:28 . 2015-08-29 08:28 -------- d-----r- C:\MSOCache
2015-08-28 10:20 . 2015-08-28 10:20 -------- d-----w- c:\programdata\Microsoft Toolkit
2015-08-27 14:09 . 2015-08-27 14:10 -------- d-----w- c:\program files (x86)\MagicDisc
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\SysWow64\drivers\mcdbus.sys
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\system32\drivers\mcdbus.sys
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\SysWow64\Wat
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\system32\Wat
2015-08-26 22:32 . 2015-07-16 20:12 968704 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-08-26 21:37 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2015-08-26 19:23 . 2015-04-18 03:10 460800 ----a-w- c:\windows\system32\certcli.dll
2015-08-26 19:22 . 2014-10-14 02:13 683520 ----a-w- c:\windows\system32\termsrv.dll
2015-08-26 19:21 . 2014-12-06 04:17 303616 ----a-w- c:\windows\system32\nlasvc.dll
2015-08-26 19:20 . 2015-07-04 18:07 2087424 ----a-w- c:\windows\system32\ole32.dll
2015-08-26 19:20 . 2015-07-04 17:48 1414656 ----a-w- c:\windows\SysWow64\ole32.dll
2015-08-26 19:20 . 2013-05-13 03:43 1192448 ----a-w- c:\windows\system32\certutil.exe
2015-08-26 19:20 . 2013-05-13 03:08 903168 ----a-w- c:\windows\SysWow64\certutil.exe
2015-08-26 19:20 . 2013-05-13 05:50 52224 ----a-w- c:\windows\system32\certenc.dll
2015-08-26 19:20 . 2013-05-13 03:08 43008 ----a-w- c:\windows\SysWow64\certenc.dll
2015-08-26 19:20 . 2014-11-11 03:08 241152 ----a-w- c:\windows\system32\pku2u.dll
2015-08-26 19:20 . 2014-11-11 02:44 186880 ----a-w- c:\windows\SysWow64\pku2u.dll
2015-08-26 19:20 . 2015-02-03 03:31 1424896 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-08-26 19:20 . 2015-02-03 03:12 1230848 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2015-08-26 19:13 . 2015-02-18 07:06 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2015-08-26 19:13 . 2015-02-18 07:04 142336 ----a-w- c:\windows\system32\poqexec.exe
2015-08-26 18:43 . 2015-07-30 18:06 41984 ----a-w- c:\windows\system32\lpk.dll
2015-08-26 18:42 . 2015-04-29 18:22 14635008 ----a-w- c:\windows\system32\wmp.dll
2015-08-26 18:41 . 2014-04-25 02:34 801280 ----a-w- c:\windows\system32\usp10.dll
2015-08-26 18:40 . 2013-07-25 09:25 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL
2015-08-26 18:40 . 2013-07-25 08:57 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL
2015-08-26 16:43 . 2010-12-23 10:42 961024 ----a-w- c:\windows\system32\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 10:36 259072 ----a-w- c:\windows\system32\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 05:54 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 05:50 199680 ----a-w- c:\windows\SysWow64\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2015-08-26 16:43 . 2010-12-23 05:54 850944 ----a-w- c:\windows\SysWow64\sbe.dll
2015-08-26 15:42 . 2009-03-24 19:52 614992 ----a-w- c:\windows\SysWow64\COMCTL32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 218432 ----a-w- c:\windows\SysWow64\RICHTX32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 155984 ----a-w- c:\windows\SysWow64\COMDLG32.OCX
2015-08-26 15:26 . 2009-03-24 19:52 127808 ----a-w- c:\windows\SysWow64\MSWINSCK.OCX
2015-08-26 13:27 . 2015-07-30 13:13 103120 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:27 . 2015-07-30 13:13 124624 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:18 . 2014-06-18 22:23 73880 ----a-w- c:\windows\system32\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156312 ----a-w- c:\windows\system32\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 81560 ----a-w- c:\windows\SysWow64\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156824 ----a-w- c:\windows\SysWow64\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 1131664 ----a-w- c:\windows\SysWow64\dfshim.dll
2015-08-26 13:18 . 2014-06-18 22:23 1943696 ----a-w- c:\windows\system32\dfshim.dll
2015-08-26 13:13 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2015-08-26 13:13 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2015-08-26 13:13 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2015-08-26 13:13 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2015-08-26 13:13 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2015-08-26 13:13 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-08-26 09:12 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2015-08-26 09:03 . 2015-08-26 09:03 327168 ----a-w- c:\windows\system32\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 231424 ----a-w- c:\windows\SysWow64\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 68608 ----a-w- c:\windows\system32\taskhost.exe
2015-08-26 08:58 . 2015-08-26 08:58 1887232 ----a-w- c:\windows\system32\d3d11.dll
2015-08-26 08:58 . 2015-08-26 08:58 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2015-08-25 11:54 . 2015-08-25 11:54 -------- d-s---w- c:\windows\SysWow64\Microsoft
2015-08-24 12:41 . 2015-08-31 12:04 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-08-24 12:41 . 2015-06-18 06:41 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-08-24 12:41 . 2015-06-18 06:41 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-08-24 12:41 . 2015-06-18 06:41 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\programdata\Malwarebytes
2015-08-24 12:39 . 2015-08-27 14:08 -------- d-----w- c:\program files (x86)\MagicISO
2015-08-24 09:03 . 2015-08-24 09:20 -------- d-----w- C:\boot
2015-08-24 09:03 . 2015-08-24 09:03 -------- d-----w- c:\program files\Macrium
2015-08-24 08:54 . 2015-08-24 09:07 -------- d-----w- c:\programdata\Macrium
2015-08-24 07:12 . 2015-09-03 19:55 1024 ---ha-w- C:\SYSTAG.BIN
2015-08-24 07:12 . 2015-09-03 19:55 -------- d-----w- c:\programdata\AomeiBR
2015-08-24 07:11 . 2015-02-25 22:00 30648 ----a-w- c:\windows\system32\ambakdrv.sys
2015-08-24 07:11 . 2015-02-25 22:00 151480 ----a-w- c:\windows\system32\ammntdrv.sys
2015-08-24 07:11 . 2015-08-24 07:12 -------- d-----w- c:\program files (x86)\AOMEI Backupper
2015-08-23 21:20 . 2015-08-23 21:20 -------- d-----w- c:\program files\VideoLAN
2015-08-23 18:40 . 2015-02-25 22:00 17848 ----a-w- c:\windows\system32\amwrtdrv.sys
2015-08-23 18:40 . 2015-08-23 18:41 -------- d-----w- c:\program files (x86)\AOMEI PE Builder 1.4
2015-08-22 10:01 . 2015-08-22 10:01 -------- d-----w- c:\program files\Everything
2015-08-20 11:26 . 2015-08-25 11:56 -------- d-----w- c:\programdata\AVAST Software
2015-08-19 11:50 . 2015-08-19 11:50 -------- d-----w- c:\windows\SysWow64\Adobe
2015-08-18 10:42 . 2015-08-18 10:42 -------- d-----w- c:\program files\Hewlett-Packard
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\program files (x86)\JMicron
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\windows\SysWow64\SDA
2015-08-18 10:17 . 2014-03-28 13:00 918232 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2015-08-18 10:17 . 2014-03-28 13:00 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-26 09:05 . 2015-08-26 09:05 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-08-26 09:05 . 2015-08-26 09:05 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2015-07-15 17:54 . 2015-08-26 19:23 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-06-16 14:31 . 2015-06-16 14:31 1247912 ----a-w- c:\windows\SysWow64\FM20.DLL
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2015-06-23 787592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" [2012-03-14 319360]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-10-25 343168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"DisableCAD"= 1 (0x1)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys;c:\windows\SYSNATIVE\drivers\nusb3hub.sys [x]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys;c:\windows\SYSNATIVE\drivers\nusb3xhc.sys [x]
R3 PSMounterEx;Macrium Reflect Image Explorer Driver;c:\windows\system32\drivers\psmounterex.sys;c:\windows\SYSNATIVE\drivers\psmounterex.sys [x]
R3 PSVolAcc;PSVolAcc; [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 ambakdrv;ambakdrv;c:\windows\system32\ambakdrv.sys;c:\windows\SYSNATIVE\ambakdrv.sys [x]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x]
S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 ammntdrv;ammntdrv;c:\windows\system32\ammntdrv.sys;c:\windows\SYSNATIVE\ammntdrv.sys [x]
S2 amwrtdrv;amwrtdrv;c:\windows\system32\amwrtdrv.sys;c:\windows\SYSNATIVE\amwrtdrv.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 Backupper Service;AOMEI Backupper Scheduler Service;c:\program files (x86)\AOMEI Backupper\ABService.exe;c:\program files (x86)\AOMEI Backupper\ABService.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Everything;Everything;c:\program files\Everything\Everything.exe;c:\program files\Everything\Everything.exe [x]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [x]
S2 hpHotkeyMonitor;hpHotkeyMonitor;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe;c:\program files\Macrium\Reflect\ReflectService.exe [x]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x]
S2 ZAtheros Bt and Wlan Coex Agent;ZAtheros Bt and Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x]
S3 amdhub30;AMD USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\amdhub30.sys;c:\windows\SYSNATIVE\DRIVERS\amdhub30.sys [x]
S3 amdxhc;AMD USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\amdxhc.sys;c:\windows\SYSNATIVE\DRIVERS\amdxhc.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys;c:\windows\SYSNATIVE\DRIVERS\jmcr.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Chuck\AppData\Local\Temp\tmp1CEA.tmp;c:\users\Chuck\AppData\Local\Temp\tmp1CEA.tmp [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WINRING0_1_2_0
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-30 c:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job
- c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [2015-08-19 21:45]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe" [2012-04-11 97280]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2012-10-24 1664000]
"Everything"="c:\program files\Everything\Everything.exe" [2014-08-06 1441792]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Download all links with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEGetAll.htm
IE: Download with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEExt.htm
IE: E&xportovat do Microsoft Excelu - c:\progra~2\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do OneNotu - c:\progra~2\MICROS~1\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
c:\users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MenuAppServer.lnk - c:\users\Chuck\Desktop\menuApp1.0.0.33\64Bit\MenuApp.exe -u
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinRing0_1_2_0]
"ImagePath"="\??\c:\users\Chuck\AppData\Local\Temp\tmp1CEA.tmp"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.18"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*]
"v5Licence0"="35-PUMG-7MFZ-4RUX-PNXH-3N8U-Z1RXCQD"
"Activated"="Y"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-09-03 23:15:30
ComboFix-quarantined-files.txt 2015-09-03 21:15
.
Před spuštěním: Volných bajtů: 113 625 014 272
Po spuštění: Volných bajtů: 113 254 883 328
.
- - End Of File - - CB0CAA54498A416034BC2880906A10CD
A36C5E4F47E84449FF07ED3517B43A31
ComboFix 15-09-03.01 - Chuck 03.09.2015 23:06:44.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3552.1893 [GMT 2:00]
Spuštěný z: c:\users\Chuck\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\taskmgr.exe.lnk
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-08-03 do 2015-09-03 )))))))))))))))))))))))))))))))
.
.
2015-09-03 21:12 . 2015-09-03 21:12 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-09-03 12:12 . 2015-09-03 12:12 -------- d-----w- c:\programdata\ashampoo
2015-09-03 11:01 . 2015-09-03 11:01 -------- d-----w- c:\program files\7-Zip
2015-09-01 18:51 . 2015-09-01 18:51 -------- d-----w- c:\program files (x86)\I-Doser Premium
2015-09-01 18:33 . 2015-09-01 18:33 -------- d-----w- c:\program files\FreeFileSync
2015-08-31 19:15 . 2015-08-31 19:15 -------- d-----w- c:\program files (x86)\MyPhoneExplorer
2015-08-31 19:11 . 2015-08-31 19:12 -------- d-----w- c:\program files (x86)\Anki
2015-08-31 11:17 . 2015-08-31 11:17 -------- d-----w- c:\programdata\StartMenuX
2015-08-29 17:06 . 2015-08-11 01:20 25191936 ----a-w- c:\windows\system32\mshtml.dll
2015-08-29 17:06 . 2015-08-11 01:14 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-08-29 17:06 . 2015-08-11 00:33 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2015-08-29 17:04 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2015-08-29 17:04 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2015-08-29 17:04 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2015-08-29 17:04 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- C:\rsit
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- c:\program files\trend micro
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\system32\CompatTel
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-----w- c:\windows\system32\appraiser
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\SysWow64\GWX
2015-08-29 15:21 . 2015-08-29 15:25 -------- d-s---w- c:\windows\system32\GWX
2015-08-29 14:54 . 2015-08-29 14:54 -------- d-----w- c:\windows\Migration
2015-08-29 14:44 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL
2015-08-29 14:39 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2015-08-29 14:38 . 2013-01-24 06:01 223752 ----a-w- c:\windows\system32\drivers\fvevol.sys
2015-08-29 14:35 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe
2015-08-29 14:35 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2015-08-29 14:24 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2015-08-29 14:24 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2015-08-29 13:54 . 2015-08-29 13:54 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\program files (x86)\Microsoft SQL Server
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\windows\PCHEALTH
2015-08-29 08:32 . 2015-08-29 08:32 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2015-08-29 08:32 . 2015-08-29 17:05 -------- d-----w- c:\programdata\Microsoft Help
2015-08-29 08:30 . 2015-08-29 08:30 -------- d-----w- c:\program files\Microsoft Office
2015-08-29 08:28 . 2015-08-29 08:28 -------- d-----r- C:\MSOCache
2015-08-28 10:20 . 2015-08-28 10:20 -------- d-----w- c:\programdata\Microsoft Toolkit
2015-08-27 14:09 . 2015-08-27 14:10 -------- d-----w- c:\program files (x86)\MagicDisc
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\SysWow64\drivers\mcdbus.sys
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\system32\drivers\mcdbus.sys
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\SysWow64\Wat
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\system32\Wat
2015-08-26 22:32 . 2015-07-16 20:12 968704 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-08-26 21:37 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2015-08-26 19:23 . 2015-04-18 03:10 460800 ----a-w- c:\windows\system32\certcli.dll
2015-08-26 19:22 . 2014-10-14 02:13 683520 ----a-w- c:\windows\system32\termsrv.dll
2015-08-26 19:21 . 2014-12-06 04:17 303616 ----a-w- c:\windows\system32\nlasvc.dll
2015-08-26 19:20 . 2015-07-04 18:07 2087424 ----a-w- c:\windows\system32\ole32.dll
2015-08-26 19:20 . 2015-07-04 17:48 1414656 ----a-w- c:\windows\SysWow64\ole32.dll
2015-08-26 19:20 . 2013-05-13 03:43 1192448 ----a-w- c:\windows\system32\certutil.exe
2015-08-26 19:20 . 2013-05-13 03:08 903168 ----a-w- c:\windows\SysWow64\certutil.exe
2015-08-26 19:20 . 2013-05-13 05:50 52224 ----a-w- c:\windows\system32\certenc.dll
2015-08-26 19:20 . 2013-05-13 03:08 43008 ----a-w- c:\windows\SysWow64\certenc.dll
2015-08-26 19:20 . 2014-11-11 03:08 241152 ----a-w- c:\windows\system32\pku2u.dll
2015-08-26 19:20 . 2014-11-11 02:44 186880 ----a-w- c:\windows\SysWow64\pku2u.dll
2015-08-26 19:20 . 2015-02-03 03:31 1424896 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-08-26 19:20 . 2015-02-03 03:12 1230848 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2015-08-26 19:13 . 2015-02-18 07:06 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2015-08-26 19:13 . 2015-02-18 07:04 142336 ----a-w- c:\windows\system32\poqexec.exe
2015-08-26 18:43 . 2015-07-30 18:06 41984 ----a-w- c:\windows\system32\lpk.dll
2015-08-26 18:42 . 2015-04-29 18:22 14635008 ----a-w- c:\windows\system32\wmp.dll
2015-08-26 18:41 . 2014-04-25 02:34 801280 ----a-w- c:\windows\system32\usp10.dll
2015-08-26 18:40 . 2013-07-25 09:25 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL
2015-08-26 18:40 . 2013-07-25 08:57 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL
2015-08-26 16:43 . 2010-12-23 10:42 961024 ----a-w- c:\windows\system32\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 10:36 259072 ----a-w- c:\windows\system32\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 05:54 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 05:50 199680 ----a-w- c:\windows\SysWow64\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2015-08-26 16:43 . 2010-12-23 05:54 850944 ----a-w- c:\windows\SysWow64\sbe.dll
2015-08-26 15:42 . 2009-03-24 19:52 614992 ----a-w- c:\windows\SysWow64\COMCTL32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 218432 ----a-w- c:\windows\SysWow64\RICHTX32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 155984 ----a-w- c:\windows\SysWow64\COMDLG32.OCX
2015-08-26 15:26 . 2009-03-24 19:52 127808 ----a-w- c:\windows\SysWow64\MSWINSCK.OCX
2015-08-26 13:27 . 2015-07-30 13:13 103120 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:27 . 2015-07-30 13:13 124624 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:18 . 2014-06-18 22:23 73880 ----a-w- c:\windows\system32\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156312 ----a-w- c:\windows\system32\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 81560 ----a-w- c:\windows\SysWow64\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156824 ----a-w- c:\windows\SysWow64\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 1131664 ----a-w- c:\windows\SysWow64\dfshim.dll
2015-08-26 13:18 . 2014-06-18 22:23 1943696 ----a-w- c:\windows\system32\dfshim.dll
2015-08-26 13:13 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2015-08-26 13:13 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2015-08-26 13:13 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2015-08-26 13:13 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2015-08-26 13:13 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2015-08-26 13:13 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-08-26 09:12 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2015-08-26 09:03 . 2015-08-26 09:03 327168 ----a-w- c:\windows\system32\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 231424 ----a-w- c:\windows\SysWow64\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 68608 ----a-w- c:\windows\system32\taskhost.exe
2015-08-26 08:58 . 2015-08-26 08:58 1887232 ----a-w- c:\windows\system32\d3d11.dll
2015-08-26 08:58 . 2015-08-26 08:58 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2015-08-25 11:54 . 2015-08-25 11:54 -------- d-s---w- c:\windows\SysWow64\Microsoft
2015-08-24 12:41 . 2015-08-31 12:04 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-08-24 12:41 . 2015-06-18 06:41 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-08-24 12:41 . 2015-06-18 06:41 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-08-24 12:41 . 2015-06-18 06:41 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\programdata\Malwarebytes
2015-08-24 12:39 . 2015-08-27 14:08 -------- d-----w- c:\program files (x86)\MagicISO
2015-08-24 09:03 . 2015-08-24 09:20 -------- d-----w- C:\boot
2015-08-24 09:03 . 2015-08-24 09:03 -------- d-----w- c:\program files\Macrium
2015-08-24 08:54 . 2015-08-24 09:07 -------- d-----w- c:\programdata\Macrium
2015-08-24 07:12 . 2015-09-03 19:55 1024 ---ha-w- C:\SYSTAG.BIN
2015-08-24 07:12 . 2015-09-03 19:55 -------- d-----w- c:\programdata\AomeiBR
2015-08-24 07:11 . 2015-02-25 22:00 30648 ----a-w- c:\windows\system32\ambakdrv.sys
2015-08-24 07:11 . 2015-02-25 22:00 151480 ----a-w- c:\windows\system32\ammntdrv.sys
2015-08-24 07:11 . 2015-08-24 07:12 -------- d-----w- c:\program files (x86)\AOMEI Backupper
2015-08-23 21:20 . 2015-08-23 21:20 -------- d-----w- c:\program files\VideoLAN
2015-08-23 18:40 . 2015-02-25 22:00 17848 ----a-w- c:\windows\system32\amwrtdrv.sys
2015-08-23 18:40 . 2015-08-23 18:41 -------- d-----w- c:\program files (x86)\AOMEI PE Builder 1.4
2015-08-22 10:01 . 2015-08-22 10:01 -------- d-----w- c:\program files\Everything
2015-08-20 11:26 . 2015-08-25 11:56 -------- d-----w- c:\programdata\AVAST Software
2015-08-19 11:50 . 2015-08-19 11:50 -------- d-----w- c:\windows\SysWow64\Adobe
2015-08-18 10:42 . 2015-08-18 10:42 -------- d-----w- c:\program files\Hewlett-Packard
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\program files (x86)\JMicron
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\windows\SysWow64\SDA
2015-08-18 10:17 . 2014-03-28 13:00 918232 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2015-08-18 10:17 . 2014-03-28 13:00 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-26 09:05 . 2015-08-26 09:05 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-08-26 09:05 . 2015-08-26 09:05 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2015-07-15 17:54 . 2015-08-26 19:23 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-06-16 14:31 . 2015-06-16 14:31 1247912 ----a-w- c:\windows\SysWow64\FM20.DLL
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2015-06-23 787592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" [2012-03-14 319360]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-10-25 343168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"DisableCAD"= 1 (0x1)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys;c:\windows\SYSNATIVE\drivers\nusb3hub.sys [x]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys;c:\windows\SYSNATIVE\drivers\nusb3xhc.sys [x]
R3 PSMounterEx;Macrium Reflect Image Explorer Driver;c:\windows\system32\drivers\psmounterex.sys;c:\windows\SYSNATIVE\drivers\psmounterex.sys [x]
R3 PSVolAcc;PSVolAcc; [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 ambakdrv;ambakdrv;c:\windows\system32\ambakdrv.sys;c:\windows\SYSNATIVE\ambakdrv.sys [x]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x]
S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 ammntdrv;ammntdrv;c:\windows\system32\ammntdrv.sys;c:\windows\SYSNATIVE\ammntdrv.sys [x]
S2 amwrtdrv;amwrtdrv;c:\windows\system32\amwrtdrv.sys;c:\windows\SYSNATIVE\amwrtdrv.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 Backupper Service;AOMEI Backupper Scheduler Service;c:\program files (x86)\AOMEI Backupper\ABService.exe;c:\program files (x86)\AOMEI Backupper\ABService.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Everything;Everything;c:\program files\Everything\Everything.exe;c:\program files\Everything\Everything.exe [x]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [x]
S2 hpHotkeyMonitor;hpHotkeyMonitor;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe;c:\program files\Macrium\Reflect\ReflectService.exe [x]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x]
S2 ZAtheros Bt and Wlan Coex Agent;ZAtheros Bt and Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x]
S3 amdhub30;AMD USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\amdhub30.sys;c:\windows\SYSNATIVE\DRIVERS\amdhub30.sys [x]
S3 amdxhc;AMD USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\amdxhc.sys;c:\windows\SYSNATIVE\DRIVERS\amdxhc.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys;c:\windows\SYSNATIVE\DRIVERS\jmcr.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Chuck\AppData\Local\Temp\tmp1CEA.tmp;c:\users\Chuck\AppData\Local\Temp\tmp1CEA.tmp [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WINRING0_1_2_0
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-30 c:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job
- c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [2015-08-19 21:45]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe" [2012-04-11 97280]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2012-10-24 1664000]
"Everything"="c:\program files\Everything\Everything.exe" [2014-08-06 1441792]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Download all links with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEGetAll.htm
IE: Download with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEExt.htm
IE: E&xportovat do Microsoft Excelu - c:\progra~2\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do OneNotu - c:\progra~2\MICROS~1\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
c:\users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MenuAppServer.lnk - c:\users\Chuck\Desktop\menuApp1.0.0.33\64Bit\MenuApp.exe -u
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinRing0_1_2_0]
"ImagePath"="\??\c:\users\Chuck\AppData\Local\Temp\tmp1CEA.tmp"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.18"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_232.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*]
"v5Licence0"="35-PUMG-7MFZ-4RUX-PNXH-3N8U-Z1RXCQD"
"Activated"="Y"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-09-03 23:15:30
ComboFix-quarantined-files.txt 2015-09-03 21:15
.
Před spuštěním: Volných bajtů: 113 625 014 272
Po spuštění: Volných bajtů: 113 254 883 328
.
- - End Of File - - CB0CAA54498A416034BC2880906A10CD
A36C5E4F47E84449FF07ED3517B43A31
Re: Nelze nainstalovat aktualizace
Kód: Vybrat vše
KillAll::
RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Reboot::Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Nelze nainstalovat aktualizace
Zde je log:
ComboFix 15-09-03.01 - Chuck 04.09.2015 23:07:17.2.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3552.2500 [GMT 2:00]
Spuštěný z: c:\users\Chuck\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Chuck\Desktop\CFScript.txt
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\taskmgr.exe.lnk
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-08-04 do 2015-09-04 )))))))))))))))))))))))))))))))
.
.
2015-09-03 12:12 . 2015-09-03 12:12 -------- d-----w- c:\programdata\ashampoo
2015-09-03 11:01 . 2015-09-03 11:01 -------- d-----w- c:\program files\7-Zip
2015-09-01 18:51 . 2015-09-01 18:51 -------- d-----w- c:\program files (x86)\I-Doser Premium
2015-09-01 18:33 . 2015-09-01 18:33 -------- d-----w- c:\program files\FreeFileSync
2015-08-31 19:15 . 2015-08-31 19:15 -------- d-----w- c:\program files (x86)\MyPhoneExplorer
2015-08-31 19:11 . 2015-08-31 19:12 -------- d-----w- c:\program files (x86)\Anki
2015-08-31 11:17 . 2015-08-31 11:17 -------- d-----w- c:\programdata\StartMenuX
2015-08-29 17:06 . 2015-08-11 01:20 25191936 ----a-w- c:\windows\system32\mshtml.dll
2015-08-29 17:06 . 2015-08-11 01:14 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-08-29 17:06 . 2015-08-11 00:33 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2015-08-29 17:04 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2015-08-29 17:04 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2015-08-29 17:04 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2015-08-29 17:04 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- C:\rsit
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- c:\program files\trend micro
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\system32\CompatTel
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-----w- c:\windows\system32\appraiser
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\SysWow64\GWX
2015-08-29 15:21 . 2015-08-29 15:25 -------- d-s---w- c:\windows\system32\GWX
2015-08-29 14:54 . 2015-08-29 14:54 -------- d-----w- c:\windows\Migration
2015-08-29 14:44 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL
2015-08-29 14:39 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2015-08-29 14:38 . 2013-01-24 06:01 223752 ----a-w- c:\windows\system32\drivers\fvevol.sys
2015-08-29 14:35 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe
2015-08-29 14:35 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2015-08-29 14:24 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2015-08-29 14:24 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2015-08-29 13:54 . 2015-08-29 13:54 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\program files (x86)\Microsoft SQL Server
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\windows\PCHEALTH
2015-08-29 08:32 . 2015-08-29 08:32 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2015-08-29 08:32 . 2015-08-29 17:05 -------- d-----w- c:\programdata\Microsoft Help
2015-08-29 08:30 . 2015-08-29 08:30 -------- d-----w- c:\program files\Microsoft Office
2015-08-29 08:28 . 2015-08-29 08:28 -------- d-----r- C:\MSOCache
2015-08-28 10:20 . 2015-08-28 10:20 -------- d-----w- c:\programdata\Microsoft Toolkit
2015-08-27 14:09 . 2015-08-27 14:10 -------- d-----w- c:\program files (x86)\MagicDisc
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\SysWow64\drivers\mcdbus.sys
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\system32\drivers\mcdbus.sys
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\SysWow64\Wat
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\system32\Wat
2015-08-26 22:32 . 2015-07-16 20:12 968704 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-08-26 21:37 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2015-08-26 19:23 . 2015-04-18 03:10 460800 ----a-w- c:\windows\system32\certcli.dll
2015-08-26 19:22 . 2014-10-14 02:13 683520 ----a-w- c:\windows\system32\termsrv.dll
2015-08-26 19:21 . 2014-12-06 04:17 303616 ----a-w- c:\windows\system32\nlasvc.dll
2015-08-26 19:20 . 2015-07-04 18:07 2087424 ----a-w- c:\windows\system32\ole32.dll
2015-08-26 19:20 . 2015-07-04 17:48 1414656 ----a-w- c:\windows\SysWow64\ole32.dll
2015-08-26 19:20 . 2013-05-13 03:43 1192448 ----a-w- c:\windows\system32\certutil.exe
2015-08-26 19:20 . 2013-05-13 03:08 903168 ----a-w- c:\windows\SysWow64\certutil.exe
2015-08-26 19:20 . 2013-05-13 05:50 52224 ----a-w- c:\windows\system32\certenc.dll
2015-08-26 19:20 . 2013-05-13 03:08 43008 ----a-w- c:\windows\SysWow64\certenc.dll
2015-08-26 19:20 . 2014-11-11 03:08 241152 ----a-w- c:\windows\system32\pku2u.dll
2015-08-26 19:20 . 2014-11-11 02:44 186880 ----a-w- c:\windows\SysWow64\pku2u.dll
2015-08-26 19:20 . 2015-02-03 03:31 1424896 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-08-26 19:20 . 2015-02-03 03:12 1230848 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2015-08-26 19:13 . 2015-02-18 07:06 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2015-08-26 19:13 . 2015-02-18 07:04 142336 ----a-w- c:\windows\system32\poqexec.exe
2015-08-26 18:43 . 2015-07-30 18:06 41984 ----a-w- c:\windows\system32\lpk.dll
2015-08-26 18:42 . 2015-04-29 18:22 14635008 ----a-w- c:\windows\system32\wmp.dll
2015-08-26 18:41 . 2014-04-25 02:34 801280 ----a-w- c:\windows\system32\usp10.dll
2015-08-26 18:40 . 2013-07-25 09:25 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL
2015-08-26 18:40 . 2013-07-25 08:57 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL
2015-08-26 16:43 . 2010-12-23 10:42 961024 ----a-w- c:\windows\system32\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 10:36 259072 ----a-w- c:\windows\system32\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 05:54 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 05:50 199680 ----a-w- c:\windows\SysWow64\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2015-08-26 16:43 . 2010-12-23 05:54 850944 ----a-w- c:\windows\SysWow64\sbe.dll
2015-08-26 15:42 . 2009-03-24 19:52 614992 ----a-w- c:\windows\SysWow64\COMCTL32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 218432 ----a-w- c:\windows\SysWow64\RICHTX32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 155984 ----a-w- c:\windows\SysWow64\COMDLG32.OCX
2015-08-26 15:26 . 2009-03-24 19:52 127808 ----a-w- c:\windows\SysWow64\MSWINSCK.OCX
2015-08-26 13:27 . 2015-07-30 13:13 103120 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:27 . 2015-07-30 13:13 124624 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:18 . 2014-06-18 22:23 73880 ----a-w- c:\windows\system32\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156312 ----a-w- c:\windows\system32\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 81560 ----a-w- c:\windows\SysWow64\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156824 ----a-w- c:\windows\SysWow64\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 1131664 ----a-w- c:\windows\SysWow64\dfshim.dll
2015-08-26 13:18 . 2014-06-18 22:23 1943696 ----a-w- c:\windows\system32\dfshim.dll
2015-08-26 13:13 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2015-08-26 13:13 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2015-08-26 13:13 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2015-08-26 13:13 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2015-08-26 13:13 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2015-08-26 13:13 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-08-26 09:12 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2015-08-26 09:03 . 2015-08-26 09:03 327168 ----a-w- c:\windows\system32\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 231424 ----a-w- c:\windows\SysWow64\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 68608 ----a-w- c:\windows\system32\taskhost.exe
2015-08-26 08:58 . 2015-08-26 08:58 1887232 ----a-w- c:\windows\system32\d3d11.dll
2015-08-26 08:58 . 2015-08-26 08:58 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2015-08-25 11:54 . 2015-08-25 11:54 -------- d-s---w- c:\windows\SysWow64\Microsoft
2015-08-24 12:41 . 2015-08-31 12:04 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-08-24 12:41 . 2015-06-18 06:41 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-08-24 12:41 . 2015-06-18 06:41 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-08-24 12:41 . 2015-06-18 06:41 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\programdata\Malwarebytes
2015-08-24 12:39 . 2015-08-27 14:08 -------- d-----w- c:\program files (x86)\MagicISO
2015-08-24 09:03 . 2015-08-24 09:20 -------- d-----w- C:\boot
2015-08-24 09:03 . 2015-08-24 09:03 -------- d-----w- c:\program files\Macrium
2015-08-24 08:54 . 2015-08-24 09:07 -------- d-----w- c:\programdata\Macrium
2015-08-24 07:12 . 2015-09-03 19:55 1024 ---ha-w- C:\SYSTAG.BIN
2015-08-24 07:12 . 2015-09-03 19:55 -------- d-----w- c:\programdata\AomeiBR
2015-08-24 07:11 . 2015-02-25 22:00 30648 ----a-w- c:\windows\system32\ambakdrv.sys
2015-08-24 07:11 . 2015-02-25 22:00 151480 ----a-w- c:\windows\system32\ammntdrv.sys
2015-08-24 07:11 . 2015-08-24 07:12 -------- d-----w- c:\program files (x86)\AOMEI Backupper
2015-08-23 21:20 . 2015-08-23 21:20 -------- d-----w- c:\program files\VideoLAN
2015-08-23 18:40 . 2015-02-25 22:00 17848 ----a-w- c:\windows\system32\amwrtdrv.sys
2015-08-23 18:40 . 2015-08-23 18:41 -------- d-----w- c:\program files (x86)\AOMEI PE Builder 1.4
2015-08-22 10:01 . 2015-08-22 10:01 -------- d-----w- c:\program files\Everything
2015-08-20 11:26 . 2015-08-25 11:56 -------- d-----w- c:\programdata\AVAST Software
2015-08-19 11:50 . 2015-08-19 11:50 -------- d-----w- c:\windows\SysWow64\Adobe
2015-08-18 10:42 . 2015-08-18 10:42 -------- d-----w- c:\program files\Hewlett-Packard
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\program files (x86)\JMicron
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\windows\SysWow64\SDA
2015-08-18 10:17 . 2014-03-28 13:00 918232 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2015-08-18 10:17 . 2014-03-28 13:00 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2015-08-18 10:17 . 2014-03-28 13:00 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-26 09:05 . 2015-08-26 09:05 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-08-26 09:05 . 2015-08-26 09:05 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2015-07-15 17:54 . 2015-08-26 19:23 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-06-16 14:31 . 2015-06-16 14:31 1247912 ----a-w- c:\windows\SysWow64\FM20.DLL
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2015-06-23 787592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" [2012-03-14 319360]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-10-25 343168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"DisableCAD"= 1 (0x1)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys;c:\windows\SYSNATIVE\drivers\nusb3hub.sys [x]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys;c:\windows\SYSNATIVE\drivers\nusb3xhc.sys [x]
R3 PSMounterEx;Macrium Reflect Image Explorer Driver;c:\windows\system32\drivers\psmounterex.sys;c:\windows\SYSNATIVE\drivers\psmounterex.sys [x]
R3 PSVolAcc;PSVolAcc; [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Chuck\AppData\Local\Temp\tmpAE73.tmp;c:\users\Chuck\AppData\Local\Temp\tmpAE73.tmp [x]
S0 ambakdrv;ambakdrv;c:\windows\system32\ambakdrv.sys;c:\windows\SYSNATIVE\ambakdrv.sys [x]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x]
S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 ammntdrv;ammntdrv;c:\windows\system32\ammntdrv.sys;c:\windows\SYSNATIVE\ammntdrv.sys [x]
S2 amwrtdrv;amwrtdrv;c:\windows\system32\amwrtdrv.sys;c:\windows\SYSNATIVE\amwrtdrv.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 Backupper Service;AOMEI Backupper Scheduler Service;c:\program files (x86)\AOMEI Backupper\ABService.exe;c:\program files (x86)\AOMEI Backupper\ABService.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Everything;Everything;c:\program files\Everything\Everything.exe;c:\program files\Everything\Everything.exe [x]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [x]
S2 hpHotkeyMonitor;hpHotkeyMonitor;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe;c:\program files\Macrium\Reflect\ReflectService.exe [x]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x]
S2 ZAtheros Bt and Wlan Coex Agent;ZAtheros Bt and Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x]
S3 amdhub30;AMD USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\amdhub30.sys;c:\windows\SYSNATIVE\DRIVERS\amdhub30.sys [x]
S3 amdxhc;AMD USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\amdxhc.sys;c:\windows\SYSNATIVE\DRIVERS\amdxhc.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys;c:\windows\SYSNATIVE\DRIVERS\jmcr.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-30 c:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job
- c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [2015-08-19 21:45]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe" [2012-04-11 97280]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2012-10-24 1664000]
"Everything"="c:\program files\Everything\Everything.exe" [2014-08-06 1441792]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Download all links with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEGetAll.htm
IE: Download with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEExt.htm
IE: E&xportovat do Microsoft Excelu - c:\progra~2\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do OneNotu - c:\progra~2\MICROS~1\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinRing0_1_2_0]
"ImagePath"="\??\c:\users\Chuck\AppData\Local\Temp\tmpAE73.tmp"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*]
"v5Licence0"="35-PUMG-7MFZ-4RUX-PNXH-3N8U-Z1RXCQD"
"Activated"="Y"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SysWOW64\vmnat.exe
c:\program files (x86)\VMware\VMware Player\vmware-authd.exe
c:\windows\SysWOW64\vmnetdhcp.exe
c:\program files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
.
**************************************************************************
.
Celkový čas: 2015-09-04 23:19:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-09-04 21:19
ComboFix2.txt 2015-09-03 21:15
.
Před spuštěním: Volných bajtů: 116 624 490 496
Po spuštění: Volných bajtů: 116 546 088 960
.
- - End Of File - - 9107600B5B7D351863038C53837246A9
A36C5E4F47E84449FF07ED3517B43A31
ComboFix 15-09-03.01 - Chuck 04.09.2015 23:07:17.2.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3552.2500 [GMT 2:00]
Spuštěný z: c:\users\Chuck\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Chuck\Desktop\CFScript.txt
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\taskmgr.exe.lnk
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-08-04 do 2015-09-04 )))))))))))))))))))))))))))))))
.
.
2015-09-03 12:12 . 2015-09-03 12:12 -------- d-----w- c:\programdata\ashampoo
2015-09-03 11:01 . 2015-09-03 11:01 -------- d-----w- c:\program files\7-Zip
2015-09-01 18:51 . 2015-09-01 18:51 -------- d-----w- c:\program files (x86)\I-Doser Premium
2015-09-01 18:33 . 2015-09-01 18:33 -------- d-----w- c:\program files\FreeFileSync
2015-08-31 19:15 . 2015-08-31 19:15 -------- d-----w- c:\program files (x86)\MyPhoneExplorer
2015-08-31 19:11 . 2015-08-31 19:12 -------- d-----w- c:\program files (x86)\Anki
2015-08-31 11:17 . 2015-08-31 11:17 -------- d-----w- c:\programdata\StartMenuX
2015-08-29 17:06 . 2015-08-11 01:20 25191936 ----a-w- c:\windows\system32\mshtml.dll
2015-08-29 17:06 . 2015-08-11 01:14 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-08-29 17:06 . 2015-08-11 00:33 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2015-08-29 17:04 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2015-08-29 17:04 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2015-08-29 17:04 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2015-08-29 17:04 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- C:\rsit
2015-08-29 16:36 . 2015-08-29 16:36 -------- d-----w- c:\program files\trend micro
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\system32\CompatTel
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-----w- c:\windows\system32\appraiser
2015-08-29 15:21 . 2015-08-29 15:21 -------- d-s---w- c:\windows\SysWow64\GWX
2015-08-29 15:21 . 2015-08-29 15:25 -------- d-s---w- c:\windows\system32\GWX
2015-08-29 14:54 . 2015-08-29 14:54 -------- d-----w- c:\windows\Migration
2015-08-29 14:44 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL
2015-08-29 14:39 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2015-08-29 14:38 . 2013-01-24 06:01 223752 ----a-w- c:\windows\system32\drivers\fvevol.sys
2015-08-29 14:35 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe
2015-08-29 14:35 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2015-08-29 14:24 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2015-08-29 14:24 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2015-08-29 13:54 . 2015-08-29 13:54 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\program files (x86)\Microsoft SQL Server
2015-08-29 08:34 . 2015-08-29 08:34 -------- d-----w- c:\windows\PCHEALTH
2015-08-29 08:32 . 2015-08-29 08:32 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2015-08-29 08:32 . 2015-08-29 17:05 -------- d-----w- c:\programdata\Microsoft Help
2015-08-29 08:30 . 2015-08-29 08:30 -------- d-----w- c:\program files\Microsoft Office
2015-08-29 08:28 . 2015-08-29 08:28 -------- d-----r- C:\MSOCache
2015-08-28 10:20 . 2015-08-28 10:20 -------- d-----w- c:\programdata\Microsoft Toolkit
2015-08-27 14:09 . 2015-08-27 14:10 -------- d-----w- c:\program files (x86)\MagicDisc
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\SysWow64\drivers\mcdbus.sys
2015-08-27 14:09 . 2009-02-24 16:35 255552 ----a-w- c:\windows\system32\drivers\mcdbus.sys
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\SysWow64\Wat
2015-08-26 22:45 . 2015-08-26 22:45 -------- d-----w- c:\windows\system32\Wat
2015-08-26 22:32 . 2015-07-16 20:12 968704 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-08-26 21:37 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2015-08-26 19:23 . 2015-04-18 03:10 460800 ----a-w- c:\windows\system32\certcli.dll
2015-08-26 19:22 . 2014-10-14 02:13 683520 ----a-w- c:\windows\system32\termsrv.dll
2015-08-26 19:21 . 2014-12-06 04:17 303616 ----a-w- c:\windows\system32\nlasvc.dll
2015-08-26 19:20 . 2015-07-04 18:07 2087424 ----a-w- c:\windows\system32\ole32.dll
2015-08-26 19:20 . 2015-07-04 17:48 1414656 ----a-w- c:\windows\SysWow64\ole32.dll
2015-08-26 19:20 . 2013-05-13 03:43 1192448 ----a-w- c:\windows\system32\certutil.exe
2015-08-26 19:20 . 2013-05-13 03:08 903168 ----a-w- c:\windows\SysWow64\certutil.exe
2015-08-26 19:20 . 2013-05-13 05:50 52224 ----a-w- c:\windows\system32\certenc.dll
2015-08-26 19:20 . 2013-05-13 03:08 43008 ----a-w- c:\windows\SysWow64\certenc.dll
2015-08-26 19:20 . 2014-11-11 03:08 241152 ----a-w- c:\windows\system32\pku2u.dll
2015-08-26 19:20 . 2014-11-11 02:44 186880 ----a-w- c:\windows\SysWow64\pku2u.dll
2015-08-26 19:20 . 2015-02-03 03:31 1424896 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-08-26 19:20 . 2015-02-03 03:12 1230848 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2015-08-26 19:13 . 2015-02-18 07:06 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2015-08-26 19:13 . 2015-02-18 07:04 142336 ----a-w- c:\windows\system32\poqexec.exe
2015-08-26 18:43 . 2015-07-30 18:06 41984 ----a-w- c:\windows\system32\lpk.dll
2015-08-26 18:42 . 2015-04-29 18:22 14635008 ----a-w- c:\windows\system32\wmp.dll
2015-08-26 18:41 . 2014-04-25 02:34 801280 ----a-w- c:\windows\system32\usp10.dll
2015-08-26 18:40 . 2013-07-25 09:25 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL
2015-08-26 18:40 . 2013-07-25 08:57 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL
2015-08-26 16:43 . 2010-12-23 10:42 961024 ----a-w- c:\windows\system32\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 10:36 259072 ----a-w- c:\windows\system32\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 05:54 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll
2015-08-26 16:43 . 2010-12-23 05:50 199680 ----a-w- c:\windows\SysWow64\mpg2splt.ax
2015-08-26 16:43 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll
2015-08-26 16:43 . 2010-12-23 05:54 850944 ----a-w- c:\windows\SysWow64\sbe.dll
2015-08-26 15:42 . 2009-03-24 19:52 614992 ----a-w- c:\windows\SysWow64\COMCTL32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 218432 ----a-w- c:\windows\SysWow64\RICHTX32.OCX
2015-08-26 15:42 . 2009-03-24 19:52 155984 ----a-w- c:\windows\SysWow64\COMDLG32.OCX
2015-08-26 15:26 . 2009-03-24 19:52 127808 ----a-w- c:\windows\SysWow64\MSWINSCK.OCX
2015-08-26 13:27 . 2015-07-30 13:13 103120 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:27 . 2015-07-30 13:13 124624 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-26 13:18 . 2014-06-18 22:23 73880 ----a-w- c:\windows\system32\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156312 ----a-w- c:\windows\system32\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 81560 ----a-w- c:\windows\SysWow64\mscories.dll
2015-08-26 13:18 . 2014-06-18 22:23 156824 ----a-w- c:\windows\SysWow64\mscorier.dll
2015-08-26 13:18 . 2014-06-18 22:23 1131664 ----a-w- c:\windows\SysWow64\dfshim.dll
2015-08-26 13:18 . 2014-06-18 22:23 1943696 ----a-w- c:\windows\system32\dfshim.dll
2015-08-26 13:13 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2015-08-26 13:13 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2015-08-26 13:13 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2015-08-26 13:13 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2015-08-26 13:13 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2015-08-26 13:13 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2015-08-26 13:13 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-08-26 09:12 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2015-08-26 09:03 . 2015-08-26 09:03 327168 ----a-w- c:\windows\system32\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 231424 ----a-w- c:\windows\SysWow64\mswsock.dll
2015-08-26 09:03 . 2015-08-26 09:03 68608 ----a-w- c:\windows\system32\taskhost.exe
2015-08-26 08:58 . 2015-08-26 08:58 1887232 ----a-w- c:\windows\system32\d3d11.dll
2015-08-26 08:58 . 2015-08-26 08:58 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2015-08-25 11:54 . 2015-08-25 11:54 -------- d-s---w- c:\windows\SysWow64\Microsoft
2015-08-24 12:41 . 2015-08-31 12:04 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-08-24 12:41 . 2015-06-18 06:41 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-08-24 12:41 . 2015-06-18 06:41 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-08-24 12:41 . 2015-06-18 06:41 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-08-24 12:41 . 2015-08-24 12:41 -------- d-----w- c:\programdata\Malwarebytes
2015-08-24 12:39 . 2015-08-27 14:08 -------- d-----w- c:\program files (x86)\MagicISO
2015-08-24 09:03 . 2015-08-24 09:20 -------- d-----w- C:\boot
2015-08-24 09:03 . 2015-08-24 09:03 -------- d-----w- c:\program files\Macrium
2015-08-24 08:54 . 2015-08-24 09:07 -------- d-----w- c:\programdata\Macrium
2015-08-24 07:12 . 2015-09-03 19:55 1024 ---ha-w- C:\SYSTAG.BIN
2015-08-24 07:12 . 2015-09-03 19:55 -------- d-----w- c:\programdata\AomeiBR
2015-08-24 07:11 . 2015-02-25 22:00 30648 ----a-w- c:\windows\system32\ambakdrv.sys
2015-08-24 07:11 . 2015-02-25 22:00 151480 ----a-w- c:\windows\system32\ammntdrv.sys
2015-08-24 07:11 . 2015-08-24 07:12 -------- d-----w- c:\program files (x86)\AOMEI Backupper
2015-08-23 21:20 . 2015-08-23 21:20 -------- d-----w- c:\program files\VideoLAN
2015-08-23 18:40 . 2015-02-25 22:00 17848 ----a-w- c:\windows\system32\amwrtdrv.sys
2015-08-23 18:40 . 2015-08-23 18:41 -------- d-----w- c:\program files (x86)\AOMEI PE Builder 1.4
2015-08-22 10:01 . 2015-08-22 10:01 -------- d-----w- c:\program files\Everything
2015-08-20 11:26 . 2015-08-25 11:56 -------- d-----w- c:\programdata\AVAST Software
2015-08-19 11:50 . 2015-08-19 11:50 -------- d-----w- c:\windows\SysWow64\Adobe
2015-08-18 10:42 . 2015-08-18 10:42 -------- d-----w- c:\program files\Hewlett-Packard
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\program files (x86)\JMicron
2015-08-18 10:23 . 2015-08-18 10:23 -------- d-----w- c:\windows\SysWow64\SDA
2015-08-18 10:17 . 2014-03-28 13:00 918232 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2015-08-18 10:17 . 2014-03-28 13:00 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2015-08-18 10:17 . 2014-03-28 13:00 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-08-26 09:05 . 2015-08-26 09:05 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-08-26 09:05 . 2015-08-26 09:05 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2015-07-15 17:54 . 2015-08-26 19:23 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-06-16 14:31 . 2015-06-16 14:31 1247912 ----a-w- c:\windows\SysWow64\FM20.DLL
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 10:57 1729752 ----a-w- c:\progra~2\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2015-06-23 787592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" [2012-03-14 319360]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-10-25 343168]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"DisableCAD"= 1 (0x1)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x]
R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys;c:\windows\SYSNATIVE\drivers\nusb3hub.sys [x]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys;c:\windows\SYSNATIVE\drivers\nusb3xhc.sys [x]
R3 PSMounterEx;Macrium Reflect Image Explorer Driver;c:\windows\system32\drivers\psmounterex.sys;c:\windows\SYSNATIVE\drivers\psmounterex.sys [x]
R3 PSVolAcc;PSVolAcc; [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Chuck\AppData\Local\Temp\tmpAE73.tmp;c:\users\Chuck\AppData\Local\Temp\tmpAE73.tmp [x]
S0 ambakdrv;ambakdrv;c:\windows\system32\ambakdrv.sys;c:\windows\SYSNATIVE\ambakdrv.sys [x]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S0 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys;c:\windows\SYSNATIVE\DRIVERS\vmci.sys [x]
S0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys;c:\windows\SYSNATIVE\drivers\vsock.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 ammntdrv;ammntdrv;c:\windows\system32\ammntdrv.sys;c:\windows\SYSNATIVE\ammntdrv.sys [x]
S2 amwrtdrv;amwrtdrv;c:\windows\system32\amwrtdrv.sys;c:\windows\SYSNATIVE\amwrtdrv.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Bluetooth Suite\adminservice.exe [x]
S2 Backupper Service;AOMEI Backupper Scheduler Service;c:\program files (x86)\AOMEI Backupper\ABService.exe;c:\program files (x86)\AOMEI Backupper\ABService.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Everything;Everything;c:\program files\Everything\Everything.exe;c:\program files\Everything\Everything.exe [x]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe;c:\program files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [x]
S2 hpHotkeyMonitor;hpHotkeyMonitor;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe;c:\program files\Macrium\Reflect\ReflectService.exe [x]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe;c:\program files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [x]
S2 ZAtheros Bt and Wlan Coex Agent;ZAtheros Bt and Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [x]
S3 amdhub30;AMD USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\amdhub30.sys;c:\windows\SYSNATIVE\DRIVERS\amdhub30.sys [x]
S3 amdxhc;AMD USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\amdxhc.sys;c:\windows\SYSNATIVE\DRIVERS\amdxhc.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys;c:\windows\SYSNATIVE\DRIVERS\jmcr.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2015-08-30 c:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job
- c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [2015-08-19 21:45]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2015-07-14 11:03 2335960 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe" [2012-04-11 97280]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2012-10-24 1664000]
"Everything"="c:\program files\Everything\Everything.exe" [2014-08-06 1441792]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Download all links with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEGetAll.htm
IE: Download with IDM - c:\users\Chuck\AppData\Local\Temp\OfficeDC\_tools\IEExt.htm
IE: E&xportovat do Microsoft Excelu - c:\progra~2\MICROS~1\Office15\EXCEL.EXE/3000
IE: Od&eslat do OneNotu - c:\progra~2\MICROS~1\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinRing0_1_2_0]
"ImagePath"="\??\c:\users\Chuck\AppData\Local\Temp\tmpAE73.tmp"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_232_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*]
"v5Licence0"="35-PUMG-7MFZ-4RUX-PNXH-3N8U-Z1RXCQD"
"Activated"="Y"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SysWOW64\vmnat.exe
c:\program files (x86)\VMware\VMware Player\vmware-authd.exe
c:\windows\SysWOW64\vmnetdhcp.exe
c:\program files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
.
**************************************************************************
.
Celkový čas: 2015-09-04 23:19:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-09-04 21:19
ComboFix2.txt 2015-09-03 21:15
.
Před spuštěním: Volných bajtů: 116 624 490 496
Po spuštění: Volných bajtů: 116 546 088 960
.
- - End Of File - - 9107600B5B7D351863038C53837246A9
A36C5E4F47E84449FF07ED3517B43A31
Re: Nelze nainstalovat aktualizace
Kód: Vybrat vše
KillAll::
Regnull::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*]
RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
Reboot::Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev CFScript a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Pretahntete mysi tento vytvoreny textovy dokument nad ikonu ComboFix a pustte.
ComboFix by se mel spustit a vykonat prikazy.
Az skonci (muze dojit k restartu pc), mel by se objevit novy log, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Nelze nainstalovat aktualizace
LOG Z FRST, první část:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-09-2015
Ran by Chuck (administrator) on CHUCK-PC (07-09-2015 23:49:17)
Running from C:\Users\Chuck\Desktop
Loaded Profiles: Chuck (Available Profiles: Chuck & Karol)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
() C:\Program Files\Everything\Everything.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Paramount Software UK Ltd) C:\Program Files\Macrium\Reflect\ReflectService.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files\Everything\Everything.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(PortableApps.com) D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\FirefoxPortable.exe
(Mozilla Corporation) D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\App\Firefox\firefox.exe
(forum.viry.cz) C:\Users\Chuck\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NUSB3MON] => c:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-09-04] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2012-10-24] (IDT, Inc.)
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] ()
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [319360 2012-03-14] (Hewlett-Packard Company)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-26] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-2887156172-1520988294-1417751805-1000\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [787592 2015-06-23] (Sandboxie Holdings, LLC)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0AE8B1DB-7A41-42CD-9CE6-7E0F6A2EB47F}: [NameServer] 151.236.10.135,78.138.97.33,192.168.1.1
Tcpip\..\Interfaces\{0AE8B1DB-7A41-42CD-9CE6-7E0F6A2EB47F}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{27832025-A296-4A92-962C-30828A6CC0ED}: [NameServer] 151.236.10.135,78.138.97.33
Tcpip\..\Interfaces\{6B6B6657-24FA-428A-97E3-EAC93FE593A1}: [NameServer] 151.236.10.135,78.138.97.33,
Tcpip\..\Interfaces\{D819A64D-264A-4803-B0C1-A44C48DF1A65}: [NameServer] 151.236.10.135,78.138.97.33
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2887156172-1520988294-1417751805-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2887156172-1520988294-1417751805-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-21] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
DPF: HKLM-x32 {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxps://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1439752415659
FireFox:
========
FF ProfilePath: C:\Users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-19] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-19] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2887156172-1520988294-1417751805-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Chuck\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)
FF Extension: Adblock Plus - C:\Users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-08-19]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-09-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-08-06] (AOMEI Tech Co., Ltd.)
R2 Everything; C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] () [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [365440 2012-03-14] (Hewlett-Packard Company)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [3446224 2015-02-23] (Paramount Software UK Ltd)
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175752 2015-06-23] (Sandboxie Holdings, LLC)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [327680 2012-10-24] (IDT, Inc.) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-09-25] (Atheros) [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2015-02-26] () [File not signed]
R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2015-02-26] () [File not signed]
R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2015-02-26] () [File not signed]
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2013-09-25] (Qualcomm Atheros)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [169480 2015-02-23] (Windows (R) Win 7 DDK provider)
S3 PSVolAcc; C:\Windows\System32\Drivers\PSVolAcc.sys [12760 2014-07-21] (Paramount Software UK Ltd)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [190088 2015-06-23] (Sandboxie Holdings, LLC)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2614520 2011-04-03] (Sunplus Technology)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [76480 2015-05-21] (VMware, Inc.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
R3 WinRing0_1_2_0; \??\C:\Users\Chuck\AppData\Local\Temp\tmp124.tmp [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-07 23:49 - 2015-09-07 23:49 - 00011922 _____ C:\Users\Chuck\Desktop\FRST.txt
2015-09-07 23:48 - 2015-09-07 23:49 - 00000000 ____D C:\FRST
2015-09-07 23:46 - 2015-09-07 23:46 - 00112640 _____ (forum.viry.cz) C:\Users\Chuck\Desktop\FRSTLauncher.exe
2015-09-07 23:44 - 2015-09-07 23:44 - 02190336 _____ (Farbar) C:\Users\Chuck\Desktop\FRST64.exe
2015-09-07 14:08 - 2015-09-07 14:08 - 00000000 ____D C:\Users\Karol\AppData\Local\CrashDumps
2015-09-06 20:54 - 2015-09-06 21:46 - 00000000 ____D C:\Users\Karol\Desktop\not installed updates
2015-09-06 16:21 - 2015-09-06 17:50 - 00000000 ____D C:\Users\Karol\Desktop\WHDownloader_2.1
2015-09-06 14:12 - 2015-09-06 14:12 - 00000000 ____D C:\Users\Karol\Documents\Vlastní šablony Office
2015-09-05 22:58 - 2015-09-05 23:01 - 00000000 ____D C:\Users\Karol\Desktop\bootable macrium
2015-09-05 14:25 - 2015-09-05 14:35 - 1003094138 _____ C:\Users\Karol\Desktop\ubuntu1404t.zip
2015-09-05 13:30 - 2015-09-06 10:24 - 00000000 ____D C:\Users\Karol\AppData\Local\VMware
2015-09-05 12:56 - 2015-09-06 10:24 - 00000000 ____D C:\Users\Karol\AppData\Roaming\VMware
2015-09-05 11:26 - 2015-09-05 11:26 - 00000000 ____D C:\Users\Karol\Desktop\English_the_American_Way
2015-09-04 23:19 - 2015-09-04 23:19 - 00024637 _____ C:\ComboFix.txt
2015-09-03 23:04 - 2015-09-04 23:20 - 00000000 ____D C:\Qoobox
2015-09-03 23:04 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2015-09-03 23:04 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2015-09-03 23:04 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2015-09-03 23:03 - 2015-09-04 23:13 - 00000000 ____D C:\Windows\erdnt
2015-09-03 22:58 - 2015-09-03 22:58 - 05635231 ____R (Swearware) C:\Users\Chuck\Desktop\ComboFix.exe
2015-09-03 14:12 - 2015-09-03 14:12 - 00000000 ____D C:\Users\Karol\AppData\Local\ashampoo
2015-09-03 14:12 - 2015-09-03 14:12 - 00000000 ____D C:\ProgramData\ashampoo
2015-09-03 13:01 - 2015-09-03 13:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2015-09-03 13:01 - 2015-09-03 13:01 - 00000000 ____D C:\Program Files\7-Zip
2015-09-03 11:34 - 2015-09-03 11:34 - 00001946 _____ C:\Users\Karol\Desktop\opera.exe – zástupce.lnk
2015-09-01 20:52 - 2015-09-01 20:53 - 00000000 ____D C:\Users\Karol\AppData\Roaming\IDoser
2015-09-01 20:52 - 2015-09-01 20:52 - 00000000 ____D C:\Users\Karol\Documents\Dose Files
2015-09-01 20:52 - 2015-09-01 20:52 - 00000000 ____D C:\Users\Chuck\AppData\Roaming\IDoser
2015-09-01 20:51 - 2015-09-01 20:51 - 00000000 ____D C:\Users\Chuck\Documents\Dose Files
2015-09-01 20:51 - 2015-09-01 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I-Doser Premium
2015-09-01 20:51 - 2015-09-01 20:51 - 00000000 ____D C:\Program Files (x86)\I-Doser Premium
2015-09-01 20:33 - 2015-09-01 20:33 - 00000950 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2015-09-01 20:33 - 2015-09-01 20:33 - 00000936 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealtimeSync.lnk
2015-09-01 20:33 - 2015-09-01 20:33 - 00000000 ____D C:\Users\Karol\AppData\Roaming\FreeFileSync
2015-09-01 20:33 - 2015-09-01 20:33 - 00000000 ____D C:\Program Files\FreeFileSync
2015-09-01 15:23 - 2015-09-06 20:45 - 00000000 ____D C:\Users\Karol\Desktop\TO DO LIST
2015-08-31 23:40 - 2015-08-31 23:40 - 03097619 _____ (Media Freeware) C:\Users\Karol\Desktop\multiskypelauncher_setup.exe
2015-08-31 21:15 - 2015-08-31 21:15 - 00000000 ____D C:\Users\Karol\AppData\Roaming\MyPhoneExplorer
2015-08-31 21:15 - 2015-08-31 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2015-08-31 21:15 - 2015-08-31 21:15 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2015-08-31 21:12 - 2015-09-01 14:35 - 00000000 ____D C:\Users\Karol\Documents\Anki
2015-08-31 21:11 - 2015-08-31 21:12 - 00000000 ____D C:\Program Files (x86)\Anki
2015-08-31 21:11 - 2015-08-31 21:11 - 00000758 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anki.lnk
2015-08-31 14:05 - 2015-09-02 15:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-31 13:17 - 2015-08-31 13:39 - 00000000 ____D C:\Users\Karol\AppData\Roaming\StartMenuX
2015-08-31 13:17 - 2015-08-31 13:17 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Macromedia
2015-08-31 13:17 - 2015-08-31 13:17 - 00000000 ____D C:\Users\Karol\AppData\Local\Macromedia
2015-08-31 10:29 - 2015-09-07 21:57 - 00000000 ____D C:\Users\Karol\AppData\Roaming\vlc
2015-08-30 22:50 - 2015-09-05 22:52 - 00000000 ____D C:\Users\Chuck\AppData\Local\CrashDumps
2015-08-30 20:53 - 2015-08-30 20:53 - 00000000 ____D C:\Users\Karol\AppData\Local\MenuApp
2015-08-30 12:28 - 2015-08-30 12:28 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Unity
2015-08-30 12:26 - 2015-08-30 12:26 - 00000000 ____D C:\Users\Karol\AppData\Local\Unity
2015-08-30 12:24 - 2015-08-30 12:24 - 00000000 ____D C:\Users\Karol\Tracing
2015-08-30 12:22 - 2015-09-07 13:39 - 00000000 ____D C:\Users\Karol\AppData\Local\Skype
2015-08-30 12:22 - 2015-09-05 10:55 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Skype
2015-08-29 23:06 - 2015-08-29 23:06 - 00002007 _____ C:\Users\Karol\Desktop\FirefoxPortable – zástupce.lnk
2015-08-29 23:00 - 2015-08-29 23:00 - 00000000 ____D C:\Users\Karol\AppData\Local\GWX
2015-08-29 19:06 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-29 19:06 - 2015-08-11 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-29 19:06 - 2015-08-11 02:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-29 19:06 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-29 19:04 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-08-29 19:04 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-08-29 19:04 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-08-29 19:04 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-08-29 18:36 - 2015-08-29 18:36 - 00000000 ____D C:\rsit
2015-08-29 18:36 - 2015-08-29 18:36 - 00000000 ____D C:\Program Files\trend micro
2015-08-29 17:46 - 2015-08-29 17:46 - 00000000 ____D C:\Users\Chuck\AppData\Local\GWX
2015-08-29 17:21 - 2015-08-29 17:25 - 00000000 ___SD C:\Windows\system32\GWX
2015-08-29 17:21 - 2015-08-29 17:21 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-08-29 17:21 - 2015-08-29 17:21 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-29 17:21 - 2015-08-29 17:21 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-29 17:06 - 2015-01-09 01:44 - 00419936 _____ C:\Windows\SysWOW64\locale.nls
2015-08-29 17:06 - 2015-01-09 01:43 - 00419936 _____ C:\Windows\system32\locale.nls
2015-08-29 16:45 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-29 16:45 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-29 16:45 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-29 16:45 - 2015-06-03 22:16 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-08-29 16:45 - 2015-06-03 22:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-08-29 16:45 - 2015-05-25 20:19 - 01255424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-08-29 16:45 - 2015-05-25 20:19 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-08-29 16:45 - 2015-05-25 20:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-08-29 16:45 - 2015-05-25 20:18 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-08-29 16:45 - 2015-05-25 20:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-08-29 16:45 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-08-29 16:45 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-08-29 16:45 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-08-29 16:45 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-08-29 16:45 - 2015-05-25 19:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-08-29 16:45 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-08-29 16:45 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-08-29 16:45 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-08-29 16:45 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-08-29 16:45 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-08-29 16:45 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-08-29 16:45 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-08-29 16:45 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-08-29 16:45 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-08-29 16:45 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-08-29 16:45 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-08-29 16:45 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-08-29 16:45 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-08-29 16:45 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-08-29 16:45 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-08-29 16:45 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-08-29 16:45 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-08-29 16:45 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-08-29 16:45 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-08-29 16:45 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-08-29 16:45 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-08-29 16:45 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-08-29 16:45 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2015-08-29 16:45 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-08-29 16:45 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-08-29 16:45 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-08-29 16:45 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-08-29 16:44 - 2015-04-11 05:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-08-29 16:44 - 2015-01-29 05:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-08-29 16:44 - 2015-01-29 05:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-08-29 16:44 - 2015-01-09 05:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-08-29 16:44 - 2015-01-09 05:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-08-29 16:44 - 2015-01-09 05:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-08-29 16:44 - 2015-01-09 04:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-08-29 16:44 - 2014-11-26 05:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-08-29 16:44 - 2014-11-26 05:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-08-29 16:44 - 2014-11-11 03:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-08-29 16:44 - 2014-10-30 04:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-08-29 16:44 - 2014-10-30 03:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-08-29 16:44 - 2014-10-03 04:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-08-29 16:44 - 2014-10-03 04:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-08-29 16:44 - 2014-10-03 04:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-08-29 16:44 - 2014-10-03 04:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-08-29 16:44 - 2014-10-03 04:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-08-29 16:44 - 2014-10-03 03:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-08-29 16:44 - 2014-10-03 03:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-08-29 16:44 - 2014-10-03 03:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-08-29 16:44 - 2014-10-03 03:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-08-29 16:44 - 2014-10-03 03:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-08-29 16:44 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-08-29 16:44 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-08-29 16:44 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-08-29 16:44 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-08-29 16:44 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-08-29 16:44 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-08-29 16:44 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-08-29 16:44 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-08-29 16:44 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-08-29 16:44 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-08-29 16:44 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-08-29 16:44 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-08-29 16:44 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-08-29 16:44 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-08-29 16:44 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-08-29 16:44 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-08-29 16:44 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-08-29 16:44 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-08-29 16:44 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-08-29 16:44 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-08-29 16:44 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-08-29 16:44 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-08-29 16:44 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2015-08-29 16:44 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-08-29 16:44 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-08-29 16:44 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-08-29 16:44 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-08-29 16:44 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-08-29 16:44 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-08-29 16:44 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2015-08-29 16:44 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2015-08-29 16:44 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2015-08-29 16:44 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2015-08-29 16:44 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2015-08-29 16:44 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-08-29 16:44 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-08-29 16:44 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-08-29 16:44 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2015-08-29 16:44 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-08-29 16:44 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-08-29 16:44 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2015-08-29 16:44 - 2011-04-28 05:54 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-08-29 16:39 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-08-29 16:38 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-08-29 16:36 - 2015-03-04 06:41 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-08-29 16:36 - 2015-03-04 06:41 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-08-29 16:36 - 2015-03-04 06:41 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-08-29 16:36 - 2015-03-04 06:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-08-29 16:36 - 2015-03-04 06:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-08-29 16:36 - 2015-03-04 06:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-08-29 16:36 - 2015-03-04 06:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-08-29 16:36 - 2014-11-08 05:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-08-29 16:36 - 2014-11-08 04:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-08-29 16:36 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2015-08-29 16:36 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2015-08-29 16:36 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2015-08-29 16:36 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2015-08-29 16:36 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2015-08-29 16:36 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-08-29 16:35 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2015-08-29 16:35 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2015-08-29 16:24 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-08-29 16:24 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-08-29 15:54 - 2015-08-29 15:54 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-08-29 15:54 - 2015-08-29 15:54 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-08-29 10:35 - 2015-08-29 16:08 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-08-29 10:34 - 2015-08-29 10:34 - 00000000 ____D C:\Windows\PCHEALTH
2015-08-29 10:34 - 2015-08-29 10:34 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-08-29 10:32 - 2015-08-29 19:05 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-29 10:32 - 2015-08-29 10:32 - 00000000 ____D C:\Users\Chuck\AppData\Local\Microsoft Help
2015-08-29 10:32 - 2015-08-29 10:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-08-29 10:31 - 2015-08-29 10:31 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-08-29 10:30 - 2015-08-29 10:34 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-08-29 10:30 - 2015-08-29 10:30 - 00000000 ____D C:\Program Files\Microsoft Office
2015-08-29 10:28 - 2015-08-29 10:28 - 00000000 ___RD C:\MSOCache
2015-08-28 12:20 - 2015-08-28 12:20 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2015-08-27 16:10 - 2015-08-27 16:10 - 00000000 ____D C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
2015-08-27 16:10 - 2015-08-27 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2015-08-27 16:09 - 2015-08-27 16:10 - 00000000 ____D C:\Program Files (x86)\MagicDisc
2015-08-27 16:09 - 2009-02-24 18:35 - 00255552 _____ (MagicISO, Inc.) C:\Windows\SysWOW64\Drivers\mcdbus.sys
2015-08-27 16:09 - 2009-02-24 18:35 - 00255552 _____ (MagicISO, Inc.) C:\Windows\system32\Drivers\mcdbus.sys
2015-08-27 14:51 - 2015-08-28 10:02 - 00000000 ____D C:\Users\Chuck\AppData\Roaming\DMCache
2015-08-27 13:54 - 2015-08-27 13:54 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Adobe
2015-08-27 00:33 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-27 00:33 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-08-27 00:33 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-08-27 00:33 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-27 00:33 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-27 00:33 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-27 00:33 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-27 00:33 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-27 00:33 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-27 00:33 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-08-27 00:33 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-08-27 00:33 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-27 00:33 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-27 00:33 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-08-27 00:33 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-27 00:33 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-27 00:33 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-08-27 00:33 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-27 00:33 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-08-27 00:33 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-27 00:33 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-27 00:33 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-27 00:33 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-27 00:33 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-27 00:33 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-27 00:33 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-08-27 00:32 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-27 00:32 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-27 00:32 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-27 00:32 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-27 00:32 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-27 00:32 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-27 00:32 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-27 00:32 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-27 00:32 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-27 00:32 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-27 00:32 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-27 00:32 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-27 00:32 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-27 00:32 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-27 00:32 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-27 00:32 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-27 00:32 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-08-27 00:32 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-27 00:32 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-27 00:32 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-27 00:32 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-08-27 00:32 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-27 00:32 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-27 00:32 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-08-27 00:32 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-27 00:32 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-27 00:32 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-27 00:32 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-08-27 00:32 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-27 00:32 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-26 23:37 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-08-26 21:24 - 2015-02-03 05:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-08-26 21:24 - 2015-02-03 05:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-08-26 21:24 - 2015-02-03 05:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-08-26 21:24 - 2015-02-03 05:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-08-26 21:24 - 2015-02-03 05:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-08-26 21:24 - 2015-02-03 05:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-08-26 21:24 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-08-26 21:24 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-08-26 21:24 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-08-26 21:24 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-08-26 21:24 - 2015-02-03 04:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-08-26 21:24 - 2014-11-01 00:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-08-26 21:24 - 2014-06-28 02:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-08-26 21:24 - 2014-06-28 02:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-08-26 21:23 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-26 21:23 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-08-26 21:23 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-08-26 21:23 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-26 21:23 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-08-26 21:23 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-08-26 21:23 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-08-26 21:23 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-26 21:23 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-08-26 21:23 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-08-26 21:23 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-08-26 21:23 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-26 21:23 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-26 21:23 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-26 21:23 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-26 21:23 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-26 21:23 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-26 21:23 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-08-26 21:23 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-08-26 21:23 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-08-26 21:23 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-26 21:23 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-26 21:23 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-26 21:23 - 2015-04-18 05:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-08-26 21:23 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-08-26 21:22 - 2015-07-10 19:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-26 21:22 - 2015-07-10 19:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-08-26 21:22 - 2015-07-10 19:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-26 21:22 - 2015-07-10 19:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-26 21:22 - 2015-07-10 19:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-26 21:22 - 2015-07-10 19:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-26 21:22 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-26 21:22 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-26 21:22 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-26 21:22 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-26 21:22 - 2015-04-13 05:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-08-26 21:22 - 2015-02-03 05:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-08-26 21:22 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-08-26 21:22 - 2014-12-19 03:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-08-26 21:22 - 2014-10-14 04:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-08-26 21:22 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-08-26 21:22 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-08-26 21:22 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-08-26 21:22 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-08-26 21:22 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-08-26 21:22 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-08-26 21:22 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2015-08-26 21:22 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2015-08-26 21:22 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-08-26 21:22 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-08-26 21:21 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-26 21:21 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-26 21:21 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-08-26 21:21 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-08-26 21:21 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-08-26 21:21 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-08-26 21:21 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-08-26 21:21 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-08-26 21:21 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-08-26 21:21 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-08-26 21:21 - 2015-06-03 22:17 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-08-26 21:21 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-08-26 21:21 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-08-26 21:21 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-08-26 21:21 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-08-26 21:21 - 2014-12-19 05:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-08-26 21:21 - 2014-12-11 19:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-08-26 21:21 - 2014-12-06 06:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-08-26 21:21 - 2014-12-06 05:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-08-26 21:21 - 2014-12-06 05:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-08-26 21:21 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-08-26 21:21 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-08-26 21:21 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-08-26 21:21 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-08-26 21:21 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-08-26 21:21 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-08-26 21:21 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-08-26 21:21 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-08-26 21:21 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-08-26 21:21 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-08-26 21:21 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-08-26 21:21 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-08-26 21:21 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-08-26 21:21 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-08-26 21:21 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-08-26 21:21 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-08-26 21:21 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-08-26 21:21 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-08-26 21:21 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-08-26 21:21 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-08-26 21:21 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-08-26 21:21 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-08-26 21:21 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:07-09-2015
Ran by Chuck (administrator) on CHUCK-PC (07-09-2015 23:49:17)
Running from C:\Users\Chuck\Desktop
Loaded Profiles: Chuck (Available Profiles: Chuck & Karol)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
() C:\Program Files\Everything\Everything.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Paramount Software UK Ltd) C:\Program Files\Macrium\Reflect\ReflectService.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files\Everything\Everything.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(PortableApps.com) D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\FirefoxPortable.exe
(Mozilla Corporation) D:\Karol\Archive\1. Extensions\Software\Portable\x32\Web Browsers\FirefoxPortable\App\Firefox\firefox.exe
(forum.viry.cz) C:\Users\Chuck\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NUSB3MON] => c:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-09-04] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2012-10-24] (IDT, Inc.)
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] ()
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [319360 2012-03-14] (Hewlett-Packard Company)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-26] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-2887156172-1520988294-1417751805-1000\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [787592 2015-06-23] (Sandboxie Holdings, LLC)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0AE8B1DB-7A41-42CD-9CE6-7E0F6A2EB47F}: [NameServer] 151.236.10.135,78.138.97.33,192.168.1.1
Tcpip\..\Interfaces\{0AE8B1DB-7A41-42CD-9CE6-7E0F6A2EB47F}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{27832025-A296-4A92-962C-30828A6CC0ED}: [NameServer] 151.236.10.135,78.138.97.33
Tcpip\..\Interfaces\{6B6B6657-24FA-428A-97E3-EAC93FE593A1}: [NameServer] 151.236.10.135,78.138.97.33,
Tcpip\..\Interfaces\{D819A64D-264A-4803-B0C1-A44C48DF1A65}: [NameServer] 151.236.10.135,78.138.97.33
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2887156172-1520988294-1417751805-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2887156172-1520988294-1417751805-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-21] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
DPF: HKLM-x32 {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} hxxps://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1439752415659
FireFox:
========
FF ProfilePath: C:\Users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-19] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-19] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2887156172-1520988294-1417751805-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Chuck\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)
FF Extension: Adblock Plus - C:\Users\Chuck\AppData\Roaming\Mozilla\Firefox\Profiles\ypbhsodm.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-08-19]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-09-25] (Windows (R) Win 7 DDK provider) [File not signed]
R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-08-06] (AOMEI Tech Co., Ltd.)
R2 Everything; C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] () [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [365440 2012-03-14] (Hewlett-Packard Company)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [3446224 2015-02-23] (Paramount Software UK Ltd)
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175752 2015-06-23] (Sandboxie Holdings, LLC)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [327680 2012-10-24] (IDT, Inc.) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-09-25] (Atheros) [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2015-02-26] () [File not signed]
R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2015-02-26] () [File not signed]
R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2015-02-26] () [File not signed]
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2013-09-25] (Qualcomm Atheros)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [169480 2015-02-23] (Windows (R) Win 7 DDK provider)
S3 PSVolAcc; C:\Windows\System32\Drivers\PSVolAcc.sys [12760 2014-07-21] (Paramount Software UK Ltd)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [190088 2015-06-23] (Sandboxie Holdings, LLC)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2614520 2011-04-03] (Sunplus Technology)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [76480 2015-05-21] (VMware, Inc.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
R3 WinRing0_1_2_0; \??\C:\Users\Chuck\AppData\Local\Temp\tmp124.tmp [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-07 23:49 - 2015-09-07 23:49 - 00011922 _____ C:\Users\Chuck\Desktop\FRST.txt
2015-09-07 23:48 - 2015-09-07 23:49 - 00000000 ____D C:\FRST
2015-09-07 23:46 - 2015-09-07 23:46 - 00112640 _____ (forum.viry.cz) C:\Users\Chuck\Desktop\FRSTLauncher.exe
2015-09-07 23:44 - 2015-09-07 23:44 - 02190336 _____ (Farbar) C:\Users\Chuck\Desktop\FRST64.exe
2015-09-07 14:08 - 2015-09-07 14:08 - 00000000 ____D C:\Users\Karol\AppData\Local\CrashDumps
2015-09-06 20:54 - 2015-09-06 21:46 - 00000000 ____D C:\Users\Karol\Desktop\not installed updates
2015-09-06 16:21 - 2015-09-06 17:50 - 00000000 ____D C:\Users\Karol\Desktop\WHDownloader_2.1
2015-09-06 14:12 - 2015-09-06 14:12 - 00000000 ____D C:\Users\Karol\Documents\Vlastní šablony Office
2015-09-05 22:58 - 2015-09-05 23:01 - 00000000 ____D C:\Users\Karol\Desktop\bootable macrium
2015-09-05 14:25 - 2015-09-05 14:35 - 1003094138 _____ C:\Users\Karol\Desktop\ubuntu1404t.zip
2015-09-05 13:30 - 2015-09-06 10:24 - 00000000 ____D C:\Users\Karol\AppData\Local\VMware
2015-09-05 12:56 - 2015-09-06 10:24 - 00000000 ____D C:\Users\Karol\AppData\Roaming\VMware
2015-09-05 11:26 - 2015-09-05 11:26 - 00000000 ____D C:\Users\Karol\Desktop\English_the_American_Way
2015-09-04 23:19 - 2015-09-04 23:19 - 00024637 _____ C:\ComboFix.txt
2015-09-03 23:04 - 2015-09-04 23:20 - 00000000 ____D C:\Qoobox
2015-09-03 23:04 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2015-09-03 23:04 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2015-09-03 23:04 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2015-09-03 23:04 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2015-09-03 23:03 - 2015-09-04 23:13 - 00000000 ____D C:\Windows\erdnt
2015-09-03 22:58 - 2015-09-03 22:58 - 05635231 ____R (Swearware) C:\Users\Chuck\Desktop\ComboFix.exe
2015-09-03 14:12 - 2015-09-03 14:12 - 00000000 ____D C:\Users\Karol\AppData\Local\ashampoo
2015-09-03 14:12 - 2015-09-03 14:12 - 00000000 ____D C:\ProgramData\ashampoo
2015-09-03 13:01 - 2015-09-03 13:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2015-09-03 13:01 - 2015-09-03 13:01 - 00000000 ____D C:\Program Files\7-Zip
2015-09-03 11:34 - 2015-09-03 11:34 - 00001946 _____ C:\Users\Karol\Desktop\opera.exe – zástupce.lnk
2015-09-01 20:52 - 2015-09-01 20:53 - 00000000 ____D C:\Users\Karol\AppData\Roaming\IDoser
2015-09-01 20:52 - 2015-09-01 20:52 - 00000000 ____D C:\Users\Karol\Documents\Dose Files
2015-09-01 20:52 - 2015-09-01 20:52 - 00000000 ____D C:\Users\Chuck\AppData\Roaming\IDoser
2015-09-01 20:51 - 2015-09-01 20:51 - 00000000 ____D C:\Users\Chuck\Documents\Dose Files
2015-09-01 20:51 - 2015-09-01 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I-Doser Premium
2015-09-01 20:51 - 2015-09-01 20:51 - 00000000 ____D C:\Program Files (x86)\I-Doser Premium
2015-09-01 20:33 - 2015-09-01 20:33 - 00000950 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2015-09-01 20:33 - 2015-09-01 20:33 - 00000936 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealtimeSync.lnk
2015-09-01 20:33 - 2015-09-01 20:33 - 00000000 ____D C:\Users\Karol\AppData\Roaming\FreeFileSync
2015-09-01 20:33 - 2015-09-01 20:33 - 00000000 ____D C:\Program Files\FreeFileSync
2015-09-01 15:23 - 2015-09-06 20:45 - 00000000 ____D C:\Users\Karol\Desktop\TO DO LIST
2015-08-31 23:40 - 2015-08-31 23:40 - 03097619 _____ (Media Freeware) C:\Users\Karol\Desktop\multiskypelauncher_setup.exe
2015-08-31 21:15 - 2015-08-31 21:15 - 00000000 ____D C:\Users\Karol\AppData\Roaming\MyPhoneExplorer
2015-08-31 21:15 - 2015-08-31 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2015-08-31 21:15 - 2015-08-31 21:15 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2015-08-31 21:12 - 2015-09-01 14:35 - 00000000 ____D C:\Users\Karol\Documents\Anki
2015-08-31 21:11 - 2015-08-31 21:12 - 00000000 ____D C:\Program Files (x86)\Anki
2015-08-31 21:11 - 2015-08-31 21:11 - 00000758 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anki.lnk
2015-08-31 14:05 - 2015-09-02 15:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-31 13:17 - 2015-08-31 13:39 - 00000000 ____D C:\Users\Karol\AppData\Roaming\StartMenuX
2015-08-31 13:17 - 2015-08-31 13:17 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Macromedia
2015-08-31 13:17 - 2015-08-31 13:17 - 00000000 ____D C:\Users\Karol\AppData\Local\Macromedia
2015-08-31 10:29 - 2015-09-07 21:57 - 00000000 ____D C:\Users\Karol\AppData\Roaming\vlc
2015-08-30 22:50 - 2015-09-05 22:52 - 00000000 ____D C:\Users\Chuck\AppData\Local\CrashDumps
2015-08-30 20:53 - 2015-08-30 20:53 - 00000000 ____D C:\Users\Karol\AppData\Local\MenuApp
2015-08-30 12:28 - 2015-08-30 12:28 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Unity
2015-08-30 12:26 - 2015-08-30 12:26 - 00000000 ____D C:\Users\Karol\AppData\Local\Unity
2015-08-30 12:24 - 2015-08-30 12:24 - 00000000 ____D C:\Users\Karol\Tracing
2015-08-30 12:22 - 2015-09-07 13:39 - 00000000 ____D C:\Users\Karol\AppData\Local\Skype
2015-08-30 12:22 - 2015-09-05 10:55 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Skype
2015-08-29 23:06 - 2015-08-29 23:06 - 00002007 _____ C:\Users\Karol\Desktop\FirefoxPortable – zástupce.lnk
2015-08-29 23:00 - 2015-08-29 23:00 - 00000000 ____D C:\Users\Karol\AppData\Local\GWX
2015-08-29 19:06 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-29 19:06 - 2015-08-11 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-29 19:06 - 2015-08-11 02:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-29 19:06 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-29 19:04 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-08-29 19:04 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-08-29 19:04 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-08-29 19:04 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-08-29 18:36 - 2015-08-29 18:36 - 00000000 ____D C:\rsit
2015-08-29 18:36 - 2015-08-29 18:36 - 00000000 ____D C:\Program Files\trend micro
2015-08-29 17:46 - 2015-08-29 17:46 - 00000000 ____D C:\Users\Chuck\AppData\Local\GWX
2015-08-29 17:21 - 2015-08-29 17:25 - 00000000 ___SD C:\Windows\system32\GWX
2015-08-29 17:21 - 2015-08-29 17:21 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-08-29 17:21 - 2015-08-29 17:21 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-29 17:21 - 2015-08-29 17:21 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-29 17:06 - 2015-01-09 01:44 - 00419936 _____ C:\Windows\SysWOW64\locale.nls
2015-08-29 17:06 - 2015-01-09 01:43 - 00419936 _____ C:\Windows\system32\locale.nls
2015-08-29 16:45 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-29 16:45 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-29 16:45 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-29 16:45 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-29 16:45 - 2015-06-03 22:16 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-08-29 16:45 - 2015-06-03 22:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-08-29 16:45 - 2015-05-25 20:19 - 01255424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-08-29 16:45 - 2015-05-25 20:19 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-08-29 16:45 - 2015-05-25 20:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-08-29 16:45 - 2015-05-25 20:18 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-08-29 16:45 - 2015-05-25 20:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-08-29 16:45 - 2015-05-25 20:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-08-29 16:45 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-08-29 16:45 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-08-29 16:45 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-08-29 16:45 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-08-29 16:45 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-08-29 16:45 - 2015-05-25 19:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-08-29 16:45 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-08-29 16:45 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-08-29 16:45 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-08-29 16:45 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-08-29 16:45 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-08-29 16:45 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-08-29 16:45 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-08-29 16:45 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-08-29 16:45 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-08-29 16:45 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-08-29 16:45 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-08-29 16:45 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-08-29 16:45 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-08-29 16:45 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-08-29 16:45 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-08-29 16:45 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-08-29 16:45 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-08-29 16:45 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-08-29 16:45 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-08-29 16:45 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-08-29 16:45 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-08-29 16:45 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-08-29 16:45 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-08-29 16:45 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-08-29 16:45 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-08-29 16:45 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-08-29 16:45 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2015-08-29 16:45 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2015-08-29 16:45 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-08-29 16:45 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-08-29 16:45 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-08-29 16:45 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-08-29 16:44 - 2015-04-11 05:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-08-29 16:44 - 2015-01-29 05:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-08-29 16:44 - 2015-01-29 05:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-08-29 16:44 - 2015-01-09 05:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-08-29 16:44 - 2015-01-09 05:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-08-29 16:44 - 2015-01-09 05:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-08-29 16:44 - 2015-01-09 04:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-08-29 16:44 - 2014-11-26 05:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-08-29 16:44 - 2014-11-26 05:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-08-29 16:44 - 2014-11-11 03:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-08-29 16:44 - 2014-10-30 04:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-08-29 16:44 - 2014-10-30 03:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-08-29 16:44 - 2014-10-03 04:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-08-29 16:44 - 2014-10-03 04:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-08-29 16:44 - 2014-10-03 04:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-08-29 16:44 - 2014-10-03 04:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-08-29 16:44 - 2014-10-03 04:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-08-29 16:44 - 2014-10-03 03:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-08-29 16:44 - 2014-10-03 03:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-08-29 16:44 - 2014-10-03 03:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-08-29 16:44 - 2014-10-03 03:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-08-29 16:44 - 2014-10-03 03:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-08-29 16:44 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-08-29 16:44 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-08-29 16:44 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-08-29 16:44 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-08-29 16:44 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-08-29 16:44 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-08-29 16:44 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-08-29 16:44 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-08-29 16:44 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-08-29 16:44 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-08-29 16:44 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-08-29 16:44 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-08-29 16:44 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-08-29 16:44 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-08-29 16:44 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-08-29 16:44 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-08-29 16:44 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-08-29 16:44 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-08-29 16:44 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-08-29 16:44 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-08-29 16:44 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-08-29 16:44 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-08-29 16:44 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-08-29 16:44 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-08-29 16:44 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2015-08-29 16:44 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-08-29 16:44 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-08-29 16:44 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-08-29 16:44 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-08-29 16:44 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-08-29 16:44 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-08-29 16:44 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2015-08-29 16:44 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2015-08-29 16:44 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2015-08-29 16:44 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2015-08-29 16:44 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-08-29 16:44 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2015-08-29 16:44 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-08-29 16:44 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-08-29 16:44 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-08-29 16:44 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2015-08-29 16:44 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2015-08-29 16:44 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-08-29 16:44 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-08-29 16:44 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2015-08-29 16:44 - 2011-04-28 05:54 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-08-29 16:39 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-08-29 16:38 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-08-29 16:36 - 2015-03-04 06:41 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-08-29 16:36 - 2015-03-04 06:41 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-08-29 16:36 - 2015-03-04 06:41 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-08-29 16:36 - 2015-03-04 06:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-08-29 16:36 - 2015-03-04 06:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-08-29 16:36 - 2015-03-04 06:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-08-29 16:36 - 2015-03-04 06:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-08-29 16:36 - 2014-11-08 05:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-08-29 16:36 - 2014-11-08 04:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-08-29 16:36 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2015-08-29 16:36 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2015-08-29 16:36 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2015-08-29 16:36 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2015-08-29 16:36 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2015-08-29 16:36 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2015-08-29 16:36 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-08-29 16:35 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2015-08-29 16:35 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2015-08-29 16:24 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-08-29 16:24 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-08-29 15:54 - 2015-08-29 15:54 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-08-29 15:54 - 2015-08-29 15:54 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-08-29 10:35 - 2015-08-29 16:08 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-08-29 10:34 - 2015-08-29 10:34 - 00000000 ____D C:\Windows\PCHEALTH
2015-08-29 10:34 - 2015-08-29 10:34 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-08-29 10:32 - 2015-08-29 19:05 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-29 10:32 - 2015-08-29 10:32 - 00000000 ____D C:\Users\Chuck\AppData\Local\Microsoft Help
2015-08-29 10:32 - 2015-08-29 10:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-08-29 10:31 - 2015-08-29 10:31 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-08-29 10:30 - 2015-08-29 10:34 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-08-29 10:30 - 2015-08-29 10:30 - 00000000 ____D C:\Program Files\Microsoft Office
2015-08-29 10:28 - 2015-08-29 10:28 - 00000000 ___RD C:\MSOCache
2015-08-28 12:20 - 2015-08-28 12:20 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2015-08-27 16:10 - 2015-08-27 16:10 - 00000000 ____D C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
2015-08-27 16:10 - 2015-08-27 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2015-08-27 16:09 - 2015-08-27 16:10 - 00000000 ____D C:\Program Files (x86)\MagicDisc
2015-08-27 16:09 - 2009-02-24 18:35 - 00255552 _____ (MagicISO, Inc.) C:\Windows\SysWOW64\Drivers\mcdbus.sys
2015-08-27 16:09 - 2009-02-24 18:35 - 00255552 _____ (MagicISO, Inc.) C:\Windows\system32\Drivers\mcdbus.sys
2015-08-27 14:51 - 2015-08-28 10:02 - 00000000 ____D C:\Users\Chuck\AppData\Roaming\DMCache
2015-08-27 13:54 - 2015-08-27 13:54 - 00000000 ____D C:\Users\Karol\AppData\Roaming\Adobe
2015-08-27 00:33 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-27 00:33 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-08-27 00:33 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-08-27 00:33 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-27 00:33 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-27 00:33 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-27 00:33 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-27 00:33 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-27 00:33 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-27 00:33 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-08-27 00:33 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-08-27 00:33 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-27 00:33 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-27 00:33 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-08-27 00:33 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-27 00:33 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-27 00:33 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-08-27 00:33 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-27 00:33 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-08-27 00:33 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-27 00:33 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-27 00:33 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-27 00:33 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-27 00:33 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-27 00:33 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-27 00:33 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-08-27 00:32 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-27 00:32 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-27 00:32 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-27 00:32 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-27 00:32 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-27 00:32 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-27 00:32 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-27 00:32 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-27 00:32 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-27 00:32 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-27 00:32 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-08-27 00:32 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-27 00:32 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-27 00:32 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-27 00:32 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-27 00:32 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-27 00:32 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-08-27 00:32 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-27 00:32 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-27 00:32 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-27 00:32 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-08-27 00:32 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-27 00:32 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-27 00:32 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-08-27 00:32 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-27 00:32 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-27 00:32 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-27 00:32 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-08-27 00:32 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-27 00:32 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-26 23:37 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-08-26 21:24 - 2015-02-03 05:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-08-26 21:24 - 2015-02-03 05:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-08-26 21:24 - 2015-02-03 05:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-08-26 21:24 - 2015-02-03 05:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-08-26 21:24 - 2015-02-03 05:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-08-26 21:24 - 2015-02-03 05:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-08-26 21:24 - 2015-02-03 05:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-08-26 21:24 - 2015-02-03 05:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-08-26 21:24 - 2015-02-03 05:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-08-26 21:24 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-08-26 21:24 - 2015-02-03 05:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-08-26 21:24 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-08-26 21:24 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-08-26 21:24 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-08-26 21:24 - 2015-02-03 04:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-08-26 21:24 - 2014-11-01 00:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-08-26 21:24 - 2014-06-28 02:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-08-26 21:24 - 2014-06-28 02:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-08-26 21:23 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-26 21:23 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-08-26 21:23 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-08-26 21:23 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-26 21:23 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-08-26 21:23 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-08-26 21:23 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-08-26 21:23 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-08-26 21:23 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-08-26 21:23 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-26 21:23 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-08-26 21:23 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-08-26 21:23 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-08-26 21:23 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-26 21:23 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-26 21:23 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-26 21:23 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-26 21:23 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-26 21:23 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-26 21:23 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-26 21:23 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-26 21:23 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-26 21:23 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-08-26 21:23 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-08-26 21:23 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-08-26 21:23 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-26 21:23 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-26 21:23 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-26 21:23 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-26 21:23 - 2015-04-18 05:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-08-26 21:23 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-08-26 21:22 - 2015-07-10 19:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-26 21:22 - 2015-07-10 19:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-08-26 21:22 - 2015-07-10 19:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-26 21:22 - 2015-07-10 19:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-26 21:22 - 2015-07-10 19:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-26 21:22 - 2015-07-10 19:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-26 21:22 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-26 21:22 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-26 21:22 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-26 21:22 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-26 21:22 - 2015-04-13 05:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-08-26 21:22 - 2015-02-03 05:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-08-26 21:22 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-08-26 21:22 - 2014-12-19 03:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-08-26 21:22 - 2014-10-14 04:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-08-26 21:22 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-08-26 21:22 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-08-26 21:22 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-08-26 21:22 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-08-26 21:22 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-08-26 21:22 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-08-26 21:22 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2015-08-26 21:22 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2015-08-26 21:22 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2015-08-26 21:22 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2015-08-26 21:22 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-08-26 21:22 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-08-26 21:21 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-26 21:21 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-26 21:21 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-08-26 21:21 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-08-26 21:21 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-08-26 21:21 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-08-26 21:21 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-08-26 21:21 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-08-26 21:21 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-08-26 21:21 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-08-26 21:21 - 2015-06-03 22:17 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-08-26 21:21 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-08-26 21:21 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-08-26 21:21 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-08-26 21:21 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-08-26 21:21 - 2014-12-19 05:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-08-26 21:21 - 2014-12-11 19:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-08-26 21:21 - 2014-12-06 06:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-08-26 21:21 - 2014-12-06 05:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-08-26 21:21 - 2014-12-06 05:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-08-26 21:21 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-08-26 21:21 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-08-26 21:21 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-08-26 21:21 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-08-26 21:21 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-08-26 21:21 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-08-26 21:21 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-08-26 21:21 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-08-26 21:21 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-08-26 21:21 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-08-26 21:21 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-08-26 21:21 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-08-26 21:21 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-08-26 21:21 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-08-26 21:21 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-08-26 21:21 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-08-26 21:21 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-08-26 21:21 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-08-26 21:21 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-08-26 21:21 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-08-26 21:21 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-08-26 21:21 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-08-26 21:21 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-08-26 21:21 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-08-26 21:21 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe


Přispějete na provoz fóra?