Preventivní kontrola logu
Napsal: 09 črc 2012 12:17
Dobré odpoledne. Poprosil bych o preventivní kontrolu logu. Nedávno jsem intaloval systém na nový SSD disk, tak bych se rád přesvědčil, jestli se mi tam nic nedostalo.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Tomas at 2012-07-09 13:14:25
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 72 GB (65%) free of 110 GB
Total RAM: 4092 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:14:26, on 9.7.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\QIP\qip.exe
C:\Program Files (x86)\Java\jre7\launch4j-tmp\frd.exe
C:\Program Files (x86)\Winamp\winamp.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tomas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1724238512-3711407535-3221750515-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1724238512-3711407535-3221750515-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8015 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-bffe6afa-431d-436d-acac-de76ce63e06a -SystemEventPortName:HostProcess-483bb9c0-807c-4832-bf40-2b0f5c20a32e -IoCancelEventPortName:HostProcess-3e929f56-4c91-446b-a01c-0e3030d194cf -NonStateChangingEventPortName:HostProcess-4497bd16-6c09-4b31-b4dc-d6431c0dc22a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1fbce8b3-4ca4-4965-9bf3-fbb5976bc1e3
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\QIP\qip.exe"
"C:\Program Files (x86)\Java\jre7\launch4j-tmp\frd.exe" -Xms32m -Xmx128m -jar "C:\Program Files (x86)\FreeRapid-0.86u1\frd.jar"
"C:\Program Files (x86)\Winamp\winamp.exe" -Embedding
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=3136.04DAD540.885457091 /prefetch:3
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=3136.04DADE00.2050020517 /prefetch:3
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service --lang=cs
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel=3136.06ACD460.429953810 /prefetch:12
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/Disabled/ --renderer-print-preview --channel=3136.07A941C0.1921604698 /prefetch:3
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/Disabled/ --renderer-print-preview --channel=3136.07A7EE00.1316087822 /prefetch:3
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Stažené soubory\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-05-04 453504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-05-04 157576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-08-18 8067616]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-03-07 4081008]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2779024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenuEx]
C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-03-28 1611160]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GAINWARD]
C:\Program Files (x86)\EXPERTool\TBPanel.exe /A []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCU"=C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [2009-08-04 346320]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-07-09 13:09:51 ----D---- C:\Program Files\trend micro
2012-07-09 13:09:50 ----D---- C:\rsit
2012-07-09 09:42:29 ----A---- C:\Windows\system32\FNTCACHE.DAT
2012-07-08 18:28:40 ----D---- C:\ProgramData\Rockstar Games
2012-07-07 14:27:35 ----D---- C:\Users\Tomas\AppData\Roaming\mkvtoolnix
2012-07-07 14:24:45 ----D---- C:\Program Files (x86)\MKVToolNix
2012-07-05 21:57:54 ----A---- C:\Windows\system32\drivers\cpuz135_x64.sys
2012-07-05 21:57:53 ----D---- C:\Program Files\CPUID
2012-07-05 21:55:42 ----D---- C:\Windows\system32\appmgmt
2012-07-04 23:28:36 ----D---- C:\Users\Tomas\AppData\Roaming\NVIDIA
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvvsvc.exe
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvsvc64.dll
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvshext.dll
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvmctray.dll
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvcpl.dll
2012-07-04 11:52:08 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-07-04 11:52:08 ----A---- C:\Windows\system32\OpenCL.dll
2012-07-04 11:52:02 ----D---- C:\ProgramData\NVIDIA Corporation
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvoglv64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvdispgenco64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvdispco64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcuvid.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcuda.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcompiler.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvapi64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-07-04 11:49:20 ----D---- C:\Program Files\NVIDIA Corporation
2012-07-04 11:49:04 ----D---- C:\NVIDIA
2012-07-04 11:31:50 ----D---- C:\Program Files (x86)\Flawless Widescreen
2012-07-03 12:28:00 ----D---- C:\Program Files\ATI Technologies
2012-07-03 12:26:48 ----A---- C:\Windows\system32\drivers\AtiPcie.sys
2012-07-03 11:43:22 ----D---- C:\Users\Tomas\AppData\Roaming\HD Tune Pro
2012-07-03 11:43:18 ----D---- C:\Program Files (x86)\HD Tune Pro
2012-07-03 11:13:31 ----D---- C:\ProgramData\AltrixSoft
2012-07-02 14:32:50 ----D---- C:\ProgramData\RELOADED
2012-06-30 17:07:44 ----D---- C:\Users\Tomas\AppData\Roaming\R-TT
2012-06-30 16:46:15 ----D---- C:\Windows\Acronis
2012-06-30 16:44:29 ----D---- C:\ProgramData\Acronis
2012-06-30 16:43:49 ----D---- C:\Program Files (x86)\Acronis
2012-06-30 11:17:31 ----D---- C:\Program Files (x86)\Monitor Calibration Wizard
2012-06-30 11:13:29 ----D---- C:\Program Files (x86)\CheckScreen
2012-06-28 17:44:42 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2012-06-28 15:03:49 ----D---- C:\Users\Tomas\AppData\Roaming\Mozilla
2012-06-28 15:03:30 ----D---- C:\Program Files (x86)\1ClickDownload
2012-06-26 17:51:07 ----A---- C:\Windows\system32\wups2.dll
2012-06-26 17:51:07 ----A---- C:\Windows\system32\wucltux.dll
2012-06-26 17:51:07 ----A---- C:\Windows\system32\wuauclt.exe
2012-06-26 17:51:06 ----A---- C:\Windows\system32\wuaueng.dll
2012-06-26 17:51:03 ----A---- C:\Windows\system32\wups.dll
2012-06-26 17:51:03 ----A---- C:\Windows\system32\wudriver.dll
2012-06-26 17:51:03 ----A---- C:\Windows\system32\wuapi.dll
2012-06-26 17:51:01 ----A---- C:\Windows\system32\wuwebv.dll
2012-06-26 17:51:01 ----A---- C:\Windows\system32\wuapp.exe
2012-06-24 13:49:46 ----D---- C:\Users\Tomas\AppData\Roaming\Free Media Converter
2012-06-24 13:28:47 ----HD---- C:\ProgramData\CanonIJScan
2012-06-24 13:18:47 ----D---- C:\Program Files (x86)\Gabest
2012-06-24 13:18:44 ----D---- C:\Program Files (x86)\Xvid
2012-06-24 13:18:35 ----D---- C:\Program Files (x86)\AviSynth 2.5
2012-06-23 12:52:24 ----D---- C:\Program Files (x86)\DsNET Corp
2012-06-23 12:52:01 ----D---- C:\ProgramData\Ask
2012-06-23 12:48:34 ----A---- C:\Windows\SYSWOW64\borlndmm.dll
2012-06-23 12:48:33 ----D---- C:\Program Files (x86)\Cequal Software
2012-06-22 19:59:44 ----D---- C:\Users\Tomas\AppData\Roaming\AudioConverter
2012-06-21 21:58:16 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2012-06-21 21:58:16 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2012-06-21 21:56:20 ----D---- C:\Windows\SYSWOW64\Futuremark
2012-06-21 21:56:20 ----A---- C:\Windows\SYSWOW64\drivers\PciBus.sys
2012-06-21 21:56:20 ----A---- C:\Windows\SYSWOW64\drivers\Entech64.sys
2012-06-21 21:56:20 ----A---- C:\Windows\SYSWOW64\drivers\Entech.sys
2012-06-21 17:53:49 ----D---- C:\Program Files (x86)\Rockstar Games
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-06-21 17:48:12 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-06-21 17:48:12 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-06-21 17:48:12 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-06-21 17:48:12 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-06-21 17:04:06 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-06-21 17:03:54 ----D---- C:\Program Files\Adobe
2012-06-21 17:02:54 ----D---- C:\Program Files\Common Files\Adobe
2012-06-21 17:01:15 ----D---- C:\Windows\SYSWOW64\Macromed
2012-06-21 17:01:09 ----D---- C:\Program Files (x86)\Adobe
2012-06-21 17:00:44 ----D---- C:\ProgramData\Adobe
2012-06-21 16:37:05 ----D---- C:\Windows\AutoKMS
2012-06-21 16:33:34 ----D---- C:\Program Files\Common Files\DESIGNER
2012-06-21 16:33:21 ----D---- C:\Program Files\Microsoft Synchronization Services
2012-06-21 16:33:14 ----D---- C:\Windows\PCHEALTH
2012-06-21 16:33:14 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2012-06-21 16:30:33 ----D---- C:\Program Files\Microsoft Analysis Services
2012-06-21 16:30:33 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-06-21 16:30:30 ----D---- C:\Program Files (x86)\Microsoft Office
2012-06-21 16:30:29 ----D---- C:\Program Files\Microsoft Office
2012-06-21 16:30:21 ----RHD---- C:\MSOCache
2012-06-21 14:41:00 ----D---- C:\Windows\SYSWOW64\Wat
2012-06-21 14:41:00 ----D---- C:\Windows\system32\Wat
2012-06-21 13:24:44 ----D---- C:\Windows\system32\SPReview
2012-06-21 13:24:28 ----D---- C:\Windows\system32\EventProviders
2012-06-21 11:55:38 ----A---- C:\Windows\system32\netfxperf.dll
2012-06-21 11:55:38 ----A---- C:\Windows\system32\dfshim.dll
2012-06-21 11:55:32 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-06-21 11:55:28 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-06-21 11:55:28 ----A---- C:\Windows\system32\mstscax.dll
2012-06-21 11:55:28 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-06-21 11:55:28 ----A---- C:\Windows\system32\d3d10warp.dll
2012-06-21 11:55:26 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-06-21 11:55:23 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-06-21 11:55:23 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-06-21 11:55:22 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-06-21 11:55:22 ----A---- C:\Windows\system32\tssrvlic.dll
2012-06-21 11:55:22 ----A---- C:\Windows\system32\sysmain.dll
2012-06-21 11:55:22 ----A---- C:\Windows\system32\RDVGHelper.exe
2012-06-21 11:55:21 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2012-06-21 11:55:21 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-06-21 11:55:20 ----A---- C:\Windows\system32\wmp.dll
2012-06-21 11:55:19 ----A---- C:\Windows\system32\mscoree.dll
2012-06-21 11:55:19 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-06-21 11:55:19 ----A---- C:\Windows\system32\d2d1.dll
2012-06-21 11:55:18 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-06-21 11:55:18 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\xpsservices.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\secproc_isv.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\secproc.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-06-21 11:55:18 ----A---- C:\Windows\system32\RMActivate.exe
2012-06-21 11:55:18 ----A---- C:\Windows\system32\mf.dll
2012-06-21 11:55:17 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-06-21 11:55:17 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-06-21 11:55:17 ----A---- C:\Windows\system32\rpcrt4.dll
2012-06-21 11:55:16 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-06-21 11:55:16 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2012-06-21 11:55:16 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2012-06-21 11:55:16 ----A---- C:\Windows\system32\schedsvc.dll
2012-06-21 11:55:15 ----A---- C:\Windows\system32\ole32.dll
2012-06-21 11:55:14 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\wevtsvc.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\taskschd.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\spwizui.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\RacEngn.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\diagperf.dll
2012-06-21 11:55:13 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-06-21 11:55:13 ----A---- C:\Windows\system32\vssapi.dll
2012-06-21 11:55:13 ----A---- C:\Windows\system32\msxml3.dll
2012-06-21 11:55:13 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-06-21 11:55:12 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\UIRibbon.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-06-21 11:55:11 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-06-21 11:55:11 ----A---- C:\Windows\system32\WsmSvc.dll
2012-06-21 11:55:11 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-06-21 11:55:10 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-06-21 11:55:10 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\WinSAT.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\spreview.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\spinstall.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\rdpdd.dll
2012-06-21 11:55:10 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-06-21 11:55:10 ----A---- C:\Windows\system32\PresentationHost.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\MPSSVC.dll
2012-06-21 11:55:10 ----A---- C:\Windows\system32\CertEnroll.dll
2012-06-21 11:55:09 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-06-21 11:55:09 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-06-21 11:55:09 ----A---- C:\Windows\system32\SearchFolder.dll
2012-06-21 11:55:09 ----A---- C:\Windows\system32\msxml6.dll
2012-06-21 11:55:09 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-06-21 11:55:09 ----A---- C:\Windows\system32\d3d9.dll
2012-06-21 11:55:08 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-06-21 11:55:07 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\VSSVC.exe
2012-06-21 11:55:07 ----A---- C:\Windows\system32\mstime.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\gpsvc.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\FntCache.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\dwmcore.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\drivers\http.sys
2012-06-21 11:55:07 ----A---- C:\Windows\system32\dbgeng.dll
2012-06-21 11:55:05 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2012-06-21 11:55:05 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-06-21 11:55:05 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-06-21 11:55:04 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\termsrv.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\qmgr.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\mstsc.exe
2012-06-21 11:55:04 ----A---- C:\Windows\system32\gpprefcl.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\audiosrv.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\actxprxy.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\winhttp.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\wbengine.exe
2012-06-21 11:55:03 ----A---- C:\Windows\system32\setupapi.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\rpcss.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-06-21 11:55:03 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-06-21 11:55:03 ----A---- C:\Windows\system32\propsys.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\netlogon.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\msv1_0.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\imapi2fs.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\d3d11.dll
2012-06-21 11:55:02 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-06-21 11:55:02 ----A---- C:\Windows\system32\WSDApi.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\werconcpl.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\user32.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\taskeng.exe
2012-06-21 11:55:02 ----A---- C:\Windows\system32\odbc32.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\authui.dll
2012-06-21 11:55:01 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-06-21 11:55:01 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\umrdp.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\tsmf.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\scavengeui.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\localspl.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-06-21 11:55:01 ----A---- C:\Windows\system32\drivers\netio.sys
2012-06-21 11:55:01 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-06-21 11:55:01 ----A---- C:\Windows\system32\dhcpcore.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\certmgr.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\shlwapi.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\rdpshell.exe
2012-06-21 11:55:00 ----A---- C:\Windows\system32\netshell.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\ncsi.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\msdtctm.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\msdrm.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\framedynos.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\mstime.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\ws2_32.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\wmpps.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\winlogon.exe
2012-06-21 11:54:59 ----A---- C:\Windows\system32\usp10.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\Query.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\nlasvc.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\netcfgx.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\mswsock.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\lsm.exe
2012-06-21 11:54:59 ----A---- C:\Windows\system32\dxgi.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\drvstore.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\drivers\csc.sys
2012-06-21 11:54:59 ----A---- C:\Windows\system32\comdlg32.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\appmgr.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\apphelp.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\wpdshext.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\Vault.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\samsrv.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\QAGENT.DLL
2012-06-21 11:54:58 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-06-21 11:54:58 ----A---- C:\Windows\system32\cmd.exe
2012-06-21 11:54:58 ----A---- C:\Windows\system32\BFE.DLL
2012-06-21 11:54:58 ----A---- C:\Windows\system32\azroles.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-06-21 11:54:57 ----A---- C:\Windows\system32\win32spl.dll
2012-06-21 11:54:57 ----A---- C:\Windows\system32\WebClnt.dll
2012-06-21 11:54:57 ----A---- C:\Windows\system32\rdpclip.exe
2012-06-21 11:54:57 ----A---- C:\Windows\system32\lpksetup.exe
2012-06-21 11:54:57 ----A---- C:\Windows\system32\cscsvc.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\Wldap32.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\taskcomp.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\sxs.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\pnidui.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\mfds.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\mcbuilder.exe
2012-06-21 11:54:56 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\hgprint.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-06-21 11:54:56 ----A---- C:\Windows\system32\cscobj.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\winsta.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\webservices.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\spoolsv.exe
2012-06-21 11:54:55 ----A---- C:\Windows\system32\SessEnv.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\rdpendp.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-06-21 11:54:54 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\prncache.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\mcmde.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\iepeers.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\gdi32.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\fveapi.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-06-21 11:54:54 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-06-21 11:54:54 ----A---- C:\Windows\system32\dot3api.dll
2012-06-21 11:54:53 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-06-21 11:54:53 ----A---- C:\Windows\system32\schtasks.exe
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\wlanpref.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\vpnike.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\userenv.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\tspubwmi.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\photowiz.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\evr.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-06-21 11:54:52 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-06-21 11:54:51 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-06-21 11:54:51 ----A---- C:\Windows\system32\wmpmde.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\wmpeffects.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\SyncCenter.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\srvsvc.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\sppobjs.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\shsvcs.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\rdpinit.exe
2012-06-21 11:54:51 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-06-21 11:54:51 ----A---- C:\Windows\system32\FXSSVC.exe
2012-06-21 11:54:51 ----A---- C:\Windows\system32\framedyn.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\AudioSes.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\aepdu.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\aeinv.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\vmicsvc.exe
2012-06-21 11:54:50 ----A---- C:\Windows\system32\stobject.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\netdiagfx.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\localsec.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\imapi2.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\fde.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-06-21 11:54:50 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-06-21 11:54:50 ----A---- C:\Windows\system32\credui.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\cdd.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-06-21 11:54:49 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-06-21 11:54:49 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-06-21 11:54:49 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\spp.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\scansetting.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-06-21 11:54:49 ----A---- C:\Windows\system32\printui.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\netid.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\mspbda.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\msinfo32.exe
2012-06-21 11:54:49 ----A---- C:\Windows\system32\inetpp.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\gameux.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-06-21 11:54:49 ----A---- C:\Windows\system32\davclnt.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\cscui.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\biocpl.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\wusa.exe
2012-06-21 11:54:48 ----A---- C:\Windows\system32\wiaservc.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\vds.exe
2012-06-21 11:54:48 ----A---- C:\Windows\system32\pla.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-06-21 11:54:48 ----A---- C:\Windows\system32\msdri.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-06-21 11:54:48 ----A---- C:\Windows\system32\drivers\pci.sys
2012-06-21 11:54:48 ----A---- C:\Windows\system32\aitagent.exe
2012-06-21 11:54:48 ----A---- C:\Windows\splwow64.exe
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\wisptis.exe
2012-06-21 11:54:47 ----A---- C:\Windows\system32\sppwinob.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\rpchttp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\PkgMgr.exe
2012-06-21 11:54:47 ----A---- C:\Windows\system32\ocsetup.exe
2012-06-21 11:54:47 ----A---- C:\Windows\system32\mscms.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-06-21 11:54:47 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-06-21 11:54:47 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-06-21 11:54:46 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-06-21 11:54:46 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-06-21 11:54:46 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-06-21 11:54:46 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\wcncsvc.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\upnp.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\Robocopy.exe
2012-06-21 11:54:46 ----A---- C:\Windows\system32\ocsetapi.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\mprapi.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\eapphost.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\eapp3hst.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\DXP.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-06-21 11:54:46 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-06-21 11:54:46 ----A---- C:\Windows\system32\ci.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-06-21 11:54:45 ----A---- C:\Windows\system32\thumbcache.dll
2012-06-21 11:54:45 ----A---- C:\Windows\system32\t2embed.dll
2012-06-21 11:54:45 ----A---- C:\Windows\system32\hal.dll
2012-06-21 11:54:45 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\themeui.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\scrptadm.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\scecli.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\puiobj.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\onex.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\nlaapi.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-06-21 11:54:44 ----A---- C:\Windows\system32\msasn1.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\iasrad.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\dwmredir.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-06-21 11:54:44 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-06-21 11:54:44 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-06-21 11:54:43 ----A---- C:\Windows\system32\iedkcs32.dll
2012-06-21 11:54:43 ----A---- C:\Windows\system32\aaclient.dll
2012-06-21 11:54:42 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-06-21 11:54:42 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\wlangpui.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\wiadefui.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\wdc.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\VAN.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\sdengin2.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\scesrv.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\rasmans.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\netcenter.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\msftedit.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\dskquoui.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\wscapi.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\TabSvc.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\srchadmin.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\SndVol.exe
2012-06-21 11:54:41 ----A---- C:\Windows\system32\samcli.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\regapi.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\QUTIL.DLL
2012-06-21 11:54:41 ----A---- C:\Windows\system32\iasacct.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-06-21 11:54:41 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-06-21 11:54:41 ----A---- C:\Windows\system32\consent.exe
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-06-21 11:54:40 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-06-21 11:54:40 ----A---- C:\Windows\system32\wksprt.exe
2012-06-21 11:54:40 ----A---- C:\Windows\system32\taskhost.exe
2012-06-21 11:54:40 ----A---- C:\Windows\system32\setupcl.exe
2012-06-21 11:54:40 ----A---- C:\Windows\system32\rastls.dll
2012-06-21 11:54:40 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-06-21 11:54:40 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\tapisrv.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\netiohlp.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\msconfig.exe
2012-06-21 11:54:39 ----A---- C:\Windows\system32\mimefilt.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\ListSvc.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\hgcpl.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\riched20.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\mtxclu.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\lsmproxy.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\fdeploy.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-06-21 11:54:38 ----A---- C:\Windows\system32\drivers\ks.sys
2012-06-21 11:54:38 ----A---- C:\Windows\system32\clusapi.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\basecsp.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\themecpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\powercpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\nci.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\logoncli.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\eudcedit.exe
2012-06-21 11:54:37 ----A---- C:\Windows\system32\dnscmmc.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\wkssvc.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\sppcomapi.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\netjoin.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\Narrator.exe
2012-06-21 11:54:36 ----A---- C:\Windows\system32\licmgr10.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\Faultrep.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\comctl32.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\cabview.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\autochk.exe
2012-06-21 11:54:36 ----A---- C:\Windows\system32\autofmt.exe
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-06-21 11:54:35 ----A---- C:\Windows\system32\wpd_ci.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\shsetup.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\sdclt.exe
2012-06-21 11:54:35 ----A---- C:\Windows\system32\nshipsec.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\fms.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\bcdsrv.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\autoconv.exe
2012-06-21 11:54:35 ----A---- C:\Windows\system32\audiodg.exe
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\wwanconn.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\wlanui.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\SmiEngine.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\rdpsign.exe
2012-06-21 11:54:34 ----A---- C:\Windows\system32\qedit.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\prntvpt.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\mscorier.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\mprddm.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\fontext.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\dps.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\Display.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\credssp.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\AxInstSv.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\rtutils.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\mblctr.exe
2012-06-21 11:54:33 ----A---- C:\Windows\system32\DiagCpl.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\batmeter.dll
2012-06-21 11:54:32 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-06-21 11:54:32 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\wpccpl.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\usercpl.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\sppsvc.exe
2012-06-21 11:54:32 ----A---- C:\Windows\system32\provsvc.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\bootres.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\taskmgr.exe
2012-06-21 11:54:31 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\shdocvw.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\rasppp.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\prnfldr.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\hbaapi.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\dxdiagn.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-06-21 11:54:31 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-06-21 11:54:31 ----A---- C:\Windows\system32\dot3cfg.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\untfs.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\proquota.exe
2012-06-21 11:54:30 ----A---- C:\Windows\system32\pdh.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-06-21 11:54:30 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-06-21 11:54:30 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-06-21 11:54:30 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-06-21 11:54:29 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-06-21 11:54:29 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-06-21 11:54:29 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-06-21 11:54:29 ----A---- C:\Windows\system32\webcheck.dll
2012-06-21 11:54:29 ----A---- C:\Windows\system32\userinit.exe
2012-06-21 11:54:29 ----A---- C:\Windows\system32\slui.exe
2012-06-21 11:54:29 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-06-21 11:54:28 ----A---- C:\Windows\system32\zipfldr.dll
2012-06-21 11:54:28 ----A---- C:\Windows\system32\msieftp.dll
2012-06-21 11:54:28 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-06-21 11:54:28 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\twext.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\sud.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\srcore.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\networkmap.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-06-21 11:54:27 ----A---- C:\Windows\system32\dot3svc.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\cryptui.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\ActionCenter.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\uxlib.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\recovery.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\OobeFldr.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\dsuiext.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\bcdedit.exe
2012-06-21 11:54:26 ----A---- C:\Windows\system32\azroleui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\tzutil.exe
2012-06-21 11:54:25 ----A---- C:\Windows\system32\systemcpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\syncui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\sisbkup.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\shwebsvc.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\sdcpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\recdisc.exe
2012-06-21 11:54:25 ----A---- C:\Windows\system32\netplwiz.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\isoburn.exe
2012-06-21 11:54:25 ----A---- C:\Windows\system32\httpapi.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\fvecpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\efscore.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-06-21 11:54:25 ----A---- C:\Windows\system32\cca.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\autoplay.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\asycfilt.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\wlanmsm.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\sysclass.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\spwizeng.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\sdrsvc.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\ncryptui.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\msvidc32.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-06-21 11:54:24 ----A---- C:\Windows\system32\certcli.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\appinfo.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\vdsutil.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\termmgr.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\sethc.exe
2012-06-21 11:54:23 ----A---- C:\Windows\system32\rstrui.exe
2012-06-21 11:54:23 ----A---- C:\Windows\system32\ReAgent.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\ntlanman.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\msscp.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\MFPlay.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\tsgqec.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\ssText3d.scr
2012-06-21 11:54:22 ----A---- C:\Windows\system32\sqlcese30.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\slwga.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\rdpd3d.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\iyuv_32.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\iTVData.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-06-21 11:54:22 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\wavemsp.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\srvcli.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\ntprint.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\nslookup.exe
2012-06-21 11:54:21 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-06-21 11:54:21 ----A---- C:\Windows\system32\msiexec.exe
2012-06-21 11:54:21 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\acppage.dll
2012-06-21 11:54:20 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-06-21 11:54:20 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-06-21 11:54:20 ----A---- C:\Windows\SYSWOW64\riched20.dll
Logfile of random's system information tool 1.09 (written by random/random)
Run by Tomas at 2012-07-09 13:14:25
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 72 GB (65%) free of 110 GB
Total RAM: 4092 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:14:26, on 9.7.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\QIP\qip.exe
C:\Program Files (x86)\Java\jre7\launch4j-tmp\frd.exe
C:\Program Files (x86)\Winamp\winamp.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tomas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1724238512-3711407535-3221750515-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1724238512-3711407535-3221750515-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8015 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-bffe6afa-431d-436d-acac-de76ce63e06a -SystemEventPortName:HostProcess-483bb9c0-807c-4832-bf40-2b0f5c20a32e -IoCancelEventPortName:HostProcess-3e929f56-4c91-446b-a01c-0e3030d194cf -NonStateChangingEventPortName:HostProcess-4497bd16-6c09-4b31-b4dc-d6431c0dc22a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1fbce8b3-4ca4-4965-9bf3-fbb5976bc1e3
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\QIP\qip.exe"
"C:\Program Files (x86)\Java\jre7\launch4j-tmp\frd.exe" -Xms32m -Xmx128m -jar "C:\Program Files (x86)\FreeRapid-0.86u1\frd.jar"
"C:\Program Files (x86)\Winamp\winamp.exe" -Embedding
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=3136.04DAD540.885457091 /prefetch:3
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel=3136.04DADE00.2050020517 /prefetch:3
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service --lang=cs
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel=3136.06ACD460.429953810 /prefetch:12
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/Disabled/ --renderer-print-preview --channel=3136.07A941C0.1921604698 /prefetch:3
"C:\Users\Tomas\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/Instant/Inactive/Prerender/ContentPrefetchPrerender1/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SpdyCwnd/cwndMin10/SpdyImpact/npn_with_spdy/WarmSocketImpact/warmest_socket/WebStoreLinkExperiment/Disabled/ --renderer-print-preview --channel=3136.07A7EE00.1316087822 /prefetch:3
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Stažené soubory\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-05-04 453504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-05-04 157576]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-08-18 8067616]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-03-07 4081008]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2779024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenuEx]
C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-03-28 1611160]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-11 3672384]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GAINWARD]
C:\Program Files (x86)\EXPERTool\TBPanel.exe /A []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCU"=C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [2009-08-04 346320]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2011-06-12 6721936]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-07-09 13:09:51 ----D---- C:\Program Files\trend micro
2012-07-09 13:09:50 ----D---- C:\rsit
2012-07-09 09:42:29 ----A---- C:\Windows\system32\FNTCACHE.DAT
2012-07-08 18:28:40 ----D---- C:\ProgramData\Rockstar Games
2012-07-07 14:27:35 ----D---- C:\Users\Tomas\AppData\Roaming\mkvtoolnix
2012-07-07 14:24:45 ----D---- C:\Program Files (x86)\MKVToolNix
2012-07-05 21:57:54 ----A---- C:\Windows\system32\drivers\cpuz135_x64.sys
2012-07-05 21:57:53 ----D---- C:\Program Files\CPUID
2012-07-05 21:55:42 ----D---- C:\Windows\system32\appmgmt
2012-07-04 23:28:36 ----D---- C:\Users\Tomas\AppData\Roaming\NVIDIA
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvvsvc.exe
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvsvc64.dll
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvshext.dll
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvmctray.dll
2012-07-04 11:52:13 ----A---- C:\Windows\system32\nvcpl.dll
2012-07-04 11:52:08 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-07-04 11:52:08 ----A---- C:\Windows\system32\OpenCL.dll
2012-07-04 11:52:02 ----D---- C:\ProgramData\NVIDIA Corporation
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-07-04 11:49:42 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvoglv64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvdispgenco64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvdispco64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcuvid.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcuda.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvcompiler.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\nvapi64.dll
2012-07-04 11:49:42 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-07-04 11:49:20 ----D---- C:\Program Files\NVIDIA Corporation
2012-07-04 11:49:04 ----D---- C:\NVIDIA
2012-07-04 11:31:50 ----D---- C:\Program Files (x86)\Flawless Widescreen
2012-07-03 12:28:00 ----D---- C:\Program Files\ATI Technologies
2012-07-03 12:26:48 ----A---- C:\Windows\system32\drivers\AtiPcie.sys
2012-07-03 11:43:22 ----D---- C:\Users\Tomas\AppData\Roaming\HD Tune Pro
2012-07-03 11:43:18 ----D---- C:\Program Files (x86)\HD Tune Pro
2012-07-03 11:13:31 ----D---- C:\ProgramData\AltrixSoft
2012-07-02 14:32:50 ----D---- C:\ProgramData\RELOADED
2012-06-30 17:07:44 ----D---- C:\Users\Tomas\AppData\Roaming\R-TT
2012-06-30 16:46:15 ----D---- C:\Windows\Acronis
2012-06-30 16:44:29 ----D---- C:\ProgramData\Acronis
2012-06-30 16:43:49 ----D---- C:\Program Files (x86)\Acronis
2012-06-30 11:17:31 ----D---- C:\Program Files (x86)\Monitor Calibration Wizard
2012-06-30 11:13:29 ----D---- C:\Program Files (x86)\CheckScreen
2012-06-28 17:44:42 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2012-06-28 15:03:49 ----D---- C:\Users\Tomas\AppData\Roaming\Mozilla
2012-06-28 15:03:30 ----D---- C:\Program Files (x86)\1ClickDownload
2012-06-26 17:51:07 ----A---- C:\Windows\system32\wups2.dll
2012-06-26 17:51:07 ----A---- C:\Windows\system32\wucltux.dll
2012-06-26 17:51:07 ----A---- C:\Windows\system32\wuauclt.exe
2012-06-26 17:51:06 ----A---- C:\Windows\system32\wuaueng.dll
2012-06-26 17:51:03 ----A---- C:\Windows\system32\wups.dll
2012-06-26 17:51:03 ----A---- C:\Windows\system32\wudriver.dll
2012-06-26 17:51:03 ----A---- C:\Windows\system32\wuapi.dll
2012-06-26 17:51:01 ----A---- C:\Windows\system32\wuwebv.dll
2012-06-26 17:51:01 ----A---- C:\Windows\system32\wuapp.exe
2012-06-24 13:49:46 ----D---- C:\Users\Tomas\AppData\Roaming\Free Media Converter
2012-06-24 13:28:47 ----HD---- C:\ProgramData\CanonIJScan
2012-06-24 13:18:47 ----D---- C:\Program Files (x86)\Gabest
2012-06-24 13:18:44 ----D---- C:\Program Files (x86)\Xvid
2012-06-24 13:18:35 ----D---- C:\Program Files (x86)\AviSynth 2.5
2012-06-23 12:52:24 ----D---- C:\Program Files (x86)\DsNET Corp
2012-06-23 12:52:01 ----D---- C:\ProgramData\Ask
2012-06-23 12:48:34 ----A---- C:\Windows\SYSWOW64\borlndmm.dll
2012-06-23 12:48:33 ----D---- C:\Program Files (x86)\Cequal Software
2012-06-22 19:59:44 ----D---- C:\Users\Tomas\AppData\Roaming\AudioConverter
2012-06-21 21:58:16 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2012-06-21 21:58:16 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2012-06-21 21:56:20 ----D---- C:\Windows\SYSWOW64\Futuremark
2012-06-21 21:56:20 ----A---- C:\Windows\SYSWOW64\drivers\PciBus.sys
2012-06-21 21:56:20 ----A---- C:\Windows\SYSWOW64\drivers\Entech64.sys
2012-06-21 21:56:20 ----A---- C:\Windows\SYSWOW64\drivers\Entech.sys
2012-06-21 17:53:49 ----D---- C:\Program Files (x86)\Rockstar Games
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-06-21 17:48:13 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-06-21 17:48:12 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-06-21 17:48:12 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-06-21 17:48:12 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-06-21 17:48:12 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-06-21 17:04:06 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-06-21 17:03:54 ----D---- C:\Program Files\Adobe
2012-06-21 17:02:54 ----D---- C:\Program Files\Common Files\Adobe
2012-06-21 17:01:15 ----D---- C:\Windows\SYSWOW64\Macromed
2012-06-21 17:01:09 ----D---- C:\Program Files (x86)\Adobe
2012-06-21 17:00:44 ----D---- C:\ProgramData\Adobe
2012-06-21 16:37:05 ----D---- C:\Windows\AutoKMS
2012-06-21 16:33:34 ----D---- C:\Program Files\Common Files\DESIGNER
2012-06-21 16:33:21 ----D---- C:\Program Files\Microsoft Synchronization Services
2012-06-21 16:33:14 ----D---- C:\Windows\PCHEALTH
2012-06-21 16:33:14 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2012-06-21 16:30:33 ----D---- C:\Program Files\Microsoft Analysis Services
2012-06-21 16:30:33 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-06-21 16:30:30 ----D---- C:\Program Files (x86)\Microsoft Office
2012-06-21 16:30:29 ----D---- C:\Program Files\Microsoft Office
2012-06-21 16:30:21 ----RHD---- C:\MSOCache
2012-06-21 14:41:00 ----D---- C:\Windows\SYSWOW64\Wat
2012-06-21 14:41:00 ----D---- C:\Windows\system32\Wat
2012-06-21 13:24:44 ----D---- C:\Windows\system32\SPReview
2012-06-21 13:24:28 ----D---- C:\Windows\system32\EventProviders
2012-06-21 11:55:38 ----A---- C:\Windows\system32\netfxperf.dll
2012-06-21 11:55:38 ----A---- C:\Windows\system32\dfshim.dll
2012-06-21 11:55:32 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-06-21 11:55:28 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-06-21 11:55:28 ----A---- C:\Windows\system32\mstscax.dll
2012-06-21 11:55:28 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-06-21 11:55:28 ----A---- C:\Windows\system32\d3d10warp.dll
2012-06-21 11:55:26 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-06-21 11:55:23 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-06-21 11:55:23 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-06-21 11:55:22 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-06-21 11:55:22 ----A---- C:\Windows\system32\tssrvlic.dll
2012-06-21 11:55:22 ----A---- C:\Windows\system32\sysmain.dll
2012-06-21 11:55:22 ----A---- C:\Windows\system32\RDVGHelper.exe
2012-06-21 11:55:21 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2012-06-21 11:55:21 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-06-21 11:55:20 ----A---- C:\Windows\system32\wmp.dll
2012-06-21 11:55:19 ----A---- C:\Windows\system32\mscoree.dll
2012-06-21 11:55:19 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-06-21 11:55:19 ----A---- C:\Windows\system32\d2d1.dll
2012-06-21 11:55:18 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-06-21 11:55:18 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\xpsservices.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\secproc_isv.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\secproc.dll
2012-06-21 11:55:18 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-06-21 11:55:18 ----A---- C:\Windows\system32\RMActivate.exe
2012-06-21 11:55:18 ----A---- C:\Windows\system32\mf.dll
2012-06-21 11:55:17 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-06-21 11:55:17 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-06-21 11:55:17 ----A---- C:\Windows\system32\rpcrt4.dll
2012-06-21 11:55:16 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-06-21 11:55:16 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2012-06-21 11:55:16 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2012-06-21 11:55:16 ----A---- C:\Windows\system32\schedsvc.dll
2012-06-21 11:55:15 ----A---- C:\Windows\system32\ole32.dll
2012-06-21 11:55:14 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\wevtsvc.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\taskschd.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\spwizui.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\RacEngn.dll
2012-06-21 11:55:14 ----A---- C:\Windows\system32\diagperf.dll
2012-06-21 11:55:13 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-06-21 11:55:13 ----A---- C:\Windows\system32\vssapi.dll
2012-06-21 11:55:13 ----A---- C:\Windows\system32\msxml3.dll
2012-06-21 11:55:13 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-06-21 11:55:12 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\UIRibbon.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-06-21 11:55:12 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-06-21 11:55:11 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-06-21 11:55:11 ----A---- C:\Windows\system32\WsmSvc.dll
2012-06-21 11:55:11 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-06-21 11:55:10 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-06-21 11:55:10 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\WinSAT.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\spreview.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\spinstall.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\rdpdd.dll
2012-06-21 11:55:10 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-06-21 11:55:10 ----A---- C:\Windows\system32\PresentationHost.exe
2012-06-21 11:55:10 ----A---- C:\Windows\system32\MPSSVC.dll
2012-06-21 11:55:10 ----A---- C:\Windows\system32\CertEnroll.dll
2012-06-21 11:55:09 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-06-21 11:55:09 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-06-21 11:55:09 ----A---- C:\Windows\system32\SearchFolder.dll
2012-06-21 11:55:09 ----A---- C:\Windows\system32\msxml6.dll
2012-06-21 11:55:09 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-06-21 11:55:09 ----A---- C:\Windows\system32\d3d9.dll
2012-06-21 11:55:08 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-06-21 11:55:07 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\VSSVC.exe
2012-06-21 11:55:07 ----A---- C:\Windows\system32\mstime.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\gpsvc.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\FntCache.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\dwmcore.dll
2012-06-21 11:55:07 ----A---- C:\Windows\system32\drivers\http.sys
2012-06-21 11:55:07 ----A---- C:\Windows\system32\dbgeng.dll
2012-06-21 11:55:05 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2012-06-21 11:55:05 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-06-21 11:55:05 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-06-21 11:55:04 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\termsrv.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\qmgr.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\mstsc.exe
2012-06-21 11:55:04 ----A---- C:\Windows\system32\gpprefcl.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\audiosrv.dll
2012-06-21 11:55:04 ----A---- C:\Windows\system32\actxprxy.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-06-21 11:55:03 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\winhttp.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\wbengine.exe
2012-06-21 11:55:03 ----A---- C:\Windows\system32\setupapi.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\rpcss.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-06-21 11:55:03 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-06-21 11:55:03 ----A---- C:\Windows\system32\propsys.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\netlogon.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\msv1_0.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\imapi2fs.dll
2012-06-21 11:55:03 ----A---- C:\Windows\system32\d3d11.dll
2012-06-21 11:55:02 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-06-21 11:55:02 ----A---- C:\Windows\system32\WSDApi.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\werconcpl.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\user32.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\taskeng.exe
2012-06-21 11:55:02 ----A---- C:\Windows\system32\odbc32.dll
2012-06-21 11:55:02 ----A---- C:\Windows\system32\authui.dll
2012-06-21 11:55:01 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-06-21 11:55:01 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\umrdp.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\tsmf.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\scavengeui.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\localspl.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-06-21 11:55:01 ----A---- C:\Windows\system32\drivers\netio.sys
2012-06-21 11:55:01 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-06-21 11:55:01 ----A---- C:\Windows\system32\dhcpcore.dll
2012-06-21 11:55:01 ----A---- C:\Windows\system32\certmgr.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-06-21 11:55:00 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\shlwapi.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\rdpshell.exe
2012-06-21 11:55:00 ----A---- C:\Windows\system32\netshell.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\ncsi.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\msdtctm.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\msdrm.dll
2012-06-21 11:55:00 ----A---- C:\Windows\system32\framedynos.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\mstime.dll
2012-06-21 11:54:59 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\ws2_32.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\wmpps.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\winlogon.exe
2012-06-21 11:54:59 ----A---- C:\Windows\system32\usp10.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\Query.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\nlasvc.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\netcfgx.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\mswsock.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\lsm.exe
2012-06-21 11:54:59 ----A---- C:\Windows\system32\dxgi.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\drvstore.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\drivers\csc.sys
2012-06-21 11:54:59 ----A---- C:\Windows\system32\comdlg32.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\appmgr.dll
2012-06-21 11:54:59 ----A---- C:\Windows\system32\apphelp.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-06-21 11:54:58 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\wpdshext.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\Vault.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\samsrv.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\QAGENT.DLL
2012-06-21 11:54:58 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-06-21 11:54:58 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-06-21 11:54:58 ----A---- C:\Windows\system32\cmd.exe
2012-06-21 11:54:58 ----A---- C:\Windows\system32\BFE.DLL
2012-06-21 11:54:58 ----A---- C:\Windows\system32\azroles.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-06-21 11:54:57 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-06-21 11:54:57 ----A---- C:\Windows\system32\win32spl.dll
2012-06-21 11:54:57 ----A---- C:\Windows\system32\WebClnt.dll
2012-06-21 11:54:57 ----A---- C:\Windows\system32\rdpclip.exe
2012-06-21 11:54:57 ----A---- C:\Windows\system32\lpksetup.exe
2012-06-21 11:54:57 ----A---- C:\Windows\system32\cscsvc.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-06-21 11:54:56 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\Wldap32.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\taskcomp.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\sxs.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\pnidui.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\mfds.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\mcbuilder.exe
2012-06-21 11:54:56 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\hgprint.dll
2012-06-21 11:54:56 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-06-21 11:54:56 ----A---- C:\Windows\system32\cscobj.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-06-21 11:54:55 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\winsta.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\webservices.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\spoolsv.exe
2012-06-21 11:54:55 ----A---- C:\Windows\system32\SessEnv.dll
2012-06-21 11:54:55 ----A---- C:\Windows\system32\rdpendp.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-06-21 11:54:54 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-06-21 11:54:54 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\prncache.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\mcmde.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\iepeers.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\gdi32.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\fveapi.dll
2012-06-21 11:54:54 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-06-21 11:54:54 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-06-21 11:54:54 ----A---- C:\Windows\system32\dot3api.dll
2012-06-21 11:54:53 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-06-21 11:54:53 ----A---- C:\Windows\system32\schtasks.exe
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-06-21 11:54:52 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\wlanpref.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\vpnike.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\userenv.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\tspubwmi.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\photowiz.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\evr.dll
2012-06-21 11:54:52 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-06-21 11:54:52 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-06-21 11:54:51 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-06-21 11:54:51 ----A---- C:\Windows\system32\wmpmde.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\wmpeffects.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\SyncCenter.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\srvsvc.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\sppobjs.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\shsvcs.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\rdpinit.exe
2012-06-21 11:54:51 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-06-21 11:54:51 ----A---- C:\Windows\system32\FXSSVC.exe
2012-06-21 11:54:51 ----A---- C:\Windows\system32\framedyn.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\AudioSes.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\aepdu.dll
2012-06-21 11:54:51 ----A---- C:\Windows\system32\aeinv.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-06-21 11:54:50 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\vmicsvc.exe
2012-06-21 11:54:50 ----A---- C:\Windows\system32\stobject.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\netdiagfx.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\localsec.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\imapi2.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\fde.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-06-21 11:54:50 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-06-21 11:54:50 ----A---- C:\Windows\system32\credui.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\cdd.dll
2012-06-21 11:54:50 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-06-21 11:54:49 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-06-21 11:54:49 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-06-21 11:54:49 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\spp.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\scansetting.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-06-21 11:54:49 ----A---- C:\Windows\system32\printui.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\netid.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\mspbda.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\msinfo32.exe
2012-06-21 11:54:49 ----A---- C:\Windows\system32\inetpp.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\gameux.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-06-21 11:54:49 ----A---- C:\Windows\system32\davclnt.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\cscui.dll
2012-06-21 11:54:49 ----A---- C:\Windows\system32\biocpl.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-06-21 11:54:48 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\wusa.exe
2012-06-21 11:54:48 ----A---- C:\Windows\system32\wiaservc.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\vds.exe
2012-06-21 11:54:48 ----A---- C:\Windows\system32\pla.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-06-21 11:54:48 ----A---- C:\Windows\system32\msdri.dll
2012-06-21 11:54:48 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-06-21 11:54:48 ----A---- C:\Windows\system32\drivers\pci.sys
2012-06-21 11:54:48 ----A---- C:\Windows\system32\aitagent.exe
2012-06-21 11:54:48 ----A---- C:\Windows\splwow64.exe
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\wisptis.exe
2012-06-21 11:54:47 ----A---- C:\Windows\system32\sppwinob.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\rpchttp.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\PkgMgr.exe
2012-06-21 11:54:47 ----A---- C:\Windows\system32\ocsetup.exe
2012-06-21 11:54:47 ----A---- C:\Windows\system32\mscms.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-06-21 11:54:47 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-06-21 11:54:47 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-06-21 11:54:47 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-06-21 11:54:46 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-06-21 11:54:46 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-06-21 11:54:46 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-06-21 11:54:46 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\wcncsvc.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\upnp.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\Robocopy.exe
2012-06-21 11:54:46 ----A---- C:\Windows\system32\ocsetapi.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\mprapi.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\eapphost.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\eapp3hst.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\DXP.dll
2012-06-21 11:54:46 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-06-21 11:54:46 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-06-21 11:54:46 ----A---- C:\Windows\system32\ci.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-06-21 11:54:45 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-06-21 11:54:45 ----A---- C:\Windows\system32\thumbcache.dll
2012-06-21 11:54:45 ----A---- C:\Windows\system32\t2embed.dll
2012-06-21 11:54:45 ----A---- C:\Windows\system32\hal.dll
2012-06-21 11:54:45 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-06-21 11:54:44 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\themeui.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\scrptadm.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\scecli.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\puiobj.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\onex.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\nlaapi.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-06-21 11:54:44 ----A---- C:\Windows\system32\msasn1.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\iasrad.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\dwmredir.dll
2012-06-21 11:54:44 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-06-21 11:54:44 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-06-21 11:54:44 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-06-21 11:54:43 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-06-21 11:54:43 ----A---- C:\Windows\system32\iedkcs32.dll
2012-06-21 11:54:43 ----A---- C:\Windows\system32\aaclient.dll
2012-06-21 11:54:42 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-06-21 11:54:42 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\wlangpui.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\wiadefui.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\wdc.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\VAN.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\sdengin2.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\scesrv.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\rasmans.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\netcenter.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\msftedit.dll
2012-06-21 11:54:42 ----A---- C:\Windows\system32\dskquoui.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-06-21 11:54:41 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\wscapi.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\TabSvc.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\srchadmin.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\SndVol.exe
2012-06-21 11:54:41 ----A---- C:\Windows\system32\samcli.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\regapi.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\QUTIL.DLL
2012-06-21 11:54:41 ----A---- C:\Windows\system32\iasacct.dll
2012-06-21 11:54:41 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-06-21 11:54:41 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-06-21 11:54:41 ----A---- C:\Windows\system32\consent.exe
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-06-21 11:54:40 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-06-21 11:54:40 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-06-21 11:54:40 ----A---- C:\Windows\system32\wksprt.exe
2012-06-21 11:54:40 ----A---- C:\Windows\system32\taskhost.exe
2012-06-21 11:54:40 ----A---- C:\Windows\system32\setupcl.exe
2012-06-21 11:54:40 ----A---- C:\Windows\system32\rastls.dll
2012-06-21 11:54:40 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-06-21 11:54:40 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-06-21 11:54:39 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\tapisrv.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\netiohlp.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\msconfig.exe
2012-06-21 11:54:39 ----A---- C:\Windows\system32\mimefilt.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\ListSvc.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\hgcpl.dll
2012-06-21 11:54:39 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-06-21 11:54:38 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\riched20.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\mtxclu.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\lsmproxy.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\fdeploy.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-06-21 11:54:38 ----A---- C:\Windows\system32\drivers\ks.sys
2012-06-21 11:54:38 ----A---- C:\Windows\system32\clusapi.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\basecsp.dll
2012-06-21 11:54:38 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-06-21 11:54:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\themecpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\powercpl.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\nci.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\logoncli.dll
2012-06-21 11:54:37 ----A---- C:\Windows\system32\eudcedit.exe
2012-06-21 11:54:37 ----A---- C:\Windows\system32\dnscmmc.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-06-21 11:54:36 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\wkssvc.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\sppcomapi.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\netjoin.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\Narrator.exe
2012-06-21 11:54:36 ----A---- C:\Windows\system32\licmgr10.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\Faultrep.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\comctl32.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\cabview.dll
2012-06-21 11:54:36 ----A---- C:\Windows\system32\autochk.exe
2012-06-21 11:54:36 ----A---- C:\Windows\system32\autofmt.exe
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-06-21 11:54:35 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-06-21 11:54:35 ----A---- C:\Windows\system32\wpd_ci.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\shsetup.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\sdclt.exe
2012-06-21 11:54:35 ----A---- C:\Windows\system32\nshipsec.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\fms.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\bcdsrv.dll
2012-06-21 11:54:35 ----A---- C:\Windows\system32\autoconv.exe
2012-06-21 11:54:35 ----A---- C:\Windows\system32\audiodg.exe
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-06-21 11:54:34 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\wwanconn.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\wlanui.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\SmiEngine.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\rdpsign.exe
2012-06-21 11:54:34 ----A---- C:\Windows\system32\qedit.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\prntvpt.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\mscorier.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\mprddm.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\fontext.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-06-21 11:54:34 ----A---- C:\Windows\system32\dps.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\Display.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\credssp.dll
2012-06-21 11:54:34 ----A---- C:\Windows\system32\AxInstSv.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-06-21 11:54:33 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\rtutils.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\mblctr.exe
2012-06-21 11:54:33 ----A---- C:\Windows\system32\DiagCpl.dll
2012-06-21 11:54:33 ----A---- C:\Windows\system32\batmeter.dll
2012-06-21 11:54:32 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-06-21 11:54:32 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\wpccpl.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\usercpl.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\sppsvc.exe
2012-06-21 11:54:32 ----A---- C:\Windows\system32\provsvc.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-06-21 11:54:32 ----A---- C:\Windows\system32\bootres.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-06-21 11:54:31 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\taskmgr.exe
2012-06-21 11:54:31 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\shdocvw.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\rasppp.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\prnfldr.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\hbaapi.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\dxdiagn.dll
2012-06-21 11:54:31 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-06-21 11:54:31 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-06-21 11:54:31 ----A---- C:\Windows\system32\dot3cfg.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-06-21 11:54:30 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\untfs.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\proquota.exe
2012-06-21 11:54:30 ----A---- C:\Windows\system32\pdh.dll
2012-06-21 11:54:30 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-06-21 11:54:30 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-06-21 11:54:30 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-06-21 11:54:30 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-06-21 11:54:29 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-06-21 11:54:29 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-06-21 11:54:29 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-06-21 11:54:29 ----A---- C:\Windows\system32\webcheck.dll
2012-06-21 11:54:29 ----A---- C:\Windows\system32\userinit.exe
2012-06-21 11:54:29 ----A---- C:\Windows\system32\slui.exe
2012-06-21 11:54:29 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-06-21 11:54:28 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-06-21 11:54:28 ----A---- C:\Windows\system32\zipfldr.dll
2012-06-21 11:54:28 ----A---- C:\Windows\system32\msieftp.dll
2012-06-21 11:54:28 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-06-21 11:54:28 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-06-21 11:54:27 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\twext.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\sud.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\srcore.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\networkmap.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-06-21 11:54:27 ----A---- C:\Windows\system32\dot3svc.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\cryptui.dll
2012-06-21 11:54:27 ----A---- C:\Windows\system32\ActionCenter.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-06-21 11:54:26 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\uxlib.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\recovery.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\OobeFldr.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\dsuiext.dll
2012-06-21 11:54:26 ----A---- C:\Windows\system32\bcdedit.exe
2012-06-21 11:54:26 ----A---- C:\Windows\system32\azroleui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\tzutil.exe
2012-06-21 11:54:25 ----A---- C:\Windows\system32\systemcpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\syncui.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\sisbkup.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\shwebsvc.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\sdcpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\recdisc.exe
2012-06-21 11:54:25 ----A---- C:\Windows\system32\netplwiz.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\isoburn.exe
2012-06-21 11:54:25 ----A---- C:\Windows\system32\httpapi.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\fvecpl.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\efscore.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-06-21 11:54:25 ----A---- C:\Windows\system32\cca.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\autoplay.dll
2012-06-21 11:54:25 ----A---- C:\Windows\system32\asycfilt.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-06-21 11:54:24 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\wlanmsm.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\sysclass.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\spwizeng.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\sdrsvc.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\ncryptui.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\msvidc32.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-06-21 11:54:24 ----A---- C:\Windows\system32\certcli.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\appinfo.dll
2012-06-21 11:54:24 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-06-21 11:54:23 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\vdsutil.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\termmgr.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\sethc.exe
2012-06-21 11:54:23 ----A---- C:\Windows\system32\rstrui.exe
2012-06-21 11:54:23 ----A---- C:\Windows\system32\ReAgent.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\ntlanman.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\msscp.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-06-21 11:54:23 ----A---- C:\Windows\system32\MFPlay.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-06-21 11:54:22 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\tsgqec.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\ssText3d.scr
2012-06-21 11:54:22 ----A---- C:\Windows\system32\sqlcese30.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\slwga.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\rdpd3d.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\iyuv_32.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\iTVData.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-06-21 11:54:22 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-06-21 11:54:22 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-06-21 11:54:21 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\wavemsp.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\srvcli.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\ntprint.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\nslookup.exe
2012-06-21 11:54:21 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-06-21 11:54:21 ----A---- C:\Windows\system32\msiexec.exe
2012-06-21 11:54:21 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-06-21 11:54:21 ----A---- C:\Windows\system32\acppage.dll
2012-06-21 11:54:20 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-06-21 11:54:20 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-06-21 11:54:20 ----A---- C:\Windows\SYSWOW64\riched20.dll