Pomoc- HDD 100% vyuzitie
Napsal: 19 led 2013 21:04
Dobry den mam problem s hdd. Niekedy vyskoci vyuzitie na 100% a pocitac ide strasne pomaly netusim cim to moze byt. Dakujem za pomoc.

Logfile of random's system information tool 1.08 (written by random/random)
Run by Robo at 2013-01-19 20:52:57
Microsoft Windows 8 Pro
System drive C: has 44 GB (33%) free of 134 GB
Total RAM: 6007 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:53:47, on 19.1.2013
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16453)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Programy\uTorrent\uTorrent.exe
C:\Programy\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Program Files\trend micro\Robo.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MuteSync] C:\Programy\Lenovo\Lenovo MuteSync\MuteSync.exe
O4 - HKLM\..\Run: [Lenovo EasyCamera_Monitor] C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - Startup: Dropbox.lnk = C:\Users\Robo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Programy\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MIF5BA~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MIF5BA~1\Office14\ONBttnIE.dll/105
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 8121 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
dashost.exe {aeb35f2c-14c7-4e8f-b3410ff249043427}
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d906aee3-0f52-4c40-bd96-1122becd8b45 -SystemEventPortName:HostProcess-9c06b5fa-4738-4c98-b62f-7457157172e3 -IoCancelEventPortName:HostProcess-23f3d450-4461-4cad-b64a-c453cb162259 -NonStateChangingEventPortName:HostProcess-3f477e51-f58d-4c1b-a7f6-0d18c68bf2fb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:71ce690e-b0fe-4af9-a52b-6506b20737c8 -DeviceGroupId:WudfDefaultDevicePool
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Programy\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Programy\Lenovo\Lenovo MuteSync\MuteSync.exe"
"C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Programy\Mozilla Firefox\firefox.exe"
C:\Windows\system32\WLANExt.exe 267939848304
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Programy\uTorrent\uTorrent.exe"
"C:\Windows\System32\Taskmgr.exe" /3
"C:\Programy\Mozilla Firefox\plugin-container.exe" --channel=3572.7507d00.267914771 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll" B21B215F267D7725 -greomni "C:\Programy\Mozilla Firefox\omni.ja" 3572 "\\.\pipe\gecko-crash-server-pipe.3572" plugin
"C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe" --proxy-stub-channel=Flash3652.6C0BFFC0.41 --host-broker-channel=Flash3652.6C0BFFC0.18467 --host-pid=3652 --host-npapi-version=27 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_11_5_502_135.dll"
"C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe" --channel=5912.0103F5AC.1275797685 --proxy-stub-channel=Flash3652.6C0BFFC0.41 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_11_5_502_135.dll" --host-npapi-version=27 --type=renderer
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe32_ Global\UsGthrCtrlFltPipeMssGthrPipe32 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Users\Robo\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\FreeFileViewerUpdateChecker.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-12-26 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-12-26 170416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-27 12937872]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2918656]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-08-22 170304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-08-22 398656]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-08-22 440640]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-14 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-12-28 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-12-28 191544]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"MuteSync"=C:\Programy\Lenovo\Lenovo MuteSync\MuteSync.exe [2012-02-03 343040]
"Lenovo EasyCamera_Monitor"=C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [2010-08-24 257224]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-07-16 56128]
C:\Users\Robo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Robo\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-08-21 439296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktopChanges"=1
"NoActiveDesktop"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2013-01-19 20:53:13 ----D---- C:\Program Files\trend micro
2013-01-19 20:52:57 ----D---- C:\rsit
2013-01-19 19:34:07 ----SHD---- C:\Config.Msi
2013-01-18 01:08:46 ----D---- C:\Users\Robo\AppData\Roaming\BlueDay Solutions
2013-01-17 21:51:49 ----D---- C:\ProgramData\APN
2013-01-16 16:45:53 ----D---- C:\Users\Robo\AppData\Roaming\MathWorks
2013-01-15 16:05:50 ----D---- C:\Users\Robo\AppData\Roaming\MiKTeX
2013-01-15 15:53:04 ----D---- C:\ProgramData\MiKTeX
2013-01-10 10:03:11 ----D---- C:\Users\Robo\AppData\Roaming\FreeFileViewer
2013-01-09 22:37:10 ----D---- C:\Users\Robo\AppData\Roaming\Dropbox
2013-01-08 23:38:28 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2013-01-08 23:38:28 ----A---- C:\Windows\system32\ncryptsslp.dll
2013-01-08 23:37:40 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2013-01-08 23:37:40 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2013-01-08 23:37:39 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-01-08 23:37:39 ----A---- C:\Windows\system32\msxml6.dll
2013-01-08 23:37:39 ----A---- C:\Windows\system32\msxml3.dll
2013-01-08 23:37:38 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2013-01-08 23:37:38 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-01-08 23:37:38 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\msxml6r.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\msxml3r.dll
2013-01-08 23:37:34 ----A---- C:\Windows\system32\wuaueng.dll
2013-01-08 23:37:33 ----A---- C:\Windows\system32\wmpmde.dll
2013-01-08 23:37:33 ----A---- C:\Windows\system32\mstscax.dll
2013-01-08 23:37:32 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-01-08 23:37:31 ----A---- C:\Windows\system32\winmde.dll
2013-01-08 23:37:31 ----A---- C:\Windows\system32\rdpcorets.dll
2013-01-08 23:37:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-01-08 23:37:30 ----A---- C:\Windows\system32\vds.exe
2013-01-08 23:37:30 ----A---- C:\Windows\system32\Taskmgr.exe
2013-01-08 23:37:30 ----A---- C:\Windows\system32\authui.dll
2013-01-08 23:37:29 ----A---- C:\Windows\SYSWOW64\Taskmgr.exe
2013-01-08 23:37:27 ----A---- C:\Windows\system32\WebcamUi.dll
2013-01-08 23:37:27 ----A---- C:\Windows\system32\storagewmi.dll
2013-01-08 23:37:26 ----A---- C:\Windows\SYSWOW64\WebcamUi.dll
2013-01-08 23:37:26 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2013-01-08 23:37:26 ----A---- C:\Windows\system32\usbmon.dll
2013-01-08 23:37:25 ----A---- C:\Windows\SYSWOW64\winmde.dll
2013-01-08 23:37:25 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-01-08 23:37:25 ----A---- C:\Windows\system32\wpnapps.dll
2013-01-08 23:37:24 ----A---- C:\Windows\system32\drivers\storport.sys
2013-01-08 23:37:24 ----A---- C:\Windows\system32\drivers\sdbus.sys
2013-01-08 23:37:23 ----A---- C:\Windows\SYSWOW64\wpnapps.dll
2013-01-08 23:37:23 ----A---- C:\Windows\SYSWOW64\UserLanguagesCpl.dll
2013-01-08 23:37:23 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-01-08 23:37:23 ----A---- C:\Windows\system32\wuauclt.exe
2013-01-08 23:37:23 ----A---- C:\Windows\system32\WSDMon.dll
2013-01-08 23:37:23 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2013-01-08 23:37:23 ----A---- C:\Windows\system32\BFE.DLL
2013-01-08 23:37:22 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2013-01-08 23:37:22 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-01-08 23:37:22 ----A---- C:\Windows\system32\nshwfp.dll
2013-01-08 23:37:22 ----A---- C:\Windows\system32\mstsc.exe
2013-01-08 23:37:21 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-01-08 23:37:21 ----A---- C:\Windows\system32\vdsutil.dll
2013-01-08 23:37:21 ----A---- C:\Windows\system32\vdsldr.exe
2013-01-08 23:37:21 ----A---- C:\Windows\system32\vds_ps.dll
2013-01-08 23:37:21 ----A---- C:\Windows\system32\storewuauth.dll
2013-01-08 23:37:21 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-01-08 23:37:20 ----A---- C:\Windows\SYSWOW64\vds_ps.dll
2013-01-08 23:37:20 ----A---- C:\Windows\system32\drivers\BthhfHid.sys
2013-01-08 23:37:20 ----A---- C:\Windows\system32\drivers\BthAvrcpTg.sys
2013-01-08 23:37:20 ----A---- C:\Windows\system32\drivers\BtaMPM.sys
2013-01-08 23:37:14 ----A---- C:\Windows\system32\win32k.sys
2013-01-08 23:37:14 ----A---- C:\Windows\system32\sppwinob.dll
2013-01-06 16:12:05 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvopencl.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvoglv64.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcuvid.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcuda.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcompiler.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2013-01-06 16:09:39 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-01-04 21:18:03 ----A---- C:\Windows\system32\drivers\cnnctfy2.sys
2013-01-04 16:38:14 ----HD---- C:\Windows\system32\WLANProfiles
2013-01-04 12:50:03 ----D---- C:\Users\Robo\AppData\Roaming\Intel
2013-01-04 12:49:55 ----D---- C:\ProgramData\Roaming
2013-01-04 12:49:05 ----D---- C:\Program Files (x86)\Cisco
2013-01-04 12:49:02 ----D---- C:\ProgramData\Intel.sav
2013-01-03 12:59:07 ----D---- C:\Users\Robo\AppData\Roaming\LolClient
2013-01-02 21:48:22 ----D---- C:\Users\Robo\AppData\Roaming\uTorrent
2012-12-31 15:17:00 ----D---- C:\Program Files\Microsoft SDKs
2012-12-31 15:16:40 ----D---- C:\Program Files\Business Objects
2012-12-31 15:15:41 ----A---- C:\Windows\ODBC.INI
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\js
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\images
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\html
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\css
2012-12-31 15:15:26 ----D---- C:\Program Files (x86)\Business Objects
2012-12-31 15:14:20 ----D---- C:\Program Files\Microsoft Device Emulator
2012-12-31 15:14:20 ----D---- C:\Program Files (x86)\Microsoft Device Emulator
2012-12-31 15:13:38 ----D---- C:\Program Files (x86)\Windows Mobile 5.0 SDK R2
2012-12-31 15:13:18 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2012-12-31 15:09:12 ----D---- C:\ProgramData\PreEmptive Solutions
2012-12-31 15:07:16 ----D---- C:\Program Files (x86)\Microsoft Office
2012-12-31 15:06:31 ----D---- C:\Windows\symbols
2012-12-31 15:05:00 ----D---- C:\Program Files (x86)\HTML Help Workshop
2012-12-31 15:05:00 ----D---- C:\Program Files (x86)\CE Remote Tools
2012-12-31 15:04:59 ----D---- C:\Programy)
2012-12-31 15:03:43 ----D---- C:\Program Files (x86)\Microsoft Web Designer Tools
2012-12-31 15:03:32 ----RHD---- C:\MSOCache
2012-12-31 15:02:47 ----D---- C:\ProgramData\Microsoft Help
2012-12-31 15:02:42 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2012-12-30 22:18:51 ----D---- C:\ProgramData\Microsoft Visual Studio
2012-12-30 22:06:22 ----D---- C:\Users\Robo\AppData\Roaming\WinRAR
2012-12-29 21:50:33 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-12-29 21:48:49 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2012-12-29 21:48:48 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-12-29 21:45:45 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2012-12-29 21:45:20 ----D---- C:\Program Files\Microsoft
2012-12-29 21:45:08 ----D---- C:\Program Files\IIS Express
2012-12-29 21:45:08 ----D---- C:\Program Files (x86)\IIS Express
2012-12-29 21:44:07 ----D---- C:\Program Files\IIS
2012-12-29 21:44:07 ----D---- C:\Program Files (x86)\IIS
2012-12-29 21:43:25 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2012-12-29 21:43:11 ----D---- C:\Program Files (x86)\Windows Kits
2012-12-29 21:39:39 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2012-12-29 21:39:17 ----D---- C:\Windows\SYSWOW64\1033
2012-12-29 21:39:08 ----D---- C:\Program Files\Microsoft SQL Server
2012-12-29 21:39:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2012-12-29 21:36:31 ----D---- C:\Windows\system32\1033
2012-12-29 21:35:35 ----D---- C:\Program Files (x86)\Microsoft SDKs
2012-12-29 21:35:14 ----D---- C:\ProgramData\Package Cache
2012-12-29 20:24:20 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-12-29 20:24:20 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-12-29 20:24:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-12-29 20:24:18 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-12-29 20:24:18 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-12-29 20:21:24 ----D---- C:\Hry
2012-12-29 17:43:02 ----D---- C:\Users\Robo\AppData\Roaming\e-academy Inc
2012-12-28 22:57:18 ----A---- C:\Windows\system32\drivers\LhdX64.sys
2012-12-28 22:54:42 ----D---- C:\Program Files\Lenovo
2012-12-28 22:53:15 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-12-28 22:52:38 ----D---- C:\Users\Robo\AppData\Roaming\Intel Corporation
2012-12-28 22:49:16 ----A---- C:\Windows\system32\drivers\iaStorA.sys
2012-12-28 22:49:07 ----D---- C:\Users\Robo\AppData\Roaming\InstallShield
2012-12-28 22:43:04 ----D---- C:\Program Files\Common Files\Intel
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\IntelCpHeciSvc.exe
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\iglhsip32.dll
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\iglhcp32.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\iglhsip64.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\iglhcp64.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxtray.exe
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxTMM.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxsrvc.exe
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxsrvc.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxCoIn_v2817.dll
2012-12-28 22:41:05 ----A---- C:\Windows\system32\igfxress.dll
2012-12-28 22:41:04 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2012-12-28 22:41:04 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxpph.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxpers.exe
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxext.exe
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxexps.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxdo.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxdev.dll
2012-12-28 22:41:03 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2012-12-28 22:41:03 ----A---- C:\Windows\system32\igdumd64.dll
2012-12-28 22:41:03 ----A---- C:\Windows\system32\igdrcl64.dll
2012-12-28 22:41:01 ----A---- C:\Windows\SYSWOW64\igdrcl32.dll
2012-12-28 22:41:01 ----A---- C:\Windows\system32\drivers\igdkmd64.sys
2012-12-28 22:41:00 ----A---- C:\Windows\system32\igdfcl64.dll
2012-12-28 22:40:59 ----A---- C:\Windows\SYSWOW64\igdfcl32.dll
2012-12-28 22:40:59 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2012-12-28 22:40:59 ----A---- C:\Windows\SYSWOW64\igdbcl32.dll
2012-12-28 22:40:59 ----A---- C:\Windows\system32\igdde64.dll
2012-12-28 22:40:59 ----A---- C:\Windows\system32\igdbcl64.dll
2012-12-28 22:40:58 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2012-12-28 22:40:57 ----A---- C:\Windows\SYSWOW64\ig7icd32.dll
2012-12-28 22:40:57 ----A---- C:\Windows\system32\ig7icd64.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\IntcDAuC.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\hkcmd.exe
2012-12-28 22:40:55 ----A---- C:\Windows\system32\hccutils.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\GfxUI.exe.config
2012-12-28 22:40:55 ----A---- C:\Windows\system32\GfxUI.exe
2012-12-28 22:40:55 ----A---- C:\Windows\system32\gfxSrvc.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\drivers\IntcDAud.sys
2012-12-28 22:40:55 ----A---- C:\Windows\system32\difx64.exe
2012-12-27 14:45:52 ----A---- C:\Windows\unins000.exe
2012-12-27 14:23:17 ----D---- C:\Users\Robo\AppData\Roaming\DriverCDForWeb
2012-12-27 14:23:17 ----D---- C:\Users\Robo\AppData\Roaming\DriverCD
2012-12-27 14:00:29 ----D---- C:\Users\Robo\AppData\Roaming\Macromedia
2012-12-27 13:57:45 ----D---- C:\ProgramData\Adobe
2012-12-26 18:28:57 ----A---- C:\Windows\system32\LenovoSdk.OKTDLL.dll
2012-12-26 17:57:07 ----D---- C:\Users\Robo\AppData\Roaming\vlc
2012-12-26 16:56:33 ----A---- C:\Windows\system32\netcfg-3351484.txt
2012-12-26 16:55:54 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2012-12-26 16:55:50 ----A---- C:\Windows\SYSWOW64\log.txt
2012-12-26 16:55:49 ----D---- C:\ProgramData\Intel
2012-12-26 16:55:48 ----D---- C:\Program Files\Intel
2012-12-26 16:53:29 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2012-12-26 16:52:20 ----A---- C:\Windows\SYSWOW64\RtsUVStoricon.dll
2012-12-26 16:52:20 ----A---- C:\Windows\system32\drivers\RtsUVStor.sys
2012-12-26 16:51:00 ----D---- C:\Program Files (x86)\Lenovo EasyCamera
2012-12-26 16:49:07 ----D---- C:\Windows\SYSWOW64\SDA
2012-12-26 16:37:32 ----A---- C:\Windows\system32\WSService.dll
2012-12-26 16:37:31 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2012-12-26 16:37:25 ----A---- C:\Windows\system32\drivers\evbda.sys
2012-12-26 16:37:21 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2012-12-26 16:37:21 ----A---- C:\Windows\system32\wmp.dll
2012-12-26 16:37:18 ----A---- C:\Windows\system32\WpcMon.exe
2012-12-26 16:37:16 ----A---- C:\Windows\system32\d2d1.dll
2012-12-26 16:37:15 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-12-26 16:37:15 ----A---- C:\Windows\system32\WinSAT.exe
2012-12-26 16:37:13 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-12-26 16:37:13 ----A---- C:\Windows\system32\drivers\bxvbda.sys
2012-12-26 16:37:12 ----A---- C:\Windows\system32\vssapi.dll
2012-12-26 16:37:11 ----A---- C:\Windows\system32\ntdll.dll
2012-12-26 16:37:11 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-12-26 16:37:10 ----A---- C:\Windows\system32\RacEngn.dll
2012-12-26 16:37:10 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2012-12-26 16:37:09 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2012-12-26 16:37:09 ----A---- C:\Windows\system32\schannel.dll
2012-12-26 16:37:09 ----A---- C:\Windows\system32\d3d10warp.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\uDWM.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\provcore.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-12-26 16:37:07 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-12-26 16:37:07 ----A---- C:\Windows\system32\ncsi.dll
2012-12-26 16:37:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-12-26 16:37:06 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-12-26 16:37:06 ----A---- C:\Windows\system32\wlroamextension.dll
2012-12-26 16:37:05 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-12-26 16:37:04 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2012-12-26 16:37:04 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-12-26 16:37:04 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-12-26 16:37:03 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2012-12-26 16:37:03 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-12-26 16:37:03 ----A---- C:\Windows\system32\MFMediaEngine.dll
2012-12-26 16:37:03 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-12-26 16:37:03 ----A---- C:\Windows\system32\apphelp.dll
2012-12-26 16:37:02 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-12-26 16:37:02 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-12-26 16:37:02 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-12-26 16:37:02 ----A---- C:\Windows\system32\WWAHost.exe
2012-12-26 16:37:02 ----A---- C:\Windows\system32\MFPlay.dll
2012-12-26 16:37:02 ----A---- C:\Windows\system32\drivers\csc.sys
2012-12-26 16:37:02 ----A---- C:\Windows\system32\dnsapi.dll
2012-12-26 16:37:02 ----A---- C:\Windows\system32\combase.dll
2012-12-26 16:37:01 ----A---- C:\Windows\SYSWOW64\rascfg.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\wlidcredprov.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\WinTypes.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\taskeng.exe
2012-12-26 16:37:01 ----A---- C:\Windows\system32\mfsvr.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\fveapi.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\wpnprv.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\rascfg.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\mfsrcsnk.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2012-12-26 16:37:00 ----A---- C:\Windows\system32\bcdsrv.dll
2012-12-26 16:36:59 ----A---- C:\Windows\system32\wintrust.dll
2012-12-26 16:36:59 ----A---- C:\Windows\system32\propsys.dll
2012-12-26 16:36:59 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-12-26 16:36:58 ----A---- C:\Windows\SYSWOW64\wlroamextension.dll
2012-12-26 16:36:58 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-12-26 16:36:58 ----A---- C:\Windows\system32\WSClient.dll
2012-12-26 16:36:58 ----A---- C:\Windows\system32\VAN.dll
2012-12-26 16:36:58 ----A---- C:\Windows\system32\services.exe
2012-12-26 16:36:58 ----A---- C:\Windows\system32\fveapibase.dll
2012-12-26 16:36:56 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2012-12-26 16:36:56 ----A---- C:\Windows\system32\psmsrv.dll
2012-12-26 16:36:56 ----A---- C:\Windows\system32\mmcss.dll
2012-12-26 16:36:56 ----A---- C:\Windows\system32\bisrv.dll
2012-12-26 16:36:55 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2012-12-26 16:36:55 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2012-12-26 16:36:55 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\WSSync.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\PackageStateRoaming.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\fhengine.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\drivers\msgpiowin32.sys
2012-12-26 16:36:55 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\WSSync.dll
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\wpncore.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\TpmTasks.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\ProximityService.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\dwmredir.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\provcore.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\PackageStateRoaming.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\combase.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\avrt.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\msvproc.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\avrt.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\svchost.exe
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\perfdisk.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-12-26 16:36:52 ----A---- C:\Windows\system32\SettingSyncHost.exe
2012-12-26 16:36:52 ----A---- C:\Windows\system32\perfdisk.dll
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\UCX01000.SYS
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\tpm.sys
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\dumpfve.sys
2012-12-26 16:36:52 ----A---- C:\Windows\system32\batmeter.dll
2012-12-26 16:36:52 ----A---- C:\Windows\system32\aelupsvc.dll
2012-12-26 16:36:51 ----A---- C:\Windows\SYSWOW64\wlidcredprov.dll
2012-12-26 16:36:51 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2012-12-26 16:36:51 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\user32.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\svchost.exe
2012-12-26 16:36:51 ----A---- C:\Windows\system32\fhevents.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\mfh264enc.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\winsrv.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\twinapi.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\perfnet.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\mfh264enc.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\lsass.exe
2012-12-26 16:36:50 ----A---- C:\Windows\system32\lpksetup.exe
2012-12-26 16:36:50 ----A---- C:\Windows\system32\dwm.exe
2012-12-26 16:36:50 ----A---- C:\Windows\system32\DevPropMgr.dll
2012-12-26 16:36:49 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-12-26 16:36:49 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-12-26 16:36:49 ----A---- C:\Windows\system32\nlasvc.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\fhcfg.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\dxgi.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\drvinst.exe
2012-12-26 16:36:49 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\DAFWSD.dll
2012-12-26 16:36:48 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-12-26 16:36:48 ----A---- C:\Windows\SYSWOW64\perfnet.dll
2012-12-26 16:36:48 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\webio.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\RpcEpMap.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\perfos.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\fhsrchapi.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\fhcat.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\d3d11.dll
2012-12-26 16:36:47 ----A---- C:\Windows\system32\umpo.dll
2012-12-26 16:36:47 ----A---- C:\Windows\system32\lpremove.exe
2012-12-26 16:36:47 ----A---- C:\Windows\system32\fhsvc.dll
2012-12-26 16:36:47 ----A---- C:\Windows\system32\CscMig.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\vsstrace.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\rasdiag.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\OEMLicense.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\vsstrace.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\sspicli.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\sdbinst.exe
2012-12-26 16:36:46 ----A---- C:\Windows\system32\rasdiag.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\OEMLicense.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\nlaapi.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhtask.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhsrchph.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhshl.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhmanagew.exe
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhlisten.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhcleanup.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\drivers\ws2ifsl.sys
2012-12-26 16:36:46 ----A---- C:\Windows\system32\cryptdlg.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\rasser.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\rasmxs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\perfproc.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\perfos.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\perfctrs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\rasser.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\rasmxs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\perfproc.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\perfctrs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\fhautoplay.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\eventcls.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\sspisrv.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\spwmp.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\shimeng.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\MUILanguageCleanup.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\lpksetupproxyserv.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\fhsvcctl.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\eventcls.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\dxmasf.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\ndistapi.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\cdd.dll
2012-12-26 16:36:43 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2012-12-26 16:36:42 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-12-26 16:36:42 ----A---- C:\Windows\system32\wmploc.DLL
2012-12-26 16:33:10 ----A---- C:\Windows\SYSWOW64\newdev.exe
2012-12-26 16:33:10 ----A---- C:\Windows\SYSWOW64\newdev.dll
2012-12-26 16:33:10 ----A---- C:\Windows\SYSWOW64\ndadmin.exe
2012-12-26 16:33:10 ----A---- C:\Windows\system32\newdev.exe
2012-12-26 16:33:10 ----A---- C:\Windows\system32\newdev.dll
2012-12-26 16:33:10 ----A---- C:\Windows\system32\ndadmin.exe
2012-12-26 16:33:09 ----A---- C:\Windows\system32\wwansvc.dll
2012-12-26 16:33:09 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-12-26 16:05:44 ----A---- C:\Windows\system32\netcfg-301812.txt
2012-12-26 16:02:01 ----A---- C:\Windows\system32\netcfg-79062.txt
2012-12-26 16:02:01 ----A---- C:\Windows\system32\netcfg-78765.txt
2012-12-26 16:01:59 ----A---- C:\Windows\system32\netcfg-77218.txt
2012-12-26 16:00:05 ----D---- C:\Program Files (x86)\Reference Assemblies
2012-12-26 16:00:05 ----D---- C:\Program Files (x86)\MSBuild
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalSerif.CompositeFont
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalSansSerif.CompositeFont
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalMonospace.CompositeFont
2012-12-26 15:59:24 ----D---- C:\Program Files\Reference Assemblies
2012-12-26 15:59:23 ----D---- C:\Program Files\MSBuild
2012-12-26 15:58:17 ----A---- C:\Windows\system32\netcfg-2958000.txt
2012-12-26 15:55:23 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2012-12-26 15:55:23 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2012-12-26 15:55:23 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2012-12-26 15:55:22 ----A---- C:\Windows\system32\TsWpfWrp.exe
2012-12-26 15:55:22 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2012-12-26 15:55:22 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2012-12-26 15:46:42 ----D---- C:\NVIDIA
2012-12-26 15:38:08 ----D---- C:\ProgramData\ESET
2012-12-26 15:38:08 ----D---- C:\Program Files\ESET
2012-12-26 15:21:43 ----D---- C:\ProgramData\Sun
2012-12-26 15:21:28 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2012-12-26 15:21:28 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-12-26 15:21:28 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-12-26 15:21:18 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-12-26 15:21:18 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-12-26 15:21:18 ----A---- C:\Windows\SYSWOW64\java.exe
2012-12-26 15:21:11 ----D---- C:\Program Files (x86)\Java
2012-12-26 15:16:45 ----D---- C:\temp
2012-12-26 15:12:05 ----A---- C:\Windows\system32\netcfg-186406.txt
2012-12-26 15:08:38 ----A---- C:\Windows\system32\netcfg-1438546.txt
2012-12-26 15:08:27 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-12-26 15:08:11 ----D---- C:\Program Files\Realtek
2012-12-26 15:08:11 ----A---- C:\Windows\system32\WavesGUILib64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSHP64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SFNHK64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\SFCOM64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\SFAPO64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RtkApi64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEED64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTCOM64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RCoInstII64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEP64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEL64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEG64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EED64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEA64A.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-12-26 15:08:06 ----A---- C:\Windows\system32\FMAPO64.dll

Logfile of random's system information tool 1.08 (written by random/random)
Run by Robo at 2013-01-19 20:52:57
Microsoft Windows 8 Pro
System drive C: has 44 GB (33%) free of 134 GB
Total RAM: 6007 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:53:47, on 19.1.2013
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16453)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Programy\uTorrent\uTorrent.exe
C:\Programy\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Program Files\trend micro\Robo.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MuteSync] C:\Programy\Lenovo\Lenovo MuteSync\MuteSync.exe
O4 - HKLM\..\Run: [Lenovo EasyCamera_Monitor] C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - Startup: Dropbox.lnk = C:\Users\Robo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Programy\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MIF5BA~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MIF5BA~1\Office14\ONBttnIE.dll/105
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 8121 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
dashost.exe {aeb35f2c-14c7-4e8f-b3410ff249043427}
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d906aee3-0f52-4c40-bd96-1122becd8b45 -SystemEventPortName:HostProcess-9c06b5fa-4738-4c98-b62f-7457157172e3 -IoCancelEventPortName:HostProcess-23f3d450-4461-4cad-b64a-c453cb162259 -NonStateChangingEventPortName:HostProcess-3f477e51-f58d-4c1b-a7f6-0d18c68bf2fb -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:71ce690e-b0fe-4af9-a52b-6506b20737c8 -DeviceGroupId:WudfDefaultDevicePool
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Programy\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Programy\Lenovo\Lenovo MuteSync\MuteSync.exe"
"C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Programy\Mozilla Firefox\firefox.exe"
C:\Windows\system32\WLANExt.exe 267939848304
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Programy\uTorrent\uTorrent.exe"
"C:\Windows\System32\Taskmgr.exe" /3
"C:\Programy\Mozilla Firefox\plugin-container.exe" --channel=3572.7507d00.267914771 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll" B21B215F267D7725 -greomni "C:\Programy\Mozilla Firefox\omni.ja" 3572 "\\.\pipe\gecko-crash-server-pipe.3572" plugin
"C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe" --proxy-stub-channel=Flash3652.6C0BFFC0.41 --host-broker-channel=Flash3652.6C0BFFC0.18467 --host-pid=3652 --host-npapi-version=27 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_11_5_502_135.dll"
"C:\Windows\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe" --channel=5912.0103F5AC.1275797685 --proxy-stub-channel=Flash3652.6C0BFFC0.41 --plugin-path="C:\Windows\SYSTEM32\Macromed\Flash\NPSWF32_11_5_502_135.dll" --host-npapi-version=27 --type=renderer
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe32_ Global\UsGthrCtrlFltPipeMssGthrPipe32 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Users\Robo\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\FreeFileViewerUpdateChecker.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-12-26 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-12-26 170416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-07-27 12937872]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2918656]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-08-22 170304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-08-22 398656]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-08-22 440640]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-14 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-12-28 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-12-28 191544]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"MuteSync"=C:\Programy\Lenovo\Lenovo MuteSync\MuteSync.exe [2012-02-03 343040]
"Lenovo EasyCamera_Monitor"=C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [2010-08-24 257224]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-07-16 56128]
C:\Users\Robo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Robo\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-08-21 439296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktopChanges"=1
"NoActiveDesktop"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2013-01-19 20:53:13 ----D---- C:\Program Files\trend micro
2013-01-19 20:52:57 ----D---- C:\rsit
2013-01-19 19:34:07 ----SHD---- C:\Config.Msi
2013-01-18 01:08:46 ----D---- C:\Users\Robo\AppData\Roaming\BlueDay Solutions
2013-01-17 21:51:49 ----D---- C:\ProgramData\APN
2013-01-16 16:45:53 ----D---- C:\Users\Robo\AppData\Roaming\MathWorks
2013-01-15 16:05:50 ----D---- C:\Users\Robo\AppData\Roaming\MiKTeX
2013-01-15 15:53:04 ----D---- C:\ProgramData\MiKTeX
2013-01-10 10:03:11 ----D---- C:\Users\Robo\AppData\Roaming\FreeFileViewer
2013-01-09 22:37:10 ----D---- C:\Users\Robo\AppData\Roaming\Dropbox
2013-01-08 23:38:28 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2013-01-08 23:38:28 ----A---- C:\Windows\system32\ncryptsslp.dll
2013-01-08 23:37:40 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2013-01-08 23:37:40 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2013-01-08 23:37:39 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-01-08 23:37:39 ----A---- C:\Windows\system32\msxml6.dll
2013-01-08 23:37:39 ----A---- C:\Windows\system32\msxml3.dll
2013-01-08 23:37:38 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2013-01-08 23:37:38 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-01-08 23:37:38 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\msxml6r.dll
2013-01-08 23:37:38 ----A---- C:\Windows\system32\msxml3r.dll
2013-01-08 23:37:34 ----A---- C:\Windows\system32\wuaueng.dll
2013-01-08 23:37:33 ----A---- C:\Windows\system32\wmpmde.dll
2013-01-08 23:37:33 ----A---- C:\Windows\system32\mstscax.dll
2013-01-08 23:37:32 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-01-08 23:37:31 ----A---- C:\Windows\system32\winmde.dll
2013-01-08 23:37:31 ----A---- C:\Windows\system32\rdpcorets.dll
2013-01-08 23:37:31 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-01-08 23:37:30 ----A---- C:\Windows\system32\vds.exe
2013-01-08 23:37:30 ----A---- C:\Windows\system32\Taskmgr.exe
2013-01-08 23:37:30 ----A---- C:\Windows\system32\authui.dll
2013-01-08 23:37:29 ----A---- C:\Windows\SYSWOW64\Taskmgr.exe
2013-01-08 23:37:27 ----A---- C:\Windows\system32\WebcamUi.dll
2013-01-08 23:37:27 ----A---- C:\Windows\system32\storagewmi.dll
2013-01-08 23:37:26 ----A---- C:\Windows\SYSWOW64\WebcamUi.dll
2013-01-08 23:37:26 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2013-01-08 23:37:26 ----A---- C:\Windows\system32\usbmon.dll
2013-01-08 23:37:25 ----A---- C:\Windows\SYSWOW64\winmde.dll
2013-01-08 23:37:25 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-01-08 23:37:25 ----A---- C:\Windows\system32\wpnapps.dll
2013-01-08 23:37:24 ----A---- C:\Windows\system32\drivers\storport.sys
2013-01-08 23:37:24 ----A---- C:\Windows\system32\drivers\sdbus.sys
2013-01-08 23:37:23 ----A---- C:\Windows\SYSWOW64\wpnapps.dll
2013-01-08 23:37:23 ----A---- C:\Windows\SYSWOW64\UserLanguagesCpl.dll
2013-01-08 23:37:23 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-01-08 23:37:23 ----A---- C:\Windows\system32\wuauclt.exe
2013-01-08 23:37:23 ----A---- C:\Windows\system32\WSDMon.dll
2013-01-08 23:37:23 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2013-01-08 23:37:23 ----A---- C:\Windows\system32\BFE.DLL
2013-01-08 23:37:22 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2013-01-08 23:37:22 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-01-08 23:37:22 ----A---- C:\Windows\system32\nshwfp.dll
2013-01-08 23:37:22 ----A---- C:\Windows\system32\mstsc.exe
2013-01-08 23:37:21 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-01-08 23:37:21 ----A---- C:\Windows\system32\vdsutil.dll
2013-01-08 23:37:21 ----A---- C:\Windows\system32\vdsldr.exe
2013-01-08 23:37:21 ----A---- C:\Windows\system32\vds_ps.dll
2013-01-08 23:37:21 ----A---- C:\Windows\system32\storewuauth.dll
2013-01-08 23:37:21 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-01-08 23:37:20 ----A---- C:\Windows\SYSWOW64\vds_ps.dll
2013-01-08 23:37:20 ----A---- C:\Windows\system32\drivers\BthhfHid.sys
2013-01-08 23:37:20 ----A---- C:\Windows\system32\drivers\BthAvrcpTg.sys
2013-01-08 23:37:20 ----A---- C:\Windows\system32\drivers\BtaMPM.sys
2013-01-08 23:37:14 ----A---- C:\Windows\system32\win32k.sys
2013-01-08 23:37:14 ----A---- C:\Windows\system32\sppwinob.dll
2013-01-06 16:12:05 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-01-06 16:09:39 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvwgf2umx.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvopencl.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvoglv64.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcuvid.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcuda.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\nvcompiler.dll
2013-01-06 16:09:39 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2013-01-06 16:09:39 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-01-04 21:18:03 ----A---- C:\Windows\system32\drivers\cnnctfy2.sys
2013-01-04 16:38:14 ----HD---- C:\Windows\system32\WLANProfiles
2013-01-04 12:50:03 ----D---- C:\Users\Robo\AppData\Roaming\Intel
2013-01-04 12:49:55 ----D---- C:\ProgramData\Roaming
2013-01-04 12:49:05 ----D---- C:\Program Files (x86)\Cisco
2013-01-04 12:49:02 ----D---- C:\ProgramData\Intel.sav
2013-01-03 12:59:07 ----D---- C:\Users\Robo\AppData\Roaming\LolClient
2013-01-02 21:48:22 ----D---- C:\Users\Robo\AppData\Roaming\uTorrent
2012-12-31 15:17:00 ----D---- C:\Program Files\Microsoft SDKs
2012-12-31 15:16:40 ----D---- C:\Program Files\Business Objects
2012-12-31 15:15:41 ----A---- C:\Windows\ODBC.INI
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\js
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\images
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\html
2012-12-31 15:15:26 ----D---- C:\Windows\SYSWOW64\css
2012-12-31 15:15:26 ----D---- C:\Program Files (x86)\Business Objects
2012-12-31 15:14:20 ----D---- C:\Program Files\Microsoft Device Emulator
2012-12-31 15:14:20 ----D---- C:\Program Files (x86)\Microsoft Device Emulator
2012-12-31 15:13:38 ----D---- C:\Program Files (x86)\Windows Mobile 5.0 SDK R2
2012-12-31 15:13:18 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2012-12-31 15:09:12 ----D---- C:\ProgramData\PreEmptive Solutions
2012-12-31 15:07:16 ----D---- C:\Program Files (x86)\Microsoft Office
2012-12-31 15:06:31 ----D---- C:\Windows\symbols
2012-12-31 15:05:00 ----D---- C:\Program Files (x86)\HTML Help Workshop
2012-12-31 15:05:00 ----D---- C:\Program Files (x86)\CE Remote Tools
2012-12-31 15:04:59 ----D---- C:\Programy)
2012-12-31 15:03:43 ----D---- C:\Program Files (x86)\Microsoft Web Designer Tools
2012-12-31 15:03:32 ----RHD---- C:\MSOCache
2012-12-31 15:02:47 ----D---- C:\ProgramData\Microsoft Help
2012-12-31 15:02:42 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2012-12-30 22:18:51 ----D---- C:\ProgramData\Microsoft Visual Studio
2012-12-30 22:06:22 ----D---- C:\Users\Robo\AppData\Roaming\WinRAR
2012-12-29 21:50:33 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-12-29 21:48:49 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2012-12-29 21:48:48 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-12-29 21:45:45 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2012-12-29 21:45:20 ----D---- C:\Program Files\Microsoft
2012-12-29 21:45:08 ----D---- C:\Program Files\IIS Express
2012-12-29 21:45:08 ----D---- C:\Program Files (x86)\IIS Express
2012-12-29 21:44:07 ----D---- C:\Program Files\IIS
2012-12-29 21:44:07 ----D---- C:\Program Files (x86)\IIS
2012-12-29 21:43:25 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2012-12-29 21:43:11 ----D---- C:\Program Files (x86)\Windows Kits
2012-12-29 21:39:39 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2012-12-29 21:39:17 ----D---- C:\Windows\SYSWOW64\1033
2012-12-29 21:39:08 ----D---- C:\Program Files\Microsoft SQL Server
2012-12-29 21:39:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2012-12-29 21:36:31 ----D---- C:\Windows\system32\1033
2012-12-29 21:35:35 ----D---- C:\Program Files (x86)\Microsoft SDKs
2012-12-29 21:35:14 ----D---- C:\ProgramData\Package Cache
2012-12-29 20:24:20 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-12-29 20:24:20 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-12-29 20:24:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-12-29 20:24:18 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-12-29 20:24:18 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-12-29 20:21:24 ----D---- C:\Hry
2012-12-29 17:43:02 ----D---- C:\Users\Robo\AppData\Roaming\e-academy Inc
2012-12-28 22:57:18 ----A---- C:\Windows\system32\drivers\LhdX64.sys
2012-12-28 22:54:42 ----D---- C:\Program Files\Lenovo
2012-12-28 22:53:15 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-12-28 22:52:38 ----D---- C:\Users\Robo\AppData\Roaming\Intel Corporation
2012-12-28 22:49:16 ----A---- C:\Windows\system32\drivers\iaStorA.sys
2012-12-28 22:49:07 ----D---- C:\Users\Robo\AppData\Roaming\InstallShield
2012-12-28 22:43:04 ----D---- C:\Program Files\Common Files\Intel
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\IntelOpenCL32.dll
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\IntelCpHeciSvc.exe
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\iglhsip32.dll
2012-12-28 22:41:06 ----A---- C:\Windows\SYSWOW64\iglhcp32.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\IntelOpenCL64.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\iglhsip64.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\iglhcp64.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxtray.exe
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxTMM.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxsrvc.exe
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxsrvc.dll
2012-12-28 22:41:06 ----A---- C:\Windows\system32\igfxCoIn_v2817.dll
2012-12-28 22:41:05 ----A---- C:\Windows\system32\igfxress.dll
2012-12-28 22:41:04 ----A---- C:\Windows\SYSWOW64\igfxexps32.dll
2012-12-28 22:41:04 ----A---- C:\Windows\SYSWOW64\igfxdv32.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxpph.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxpers.exe
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxext.exe
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxexps.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxdo.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\IGFXDEVLib.dll
2012-12-28 22:41:04 ----A---- C:\Windows\system32\igfxdev.dll
2012-12-28 22:41:03 ----A---- C:\Windows\SYSWOW64\igdumd32.dll
2012-12-28 22:41:03 ----A---- C:\Windows\system32\igdumd64.dll
2012-12-28 22:41:03 ----A---- C:\Windows\system32\igdrcl64.dll
2012-12-28 22:41:01 ----A---- C:\Windows\SYSWOW64\igdrcl32.dll
2012-12-28 22:41:01 ----A---- C:\Windows\system32\drivers\igdkmd64.sys
2012-12-28 22:41:00 ----A---- C:\Windows\system32\igdfcl64.dll
2012-12-28 22:40:59 ----A---- C:\Windows\SYSWOW64\igdfcl32.dll
2012-12-28 22:40:59 ----A---- C:\Windows\SYSWOW64\igdde32.dll
2012-12-28 22:40:59 ----A---- C:\Windows\SYSWOW64\igdbcl32.dll
2012-12-28 22:40:59 ----A---- C:\Windows\system32\igdde64.dll
2012-12-28 22:40:59 ----A---- C:\Windows\system32\igdbcl64.dll
2012-12-28 22:40:58 ----A---- C:\Windows\SYSWOW64\igd10umd32.dll
2012-12-28 22:40:57 ----A---- C:\Windows\SYSWOW64\ig7icd32.dll
2012-12-28 22:40:57 ----A---- C:\Windows\system32\ig7icd64.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\IntcDAuC.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\hkcmd.exe
2012-12-28 22:40:55 ----A---- C:\Windows\system32\hccutils.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\GfxUI.exe.config
2012-12-28 22:40:55 ----A---- C:\Windows\system32\GfxUI.exe
2012-12-28 22:40:55 ----A---- C:\Windows\system32\gfxSrvc.dll
2012-12-28 22:40:55 ----A---- C:\Windows\system32\drivers\IntcDAud.sys
2012-12-28 22:40:55 ----A---- C:\Windows\system32\difx64.exe
2012-12-27 14:45:52 ----A---- C:\Windows\unins000.exe
2012-12-27 14:23:17 ----D---- C:\Users\Robo\AppData\Roaming\DriverCDForWeb
2012-12-27 14:23:17 ----D---- C:\Users\Robo\AppData\Roaming\DriverCD
2012-12-27 14:00:29 ----D---- C:\Users\Robo\AppData\Roaming\Macromedia
2012-12-27 13:57:45 ----D---- C:\ProgramData\Adobe
2012-12-26 18:28:57 ----A---- C:\Windows\system32\LenovoSdk.OKTDLL.dll
2012-12-26 17:57:07 ----D---- C:\Users\Robo\AppData\Roaming\vlc
2012-12-26 16:56:33 ----A---- C:\Windows\system32\netcfg-3351484.txt
2012-12-26 16:55:54 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2012-12-26 16:55:50 ----A---- C:\Windows\SYSWOW64\log.txt
2012-12-26 16:55:49 ----D---- C:\ProgramData\Intel
2012-12-26 16:55:48 ----D---- C:\Program Files\Intel
2012-12-26 16:53:29 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2012-12-26 16:52:20 ----A---- C:\Windows\SYSWOW64\RtsUVStoricon.dll
2012-12-26 16:52:20 ----A---- C:\Windows\system32\drivers\RtsUVStor.sys
2012-12-26 16:51:00 ----D---- C:\Program Files (x86)\Lenovo EasyCamera
2012-12-26 16:49:07 ----D---- C:\Windows\SYSWOW64\SDA
2012-12-26 16:37:32 ----A---- C:\Windows\system32\WSService.dll
2012-12-26 16:37:31 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2012-12-26 16:37:25 ----A---- C:\Windows\system32\drivers\evbda.sys
2012-12-26 16:37:21 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2012-12-26 16:37:21 ----A---- C:\Windows\system32\wmp.dll
2012-12-26 16:37:18 ----A---- C:\Windows\system32\WpcMon.exe
2012-12-26 16:37:16 ----A---- C:\Windows\system32\d2d1.dll
2012-12-26 16:37:15 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-12-26 16:37:15 ----A---- C:\Windows\system32\WinSAT.exe
2012-12-26 16:37:13 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-12-26 16:37:13 ----A---- C:\Windows\system32\drivers\bxvbda.sys
2012-12-26 16:37:12 ----A---- C:\Windows\system32\vssapi.dll
2012-12-26 16:37:11 ----A---- C:\Windows\system32\ntdll.dll
2012-12-26 16:37:11 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-12-26 16:37:10 ----A---- C:\Windows\system32\RacEngn.dll
2012-12-26 16:37:10 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2012-12-26 16:37:09 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2012-12-26 16:37:09 ----A---- C:\Windows\system32\schannel.dll
2012-12-26 16:37:09 ----A---- C:\Windows\system32\d3d10warp.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\uDWM.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\provcore.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2012-12-26 16:37:08 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-12-26 16:37:07 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-12-26 16:37:07 ----A---- C:\Windows\system32\ncsi.dll
2012-12-26 16:37:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-12-26 16:37:06 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-12-26 16:37:06 ----A---- C:\Windows\system32\wlroamextension.dll
2012-12-26 16:37:05 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-12-26 16:37:04 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2012-12-26 16:37:04 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-12-26 16:37:04 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-12-26 16:37:03 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2012-12-26 16:37:03 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-12-26 16:37:03 ----A---- C:\Windows\system32\MFMediaEngine.dll
2012-12-26 16:37:03 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-12-26 16:37:03 ----A---- C:\Windows\system32\apphelp.dll
2012-12-26 16:37:02 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-12-26 16:37:02 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-12-26 16:37:02 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-12-26 16:37:02 ----A---- C:\Windows\system32\WWAHost.exe
2012-12-26 16:37:02 ----A---- C:\Windows\system32\MFPlay.dll
2012-12-26 16:37:02 ----A---- C:\Windows\system32\drivers\csc.sys
2012-12-26 16:37:02 ----A---- C:\Windows\system32\dnsapi.dll
2012-12-26 16:37:02 ----A---- C:\Windows\system32\combase.dll
2012-12-26 16:37:01 ----A---- C:\Windows\SYSWOW64\rascfg.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\wlidcredprov.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\WinTypes.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\taskeng.exe
2012-12-26 16:37:01 ----A---- C:\Windows\system32\mfsvr.dll
2012-12-26 16:37:01 ----A---- C:\Windows\system32\fveapi.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\wpnprv.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\rascfg.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\mfsrcsnk.dll
2012-12-26 16:37:00 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2012-12-26 16:37:00 ----A---- C:\Windows\system32\bcdsrv.dll
2012-12-26 16:36:59 ----A---- C:\Windows\system32\wintrust.dll
2012-12-26 16:36:59 ----A---- C:\Windows\system32\propsys.dll
2012-12-26 16:36:59 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-12-26 16:36:58 ----A---- C:\Windows\SYSWOW64\wlroamextension.dll
2012-12-26 16:36:58 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-12-26 16:36:58 ----A---- C:\Windows\system32\WSClient.dll
2012-12-26 16:36:58 ----A---- C:\Windows\system32\VAN.dll
2012-12-26 16:36:58 ----A---- C:\Windows\system32\services.exe
2012-12-26 16:36:58 ----A---- C:\Windows\system32\fveapibase.dll
2012-12-26 16:36:56 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2012-12-26 16:36:56 ----A---- C:\Windows\system32\psmsrv.dll
2012-12-26 16:36:56 ----A---- C:\Windows\system32\mmcss.dll
2012-12-26 16:36:56 ----A---- C:\Windows\system32\bisrv.dll
2012-12-26 16:36:55 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2012-12-26 16:36:55 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2012-12-26 16:36:55 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\WSSync.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\PackageStateRoaming.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\fhengine.dll
2012-12-26 16:36:55 ----A---- C:\Windows\system32\drivers\msgpiowin32.sys
2012-12-26 16:36:55 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\WSSync.dll
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-12-26 16:36:54 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\wpncore.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\TpmTasks.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\ProximityService.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\dwmredir.dll
2012-12-26 16:36:54 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\provcore.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\PackageStateRoaming.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\combase.dll
2012-12-26 16:36:53 ----A---- C:\Windows\SYSWOW64\avrt.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\msvproc.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2012-12-26 16:36:53 ----A---- C:\Windows\system32\avrt.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\svchost.exe
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\perfdisk.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2012-12-26 16:36:52 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-12-26 16:36:52 ----A---- C:\Windows\system32\SettingSyncHost.exe
2012-12-26 16:36:52 ----A---- C:\Windows\system32\perfdisk.dll
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\UCX01000.SYS
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\tpm.sys
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-12-26 16:36:52 ----A---- C:\Windows\system32\drivers\dumpfve.sys
2012-12-26 16:36:52 ----A---- C:\Windows\system32\batmeter.dll
2012-12-26 16:36:52 ----A---- C:\Windows\system32\aelupsvc.dll
2012-12-26 16:36:51 ----A---- C:\Windows\SYSWOW64\wlidcredprov.dll
2012-12-26 16:36:51 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2012-12-26 16:36:51 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\user32.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\svchost.exe
2012-12-26 16:36:51 ----A---- C:\Windows\system32\fhevents.dll
2012-12-26 16:36:51 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2012-12-26 16:36:50 ----A---- C:\Windows\SYSWOW64\mfh264enc.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\winsrv.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\twinapi.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\perfnet.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\mfh264enc.dll
2012-12-26 16:36:50 ----A---- C:\Windows\system32\lsass.exe
2012-12-26 16:36:50 ----A---- C:\Windows\system32\lpksetup.exe
2012-12-26 16:36:50 ----A---- C:\Windows\system32\dwm.exe
2012-12-26 16:36:50 ----A---- C:\Windows\system32\DevPropMgr.dll
2012-12-26 16:36:49 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-12-26 16:36:49 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-12-26 16:36:49 ----A---- C:\Windows\system32\nlasvc.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\fhcfg.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\dxgi.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\drvinst.exe
2012-12-26 16:36:49 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-12-26 16:36:49 ----A---- C:\Windows\system32\DAFWSD.dll
2012-12-26 16:36:48 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-12-26 16:36:48 ----A---- C:\Windows\SYSWOW64\perfnet.dll
2012-12-26 16:36:48 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\webio.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\RpcEpMap.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\perfos.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\fhsrchapi.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\fhcat.dll
2012-12-26 16:36:48 ----A---- C:\Windows\system32\d3d11.dll
2012-12-26 16:36:47 ----A---- C:\Windows\system32\umpo.dll
2012-12-26 16:36:47 ----A---- C:\Windows\system32\lpremove.exe
2012-12-26 16:36:47 ----A---- C:\Windows\system32\fhsvc.dll
2012-12-26 16:36:47 ----A---- C:\Windows\system32\CscMig.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\vsstrace.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\rasdiag.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\OEMLicense.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-12-26 16:36:46 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\vsstrace.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\sspicli.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\sdbinst.exe
2012-12-26 16:36:46 ----A---- C:\Windows\system32\rasdiag.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\OEMLicense.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\nlaapi.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhtask.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhsrchph.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhshl.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhmanagew.exe
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhlisten.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\fhcleanup.dll
2012-12-26 16:36:46 ----A---- C:\Windows\system32\drivers\ws2ifsl.sys
2012-12-26 16:36:46 ----A---- C:\Windows\system32\cryptdlg.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\rasser.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\rasmxs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\perfproc.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\perfos.dll
2012-12-26 16:36:45 ----A---- C:\Windows\SYSWOW64\perfctrs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\rasser.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\rasmxs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\perfproc.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\perfctrs.dll
2012-12-26 16:36:45 ----A---- C:\Windows\system32\fhautoplay.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\eventcls.dll
2012-12-26 16:36:44 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\sspisrv.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\spwmp.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\shimeng.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\MUILanguageCleanup.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\lpksetupproxyserv.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\fhsvcctl.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\eventcls.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\dxmasf.dll
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\ndistapi.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-12-26 16:36:44 ----A---- C:\Windows\system32\cdd.dll
2012-12-26 16:36:43 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2012-12-26 16:36:42 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-12-26 16:36:42 ----A---- C:\Windows\system32\wmploc.DLL
2012-12-26 16:33:10 ----A---- C:\Windows\SYSWOW64\newdev.exe
2012-12-26 16:33:10 ----A---- C:\Windows\SYSWOW64\newdev.dll
2012-12-26 16:33:10 ----A---- C:\Windows\SYSWOW64\ndadmin.exe
2012-12-26 16:33:10 ----A---- C:\Windows\system32\newdev.exe
2012-12-26 16:33:10 ----A---- C:\Windows\system32\newdev.dll
2012-12-26 16:33:10 ----A---- C:\Windows\system32\ndadmin.exe
2012-12-26 16:33:09 ----A---- C:\Windows\system32\wwansvc.dll
2012-12-26 16:33:09 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-12-26 16:05:44 ----A---- C:\Windows\system32\netcfg-301812.txt
2012-12-26 16:02:01 ----A---- C:\Windows\system32\netcfg-79062.txt
2012-12-26 16:02:01 ----A---- C:\Windows\system32\netcfg-78765.txt
2012-12-26 16:01:59 ----A---- C:\Windows\system32\netcfg-77218.txt
2012-12-26 16:00:05 ----D---- C:\Program Files (x86)\Reference Assemblies
2012-12-26 16:00:05 ----D---- C:\Program Files (x86)\MSBuild
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalSerif.CompositeFont
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalSansSerif.CompositeFont
2012-12-26 15:59:25 ----A---- C:\Windows\fonts\GlobalMonospace.CompositeFont
2012-12-26 15:59:24 ----D---- C:\Program Files\Reference Assemblies
2012-12-26 15:59:23 ----D---- C:\Program Files\MSBuild
2012-12-26 15:58:17 ----A---- C:\Windows\system32\netcfg-2958000.txt
2012-12-26 15:55:23 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2012-12-26 15:55:23 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2012-12-26 15:55:23 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2012-12-26 15:55:22 ----A---- C:\Windows\system32\TsWpfWrp.exe
2012-12-26 15:55:22 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2012-12-26 15:55:22 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2012-12-26 15:46:42 ----D---- C:\NVIDIA
2012-12-26 15:38:08 ----D---- C:\ProgramData\ESET
2012-12-26 15:38:08 ----D---- C:\Program Files\ESET
2012-12-26 15:21:43 ----D---- C:\ProgramData\Sun
2012-12-26 15:21:28 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2012-12-26 15:21:28 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-12-26 15:21:28 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-12-26 15:21:18 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-12-26 15:21:18 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-12-26 15:21:18 ----A---- C:\Windows\SYSWOW64\java.exe
2012-12-26 15:21:11 ----D---- C:\Program Files (x86)\Java
2012-12-26 15:16:45 ----D---- C:\temp
2012-12-26 15:12:05 ----A---- C:\Windows\system32\netcfg-186406.txt
2012-12-26 15:08:38 ----A---- C:\Windows\system32\netcfg-1438546.txt
2012-12-26 15:08:27 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-12-26 15:08:11 ----D---- C:\Program Files\Realtek
2012-12-26 15:08:11 ----A---- C:\Windows\system32\WavesGUILib64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SRSHP64.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-12-26 15:08:10 ----A---- C:\Windows\system32\SFNHK64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\SFCOM64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\SFAPO64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-12-26 15:08:09 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RtkApi64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTEED64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RTCOM64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\RCoInstII64.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEP64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEL64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEG64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EED64A.dll
2012-12-26 15:08:08 ----A---- C:\Windows\system32\R4EEA64A.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-12-26 15:08:07 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-12-26 15:08:06 ----A---- C:\Windows\system32\FMAPO64.dll