Proces win32.exe
Napsal: 16 lis 2012 03:22
Dobrý den, asi včera jsem si poprvé všimnul divného procesu ve správci úloh,který se nazývá win32.exe a krom toho, že užírá kousek výkonu mého počítače ukazuje, že je spuštěn mnou jako uživatelem, což je nesmysl, dočetl jsem se že muže jít i o typ viru, proto píši právě sem. Navíc pokaždé když chci udělat log z DDS hodí mi počítač modrou smrt, ale nejen přitom, asi předevčírem se objevila taky a pc se restartovalo. Takže jsem odkázán pouze na log ze RSIT. Děkuji za jakoukoli pomoc.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ondra at 2012-11-16 03:17:41
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 145 GB (30%) free of 477 GB
Total RAM: 3519 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:18:15, on 16.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe
C:\Program Files\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\DeviceVM\SmartView\SmartViewAgent.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Users\Ondra\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\conhost.exe
C:\win32.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Users\Ondra\Desktop\RSIT.exe
C:\Program Files\trend micro\Ondra.exe
C:\Windows\system32\MsiExec.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {0F3DC9E0-C459-4a40-BCF8-747BD9322E10} - C:\Program Files\DeviceVM\SmartView\AddressBarSearch.dll
R3 - URLSearchHook: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: SmartView VisualBookmark - {0E5680D1-BF44-4929-94AF-FD30D784AD1D} - C:\Program Files\DeviceVM\SmartView\SmartView.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [CTSyncService] C:\Program Files\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe /StartRunKey
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
O4 - HKLM\..\Run: [RunDLLEntry] C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
O4 - HKLM\..\Run: [SmartViewAgent] "C:\Program Files\DeviceVM\SmartView\SmartViewAgent.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [win32] "C:\kernels\drivers.vbs"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: SmartView service (SmartViewService) - DeviceVM, Inc. - C:\Program Files\DeviceVM\SmartView\SmartViewService.exe
O23 - Service: Sound Blaster X-Fi MB Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\XMBLicensing.exe
--
End of file - 8271 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E5680D1-BF44-4929-94AF-FD30D784AD1D}]
SmartView VisualBookmark - C:\Program Files\DeviceVM\SmartView\SmartView.dll [2010-09-02 325904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
uTorrentControl_v2 Toolbar - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-10-30 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-23 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-10-30 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-23 1227224]
{7473b6bd-4691-4744-a82b-7854eb3d70b6} - uTorrentControl_v2 Toolbar - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2009-09-21 1681408]
"CTSyncService"=C:\Program Files\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe [2009-07-08 1233195]
"VolPanel"=C:\Program Files\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [2009-05-04 241789]
"UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112]
"RunDLLEntry"=C:\Windows\system32\AmbRunE.dll [2009-02-26 14848]
"SmartViewAgent"=C:\Program Files\DeviceVM\SmartView\SmartViewAgent.exe [2010-09-02 948504]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-23 4297136]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-09-28 642728]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"win32"=C:\kernels\drivers.vbs [2012-11-10 474]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ASRockOCTuner"= []
"ASRockIES"= []
"zASRockInstantBoot"= []
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-11-06 3673728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-11-16 03:17:41 ----D---- C:\Program Files\trend micro
2012-11-15 00:35:04 ----A---- C:\Windows\system32\Wdfres.dll
2012-11-15 00:35:04 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2012-11-15 00:35:04 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2012-11-15 00:34:29 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-11-15 00:34:29 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-11-15 00:34:27 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-11-15 00:34:27 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-11-15 00:34:26 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-11-15 00:34:25 ----A---- C:\Windows\system32\WUDFx.dll
2012-11-15 00:34:25 ----A---- C:\Windows\system32\WUDFHost.exe
2012-11-15 00:33:52 ----A---- C:\Windows\system32\vbscript.dll
2012-11-15 00:33:52 ----A---- C:\Windows\system32\mshtmled.dll
2012-11-15 00:33:51 ----A---- C:\Windows\system32\jsproxy.dll
2012-11-15 00:33:51 ----A---- C:\Windows\system32\ieUnatt.exe
2012-11-15 00:33:51 ----A---- C:\Windows\system32\ieui.dll
2012-11-15 00:33:50 ----A---- C:\Windows\system32\msfeeds.dll
2012-11-15 00:33:49 ----A---- C:\Windows\system32\wininet.dll
2012-11-15 00:33:49 ----A---- C:\Windows\system32\jscript.dll
2012-11-15 00:33:48 ----A---- C:\Windows\system32\url.dll
2012-11-15 00:33:48 ----A---- C:\Windows\system32\jscript9.dll
2012-11-15 00:33:47 ----A---- C:\Windows\system32\iertutil.dll
2012-11-15 00:33:46 ----A---- C:\Windows\system32\urlmon.dll
2012-11-15 00:33:44 ----A---- C:\Windows\system32\ieframe.dll
2012-11-15 00:33:42 ----A---- C:\Windows\system32\mshtml.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\netcorehc.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\ncsi.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-11-14 23:45:28 ----A---- C:\Windows\system32\nlasvc.dll
2012-11-14 23:45:28 ----A---- C:\Windows\system32\nlaapi.dll
2012-11-14 23:45:28 ----A---- C:\Windows\system32\netevent.dll
2012-11-14 23:45:28 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-11-14 23:45:23 ----A---- C:\Windows\system32\synceng.dll
2012-11-14 23:45:19 ----A---- C:\Windows\system32\win32k.sys
2012-11-14 23:45:17 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-11-14 23:45:16 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-11-13 16:32:57 ----D---- C:\Windows\Minidump
2012-11-10 02:58:42 ----RSHD---- C:\Kernels
2012-11-10 02:58:40 ----RSH---- C:\win32.exe
2012-11-10 02:06:52 ----D---- C:\ProgramData\Origin
2012-11-09 20:14:29 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-11-09 20:14:20 ----D---- C:\Program Files\DAEMON Tools Lite
2012-11-09 20:13:29 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-11-08 20:34:13 ----D---- C:\Users\Ondra\AppData\Roaming\Ubisoft
2012-11-08 20:31:09 ----D---- C:\Program Files\Conduit
2012-11-08 20:31:02 ----D---- C:\Program Files\uTorrentControl_v2
2012-11-08 20:30:57 ----D---- C:\Program Files\uTorrent
2012-11-08 20:26:36 ----D---- C:\Program Files\Ubisoft
2012-11-08 19:40:10 ----D---- C:\Program Files\Microsoft XNA
2012-11-06 22:57:42 ----D---- C:\Windows\system32\appmgmt
2012-11-05 00:37:35 ----D---- C:\Users\Ondra\AppData\Roaming\TeamViewer
2012-11-02 15:34:59 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-11-02 15:34:58 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2012-11-02 15:34:55 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-11-02 15:34:55 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2012-11-02 15:34:51 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-11-02 15:34:45 ----A---- C:\Windows\system32\wksprtPS.dll
2012-11-02 15:34:45 ----A---- C:\Windows\system32\tsgqec.dll
2012-11-02 15:34:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2012-11-02 15:34:44 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-11-02 15:34:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2012-11-02 15:34:44 ----A---- C:\Windows\system32\aaclient.dll
2012-11-02 15:34:43 ----A---- C:\Windows\system32\wksprt.exe
2012-11-02 15:34:43 ----A---- C:\Windows\system32\rdpudd.dll
2012-11-02 15:34:43 ----A---- C:\Windows\system32\rdpendp_winip.dll
2012-11-02 15:34:43 ----A---- C:\Windows\system32\mstsc.exe
2012-11-02 15:34:42 ----A---- C:\Windows\system32\rdpcorets.dll
2012-11-02 15:34:40 ----A---- C:\Windows\system32\mstscax.dll
2012-11-02 15:32:49 ----A---- C:\Windows\system32\schannel.dll
2012-11-02 15:32:49 ----A---- C:\Windows\system32\ncrypt.dll
2012-11-02 15:32:49 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-11-02 15:32:49 ----A---- C:\Windows\system32\drivers\cng.sys
2012-11-02 15:32:48 ----A---- C:\Windows\system32\lsasrv.dll
2012-11-02 15:32:46 ----A---- C:\Windows\system32\qdvd.dll
2012-11-02 15:17:05 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2012-11-02 15:17:05 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-11-02 15:16:27 ----A---- C:\Windows\system32\drivers\netio.sys
2012-11-02 15:16:27 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-11-02 15:15:59 ----A---- C:\Windows\system32\OxpsConverter.exe
2012-11-01 01:08:10 ----D---- C:\Windows\system32\SPReview
2012-11-01 01:06:52 ----D---- C:\Windows\system32\EventProviders
2012-11-01 00:18:46 ----A---- C:\Windows\system32\dfshim.dll
2012-11-01 00:18:37 ----A---- C:\Windows\system32\mfc40u.dll
2012-11-01 00:18:37 ----A---- C:\Windows\system32\mfc40.dll
2012-11-01 00:18:37 ----A---- C:\Windows\system32\d3d10warp.dll
2012-11-01 00:18:35 ----A---- C:\Windows\system32\sysmain.dll
2012-11-01 00:18:34 ----A---- C:\Windows\system32\secproc_isv.dll
2012-11-01 00:18:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-11-01 00:18:32 ----A---- C:\Windows\system32\secproc.dll
2012-11-01 00:18:31 ----A---- C:\Windows\system32\RMActivate.exe
2012-11-01 00:18:29 ----A---- C:\Windows\system32\spwizui.dll
2012-11-01 00:18:29 ----A---- C:\Windows\system32\mscoree.dll
2012-11-01 00:18:28 ----A---- C:\Windows\system32\mf.dll
2012-11-01 00:18:27 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-11-01 00:18:27 ----A---- C:\Windows\system32\CertEnroll.dll
2012-11-01 00:18:25 ----A---- C:\Windows\system32\wmp.dll
2012-11-01 00:18:25 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-11-01 00:18:25 ----A---- C:\Windows\system32\PresentationHost.exe
2012-11-01 00:18:25 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-11-01 00:18:24 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-11-01 00:18:23 ----A---- C:\Windows\system32\schedsvc.dll
2012-11-01 00:18:23 ----A---- C:\Windows\system32\RacEngn.dll
2012-11-01 00:18:21 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-11-01 00:18:20 ----A---- C:\Windows\system32\rdpdd.dll
2012-11-01 00:18:20 ----A---- C:\Windows\system32\qmgr.dll
2012-11-01 00:18:19 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-11-01 00:18:18 ----A---- C:\Windows\system32\wevtsvc.dll
2012-11-01 00:18:18 ----A---- C:\Windows\system32\ole32.dll
2012-11-01 00:18:17 ----A---- C:\Windows\system32\vssapi.dll
2012-11-01 00:18:17 ----A---- C:\Windows\system32\SearchFolder.dll
2012-11-01 00:18:17 ----A---- C:\Windows\system32\d3d9.dll
2012-11-01 00:18:15 ----A---- C:\Windows\system32\taskschd.dll
2012-11-01 00:18:15 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-11-01 00:18:13 ----A---- C:\Windows\system32\spreview.exe
2012-11-01 00:18:13 ----A---- C:\Windows\system32\spinstall.exe
2012-11-01 00:18:13 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-11-01 00:18:12 ----A---- C:\Windows\system32\wer.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\termsrv.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\rpcrt4.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\gpsvc.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\certcli.dll
2012-11-01 00:18:11 ----A---- C:\Windows\system32\dwmcore.dll
2012-11-01 00:18:10 ----A---- C:\Windows\system32\wbengine.exe
2012-11-01 00:18:10 ----A---- C:\Windows\system32\odbc32.dll
2012-11-01 00:18:10 ----A---- C:\Windows\system32\MPSSVC.dll
2012-11-01 00:18:10 ----A---- C:\Windows\system32\diagperf.dll
2012-11-01 00:18:09 ----A---- C:\Windows\system32\WinSAT.exe
2012-11-01 00:18:09 ----A---- C:\Windows\system32\umrdp.dll
2012-11-01 00:18:09 ----A---- C:\Windows\system32\scavengeui.dll
2012-11-01 00:18:08 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-11-01 00:18:08 ----A---- C:\Windows\system32\tsmf.dll
2012-11-01 00:18:08 ----A---- C:\Windows\system32\dot3api.dll
2012-11-01 00:18:07 ----A---- C:\Windows\system32\winhttp.dll
2012-11-01 00:18:07 ----A---- C:\Windows\system32\setupapi.dll
2012-11-01 00:18:07 ----A---- C:\Windows\system32\apphelp.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\VSSVC.exe
2012-11-01 00:18:06 ----A---- C:\Windows\system32\netlogon.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\dbgeng.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\d3d11.dll
2012-11-01 00:18:05 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-11-01 00:18:05 ----A---- C:\Windows\system32\winlogon.exe
2012-11-01 00:18:05 ----A---- C:\Windows\system32\user32.dll
2012-11-01 00:18:05 ----A---- C:\Windows\system32\netcfgx.dll
2012-11-01 00:18:04 ----A---- C:\Windows\system32\Query.dll
2012-11-01 00:18:04 ----A---- C:\Windows\system32\gpprefcl.dll
2012-11-01 00:18:03 ----A---- C:\Windows\system32\WsmSvc.dll
2012-11-01 00:18:03 ----A---- C:\Windows\system32\advapi32.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\upnp.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\netfxperf.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\msv1_0.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\lsm.exe
2012-11-01 00:18:01 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\drivers\csc.sys
2012-11-01 00:18:00 ----A---- C:\Windows\system32\sppobjs.dll
2012-11-01 00:18:00 ----A---- C:\Windows\system32\msdrm.dll
2012-11-01 00:18:00 ----A---- C:\Windows\system32\imapi2fs.dll
2012-11-01 00:18:00 ----A---- C:\Windows\system32\authui.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\usp10.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\shlwapi.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\SessEnv.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-11-01 00:17:58 ----A---- C:\Windows\system32\mcbuilder.exe
2012-11-01 00:17:58 ----A---- C:\Windows\system32\certmgr.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\xpsservices.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\winload.exe
2012-11-01 00:17:57 ----A---- C:\Windows\system32\WebClnt.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\userenv.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\drvstore.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\comdlg32.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\audiosrv.dll
2012-11-01 00:17:56 ----A---- C:\Windows\system32\sppwinob.dll
2012-11-01 00:17:55 ----A---- C:\Windows\system32\rpcss.dll
2012-11-01 00:17:55 ----A---- C:\Windows\system32\cmd.exe
2012-11-01 00:17:55 ----A---- C:\Windows\system32\BFE.DLL
2012-11-01 00:17:54 ----A---- C:\Windows\system32\Wldap32.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\rdpendp.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\propsys.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\mfds.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\framedynos.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-11-01 00:17:53 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-11-01 00:17:53 ----A---- C:\Windows\system32\samsrv.dll
2012-11-01 00:17:53 ----A---- C:\Windows\system32\cscsvc.dll
2012-11-01 00:17:52 ----A---- C:\Windows\system32\winresume.exe
2012-11-01 00:17:52 ----A---- C:\Windows\system32\werconcpl.dll
2012-11-01 00:17:52 ----A---- C:\Windows\system32\rdpclip.exe
2012-11-01 00:17:52 ----A---- C:\Windows\system32\azroles.dll
2012-11-01 00:17:52 ----A---- C:\Windows\system32\appmgr.dll
2012-11-01 00:17:51 ----A---- C:\Windows\system32\themeui.dll
2012-11-01 00:17:51 ----A---- C:\Windows\system32\taskeng.exe
2012-11-01 00:17:51 ----A---- C:\Windows\system32\spp.dll
2012-11-01 00:17:51 ----A---- C:\Windows\system32\credui.dll
2012-11-01 00:17:50 ----A---- C:\Windows\system32\mswsock.dll
2012-11-01 00:17:50 ----A---- C:\Windows\system32\drivers\http.sys
2012-11-01 00:17:50 ----A---- C:\Windows\system32\dhcpcore.dll
2012-11-01 00:17:49 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-11-01 00:17:49 ----A---- C:\Windows\system32\dxgi.dll
2012-11-01 00:17:49 ----A---- C:\Windows\system32\basecsp.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\taskcomp.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\gdi32.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\evr.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-11-01 00:17:48 ----A---- C:\Windows\system32\dbghelp.dll
2012-11-01 00:17:47 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-11-01 00:17:47 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-11-01 00:17:47 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-11-01 00:17:47 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-11-01 00:17:47 ----A---- C:\Windows\system32\calc.exe
2012-11-01 00:17:46 ----A---- C:\Windows\system32\vpnike.dll
2012-11-01 00:17:46 ----A---- C:\Windows\system32\UIRibbon.dll
2012-11-01 00:17:46 ----A---- C:\Windows\system32\srvsvc.dll
2012-11-01 00:17:46 ----A---- C:\Windows\system32\lpksetup.exe
2012-11-01 00:17:45 ----A---- C:\Windows\system32\sxs.dll
2012-11-01 00:17:45 ----A---- C:\Windows\system32\netshell.dll
2012-11-01 00:17:45 ----A---- C:\Windows\system32\fveapi.dll
2012-11-01 00:17:45 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-11-01 00:17:44 ----A---- C:\Windows\system32\ws2_32.dll
2012-11-01 00:17:44 ----A---- C:\Windows\system32\stobject.dll
2012-11-01 00:17:44 ----A---- C:\Windows\system32\hgprint.dll
2012-11-01 00:17:44 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-11-01 00:17:43 ----A---- C:\Windows\system32\prncache.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\printui.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\inetpp.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-11-01 00:17:43 ----A---- C:\Windows\system32\dps.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\comctl32.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\WSDApi.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\wmpeffects.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\rpchttp.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\net1.exe
2012-11-01 00:17:41 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-11-01 00:17:41 ----A---- C:\Windows\system32\drivers\pci.sys
2012-11-01 00:17:41 ----A---- C:\Windows\system32\ci.dll
2012-11-01 00:17:41 ----A---- C:\Windows\system32\aitagent.exe
2012-11-01 00:17:41 ----A---- C:\Windows\system32\aepdu.dll
2012-11-01 00:17:40 ----A---- C:\Windows\system32\vds.exe
2012-11-01 00:17:40 ----A---- C:\Windows\system32\scansetting.dll
2012-11-01 00:17:40 ----A---- C:\Windows\system32\FXSSVC.exe
2012-11-01 00:17:39 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-11-01 00:17:39 ----A---- C:\Windows\system32\wlangpui.dll
2012-11-01 00:17:39 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-11-01 00:17:39 ----A---- C:\Windows\system32\MMDevAPI.dll
2012-11-01 00:17:39 ----A---- C:\Windows\system32\davclnt.dll
2012-11-01 00:17:38 ----A---- C:\Windows\system32\t2embed.dll
2012-11-01 00:17:38 ----A---- C:\Windows\system32\pnidui.dll
2012-11-01 00:17:38 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-11-01 00:17:38 ----A---- C:\Windows\system32\consent.exe
2012-11-01 00:17:37 ----A---- C:\Windows\system32\wpdshext.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\webservices.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\scrptadm.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\fde.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-11-01 00:17:37 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-11-01 00:17:36 ----A---- C:\Windows\system32\wscapi.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\vmicsvc.exe
2012-11-01 00:17:36 ----A---- C:\Windows\system32\SyncCenter.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\sdengin2.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\netdiagfx.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-11-01 00:17:35 ----A---- C:\Windows\system32\cscobj.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\wisptis.exe
2012-11-01 00:17:34 ----A---- C:\Windows\system32\WinSCard.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\pla.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\msasn1.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\mcmde.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-11-01 00:17:33 ----A---- C:\Windows\system32\winsta.dll
2012-11-01 00:17:33 ----A---- C:\Windows\system32\setupcl.exe
2012-11-01 00:17:33 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-11-01 00:17:33 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-11-01 00:17:32 ----A---- C:\Windows\system32\wiaservc.dll
2012-11-01 00:17:32 ----A---- C:\Windows\system32\imapi2.dll
2012-11-01 00:17:32 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-11-01 00:17:32 ----A---- C:\Windows\system32\aeinv.dll
2012-11-01 00:17:31 ----A---- C:\Windows\system32\gameux.dll
2012-11-01 00:17:30 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-11-01 00:17:30 ----A---- C:\Windows\system32\onex.dll
2012-11-01 00:17:30 ----A---- C:\Windows\system32\dwmredir.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\winmm.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\vaultsvc.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\TabSvc.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\shsvcs.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\rasmans.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\hbaapi.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-11-01 00:17:29 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-11-01 00:17:28 ----A---- C:\Windows\system32\netiohlp.dll
2012-11-01 00:17:28 ----A---- C:\Windows\system32\Narrator.exe
2012-11-01 00:17:28 ----A---- C:\Windows\system32\bootres.dll
2012-11-01 00:17:28 ----A---- C:\Windows\system32\autochk.exe
2012-11-01 00:17:28 ----A---- C:\Windows\system32\autofmt.exe
2012-11-01 00:17:28 ----A---- C:\Windows\system32\audiodg.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\thumbcache.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\samcli.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\proquota.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\msutb.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\msinfo32.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-11-01 00:17:27 ----A---- C:\Windows\system32\halmacpi.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\hal.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\autoconv.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\AudioSes.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\srchadmin.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\schtasks.exe
2012-11-01 00:17:26 ----A---- C:\Windows\system32\regapi.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\mimefilt.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\wcncsvc.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\powercpl.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\msihnd.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\mscorier.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\framedyn.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\eapphost.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-11-01 00:17:24 ----A---- C:\Windows\system32\QAGENT.DLL
2012-11-01 00:17:24 ----A---- C:\Windows\system32\netid.dll
2012-11-01 00:17:24 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-11-01 00:17:24 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-11-01 00:17:23 ----A---- C:\Windows\system32\umpo.dll
2012-11-01 00:17:23 ----A---- C:\Windows\system32\DXP.dll
2012-11-01 00:17:23 ----A---- C:\Windows\system32\actxprxy.dll
2012-11-01 00:17:22 ----A---- C:\Windows\system32\wdc.dll
2012-11-01 00:17:22 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-11-01 00:17:22 ----A---- C:\Windows\system32\scesrv.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\Vault.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\untfs.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\sdclt.exe
2012-11-01 00:17:21 ----A---- C:\Windows\system32\rastls.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\nci.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-11-01 00:17:20 ----A---- C:\Windows\system32\wlanpref.dll
2012-11-01 00:17:20 ----A---- C:\Windows\system32\sppsvc.exe
2012-11-01 00:17:20 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-11-01 00:17:20 ----A---- C:\Windows\system32\ListSvc.dll
2012-11-01 00:17:19 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-11-01 00:17:19 ----A---- C:\Windows\system32\Robocopy.exe
2012-11-01 00:17:18 ----A---- C:\Windows\system32\taskmgr.exe
2012-11-01 00:17:18 ----A---- C:\Windows\system32\mtxclu.dll
2012-11-01 00:17:18 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-11-01 00:17:18 ----A---- C:\Windows\system32\Display.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\userinit.exe
2012-11-01 00:17:17 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\puiobj.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\msdri.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-11-01 00:17:17 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-11-01 00:17:16 ----A---- C:\Windows\system32\termmgr.dll
2012-11-01 00:17:16 ----A---- C:\Windows\system32\DiagCpl.dll
2012-11-01 00:17:16 ----A---- C:\Windows\system32\cscui.dll
2012-11-01 00:17:15 ----A---- C:\Windows\system32\eudcedit.exe
2012-11-01 00:17:15 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-11-01 00:17:15 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-11-01 00:17:14 ----A---- C:\Windows\system32\wiadefui.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\sppcomapi.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\shsetup.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\rasppp.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\msdtctm.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\msconfig.exe
2012-11-01 00:17:14 ----A---- C:\Windows\system32\logoncli.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-11-01 00:17:14 ----A---- C:\Windows\system32\biocpl.dll
2012-11-01 00:17:13 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-11-01 00:17:13 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-11-01 00:17:13 ----A---- C:\Windows\system32\cabview.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\wpccpl.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\themecpl.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2012-11-01 00:17:12 ----A---- C:\Windows\system32\dnscmmc.dll
2012-11-01 00:17:11 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-11-01 00:17:11 ----A---- C:\Windows\system32\hgcpl.dll
2012-11-01 00:17:11 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-11-01 00:17:10 ----A---- C:\Windows\system32\tapisrv.dll
2012-11-01 00:17:10 ----A---- C:\Windows\system32\scecli.dll
2012-11-01 00:17:10 ----A---- C:\Windows\system32\fontext.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\mscories.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\mscms.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\mprddm.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\localsec.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\iasacct.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\wlanui.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\wkssvc.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\VAN.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\usercpl.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\qedit.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\prntvpt.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\KMSVC.DLL
2012-11-01 00:17:08 ----A---- C:\Windows\system32\bcdsrv.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\batmeter.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\w32tm.exe
2012-11-01 00:17:07 ----A---- C:\Windows\system32\spwizeng.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\SndVol.exe
2012-11-01 00:17:07 ----A---- C:\Windows\system32\netcenter.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\mblctr.exe
2012-11-01 00:17:06 ----A---- C:\Windows\system32\zipfldr.dll
2012-11-01 00:17:06 ----A---- C:\Windows\system32\fdeploy.dll
2012-11-01 00:17:06 ----A---- C:\Windows\system32\drivers\ks.sys
2012-11-01 00:17:06 ----A---- C:\Windows\system32\azroleui.dll
2012-11-01 00:17:06 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-11-01 00:17:05 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-11-01 00:17:04 ----A---- C:\Windows\system32\networkmap.dll
2012-11-01 00:17:04 ----A---- C:\Windows\system32\netjoin.dll
2012-11-01 00:17:04 ----A---- C:\Windows\system32\cryptui.dll
2012-11-01 00:17:04 ----A---- C:\Windows\system32\adsldp.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\wusa.exe
2012-11-01 00:17:03 ----A---- C:\Windows\system32\prnfldr.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\mspbda.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\Faultrep.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\sud.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\photowiz.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\msieftp.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\credssp.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\ActionCenter.dll
2012-11-01 00:17:01 ----A---- C:\Windows\system32\taskhost.exe
2012-11-01 00:17:01 ----A---- C:\Windows\system32\slui.exe
2012-11-01 00:17:01 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-11-01 00:17:01 ----A---- C:\Windows\system32\iasrad.dll
2012-11-01 00:17:01 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-11-01 00:17:00 ----A---- C:\Windows\system32\sisbkup.dll
2012-11-01 00:17:00 ----A---- C:\Windows\system32\halacpi.dll
2012-11-01 00:17:00 ----A---- C:\Windows\system32\ftp.exe
2012-11-01 00:17:00 ----A---- C:\Windows\system32\dot3cfg.dll
2012-11-01 00:17:00 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\wpd_ci.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\shwebsvc.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\ifsutil.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\efscore.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\syncui.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\sdcpl.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\recovery.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\autoplay.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\sppnp.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\ntlanman.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\bcdedit.exe
2012-11-01 00:16:56 ----A---- C:\Windows\system32\wmpmde.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\vdsutil.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\rtutils.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\OobeFldr.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\dskquoui.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\systemcpl.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\sethc.exe
2012-11-01 00:16:55 ----A---- C:\Windows\system32\riched20.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\recdisc.exe
2012-11-01 00:16:55 ----A---- C:\Windows\system32\ntprint.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\nshwfp.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\bcdboot.exe
2012-11-01 00:16:54 ----A---- C:\Windows\system32\netplwiz.dll
2012-11-01 00:16:54 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-11-01 00:16:54 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-11-01 00:16:54 ----A---- C:\Windows\system32\blackbox.dll
2012-11-01 00:16:54 ----A---- C:\Windows\system32\AxInstSv.dll
2012-11-01 00:16:54 ----A---- C:\Windows\system32\activeds.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\migisol.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\httpapi.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\fms.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-11-01 00:16:53 ----A---- C:\Windows\system32\dpx.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-11-01 00:16:52 ----A---- C:\Windows\system32\wsqmcons.exe
2012-11-01 00:16:52 ----A---- C:\Windows\system32\nshipsec.dll
2012-11-01 00:16:52 ----A---- C:\Windows\system32\isoburn.exe
2012-11-01 00:16:52 ----A---- C:\Windows\system32\dot3svc.dll
2012-11-01 00:16:52 ----A---- C:\Windows\system32\asycfilt.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\wlanmsm.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\wavemsp.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\ReAgent.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\provsvc.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\msftedit.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\dot3ui.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\wvc.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\wtsapi32.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\wimgapi.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\tzutil.exe
2012-11-01 00:16:50 ----A---- C:\Windows\system32\sysclass.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\ocsetup.exe
2012-11-01 00:16:50 ----A---- C:\Windows\system32\dsuiext.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-11-01 00:16:50 ----A---- C:\Windows\system32\dfrgui.exe
2012-11-01 00:16:50 ----A---- C:\Windows\system32\appinfo.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\twext.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\PkgMgr.exe
2012-11-01 00:16:49 ----A---- C:\Windows\system32\mstask.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\certprop.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-11-01 00:16:48 ----A---- C:\Windows\twain_32.dll
2012-11-01 00:16:48 ----A---- C:\Windows\system32\shdocvw.dll
2012-11-01 00:16:48 ----A---- C:\Windows\system32\setupugc.exe
2012-11-01 00:16:48 ----A---- C:\Windows\system32\qcap.dll
2012-11-01 00:16:48 ----A---- C:\Windows\system32\qasf.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\uxlib.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\SmiEngine.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\slwga.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-11-01 00:16:47 ----A---- C:\Windows\system32\imm32.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\wwanconn.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\ssText3d.scr
2012-11-01 00:16:46 ----A---- C:\Windows\system32\srrstr.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\msvfw32.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\mciavi32.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\nslookup.exe
2012-11-01 00:16:45 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\clusapi.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\audiodev.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\wimserv.exe
2012-11-01 00:16:44 ----A---- C:\Windows\system32\TSpkg.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\rdpencom.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\msscp.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\diskraid.exe
2012-11-01 00:16:44 ----A---- C:\Windows\system32\acppage.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\remotepg.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\raschap.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\QUTIL.DLL
2012-11-01 00:16:43 ----A---- C:\Windows\system32\perfmon.exe
2012-11-01 00:16:43 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-11-01 00:16:43 ----A---- C:\Windows\system32\input.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-11-01 00:16:42 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-11-01 00:16:42 ----A---- C:\Windows\system32\sdrsvc.dll
2012-11-01 00:16:42 ----A---- C:\Windows\system32\networkexplorer.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\wmpdxm.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\olepro32.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\ocsetapi.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\nltest.exe
2012-11-01 00:16:40 ----A---- C:\Windows\system32\wpdwcn.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\vdsbas.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\runonce.exe
2012-11-01 00:16:40 ----A---- C:\Windows\system32\onexui.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\iTVData.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\dxdiagn.dll
2012-11-01 00:16:40 ----A---- C:\Windows\bfsvc.exe
2012-11-01 00:16:39 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-11-01 00:16:39 ----A---- C:\Windows\system32\logagent.exe
2012-11-01 00:16:38 ----A---- C:\Windows\system32\msvidc32.dll
2012-11-01 00:16:38 ----A---- C:\Windows\system32\msiexec.exe
2012-11-01 00:16:38 ----A---- C:\Windows\system32\MFPlay.dll
2012-11-01 00:16:38 ----A---- C:\Windows\system32\eapp3hst.dll
2012-11-01 00:16:38 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-11-01 00:16:37 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-11-01 00:16:37 ----A---- C:\Windows\system32\shacct.dll
2012-11-01 00:16:37 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-11-01 00:16:36 ----A---- C:\Windows\system32\wmpshell.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\unimdmat.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\sqlcese30.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\lsmproxy.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\iscsium.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\bitsadmin.exe
2012-11-01 00:16:35 ----A---- C:\Windows\system32\tabcal.exe
2012-11-01 00:16:35 ----A---- C:\Windows\system32\rdpd3d.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\pdh.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\OpcServices.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\mprapi.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\cscapi.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\Bubbles.scr
2012-11-01 00:16:34 ----A---- C:\Windows\system32\WPDSp.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\srvcli.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\olethk32.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\ncryptui.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\MdSched.exe
2012-11-01 00:16:34 ----A---- C:\Windows\system32\logman.exe
2012-11-01 00:16:34 ----A---- C:\Windows\system32\djoin.exe
2012-11-01 00:16:33 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-11-01 00:16:33 ----A---- C:\Windows\system32\Ribbons.scr
2012-11-01 00:16:33 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-11-01 00:16:33 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-11-01 00:16:33 ----A---- C:\Windows\system32\Mystify.scr
2012-11-01 00:16:33 ----A---- C:\Windows\system32\lpremove.exe
2012-11-01 00:16:32 ----A---- C:\Windows\system32\WMPhoto.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-11-01 00:16:32 ----A---- C:\Windows\system32\utildll.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\mapistub.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\mapi32.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\fphc.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\CscMig.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\avifil32.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\ActionQueue.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-11-01 00:16:31 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\wiavideo.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\takeown.exe
2012-11-01 00:16:31 ----A---- C:\Windows\system32\iyuv_32.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\dot3msm.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\sppinst.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\qdv.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\msyuv.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\msnetobj.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-11-01 00:16:29 ----A---- C:\Windows\system32\unattend.dll
2012-11-01 00:16:29 ----A---- C:\Windows\system32\qprocess.exe
2012-11-01 00:16:29 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-11-01 00:16:29 ----A---- C:\Windows\system32\msrle32.dll
2012-11-01 00:16:29 ----A---- C:\Windows\system32\cmstp.exe
2012-11-01 00:16:29 ----A---- C:\Windows\system32\cca.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\wsnmp32.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\RelPost.exe
2012-11-01 00:16:28 ----A---- C:\Windows\system32\pdhui.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\MuiUnattend.exe
2012-11-01 00:16:27 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-11-01 00:16:27 ----A---- C:\Windows\system32\umb.dll
2012-11-01 00:16:27 ----A---- C:\Windows\system32\setupcln.dll
2012-11-01 00:16:27 ----A---- C:\Windows\system32\msg.exe
2012-11-01 00:16:27 ----A---- C:\Windows\system32\basesrv.dll
2012-11-01 00:16:27 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\tsbyuv.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\qwinsta.exe
2012-11-01 00:16:26 ----A---- C:\Windows\system32\msorcl32.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\iasrecst.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\chglogon.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\WavDest.dll
2012-11-01 00:16:25 ----A---- C:\Windows\system32\relog.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-11-01 00:16:25 ----A---- C:\Windows\system32\netiougc.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\iscsicli.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-11-01 00:16:24 ----A---- C:\Windows\system32\wkscli.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\sppuinotify.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\spbcd.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\quser.exe
2012-11-01 00:16:24 ----A---- C:\Windows\system32\mydocs.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\diskpart.exe
2012-11-01 00:16:24 ----A---- C:\Windows\system32\amstream.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\resutils.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\rastapi.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\nrpsrv.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\netbtugc.exe
2012-11-01 00:16:23 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-11-01 00:16:23 ----A---- C:\Windows\system32\itircl.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\wmpps.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\syssetup.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\qappsrv.exe
2012-11-01 00:16:22 ----A---- C:\Windows\system32\chgusr.exe
2012-11-01 00:16:22 ----A---- C:\Windows\system32\chgport.exe
2012-11-01 00:16:22 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\CertPolEng.dll
2012-11-01 00:16:21 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-11-01 00:16:21 ----A---- C:\Windows\system32\tsdiscon.exe
2012-11-01 00:16:21 ----A---- C:\Windows\system32\tscon.exe
2012-11-01 00:16:21 ----A---- C:\Windows\system32\PrintBrmUi.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\wiarpc.dll
2012-11-01 00:16:20 ----A---- C:\Windows\system32\tskill.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\tlscsp.dll
2012-11-01 00:16:20 ----A---- C:\Windows\system32\rwinsta.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\ReAgentc.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\netutils.dll
2012-11-01 00:16:20 ----A---- C:\Windows\system32\logoff.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\findstr.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\eappgnui.dll
2012-11-01 00:16:19 ----A---- C:\Windows\system32\shadow.exe
2012-11-01 00:16:19 ----A---- C:\Windows\system32\muifontsetup.dll
2012-11-01 00:16:19 ----A---- C:\Windows\system32\mobsync.exe
2012-11-01 00:16:19 ----A---- C:\Windows\system32\mciqtz32.dll
2012-11-01 00:16:19 ----A---- C:\Windows\system32\cabinet.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\sppc.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\spopk.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\shimgvw.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\iccvid.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-11-01 00:16:18 ----A---- C:\Windows\system32\dosx.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-11-01 00:16:17 ----A---- C:\Windows\system32\unlodctr.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\repair-bde.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\manage-bde.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\luainstall.dll
2012-11-01 00:16:17 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-11-01 00:16:17 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-11-01 00:16:17 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-11-01 00:16:16 ----A---- C:\Windows\system32\vmstorfltres.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\vmicres.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\netcfg.exe
2012-11-01 00:16:16 ----A---- C:\Windows\system32\msdmo.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\inetmib1.dll
2012-11-01 00:16:15 ----A---- C:\Windows\system32\reset.exe
2012-11-01 00:16:15 ----A---- C:\Windows\system32\query.exe
2012-11-01 00:16:15 ----A---- C:\Windows\system32\change.exe
2012-11-01 00:16:15 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-11-01 00:16:14 ----A---- C:\Windows\system32\vmbusres.dll
2012-11-01 00:16:14 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-11-01 00:16:14 ----A---- C:\Windows\system32\odbcconf.dll
2012-11-01 00:16:13 ----A---- C:\Windows\system32\perfts.dll
2012-11-01 00:16:13 ----A---- C:\Windows\system32\icaapi.dll
2012-11-01 00:16:13 ----A---- C:\Windows\system32\FXSMON.dll
2012-11-01 00:16:12 ----A---- C:\Windows\system32\TRAPI.dll
2012-11-01 00:16:12 ----A---- C:\Windows\system32\elsTrans.dll
2012-11-01 00:16:12 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-11-01 00:16:12 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-11-01 00:16:11 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\wshbth.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\schedcli.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\napdsnap.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\dsauth.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\bitsperf.dll
2012-11-01 00:16:09 ----A---- C:\Windows\system32\LogonUI.exe
2012-11-01 00:16:09 ----A---- C:\Windows\system32\cscdll.dll
2012-11-01 00:16:08 ----A---- C:\Windows\system32\sscore.dll
2012-11-01 00:16:08 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-11-01 00:16:07 ----A---- C:\Windows\system32\wsdchngr.dll
2012-11-01 00:16:07 ----A---- C:\Windows\system32\shgina.dll
2012-11-01 00:16:07 ----A---- C:\Windows\system32\riched32.dll
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ondra at 2012-11-16 03:17:41
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 145 GB (30%) free of 477 GB
Total RAM: 3519 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:18:15, on 16.11.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16455)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe
C:\Program Files\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\DeviceVM\SmartView\SmartViewAgent.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Users\Ondra\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\conhost.exe
C:\win32.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Users\Ondra\Desktop\RSIT.exe
C:\Program Files\trend micro\Ondra.exe
C:\Windows\system32\MsiExec.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {0F3DC9E0-C459-4a40-BCF8-747BD9322E10} - C:\Program Files\DeviceVM\SmartView\AddressBarSearch.dll
R3 - URLSearchHook: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: SmartView VisualBookmark - {0E5680D1-BF44-4929-94AF-FD30D784AD1D} - C:\Program Files\DeviceVM\SmartView\SmartView.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: uTorrentControl_v2 - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [CTSyncService] C:\Program Files\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe /StartRunKey
O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
O4 - HKLM\..\Run: [RunDLLEntry] C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
O4 - HKLM\..\Run: [SmartViewAgent] "C:\Program Files\DeviceVM\SmartView\SmartViewAgent.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [win32] "C:\kernels\drivers.vbs"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: SmartView service (SmartViewService) - DeviceVM, Inc. - C:\Program Files\DeviceVM\SmartView\SmartViewService.exe
O23 - Service: Sound Blaster X-Fi MB Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\XMBLicensing.exe
--
End of file - 8271 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E5680D1-BF44-4929-94AF-FD30D784AD1D}]
SmartView VisualBookmark - C:\Program Files\DeviceVM\SmartView\SmartView.dll [2010-09-02 325904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6}]
uTorrentControl_v2 Toolbar - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-10-30 449512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-23 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-10-30 155384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-23 1227224]
{7473b6bd-4691-4744-a82b-7854eb3d70b6} - uTorrentControl_v2 Toolbar - C:\Program Files\uTorrentControl_v2\prxtbuTor.dll [2011-05-09 176936]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2009-09-21 1681408]
"CTSyncService"=C:\Program Files\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe [2009-07-08 1233195]
"VolPanel"=C:\Program Files\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [2009-05-04 241789]
"UpdReg"=C:\Windows\UpdReg.EXE [2000-05-11 90112]
"RunDLLEntry"=C:\Windows\system32\AmbRunE.dll [2009-02-26 14848]
"SmartViewAgent"=C:\Program Files\DeviceVM\SmartView\SmartViewAgent.exe [2010-09-02 948504]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-23 4297136]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-09-28 642728]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"win32"=C:\kernels\drivers.vbs [2012-11-10 474]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ASRockOCTuner"= []
"ASRockIES"= []
"zASRockInstantBoot"= []
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-11-06 3673728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-11-16 03:17:41 ----D---- C:\Program Files\trend micro
2012-11-15 00:35:04 ----A---- C:\Windows\system32\Wdfres.dll
2012-11-15 00:35:04 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2012-11-15 00:35:04 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2012-11-15 00:34:29 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-11-15 00:34:29 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-11-15 00:34:27 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-11-15 00:34:27 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-11-15 00:34:26 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-11-15 00:34:25 ----A---- C:\Windows\system32\WUDFx.dll
2012-11-15 00:34:25 ----A---- C:\Windows\system32\WUDFHost.exe
2012-11-15 00:33:52 ----A---- C:\Windows\system32\vbscript.dll
2012-11-15 00:33:52 ----A---- C:\Windows\system32\mshtmled.dll
2012-11-15 00:33:51 ----A---- C:\Windows\system32\jsproxy.dll
2012-11-15 00:33:51 ----A---- C:\Windows\system32\ieUnatt.exe
2012-11-15 00:33:51 ----A---- C:\Windows\system32\ieui.dll
2012-11-15 00:33:50 ----A---- C:\Windows\system32\msfeeds.dll
2012-11-15 00:33:49 ----A---- C:\Windows\system32\wininet.dll
2012-11-15 00:33:49 ----A---- C:\Windows\system32\jscript.dll
2012-11-15 00:33:48 ----A---- C:\Windows\system32\url.dll
2012-11-15 00:33:48 ----A---- C:\Windows\system32\jscript9.dll
2012-11-15 00:33:47 ----A---- C:\Windows\system32\iertutil.dll
2012-11-15 00:33:46 ----A---- C:\Windows\system32\urlmon.dll
2012-11-15 00:33:44 ----A---- C:\Windows\system32\ieframe.dll
2012-11-15 00:33:42 ----A---- C:\Windows\system32\mshtml.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\netcorehc.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\ncsi.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-11-14 23:45:29 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-11-14 23:45:28 ----A---- C:\Windows\system32\nlasvc.dll
2012-11-14 23:45:28 ----A---- C:\Windows\system32\nlaapi.dll
2012-11-14 23:45:28 ----A---- C:\Windows\system32\netevent.dll
2012-11-14 23:45:28 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-11-14 23:45:23 ----A---- C:\Windows\system32\synceng.dll
2012-11-14 23:45:19 ----A---- C:\Windows\system32\win32k.sys
2012-11-14 23:45:17 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-11-14 23:45:16 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-11-13 16:32:57 ----D---- C:\Windows\Minidump
2012-11-10 02:58:42 ----RSHD---- C:\Kernels
2012-11-10 02:58:40 ----RSH---- C:\win32.exe
2012-11-10 02:06:52 ----D---- C:\ProgramData\Origin
2012-11-09 20:14:29 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-11-09 20:14:20 ----D---- C:\Program Files\DAEMON Tools Lite
2012-11-09 20:13:29 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-11-08 20:34:13 ----D---- C:\Users\Ondra\AppData\Roaming\Ubisoft
2012-11-08 20:31:09 ----D---- C:\Program Files\Conduit
2012-11-08 20:31:02 ----D---- C:\Program Files\uTorrentControl_v2
2012-11-08 20:30:57 ----D---- C:\Program Files\uTorrent
2012-11-08 20:26:36 ----D---- C:\Program Files\Ubisoft
2012-11-08 19:40:10 ----D---- C:\Program Files\Microsoft XNA
2012-11-06 22:57:42 ----D---- C:\Windows\system32\appmgmt
2012-11-05 00:37:35 ----D---- C:\Users\Ondra\AppData\Roaming\TeamViewer
2012-11-02 15:34:59 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-11-02 15:34:58 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2012-11-02 15:34:55 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-11-02 15:34:55 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2012-11-02 15:34:51 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-11-02 15:34:45 ----A---- C:\Windows\system32\wksprtPS.dll
2012-11-02 15:34:45 ----A---- C:\Windows\system32\tsgqec.dll
2012-11-02 15:34:44 ----A---- C:\Windows\system32\TSWbPrxy.exe
2012-11-02 15:34:44 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-11-02 15:34:44 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2012-11-02 15:34:44 ----A---- C:\Windows\system32\aaclient.dll
2012-11-02 15:34:43 ----A---- C:\Windows\system32\wksprt.exe
2012-11-02 15:34:43 ----A---- C:\Windows\system32\rdpudd.dll
2012-11-02 15:34:43 ----A---- C:\Windows\system32\rdpendp_winip.dll
2012-11-02 15:34:43 ----A---- C:\Windows\system32\mstsc.exe
2012-11-02 15:34:42 ----A---- C:\Windows\system32\rdpcorets.dll
2012-11-02 15:34:40 ----A---- C:\Windows\system32\mstscax.dll
2012-11-02 15:32:49 ----A---- C:\Windows\system32\schannel.dll
2012-11-02 15:32:49 ----A---- C:\Windows\system32\ncrypt.dll
2012-11-02 15:32:49 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-11-02 15:32:49 ----A---- C:\Windows\system32\drivers\cng.sys
2012-11-02 15:32:48 ----A---- C:\Windows\system32\lsasrv.dll
2012-11-02 15:32:46 ----A---- C:\Windows\system32\qdvd.dll
2012-11-02 15:17:05 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2012-11-02 15:17:05 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-11-02 15:16:27 ----A---- C:\Windows\system32\drivers\netio.sys
2012-11-02 15:16:27 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-11-02 15:15:59 ----A---- C:\Windows\system32\OxpsConverter.exe
2012-11-01 01:08:10 ----D---- C:\Windows\system32\SPReview
2012-11-01 01:06:52 ----D---- C:\Windows\system32\EventProviders
2012-11-01 00:18:46 ----A---- C:\Windows\system32\dfshim.dll
2012-11-01 00:18:37 ----A---- C:\Windows\system32\mfc40u.dll
2012-11-01 00:18:37 ----A---- C:\Windows\system32\mfc40.dll
2012-11-01 00:18:37 ----A---- C:\Windows\system32\d3d10warp.dll
2012-11-01 00:18:35 ----A---- C:\Windows\system32\sysmain.dll
2012-11-01 00:18:34 ----A---- C:\Windows\system32\secproc_isv.dll
2012-11-01 00:18:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-11-01 00:18:32 ----A---- C:\Windows\system32\secproc.dll
2012-11-01 00:18:31 ----A---- C:\Windows\system32\RMActivate.exe
2012-11-01 00:18:29 ----A---- C:\Windows\system32\spwizui.dll
2012-11-01 00:18:29 ----A---- C:\Windows\system32\mscoree.dll
2012-11-01 00:18:28 ----A---- C:\Windows\system32\mf.dll
2012-11-01 00:18:27 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-11-01 00:18:27 ----A---- C:\Windows\system32\CertEnroll.dll
2012-11-01 00:18:25 ----A---- C:\Windows\system32\wmp.dll
2012-11-01 00:18:25 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-11-01 00:18:25 ----A---- C:\Windows\system32\PresentationHost.exe
2012-11-01 00:18:25 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-11-01 00:18:24 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-11-01 00:18:23 ----A---- C:\Windows\system32\schedsvc.dll
2012-11-01 00:18:23 ----A---- C:\Windows\system32\RacEngn.dll
2012-11-01 00:18:21 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-11-01 00:18:20 ----A---- C:\Windows\system32\rdpdd.dll
2012-11-01 00:18:20 ----A---- C:\Windows\system32\qmgr.dll
2012-11-01 00:18:19 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-11-01 00:18:18 ----A---- C:\Windows\system32\wevtsvc.dll
2012-11-01 00:18:18 ----A---- C:\Windows\system32\ole32.dll
2012-11-01 00:18:17 ----A---- C:\Windows\system32\vssapi.dll
2012-11-01 00:18:17 ----A---- C:\Windows\system32\SearchFolder.dll
2012-11-01 00:18:17 ----A---- C:\Windows\system32\d3d9.dll
2012-11-01 00:18:15 ----A---- C:\Windows\system32\taskschd.dll
2012-11-01 00:18:15 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-11-01 00:18:13 ----A---- C:\Windows\system32\spreview.exe
2012-11-01 00:18:13 ----A---- C:\Windows\system32\spinstall.exe
2012-11-01 00:18:13 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-11-01 00:18:12 ----A---- C:\Windows\system32\wer.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\termsrv.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\rpcrt4.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\gpsvc.dll
2012-11-01 00:18:12 ----A---- C:\Windows\system32\certcli.dll
2012-11-01 00:18:11 ----A---- C:\Windows\system32\dwmcore.dll
2012-11-01 00:18:10 ----A---- C:\Windows\system32\wbengine.exe
2012-11-01 00:18:10 ----A---- C:\Windows\system32\odbc32.dll
2012-11-01 00:18:10 ----A---- C:\Windows\system32\MPSSVC.dll
2012-11-01 00:18:10 ----A---- C:\Windows\system32\diagperf.dll
2012-11-01 00:18:09 ----A---- C:\Windows\system32\WinSAT.exe
2012-11-01 00:18:09 ----A---- C:\Windows\system32\umrdp.dll
2012-11-01 00:18:09 ----A---- C:\Windows\system32\scavengeui.dll
2012-11-01 00:18:08 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-11-01 00:18:08 ----A---- C:\Windows\system32\tsmf.dll
2012-11-01 00:18:08 ----A---- C:\Windows\system32\dot3api.dll
2012-11-01 00:18:07 ----A---- C:\Windows\system32\winhttp.dll
2012-11-01 00:18:07 ----A---- C:\Windows\system32\setupapi.dll
2012-11-01 00:18:07 ----A---- C:\Windows\system32\apphelp.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\VSSVC.exe
2012-11-01 00:18:06 ----A---- C:\Windows\system32\netlogon.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\dbgeng.dll
2012-11-01 00:18:06 ----A---- C:\Windows\system32\d3d11.dll
2012-11-01 00:18:05 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-11-01 00:18:05 ----A---- C:\Windows\system32\winlogon.exe
2012-11-01 00:18:05 ----A---- C:\Windows\system32\user32.dll
2012-11-01 00:18:05 ----A---- C:\Windows\system32\netcfgx.dll
2012-11-01 00:18:04 ----A---- C:\Windows\system32\Query.dll
2012-11-01 00:18:04 ----A---- C:\Windows\system32\gpprefcl.dll
2012-11-01 00:18:03 ----A---- C:\Windows\system32\WsmSvc.dll
2012-11-01 00:18:03 ----A---- C:\Windows\system32\advapi32.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\upnp.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\netfxperf.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\msv1_0.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\lsm.exe
2012-11-01 00:18:01 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-11-01 00:18:01 ----A---- C:\Windows\system32\drivers\csc.sys
2012-11-01 00:18:00 ----A---- C:\Windows\system32\sppobjs.dll
2012-11-01 00:18:00 ----A---- C:\Windows\system32\msdrm.dll
2012-11-01 00:18:00 ----A---- C:\Windows\system32\imapi2fs.dll
2012-11-01 00:18:00 ----A---- C:\Windows\system32\authui.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\usp10.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\shlwapi.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\SessEnv.dll
2012-11-01 00:17:59 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-11-01 00:17:58 ----A---- C:\Windows\system32\mcbuilder.exe
2012-11-01 00:17:58 ----A---- C:\Windows\system32\certmgr.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\xpsservices.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\winload.exe
2012-11-01 00:17:57 ----A---- C:\Windows\system32\WebClnt.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\userenv.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\drvstore.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\comdlg32.dll
2012-11-01 00:17:57 ----A---- C:\Windows\system32\audiosrv.dll
2012-11-01 00:17:56 ----A---- C:\Windows\system32\sppwinob.dll
2012-11-01 00:17:55 ----A---- C:\Windows\system32\rpcss.dll
2012-11-01 00:17:55 ----A---- C:\Windows\system32\cmd.exe
2012-11-01 00:17:55 ----A---- C:\Windows\system32\BFE.DLL
2012-11-01 00:17:54 ----A---- C:\Windows\system32\Wldap32.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\rdpendp.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\propsys.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\mfds.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\framedynos.dll
2012-11-01 00:17:54 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-11-01 00:17:53 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-11-01 00:17:53 ----A---- C:\Windows\system32\samsrv.dll
2012-11-01 00:17:53 ----A---- C:\Windows\system32\cscsvc.dll
2012-11-01 00:17:52 ----A---- C:\Windows\system32\winresume.exe
2012-11-01 00:17:52 ----A---- C:\Windows\system32\werconcpl.dll
2012-11-01 00:17:52 ----A---- C:\Windows\system32\rdpclip.exe
2012-11-01 00:17:52 ----A---- C:\Windows\system32\azroles.dll
2012-11-01 00:17:52 ----A---- C:\Windows\system32\appmgr.dll
2012-11-01 00:17:51 ----A---- C:\Windows\system32\themeui.dll
2012-11-01 00:17:51 ----A---- C:\Windows\system32\taskeng.exe
2012-11-01 00:17:51 ----A---- C:\Windows\system32\spp.dll
2012-11-01 00:17:51 ----A---- C:\Windows\system32\credui.dll
2012-11-01 00:17:50 ----A---- C:\Windows\system32\mswsock.dll
2012-11-01 00:17:50 ----A---- C:\Windows\system32\drivers\http.sys
2012-11-01 00:17:50 ----A---- C:\Windows\system32\dhcpcore.dll
2012-11-01 00:17:49 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-11-01 00:17:49 ----A---- C:\Windows\system32\dxgi.dll
2012-11-01 00:17:49 ----A---- C:\Windows\system32\basecsp.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\taskcomp.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\gdi32.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\evr.dll
2012-11-01 00:17:48 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-11-01 00:17:48 ----A---- C:\Windows\system32\dbghelp.dll
2012-11-01 00:17:47 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-11-01 00:17:47 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-11-01 00:17:47 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-11-01 00:17:47 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-11-01 00:17:47 ----A---- C:\Windows\system32\calc.exe
2012-11-01 00:17:46 ----A---- C:\Windows\system32\vpnike.dll
2012-11-01 00:17:46 ----A---- C:\Windows\system32\UIRibbon.dll
2012-11-01 00:17:46 ----A---- C:\Windows\system32\srvsvc.dll
2012-11-01 00:17:46 ----A---- C:\Windows\system32\lpksetup.exe
2012-11-01 00:17:45 ----A---- C:\Windows\system32\sxs.dll
2012-11-01 00:17:45 ----A---- C:\Windows\system32\netshell.dll
2012-11-01 00:17:45 ----A---- C:\Windows\system32\fveapi.dll
2012-11-01 00:17:45 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-11-01 00:17:44 ----A---- C:\Windows\system32\ws2_32.dll
2012-11-01 00:17:44 ----A---- C:\Windows\system32\stobject.dll
2012-11-01 00:17:44 ----A---- C:\Windows\system32\hgprint.dll
2012-11-01 00:17:44 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-11-01 00:17:43 ----A---- C:\Windows\system32\prncache.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\printui.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\inetpp.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-11-01 00:17:43 ----A---- C:\Windows\system32\dps.dll
2012-11-01 00:17:43 ----A---- C:\Windows\system32\comctl32.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\WSDApi.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\wmpeffects.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\rpchttp.dll
2012-11-01 00:17:42 ----A---- C:\Windows\system32\net1.exe
2012-11-01 00:17:41 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-11-01 00:17:41 ----A---- C:\Windows\system32\drivers\pci.sys
2012-11-01 00:17:41 ----A---- C:\Windows\system32\ci.dll
2012-11-01 00:17:41 ----A---- C:\Windows\system32\aitagent.exe
2012-11-01 00:17:41 ----A---- C:\Windows\system32\aepdu.dll
2012-11-01 00:17:40 ----A---- C:\Windows\system32\vds.exe
2012-11-01 00:17:40 ----A---- C:\Windows\system32\scansetting.dll
2012-11-01 00:17:40 ----A---- C:\Windows\system32\FXSSVC.exe
2012-11-01 00:17:39 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-11-01 00:17:39 ----A---- C:\Windows\system32\wlangpui.dll
2012-11-01 00:17:39 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-11-01 00:17:39 ----A---- C:\Windows\system32\MMDevAPI.dll
2012-11-01 00:17:39 ----A---- C:\Windows\system32\davclnt.dll
2012-11-01 00:17:38 ----A---- C:\Windows\system32\t2embed.dll
2012-11-01 00:17:38 ----A---- C:\Windows\system32\pnidui.dll
2012-11-01 00:17:38 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-11-01 00:17:38 ----A---- C:\Windows\system32\consent.exe
2012-11-01 00:17:37 ----A---- C:\Windows\system32\wpdshext.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\webservices.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\scrptadm.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\fde.dll
2012-11-01 00:17:37 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-11-01 00:17:37 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-11-01 00:17:36 ----A---- C:\Windows\system32\wscapi.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\vmicsvc.exe
2012-11-01 00:17:36 ----A---- C:\Windows\system32\SyncCenter.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\sdengin2.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\netdiagfx.dll
2012-11-01 00:17:36 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-11-01 00:17:35 ----A---- C:\Windows\system32\cscobj.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\wisptis.exe
2012-11-01 00:17:34 ----A---- C:\Windows\system32\WinSCard.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\pla.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\msasn1.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\mcmde.dll
2012-11-01 00:17:34 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-11-01 00:17:33 ----A---- C:\Windows\system32\winsta.dll
2012-11-01 00:17:33 ----A---- C:\Windows\system32\setupcl.exe
2012-11-01 00:17:33 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-11-01 00:17:33 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-11-01 00:17:32 ----A---- C:\Windows\system32\wiaservc.dll
2012-11-01 00:17:32 ----A---- C:\Windows\system32\imapi2.dll
2012-11-01 00:17:32 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-11-01 00:17:32 ----A---- C:\Windows\system32\aeinv.dll
2012-11-01 00:17:31 ----A---- C:\Windows\system32\gameux.dll
2012-11-01 00:17:30 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-11-01 00:17:30 ----A---- C:\Windows\system32\onex.dll
2012-11-01 00:17:30 ----A---- C:\Windows\system32\dwmredir.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\winmm.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\vaultsvc.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\TabSvc.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\shsvcs.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\rasmans.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\hbaapi.dll
2012-11-01 00:17:29 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-11-01 00:17:29 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-11-01 00:17:28 ----A---- C:\Windows\system32\netiohlp.dll
2012-11-01 00:17:28 ----A---- C:\Windows\system32\Narrator.exe
2012-11-01 00:17:28 ----A---- C:\Windows\system32\bootres.dll
2012-11-01 00:17:28 ----A---- C:\Windows\system32\autochk.exe
2012-11-01 00:17:28 ----A---- C:\Windows\system32\autofmt.exe
2012-11-01 00:17:28 ----A---- C:\Windows\system32\audiodg.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\thumbcache.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\samcli.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\proquota.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\msutb.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\msinfo32.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-11-01 00:17:27 ----A---- C:\Windows\system32\halmacpi.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\hal.dll
2012-11-01 00:17:27 ----A---- C:\Windows\system32\autoconv.exe
2012-11-01 00:17:27 ----A---- C:\Windows\system32\AudioSes.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\srchadmin.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\schtasks.exe
2012-11-01 00:17:26 ----A---- C:\Windows\system32\regapi.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\mimefilt.dll
2012-11-01 00:17:26 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\wcncsvc.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\powercpl.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\msihnd.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\mscorier.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\framedyn.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\eapphost.dll
2012-11-01 00:17:25 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-11-01 00:17:24 ----A---- C:\Windows\system32\QAGENT.DLL
2012-11-01 00:17:24 ----A---- C:\Windows\system32\netid.dll
2012-11-01 00:17:24 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-11-01 00:17:24 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-11-01 00:17:23 ----A---- C:\Windows\system32\umpo.dll
2012-11-01 00:17:23 ----A---- C:\Windows\system32\DXP.dll
2012-11-01 00:17:23 ----A---- C:\Windows\system32\actxprxy.dll
2012-11-01 00:17:22 ----A---- C:\Windows\system32\wdc.dll
2012-11-01 00:17:22 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-11-01 00:17:22 ----A---- C:\Windows\system32\scesrv.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\Vault.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\untfs.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\sdclt.exe
2012-11-01 00:17:21 ----A---- C:\Windows\system32\rastls.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\nci.dll
2012-11-01 00:17:21 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-11-01 00:17:20 ----A---- C:\Windows\system32\wlanpref.dll
2012-11-01 00:17:20 ----A---- C:\Windows\system32\sppsvc.exe
2012-11-01 00:17:20 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-11-01 00:17:20 ----A---- C:\Windows\system32\ListSvc.dll
2012-11-01 00:17:19 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-11-01 00:17:19 ----A---- C:\Windows\system32\Robocopy.exe
2012-11-01 00:17:18 ----A---- C:\Windows\system32\taskmgr.exe
2012-11-01 00:17:18 ----A---- C:\Windows\system32\mtxclu.dll
2012-11-01 00:17:18 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-11-01 00:17:18 ----A---- C:\Windows\system32\Display.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\userinit.exe
2012-11-01 00:17:17 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\puiobj.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\msdri.dll
2012-11-01 00:17:17 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-11-01 00:17:17 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-11-01 00:17:16 ----A---- C:\Windows\system32\termmgr.dll
2012-11-01 00:17:16 ----A---- C:\Windows\system32\DiagCpl.dll
2012-11-01 00:17:16 ----A---- C:\Windows\system32\cscui.dll
2012-11-01 00:17:15 ----A---- C:\Windows\system32\eudcedit.exe
2012-11-01 00:17:15 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-11-01 00:17:15 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-11-01 00:17:14 ----A---- C:\Windows\system32\wiadefui.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\sppcomapi.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\shsetup.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\rasppp.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\msdtctm.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\msconfig.exe
2012-11-01 00:17:14 ----A---- C:\Windows\system32\logoncli.dll
2012-11-01 00:17:14 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-11-01 00:17:14 ----A---- C:\Windows\system32\biocpl.dll
2012-11-01 00:17:13 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-11-01 00:17:13 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-11-01 00:17:13 ----A---- C:\Windows\system32\cabview.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\wpccpl.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\themecpl.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-11-01 00:17:12 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2012-11-01 00:17:12 ----A---- C:\Windows\system32\dnscmmc.dll
2012-11-01 00:17:11 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-11-01 00:17:11 ----A---- C:\Windows\system32\hgcpl.dll
2012-11-01 00:17:11 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-11-01 00:17:10 ----A---- C:\Windows\system32\tapisrv.dll
2012-11-01 00:17:10 ----A---- C:\Windows\system32\scecli.dll
2012-11-01 00:17:10 ----A---- C:\Windows\system32\fontext.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\mscories.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\mscms.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\mprddm.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\localsec.dll
2012-11-01 00:17:09 ----A---- C:\Windows\system32\iasacct.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\wlanui.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\wkssvc.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\VAN.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\usercpl.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\qedit.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\prntvpt.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\KMSVC.DLL
2012-11-01 00:17:08 ----A---- C:\Windows\system32\bcdsrv.dll
2012-11-01 00:17:08 ----A---- C:\Windows\system32\batmeter.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\w32tm.exe
2012-11-01 00:17:07 ----A---- C:\Windows\system32\spwizeng.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\SndVol.exe
2012-11-01 00:17:07 ----A---- C:\Windows\system32\netcenter.dll
2012-11-01 00:17:07 ----A---- C:\Windows\system32\mblctr.exe
2012-11-01 00:17:06 ----A---- C:\Windows\system32\zipfldr.dll
2012-11-01 00:17:06 ----A---- C:\Windows\system32\fdeploy.dll
2012-11-01 00:17:06 ----A---- C:\Windows\system32\drivers\ks.sys
2012-11-01 00:17:06 ----A---- C:\Windows\system32\azroleui.dll
2012-11-01 00:17:06 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-11-01 00:17:05 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-11-01 00:17:04 ----A---- C:\Windows\system32\networkmap.dll
2012-11-01 00:17:04 ----A---- C:\Windows\system32\netjoin.dll
2012-11-01 00:17:04 ----A---- C:\Windows\system32\cryptui.dll
2012-11-01 00:17:04 ----A---- C:\Windows\system32\adsldp.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\wusa.exe
2012-11-01 00:17:03 ----A---- C:\Windows\system32\prnfldr.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\mspbda.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-11-01 00:17:03 ----A---- C:\Windows\system32\Faultrep.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\sud.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\photowiz.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\msieftp.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\credssp.dll
2012-11-01 00:17:02 ----A---- C:\Windows\system32\ActionCenter.dll
2012-11-01 00:17:01 ----A---- C:\Windows\system32\taskhost.exe
2012-11-01 00:17:01 ----A---- C:\Windows\system32\slui.exe
2012-11-01 00:17:01 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-11-01 00:17:01 ----A---- C:\Windows\system32\iasrad.dll
2012-11-01 00:17:01 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-11-01 00:17:00 ----A---- C:\Windows\system32\sisbkup.dll
2012-11-01 00:17:00 ----A---- C:\Windows\system32\halacpi.dll
2012-11-01 00:17:00 ----A---- C:\Windows\system32\ftp.exe
2012-11-01 00:17:00 ----A---- C:\Windows\system32\dot3cfg.dll
2012-11-01 00:17:00 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\wpd_ci.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\shwebsvc.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\ifsutil.dll
2012-11-01 00:16:59 ----A---- C:\Windows\system32\efscore.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\syncui.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\sdcpl.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\recovery.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\autoplay.dll
2012-11-01 00:16:58 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\sppnp.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\ntlanman.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-11-01 00:16:57 ----A---- C:\Windows\system32\bcdedit.exe
2012-11-01 00:16:56 ----A---- C:\Windows\system32\wmpmde.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\vdsutil.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\rtutils.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\OobeFldr.dll
2012-11-01 00:16:56 ----A---- C:\Windows\system32\dskquoui.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\systemcpl.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\sethc.exe
2012-11-01 00:16:55 ----A---- C:\Windows\system32\riched20.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\recdisc.exe
2012-11-01 00:16:55 ----A---- C:\Windows\system32\ntprint.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\nshwfp.dll
2012-11-01 00:16:55 ----A---- C:\Windows\system32\bcdboot.exe
2012-11-01 00:16:54 ----A---- C:\Windows\system32\netplwiz.dll
2012-11-01 00:16:54 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-11-01 00:16:54 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-11-01 00:16:54 ----A---- C:\Windows\system32\blackbox.dll
2012-11-01 00:16:54 ----A---- C:\Windows\system32\AxInstSv.dll
2012-11-01 00:16:54 ----A---- C:\Windows\system32\activeds.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\migisol.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\httpapi.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\fms.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-11-01 00:16:53 ----A---- C:\Windows\system32\dpx.dll
2012-11-01 00:16:53 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-11-01 00:16:52 ----A---- C:\Windows\system32\wsqmcons.exe
2012-11-01 00:16:52 ----A---- C:\Windows\system32\nshipsec.dll
2012-11-01 00:16:52 ----A---- C:\Windows\system32\isoburn.exe
2012-11-01 00:16:52 ----A---- C:\Windows\system32\dot3svc.dll
2012-11-01 00:16:52 ----A---- C:\Windows\system32\asycfilt.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\wlanmsm.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\wavemsp.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\ReAgent.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\provsvc.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\msftedit.dll
2012-11-01 00:16:51 ----A---- C:\Windows\system32\dot3ui.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\wvc.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\wtsapi32.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\wimgapi.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\tzutil.exe
2012-11-01 00:16:50 ----A---- C:\Windows\system32\sysclass.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\ocsetup.exe
2012-11-01 00:16:50 ----A---- C:\Windows\system32\dsuiext.dll
2012-11-01 00:16:50 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-11-01 00:16:50 ----A---- C:\Windows\system32\dfrgui.exe
2012-11-01 00:16:50 ----A---- C:\Windows\system32\appinfo.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\twext.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\PkgMgr.exe
2012-11-01 00:16:49 ----A---- C:\Windows\system32\mstask.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\certprop.dll
2012-11-01 00:16:49 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-11-01 00:16:48 ----A---- C:\Windows\twain_32.dll
2012-11-01 00:16:48 ----A---- C:\Windows\system32\shdocvw.dll
2012-11-01 00:16:48 ----A---- C:\Windows\system32\setupugc.exe
2012-11-01 00:16:48 ----A---- C:\Windows\system32\qcap.dll
2012-11-01 00:16:48 ----A---- C:\Windows\system32\qasf.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\uxlib.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\SmiEngine.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\slwga.dll
2012-11-01 00:16:47 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-11-01 00:16:47 ----A---- C:\Windows\system32\imm32.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\wwanconn.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\ssText3d.scr
2012-11-01 00:16:46 ----A---- C:\Windows\system32\srrstr.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\msvfw32.dll
2012-11-01 00:16:46 ----A---- C:\Windows\system32\mciavi32.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\nslookup.exe
2012-11-01 00:16:45 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\clusapi.dll
2012-11-01 00:16:45 ----A---- C:\Windows\system32\audiodev.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\wimserv.exe
2012-11-01 00:16:44 ----A---- C:\Windows\system32\TSpkg.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\rdpencom.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\msscp.dll
2012-11-01 00:16:44 ----A---- C:\Windows\system32\diskraid.exe
2012-11-01 00:16:44 ----A---- C:\Windows\system32\acppage.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\remotepg.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\raschap.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\QUTIL.DLL
2012-11-01 00:16:43 ----A---- C:\Windows\system32\perfmon.exe
2012-11-01 00:16:43 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-11-01 00:16:43 ----A---- C:\Windows\system32\input.dll
2012-11-01 00:16:43 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-11-01 00:16:42 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-11-01 00:16:42 ----A---- C:\Windows\system32\sdrsvc.dll
2012-11-01 00:16:42 ----A---- C:\Windows\system32\networkexplorer.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\wmpdxm.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\olepro32.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\ocsetapi.dll
2012-11-01 00:16:41 ----A---- C:\Windows\system32\nltest.exe
2012-11-01 00:16:40 ----A---- C:\Windows\system32\wpdwcn.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\vdsbas.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\runonce.exe
2012-11-01 00:16:40 ----A---- C:\Windows\system32\onexui.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\iTVData.dll
2012-11-01 00:16:40 ----A---- C:\Windows\system32\dxdiagn.dll
2012-11-01 00:16:40 ----A---- C:\Windows\bfsvc.exe
2012-11-01 00:16:39 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-11-01 00:16:39 ----A---- C:\Windows\system32\logagent.exe
2012-11-01 00:16:38 ----A---- C:\Windows\system32\msvidc32.dll
2012-11-01 00:16:38 ----A---- C:\Windows\system32\msiexec.exe
2012-11-01 00:16:38 ----A---- C:\Windows\system32\MFPlay.dll
2012-11-01 00:16:38 ----A---- C:\Windows\system32\eapp3hst.dll
2012-11-01 00:16:38 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-11-01 00:16:37 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-11-01 00:16:37 ----A---- C:\Windows\system32\shacct.dll
2012-11-01 00:16:37 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-11-01 00:16:36 ----A---- C:\Windows\system32\wmpshell.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\unimdmat.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\sqlcese30.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\lsmproxy.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\iscsium.dll
2012-11-01 00:16:36 ----A---- C:\Windows\system32\bitsadmin.exe
2012-11-01 00:16:35 ----A---- C:\Windows\system32\tabcal.exe
2012-11-01 00:16:35 ----A---- C:\Windows\system32\rdpd3d.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\pdh.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\OpcServices.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\mprapi.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\cscapi.dll
2012-11-01 00:16:35 ----A---- C:\Windows\system32\Bubbles.scr
2012-11-01 00:16:34 ----A---- C:\Windows\system32\WPDSp.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\srvcli.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\olethk32.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\ncryptui.dll
2012-11-01 00:16:34 ----A---- C:\Windows\system32\MdSched.exe
2012-11-01 00:16:34 ----A---- C:\Windows\system32\logman.exe
2012-11-01 00:16:34 ----A---- C:\Windows\system32\djoin.exe
2012-11-01 00:16:33 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-11-01 00:16:33 ----A---- C:\Windows\system32\Ribbons.scr
2012-11-01 00:16:33 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-11-01 00:16:33 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-11-01 00:16:33 ----A---- C:\Windows\system32\Mystify.scr
2012-11-01 00:16:33 ----A---- C:\Windows\system32\lpremove.exe
2012-11-01 00:16:32 ----A---- C:\Windows\system32\WMPhoto.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-11-01 00:16:32 ----A---- C:\Windows\system32\utildll.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\mapistub.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\mapi32.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\fphc.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\CscMig.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\avifil32.dll
2012-11-01 00:16:32 ----A---- C:\Windows\system32\ActionQueue.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-11-01 00:16:31 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\wiavideo.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\takeown.exe
2012-11-01 00:16:31 ----A---- C:\Windows\system32\iyuv_32.dll
2012-11-01 00:16:31 ----A---- C:\Windows\system32\dot3msm.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\sppinst.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\qdv.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\msyuv.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\msnetobj.dll
2012-11-01 00:16:30 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-11-01 00:16:29 ----A---- C:\Windows\system32\unattend.dll
2012-11-01 00:16:29 ----A---- C:\Windows\system32\qprocess.exe
2012-11-01 00:16:29 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-11-01 00:16:29 ----A---- C:\Windows\system32\msrle32.dll
2012-11-01 00:16:29 ----A---- C:\Windows\system32\cmstp.exe
2012-11-01 00:16:29 ----A---- C:\Windows\system32\cca.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\wsnmp32.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\RelPost.exe
2012-11-01 00:16:28 ----A---- C:\Windows\system32\pdhui.dll
2012-11-01 00:16:28 ----A---- C:\Windows\system32\MuiUnattend.exe
2012-11-01 00:16:27 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-11-01 00:16:27 ----A---- C:\Windows\system32\umb.dll
2012-11-01 00:16:27 ----A---- C:\Windows\system32\setupcln.dll
2012-11-01 00:16:27 ----A---- C:\Windows\system32\msg.exe
2012-11-01 00:16:27 ----A---- C:\Windows\system32\basesrv.dll
2012-11-01 00:16:27 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\tsbyuv.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\qwinsta.exe
2012-11-01 00:16:26 ----A---- C:\Windows\system32\msorcl32.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\iasrecst.dll
2012-11-01 00:16:26 ----A---- C:\Windows\system32\chglogon.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\WavDest.dll
2012-11-01 00:16:25 ----A---- C:\Windows\system32\relog.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-11-01 00:16:25 ----A---- C:\Windows\system32\netiougc.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\iscsicli.exe
2012-11-01 00:16:25 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-11-01 00:16:24 ----A---- C:\Windows\system32\wkscli.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\sppuinotify.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\spbcd.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\quser.exe
2012-11-01 00:16:24 ----A---- C:\Windows\system32\mydocs.dll
2012-11-01 00:16:24 ----A---- C:\Windows\system32\diskpart.exe
2012-11-01 00:16:24 ----A---- C:\Windows\system32\amstream.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\resutils.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\rastapi.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\nrpsrv.dll
2012-11-01 00:16:23 ----A---- C:\Windows\system32\netbtugc.exe
2012-11-01 00:16:23 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-11-01 00:16:23 ----A---- C:\Windows\system32\itircl.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\wmpps.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\syssetup.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\qappsrv.exe
2012-11-01 00:16:22 ----A---- C:\Windows\system32\chgusr.exe
2012-11-01 00:16:22 ----A---- C:\Windows\system32\chgport.exe
2012-11-01 00:16:22 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-11-01 00:16:22 ----A---- C:\Windows\system32\CertPolEng.dll
2012-11-01 00:16:21 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-11-01 00:16:21 ----A---- C:\Windows\system32\tsdiscon.exe
2012-11-01 00:16:21 ----A---- C:\Windows\system32\tscon.exe
2012-11-01 00:16:21 ----A---- C:\Windows\system32\PrintBrmUi.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\wiarpc.dll
2012-11-01 00:16:20 ----A---- C:\Windows\system32\tskill.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\tlscsp.dll
2012-11-01 00:16:20 ----A---- C:\Windows\system32\rwinsta.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\ReAgentc.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\netutils.dll
2012-11-01 00:16:20 ----A---- C:\Windows\system32\logoff.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\findstr.exe
2012-11-01 00:16:20 ----A---- C:\Windows\system32\eappgnui.dll
2012-11-01 00:16:19 ----A---- C:\Windows\system32\shadow.exe
2012-11-01 00:16:19 ----A---- C:\Windows\system32\muifontsetup.dll
2012-11-01 00:16:19 ----A---- C:\Windows\system32\mobsync.exe
2012-11-01 00:16:19 ----A---- C:\Windows\system32\mciqtz32.dll
2012-11-01 00:16:19 ----A---- C:\Windows\system32\cabinet.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\sppc.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\spopk.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\shimgvw.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\iccvid.dll
2012-11-01 00:16:18 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-11-01 00:16:18 ----A---- C:\Windows\system32\dosx.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-11-01 00:16:17 ----A---- C:\Windows\system32\unlodctr.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\repair-bde.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\manage-bde.exe
2012-11-01 00:16:17 ----A---- C:\Windows\system32\luainstall.dll
2012-11-01 00:16:17 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-11-01 00:16:17 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-11-01 00:16:17 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-11-01 00:16:16 ----A---- C:\Windows\system32\vmstorfltres.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\vmicres.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\netcfg.exe
2012-11-01 00:16:16 ----A---- C:\Windows\system32\msdmo.dll
2012-11-01 00:16:16 ----A---- C:\Windows\system32\inetmib1.dll
2012-11-01 00:16:15 ----A---- C:\Windows\system32\reset.exe
2012-11-01 00:16:15 ----A---- C:\Windows\system32\query.exe
2012-11-01 00:16:15 ----A---- C:\Windows\system32\change.exe
2012-11-01 00:16:15 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-11-01 00:16:14 ----A---- C:\Windows\system32\vmbusres.dll
2012-11-01 00:16:14 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-11-01 00:16:14 ----A---- C:\Windows\system32\odbcconf.dll
2012-11-01 00:16:13 ----A---- C:\Windows\system32\perfts.dll
2012-11-01 00:16:13 ----A---- C:\Windows\system32\icaapi.dll
2012-11-01 00:16:13 ----A---- C:\Windows\system32\FXSMON.dll
2012-11-01 00:16:12 ----A---- C:\Windows\system32\TRAPI.dll
2012-11-01 00:16:12 ----A---- C:\Windows\system32\elsTrans.dll
2012-11-01 00:16:12 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-11-01 00:16:12 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-11-01 00:16:11 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\wshbth.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\schedcli.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\napdsnap.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\dsauth.dll
2012-11-01 00:16:10 ----A---- C:\Windows\system32\bitsperf.dll
2012-11-01 00:16:09 ----A---- C:\Windows\system32\LogonUI.exe
2012-11-01 00:16:09 ----A---- C:\Windows\system32\cscdll.dll
2012-11-01 00:16:08 ----A---- C:\Windows\system32\sscore.dll
2012-11-01 00:16:08 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-11-01 00:16:07 ----A---- C:\Windows\system32\wsdchngr.dll
2012-11-01 00:16:07 ----A---- C:\Windows\system32\shgina.dll
2012-11-01 00:16:07 ----A---- C:\Windows\system32\riched32.dll