Prosím o kontrolu
Napsal: 15 srp 2011 17:30
Prosím o preventivku. Poslední dobou je počítač nějak pomalejší. Omlovám se log je nějak moc dlouhý, dám ho do více příspěvků. Předem děkuji za pomoc.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ladivojna at 2011-08-15 18:19:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 247 GB (53%) free of 464 GB
Total RAM: 4094 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:19:06, on 15.8.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\YoWindow\yowindow.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\IObit\Game Booster\gbtray.exe
C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ladivojna.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5t5871y854
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5t5871y854
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5t5871y854
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [4StoryPrePatch] C:\Program Files (x86)\Gameforge4D\4Story\PrePatch.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Ladivojna\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: YoWindow.lnk = C:\Program Files (x86)\YoWindow\yowindow.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Rainmeter.lnk = C:\Program Files\Rainmeter\Rainmeter.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer Group - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13932 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 31372048
\??\C:\Windows\system32\conhost.exe "7593504451035886947-671310556-1300112177-1823652912829323802-1360155018-1307294881
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
C:\Windows\system32\svchost.exe -k HsfXAudioService
c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll" saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll" saHooker_Initialize_and_Wait
"C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe"
"C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Apoint2K\Apoint.exe"
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
WLIDSvcM.exe 2944
"C:\Program Files\Apoint2K\ApMsgFwd.exe" -s{05FA8492-C047-4207-BE65-780D8591C113}
"Apntex.exe"
\??\C:\Windows\system32\conhost.exe "1377162195-2005680663-584036402-3503917469732703617553956181435722546-1790203433
"C:\Program Files\Apoint2K\HidFind.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files\Rainmeter\Rainmeter.exe"
"C:\Program Files (x86)\YoWindow\yowindow.exe" -mt
"C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {B69CE377-61F2-45D4-B6D8-A06E9F6708B3}
"C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe"
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C892C0.210654736 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C89160.1240234175 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C896E0.1350638222 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C89580.99926987 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Ladivojna\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.31.137.7_0\McChPlg.dll" --lang=cs --channel=4284.047C5380.1793407927 /prefetch:4
"C:\Program Files (x86)\IObit\Game Booster\gbtray.exe"
C:\Windows\system32\msiexec.exe /V
"C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe" DFROMKIT
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.07BA4840.95193968 /prefetch:3
"C:\Users\Ladivojna\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3501040063-1355053042-2835894162-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3501040063-1355053042-2835894162-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2011-07-04 978496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2011-04-08 309096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}]
IObit Toolbar - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-08-12 386264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2011-04-08 251928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2011-04-08 309096]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2011-07-04 978496]
{32099AAC-C132-4136-9E9A-4E364A424E17}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2011-04-08 251928]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]
{0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - IObit Toolbar - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"mwlDaemon"=C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe [2010-02-01 349552]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-08-06 8060960]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2009-05-22 295936]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-01-13 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2009-09-30 823840]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Google Update"=C:\Users\Ladivojna\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-28 136176]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2011-08-04 3077528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-11-14 305064]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-06-15 15141768]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2011-07-30 639864]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Ladivojna^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
C:\PROGRA~2\MAGICD~1\MAGICD~1.EXE [2007-09-05 557568]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]
"BackupManagerTray"=C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2010-03-09 260608]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2010-02-01 337264]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2009-12-25 201512]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2009-12-25 401192]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-11-02 1094736]
"ArcadeDeluxeAgent"=C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-10-06 419112]
"PlayMovie"=C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-10-06 181480]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-07-04 3493720]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"4StoryPrePatch"=C:\Program Files (x86)\Gameforge4D\4Story\PrePatch.exe [2010-10-20 319488]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-07-07 336384]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [2011-08-12 273544]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2011-03-07 89456]
""= []
"SearchSettings"=C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [2011-06-24 534880]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Rainmeter.lnk - C:\Program Files\Rainmeter\Rainmeter.exe
C:\Users\Ladivojna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
YoWindow.lnk - C:\Program Files (x86)\YoWindow\yowindow.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-08-15 18:11:13 ----D---- C:\Program Files (x86)\IObit Toolbar
2011-08-15 18:11:13 ----D---- C:\Program Files (x86)\Application Updater
2011-08-15 18:10:19 ----D---- C:\ProgramData\IObit
2011-08-15 18:10:18 ----D---- C:\Program Files (x86)\IObit
2011-08-15 17:04:59 ----D---- C:\Program Files\trend micro
2011-08-15 17:04:58 ----D---- C:\rsit
2011-08-15 11:15:48 ----D---- C:\Program Files (x86)\Elaborate Bytes
2011-08-15 00:08:04 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2011-08-14 14:02:10 ----D---- C:\Users\Ladivojna\AppData\Roaming\ICQ
2011-08-14 14:02:01 ----D---- C:\Program Files (x86)\ICQ7.5
2011-08-12 12:41:25 ----D---- C:\Program Files (x86)\EACOM
2011-08-12 12:41:25 ----A---- C:\Windows\SYSWOW64\snoopyX.dll
2011-08-12 11:53:31 ----A---- C:\Windows\SYSWOW64\rmoc3260.dll
2011-08-12 11:53:21 ----A---- C:\Windows\SYSWOW64\pndx5032.dll
2011-08-12 11:53:21 ----A---- C:\Windows\SYSWOW64\pndx5016.dll
2011-08-12 11:53:06 ----D---- C:\Program Files (x86)\Real
2011-08-12 11:53:05 ----D---- C:\ProgramData\Real
2011-08-12 11:53:04 ----D---- C:\Users\Ladivojna\AppData\Roaming\Real
2011-08-10 16:46:41 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-08-10 16:46:41 ----A---- C:\Windows\system32\mshtmled.dll
2011-08-10 16:46:40 ----A---- C:\Windows\system32\iertutil.dll
2011-08-10 16:46:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-08-10 16:46:39 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-08-10 16:46:38 ----A---- C:\Windows\SYSWOW64\url.dll
2011-08-10 16:46:38 ----A---- C:\Windows\system32\url.dll
2011-08-10 16:46:38 ----A---- C:\Windows\system32\jscript9.dll
2011-08-10 16:46:38 ----A---- C:\Windows\system32\ieui.dll
2011-08-10 16:46:37 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-08-10 16:46:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-08-10 16:46:37 ----A---- C:\Windows\system32\jscript.dll
2011-08-10 16:46:36 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-08-10 16:46:36 ----A---- C:\Windows\system32\urlmon.dll
2011-08-10 16:46:35 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-08-10 16:46:35 ----A---- C:\Windows\system32\wininet.dll
2011-08-10 16:46:35 ----A---- C:\Windows\system32\jsproxy.dll
2011-08-10 16:46:34 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2011-08-10 16:46:32 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-08-10 16:46:30 ----A---- C:\Windows\system32\mshtml.dll
2011-08-10 16:46:29 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-08-10 16:46:28 ----A---- C:\Windows\system32\ieframe.dll
2011-08-10 16:15:37 ----A---- C:\Windows\system32\odbccu32.dll
2011-08-10 16:15:37 ----A---- C:\Windows\system32\odbccr32.dll
2011-08-10 16:15:37 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\system32\odbctrac.dll
2011-08-10 16:15:35 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2011-08-10 16:15:33 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-08-10 16:15:15 ----A---- C:\Windows\system32\kernel32.dll
2011-08-10 16:15:15 ----A---- C:\Windows\system32\conhost.exe
2011-08-10 16:15:13 ----A---- C:\Windows\system32\wow64.dll
2011-08-10 16:15:13 ----A---- C:\Windows\system32\winsrv.dll
2011-08-10 16:15:13 ----A---- C:\Windows\system32\KernelBase.dll
2011-08-10 16:15:11 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-08-10 16:15:11 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-08-10 16:15:11 ----A---- C:\Windows\system32\wow64win.dll
2011-08-10 16:15:11 ----A---- C:\Windows\system32\ntvdm64.dll
2011-08-10 16:15:10 ----A---- C:\Windows\system32\wow64cpu.dll
2011-08-10 16:15:09 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-08-10 16:15:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-08-10 16:15:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-08-10 16:15:07 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 16:15:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 16:15:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 16:15:02 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-08-10 16:14:59 ----A---- C:\Windows\SYSWOW64\user.exe
2011-08-10 16:14:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-08-10 16:14:55 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-08-10 16:14:49 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-08-10 16:14:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-08-10 16:14:46 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-08-10 11:49:52 ----D---- C:\ProgramData\ATI
2011-08-10 11:49:47 ----D---- C:\Program Files (x86)\AMD APP
2011-08-10 11:49:40 ----D---- C:\Program Files\Common Files\ATI Technologies
2011-08-10 11:49:05 ----D---- C:\ProgramData\AMD
2011-08-10 11:49:04 ----A---- C:\Windows\system32\drivers\amdiox64.sys
2011-08-10 11:48:59 ----D---- C:\Program Files (x86)\ATI Technologies
2011-08-10 11:45:29 ----D---- C:\Program Files\ATI Technologies
2011-08-10 11:44:31 ----D---- C:\ATI
2011-08-10 11:42:06 ----D---- C:\AMD
2011-08-09 21:38:31 ----D---- C:\ProgramData\media center programs
2011-08-09 21:38:26 ----D---- C:\Program Files (x86)\Funcom
2011-08-09 21:03:50 ----D---- C:\Program Files (x86)\Grand Theft Auto IV - Episodes From Liberty City
2011-08-08 23:46:10 ----D---- C:\Users\Ladivojna\AppData\Roaming\GHISLER
2011-08-08 23:46:10 ----D---- C:\totalcmd
2011-08-08 23:46:10 ----A---- C:\Windows\UC.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\RAR.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\PKZIP.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\PKUNZIP.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\NOCLOSE.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\LHA.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\ARJ.PIF
2011-08-08 23:21:19 ----RD---- C:\Users\Ladivojna\AppData\Roaming\SecuROM
2011-08-08 23:20:58 ----SHD---- C:\ProgramData\SecuROM
2011-08-06 17:27:04 ----D---- C:\Program Files (x86)\Winamp
2011-08-06 16:41:56 ----D---- C:\Program Files\Zrychleni Pocitace
2011-08-06 16:41:36 ----D---- C:\Users\Ladivojna\AppData\Roaming\YoWindow
2011-08-06 16:41:34 ----D---- C:\Users\Ladivojna\AppData\Roaming\OpenCandy
2011-08-06 16:41:34 ----D---- C:\ProgramData\YoWindow
2011-08-06 16:41:16 ----D---- C:\Program Files (x86)\YoWindow
2011-08-06 16:29:24 ----D---- C:\Users\Ladivojna\AppData\Roaming\Stardock
2011-08-06 16:09:47 ----D---- C:\Users\Ladivojna\AppData\Roaming\Rainmeter
2011-08-06 16:09:40 ----D---- C:\Program Files\Rainmeter
2011-08-06 15:49:35 ----D---- C:\Users\Ladivojna\AppData\Roaming\AveDesk
2011-08-06 15:10:47 ----D---- C:\Users\Ladivojna\AppData\Roaming\gtk-2.0
2011-08-06 15:01:06 ----D---- C:\Users\Ladivojna\AppData\Roaming\PhotoFiltre
2011-08-06 15:01:02 ----D---- C:\Program Files (x86)\PhotoFiltre
2011-08-06 14:12:47 ----D---- C:\Users\Ladivojna\AppData\Roaming\Zoner
2011-08-06 14:12:00 ----D---- C:\Program Files\Zoner
2011-08-06 13:58:11 ----D---- C:\Users\Ladivojna\AppData\Roaming\CD Art Display
2011-08-06 13:58:09 ----A---- C:\Windows\SYSWOW64\wmpuice.dll
2011-08-06 13:42:36 ----D---- C:\Users\Ladivojna\AppData\Roaming\Software Informer
2011-08-05 16:09:30 ----D---- C:\Users\Ladivojna\AppData\Roaming\LolClient
2011-08-05 15:53:21 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2011-08-05 15:53:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2011-08-05 15:53:19 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2011-08-05 12:47:34 ----D---- C:\PFiles
2011-08-05 09:09:07 ----D---- C:\Windows\system32\SPReview
2011-08-04 23:28:30 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2011-08-04 23:27:21 ----D---- C:\Windows\SYSWOW64\URTTEMP
2011-08-04 21:20:55 ----D---- C:\Program Files (x86)\Black_Box
2011-08-04 19:59:02 ----D---- C:\ProgramData\Nexon
2011-08-04 19:14:54 ----D---- C:\Program Files (x86)\BandiMPEG1
2011-08-04 19:03:09 ----D---- C:\ProgramData\NexonUS
2011-08-04 17:03:51 ----D---- C:\ProgramData\EA Core
2011-08-04 17:03:49 ----D---- C:\ProgramData\Electronic Arts
2011-08-04 16:35:03 ----D---- C:\Program Files (x86)\Dragon Age 2
2011-08-04 15:43:38 ----D---- C:\ProgramData\PMB Files
2011-08-04 15:43:18 ----D---- C:\Program Files (x86)\Pando Networks
2011-08-03 21:11:06 ----D---- C:\ProgramData\Codemasters
2011-08-03 21:08:04 ----D---- C:\bwinPoker JPC
2011-08-03 21:01:28 ----A---- C:\Windows\SYSWOW64\rapture3d_oal.dll
2011-08-03 21:01:28 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2011-08-03 21:01:27 ----D---- C:\Program Files (x86)\BRS
2011-08-03 21:01:23 ----RA---- C:\Windows\SYSWOW64\tmp298C.tmp
2011-08-03 21:01:17 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2011-08-03 21:01:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2011-08-03 21:01:17 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-08-03 21:01:17 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-08-03 21:01:15 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2011-08-03 21:01:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2011-08-03 21:01:15 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-08-03 21:01:15 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-08-03 21:01:12 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2011-08-03 21:01:12 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-08-03 21:01:11 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2011-08-03 21:01:11 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-08-03 21:01:09 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-08-03 21:01:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-08-03 21:01:09 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-08-03 21:01:09 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-08-03 21:01:08 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-08-03 21:01:08 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-08-03 21:01:08 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-08-03 21:01:08 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-08-03 21:01:06 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-08-03 21:01:06 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-08-03 21:01:04 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-08-03 21:01:04 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-08-03 21:01:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-08-03 21:01:03 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-08-03 21:00:58 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-08-03 21:00:57 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-08-03 21:00:53 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-08-03 21:00:53 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-08-03 21:00:47 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-08-03 21:00:47 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-08-03 21:00:47 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-08-03 21:00:47 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-08-03 21:00:46 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-08-03 21:00:46 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-08-03 21:00:46 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-08-03 21:00:46 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-08-03 21:00:44 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-08-03 21:00:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-08-03 21:00:44 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-08-03 21:00:44 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-08-03 21:00:43 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-08-03 21:00:43 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-08-03 20:46:49 ----D---- C:\Program Files (x86)\Codemasters
2011-08-03 19:16:03 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-08-03 19:16:02 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-08-03 18:56:09 ----D---- C:\Windows\system32\EventProviders
2011-08-03 18:46:05 ----A---- C:\Windows\explorer.exe
2011-08-03 18:46:04 ----A---- C:\Windows\SYSWOW64\explorer.exe
2011-08-03 18:46:02 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-08-03 18:45:56 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-08-03 18:45:56 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-08-03 18:45:56 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-08-03 18:45:22 ----A---- C:\Windows\system32\esent.dll
2011-08-03 18:45:22 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-08-03 18:45:21 ----A---- C:\Windows\SYSWOW64\esent.dll
2011-08-03 18:45:21 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-08-03 18:45:20 ----A---- C:\Windows\system32\drivers\storport.sys
2011-08-03 18:45:20 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-08-03 18:45:19 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2011-08-03 18:45:19 ----A---- C:\Windows\system32\fsutil.exe
2011-08-03 18:45:19 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-08-03 18:45:19 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-08-03 18:45:10 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2011-08-03 18:45:10 ----A---- C:\Windows\system32\XpsPrint.dll
2011-08-03 18:45:08 ----A---- C:\Windows\system32\FntCache.dll
2011-08-03 18:45:07 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2011-08-03 18:45:07 ----A---- C:\Windows\system32\DWrite.dll
2011-08-03 18:45:06 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2011-08-03 18:45:06 ----A---- C:\Windows\system32\d2d1.dll
2011-08-03 18:45:02 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2011-08-03 18:45:02 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2011-08-03 18:45:02 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-08-03 18:45:02 ----A---- C:\Windows\system32\d3d10_1.dll
2011-08-03 18:44:50 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-08-03 18:44:49 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2011-08-03 18:44:31 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2011-08-03 18:44:31 ----A---- C:\Windows\system32\prevhost.exe
2011-08-03 17:43:39 ----A---- C:\Windows\system32\netfxperf.dll
2011-08-03 17:43:39 ----A---- C:\Windows\system32\dfshim.dll
2011-08-03 17:43:23 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2011-08-03 17:43:14 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-08-03 17:43:14 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-08-03 17:43:13 ----A---- C:\Windows\system32\mstscax.dll
2011-08-03 17:43:12 ----A---- C:\Windows\system32\d3d10warp.dll
2011-08-03 17:43:07 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2011-08-03 17:43:01 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2011-08-03 17:43:00 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2011-08-03 17:43:00 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2011-08-03 17:43:00 ----A---- C:\Windows\system32\sysmain.dll
2011-08-03 17:42:57 ----A---- C:\Windows\system32\shell32.dll
2011-08-03 17:42:55 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-08-03 17:42:53 ----A---- C:\Windows\system32\tquery.dll
2011-08-03 17:42:52 ----A---- C:\Windows\system32\wmp.dll
2011-08-03 17:42:48 ----A---- C:\Windows\system32\mssrch.dll
2011-08-03 17:42:47 ----A---- C:\Windows\system32\ntdll.dll
2011-08-03 17:42:47 ----A---- C:\Windows\system32\mscoree.dll
2011-08-03 17:42:46 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-08-03 17:42:43 ----A---- C:\Windows\system32\secproc_isv.dll
2011-08-03 17:42:42 ----A---- C:\Windows\system32\mf.dll
2011-08-03 17:42:40 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-08-03 17:42:39 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2011-08-03 17:42:38 ----A---- C:\Windows\system32\xpsservices.dll
2011-08-03 17:42:38 ----A---- C:\Windows\system32\secproc.dll
2011-08-03 17:42:38 ----A---- C:\Windows\system32\RMActivate.exe
2011-08-03 17:42:37 ----A---- C:\Windows\SYSWOW64\shell32.dll
2011-08-03 17:42:35 ----A---- C:\Windows\SYSWOW64\secproc.dll
2011-08-03 17:42:35 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2011-08-03 17:42:35 ----A---- C:\Windows\system32\rpcrt4.dll
2011-08-03 17:42:33 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2011-08-03 17:42:31 ----A---- C:\Windows\system32\schedsvc.dll
2011-08-03 17:42:31 ----A---- C:\Windows\system32\ole32.dll
2011-08-03 17:42:29 ----A---- C:\Windows\system32\spwizui.dll
2011-08-03 17:42:27 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2011-08-03 17:42:26 ----A---- C:\Windows\system32\taskschd.dll
2011-08-03 17:42:26 ----A---- C:\Windows\system32\RacEngn.dll
2011-08-03 17:42:25 ----A---- C:\Windows\SYSWOW64\mf.dll
2011-08-03 17:42:25 ----A---- C:\Windows\system32\wevtsvc.dll
2011-08-03 17:42:25 ----A---- C:\Windows\system32\diagperf.dll
2011-08-03 17:42:24 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-08-03 17:42:22 ----A---- C:\Windows\system32\vssapi.dll
2011-08-03 17:42:22 ----A---- C:\Windows\system32\msxml3.dll
2011-08-03 17:42:20 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2011-08-03 17:42:20 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-08-03 17:42:19 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-08-03 17:42:19 ----A---- C:\Windows\system32\UIRibbon.dll
2011-08-03 17:42:19 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-08-03 17:42:19 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-08-03 17:42:16 ----A---- C:\Windows\SYSWOW64\wmp.dll
2011-08-03 17:42:14 ----A---- C:\Windows\system32\WsmSvc.dll
2011-08-03 17:42:14 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-08-03 17:42:13 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2011-08-03 17:42:13 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2011-08-03 17:42:12 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-08-03 17:42:12 ----A---- C:\Windows\system32\PresentationHost.exe
2011-08-03 17:42:10 ----A---- C:\Windows\system32\rdpdd.dll
2011-08-03 17:42:09 ----A---- C:\Windows\system32\spreview.exe
2011-08-03 17:42:09 ----A---- C:\Windows\system32\spinstall.exe
2011-08-03 17:42:09 ----A---- C:\Windows\system32\MPSSVC.dll
2011-08-03 17:42:08 ----A---- C:\Windows\system32\WinSAT.exe
2011-08-03 17:42:08 ----A---- C:\Windows\system32\CertEnroll.dll
2011-08-03 17:42:07 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-08-03 17:42:06 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-08-03 17:42:05 ----A---- C:\Windows\system32\msxml6.dll
2011-08-03 17:42:05 ----A---- C:\Windows\system32\d3d9.dll
2011-08-03 17:42:04 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2011-08-03 17:42:04 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-08-03 17:42:03 ----A---- C:\Windows\system32\SearchFolder.dll
2011-08-03 17:42:02 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-08-03 17:42:01 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2011-08-03 17:42:00 ----A---- C:\Windows\system32\gpsvc.dll
2011-08-03 17:41:59 ----A---- C:\Windows\system32\VSSVC.exe
2011-08-03 17:41:59 ----A---- C:\Windows\system32\dwmcore.dll
2011-08-03 17:41:59 ----A---- C:\Windows\system32\dbgeng.dll
2011-08-03 17:41:58 ----A---- C:\Windows\system32\drivers\http.sys
2011-08-03 17:41:56 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-08-03 17:41:56 ----A---- C:\Windows\system32\crypt32.dll
2011-08-03 17:41:55 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2011-08-03 17:41:54 ----A---- C:\Windows\system32\actxprxy.dll
2011-08-03 17:41:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\schannel.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\qmgr.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\lsasrv.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\audiosrv.dll
2011-08-03 17:41:52 ----A---- C:\Windows\system32\termsrv.dll
2011-08-03 17:41:51 ----A---- C:\Windows\system32\sqmapi.dll
2011-08-03 17:41:51 ----A---- C:\Windows\system32\mstsc.exe
2011-08-03 17:41:49 ----A---- C:\Windows\system32\imapi2fs.dll
2011-08-03 17:41:48 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2011-08-03 17:41:48 ----A---- C:\Windows\system32\winhttp.dll
2011-08-03 17:41:48 ----A---- C:\Windows\system32\netlogon.dll
2011-08-03 17:41:48 ----A---- C:\Windows\system32\d3d11.dll
2011-08-03 17:41:47 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2011-08-03 17:41:47 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2011-08-03 17:41:47 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-08-03 17:41:47 ----A---- C:\Windows\system32\propsys.dll
2011-08-03 17:41:47 ----A---- C:\Windows\system32\msv1_0.dll
2011-08-03 17:41:46 ----A---- C:\Windows\system32\setupapi.dll
2011-08-03 17:41:46 ----A---- C:\Windows\system32\rpcss.dll
2011-08-03 17:41:45 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2011-08-03 17:41:45 ----A---- C:\Windows\system32\wbengine.exe
2011-08-03 17:41:45 ----A---- C:\Windows\system32\authui.dll
2011-08-03 17:41:44 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2011-08-03 17:41:44 ----A---- C:\Windows\system32\werconcpl.dll
2011-08-03 17:41:44 ----A---- C:\Windows\system32\taskeng.exe
2011-08-03 17:41:44 ----A---- C:\Windows\system32\odbc32.dll
2011-08-03 17:41:42 ----A---- C:\Windows\system32\user32.dll
2011-08-03 17:41:40 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2011-08-03 17:41:40 ----A---- C:\Windows\system32\WSDApi.dll
2011-08-03 17:41:39 ----A---- C:\Windows\system32\drivers\netio.sys
2011-08-03 17:41:39 ----A---- C:\Windows\system32\dhcpcore.dll
2011-08-03 17:41:39 ----A---- C:\Windows\system32\certmgr.dll
2011-08-03 17:41:38 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-08-03 17:41:37 ----A---- C:\Windows\SYSWOW64\wer.dll
2011-08-03 17:41:37 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2011-08-03 17:41:37 ----A---- C:\Windows\system32\webio.dll
2011-08-03 17:41:37 ----A---- C:\Windows\system32\scavengeui.dll
2011-08-03 17:41:37 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-08-03 17:41:36 ----A---- C:\Windows\SYSWOW64\certcli.dll
2011-08-03 17:41:35 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\tsmf.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\ncsi.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\msdrm.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\localspl.dll
2011-08-03 17:41:34 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2011-08-03 17:41:33 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\shlwapi.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\netshell.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\msdtctm.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\framedynos.dll
2011-08-03 17:41:32 ----A---- C:\Windows\system32\drivers\cng.sys
2011-08-03 17:41:31 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\ws2_32.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\winlogon.exe
2011-08-03 17:41:31 ----A---- C:\Windows\system32\usp10.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\netcfgx.dll
2011-08-03 17:41:30 ----A---- C:\Windows\system32\quartz.dll
2011-08-03 17:41:30 ----A---- C:\Windows\system32\nlasvc.dll
2011-08-03 17:41:30 ----A---- C:\Windows\system32\lsm.exe
2011-08-03 17:41:30 ----A---- C:\Windows\system32\comdlg32.dll
2011-08-03 17:41:29 ----A---- C:\Windows\SYSWOW64\quartz.dll
2011-08-03 17:41:29 ----A---- C:\Windows\system32\wmpps.dll
2011-08-03 17:41:29 ----A---- C:\Windows\system32\dxgi.dll
2011-08-03 17:41:28 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2011-08-03 17:41:28 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-08-03 17:41:28 ----A---- C:\Windows\system32\apphelp.dll
2011-08-03 17:41:27 ----A---- C:\Windows\system32\Query.dll
2011-08-03 17:41:27 ----A---- C:\Windows\system32\mswsock.dll
2011-08-03 17:41:27 ----A---- C:\Windows\system32\drvstore.dll
2011-08-03 17:41:26 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2011-08-03 17:41:26 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2011-08-03 17:41:26 ----A---- C:\Windows\system32\wpdshext.dll
2011-08-03 17:41:25 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-08-03 17:41:25 ----A---- C:\Windows\system32\QAGENT.DLL
2011-08-03 17:41:25 ----A---- C:\Windows\system32\BFE.DLL
2011-08-03 17:41:25 ----A---- C:\Windows\system32\azroles.dll
2011-08-03 17:41:24 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2011-08-03 17:41:24 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-08-03 17:41:23 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2011-08-03 17:41:23 ----A---- C:\Windows\system32\Vault.dll
2011-08-03 17:41:23 ----A---- C:\Windows\system32\samsrv.dll
2011-08-03 17:41:23 ----A---- C:\Windows\system32\cmd.exe
2011-08-03 17:41:22 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2011-08-03 17:41:22 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-08-03 17:41:21 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2011-08-03 17:41:21 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2011-08-03 17:41:21 ----A---- C:\Windows\system32\win32spl.dll
2011-08-03 17:41:21 ----A---- C:\Windows\system32\mssvp.dll
2011-08-03 17:41:21 ----A---- C:\Windows\system32\lpksetup.exe
2011-08-03 17:41:19 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2011-08-03 17:41:19 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2011-08-03 17:41:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2011-08-03 17:41:18 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2011-08-03 17:41:18 ----A---- C:\Windows\system32\WebClnt.dll
2011-08-03 17:41:17 ----A---- C:\Windows\SYSWOW64\webio.dll
2011-08-03 17:41:17 ----A---- C:\Windows\SYSWOW64\Query.dll
2011-08-03 17:41:17 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-08-03 17:41:17 ----A---- C:\Windows\system32\sxs.dll
2011-08-03 17:41:17 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-08-03 17:41:16 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2011-08-03 17:41:16 ----A---- C:\Windows\system32\Wldap32.dll
2011-08-03 17:41:16 ----A---- C:\Windows\system32\taskcomp.dll
2011-08-03 17:41:16 ----A---- C:\Windows\system32\mcbuilder.exe
2011-08-03 17:41:15 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-08-03 17:41:15 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2011-08-03 17:41:15 ----A---- C:\Windows\system32\mfds.dll
2011-08-03 17:41:14 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2011-08-03 17:41:14 ----A---- C:\Windows\system32\pnidui.dll
2011-08-03 17:41:14 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-08-03 17:41:13 ----A---- C:\Windows\SYSWOW64\schannel.dll
2011-08-03 17:41:13 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2011-08-03 17:41:13 ----A---- C:\Windows\system32\hgprint.dll
2011-08-03 17:41:12 ----A---- C:\Windows\system32\wuaueng.dll
2011-08-03 17:41:12 ----A---- C:\Windows\system32\webservices.dll
2011-08-03 17:41:11 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2011-08-03 17:41:11 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2011-08-03 17:41:11 ----A---- C:\Windows\system32\SessEnv.dll
2011-08-03 17:41:10 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2011-08-03 17:41:10 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2011-08-03 17:41:10 ----A---- C:\Windows\SYSWOW64\authui.dll
2011-08-03 17:41:10 ----A---- C:\Windows\system32\spoolsv.exe
2011-08-03 17:41:09 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2011-08-03 17:41:09 ----A---- C:\Windows\system32\winsta.dll
2011-08-03 17:41:09 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-08-03 17:41:08 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2011-08-03 17:41:08 ----A---- C:\Windows\system32\fveapi.dll
2011-08-03 17:41:08 ----A---- C:\Windows\system32\dot3api.dll
2011-08-03 17:41:07 ----A---- C:\Windows\SYSWOW64\usp10.dll
2011-08-03 17:41:07 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2011-08-03 17:41:07 ----A---- C:\Windows\system32\gdi32.dll
2011-08-03 17:41:07 ----A---- C:\Windows\system32\drivers\msrpc.sys
2011-08-03 17:41:06 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2011-08-03 17:41:06 ----A---- C:\Windows\system32\prncache.dll
2011-08-03 17:41:06 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-08-03 17:41:05 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2011-08-03 17:41:05 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-08-03 17:41:05 ----A---- C:\Windows\system32\wlanpref.dll
2011-08-03 17:41:05 ----A---- C:\Windows\system32\schtasks.exe
2011-08-03 17:41:05 ----A---- C:\Windows\system32\mcmde.dll
2011-08-03 17:41:04 ----A---- C:\Windows\SYSWOW64\userenv.dll
2011-08-03 17:41:04 ----A---- C:\Windows\system32\wuapi.dll
2011-08-03 17:41:04 ----A---- C:\Windows\system32\vpnike.dll
2011-08-03 17:41:03 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2011-08-03 17:41:03 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2011-08-03 17:41:03 ----A---- C:\Windows\system32\userenv.dll
2011-08-03 17:41:03 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-08-03 17:41:02 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-08-03 17:41:02 ----A---- C:\Windows\system32\wintrust.dll
2011-08-03 17:41:02 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-08-03 17:41:01 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2011-08-03 17:41:01 ----A---- C:\Windows\system32\photowiz.dll
2011-08-03 17:41:01 ----A---- C:\Windows\system32\evr.dll
2011-08-03 17:41:00 ----A---- C:\Windows\system32\framedyn.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\wmpmde.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\sppobjs.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-08-03 17:40:59 ----A---- C:\Windows\system32\FXSSVC.exe
2011-08-03 17:40:59 ----A---- C:\Windows\system32\AudioSes.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\aepdu.dll
2011-08-03 17:40:58 ----A---- C:\Windows\SYSWOW64\cmd.exe
2011-08-03 17:40:58 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-08-03 17:40:58 ----A---- C:\Windows\system32\wmpeffects.dll
2011-08-03 17:40:58 ----A---- C:\Windows\system32\SyncCenter.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\srvsvc.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\shsvcs.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\aeinv.dll
2011-08-03 17:40:55 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2011-08-03 17:40:55 ----A---- C:\Windows\SYSWOW64\propsys.dll
2011-08-03 17:40:55 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2011-08-03 17:40:55 ----A---- C:\Windows\system32\fde.dll
2011-08-03 17:40:54 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2011-08-03 17:40:54 ----A---- C:\Windows\SYSWOW64\mfds.dll
2011-08-03 17:40:54 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-08-03 17:40:53 ----A---- C:\Windows\SYSWOW64\user32.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\stobject.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\netdiagfx.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\localsec.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\imapi2.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-08-03 17:40:53 ----A---- C:\Windows\system32\credui.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\cdd.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\bcryptprimitives.dll
2011-08-03 17:40:52 ----A---- C:\Windows\system32\netid.dll
2011-08-03 17:40:52 ----A---- C:\Windows\system32\inetpp.dll
2011-08-03 17:40:52 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2011-08-03 17:40:51 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2011-08-03 17:40:51 ----A---- C:\Windows\SYSWOW64\azroles.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\spp.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-08-03 17:40:51 ----A---- C:\Windows\system32\davclnt.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\biocpl.dll
2011-08-03 17:40:50 ----A---- C:\Windows\system32\profsvc.dll
2011-08-03 17:40:49 ----A---- C:\Windows\SYSWOW64\themeui.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\scansetting.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\printui.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\mspbda.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\msinfo32.exe
2011-08-03 17:40:49 ----A---- C:\Windows\system32\gameux.dll
2011-08-03 17:40:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2011-08-03 17:40:48 ----A---- C:\Windows\SYSWOW64\credui.dll
2011-08-03 17:40:48 ----A---- C:\Windows\system32\pla.dll
2011-08-03 17:40:48 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-08-03 17:40:48 ----A---- C:\Windows\splwow64.exe
2011-08-03 17:40:47 ----A---- C:\Windows\SYSWOW64\spp.dll
2011-08-03 17:40:47 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2011-08-03 17:40:47 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2011-08-03 17:40:47 ----A---- C:\Windows\system32\wusa.exe
2011-08-03 17:40:47 ----A---- C:\Windows\system32\msdri.dll
2011-08-03 17:40:47 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-08-03 17:40:47 ----A---- C:\Windows\system32\aitagent.exe
2011-08-03 17:40:46 ----A---- C:\Windows\system32\vds.exe
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\wiaservc.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\rpchttp.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\mscms.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\drivers\pci.sys
2011-08-03 17:40:45 ----A---- C:\Windows\system32\cryptsvc.dll
2011-08-03 17:40:44 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2011-08-03 17:40:44 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2011-08-03 17:40:43 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\wisptis.exe
2011-08-03 17:40:43 ----A---- C:\Windows\system32\PkgMgr.exe
2011-08-03 17:40:43 ----A---- C:\Windows\system32\msi.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2011-08-03 17:40:42 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2011-08-03 17:40:42 ----A---- C:\Windows\system32\ocsetup.exe
2011-08-03 17:40:41 ----A---- C:\Windows\SYSWOW64\evr.dll
2011-08-03 17:40:41 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-08-03 17:40:40 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2011-08-03 17:40:40 ----A---- C:\Windows\system32\sppwinob.dll
2011-08-03 17:40:39 ----A---- C:\Windows\SYSWOW64\calc.exe
2011-08-03 17:40:39 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\rdpcore.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\ocsetapi.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\eapp3hst.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\DXP.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-08-03 17:40:38 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2011-08-03 17:40:38 ----A---- C:\Windows\system32\drivers\msdsm.sys
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ladivojna at 2011-08-15 18:19:04
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 247 GB (53%) free of 464 GB
Total RAM: 4094 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:19:06, on 15.8.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\YoWindow\yowindow.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\IObit\Game Booster\gbtray.exe
C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ladivojna.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5t5871y854
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... 5t5871y854
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... 5t5871y854
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [4StoryPrePatch] C:\Program Files (x86)\Gameforge4D\4Story\PrePatch.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Ladivojna\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: YoWindow.lnk = C:\Program Files (x86)\YoWindow\yowindow.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Rainmeter.lnk = C:\Program Files\Rainmeter\Rainmeter.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer Group - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13932 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 31372048
\??\C:\Windows\system32\conhost.exe "7593504451035886947-671310556-1300112177-1823652912829323802-1360155018-1307294881
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Acer\Registration\GregHSRW.exe"
C:\Windows\system32\svchost.exe -k HsfXAudioService
c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe"
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll" saHooker_Initialize_and_Wait
"C:\Windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll" saHooker_Initialize_and_Wait
"C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe"
"C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Apoint2K\Apoint.exe"
"C:\Windows\PLFSetI.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
WLIDSvcM.exe 2944
"C:\Program Files\Apoint2K\ApMsgFwd.exe" -s{05FA8492-C047-4207-BE65-780D8591C113}
"Apntex.exe"
\??\C:\Windows\system32\conhost.exe "1377162195-2005680663-584036402-3503917469732703617553956181435722546-1790203433
"C:\Program Files\Apoint2K\HidFind.exe"
"C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
"C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files\Rainmeter\Rainmeter.exe"
"C:\Program Files (x86)\YoWindow\yowindow.exe" -mt
"C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {B69CE377-61F2-45D4-B6D8-A06E9F6708B3}
"C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe"
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C892C0.210654736 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C89160.1240234175 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C896E0.1350638222 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=extension --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.00C89580.99926987 --ignored=" --type=renderer " /prefetch:3
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Ladivojna\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.31.137.7_0\McChPlg.dll" --lang=cs --channel=4284.047C5380.1793407927 /prefetch:4
"C:\Program Files (x86)\IObit\Game Booster\gbtray.exe"
C:\Windows\system32\msiexec.exe /V
"C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe"
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe" DFROMKIT
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\Ladivojna\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/DnsParallelism/parallel_default/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Prefetch/ContentPrefetchPrerender1/ProxyConnectionImpact/proxy_connections_32/SSLFalseStart/FalseStart_enabled/SpdyImpact/npn_with_spdy/ --disable-client-side-phishing-detection --channel=4284.07BA4840.95193968 /prefetch:3
"C:\Users\Ladivojna\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3501040063-1355053042-2835894162-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3501040063-1355053042-2835894162-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2011-07-04 978496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2011-04-08 309096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}]
IObit Toolbar - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-08-12 386264]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2011-04-08 251928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2011-04-08 309096]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2011-07-04 978496]
{32099AAC-C132-4136-9E9A-4E364A424E17}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2011-04-08 251928]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-07-04 820864]
{0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - IObit Toolbar - C:\Program Files (x86)\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"mwlDaemon"=C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe [2010-02-01 349552]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-08-06 8060960]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2009-05-22 295936]
"PLFSetI"=C:\Windows\PLFSetI.exe [2010-01-13 206208]
"Acer ePower Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2009-09-30 823840]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"Google Update"=C:\Users\Ladivojna\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-28 136176]
"Pando Media Booster"=C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [2011-08-04 3077528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-11-14 305064]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2011-06-15 15141768]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2011-07-30 639864]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Ladivojna^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
C:\PROGRA~2\MAGICD~1\MAGICD~1.EXE [2007-09-05 557568]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]
"BackupManagerTray"=C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [2010-03-09 260608]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2010-02-01 337264]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2009-12-25 201512]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2009-12-25 401192]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2009-11-02 1094736]
"ArcadeDeluxeAgent"=C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2009-10-06 419112]
"PlayMovie"=C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2009-10-06 181480]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-07-04 3493720]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"4StoryPrePatch"=C:\Program Files (x86)\Gameforge4D\4Story\PrePatch.exe [2010-10-20 319488]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-07-07 336384]
"TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [2011-08-12 273544]
"VirtualCloneDrive"=C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2011-03-07 89456]
""= []
"SearchSettings"=C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [2011-06-24 534880]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Rainmeter.lnk - C:\Program Files\Rainmeter\Rainmeter.exe
C:\Users\Ladivojna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
YoWindow.lnk - C:\Program Files (x86)\YoWindow\yowindow.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-08-15 18:11:13 ----D---- C:\Program Files (x86)\IObit Toolbar
2011-08-15 18:11:13 ----D---- C:\Program Files (x86)\Application Updater
2011-08-15 18:10:19 ----D---- C:\ProgramData\IObit
2011-08-15 18:10:18 ----D---- C:\Program Files (x86)\IObit
2011-08-15 17:04:59 ----D---- C:\Program Files\trend micro
2011-08-15 17:04:58 ----D---- C:\rsit
2011-08-15 11:15:48 ----D---- C:\Program Files (x86)\Elaborate Bytes
2011-08-15 00:08:04 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2011-08-14 14:02:10 ----D---- C:\Users\Ladivojna\AppData\Roaming\ICQ
2011-08-14 14:02:01 ----D---- C:\Program Files (x86)\ICQ7.5
2011-08-12 12:41:25 ----D---- C:\Program Files (x86)\EACOM
2011-08-12 12:41:25 ----A---- C:\Windows\SYSWOW64\snoopyX.dll
2011-08-12 11:53:31 ----A---- C:\Windows\SYSWOW64\rmoc3260.dll
2011-08-12 11:53:21 ----A---- C:\Windows\SYSWOW64\pndx5032.dll
2011-08-12 11:53:21 ----A---- C:\Windows\SYSWOW64\pndx5016.dll
2011-08-12 11:53:06 ----D---- C:\Program Files (x86)\Real
2011-08-12 11:53:05 ----D---- C:\ProgramData\Real
2011-08-12 11:53:04 ----D---- C:\Users\Ladivojna\AppData\Roaming\Real
2011-08-10 16:46:41 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-08-10 16:46:41 ----A---- C:\Windows\system32\mshtmled.dll
2011-08-10 16:46:40 ----A---- C:\Windows\system32\iertutil.dll
2011-08-10 16:46:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-08-10 16:46:39 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-08-10 16:46:38 ----A---- C:\Windows\SYSWOW64\url.dll
2011-08-10 16:46:38 ----A---- C:\Windows\system32\url.dll
2011-08-10 16:46:38 ----A---- C:\Windows\system32\jscript9.dll
2011-08-10 16:46:38 ----A---- C:\Windows\system32\ieui.dll
2011-08-10 16:46:37 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-08-10 16:46:37 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-08-10 16:46:37 ----A---- C:\Windows\system32\jscript.dll
2011-08-10 16:46:36 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-08-10 16:46:36 ----A---- C:\Windows\system32\urlmon.dll
2011-08-10 16:46:35 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-08-10 16:46:35 ----A---- C:\Windows\system32\wininet.dll
2011-08-10 16:46:35 ----A---- C:\Windows\system32\jsproxy.dll
2011-08-10 16:46:34 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2011-08-10 16:46:32 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-08-10 16:46:30 ----A---- C:\Windows\system32\mshtml.dll
2011-08-10 16:46:29 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-08-10 16:46:28 ----A---- C:\Windows\system32\ieframe.dll
2011-08-10 16:15:37 ----A---- C:\Windows\system32\odbccu32.dll
2011-08-10 16:15:37 ----A---- C:\Windows\system32\odbccr32.dll
2011-08-10 16:15:37 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2011-08-10 16:15:36 ----A---- C:\Windows\system32\odbctrac.dll
2011-08-10 16:15:35 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2011-08-10 16:15:33 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-08-10 16:15:15 ----A---- C:\Windows\system32\kernel32.dll
2011-08-10 16:15:15 ----A---- C:\Windows\system32\conhost.exe
2011-08-10 16:15:13 ----A---- C:\Windows\system32\wow64.dll
2011-08-10 16:15:13 ----A---- C:\Windows\system32\winsrv.dll
2011-08-10 16:15:13 ----A---- C:\Windows\system32\KernelBase.dll
2011-08-10 16:15:11 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-08-10 16:15:11 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-08-10 16:15:11 ----A---- C:\Windows\system32\wow64win.dll
2011-08-10 16:15:11 ----A---- C:\Windows\system32\ntvdm64.dll
2011-08-10 16:15:10 ----A---- C:\Windows\system32\wow64cpu.dll
2011-08-10 16:15:09 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-08-10 16:15:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-08-10 16:15:07 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-08-10 16:15:07 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 16:15:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 16:15:05 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 16:15:04 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 16:15:03 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 16:15:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 16:15:02 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 16:15:02 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 16:15:01 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 16:15:00 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-08-10 16:14:59 ----A---- C:\Windows\SYSWOW64\user.exe
2011-08-10 16:14:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-08-10 16:14:55 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-08-10 16:14:49 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-08-10 16:14:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-08-10 16:14:46 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-08-10 11:49:52 ----D---- C:\ProgramData\ATI
2011-08-10 11:49:47 ----D---- C:\Program Files (x86)\AMD APP
2011-08-10 11:49:40 ----D---- C:\Program Files\Common Files\ATI Technologies
2011-08-10 11:49:05 ----D---- C:\ProgramData\AMD
2011-08-10 11:49:04 ----A---- C:\Windows\system32\drivers\amdiox64.sys
2011-08-10 11:48:59 ----D---- C:\Program Files (x86)\ATI Technologies
2011-08-10 11:45:29 ----D---- C:\Program Files\ATI Technologies
2011-08-10 11:44:31 ----D---- C:\ATI
2011-08-10 11:42:06 ----D---- C:\AMD
2011-08-09 21:38:31 ----D---- C:\ProgramData\media center programs
2011-08-09 21:38:26 ----D---- C:\Program Files (x86)\Funcom
2011-08-09 21:03:50 ----D---- C:\Program Files (x86)\Grand Theft Auto IV - Episodes From Liberty City
2011-08-08 23:46:10 ----D---- C:\Users\Ladivojna\AppData\Roaming\GHISLER
2011-08-08 23:46:10 ----D---- C:\totalcmd
2011-08-08 23:46:10 ----A---- C:\Windows\UC.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\RAR.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\PKZIP.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\PKUNZIP.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\NOCLOSE.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\LHA.PIF
2011-08-08 23:46:10 ----A---- C:\Windows\ARJ.PIF
2011-08-08 23:21:19 ----RD---- C:\Users\Ladivojna\AppData\Roaming\SecuROM
2011-08-08 23:20:58 ----SHD---- C:\ProgramData\SecuROM
2011-08-06 17:27:04 ----D---- C:\Program Files (x86)\Winamp
2011-08-06 16:41:56 ----D---- C:\Program Files\Zrychleni Pocitace
2011-08-06 16:41:36 ----D---- C:\Users\Ladivojna\AppData\Roaming\YoWindow
2011-08-06 16:41:34 ----D---- C:\Users\Ladivojna\AppData\Roaming\OpenCandy
2011-08-06 16:41:34 ----D---- C:\ProgramData\YoWindow
2011-08-06 16:41:16 ----D---- C:\Program Files (x86)\YoWindow
2011-08-06 16:29:24 ----D---- C:\Users\Ladivojna\AppData\Roaming\Stardock
2011-08-06 16:09:47 ----D---- C:\Users\Ladivojna\AppData\Roaming\Rainmeter
2011-08-06 16:09:40 ----D---- C:\Program Files\Rainmeter
2011-08-06 15:49:35 ----D---- C:\Users\Ladivojna\AppData\Roaming\AveDesk
2011-08-06 15:10:47 ----D---- C:\Users\Ladivojna\AppData\Roaming\gtk-2.0
2011-08-06 15:01:06 ----D---- C:\Users\Ladivojna\AppData\Roaming\PhotoFiltre
2011-08-06 15:01:02 ----D---- C:\Program Files (x86)\PhotoFiltre
2011-08-06 14:12:47 ----D---- C:\Users\Ladivojna\AppData\Roaming\Zoner
2011-08-06 14:12:00 ----D---- C:\Program Files\Zoner
2011-08-06 13:58:11 ----D---- C:\Users\Ladivojna\AppData\Roaming\CD Art Display
2011-08-06 13:58:09 ----A---- C:\Windows\SYSWOW64\wmpuice.dll
2011-08-06 13:42:36 ----D---- C:\Users\Ladivojna\AppData\Roaming\Software Informer
2011-08-05 16:09:30 ----D---- C:\Users\Ladivojna\AppData\Roaming\LolClient
2011-08-05 15:53:21 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2011-08-05 15:53:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2011-08-05 15:53:19 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2011-08-05 12:47:34 ----D---- C:\PFiles
2011-08-05 09:09:07 ----D---- C:\Windows\system32\SPReview
2011-08-04 23:28:30 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2011-08-04 23:27:21 ----D---- C:\Windows\SYSWOW64\URTTEMP
2011-08-04 21:20:55 ----D---- C:\Program Files (x86)\Black_Box
2011-08-04 19:59:02 ----D---- C:\ProgramData\Nexon
2011-08-04 19:14:54 ----D---- C:\Program Files (x86)\BandiMPEG1
2011-08-04 19:03:09 ----D---- C:\ProgramData\NexonUS
2011-08-04 17:03:51 ----D---- C:\ProgramData\EA Core
2011-08-04 17:03:49 ----D---- C:\ProgramData\Electronic Arts
2011-08-04 16:35:03 ----D---- C:\Program Files (x86)\Dragon Age 2
2011-08-04 15:43:38 ----D---- C:\ProgramData\PMB Files
2011-08-04 15:43:18 ----D---- C:\Program Files (x86)\Pando Networks
2011-08-03 21:11:06 ----D---- C:\ProgramData\Codemasters
2011-08-03 21:08:04 ----D---- C:\bwinPoker JPC
2011-08-03 21:01:28 ----A---- C:\Windows\SYSWOW64\rapture3d_oal.dll
2011-08-03 21:01:28 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2011-08-03 21:01:27 ----D---- C:\Program Files (x86)\BRS
2011-08-03 21:01:23 ----RA---- C:\Windows\SYSWOW64\tmp298C.tmp
2011-08-03 21:01:17 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2011-08-03 21:01:17 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2011-08-03 21:01:17 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-08-03 21:01:17 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-08-03 21:01:15 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2011-08-03 21:01:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2011-08-03 21:01:15 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-08-03 21:01:15 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-08-03 21:01:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-08-03 21:01:12 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2011-08-03 21:01:12 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-08-03 21:01:11 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2011-08-03 21:01:11 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-08-03 21:01:09 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-08-03 21:01:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-08-03 21:01:09 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-08-03 21:01:09 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-08-03 21:01:08 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-08-03 21:01:08 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-08-03 21:01:08 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-08-03 21:01:08 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-08-03 21:01:06 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-08-03 21:01:06 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-08-03 21:01:04 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-08-03 21:01:04 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-08-03 21:01:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-08-03 21:01:03 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-08-03 21:00:59 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-08-03 21:00:58 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-08-03 21:00:57 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-08-03 21:00:53 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-08-03 21:00:53 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-08-03 21:00:47 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-08-03 21:00:47 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-08-03 21:00:47 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-08-03 21:00:47 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-08-03 21:00:46 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-08-03 21:00:46 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-08-03 21:00:46 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-08-03 21:00:46 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-08-03 21:00:44 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-08-03 21:00:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-08-03 21:00:44 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-08-03 21:00:44 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-08-03 21:00:43 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-08-03 21:00:43 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-08-03 20:46:49 ----D---- C:\Program Files (x86)\Codemasters
2011-08-03 19:16:03 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-08-03 19:16:02 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-08-03 18:56:09 ----D---- C:\Windows\system32\EventProviders
2011-08-03 18:46:05 ----A---- C:\Windows\explorer.exe
2011-08-03 18:46:04 ----A---- C:\Windows\SYSWOW64\explorer.exe
2011-08-03 18:46:02 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-08-03 18:45:56 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-08-03 18:45:56 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-08-03 18:45:56 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-08-03 18:45:55 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-08-03 18:45:22 ----A---- C:\Windows\system32\esent.dll
2011-08-03 18:45:22 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-08-03 18:45:21 ----A---- C:\Windows\SYSWOW64\esent.dll
2011-08-03 18:45:21 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-08-03 18:45:20 ----A---- C:\Windows\system32\drivers\storport.sys
2011-08-03 18:45:20 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-08-03 18:45:19 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2011-08-03 18:45:19 ----A---- C:\Windows\system32\fsutil.exe
2011-08-03 18:45:19 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-08-03 18:45:19 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-08-03 18:45:10 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2011-08-03 18:45:10 ----A---- C:\Windows\system32\XpsPrint.dll
2011-08-03 18:45:08 ----A---- C:\Windows\system32\FntCache.dll
2011-08-03 18:45:07 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2011-08-03 18:45:07 ----A---- C:\Windows\system32\DWrite.dll
2011-08-03 18:45:06 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2011-08-03 18:45:06 ----A---- C:\Windows\system32\d2d1.dll
2011-08-03 18:45:02 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2011-08-03 18:45:02 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2011-08-03 18:45:02 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-08-03 18:45:02 ----A---- C:\Windows\system32\d3d10_1.dll
2011-08-03 18:44:50 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-08-03 18:44:49 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2011-08-03 18:44:31 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2011-08-03 18:44:31 ----A---- C:\Windows\system32\prevhost.exe
2011-08-03 17:43:39 ----A---- C:\Windows\system32\netfxperf.dll
2011-08-03 17:43:39 ----A---- C:\Windows\system32\dfshim.dll
2011-08-03 17:43:23 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2011-08-03 17:43:14 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-08-03 17:43:14 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-08-03 17:43:13 ----A---- C:\Windows\system32\mstscax.dll
2011-08-03 17:43:12 ----A---- C:\Windows\system32\d3d10warp.dll
2011-08-03 17:43:07 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2011-08-03 17:43:01 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2011-08-03 17:43:00 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2011-08-03 17:43:00 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2011-08-03 17:43:00 ----A---- C:\Windows\system32\sysmain.dll
2011-08-03 17:42:57 ----A---- C:\Windows\system32\shell32.dll
2011-08-03 17:42:55 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-08-03 17:42:53 ----A---- C:\Windows\system32\tquery.dll
2011-08-03 17:42:52 ----A---- C:\Windows\system32\wmp.dll
2011-08-03 17:42:48 ----A---- C:\Windows\system32\mssrch.dll
2011-08-03 17:42:47 ----A---- C:\Windows\system32\ntdll.dll
2011-08-03 17:42:47 ----A---- C:\Windows\system32\mscoree.dll
2011-08-03 17:42:46 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-08-03 17:42:43 ----A---- C:\Windows\system32\secproc_isv.dll
2011-08-03 17:42:42 ----A---- C:\Windows\system32\mf.dll
2011-08-03 17:42:40 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-08-03 17:42:39 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2011-08-03 17:42:38 ----A---- C:\Windows\system32\xpsservices.dll
2011-08-03 17:42:38 ----A---- C:\Windows\system32\secproc.dll
2011-08-03 17:42:38 ----A---- C:\Windows\system32\RMActivate.exe
2011-08-03 17:42:37 ----A---- C:\Windows\SYSWOW64\shell32.dll
2011-08-03 17:42:35 ----A---- C:\Windows\SYSWOW64\secproc.dll
2011-08-03 17:42:35 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2011-08-03 17:42:35 ----A---- C:\Windows\system32\rpcrt4.dll
2011-08-03 17:42:33 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2011-08-03 17:42:31 ----A---- C:\Windows\system32\schedsvc.dll
2011-08-03 17:42:31 ----A---- C:\Windows\system32\ole32.dll
2011-08-03 17:42:29 ----A---- C:\Windows\system32\spwizui.dll
2011-08-03 17:42:27 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2011-08-03 17:42:26 ----A---- C:\Windows\system32\taskschd.dll
2011-08-03 17:42:26 ----A---- C:\Windows\system32\RacEngn.dll
2011-08-03 17:42:25 ----A---- C:\Windows\SYSWOW64\mf.dll
2011-08-03 17:42:25 ----A---- C:\Windows\system32\wevtsvc.dll
2011-08-03 17:42:25 ----A---- C:\Windows\system32\diagperf.dll
2011-08-03 17:42:24 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-08-03 17:42:22 ----A---- C:\Windows\system32\vssapi.dll
2011-08-03 17:42:22 ----A---- C:\Windows\system32\msxml3.dll
2011-08-03 17:42:20 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2011-08-03 17:42:20 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-08-03 17:42:19 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-08-03 17:42:19 ----A---- C:\Windows\system32\UIRibbon.dll
2011-08-03 17:42:19 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-08-03 17:42:19 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-08-03 17:42:16 ----A---- C:\Windows\SYSWOW64\wmp.dll
2011-08-03 17:42:14 ----A---- C:\Windows\system32\WsmSvc.dll
2011-08-03 17:42:14 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-08-03 17:42:13 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2011-08-03 17:42:13 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2011-08-03 17:42:12 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-08-03 17:42:12 ----A---- C:\Windows\system32\PresentationHost.exe
2011-08-03 17:42:10 ----A---- C:\Windows\system32\rdpdd.dll
2011-08-03 17:42:09 ----A---- C:\Windows\system32\spreview.exe
2011-08-03 17:42:09 ----A---- C:\Windows\system32\spinstall.exe
2011-08-03 17:42:09 ----A---- C:\Windows\system32\MPSSVC.dll
2011-08-03 17:42:08 ----A---- C:\Windows\system32\WinSAT.exe
2011-08-03 17:42:08 ----A---- C:\Windows\system32\CertEnroll.dll
2011-08-03 17:42:07 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-08-03 17:42:06 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-08-03 17:42:05 ----A---- C:\Windows\system32\msxml6.dll
2011-08-03 17:42:05 ----A---- C:\Windows\system32\d3d9.dll
2011-08-03 17:42:04 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2011-08-03 17:42:04 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-08-03 17:42:03 ----A---- C:\Windows\system32\SearchFolder.dll
2011-08-03 17:42:02 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-08-03 17:42:01 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2011-08-03 17:42:00 ----A---- C:\Windows\system32\gpsvc.dll
2011-08-03 17:41:59 ----A---- C:\Windows\system32\VSSVC.exe
2011-08-03 17:41:59 ----A---- C:\Windows\system32\dwmcore.dll
2011-08-03 17:41:59 ----A---- C:\Windows\system32\dbgeng.dll
2011-08-03 17:41:58 ----A---- C:\Windows\system32\drivers\http.sys
2011-08-03 17:41:56 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-08-03 17:41:56 ----A---- C:\Windows\system32\crypt32.dll
2011-08-03 17:41:55 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2011-08-03 17:41:54 ----A---- C:\Windows\system32\actxprxy.dll
2011-08-03 17:41:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\schannel.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\qmgr.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\lsasrv.dll
2011-08-03 17:41:53 ----A---- C:\Windows\system32\audiosrv.dll
2011-08-03 17:41:52 ----A---- C:\Windows\system32\termsrv.dll
2011-08-03 17:41:51 ----A---- C:\Windows\system32\sqmapi.dll
2011-08-03 17:41:51 ----A---- C:\Windows\system32\mstsc.exe
2011-08-03 17:41:49 ----A---- C:\Windows\system32\imapi2fs.dll
2011-08-03 17:41:48 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2011-08-03 17:41:48 ----A---- C:\Windows\system32\winhttp.dll
2011-08-03 17:41:48 ----A---- C:\Windows\system32\netlogon.dll
2011-08-03 17:41:48 ----A---- C:\Windows\system32\d3d11.dll
2011-08-03 17:41:47 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2011-08-03 17:41:47 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2011-08-03 17:41:47 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-08-03 17:41:47 ----A---- C:\Windows\system32\propsys.dll
2011-08-03 17:41:47 ----A---- C:\Windows\system32\msv1_0.dll
2011-08-03 17:41:46 ----A---- C:\Windows\system32\setupapi.dll
2011-08-03 17:41:46 ----A---- C:\Windows\system32\rpcss.dll
2011-08-03 17:41:45 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2011-08-03 17:41:45 ----A---- C:\Windows\system32\wbengine.exe
2011-08-03 17:41:45 ----A---- C:\Windows\system32\authui.dll
2011-08-03 17:41:44 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2011-08-03 17:41:44 ----A---- C:\Windows\system32\werconcpl.dll
2011-08-03 17:41:44 ----A---- C:\Windows\system32\taskeng.exe
2011-08-03 17:41:44 ----A---- C:\Windows\system32\odbc32.dll
2011-08-03 17:41:42 ----A---- C:\Windows\system32\user32.dll
2011-08-03 17:41:40 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2011-08-03 17:41:40 ----A---- C:\Windows\system32\WSDApi.dll
2011-08-03 17:41:39 ----A---- C:\Windows\system32\drivers\netio.sys
2011-08-03 17:41:39 ----A---- C:\Windows\system32\dhcpcore.dll
2011-08-03 17:41:39 ----A---- C:\Windows\system32\certmgr.dll
2011-08-03 17:41:38 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-08-03 17:41:37 ----A---- C:\Windows\SYSWOW64\wer.dll
2011-08-03 17:41:37 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2011-08-03 17:41:37 ----A---- C:\Windows\system32\webio.dll
2011-08-03 17:41:37 ----A---- C:\Windows\system32\scavengeui.dll
2011-08-03 17:41:37 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-08-03 17:41:36 ----A---- C:\Windows\SYSWOW64\certcli.dll
2011-08-03 17:41:35 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\tsmf.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\ncsi.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\msdrm.dll
2011-08-03 17:41:35 ----A---- C:\Windows\system32\localspl.dll
2011-08-03 17:41:34 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2011-08-03 17:41:33 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\shlwapi.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\netshell.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\msdtctm.dll
2011-08-03 17:41:33 ----A---- C:\Windows\system32\framedynos.dll
2011-08-03 17:41:32 ----A---- C:\Windows\system32\drivers\cng.sys
2011-08-03 17:41:31 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\ws2_32.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\winlogon.exe
2011-08-03 17:41:31 ----A---- C:\Windows\system32\usp10.dll
2011-08-03 17:41:31 ----A---- C:\Windows\system32\netcfgx.dll
2011-08-03 17:41:30 ----A---- C:\Windows\system32\quartz.dll
2011-08-03 17:41:30 ----A---- C:\Windows\system32\nlasvc.dll
2011-08-03 17:41:30 ----A---- C:\Windows\system32\lsm.exe
2011-08-03 17:41:30 ----A---- C:\Windows\system32\comdlg32.dll
2011-08-03 17:41:29 ----A---- C:\Windows\SYSWOW64\quartz.dll
2011-08-03 17:41:29 ----A---- C:\Windows\system32\wmpps.dll
2011-08-03 17:41:29 ----A---- C:\Windows\system32\dxgi.dll
2011-08-03 17:41:28 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2011-08-03 17:41:28 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-08-03 17:41:28 ----A---- C:\Windows\system32\apphelp.dll
2011-08-03 17:41:27 ----A---- C:\Windows\system32\Query.dll
2011-08-03 17:41:27 ----A---- C:\Windows\system32\mswsock.dll
2011-08-03 17:41:27 ----A---- C:\Windows\system32\drvstore.dll
2011-08-03 17:41:26 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2011-08-03 17:41:26 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2011-08-03 17:41:26 ----A---- C:\Windows\system32\wpdshext.dll
2011-08-03 17:41:25 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-08-03 17:41:25 ----A---- C:\Windows\system32\QAGENT.DLL
2011-08-03 17:41:25 ----A---- C:\Windows\system32\BFE.DLL
2011-08-03 17:41:25 ----A---- C:\Windows\system32\azroles.dll
2011-08-03 17:41:24 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2011-08-03 17:41:24 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-08-03 17:41:23 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2011-08-03 17:41:23 ----A---- C:\Windows\system32\Vault.dll
2011-08-03 17:41:23 ----A---- C:\Windows\system32\samsrv.dll
2011-08-03 17:41:23 ----A---- C:\Windows\system32\cmd.exe
2011-08-03 17:41:22 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2011-08-03 17:41:22 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-08-03 17:41:21 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2011-08-03 17:41:21 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2011-08-03 17:41:21 ----A---- C:\Windows\system32\win32spl.dll
2011-08-03 17:41:21 ----A---- C:\Windows\system32\mssvp.dll
2011-08-03 17:41:21 ----A---- C:\Windows\system32\lpksetup.exe
2011-08-03 17:41:19 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2011-08-03 17:41:19 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2011-08-03 17:41:19 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2011-08-03 17:41:18 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2011-08-03 17:41:18 ----A---- C:\Windows\system32\WebClnt.dll
2011-08-03 17:41:17 ----A---- C:\Windows\SYSWOW64\webio.dll
2011-08-03 17:41:17 ----A---- C:\Windows\SYSWOW64\Query.dll
2011-08-03 17:41:17 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-08-03 17:41:17 ----A---- C:\Windows\system32\sxs.dll
2011-08-03 17:41:17 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-08-03 17:41:16 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2011-08-03 17:41:16 ----A---- C:\Windows\system32\Wldap32.dll
2011-08-03 17:41:16 ----A---- C:\Windows\system32\taskcomp.dll
2011-08-03 17:41:16 ----A---- C:\Windows\system32\mcbuilder.exe
2011-08-03 17:41:15 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-08-03 17:41:15 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2011-08-03 17:41:15 ----A---- C:\Windows\system32\mfds.dll
2011-08-03 17:41:14 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2011-08-03 17:41:14 ----A---- C:\Windows\system32\pnidui.dll
2011-08-03 17:41:14 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-08-03 17:41:13 ----A---- C:\Windows\SYSWOW64\schannel.dll
2011-08-03 17:41:13 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2011-08-03 17:41:13 ----A---- C:\Windows\system32\hgprint.dll
2011-08-03 17:41:12 ----A---- C:\Windows\system32\wuaueng.dll
2011-08-03 17:41:12 ----A---- C:\Windows\system32\webservices.dll
2011-08-03 17:41:11 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2011-08-03 17:41:11 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2011-08-03 17:41:11 ----A---- C:\Windows\system32\SessEnv.dll
2011-08-03 17:41:10 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2011-08-03 17:41:10 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2011-08-03 17:41:10 ----A---- C:\Windows\SYSWOW64\authui.dll
2011-08-03 17:41:10 ----A---- C:\Windows\system32\spoolsv.exe
2011-08-03 17:41:09 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2011-08-03 17:41:09 ----A---- C:\Windows\system32\winsta.dll
2011-08-03 17:41:09 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-08-03 17:41:08 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2011-08-03 17:41:08 ----A---- C:\Windows\system32\fveapi.dll
2011-08-03 17:41:08 ----A---- C:\Windows\system32\dot3api.dll
2011-08-03 17:41:07 ----A---- C:\Windows\SYSWOW64\usp10.dll
2011-08-03 17:41:07 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2011-08-03 17:41:07 ----A---- C:\Windows\system32\gdi32.dll
2011-08-03 17:41:07 ----A---- C:\Windows\system32\drivers\msrpc.sys
2011-08-03 17:41:06 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2011-08-03 17:41:06 ----A---- C:\Windows\system32\prncache.dll
2011-08-03 17:41:06 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-08-03 17:41:05 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2011-08-03 17:41:05 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-08-03 17:41:05 ----A---- C:\Windows\system32\wlanpref.dll
2011-08-03 17:41:05 ----A---- C:\Windows\system32\schtasks.exe
2011-08-03 17:41:05 ----A---- C:\Windows\system32\mcmde.dll
2011-08-03 17:41:04 ----A---- C:\Windows\SYSWOW64\userenv.dll
2011-08-03 17:41:04 ----A---- C:\Windows\system32\wuapi.dll
2011-08-03 17:41:04 ----A---- C:\Windows\system32\vpnike.dll
2011-08-03 17:41:03 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2011-08-03 17:41:03 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2011-08-03 17:41:03 ----A---- C:\Windows\system32\userenv.dll
2011-08-03 17:41:03 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-08-03 17:41:02 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-08-03 17:41:02 ----A---- C:\Windows\system32\wintrust.dll
2011-08-03 17:41:02 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-08-03 17:41:01 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2011-08-03 17:41:01 ----A---- C:\Windows\system32\photowiz.dll
2011-08-03 17:41:01 ----A---- C:\Windows\system32\evr.dll
2011-08-03 17:41:00 ----A---- C:\Windows\system32\framedyn.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\wmpmde.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\sppobjs.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-08-03 17:40:59 ----A---- C:\Windows\system32\FXSSVC.exe
2011-08-03 17:40:59 ----A---- C:\Windows\system32\AudioSes.dll
2011-08-03 17:40:59 ----A---- C:\Windows\system32\aepdu.dll
2011-08-03 17:40:58 ----A---- C:\Windows\SYSWOW64\cmd.exe
2011-08-03 17:40:58 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-08-03 17:40:58 ----A---- C:\Windows\system32\wmpeffects.dll
2011-08-03 17:40:58 ----A---- C:\Windows\system32\SyncCenter.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\srvsvc.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\shsvcs.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-08-03 17:40:57 ----A---- C:\Windows\system32\aeinv.dll
2011-08-03 17:40:55 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2011-08-03 17:40:55 ----A---- C:\Windows\SYSWOW64\propsys.dll
2011-08-03 17:40:55 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2011-08-03 17:40:55 ----A---- C:\Windows\system32\fde.dll
2011-08-03 17:40:54 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2011-08-03 17:40:54 ----A---- C:\Windows\SYSWOW64\mfds.dll
2011-08-03 17:40:54 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-08-03 17:40:53 ----A---- C:\Windows\SYSWOW64\user32.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\stobject.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\netdiagfx.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\localsec.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\imapi2.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-08-03 17:40:53 ----A---- C:\Windows\system32\credui.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\cdd.dll
2011-08-03 17:40:53 ----A---- C:\Windows\system32\bcryptprimitives.dll
2011-08-03 17:40:52 ----A---- C:\Windows\system32\netid.dll
2011-08-03 17:40:52 ----A---- C:\Windows\system32\inetpp.dll
2011-08-03 17:40:52 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2011-08-03 17:40:51 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2011-08-03 17:40:51 ----A---- C:\Windows\SYSWOW64\azroles.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\spp.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-08-03 17:40:51 ----A---- C:\Windows\system32\davclnt.dll
2011-08-03 17:40:51 ----A---- C:\Windows\system32\biocpl.dll
2011-08-03 17:40:50 ----A---- C:\Windows\system32\profsvc.dll
2011-08-03 17:40:49 ----A---- C:\Windows\SYSWOW64\themeui.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\scansetting.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\printui.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\mspbda.dll
2011-08-03 17:40:49 ----A---- C:\Windows\system32\msinfo32.exe
2011-08-03 17:40:49 ----A---- C:\Windows\system32\gameux.dll
2011-08-03 17:40:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2011-08-03 17:40:48 ----A---- C:\Windows\SYSWOW64\credui.dll
2011-08-03 17:40:48 ----A---- C:\Windows\system32\pla.dll
2011-08-03 17:40:48 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-08-03 17:40:48 ----A---- C:\Windows\splwow64.exe
2011-08-03 17:40:47 ----A---- C:\Windows\SYSWOW64\spp.dll
2011-08-03 17:40:47 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2011-08-03 17:40:47 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2011-08-03 17:40:47 ----A---- C:\Windows\system32\wusa.exe
2011-08-03 17:40:47 ----A---- C:\Windows\system32\msdri.dll
2011-08-03 17:40:47 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-08-03 17:40:47 ----A---- C:\Windows\system32\aitagent.exe
2011-08-03 17:40:46 ----A---- C:\Windows\system32\vds.exe
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2011-08-03 17:40:45 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\wiaservc.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\rpchttp.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\mscms.dll
2011-08-03 17:40:45 ----A---- C:\Windows\system32\drivers\pci.sys
2011-08-03 17:40:45 ----A---- C:\Windows\system32\cryptsvc.dll
2011-08-03 17:40:44 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2011-08-03 17:40:44 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2011-08-03 17:40:43 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\wisptis.exe
2011-08-03 17:40:43 ----A---- C:\Windows\system32\PkgMgr.exe
2011-08-03 17:40:43 ----A---- C:\Windows\system32\msi.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-08-03 17:40:43 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2011-08-03 17:40:42 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2011-08-03 17:40:42 ----A---- C:\Windows\system32\ocsetup.exe
2011-08-03 17:40:41 ----A---- C:\Windows\SYSWOW64\evr.dll
2011-08-03 17:40:41 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-08-03 17:40:40 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2011-08-03 17:40:40 ----A---- C:\Windows\system32\sppwinob.dll
2011-08-03 17:40:39 ----A---- C:\Windows\SYSWOW64\calc.exe
2011-08-03 17:40:39 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\rdpcore.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\ocsetapi.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\eapp3hst.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\DXP.dll
2011-08-03 17:40:39 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-08-03 17:40:38 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2011-08-03 17:40:38 ----A---- C:\Windows\system32\drivers\msdsm.sys