Re: Coin miner nejde odstranit
Napsal: 17 srp 2013 08:26
========== ZeroAccess Check ==========
[2012/10/09 10:57:57 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/03/06 08:31:28 | 019,758,592 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/03/06 07:03:37 | 017,561,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/26 05:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/26 05:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/26 05:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013/03/07 19:52:48 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\DC++
[2012/10/05 12:28:38 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Digiarty
[2012/12/18 14:27:07 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\driveridentifier
[2013/05/11 11:00:49 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Dropbox
[2012/09/26 09:35:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\e-academy Inc
[2012/10/22 10:53:27 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ExpressFiles
[2013/07/15 21:42:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\GarenaPlus
[2013/07/01 21:39:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQ-Profile
[2013/07/01 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQM
[2013/05/05 19:34:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IObit
[2013/01/22 17:22:17 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IrfanView
[2013/07/17 14:46:24 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\JKI
[2013/08/09 10:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\KillProcess
[2013/01/03 23:46:51 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Lingoes
[2013/07/02 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda
[2012/10/14 20:51:19 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda IM HotCoffee
[2012/09/28 23:56:53 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Notepad++
[2012/12/15 18:37:39 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\NuGet
[2012/10/17 20:58:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Oracle SQL Developer Data Modeler
[2013/05/29 15:05:09 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ProcessLasso
[2012/10/17 13:38:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Quest Software
[2013/01/12 15:43:56 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\QuickScan
[2013/07/22 11:20:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Radmin
[2013/01/05 19:31:43 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\SQL Developer
[2013/02/04 15:18:55 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Stellarium
[2012/09/26 12:14:05 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Subversion
[2013/07/17 17:14:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\systweak
[2013/01/16 14:51:33 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\TeamViewer
[2012/10/26 17:06:20 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Teleca
[2013/03/11 20:04:34 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\uTorrent
[2012/11/13 02:16:30 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\wargaming.net
[2013/07/09 09:49:59 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Xilinx
========== Purity Check ==========
========== Custom Scans ==========
< >
[2012/07/26 09:22:10 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2013/01/27 17:13:30 | 000,000,830 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | C] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 8bee0cfa-a9f0-488d-be60-8a3378636d4c.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | C] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task fc22301f-1534-4ee6-b345-db1638dc2d2f.job
< >
< MD5 for: ATAPI.SYS >
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\erdnt\cache64\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\SysNative\drivers\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_69660e2be041f47b\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_b733d17ea1e7f604\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.2.9200.16384_none_3601cf7eab4e0493\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.2.9200.16548_none_36311422ab29f479\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.2.9200.20652_none_36a9df45c455182a\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2013/06/29 20:45:20 | 000,000,596 | ---- | M] () MD5=3C8E8FC2A2DA61DB1D415D83DDF20C3D -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.20717_none_3b95e77d64677893\autochk.exe
[2013/05/15 04:24:10 | 000,793,088 | ---- | M] (Microsoft Corporation) MD5=61ADD65C9D1E2EAF8BB080A4D6AAB055 -- C:\Windows\SysWOW64\autochk.exe
[2013/05/15 04:24:10 | 000,793,088 | ---- | M] (Microsoft Corporation) MD5=61ADD65C9D1E2EAF8BB080A4D6AAB055 -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16612_none_dee8adbc92f0e8e0\autochk.exe
[2013/07/02 14:59:19 | 000,034,714 | ---- | M] () MD5=A6997A62AF110C1B3AD467F835F92911 -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16384_none_de9ef92a9327e7b0\autochk.exe
[2013/07/02 14:59:21 | 000,000,619 | ---- | M] () MD5=E2862D168A9DFAC071289CB6CD099DEB -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.20717_none_df774bf9ac0a075d\autochk.exe
[2013/06/29 20:45:19 | 000,040,790 | ---- | M] () MD5=E2C122A5632D3E4F5147653593C10F7E -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16384_none_3abd94ae4b8558e6\autochk.exe
[2013/05/15 04:25:59 | 000,888,320 | ---- | M] (Microsoft Corporation) MD5=E47235E8DF26CA48DA189ACFD756329C -- C:\Windows\SysNative\autochk.exe
[2013/05/15 04:25:59 | 000,888,320 | ---- | M] (Microsoft Corporation) MD5=E47235E8DF26CA48DA189ACFD756329C -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16612_none_3b0749404b4e5a16\autochk.exe
< MD5 for: CDROM.SYS >
[2012/07/26 04:26:36 | 000,174,080 | ---- | M] (Microsoft Corporation) MD5=339BFF85D788268752DA8C9644B188EE -- C:\Windows\SysNative\drivers\cdrom.sys
[2012/07/26 04:26:36 | 000,174,080 | ---- | M] (Microsoft Corporation) MD5=339BFF85D788268752DA8C9644B188EE -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_cf04adb457be1724\cdrom.sys
[2012/07/26 04:26:36 | 000,174,080 | ---- | M] (Microsoft Corporation) MD5=339BFF85D788268752DA8C9644B188EE -- C:\Windows\WinSxS\amd64_cdrom.inf_31bf3856ad364e35_6.2.9200.16384_none_b87303472d8ba041\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2013/07/19 12:07:09 | 000,191,911 | ---- | M] () MD5=0160B630901A2D8577503C1AA460214C -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16433_none_b5080a0137b9becc\explorer.exe
[2013/06/01 13:34:21 | 002,391,280 | ---- | M] (Microsoft Corporation) MD5=0E8E6463F81C80AFBED533E0F1F8895D -- C:\Windows\erdnt\cache86\explorer.exe
[2013/06/01 13:34:21 | 002,391,280 | ---- | M] (Microsoft Corporation) MD5=0E8E6463F81C80AFBED533E0F1F8895D -- C:\Windows\explorer.exe
[2013/06/01 13:34:21 | 002,391,280 | ---- | M] (Microsoft Corporation) MD5=0E8E6463F81C80AFBED533E0F1F8895D -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16628_none_aac334d9034c59e1\explorer.exe
[2013/06/29 21:10:35 | 000,003,739 | ---- | M] () MD5=59A502D9D1081797A961B8CFD3316C78 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20534_none_ab3dfcc41c75b5f2\explorer.exe
[2013/07/01 19:34:36 | 000,145,657 | ---- | M] () MD5=725203F6DE8D46405ECEEFEF8BD49313 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16384_none_b4d2f8c937e166b1\explorer.exe
[2013/07/01 19:34:41 | 000,004,958 | ---- | M] () MD5=83FEF7B387E945B6CB84461F3828C8A7 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20534_none_b592a71650d677ed\explorer.exe
[2013/07/17 09:39:17 | 000,220,310 | ---- | M] () MD5=87F9B86B81C79CB4A2E07FD4CA585B28 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16433_none_aab35faf0358fcd1\explorer.exe
[2013/06/29 21:10:31 | 000,188,441 | ---- | M] () MD5=BD92E01BC98DC20BEF1E69976975350F -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16384_none_aa7e4e770380a4b6\explorer.exe
[2013/07/19 12:07:15 | 000,190,101 | ---- | M] () MD5=D935377EEF83F08F9D122B4E64373CC2 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20733_none_b591aa9850d758e4\explorer.exe
[2013/07/17 09:39:20 | 000,217,360 | ---- | M] () MD5=DFE7A1DDD559400309A29AB12E9F654A -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20733_none_ab3d00461c7696e9\explorer.exe
[2013/06/01 12:24:46 | 002,106,176 | ---- | M] (Microsoft Corporation) MD5=EAFE46B0292D2BD2467835E2ACF717CC -- C:\Windows\SysWOW64\explorer.exe
[2013/06/01 12:24:46 | 002,106,176 | ---- | M] (Microsoft Corporation) MD5=EAFE46B0292D2BD2467835E2ACF717CC -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16628_none_b517df2b37ad1bdc\explorer.exe
< MD5 for: HAL.DLL >
[2013/06/29 21:12:14 | 000,002,020 | ---- | M] () MD5=2885558D153C979B411E6A7A5BF90A97 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.20544_none_04a77869fc6b9a79\hal.dll
[2013/06/29 21:12:11 | 000,011,988 | ---- | M] () MD5=9A7604E50F7757FE6BDC255176461ED6 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.16384_none_03f29a08e36e6d4c\hal.dll
[2013/06/29 21:12:12 | 000,001,298 | ---- | M] () MD5=A2CF36D196BCF221499E5B5BE64076DD -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.16420_none_042f7a4ee3415d71\hal.dll
[2013/06/29 21:12:13 | 000,001,310 | ---- | M] () MD5=B4741B4F799C6193E21198656A57FB90 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.20521_none_04ba1763fc5e1692\hal.dll
[2012/10/24 06:54:04 | 000,396,008 | ---- | M] (Microsoft Corporation) MD5=F021625F422966AD31F95CC494F7D188 -- C:\Windows\SysNative\hal.dll
[2012/10/24 06:54:04 | 000,396,008 | ---- | M] (Microsoft Corporation) MD5=F021625F422966AD31F95CC494F7D188 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.16442_none_041bdb0ae34fc801\hal.dll
< MD5 for: SCECLI.DLL >
[2012/07/26 05:07:07 | 000,224,768 | ---- | M] (Microsoft Corporation) MD5=4F6E1CA672370A9BCAC049CE3AB7F666 -- C:\Windows\erdnt\cache64\scecli.dll
[2012/07/26 05:07:07 | 000,224,768 | ---- | M] (Microsoft Corporation) MD5=4F6E1CA672370A9BCAC049CE3AB7F666 -- C:\Windows\SysNative\scecli.dll
[2012/07/26 05:07:07 | 000,224,768 | ---- | M] (Microsoft Corporation) MD5=4F6E1CA672370A9BCAC049CE3AB7F666 -- C:\Windows\WinSxS\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.2.9200.16384_none_90d789c062dfa509\scecli.dll
[2012/07/26 05:19:52 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=B95DC83FF580DD92F487C2F4D0854B6A -- C:\Windows\erdnt\cache86\scecli.dll
[2012/07/26 05:19:52 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=B95DC83FF580DD92F487C2F4D0854B6A -- C:\Windows\SysWOW64\scecli.dll
[2012/07/26 05:19:52 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=B95DC83FF580DD92F487C2F4D0854B6A -- C:\Windows\WinSxS\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.2.9200.16384_none_9b2c341297406704\scecli.dll
< MD5 for: SERVICES.EXE >
[2013/07/01 12:50:25 | 000,001,252 | ---- | M] () MD5=5A3011F126959010FF72DAF4FD017916 -- C:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_6.2.9200.20521_none_98a9ea2e9f571eb2\services.exe
[2012/09/20 08:33:46 | 000,410,624 | ---- | M] (Microsoft Corporation) MD5=8F226143046435C75C033B0C52E90FFE -- C:\Windows\erdnt\cache64\services.exe
[2012/09/20 08:33:46 | 000,410,624 | ---- | M] (Microsoft Corporation) MD5=8F226143046435C75C033B0C52E90FFE -- C:\Windows\SysNative\services.exe
[2012/09/20 08:33:46 | 000,410,624 | ---- | M] (Microsoft Corporation) MD5=8F226143046435C75C033B0C52E90FFE -- C:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_6.2.9200.16420_none_981f4d19863a6591\services.exe
[2013/07/01 12:50:24 | 000,038,189 | ---- | M] () MD5=B30B72928DF9BC98DB8F28E67220606D -- C:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_6.2.9200.16384_none_97e26cd38667756c\services.exe
< MD5 for: SVCHOST.EXE >
[2013/07/02 18:44:59 | 000,003,208 | ---- | M] () MD5=27E293F6D4C0F8ED492F5F6070621C8A -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16384_none_b2666581d6b482a6\svchost.exe
[2013/07/02 18:45:00 | 000,000,583 | ---- | M] () MD5=39F1C456D95B5199279BA03D8936BAF8 -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.20521_none_b32de2dcefa42bec\svchost.exe
[2013/07/01 12:53:33 | 000,000,609 | ---- | M] () MD5=8316115099683AD1636917F96EE5DF60 -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.20521_none_0f4c7e60a8019d22\svchost.exe
[2012/09/20 07:55:26 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=A46DC432F81473F526E3994AA483E366 -- C:\Windows\erdnt\cache86\svchost.exe
[2012/09/20 07:55:26 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=A46DC432F81473F526E3994AA483E366 -- C:\Windows\SysWOW64\svchost.exe
[2012/09/20 07:55:26 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=A46DC432F81473F526E3994AA483E366 -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16420_none_b2a345c7d68772cb\svchost.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2013/07/01 12:53:33 | 000,002,873 | ---- | M] () MD5=E1D5A1C746222AE602C56F70402B7889 -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16384_none_0e8501058f11f3dc\svchost.exe
[2012/09/20 08:33:52 | 000,029,696 | ---- | M] (Microsoft Corporation) MD5=EDE27EACE742EE2888C5DD36400A2EC0 -- C:\Windows\erdnt\cache64\svchost.exe
[2012/09/20 08:33:52 | 000,029,696 | ---- | M] (Microsoft Corporation) MD5=EDE27EACE742EE2888C5DD36400A2EC0 -- C:\Windows\SysNative\svchost.exe
[2012/09/20 08:33:52 | 000,029,696 | ---- | M] (Microsoft Corporation) MD5=EDE27EACE742EE2888C5DD36400A2EC0 -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16420_none_0ec1e14b8ee4e401\svchost.exe
< MD5 for: TCPIP.SYS >
[2013/06/01 13:33:13 | 002,233,600 | ---- | M] (Microsoft Corporation) MD5=0D05E0147C1329C53AAF97882DEDD96A -- C:\Windows\erdnt\cache64\tcpip.sys
[2013/06/01 13:33:13 | 002,233,600 | ---- | M] (Microsoft Corporation) MD5=0D05E0147C1329C53AAF97882DEDD96A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16628_none_0c2ca018eff62c18\tcpip.sys
[2013/07/19 12:02:51 | 000,370,799 | ---- | M] () MD5=1245F05D3E3429957D3134FE041275AA -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20521_none_0caf3712091a2033\tcpip.sys
[2013/07/09 08:07:17 | 002,233,168 | ---- | M] (Microsoft Corporation) MD5=1794C43A000A47D92B3304FC1E3E512A -- C:\Windows\SysNative\drivers\tcpip.sys
[2013/07/09 08:07:17 | 002,233,168 | ---- | M] (Microsoft Corporation) MD5=1794C43A000A47D92B3304FC1E3E512A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16659_none_0c0d309ef00d9942\tcpip.sys
[2013/07/19 12:02:47 | 000,247,287 | ---- | M] () MD5=247076495D803DAF35E9520D798E8F9F -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16548_none_0c16fe5af00666d3\tcpip.sys
[2013/07/19 12:02:37 | 000,370,776 | ---- | M] () MD5=3CD12C66A2F7C24DF690135EA10AB63D -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16420_none_0c2499fceffd6712\tcpip.sys
[2013/07/19 12:02:42 | 000,368,111 | ---- | M] () MD5=4581602B44F83FB5C6A98F6FB049883E -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16518_none_0c376e1eefee1300\tcpip.sys
[2013/07/19 12:03:02 | 000,365,916 | ---- | M] () MD5=AFFA768E49B1C7569F8C0A747D3A435D -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20652_none_0c8fc97e09318a84\tcpip.sys
[2013/07/19 12:02:57 | 000,368,114 | ---- | M] () MD5=D0C17167AA73E81262247555ED411A85 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20623_none_0cb1398c09185008\tcpip.sys
[2013/07/19 12:02:31 | 000,369,552 | ---- | M] () MD5=D8DA43818052E07D07967B993DD1513A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16384_none_0be7b9b6f02a76ed\tcpip.sys
[2013/07/19 12:03:07 | 000,360,561 | ---- | M] () MD5=DD358934E340A45C21E763A7CE3CEE38 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20733_none_0ca66b8609206920\tcpip.sys
[2013/07/09 09:51:09 | 002,228,048 | ---- | M] (Microsoft Corporation) MD5=EA2F55C14A30B6D89F3094269A72F9ED -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20767_none_0c89fcea0935224f\tcpip.sys
< MD5 for: USERINIT.EXE >
[2012/07/26 05:08:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E925F7BA032920D58DD284B6181A247 -- C:\Windows\erdnt\cache64\userinit.exe
[2012/07/26 05:08:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E925F7BA032920D58DD284B6181A247 -- C:\Windows\SysNative\userinit.exe
[2012/07/26 05:08:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E925F7BA032920D58DD284B6181A247 -- C:\Windows\WinSxS\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.2.9200.16384_none_34f2617a5b742e02\userinit.exe
[2012/07/26 05:21:00 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=9F6289D194A04A09671FEED4B6CB6EF7 -- C:\Windows\erdnt\cache86\userinit.exe
[2012/07/26 05:21:00 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=9F6289D194A04A09671FEED4B6CB6EF7 -- C:\Windows\SysWOW64\userinit.exe
[2012/07/26 05:21:00 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=9F6289D194A04A09671FEED4B6CB6EF7 -- C:\Windows\WinSxS\x86_microsoft-windows-userinit_31bf3856ad364e35_6.2.9200.16384_none_d8d3c5f6a316bccc\userinit.exe
< MD5 for: WINLOGON.EXE >
[2013/07/01 15:35:46 | 000,053,884 | ---- | M] () MD5=18ADF7FE19EE4B2962AE1EEA1AE80683 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.20521_none_c95425d677a55b32\winlogon.exe
[2013/07/01 15:35:47 | 000,001,620 | ---- | M] () MD5=281332D0980B45CDE2F5C3D3EA4B11C0 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.20534_none_c94c56c877aac328\winlogon.exe
[2013/07/01 15:35:46 | 000,053,876 | ---- | M] () MD5=6882614B8A114DD84259957E158BECFF -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.16420_none_c8c988c15e88a211\winlogon.exe
[2013/07/01 15:35:45 | 000,053,889 | ---- | M] () MD5=6B845FA17B51E9933A5FF7A9C4711ED6 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.16384_none_c88ca87b5eb5b1ec\winlogon.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2012/10/11 07:46:58 | 000,517,120 | ---- | M] (Microsoft Corporation) MD5=BCF2036A0DD579E47C008C133550283E -- C:\Windows\erdnt\cache64\winlogon.exe
[2012/10/11 07:46:58 | 000,517,120 | ---- | M] (Microsoft Corporation) MD5=BCF2036A0DD579E47C008C133550283E -- C:\Windows\SysNative\winlogon.exe
[2012/10/11 07:46:58 | 000,517,120 | ---- | M] (Microsoft Corporation) MD5=BCF2036A0DD579E47C008C133550283E -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.16433_none_c8c1b9b35e8e0a07\winlogon.exe
< >
< %systemroot%*.* /U /s >
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[3 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[3 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[2 C:\Windows\Inf\Oracle Data Provider for .NET\*.tmp files -> C:\Windows\Inf\Oracle Data Provider for .NET\*.tmp -> ]
[1 C:\Windows\Inf\Oracle Data Provider for .NET\0000\*.tmp files -> C:\Windows\Inf\Oracle Data Provider for .NET\0000\*.tmp -> ]
[1 C:\Windows\Inf\Oracle Data Provider for .NET\0009\*.tmp files -> C:\Windows\Inf\Oracle Data Provider for .NET\0009\*.tmp -> ]
[4 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[2 C:\Windows\Panther\*.tmp files -> C:\Windows\Panther\*.tmp -> ]
[1 C:\Windows\WinSxS\*.tmp files -> C:\Windows\WinSxS\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012/09/27 21:13:11 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Adobe
[2013/04/19 23:44:01 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Apple Computer
[2013/03/07 19:52:48 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\DC++
[2012/10/05 12:28:38 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Digiarty
[2012/12/18 14:27:07 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\driveridentifier
[2013/05/11 11:00:49 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Dropbox
[2012/09/26 09:35:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\e-academy Inc
[2012/10/22 10:53:27 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ExpressFiles
[2013/07/15 21:42:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\GarenaPlus
[2013/07/01 21:39:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQ-Profile
[2013/07/01 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQM
[2013/01/16 14:51:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Identities
[2013/05/05 19:34:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IObit
[2013/01/22 17:22:17 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IrfanView
[2013/07/17 14:46:24 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\JKI
[2013/08/09 10:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\KillProcess
[2013/01/03 23:46:51 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Lingoes
[2012/09/24 22:02:28 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Macromedia
[2013/08/06 17:16:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Malwarebytes
[2013/08/07 20:15:27 | 000,000,000 | --SD | M] -- C:\Users\SSejnt\AppData\Roaming\Microsoft
[2012/09/28 23:13:32 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Microsoft FxCop
[2013/07/02 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda
[2012/10/14 20:51:19 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda IM HotCoffee
[2013/08/15 20:56:32 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Mozilla
[2012/09/28 23:56:53 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Notepad++
[2012/12/15 18:37:39 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\NuGet
[2012/10/17 20:58:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Oracle SQL Developer Data Modeler
[2013/05/29 15:05:09 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ProcessLasso
[2012/10/17 13:38:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Quest Software
[2013/01/12 15:43:56 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\QuickScan
[2013/07/22 11:20:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Radmin
[2013/08/16 07:37:47 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Skype
[2012/10/26 17:04:11 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Sony Ericsson
[2013/01/05 19:31:43 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\SQL Developer
[2013/02/04 15:18:55 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Stellarium
[2012/09/26 12:14:05 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Subversion
[2013/08/06 22:06:02 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\SUPERAntiSpyware.com
[2013/07/17 17:14:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\systweak
[2013/01/16 14:51:33 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\TeamViewer
[2012/10/26 17:06:20 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Teleca
[2013/03/11 20:04:34 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\uTorrent
[2013/08/16 08:20:49 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\vlc
[2012/11/13 02:16:30 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\wargaming.net
[2013/08/16 07:58:31 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Winamp
[2013/04/04 01:30:23 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\WinRAR
[2013/07/09 09:49:59 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Xilinx
< %APPDATA%\*.exe /s >
[2013/07/01 21:39:02 | 028,696,936 | ---- | M] (ICQ) -- C:\Users\SSejnt\AppData\Roaming\ICQM\icq.exe
[2013/07/01 21:39:04 | 035,436,368 | ---- | M] (ICQ) -- C:\Users\SSejnt\AppData\Roaming\ICQM\icqsetup.exe
[2013/07/01 21:39:03 | 004,739,616 | ---- | M] () -- C:\Users\SSejnt\AppData\Roaming\ICQM\ICQ\dll\mailrusputnik.exe
[2012/11/20 19:57:44 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4A5667B2-5D13-46C2-85B5-9D46A6096F61}\_112D608FD02CD87FDC7735.exe
[2012/11/20 19:57:44 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4A5667B2-5D13-46C2-85B5-9D46A6096F61}\_79DFA17CFF2876593FBC23.exe
[2012/11/20 19:57:44 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4A5667B2-5D13-46C2-85B5-9D46A6096F61}\_853F67D554F05449430E7E.exe
[2013/08/09 11:04:04 | 000,110,080 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4FC9DA9D-F608-454E-8191-D7EFFDCC5726}\IconD7F16134.exe
[2013/08/09 11:04:04 | 000,110,080 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4FC9DA9D-F608-454E-8191-D7EFFDCC5726}\IconF7A21AF7.exe
[2012/09/26 09:35:19 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{6CEF2BC6-8929-44EE-8360-175513E1A49A}\_853F67D554F05449430E7E.exe
[2013/03/09 14:10:19 | 001,051,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\SSejnt\AppData\Roaming\uTorrent\uTorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2013/08/16 21:30:52 | 000,000,830 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | M] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 8bee0cfa-a9f0-488d-be60-8a3378636d4c.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | M] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task fc22301f-1534-4ee6-b345-db1638dc2d2f.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"F.lux" = "C:\Users\SSejnt\Local Settings\Apps\F.lux\flux.exe" /noshow -- [2009/08/29 08:00:12 | 000,966,656 | ---- | M] ()
"Sony PC Companion" = "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background -- [2013/02/04 16:39:46 | 000,447,152 | ---- | M] (Sony)
"GarenaPlus" = "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch -- [2013/06/19 05:38:49 | 009,873,200 | ---- | M] ()
"Lingoes" = C:\Program Files (x86)\Lingoes\Translator2\Lingoes.exe -minimize -- [2011/10/31 10:46:16 | 002,375,680 | ---- | M] (Lingoes Project)
"Skype" = "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun -- [2013/06/21 09:58:32 | 019,875,432 | R--- | M] (Skype Technologies S.A.)
"icq" = C:\Users\SSejnt\AppData\Roaming\ICQM\icq.exe -CU -- [2013/07/01 21:39:02 | 028,696,936 | ---- | M] (ICQ)
"NIRegistrationWizard" = C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1033 -- [2010/06/21 14:53:18 | 000,846,520 | ---- | M] ()
"SUPERAntiSpyware" = C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe -- [2013/05/15 03:08:43 | 005,622,512 | ---- | M] (SUPERAntiSpyware.com)
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2013/07/31 00:47:36 | 000,276,376 | ---- | M] (Mozilla Corporation) MD5=A6FE3BD4E3FC9C5583C92DF311A9C258 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2013/07/26 05:49:06 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=7BA1862B8A5698DC5FCFDFF3BC359DE9 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013/08/17 08:59:06 | 000,000,512 | ---- | M] () MD5=E829FE64C90E81B43840A7CB845D28AF -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2013/05/30 13:26:19 | 000,004,125 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\CrackedCom.class
< *keygen* /s >
[2013/05/29 10:44:56 | 000,109,056 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\bin\ssh-keygen.exe
< *loader* /s >
[2006/10/26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader.dll
[2006/10/26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader.tlb
[2012/07/26 19:08:06 | 000,102,864 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader80.dll
[2012/07/26 13:20:02 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader80.tlb
[2012/12/07 00:38:40 | 000,268,344 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2012/12/07 00:38:40 | 000,019,000 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2012/08/29 23:07:40 | 000,110,592 | ---- | M] () -- \Program Files (x86)\Driver Identifier\DriverUploader.exe
[2010/09/17 18:33:36 | 000,011,436 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\AutoLoader.pm
[2010/09/17 18:33:36 | 000,012,953 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\SelfLoader.pm
[2009/02/28 10:58:38 | 000,001,277 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\Locale\Maketext\GutsLoader.pm
[2010/09/17 18:33:36 | 000,000,727 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\ByteLoader.pm
[2010/09/17 18:33:36 | 000,028,961 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\DynaLoader.pm
[2010/09/17 18:33:36 | 000,010,818 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\XSLoader.pm
[2010/09/17 18:33:36 | 000,000,000 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\auto\ByteLoader\ByteLoader.bs
[2010/09/17 18:33:36 | 000,021,504 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\auto\ByteLoader\ByteLoader.dll
[2013/02/07 11:11:17 | 000,051,504 | ---- | M] () -- \Program Files (x86)\Garena Plus\FileLoader.dll
[2013/01/30 10:26:41 | 002,941,232 | ---- | M] () -- \Program Files (x86)\Garena Plus\ggdownloader.dll
[2013/04/30 13:01:26 | 000,248,832 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\GarenaTalkLoader.exe
[2013/01/30 12:09:14 | 000,082,224 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\update\temp\restore\10094\BTalkLoader.exe
[2013/02/13 12:47:02 | 000,082,224 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\update\temp\restore\10095\BTalkLoader.exe
[2013/04/19 23:57:23 | 000,001,938 | ---- | M] () -- \Program Files (x86)\IObit\Advanced SystemCare 6\Downloader.log
[2012/05/22 09:43:16 | 000,214,528 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.exe
[2012/05/22 09:43:16 | 000,593,293 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.jar
[2012/05/22 09:43:16 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderBETA.exe
[2012/05/22 09:43:16 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderD3D.exe
[2012/05/22 09:43:16 | 000,219,264 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderPortable.exe
[2012/10/25 12:04:09 | 000,000,105 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\img\hosterlogos\uploader.pl.png
[2012/10/25 12:06:10 | 000,011,071 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\MyDownloaderNet.class
[2013/05/30 13:21:57 | 000,004,584 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\OmpLoaderOrg.class
[2013/05/30 13:20:10 | 000,003,880 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\UploaderJp.class
[2012/10/25 12:05:43 | 000,007,073 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\UploaderPl.class
[2012/05/22 09:43:16 | 000,032,222 | ---- | M] () -- \Program Files (x86)\JDownloader\licenses\jdownloader.license
[2012/11/23 10:03:16 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft ASP.NET\ASP.NET MVC 4\Packages\jquery.mobile.1.2.0\content\Content\images\ajax-loader.gif
[2012/11/23 10:03:16 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft ASP.NET\ASP.NET Web Pages\v2.0\Packages\jquery.mobile.1.2.0\content\Content\images\ajax-loader.gif
[2013/05/16 19:59:58 | 000,039,648 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Design\Microsoft.LightSwitch.CommandLineBuildLoader.dll
[2013/05/16 19:59:58 | 000,042,168 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Design\Microsoft.LightSwitch.Design.Loader.dll
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Packages\jquery.mobile.1.2.0\Content\Content\Images\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Packages\Microsoft.LightSwitch.Client.JavaScript.Runtime.1.0.0.0\Content\Content\Images\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Packages\Microsoft.LightSwitch.Client.JavaScript.Runtime.1.0.0.0\Content\Content\Images\msls-loader-light.gif
[2012/02/11 10:00:10 | 000,026,200 | ---- | M] () -- \Program Files (x86)\Microsoft SQL Server\110\Tools\Binn\SqlResourceLoader.dll
[2010/03/18 23:21:56 | 000,063,312 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\coloader80.dll
[2010/03/18 01:57:18 | 000,001,373 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\coloader80.dll.manifest
[2010/03/18 00:17:14 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\coloader80.tlb
[2012/07/26 19:08:06 | 000,102,864 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\coloader80.dll
[2012/07/26 14:30:52 | 000,001,373 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\coloader80.dll.manifest
[2012/07/26 13:20:02 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\coloader80.tlb
[2013/03/15 00:05:56 | 000,376,040 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\Architecture Tools\Repository\Microsoft.VisualStudio.Repository.Code.Native.Loader.dll
[2013/03/15 00:05:56 | 001,420,504 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\Architecture Tools\Repository\Microsoft.VisualStudio.Repository.Runtime.Loader.dll
[2012/07/26 19:08:06 | 000,036,320 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\ConcurrencyVisualizer\PdbDownloader.exe
[2012/07/26 19:08:06 | 000,039,008 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.LightSwitch.CommandLineBuildLoader.dll
[2012/07/26 19:08:06 | 000,042,040 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.LightSwitch.Design.Loader.dll
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptClientProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptClientProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-light.gif
[2012/07/26 19:08:06 | 000,024,760 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ReferenceAssemblies\v2.0\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.dll
[2013/03/08 17:25:36 | 000,017,072 | ---- | M] () -- \Program Files (x86)\Microsoft Web Tools\Page Inspector\Microsoft.VisualStudio.Web.PageInspector.Loader.dll
[2008/09/16 21:48:16 | 000,034,492 | ---- | M] () -- \Program Files (x86)\Miranda Micro 2.0\Skins\IEView\Micro\!tools\cursor\Silverpoint_Loader.ani
[2012/02/20 10:08:18 | 000,031,232 | ---- | M] () -- \Program Files (x86)\National Instruments\Shared\TDM Excel Add-In\usiLoaderEbd.dll
[2011/07/18 23:33:32 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Notepad++\user.manual\sites\all\modules\fancy_login\images\ajax-loader.gif
[2008/03/27 15:46:46 | 000,458,752 | R--- | M] () -- \Program Files (x86)\Sony Ericsson\Mobile4\Sync Manager\NotesPimAdaptorLoader.dll
[2012/10/24 15:10:46 | 000,001,702 | ---- | M] () -- \Program Files (x86)\Sony Ericsson\Update Engine\licenses\loaderbinarylegal.txt
[2012/07/25 13:12:10 | 000,013,831 | ---- | M] () -- \Program Files (x86)\Windows Kits\8.0\Include\um\libloaderapi.h
[2012/07/25 18:46:28 | 000,211,456 | ---- | M] () -- \Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Te.Loaders.dll
[2012/07/25 18:46:28 | 000,211,456 | ---- | M] () -- \Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\x64\Te.Loaders.dll
[2013/07/16 15:41:00 | 000,098,816 | ---- | M] () -- \Program Files\Basler\pylon 4\genicam\bin\win32_i86\GenApi\Generic\XMLLoader_MD_VC100_v2_3.dll
[2013/07/16 15:50:40 | 000,118,784 | ---- | M] () -- \Program Files\Basler\pylon 4\genicam\bin\win64_x64\GenApi\Generic\XMLLoader_MD_VC100_v2_3.dll
[2012/09/05 14:58:31 | 000,699,264 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe
[2012/09/06 19:55:19 | 000,000,032 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe.md5
[2012/09/06 18:42:58 | 000,457,216 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\en-US\setupdownloader.ui
[2012/09/06 19:55:19 | 000,000,032 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\en-US\setupdownloader.ui.md5
[2012/12/07 00:38:40 | 000,364,088 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2012/12/07 00:38:40 | 000,019,000 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2012/09/26 12:09:29 | 000,000,948 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\config\ModuleAutoDeps\org-openide-loaders.xml
[2012/09/26 12:09:30 | 000,000,411 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\config\Modules\org-openide-loaders.xml
[2012/09/26 12:09:31 | 001,170,520 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\modules\org-openide-loaders.jar
[2012/09/26 12:09:31 | 000,006,244 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\modules\locale\org-openide-loaders_ja.jar
[2012/09/26 12:09:31 | 000,005,873 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\modules\locale\org-openide-loaders_zh_CN.jar
[2012/09/26 12:09:31 | 000,000,457 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\update_tracking\org-openide-loaders.xml
[2012/02/11 08:43:56 | 000,034,904 | ---- | M] () -- \Program Files\Microsoft SQL Server\110\Tools\Binn\SqlResourceLoader.dll
[2012/02/20 10:08:26 | 000,038,400 | ---- | M] () -- \Program Files\National Instruments\Shared\TDM Excel Add-In\usiLoaderEbd.dll
[2012/09/26 12:00:40 | 000,468,131 | ---- | M] () -- \Program Files\Oracle Developer\sqldeveloper\modules\oracle.classloader_11.1.1.jar
[2012/07/26 09:54:43 | 000,039,485 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.Bing_1.2.0.137_x64__8wekyb3d8bbwe\shell\js\backgroundImageLoader.js
[2012/07/26 09:53:42 | 000,002,809 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\DependencyLoader\DependencyLoader.js
[2012/07/26 09:53:43 | 000,001,583 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellComposeDependencyLoader.js
[2012/07/26 09:53:43 | 000,001,711 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellReadDependencyLoader.js
[2012/07/26 09:53:43 | 000,002,509 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellShareAnythingControlDependencyLoader.js
[2012/07/26 09:53:43 | 000,002,394 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernPeople\appframe\BackgroundLoader.js
[2012/07/26 09:53:43 | 000,005,028 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernShareAnything\ShareDataLoader.js
[2013/04/01 19:54:02 | 000,002,089 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\DependencyLoader\DependencyLoader.js
[2013/04/01 19:54:08 | 000,001,326 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellComposeDependencyLoader.js
[2013/04/01 19:54:08 | 000,001,208 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellReadDependencyLoader.js
[2013/04/01 19:54:08 | 000,002,552 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellShareAnythingControlDependencyLoader.js
[2013/04/01 19:54:10 | 000,001,915 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernPeople\appframe\BackgroundLoader.js
[2013/04/01 19:54:10 | 000,005,019 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernShareAnything\ShareDataLoader.js
[2012/07/26 09:54:40 | 000,049,108 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.XboxLIVEGames_1.0.927.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2012/07/26 09:54:17 | 000,049,108 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneMusic_1.0.927.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:21:24 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneMusic_1.3.59.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:21:24 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneMusic_1.4.18.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2012/07/26 09:54:24 | 000,049,108 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneVideo_1.0.927.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:19:59 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneVideo_1.3.59.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:19:59 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneVideo_1.4.19.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2012/06/09 19:19:37 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2012/12/05 15:35:43 | 000,016,654 | ---- | M] () -- \ProgramData\GarenaMessenger\update\12154\FileLoader.dll
[2013/02/13 12:44:17 | 000,020,929 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12168\FileLoader.dll
[2013/02/13 12:46:10 | 000,945,655 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12168\ggdownloader.dll
[2013/02/13 12:45:10 | 000,027,494 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12168\bbtalk\BTalkLoader.exe
[2013/05/08 12:51:57 | 000,080,425 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12226\bbtalk\GarenaTalkLoader.exe
[2012/10/25 12:03:07 | 000,001,949 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk
[2012/10/25 12:03:06 | 000,001,928 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
[2012/10/25 12:03:07 | 000,002,005 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
[2013/03/26 14:13:12 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2013/03/26 14:13:12 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013/03/26 14:13:12 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2012/12/05 15:35:43 | 000,016,654 | ---- | M] () -- \Users\All Users\GarenaMessenger\update\12154\FileLoader.dll
[2013/02/13 12:44:17 | 000,020,929 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12168\FileLoader.dll
[2013/02/13 12:46:10 | 000,945,655 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12168\ggdownloader.dll
[2013/02/13 12:45:10 | 000,027,494 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12168\bbtalk\BTalkLoader.exe
[2013/05/08 12:51:57 | 000,080,425 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12226\bbtalk\GarenaTalkLoader.exe
[2012/10/25 12:03:07 | 000,001,949 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk
[2012/10/25 12:03:06 | 000,001,928 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
[2012/10/25 12:03:07 | 000,002,005 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
[2013/03/26 14:13:12 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2013/03/26 14:13:12 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2013/03/26 14:13:12 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013/08/16 12:36:50 | 000,001,174 | ---- | M] () -- \Users\SSejnt\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HFOY98RO\downloader[1].js
[2013/08/16 12:36:50 | 000,000,723 | ---- | M] () -- \Users\SSejnt\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UH4XZZ37\downloaderror[1].js
[2012/10/25 12:03:10 | 000,002,041 | ---- | M] () -- \Users\SSejnt\Desktop\JDownloader.lnk
[2013/04/17 20:04:55 | 000,001,212 | ---- | M] () -- \Users\SSejnt\Desktop\PctRssService\PctRssService\XmlDownloader.cs
[2012/04/10 19:52:43 | 000,002,101 | ---- | M] () -- \Users\SSejnt\Desktop\PctRssService\RSS_Reader\classes\PluginLoader.cs
[2013/04/20 13:33:02 | 000,001,323 | ---- | M] () -- \Users\SSejnt\Documents\Visual Studio 2012\Projects\ATNET\ATNET\Downloader.cs
[2013/04/20 12:01:23 | 000,002,043 | ---- | M] () -- \Users\SSejnt\Documents\Visual Studio 2012\Projects\ATNET\Host\PluginLoader.cs
[2013/04/30 12:47:28 | 000,001,628 | ---- | M] () -- \Users\SSejnt\Documents\Visual Studio 2012\Projects\Test\Test\Downloader.cs
[2012/02/14 10:26:06 | 000,007,610 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.MefExtensions\Modularity\MefFileModuleTypeLoader.Desktop.cs
[2012/02/14 10:26:06 | 000,002,310 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.MefExtensions\Regions\MefRegionNavigationContentLoader.cs
[2012/02/14 10:26:06 | 000,002,851 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.Tests\Mocks\MockAsyncModuleTypeLoader.cs
[2012/02/14 10:26:06 | 000,002,804 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.Tests\Mocks\MockModuleTypeLoader.cs
[2012/02/14 10:26:06 | 000,006,112 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.Tests\Modularity\FileModuleTypeLoaderFixture.Desktop.cs
[2012/02/14 10:26:06 | 000,001,423 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.UnityExtensions.Tests\Mocks\MockModuleLoader.cs
[2012/02/14 10:26:06 | 000,008,863 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\FileModuleTypeLoader.Desktop.cs
[2012/02/14 10:26:06 | 000,002,645 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\IModuleTypeLoader.cs
[2012/02/14 10:26:06 | 000,003,372 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\ModuleTypeLoaderNotFoundException.cs
[2012/02/14 10:26:06 | 000,001,853 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\ModuleTypeLoaderNotFoundException.Desktop.cs
[2012/02/14 10:26:08 | 000,002,173 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Regions\IRegionNavigationContentLoader.cs
[2012/02/14 10:26:08 | 000,007,264 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Regions\RegionNavigationContentLoader.cs
[2012/02/14 10:26:08 | 000,012,968 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism.MefExtensions\Modularity\MefXapModuleTypeLoader.cs
[2012/02/14 10:26:08 | 000,012,080 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism.Tests\Modularity\XapModuleTypeLoaderFixture.cs
[2012/02/14 10:26:08 | 000,004,468 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism\Modularity\FileDownloader.cs
[2012/02/14 10:26:08 | 000,002,086 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism\Modularity\IFileDownloader.cs
[2012/02/14 10:26:08 | 000,013,391 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism\Modularity\XapModuleTypeLoader.cs
[2013/07/16 09:35:48 | 000,024,888 | ---- | M] () -- \Windows\assembly\GAC_32\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader\11.0.0.0__b03f5f7f11d50a3a\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.dll
[2013/07/16 09:35:48 | 000,023,352 | ---- | M] () -- \Windows\assembly\GAC_64\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader\11.0.0.0__b03f5f7f11d50a3a\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.dll
[2013/07/17 12:37:34 | 000,020,480 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Tde5bef3b#\0c1a58290a48c81d380e6ea08900091e\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll
[2013/07/17 12:37:34 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Tde5bef3b#\0c1a58290a48c81d380e6ea08900091e\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll.aux
[2013/07/17 12:39:52 | 000,577,536 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.V09707a24#\68f1b2b3afd72f1bf37b2c3489ea9f80\Microsoft.VisualStudio.Repository.Code.Native.Loader.ni.dll
[2013/07/17 12:39:52 | 000,001,324 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.V09707a24#\68f1b2b3afd72f1bf37b2c3489ea9f80\Microsoft.VisualStudio.Repository.Code.Native.Loader.ni.dll.aux
[2013/07/17 12:39:54 | 002,507,776 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Vbd7eeb5a#\ff6aa142ca7524b2c52073c3e3d6dcb5\Microsoft.VisualStudio.Repository.Runtime.Loader.ni.dll
[2013/07/17 12:39:54 | 000,001,708 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Vbd7eeb5a#\ff6aa142ca7524b2c52073c3e3d6dcb5\Microsoft.VisualStudio.Repository.Runtime.Loader.ni.dll.aux
[2013/07/17 12:51:59 | 000,027,136 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Tde5bef3b#\234a53cd7ab8eaaa7fd5fda62cff6a5f\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll
[2013/07/17 12:51:59 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Tde5bef3b#\234a53cd7ab8eaaa7fd5fda62cff6a5f\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll.aux
[2012/07/26 19:41:24 | 001,408,624 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Loader_dll_x86
[2012/09/26 09:59:03 | 001,408,624 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Loader_dll_x86_GAC
[2012/07/26 19:41:24 | 000,375,936 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Native_Loader_dll_x86
[2012/09/26 09:59:03 | 000,375,936 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Native_Loader_dll_x86_GAC
[2010/03/18 23:21:56 | 000,063,312 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\4896B46DF242CB230B805782605ECF44\10.0.30319\FL_coloader80_dll_128691_128691_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8
[2010/03/18 00:17:14 | 000,004,096 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\4896B46DF242CB230B805782605ECF44\10.0.30319\FL_coloader80_tlb_128927_128927_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8
[2013/07/16 10:20:49 | 000,376,040 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Repository.Code.Native.Loader\v4.0_11.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Repository.Code.Native.Loader.dll
[2013/07/16 10:20:49 | 001,420,504 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Repository.Runtime.Loader\v4.0_11.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Repository.Runtime.Loader.dll
[2013/07/16 09:39:20 | 000,017,072 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Web.PageInspector.Loader\v4.0_1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Web.PageInspector.Loader.dll
[2012/09/20 10:33:02 | 000,005,810 | ---- | M] () -- \Windows\SoftwareDistribution\Download\f7f3f78cb5a30b7a9964504cdf37e9a9\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16420_none_b42d41dcf63e0664.manifest
[2012/09/20 11:24:25 | 000,005,810 | ---- | M] () -- \Windows\SoftwareDistribution\Download\f7f3f78cb5a30b7a9964504cdf37e9a9\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20521_none_b4b7def20f5abf85.manifest
[2012/07/26 04:46:24 | 000,003,072 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:46:25 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:46:36 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-stringloader-l1-1-0.dll
[2012/07/26 05:18:20 | 000,036,352 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012/07/26 04:46:24 | 000,003,072 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:46:25 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:46:36 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-stringloader-l1-1-0.dll
[2012/07/26 05:18:20 | 000,036,352 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[1 \Windows\WinSxS\*.tmp files -> \Windows\WinSxS\*.tmp -> ]
[2012/07/26 06:53:16 | 001,084,144 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16384_none_891afac5ef497dae\hvloader.efi
[2012/07/26 06:53:16 | 000,998,128 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16384_none_891afac5ef497dae\hvloader.exe
[2012/10/11 10:42:55 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16433_none_89500bfdef21d5c9\hvloader.efi
[2012/10/11 10:42:55 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16433_none_89500bfdef21d5c9\hvloader.exe
[2013/03/02 12:39:39 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16548_none_894a3f69ef256d94\hvloader.efi
[2013/03/02 12:39:39 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16548_none_894a3f69ef256d94\hvloader.exe
[2013/03/02 12:39:39 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16579_none_892acfefef3cdabe\hvloader.efi
[2013/04/09 07:24:49 | 000,998,152 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16579_none_892acfefef3cdabe\hvloader.exe
[2013/06/01 14:02:14 | 001,084,160 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16628_none_895fe127ef1532d9\hvloader.efi
[2013/06/01 14:02:14 | 000,998,144 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16628_none_895fe127ef1532d9\hvloader.exe
[2012/10/11 09:29:20 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20534_none_89daa913083e8eea\hvloader.efi
[2012/10/11 09:29:20 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20534_none_89daa913083e8eea\hvloader.exe
[2013/03/02 12:22:17 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20652_none_89c30a8d08509145\hvloader.efi
[2013/03/02 12:22:17 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20652_none_89c30a8d08509145\hvloader.exe
[2013/03/02 12:22:17 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20683_none_89a39b130867fe6f\hvloader.efi
[2013/04/09 02:24:11 | 000,998,152 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20683_none_89a39b130867fe6f\hvloader.exe
[2013/06/01 14:49:37 | 001,084,160 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20733_none_89d9ac95083f6fe1\hvloader.efi
[2013/06/01 14:49:37 | 000,998,144 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20733_none_89d9ac95083f6fe1\hvloader.exe
[2012/07/26 05:05:30 | 000,047,616 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.2.9200.16384_none_9ebdc35619670551\dmloader.dll
[2012/07/26 04:35:54 | 000,003,072 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_637b975b05942933\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:35:54 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_637b975b05942933\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:35:58 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_637b975b05942933\api-ms-win-core-stringloader-l1-1-0.dll
[2012/07/26 09:49:21 | 000,004,656 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a.manifest
[2012/07/26 09:49:21 | 000,029,936 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winload.efi.mui_35ee487d
[2012/07/26 09:49:21 | 000,029,936 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winload.exe.mui_3bc5b827
[2012/07/26 09:49:21 | 000,020,208 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winresume.efi.mui_f412814e
[2012/07/26 09:49:21 | 000,020,208 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winresume.exe.mui_ff8b5358
[2013/07/16 11:27:22 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a.manifest
[2013/07/16 11:27:22 | 001,403,296 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winload.efi_75834aa0
[2013/07/16 11:27:22 | 001,271,584 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winload.exe_75835076
[2013/07/16 11:27:23 | 001,217,352 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winresume.efi_85cd069f
[2013/07/16 11:27:23 | 001,093,904 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winresume.exe_85cd1215
[2012/07/26 10:11:35 | 000,000,596 | ---- | M] () -- \Windows\WinSxS\FileMaps\programdata_microsoft_network_downloader_7fafaef6d33e4371.cdf-ms
[2012/07/26 09:47:51 | 000,004,656 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a.manifest
[2012/07/26 07:00:58 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16384_none_b3f06196f66b163f.manifest
[2012/09/20 10:33:02 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16420_none_b42d41dcf63e0664.manifest
[2012/10/11 09:33:59 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16433_none_b42572cef6436e5a.manifest
[2013/04/09 08:04:17 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16579_none_b40036c0f65e734f.manifest
[2013/06/01 13:31:54 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a.manifest
[2012/09/20 11:24:25 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20521_none_b4b7def20f5abf85.manifest
[2012/10/11 09:26:48 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20534_none_b4b00fe40f60277b.manifest
[2013/04/09 02:53:04 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20683_none_b47901e40f899700.manifest
[2013/06/01 14:10:50 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20733_none_b4af13660f610872.manifest
[2012/07/26 05:18:20 | 000,036,352 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.2.9200.16384_none_429f27d26109941b\dmloader.dll
[2012/07/26 04:46:24 | 000,003,072 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_075cfbd74d36b7fd\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:46:25 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_075cfbd74d36b7fd\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:46:36 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_075cfbd74d36b7fd\api-ms-win-core-stringloader-l1-1-0.dll
< End of report >
[2012/10/09 10:57:57 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/03/06 08:31:28 | 019,758,592 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/03/06 07:03:37 | 017,561,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2012/07/26 05:05:38 | 001,004,544 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2012/07/26 05:18:27 | 000,784,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2012/07/26 05:07:41 | 000,455,680 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013/03/07 19:52:48 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\DC++
[2012/10/05 12:28:38 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Digiarty
[2012/12/18 14:27:07 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\driveridentifier
[2013/05/11 11:00:49 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Dropbox
[2012/09/26 09:35:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\e-academy Inc
[2012/10/22 10:53:27 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ExpressFiles
[2013/07/15 21:42:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\GarenaPlus
[2013/07/01 21:39:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQ-Profile
[2013/07/01 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQM
[2013/05/05 19:34:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IObit
[2013/01/22 17:22:17 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IrfanView
[2013/07/17 14:46:24 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\JKI
[2013/08/09 10:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\KillProcess
[2013/01/03 23:46:51 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Lingoes
[2013/07/02 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda
[2012/10/14 20:51:19 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda IM HotCoffee
[2012/09/28 23:56:53 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Notepad++
[2012/12/15 18:37:39 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\NuGet
[2012/10/17 20:58:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Oracle SQL Developer Data Modeler
[2013/05/29 15:05:09 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ProcessLasso
[2012/10/17 13:38:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Quest Software
[2013/01/12 15:43:56 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\QuickScan
[2013/07/22 11:20:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Radmin
[2013/01/05 19:31:43 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\SQL Developer
[2013/02/04 15:18:55 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Stellarium
[2012/09/26 12:14:05 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Subversion
[2013/07/17 17:14:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\systweak
[2013/01/16 14:51:33 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\TeamViewer
[2012/10/26 17:06:20 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Teleca
[2013/03/11 20:04:34 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\uTorrent
[2012/11/13 02:16:30 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\wargaming.net
[2013/07/09 09:49:59 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Xilinx
========== Purity Check ==========
========== Custom Scans ==========
< >
[2012/07/26 09:22:10 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2013/01/27 17:13:30 | 000,000,830 | ---- | C] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | C] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 8bee0cfa-a9f0-488d-be60-8a3378636d4c.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | C] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task fc22301f-1534-4ee6-b345-db1638dc2d2f.job
< >
< MD5 for: ATAPI.SYS >
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\erdnt\cache64\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\SysNative\drivers\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_69660e2be041f47b\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_b733d17ea1e7f604\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.2.9200.16384_none_3601cf7eab4e0493\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.2.9200.16548_none_36311422ab29f479\atapi.sys
[2012/07/26 07:00:48 | 000,025,840 | ---- | M] (Microsoft Corporation) MD5=A721FF570C2387E383BDDEA9632863C9 -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.2.9200.20652_none_36a9df45c455182a\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2013/06/29 20:45:20 | 000,000,596 | ---- | M] () MD5=3C8E8FC2A2DA61DB1D415D83DDF20C3D -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.20717_none_3b95e77d64677893\autochk.exe
[2013/05/15 04:24:10 | 000,793,088 | ---- | M] (Microsoft Corporation) MD5=61ADD65C9D1E2EAF8BB080A4D6AAB055 -- C:\Windows\SysWOW64\autochk.exe
[2013/05/15 04:24:10 | 000,793,088 | ---- | M] (Microsoft Corporation) MD5=61ADD65C9D1E2EAF8BB080A4D6AAB055 -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16612_none_dee8adbc92f0e8e0\autochk.exe
[2013/07/02 14:59:19 | 000,034,714 | ---- | M] () MD5=A6997A62AF110C1B3AD467F835F92911 -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16384_none_de9ef92a9327e7b0\autochk.exe
[2013/07/02 14:59:21 | 000,000,619 | ---- | M] () MD5=E2862D168A9DFAC071289CB6CD099DEB -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.20717_none_df774bf9ac0a075d\autochk.exe
[2013/06/29 20:45:19 | 000,040,790 | ---- | M] () MD5=E2C122A5632D3E4F5147653593C10F7E -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16384_none_3abd94ae4b8558e6\autochk.exe
[2013/05/15 04:25:59 | 000,888,320 | ---- | M] (Microsoft Corporation) MD5=E47235E8DF26CA48DA189ACFD756329C -- C:\Windows\SysNative\autochk.exe
[2013/05/15 04:25:59 | 000,888,320 | ---- | M] (Microsoft Corporation) MD5=E47235E8DF26CA48DA189ACFD756329C -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.2.9200.16612_none_3b0749404b4e5a16\autochk.exe
< MD5 for: CDROM.SYS >
[2012/07/26 04:26:36 | 000,174,080 | ---- | M] (Microsoft Corporation) MD5=339BFF85D788268752DA8C9644B188EE -- C:\Windows\SysNative\drivers\cdrom.sys
[2012/07/26 04:26:36 | 000,174,080 | ---- | M] (Microsoft Corporation) MD5=339BFF85D788268752DA8C9644B188EE -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_cf04adb457be1724\cdrom.sys
[2012/07/26 04:26:36 | 000,174,080 | ---- | M] (Microsoft Corporation) MD5=339BFF85D788268752DA8C9644B188EE -- C:\Windows\WinSxS\amd64_cdrom.inf_31bf3856ad364e35_6.2.9200.16384_none_b87303472d8ba041\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2013/07/19 12:07:09 | 000,191,911 | ---- | M] () MD5=0160B630901A2D8577503C1AA460214C -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16433_none_b5080a0137b9becc\explorer.exe
[2013/06/01 13:34:21 | 002,391,280 | ---- | M] (Microsoft Corporation) MD5=0E8E6463F81C80AFBED533E0F1F8895D -- C:\Windows\erdnt\cache86\explorer.exe
[2013/06/01 13:34:21 | 002,391,280 | ---- | M] (Microsoft Corporation) MD5=0E8E6463F81C80AFBED533E0F1F8895D -- C:\Windows\explorer.exe
[2013/06/01 13:34:21 | 002,391,280 | ---- | M] (Microsoft Corporation) MD5=0E8E6463F81C80AFBED533E0F1F8895D -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16628_none_aac334d9034c59e1\explorer.exe
[2013/06/29 21:10:35 | 000,003,739 | ---- | M] () MD5=59A502D9D1081797A961B8CFD3316C78 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20534_none_ab3dfcc41c75b5f2\explorer.exe
[2013/07/01 19:34:36 | 000,145,657 | ---- | M] () MD5=725203F6DE8D46405ECEEFEF8BD49313 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16384_none_b4d2f8c937e166b1\explorer.exe
[2013/07/01 19:34:41 | 000,004,958 | ---- | M] () MD5=83FEF7B387E945B6CB84461F3828C8A7 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20534_none_b592a71650d677ed\explorer.exe
[2013/07/17 09:39:17 | 000,220,310 | ---- | M] () MD5=87F9B86B81C79CB4A2E07FD4CA585B28 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16433_none_aab35faf0358fcd1\explorer.exe
[2013/06/29 21:10:31 | 000,188,441 | ---- | M] () MD5=BD92E01BC98DC20BEF1E69976975350F -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16384_none_aa7e4e770380a4b6\explorer.exe
[2013/07/19 12:07:15 | 000,190,101 | ---- | M] () MD5=D935377EEF83F08F9D122B4E64373CC2 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20733_none_b591aa9850d758e4\explorer.exe
[2013/07/17 09:39:20 | 000,217,360 | ---- | M] () MD5=DFE7A1DDD559400309A29AB12E9F654A -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.20733_none_ab3d00461c7696e9\explorer.exe
[2013/06/01 12:24:46 | 002,106,176 | ---- | M] (Microsoft Corporation) MD5=EAFE46B0292D2BD2467835E2ACF717CC -- C:\Windows\SysWOW64\explorer.exe
[2013/06/01 12:24:46 | 002,106,176 | ---- | M] (Microsoft Corporation) MD5=EAFE46B0292D2BD2467835E2ACF717CC -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.2.9200.16628_none_b517df2b37ad1bdc\explorer.exe
< MD5 for: HAL.DLL >
[2013/06/29 21:12:14 | 000,002,020 | ---- | M] () MD5=2885558D153C979B411E6A7A5BF90A97 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.20544_none_04a77869fc6b9a79\hal.dll
[2013/06/29 21:12:11 | 000,011,988 | ---- | M] () MD5=9A7604E50F7757FE6BDC255176461ED6 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.16384_none_03f29a08e36e6d4c\hal.dll
[2013/06/29 21:12:12 | 000,001,298 | ---- | M] () MD5=A2CF36D196BCF221499E5B5BE64076DD -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.16420_none_042f7a4ee3415d71\hal.dll
[2013/06/29 21:12:13 | 000,001,310 | ---- | M] () MD5=B4741B4F799C6193E21198656A57FB90 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.20521_none_04ba1763fc5e1692\hal.dll
[2012/10/24 06:54:04 | 000,396,008 | ---- | M] (Microsoft Corporation) MD5=F021625F422966AD31F95CC494F7D188 -- C:\Windows\SysNative\hal.dll
[2012/10/24 06:54:04 | 000,396,008 | ---- | M] (Microsoft Corporation) MD5=F021625F422966AD31F95CC494F7D188 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.2.9200.16442_none_041bdb0ae34fc801\hal.dll
< MD5 for: SCECLI.DLL >
[2012/07/26 05:07:07 | 000,224,768 | ---- | M] (Microsoft Corporation) MD5=4F6E1CA672370A9BCAC049CE3AB7F666 -- C:\Windows\erdnt\cache64\scecli.dll
[2012/07/26 05:07:07 | 000,224,768 | ---- | M] (Microsoft Corporation) MD5=4F6E1CA672370A9BCAC049CE3AB7F666 -- C:\Windows\SysNative\scecli.dll
[2012/07/26 05:07:07 | 000,224,768 | ---- | M] (Microsoft Corporation) MD5=4F6E1CA672370A9BCAC049CE3AB7F666 -- C:\Windows\WinSxS\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.2.9200.16384_none_90d789c062dfa509\scecli.dll
[2012/07/26 05:19:52 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=B95DC83FF580DD92F487C2F4D0854B6A -- C:\Windows\erdnt\cache86\scecli.dll
[2012/07/26 05:19:52 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=B95DC83FF580DD92F487C2F4D0854B6A -- C:\Windows\SysWOW64\scecli.dll
[2012/07/26 05:19:52 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=B95DC83FF580DD92F487C2F4D0854B6A -- C:\Windows\WinSxS\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.2.9200.16384_none_9b2c341297406704\scecli.dll
< MD5 for: SERVICES.EXE >
[2013/07/01 12:50:25 | 000,001,252 | ---- | M] () MD5=5A3011F126959010FF72DAF4FD017916 -- C:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_6.2.9200.20521_none_98a9ea2e9f571eb2\services.exe
[2012/09/20 08:33:46 | 000,410,624 | ---- | M] (Microsoft Corporation) MD5=8F226143046435C75C033B0C52E90FFE -- C:\Windows\erdnt\cache64\services.exe
[2012/09/20 08:33:46 | 000,410,624 | ---- | M] (Microsoft Corporation) MD5=8F226143046435C75C033B0C52E90FFE -- C:\Windows\SysNative\services.exe
[2012/09/20 08:33:46 | 000,410,624 | ---- | M] (Microsoft Corporation) MD5=8F226143046435C75C033B0C52E90FFE -- C:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_6.2.9200.16420_none_981f4d19863a6591\services.exe
[2013/07/01 12:50:24 | 000,038,189 | ---- | M] () MD5=B30B72928DF9BC98DB8F28E67220606D -- C:\Windows\WinSxS\amd64_microsoft-windows-s..cecontroller-minwin_31bf3856ad364e35_6.2.9200.16384_none_97e26cd38667756c\services.exe
< MD5 for: SVCHOST.EXE >
[2013/07/02 18:44:59 | 000,003,208 | ---- | M] () MD5=27E293F6D4C0F8ED492F5F6070621C8A -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16384_none_b2666581d6b482a6\svchost.exe
[2013/07/02 18:45:00 | 000,000,583 | ---- | M] () MD5=39F1C456D95B5199279BA03D8936BAF8 -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.20521_none_b32de2dcefa42bec\svchost.exe
[2013/07/01 12:53:33 | 000,000,609 | ---- | M] () MD5=8316115099683AD1636917F96EE5DF60 -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.20521_none_0f4c7e60a8019d22\svchost.exe
[2012/09/20 07:55:26 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=A46DC432F81473F526E3994AA483E366 -- C:\Windows\erdnt\cache86\svchost.exe
[2012/09/20 07:55:26 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=A46DC432F81473F526E3994AA483E366 -- C:\Windows\SysWOW64\svchost.exe
[2012/09/20 07:55:26 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=A46DC432F81473F526E3994AA483E366 -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16420_none_b2a345c7d68772cb\svchost.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2013/07/01 12:53:33 | 000,002,873 | ---- | M] () MD5=E1D5A1C746222AE602C56F70402B7889 -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16384_none_0e8501058f11f3dc\svchost.exe
[2012/09/20 08:33:52 | 000,029,696 | ---- | M] (Microsoft Corporation) MD5=EDE27EACE742EE2888C5DD36400A2EC0 -- C:\Windows\erdnt\cache64\svchost.exe
[2012/09/20 08:33:52 | 000,029,696 | ---- | M] (Microsoft Corporation) MD5=EDE27EACE742EE2888C5DD36400A2EC0 -- C:\Windows\SysNative\svchost.exe
[2012/09/20 08:33:52 | 000,029,696 | ---- | M] (Microsoft Corporation) MD5=EDE27EACE742EE2888C5DD36400A2EC0 -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.2.9200.16420_none_0ec1e14b8ee4e401\svchost.exe
< MD5 for: TCPIP.SYS >
[2013/06/01 13:33:13 | 002,233,600 | ---- | M] (Microsoft Corporation) MD5=0D05E0147C1329C53AAF97882DEDD96A -- C:\Windows\erdnt\cache64\tcpip.sys
[2013/06/01 13:33:13 | 002,233,600 | ---- | M] (Microsoft Corporation) MD5=0D05E0147C1329C53AAF97882DEDD96A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16628_none_0c2ca018eff62c18\tcpip.sys
[2013/07/19 12:02:51 | 000,370,799 | ---- | M] () MD5=1245F05D3E3429957D3134FE041275AA -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20521_none_0caf3712091a2033\tcpip.sys
[2013/07/09 08:07:17 | 002,233,168 | ---- | M] (Microsoft Corporation) MD5=1794C43A000A47D92B3304FC1E3E512A -- C:\Windows\SysNative\drivers\tcpip.sys
[2013/07/09 08:07:17 | 002,233,168 | ---- | M] (Microsoft Corporation) MD5=1794C43A000A47D92B3304FC1E3E512A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16659_none_0c0d309ef00d9942\tcpip.sys
[2013/07/19 12:02:47 | 000,247,287 | ---- | M] () MD5=247076495D803DAF35E9520D798E8F9F -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16548_none_0c16fe5af00666d3\tcpip.sys
[2013/07/19 12:02:37 | 000,370,776 | ---- | M] () MD5=3CD12C66A2F7C24DF690135EA10AB63D -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16420_none_0c2499fceffd6712\tcpip.sys
[2013/07/19 12:02:42 | 000,368,111 | ---- | M] () MD5=4581602B44F83FB5C6A98F6FB049883E -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16518_none_0c376e1eefee1300\tcpip.sys
[2013/07/19 12:03:02 | 000,365,916 | ---- | M] () MD5=AFFA768E49B1C7569F8C0A747D3A435D -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20652_none_0c8fc97e09318a84\tcpip.sys
[2013/07/19 12:02:57 | 000,368,114 | ---- | M] () MD5=D0C17167AA73E81262247555ED411A85 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20623_none_0cb1398c09185008\tcpip.sys
[2013/07/19 12:02:31 | 000,369,552 | ---- | M] () MD5=D8DA43818052E07D07967B993DD1513A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.16384_none_0be7b9b6f02a76ed\tcpip.sys
[2013/07/19 12:03:07 | 000,360,561 | ---- | M] () MD5=DD358934E340A45C21E763A7CE3CEE38 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20733_none_0ca66b8609206920\tcpip.sys
[2013/07/09 09:51:09 | 002,228,048 | ---- | M] (Microsoft Corporation) MD5=EA2F55C14A30B6D89F3094269A72F9ED -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.2.9200.20767_none_0c89fcea0935224f\tcpip.sys
< MD5 for: USERINIT.EXE >
[2012/07/26 05:08:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E925F7BA032920D58DD284B6181A247 -- C:\Windows\erdnt\cache64\userinit.exe
[2012/07/26 05:08:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E925F7BA032920D58DD284B6181A247 -- C:\Windows\SysNative\userinit.exe
[2012/07/26 05:08:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E925F7BA032920D58DD284B6181A247 -- C:\Windows\WinSxS\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.2.9200.16384_none_34f2617a5b742e02\userinit.exe
[2012/07/26 05:21:00 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=9F6289D194A04A09671FEED4B6CB6EF7 -- C:\Windows\erdnt\cache86\userinit.exe
[2012/07/26 05:21:00 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=9F6289D194A04A09671FEED4B6CB6EF7 -- C:\Windows\SysWOW64\userinit.exe
[2012/07/26 05:21:00 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=9F6289D194A04A09671FEED4B6CB6EF7 -- C:\Windows\WinSxS\x86_microsoft-windows-userinit_31bf3856ad364e35_6.2.9200.16384_none_d8d3c5f6a316bccc\userinit.exe
< MD5 for: WINLOGON.EXE >
[2013/07/01 15:35:46 | 000,053,884 | ---- | M] () MD5=18ADF7FE19EE4B2962AE1EEA1AE80683 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.20521_none_c95425d677a55b32\winlogon.exe
[2013/07/01 15:35:47 | 000,001,620 | ---- | M] () MD5=281332D0980B45CDE2F5C3D3EA4B11C0 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.20534_none_c94c56c877aac328\winlogon.exe
[2013/07/01 15:35:46 | 000,053,876 | ---- | M] () MD5=6882614B8A114DD84259957E158BECFF -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.16420_none_c8c988c15e88a211\winlogon.exe
[2013/07/01 15:35:45 | 000,053,889 | ---- | M] () MD5=6B845FA17B51E9933A5FF7A9C4711ED6 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.16384_none_c88ca87b5eb5b1ec\winlogon.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2012/10/11 07:46:58 | 000,517,120 | ---- | M] (Microsoft Corporation) MD5=BCF2036A0DD579E47C008C133550283E -- C:\Windows\erdnt\cache64\winlogon.exe
[2012/10/11 07:46:58 | 000,517,120 | ---- | M] (Microsoft Corporation) MD5=BCF2036A0DD579E47C008C133550283E -- C:\Windows\SysNative\winlogon.exe
[2012/10/11 07:46:58 | 000,517,120 | ---- | M] (Microsoft Corporation) MD5=BCF2036A0DD579E47C008C133550283E -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.2.9200.16433_none_c8c1b9b35e8e0a07\winlogon.exe
< >
< %systemroot%*.* /U /s >
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[3 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[3 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[2 C:\Windows\Inf\Oracle Data Provider for .NET\*.tmp files -> C:\Windows\Inf\Oracle Data Provider for .NET\*.tmp -> ]
[1 C:\Windows\Inf\Oracle Data Provider for .NET\0000\*.tmp files -> C:\Windows\Inf\Oracle Data Provider for .NET\0000\*.tmp -> ]
[1 C:\Windows\Inf\Oracle Data Provider for .NET\0009\*.tmp files -> C:\Windows\Inf\Oracle Data Provider for .NET\0009\*.tmp -> ]
[4 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[2 C:\Windows\Panther\*.tmp files -> C:\Windows\Panther\*.tmp -> ]
[1 C:\Windows\WinSxS\*.tmp files -> C:\Windows\WinSxS\*.tmp -> ]
< %SYSTEMDRIVE%\*.exe >
< %ALLUSERSPROFILE%\Application Data\*. >
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
< %APPDATA%\*. >
[2012/09/27 21:13:11 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Adobe
[2013/04/19 23:44:01 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Apple Computer
[2013/03/07 19:52:48 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\DC++
[2012/10/05 12:28:38 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Digiarty
[2012/12/18 14:27:07 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\driveridentifier
[2013/05/11 11:00:49 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Dropbox
[2012/09/26 09:35:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\e-academy Inc
[2012/10/22 10:53:27 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ExpressFiles
[2013/07/15 21:42:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\GarenaPlus
[2013/07/01 21:39:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQ-Profile
[2013/07/01 21:39:03 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ICQM
[2013/01/16 14:51:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Identities
[2013/05/05 19:34:41 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IObit
[2013/01/22 17:22:17 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\IrfanView
[2013/07/17 14:46:24 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\JKI
[2013/08/09 10:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\KillProcess
[2013/01/03 23:46:51 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Lingoes
[2012/09/24 22:02:28 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Macromedia
[2013/08/06 17:16:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Malwarebytes
[2013/08/07 20:15:27 | 000,000,000 | --SD | M] -- C:\Users\SSejnt\AppData\Roaming\Microsoft
[2012/09/28 23:13:32 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Microsoft FxCop
[2013/07/02 20:31:29 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda
[2012/10/14 20:51:19 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Miranda IM HotCoffee
[2013/08/15 20:56:32 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Mozilla
[2012/09/28 23:56:53 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Notepad++
[2012/12/15 18:37:39 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\NuGet
[2012/10/17 20:58:18 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Oracle SQL Developer Data Modeler
[2013/05/29 15:05:09 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\ProcessLasso
[2012/10/17 13:38:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Quest Software
[2013/01/12 15:43:56 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\QuickScan
[2013/07/22 11:20:42 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Radmin
[2013/08/16 07:37:47 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Skype
[2012/10/26 17:04:11 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Sony Ericsson
[2013/01/05 19:31:43 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\SQL Developer
[2013/02/04 15:18:55 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Stellarium
[2012/09/26 12:14:05 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Subversion
[2013/08/06 22:06:02 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\SUPERAntiSpyware.com
[2013/07/17 17:14:10 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\systweak
[2013/01/16 14:51:33 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\TeamViewer
[2012/10/26 17:06:20 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Teleca
[2013/03/11 20:04:34 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\uTorrent
[2013/08/16 08:20:49 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\vlc
[2012/11/13 02:16:30 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\wargaming.net
[2013/08/16 07:58:31 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Winamp
[2013/04/04 01:30:23 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\WinRAR
[2013/07/09 09:49:59 | 000,000,000 | ---D | M] -- C:\Users\SSejnt\AppData\Roaming\Xilinx
< %APPDATA%\*.exe /s >
[2013/07/01 21:39:02 | 028,696,936 | ---- | M] (ICQ) -- C:\Users\SSejnt\AppData\Roaming\ICQM\icq.exe
[2013/07/01 21:39:04 | 035,436,368 | ---- | M] (ICQ) -- C:\Users\SSejnt\AppData\Roaming\ICQM\icqsetup.exe
[2013/07/01 21:39:03 | 004,739,616 | ---- | M] () -- C:\Users\SSejnt\AppData\Roaming\ICQM\ICQ\dll\mailrusputnik.exe
[2012/11/20 19:57:44 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4A5667B2-5D13-46C2-85B5-9D46A6096F61}\_112D608FD02CD87FDC7735.exe
[2012/11/20 19:57:44 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4A5667B2-5D13-46C2-85B5-9D46A6096F61}\_79DFA17CFF2876593FBC23.exe
[2012/11/20 19:57:44 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4A5667B2-5D13-46C2-85B5-9D46A6096F61}\_853F67D554F05449430E7E.exe
[2013/08/09 11:04:04 | 000,110,080 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4FC9DA9D-F608-454E-8191-D7EFFDCC5726}\IconD7F16134.exe
[2013/08/09 11:04:04 | 000,110,080 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{4FC9DA9D-F608-454E-8191-D7EFFDCC5726}\IconF7A21AF7.exe
[2012/09/26 09:35:19 | 000,009,662 | R--- | M] () -- C:\Users\SSejnt\AppData\Roaming\Microsoft\Installer\{6CEF2BC6-8929-44EE-8360-175513E1A49A}\_853F67D554F05449430E7E.exe
[2013/03/09 14:10:19 | 001,051,984 | ---- | M] (BitTorrent Inc.) -- C:\Users\SSejnt\AppData\Roaming\uTorrent\uTorrent.exe
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\Tasks\*.job >
[2013/08/16 21:30:52 | 000,000,830 | ---- | M] () -- C:\Windows\Tasks\Adobe Flash Player Updater.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | M] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 8bee0cfa-a9f0-488d-be60-8a3378636d4c.job
[2013/08/06 22:06:05 | 000,000,524 | ---- | M] () -- C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task fc22301f-1534-4ee6-b345-db1638dc2d2f.job
< %systemroot%\system32\drivers\*.sys /lockedfiles >
< %systemroot%\System32\config\*.sav >
< %systemroot%\system32\*.dll /lockedfiles >
< %systemroot%\system32\drivers\*.sys /3 >
< %systemroot%\system32\*.* /3 >
< %SYSTEMDRIVE%\*.exe >
< >
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"F.lux" = "C:\Users\SSejnt\Local Settings\Apps\F.lux\flux.exe" /noshow -- [2009/08/29 08:00:12 | 000,966,656 | ---- | M] ()
"Sony PC Companion" = "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background -- [2013/02/04 16:39:46 | 000,447,152 | ---- | M] (Sony)
"GarenaPlus" = "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch -- [2013/06/19 05:38:49 | 009,873,200 | ---- | M] ()
"Lingoes" = C:\Program Files (x86)\Lingoes\Translator2\Lingoes.exe -minimize -- [2011/10/31 10:46:16 | 002,375,680 | ---- | M] (Lingoes Project)
"Skype" = "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun -- [2013/06/21 09:58:32 | 019,875,432 | R--- | M] (Skype Technologies S.A.)
"icq" = C:\Users\SSejnt\AppData\Roaming\ICQM\icq.exe -CU -- [2013/07/01 21:39:02 | 028,696,936 | ---- | M] (ICQ)
"NIRegistrationWizard" = C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1033 -- [2010/06/21 14:53:18 | 000,846,520 | ---- | M] ()
"SUPERAntiSpyware" = C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe -- [2013/05/15 03:08:43 | 005,622,512 | ---- | M] (SUPERAntiSpyware.com)
< >
< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >
[2013/07/31 00:47:36 | 000,276,376 | ---- | M] (Mozilla Corporation) MD5=A6FE3BD4E3FC9C5583C92DF311A9C258 -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2013/07/26 05:49:06 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=7BA1862B8A5698DC5FCFDFF3BC359DE9 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
< %PROGRAMFILES%\Opera\opera.exe /md5 >
< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
< >
< %SystemDrive%\PhysicalMBR.bin /md5 >
[2013/08/17 08:59:06 | 000,000,512 | ---- | M] () MD5=E829FE64C90E81B43840A7CB845D28AF -- C:\PhysicalMBR.bin
< >
< *crack* /s >
[2013/05/30 13:26:19 | 000,004,125 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\CrackedCom.class
< *keygen* /s >
[2013/05/29 10:44:56 | 000,109,056 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\bin\ssh-keygen.exe
< *loader* /s >
[2006/10/26 13:40:34 | 000,057,344 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader.dll
[2006/10/26 13:40:34 | 000,005,120 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader.tlb
[2012/07/26 19:08:06 | 000,102,864 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader80.dll
[2012/07/26 13:20:02 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\coloader80.tlb
[2012/12/07 00:38:40 | 000,268,344 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2012/12/07 00:38:40 | 000,019,000 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2012/08/29 23:07:40 | 000,110,592 | ---- | M] () -- \Program Files (x86)\Driver Identifier\DriverUploader.exe
[2010/09/17 18:33:36 | 000,011,436 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\AutoLoader.pm
[2010/09/17 18:33:36 | 000,012,953 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\SelfLoader.pm
[2009/02/28 10:58:38 | 000,001,277 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\Locale\Maketext\GutsLoader.pm
[2010/09/17 18:33:36 | 000,000,727 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\ByteLoader.pm
[2010/09/17 18:33:36 | 000,028,961 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\DynaLoader.pm
[2010/09/17 18:33:36 | 000,010,818 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\XSLoader.pm
[2010/09/17 18:33:36 | 000,000,000 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\auto\ByteLoader\ByteLoader.bs
[2010/09/17 18:33:36 | 000,021,504 | ---- | M] () -- \Program Files (x86)\FreeFileSharingBox\msysgit\lib\perl5\5.8.8\msys\auto\ByteLoader\ByteLoader.dll
[2013/02/07 11:11:17 | 000,051,504 | ---- | M] () -- \Program Files (x86)\Garena Plus\FileLoader.dll
[2013/01/30 10:26:41 | 002,941,232 | ---- | M] () -- \Program Files (x86)\Garena Plus\ggdownloader.dll
[2013/04/30 13:01:26 | 000,248,832 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\GarenaTalkLoader.exe
[2013/01/30 12:09:14 | 000,082,224 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\update\temp\restore\10094\BTalkLoader.exe
[2013/02/13 12:47:02 | 000,082,224 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\update\temp\restore\10095\BTalkLoader.exe
[2013/04/19 23:57:23 | 000,001,938 | ---- | M] () -- \Program Files (x86)\IObit\Advanced SystemCare 6\Downloader.log
[2012/05/22 09:43:16 | 000,214,528 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.exe
[2012/05/22 09:43:16 | 000,593,293 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloader.jar
[2012/05/22 09:43:16 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderBETA.exe
[2012/05/22 09:43:16 | 000,218,816 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderD3D.exe
[2012/05/22 09:43:16 | 000,219,264 | ---- | M] () -- \Program Files (x86)\JDownloader\JDownloaderPortable.exe
[2012/10/25 12:04:09 | 000,000,105 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\img\hosterlogos\uploader.pl.png
[2012/10/25 12:06:10 | 000,011,071 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\MyDownloaderNet.class
[2013/05/30 13:21:57 | 000,004,584 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\OmpLoaderOrg.class
[2013/05/30 13:20:10 | 000,003,880 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\UploaderJp.class
[2012/10/25 12:05:43 | 000,007,073 | ---- | M] () -- \Program Files (x86)\JDownloader\jd\plugins\hoster\UploaderPl.class
[2012/05/22 09:43:16 | 000,032,222 | ---- | M] () -- \Program Files (x86)\JDownloader\licenses\jdownloader.license
[2012/11/23 10:03:16 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft ASP.NET\ASP.NET MVC 4\Packages\jquery.mobile.1.2.0\content\Content\images\ajax-loader.gif
[2012/11/23 10:03:16 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft ASP.NET\ASP.NET Web Pages\v2.0\Packages\jquery.mobile.1.2.0\content\Content\images\ajax-loader.gif
[2013/05/16 19:59:58 | 000,039,648 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Design\Microsoft.LightSwitch.CommandLineBuildLoader.dll
[2013/05/16 19:59:58 | 000,042,168 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Design\Microsoft.LightSwitch.Design.Loader.dll
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Packages\jquery.mobile.1.2.0\Content\Content\Images\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Packages\Microsoft.LightSwitch.Client.JavaScript.Runtime.1.0.0.0\Content\Content\Images\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft SDKs\LightSwitch\v3.0\Packages\Microsoft.LightSwitch.Client.JavaScript.Runtime.1.0.0.0\Content\Content\Images\msls-loader-light.gif
[2012/02/11 10:00:10 | 000,026,200 | ---- | M] () -- \Program Files (x86)\Microsoft SQL Server\110\Tools\Binn\SqlResourceLoader.dll
[2010/03/18 23:21:56 | 000,063,312 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\coloader80.dll
[2010/03/18 01:57:18 | 000,001,373 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\coloader80.dll.manifest
[2010/03/18 00:17:14 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\coloader80.tlb
[2012/07/26 19:08:06 | 000,102,864 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\coloader80.dll
[2012/07/26 14:30:52 | 000,001,373 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\coloader80.dll.manifest
[2012/07/26 13:20:02 | 000,004,096 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\coloader80.tlb
[2013/03/15 00:05:56 | 000,376,040 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\Architecture Tools\Repository\Microsoft.VisualStudio.Repository.Code.Native.Loader.dll
[2013/03/15 00:05:56 | 001,420,504 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\Architecture Tools\Repository\Microsoft.VisualStudio.Repository.Runtime.Loader.dll
[2012/07/26 19:08:06 | 000,036,320 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\ConcurrencyVisualizer\PdbDownloader.exe
[2012/07/26 19:08:06 | 000,039,008 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.LightSwitch.CommandLineBuildLoader.dll
[2012/07/26 19:08:06 | 000,042,040 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.LightSwitch.Design.Loader.dll
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptClientProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplates\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptClientProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptClientProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptCSharpLightSwitchProjectTemplate\msls-loader-light.gif
[2013/04/23 19:07:08 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\ajax-loader.gif
[2013/04/23 19:07:00 | 000,008,765 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-dark.gif
[2013/04/23 19:07:00 | 000,008,788 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ProjectTemplatesCache\LightSwitch\1033\JScriptVisualBasicLightSwitchProjectTemplate\msls-loader-light.gif
[2012/07/26 19:08:06 | 000,024,760 | ---- | M] () -- \Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\ReferenceAssemblies\v2.0\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.dll
[2013/03/08 17:25:36 | 000,017,072 | ---- | M] () -- \Program Files (x86)\Microsoft Web Tools\Page Inspector\Microsoft.VisualStudio.Web.PageInspector.Loader.dll
[2008/09/16 21:48:16 | 000,034,492 | ---- | M] () -- \Program Files (x86)\Miranda Micro 2.0\Skins\IEView\Micro\!tools\cursor\Silverpoint_Loader.ani
[2012/02/20 10:08:18 | 000,031,232 | ---- | M] () -- \Program Files (x86)\National Instruments\Shared\TDM Excel Add-In\usiLoaderEbd.dll
[2011/07/18 23:33:32 | 000,008,787 | ---- | M] () -- \Program Files (x86)\Notepad++\user.manual\sites\all\modules\fancy_login\images\ajax-loader.gif
[2008/03/27 15:46:46 | 000,458,752 | R--- | M] () -- \Program Files (x86)\Sony Ericsson\Mobile4\Sync Manager\NotesPimAdaptorLoader.dll
[2012/10/24 15:10:46 | 000,001,702 | ---- | M] () -- \Program Files (x86)\Sony Ericsson\Update Engine\licenses\loaderbinarylegal.txt
[2012/07/25 13:12:10 | 000,013,831 | ---- | M] () -- \Program Files (x86)\Windows Kits\8.0\Include\um\libloaderapi.h
[2012/07/25 18:46:28 | 000,211,456 | ---- | M] () -- \Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Te.Loaders.dll
[2012/07/25 18:46:28 | 000,211,456 | ---- | M] () -- \Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\x64\Te.Loaders.dll
[2013/07/16 15:41:00 | 000,098,816 | ---- | M] () -- \Program Files\Basler\pylon 4\genicam\bin\win32_i86\GenApi\Generic\XMLLoader_MD_VC100_v2_3.dll
[2013/07/16 15:50:40 | 000,118,784 | ---- | M] () -- \Program Files\Basler\pylon 4\genicam\bin\win64_x64\GenApi\Generic\XMLLoader_MD_VC100_v2_3.dll
[2012/09/05 14:58:31 | 000,699,264 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe
[2012/09/06 19:55:19 | 000,000,032 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe.md5
[2012/09/06 18:42:58 | 000,457,216 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\en-US\setupdownloader.ui
[2012/09/06 19:55:19 | 000,000,032 | ---- | M] () -- \Program Files\Common Files\Bitdefender\SetupInformation\downloader\en-US\setupdownloader.ui.md5
[2012/12/07 00:38:40 | 000,364,088 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2012/12/07 00:38:40 | 000,019,000 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2012/09/26 12:09:29 | 000,000,948 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\config\ModuleAutoDeps\org-openide-loaders.xml
[2012/09/26 12:09:30 | 000,000,411 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\config\Modules\org-openide-loaders.xml
[2012/09/26 12:09:31 | 001,170,520 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\modules\org-openide-loaders.jar
[2012/09/26 12:09:31 | 000,006,244 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\modules\locale\org-openide-loaders_ja.jar
[2012/09/26 12:09:31 | 000,005,873 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\modules\locale\org-openide-loaders_zh_CN.jar
[2012/09/26 12:09:31 | 000,000,457 | ---- | M] () -- \Program Files\Java\jdk1.7.0_07\lib\visualvm\platform\update_tracking\org-openide-loaders.xml
[2012/02/11 08:43:56 | 000,034,904 | ---- | M] () -- \Program Files\Microsoft SQL Server\110\Tools\Binn\SqlResourceLoader.dll
[2012/02/20 10:08:26 | 000,038,400 | ---- | M] () -- \Program Files\National Instruments\Shared\TDM Excel Add-In\usiLoaderEbd.dll
[2012/09/26 12:00:40 | 000,468,131 | ---- | M] () -- \Program Files\Oracle Developer\sqldeveloper\modules\oracle.classloader_11.1.1.jar
[2012/07/26 09:54:43 | 000,039,485 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.Bing_1.2.0.137_x64__8wekyb3d8bbwe\shell\js\backgroundImageLoader.js
[2012/07/26 09:53:42 | 000,002,809 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\DependencyLoader\DependencyLoader.js
[2012/07/26 09:53:43 | 000,001,583 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellComposeDependencyLoader.js
[2012/07/26 09:53:43 | 000,001,711 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellReadDependencyLoader.js
[2012/07/26 09:53:43 | 000,002,509 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellShareAnythingControlDependencyLoader.js
[2012/07/26 09:53:43 | 000,002,394 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernPeople\appframe\BackgroundLoader.js
[2012/07/26 09:53:43 | 000,005,028 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernShareAnything\ShareDataLoader.js
[2013/04/01 19:54:02 | 000,002,089 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\DependencyLoader\DependencyLoader.js
[2013/04/01 19:54:08 | 000,001,326 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellComposeDependencyLoader.js
[2013/04/01 19:54:08 | 000,001,208 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellReadDependencyLoader.js
[2013/04/01 19:54:08 | 000,002,552 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernAttachmentWell\AttachmentWellShareAnythingControlDependencyLoader.js
[2013/04/01 19:54:10 | 000,001,915 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernPeople\appframe\BackgroundLoader.js
[2013/04/01 19:54:10 | 000,005,019 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernShareAnything\ShareDataLoader.js
[2012/07/26 09:54:40 | 000,049,108 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.XboxLIVEGames_1.0.927.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2012/07/26 09:54:17 | 000,049,108 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneMusic_1.0.927.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:21:24 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneMusic_1.3.59.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:21:24 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneMusic_1.4.18.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2012/07/26 09:54:24 | 000,049,108 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneVideo_1.0.927.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:19:59 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneVideo_1.3.59.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2013/05/20 12:19:59 | 000,053,549 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.ZuneVideo_1.4.19.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2012/06/09 19:19:37 | 000,055,296 | ---- | M] () -- \Program Files\WinRAR\Formats\ace32loader.exe
[2012/12/05 15:35:43 | 000,016,654 | ---- | M] () -- \ProgramData\GarenaMessenger\update\12154\FileLoader.dll
[2013/02/13 12:44:17 | 000,020,929 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12168\FileLoader.dll
[2013/02/13 12:46:10 | 000,945,655 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12168\ggdownloader.dll
[2013/02/13 12:45:10 | 000,027,494 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12168\bbtalk\BTalkLoader.exe
[2013/05/08 12:51:57 | 000,080,425 | ---- | M] () -- \ProgramData\GarenaMessenger\UpdateManager\12226\bbtalk\GarenaTalkLoader.exe
[2012/10/25 12:03:07 | 000,001,949 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk
[2012/10/25 12:03:06 | 000,001,928 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
[2012/10/25 12:03:07 | 000,002,005 | ---- | M] () -- \ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
[2013/03/26 14:13:12 | 000,072,638 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.gif
[2013/03/26 14:13:12 | 000,003,032 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\loader.png
[2013/03/26 14:13:12 | 000,009,772 | ---- | M] () -- \ProgramData\Skype\Apps\login\images\retina\loader@2x.png
[2012/12/05 15:35:43 | 000,016,654 | ---- | M] () -- \Users\All Users\GarenaMessenger\update\12154\FileLoader.dll
[2013/02/13 12:44:17 | 000,020,929 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12168\FileLoader.dll
[2013/02/13 12:46:10 | 000,945,655 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12168\ggdownloader.dll
[2013/02/13 12:45:10 | 000,027,494 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12168\bbtalk\BTalkLoader.exe
[2013/05/08 12:51:57 | 000,080,425 | ---- | M] () -- \Users\All Users\GarenaMessenger\UpdateManager\12226\bbtalk\GarenaTalkLoader.exe
[2012/10/25 12:03:07 | 000,001,949 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk
[2012/10/25 12:03:06 | 000,001,928 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
[2012/10/25 12:03:07 | 000,002,005 | ---- | M] () -- \Users\All Users\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
[2013/03/26 14:13:12 | 000,072,638 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.gif
[2013/03/26 14:13:12 | 000,003,032 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\loader.png
[2013/03/26 14:13:12 | 000,009,772 | ---- | M] () -- \Users\All Users\Skype\Apps\login\images\retina\loader@2x.png
[2013/08/16 12:36:50 | 000,001,174 | ---- | M] () -- \Users\SSejnt\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HFOY98RO\downloader[1].js
[2013/08/16 12:36:50 | 000,000,723 | ---- | M] () -- \Users\SSejnt\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UH4XZZ37\downloaderror[1].js
[2012/10/25 12:03:10 | 000,002,041 | ---- | M] () -- \Users\SSejnt\Desktop\JDownloader.lnk
[2013/04/17 20:04:55 | 000,001,212 | ---- | M] () -- \Users\SSejnt\Desktop\PctRssService\PctRssService\XmlDownloader.cs
[2012/04/10 19:52:43 | 000,002,101 | ---- | M] () -- \Users\SSejnt\Desktop\PctRssService\RSS_Reader\classes\PluginLoader.cs
[2013/04/20 13:33:02 | 000,001,323 | ---- | M] () -- \Users\SSejnt\Documents\Visual Studio 2012\Projects\ATNET\ATNET\Downloader.cs
[2013/04/20 12:01:23 | 000,002,043 | ---- | M] () -- \Users\SSejnt\Documents\Visual Studio 2012\Projects\ATNET\Host\PluginLoader.cs
[2013/04/30 12:47:28 | 000,001,628 | ---- | M] () -- \Users\SSejnt\Documents\Visual Studio 2012\Projects\Test\Test\Downloader.cs
[2012/02/14 10:26:06 | 000,007,610 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.MefExtensions\Modularity\MefFileModuleTypeLoader.Desktop.cs
[2012/02/14 10:26:06 | 000,002,310 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.MefExtensions\Regions\MefRegionNavigationContentLoader.cs
[2012/02/14 10:26:06 | 000,002,851 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.Tests\Mocks\MockAsyncModuleTypeLoader.cs
[2012/02/14 10:26:06 | 000,002,804 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.Tests\Mocks\MockModuleTypeLoader.cs
[2012/02/14 10:26:06 | 000,006,112 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.Tests\Modularity\FileModuleTypeLoaderFixture.Desktop.cs
[2012/02/14 10:26:06 | 000,001,423 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism.UnityExtensions.Tests\Mocks\MockModuleLoader.cs
[2012/02/14 10:26:06 | 000,008,863 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\FileModuleTypeLoader.Desktop.cs
[2012/02/14 10:26:06 | 000,002,645 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\IModuleTypeLoader.cs
[2012/02/14 10:26:06 | 000,003,372 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\ModuleTypeLoaderNotFoundException.cs
[2012/02/14 10:26:06 | 000,001,853 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Modularity\ModuleTypeLoaderNotFoundException.Desktop.cs
[2012/02/14 10:26:08 | 000,002,173 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Regions\IRegionNavigationContentLoader.cs
[2012/02/14 10:26:08 | 000,007,264 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Desktop\Prism\Regions\RegionNavigationContentLoader.cs
[2012/02/14 10:26:08 | 000,012,968 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism.MefExtensions\Modularity\MefXapModuleTypeLoader.cs
[2012/02/14 10:26:08 | 000,012,080 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism.Tests\Modularity\XapModuleTypeLoaderFixture.cs
[2012/02/14 10:26:08 | 000,004,468 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism\Modularity\FileDownloader.cs
[2012/02/14 10:26:08 | 000,002,086 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism\Modularity\IFileDownloader.cs
[2012/02/14 10:26:08 | 000,013,391 | ---- | M] () -- \Users\SSejnt\PrismLibrary\Silverlight\Prism\Modularity\XapModuleTypeLoader.cs
[2013/07/16 09:35:48 | 000,024,888 | ---- | M] () -- \Windows\assembly\GAC_32\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader\11.0.0.0__b03f5f7f11d50a3a\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.dll
[2013/07/16 09:35:48 | 000,023,352 | ---- | M] () -- \Windows\assembly\GAC_64\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader\11.0.0.0__b03f5f7f11d50a3a\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.dll
[2013/07/17 12:37:34 | 000,020,480 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Tde5bef3b#\0c1a58290a48c81d380e6ea08900091e\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll
[2013/07/17 12:37:34 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Tde5bef3b#\0c1a58290a48c81d380e6ea08900091e\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll.aux
[2013/07/17 12:39:52 | 000,577,536 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.V09707a24#\68f1b2b3afd72f1bf37b2c3489ea9f80\Microsoft.VisualStudio.Repository.Code.Native.Loader.ni.dll
[2013/07/17 12:39:52 | 000,001,324 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.V09707a24#\68f1b2b3afd72f1bf37b2c3489ea9f80\Microsoft.VisualStudio.Repository.Code.Native.Loader.ni.dll.aux
[2013/07/17 12:39:54 | 002,507,776 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Vbd7eeb5a#\ff6aa142ca7524b2c52073c3e3d6dcb5\Microsoft.VisualStudio.Repository.Runtime.Loader.ni.dll
[2013/07/17 12:39:54 | 000,001,708 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Vbd7eeb5a#\ff6aa142ca7524b2c52073c3e3d6dcb5\Microsoft.VisualStudio.Repository.Runtime.Loader.ni.dll.aux
[2013/07/17 12:51:59 | 000,027,136 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Tde5bef3b#\234a53cd7ab8eaaa7fd5fda62cff6a5f\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll
[2013/07/17 12:51:59 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Tde5bef3b#\234a53cd7ab8eaaa7fd5fda62cff6a5f\Microsoft.TeamFoundation.WorkItemTracking.Client.DataStoreLoader.ni.dll.aux
[2012/07/26 19:41:24 | 001,408,624 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Loader_dll_x86
[2012/09/26 09:59:03 | 001,408,624 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Loader_dll_x86_GAC
[2012/07/26 19:41:24 | 000,375,936 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Native_Loader_dll_x86
[2012/09/26 09:59:03 | 000,375,936 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\41778AFEA57ECFB36A893AAAABA5A8C0\11.0.50727\Repository_Native_Loader_dll_x86_GAC
[2010/03/18 23:21:56 | 000,063,312 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\4896B46DF242CB230B805782605ECF44\10.0.30319\FL_coloader80_dll_128691_128691_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8
[2010/03/18 00:17:14 | 000,004,096 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\4896B46DF242CB230B805782605ECF44\10.0.30319\FL_coloader80_tlb_128927_128927_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8
[2013/07/16 10:20:49 | 000,376,040 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Repository.Code.Native.Loader\v4.0_11.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Repository.Code.Native.Loader.dll
[2013/07/16 10:20:49 | 001,420,504 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Repository.Runtime.Loader\v4.0_11.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Repository.Runtime.Loader.dll
[2013/07/16 09:39:20 | 000,017,072 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualStudio.Web.PageInspector.Loader\v4.0_1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Web.PageInspector.Loader.dll
[2012/09/20 10:33:02 | 000,005,810 | ---- | M] () -- \Windows\SoftwareDistribution\Download\f7f3f78cb5a30b7a9964504cdf37e9a9\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16420_none_b42d41dcf63e0664.manifest
[2012/09/20 11:24:25 | 000,005,810 | ---- | M] () -- \Windows\SoftwareDistribution\Download\f7f3f78cb5a30b7a9964504cdf37e9a9\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20521_none_b4b7def20f5abf85.manifest
[2012/07/26 04:46:24 | 000,003,072 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:46:25 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:46:36 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-stringloader-l1-1-0.dll
[2012/07/26 05:18:20 | 000,036,352 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012/07/26 04:46:24 | 000,003,072 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:46:25 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:46:36 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-stringloader-l1-1-0.dll
[2012/07/26 05:18:20 | 000,036,352 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[1 \Windows\WinSxS\*.tmp files -> \Windows\WinSxS\*.tmp -> ]
[2012/07/26 06:53:16 | 001,084,144 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16384_none_891afac5ef497dae\hvloader.efi
[2012/07/26 06:53:16 | 000,998,128 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16384_none_891afac5ef497dae\hvloader.exe
[2012/10/11 10:42:55 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16433_none_89500bfdef21d5c9\hvloader.efi
[2012/10/11 10:42:55 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16433_none_89500bfdef21d5c9\hvloader.exe
[2013/03/02 12:39:39 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16548_none_894a3f69ef256d94\hvloader.efi
[2013/03/02 12:39:39 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16548_none_894a3f69ef256d94\hvloader.exe
[2013/03/02 12:39:39 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16579_none_892acfefef3cdabe\hvloader.efi
[2013/04/09 07:24:49 | 000,998,152 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16579_none_892acfefef3cdabe\hvloader.exe
[2013/06/01 14:02:14 | 001,084,160 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16628_none_895fe127ef1532d9\hvloader.efi
[2013/06/01 14:02:14 | 000,998,144 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.16628_none_895fe127ef1532d9\hvloader.exe
[2012/10/11 09:29:20 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20534_none_89daa913083e8eea\hvloader.efi
[2012/10/11 09:29:20 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20534_none_89daa913083e8eea\hvloader.exe
[2013/03/02 12:22:17 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20652_none_89c30a8d08509145\hvloader.efi
[2013/03/02 12:22:17 | 000,998,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20652_none_89c30a8d08509145\hvloader.exe
[2013/03/02 12:22:17 | 001,084,136 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20683_none_89a39b130867fe6f\hvloader.efi
[2013/04/09 02:24:11 | 000,998,152 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20683_none_89a39b130867fe6f\hvloader.exe
[2013/06/01 14:49:37 | 001,084,160 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20733_none_89d9ac95083f6fe1\hvloader.efi
[2013/06/01 14:49:37 | 000,998,144 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.2.9200.20733_none_89d9ac95083f6fe1\hvloader.exe
[2012/07/26 05:05:30 | 000,047,616 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.2.9200.16384_none_9ebdc35619670551\dmloader.dll
[2012/07/26 04:35:54 | 000,003,072 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_637b975b05942933\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:35:54 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_637b975b05942933\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:35:58 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_637b975b05942933\api-ms-win-core-stringloader-l1-1-0.dll
[2012/07/26 09:49:21 | 000,004,656 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a.manifest
[2012/07/26 09:49:21 | 000,029,936 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winload.efi.mui_35ee487d
[2012/07/26 09:49:21 | 000,029,936 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winload.exe.mui_3bc5b827
[2012/07/26 09:49:21 | 000,020,208 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winresume.efi.mui_f412814e
[2012/07/26 09:49:21 | 000,020,208 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a_winresume.exe.mui_ff8b5358
[2013/07/16 11:27:22 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a.manifest
[2013/07/16 11:27:22 | 001,403,296 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winload.efi_75834aa0
[2013/07/16 11:27:22 | 001,271,584 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winload.exe_75835076
[2013/07/16 11:27:23 | 001,217,352 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winresume.efi_85cd069f
[2013/07/16 11:27:23 | 001,093,904 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a_winresume.exe_85cd1215
[2012/07/26 10:11:35 | 000,000,596 | ---- | M] () -- \Windows\WinSxS\FileMaps\programdata_microsoft_network_downloader_7fafaef6d33e4371.cdf-ms
[2012/07/26 09:47:51 | 000,004,656 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.2.9200.16384_en-us_cf62616a6dc80c6a.manifest
[2012/07/26 07:00:58 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16384_none_b3f06196f66b163f.manifest
[2012/09/20 10:33:02 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16420_none_b42d41dcf63e0664.manifest
[2012/10/11 09:33:59 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16433_none_b42572cef6436e5a.manifest
[2013/04/09 08:04:17 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16579_none_b40036c0f65e734f.manifest
[2013/06/01 13:31:54 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.16628_none_b43547f8f636cb6a.manifest
[2012/09/20 11:24:25 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20521_none_b4b7def20f5abf85.manifest
[2012/10/11 09:26:48 | 000,005,810 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20534_none_b4b00fe40f60277b.manifest
[2013/04/09 02:53:04 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20683_none_b47901e40f899700.manifest
[2013/06/01 14:10:50 | 000,005,808 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.2.9200.20733_none_b4af13660f610872.manifest
[2012/07/26 05:18:20 | 000,036,352 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.2.9200.16384_none_429f27d26109941b\dmloader.dll
[2012/07/26 04:46:24 | 000,003,072 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_075cfbd74d36b7fd\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/07/26 04:46:25 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_075cfbd74d36b7fd\api-ms-win-core-libraryloader-l1-1-1.dll
[2012/07/26 04:46:36 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.2.9200.16384_none_075cfbd74d36b7fd\api-ms-win-core-stringloader-l1-1-0.dll
< End of report >