Stránka 1 z 3

RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený net

Napsal: 06 srp 2013 18:45
od frezent
Dobrý den. Poprosil bych o zkontrolování RSIT logu který se nachází zde, pod touto větou. Jenom bych chtěl ještě podotknout. Našel jsem ve správci úloh proces "csrss.exe" a bylo mi řečeno, že je to vir. Mohli byste mi prosím něco o tomto procesu povědět? Děkuji

PS: Mám nějaký zpomalený internet. Že když třeba nahrávám video na YouTube, tak ze začátku to píše, že zbývá 170 minut a po približně 5 sekundách to začne růst, až na číslo 550 minut a výš. Nešlo by s tím něco udělat? :) Děkuji moc za všechny rady a odpovědi

Logfile of random's system information tool 1.09 (written by random/random)
Run by PhoFe at 2013-08-06 19:33:01
Microsoft Windows 7 Home Premium
System drive C: has 10 GB (30%) free of 33 GB
Total RAM: 2815 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:33:07, on 6.8.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Windows\explorer.exe
D:\Program Files\Opera\opera.exe
C:\Users\PhoFe\AppData\Local\Opera\Opera\temporary_downloads\RSIT.exe
C:\Program Files\trend micro\PhoFe.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NtVdmSrv] C:\Windows\inf\ntvdm.vbe
O4 - HKLM\..\Run: [Printsrv] c:\Windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "D:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O17 - HKLM\System\CCS\Services\Tcpip\..\{1BAA5410-750E-4ECC-9EBA-96B997280B94}: NameServer = 8.8.8.8,88.88.88.88
O17 - HKLM\System\CS1\Services\Tcpip\..\{1BAA5410-750E-4ECC-9EBA-96B997280B94}: NameServer = 8.8.8.8,88.88.88.88
O17 - HKLM\System\CS2\Services\Tcpip\..\{1BAA5410-750E-4ECC-9EBA-96B997280B94}: NameServer = 8.8.8.8,88.88.88.88
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

--
End of file - 4966 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\PhoFe\AppData\Roaming\Mozilla\Firefox\Profiles\u031a68k.default

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-07-22 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-07-22 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"NtVdmSrv"=C:\Windows\inf\ntvdm.vbe [2013-06-20 1219]
"Printsrv"=c:\Windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs [2013-05-01 543]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-03-29 11930696]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-06-21 19875432]
"Steam"=D:\Program Files\Steam\steam.exe [2013-07-10 1672616]
"AdobeBridge"= []
"GoogleDriveSync"=C:\Program Files\Google\Drive\googledrivesync.exe [2013-06-27 20097696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"vidc.mjpg"=bdmjpeg.dll
"vidc.mpeg"=bdmpegv.dll
"msacm.bdmpeg"=bdmpega.acm
"VIDC.FPS1"=frapsvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 3 months======

2013-08-06 19:33:01 ----D---- C:\rsit
2013-08-06 19:33:01 ----D---- C:\Program Files\trend micro
2013-08-05 18:57:47 ----D---- C:\ProgramData\EPSON
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-08-05 18:46:51 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-08-05 18:46:51 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-08-05 18:46:51 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xinput1_3.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\d3dx10.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xinput1_2.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xinput1_1.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-08-05 18:46:47 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-08-05 18:46:45 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-08-05 18:46:45 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-08-05 18:44:46 ----D---- C:\Windows\system32\directx
2013-08-04 16:31:11 ----D---- C:\Users\PhoFe\AppData\Roaming\ftblauncher
2013-08-03 18:51:26 ----D---- C:\Users\PhoFe\AppData\Roaming\Opera
2013-08-03 14:35:17 ----D---- C:\Users\PhoFe\AppData\Roaming\Opera Software
2013-08-03 14:35:14 ----D---- C:\Program Files\Opera
2013-08-03 14:27:28 ----D---- C:\Users\PhoFe\AppData\Roaming\Mozilla
2013-08-03 14:27:22 ----D---- C:\ProgramData\Mozilla
2013-08-03 14:27:21 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-08-03 14:27:20 ----D---- C:\Program Files\Mozilla Firefox
2013-07-29 23:48:45 ----D---- C:\Users\PhoFe\AppData\Roaming\Notepad++
2013-07-29 23:48:45 ----D---- C:\Program Files\Notepad++
2013-07-29 20:01:52 ----D---- C:\Users\PhoFe\AppData\Roaming\FileZilla
2013-07-28 20:44:05 ----D---- C:\Program Files\Noël Danjou
2013-07-28 19:37:51 ----D---- C:\Users\PhoFe\AppData\Roaming\PDAppFlex
2013-07-28 19:20:17 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2013-07-28 19:18:29 ----D---- C:\Program Files\Adobe
2013-07-28 19:14:19 ----D---- C:\Program Files\Common Files\Adobe
2013-07-28 17:09:18 ----D---- C:\ProgramData\Adobe
2013-07-24 11:46:37 ----D---- C:\Users\PhoFe\AppData\Roaming\Macromedia
2013-07-24 11:46:37 ----D---- C:\Users\PhoFe\AppData\Roaming\Adobe
2013-07-24 11:39:14 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-07-24 11:39:12 ----D---- C:\Windows\system32\Macromed
2013-07-23 19:38:48 ----D---- C:\Users\PhoFe\AppData\Roaming\vlc
2013-07-23 19:37:10 ----D---- C:\Program Files\VideoLAN
2013-07-23 02:55:49 ----D---- C:\Users\PhoFe\AppData\Roaming\GoforFiles
2013-07-23 02:55:49 ----D---- C:\Program Files\GoforFiles
2013-07-23 02:51:23 ----A---- C:\Windows\system32\drivers\HWiNFO32.SYS
2013-07-23 02:51:09 ----D---- C:\Program Files\HWiNFO32
2013-07-22 23:06:42 ----D---- C:\Users\PhoFe\AppData\Roaming\NVIDIA
2013-07-22 20:16:45 ----D---- C:\Program Files\Microsoft.NET
2013-07-22 20:11:46 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-07-22 20:11:46 ----A---- C:\Windows\system32\PresentationHost.exe
2013-07-22 20:11:46 ----A---- C:\Windows\system32\netfxperf.dll
2013-07-22 20:11:46 ----A---- C:\Windows\system32\mscoree.dll
2013-07-22 20:11:46 ----A---- C:\Windows\system32\dfshim.dll
2013-07-22 20:09:56 ----D---- C:\Program Files\AGEIA Technologies
2013-07-22 20:08:43 ----D---- C:\ProgramData\NVIDIA Corporation
2013-07-22 20:07:58 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-07-22 20:07:58 ----A---- C:\Windows\system32\nvhdap32.dll
2013-07-22 20:07:58 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2013-07-22 20:07:58 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvopencl.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvoglv32.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\NvIFR.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\NvFBC.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvdispgenco3232049.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvdispco3232049.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcuvid.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcuda.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcompiler.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-07-22 19:57:06 ----D---- C:\Program Files\Common Files\Steam
2013-07-22 19:17:45 ----D---- C:\Program Files\CCleaner
2013-07-22 14:54:12 ----D---- C:\Windows\Panther
2013-07-22 07:57:48 ----D---- C:\Windows\system32\RTCOM
2013-07-22 07:57:22 ----A---- C:\Windows\system32\WavesLib.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\tosade.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\TepeqAPO.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\tadefxapo2.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\tadefxapo.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSWOW.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSTSXT.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSTSHD.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSHP360.dll
2013-07-22 07:57:21 ----A---- C:\Windows\system32\sltech32.dll
2013-07-22 07:57:21 ----A---- C:\Windows\system32\slprp32.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\slcnt32.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\sl3apo32.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFNHK.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFCOM.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFAPO.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2013-07-22 07:57:20 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2013-07-22 07:57:19 ----A---- C:\Windows\system32\RTKSMSettingsIPC.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTKSMlfx.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkPgExt.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkCoLDR.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkCoInstII.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkApoApi.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkAPO.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEEP32A.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEEL32A.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEEG32A.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEED32A.dll
2013-07-22 07:57:17 ----A---- C:\Windows\system32\RP3DHT32.dll
2013-07-22 07:57:17 ----A---- C:\Windows\system32\RP3DAA32.dll
2013-07-22 07:57:17 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-07-22 07:57:16 ----A---- C:\Windows\system32\RCoRes.dat
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEP32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEL32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEG32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EED32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEA32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\MISS_APO.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\MaxxAudioVnA.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO50.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO40.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\KAAPORT.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\FMAPO.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2013-07-22 07:57:10 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2013-07-22 07:57:09 ----A---- C:\Windows\system32\AERTARen.dll
2013-07-22 07:57:09 ----A---- C:\Windows\system32\AERTACap.dll
2013-07-22 07:57:08 ----HD---- C:\Program Files\InstallShield Installation Information
2013-07-22 07:25:09 ----D---- C:\Program Files\Realtek
2013-07-22 07:25:07 ----HD---- C:\Program Files\Temp
2013-07-22 07:25:06 ----A---- C:\Windows\RtlExUpd.dll
2013-07-22 07:24:59 ----D---- C:\Program Files\Common Files\InstallShield
2013-07-22 07:20:31 ----D---- C:\Users\PhoFe\AppData\Roaming\TS3Client
2013-07-22 07:09:26 ----D---- C:\Users\PhoFe\AppData\Roaming\Sony Creative Software Inc
2013-07-22 06:07:07 ----D---- C:\Users\PhoFe\AppData\Roaming\Publish Providers
2013-07-22 06:01:18 ----D---- C:\ProgramData\Sony
2013-07-22 06:01:18 ----D---- C:\Program Files\Sony
2013-07-22 05:59:12 ----D---- C:\Users\PhoFe\AppData\Roaming\Sony
2013-07-22 05:47:35 ----D---- C:\Users\PhoFe\AppData\Roaming\.technic
2013-07-22 05:42:20 ----D---- C:\Users\PhoFe\AppData\Roaming\BANDISOFT
2013-07-22 05:41:36 ----D---- C:\Program Files\BandiMPEG1
2013-07-22 05:38:31 ----A---- C:\Windows\system32\wups2.dll
2013-07-22 05:38:31 ----A---- C:\Windows\system32\wuauclt.exe
2013-07-22 05:38:30 ----A---- C:\Windows\system32\wucltux.dll
2013-07-22 05:38:30 ----A---- C:\Windows\system32\wuaueng.dll
2013-07-22 05:38:24 ----A---- C:\Windows\system32\wups.dll
2013-07-22 05:38:24 ----A---- C:\Windows\system32\wudriver.dll
2013-07-22 05:38:24 ----A---- C:\Windows\system32\wuapi.dll
2013-07-22 05:38:18 ----A---- C:\Windows\system32\wuwebv.dll
2013-07-22 05:38:18 ----A---- C:\Windows\system32\wuapp.exe
2013-07-22 05:21:33 ----D---- C:\Users\PhoFe\AppData\Roaming\.minecraft
2013-07-22 05:19:05 ----N---- C:\Windows\system32\MpSigStub.exe
2013-07-22 05:17:04 ----D---- C:\Users\PhoFe\AppData\Roaming\BitTorrent
2013-07-22 05:12:43 ----D---- C:\ProgramData\Sun
2013-07-22 05:12:43 ----D---- C:\Program Files\Common Files\Java
2013-07-22 05:12:37 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-07-22 05:12:37 ----A---- C:\Windows\system32\javaws.exe
2013-07-22 05:12:37 ----A---- C:\Windows\system32\deployJava1.dll
2013-07-22 05:12:34 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-07-22 05:12:34 ----A---- C:\Windows\system32\javaw.exe
2013-07-22 05:12:34 ----A---- C:\Windows\system32\java.exe
2013-07-22 05:12:27 ----D---- C:\Program Files\Java
2013-07-22 05:10:54 ----D---- C:\Users\PhoFe\AppData\Roaming\Skype
2013-07-22 05:10:49 ----RD---- C:\Program Files\Skype
2013-07-22 05:10:49 ----D---- C:\Program Files\Common Files\Skype
2013-07-22 05:10:47 ----D---- C:\ProgramData\Skype
2013-07-22 05:09:18 ----A---- C:\Windows\system32\nvcohda.dll
2013-07-22 05:09:14 ----D---- C:\NVIDIA
2013-07-22 05:08:53 ----D---- C:\ProgramData\NVIDIA
2013-07-22 05:08:00 ----SHD---- C:\Windows\Installer
2013-07-22 05:07:53 ----D---- C:\Program Files\NVIDIA Corporation
2013-07-22 05:06:00 ----D---- C:\Program Files\Google
2013-07-22 05:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-22 05:01:17 ----D---- C:\Users\PhoFe\AppData\Roaming\Identities
2013-07-22 05:01:08 ----SD---- C:\Users\PhoFe\AppData\Roaming\Microsoft
2013-07-22 05:01:08 ----D---- C:\Users\PhoFe\AppData\Roaming\Media Center Programs
2013-07-22 05:00:50 ----SHD---- C:\Recovery
2013-07-22 04:58:03 ----D---- C:\Windows\SoftwareDistribution
2013-07-22 04:55:52 ----D---- C:\Windows\Prefetch
2013-07-22 04:55:11 ----ASH---- C:\pagefile.sys
2013-07-22 04:55:10 ----SHD---- C:\System Volume Information
2013-07-22 04:55:10 ----ASH---- C:\hiberfil.sys
2013-06-21 05:16:02 ----A---- C:\Windows\system32\nvStreaming.exe

======List of files/folders modified in the last 3 months======

2013-08-06 19:33:04 ----D---- C:\Windows\system32\drivers\etc
2013-08-06 19:33:02 ----D---- C:\Windows\Temp
2013-08-06 19:33:01 ----RD---- C:\Program Files
2013-08-06 10:36:18 ----D---- C:\Windows\system32\config
2013-08-05 18:57:47 ----HD---- C:\ProgramData
2013-08-05 18:46:56 ----D---- C:\Windows\System32
2013-08-05 18:46:48 ----RSD---- C:\Windows\assembly
2013-08-05 18:46:42 ----D---- C:\Windows\Microsoft.NET
2013-08-05 18:44:46 ----D---- C:\Windows\Logs
2013-07-30 19:12:07 ----D---- C:\Windows\system32\NDF
2013-07-29 22:30:32 ----RSD---- C:\Windows\Fonts
2013-07-29 22:25:36 ----D---- C:\Windows\system32\wdi
2013-07-28 19:17:37 ----D---- C:\Windows\winsxs
2013-07-28 19:14:19 ----D---- C:\Program Files\Common Files
2013-07-27 21:31:32 ----D---- C:\Windows\inf
2013-07-24 11:39:14 ----D---- C:\Windows\Tasks
2013-07-24 11:39:14 ----D---- C:\Windows\system32\Tasks
2013-07-23 02:51:23 ----D---- C:\Windows\system32\drivers
2013-07-22 21:07:35 ----D---- C:\Windows
2013-07-22 20:16:52 ----D---- C:\Windows\system32\en-US
2013-07-22 20:11:50 ----D---- C:\Windows\system32\catroot
2013-07-22 20:10:36 ----D---- C:\Windows\system32\DriverStore
2013-07-22 20:08:27 ----D---- C:\Windows\system32\catroot2
2013-07-22 12:29:07 ----D---- C:\Windows\system32\LogFiles
2013-07-22 12:22:41 ----D---- C:\Windows\rescache
2013-07-22 07:48:48 ----SD---- C:\ProgramData\Microsoft
2013-07-22 06:08:22 ----D---- C:\Program Files\Common Files\microsoft shared
2013-07-22 05:12:16 ----D---- C:\Windows\system32\restore
2013-07-22 05:09:35 ----D---- C:\Windows\system32\CodeIntegrity
2013-07-22 05:08:11 ----D---- C:\Windows\Help
2013-07-22 05:05:03 ----D---- C:\Windows\system32\wbem
2013-07-22 05:01:15 ----SHD---- C:\$Recycle.Bin
2013-07-22 05:01:05 ----RD---- C:\Users
2013-07-22 05:00:23 ----D---- C:\Windows\debug
2013-07-22 04:58:20 ----D---- C:\Windows\system32\sysprep
2013-07-22 04:56:33 ----D---- C:\Windows\system32\drivers\UMDF
2013-06-21 14:02:43 ----A---- C:\Windows\system32\nvd3dum.dll
2013-06-21 14:02:43 ----A---- C:\Windows\system32\nvapi.dll
2013-06-21 11:52:51 ----A---- C:\Windows\system32\nvsvc.dll
2013-06-21 11:52:51 ----A---- C:\Windows\system32\nvcpl.dll
2013-06-21 11:52:48 ----A---- C:\Windows\system32\nvvsvc.exe
2013-06-21 11:52:48 ----A---- C:\Windows\system32\nvshext.dll
2013-06-21 11:52:47 ----A---- C:\Windows\system32\nvmctray.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2013-07-23 22560]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2013-03-29 2646088]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-02-25 154400]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2009-07-14 43008]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-14 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 640288]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-07-22 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-24 257416]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-07-22 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-06-18 117144]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2013-07-10 559016]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 07 srp 2013 08:05
od Márty84
Zdravim :)

A dokoncite to tentokrat? Nebo to dopadne jako minule a uz se neozvete?

V pc nevidim antivir, proc? Kdo vam rikal, ze csrss.exe je vir?

Aktualizujte windows (chybi Service Pack 1), pak dejte novy log z RSIT

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 08 srp 2013 02:19
od frezent
V předešlém příspěvku jsem zapomněl odpovědět, za to se omlouvám :) Dobrá. Updatuju Windows a dám sem log. A antivir zde nemám, protože využívám pc k nahrávání videa a jakékoliv snížování výkonu pc či snižování frame per seconds (fps) je pro mne nežádoucí. Jinak mimochodem, nevěděl byste copak je asi s tím internetem? Příjde mi divné, že když uploaduju tak mám ze začátku rychlost kolem 300kb/s+ a po 10 sekundách do klesne na 64bs/s a přes toto číslo to už nepřesáhne a tam se to drží a nebo to jde někdy i níže. Nevěděl byste prosím vás co s tím? :) Dost by mi to pomohlo a byl bych vám velice vděčný za vyřešení tohoto problému.

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 08 srp 2013 08:19
od Márty84
Kontrolovat nezabezpecene pc je k nicemu. Je jen otazka casu, nez si vas nejaka havet najde. Dejte si tam antivir a kdyz zrovna budete delat s tim videem, tak ho na chvili vypnete. Jinak muze bezet.

Nevim co s tim je. To ukaze kontrola, mozna.

Tyhle IP znate? NameServer = 8.8.8.8,88.88.88.88 Gogle rika, ze jsou z Norska, konkretne Oslo

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 08 srp 2013 18:34
od frezent
Toto je DNS které jsem měl zde nastavené protože když jsem procházel stránky (surfoval) tak se mi mnohdy nenačítal design na stránce. A dělalo to také na Facebooku a na YouTube. Někde jsem se dozvěděl, že pokud se tam zadají do DNS tyto osmičky, tak se to vyřeší a také vyřešilo. Tady na tomto baráku je problém, že tu máme nainstalovaný internet a wi-fi ale bohužel, nějak divně. Wi-fi blokuje nějaké signály z vysílače a příjmá toho více, než náš příjmač tak proto to občas dělá. Vyřešit by se to dalo, ale bude to stát nějaké peníze a ty bohužel nejsou. Nicméně, nainstaluji SP1 a hodím sem další log a také nainstaluji nějaký antivir.

A chtěl bych se zeptat, neznáte nějaký kvalitní antivir, který nebere moc virtuální paměť a nezatěžuje příliš procesor? :)

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 09 srp 2013 00:25
od Márty84
OK, kdyz ty 8 znate, neni problem :)

Ja mam Avast free a jsem spokojeny. Ale jinak moznosti je vice, treba Avira, nebo i MSE. Porad lepsi nez nic.
Az date log, procistime to a uvidi se, jestli to nejak pomuze.

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 09 srp 2013 02:28
od frezent
Zde je log po aktualizovani na SP1...

Logfile of random's system information tool 1.09 (written by random/random)
Run by PhoFe at 2013-08-09 03:23:45
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 11 GB (31%) free of 33 GB
Total RAM: 2815 MB (36% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:23:55, on 9.8.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16496)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Google\Drive\googledrivesync.exe
D:\Program Files\Opera\opera.exe
D:\Program Files\FileZilla FTP Client\filezilla.exe
C:\Program Files\Java\jre7\bin\javaw.exe
C:\Program Files\Java\jre7\bin\javaw.exe
C:\Users\PhoFe\AppData\Local\Opera\Opera\temporary_downloads\RSIT.exe
C:\Program Files\trend micro\PhoFe.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NtVdmSrv] C:\Windows\inf\ntvdm.vbe
O4 - HKLM\..\Run: [Printsrv] c:\Windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [snpstd3] C:\Windows\vsnpstd3.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "D:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{1BAA5410-750E-4ECC-9EBA-96B997280B94}: NameServer = 8.8.8.8,88.88.88.88
O17 - HKLM\System\CS1\Services\Tcpip\..\{1BAA5410-750E-4ECC-9EBA-96B997280B94}: NameServer = 8.8.8.8,88.88.88.88
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

--
End of file - 5506 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\PhoFe\AppData\Roaming\Mozilla\Firefox\Profiles\u031a68k.default

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-07-22 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-07-22 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
"NtVdmSrv"=C:\Windows\inf\ntvdm.vbe [2013-06-20 1219]
"Printsrv"=c:\Windows\System32\Printing_Admin_Scripts\en-US\pubpr.vbs [2013-05-01 543]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2013-03-29 11930696]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"snpstd3"=C:\Windows\vsnpstd3.exe [2005-09-05 339968]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-06-21 19875432]
"Steam"=D:\Program Files\Steam\steam.exe [2013-07-10 1672616]
"AdobeBridge"= []
"GoogleDriveSync"=C:\Program Files\Google\Drive\googledrivesync.exe [2013-06-27 20097696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"vidc.mjpg"=bdmjpeg.dll
"vidc.mpeg"=bdmpegv.dll
"msacm.bdmpeg"=bdmpega.acm
"VIDC.FPS1"=frapsvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-08-08 22:33:19 ----A---- C:\Vypis.txt
2013-08-08 19:29:51 ----D---- C:\Windows\system32\SPReview
2013-08-08 19:29:08 ----D---- C:\Windows\system32\EventProviders
2013-08-08 19:28:21 ----D---- C:\Windows\system32\Wat
2013-08-08 18:00:11 ----D---- C:\Users\PhoFe\AppData\Roaming\TeamViewer
2013-08-08 17:44:19 ----A---- C:\Windows\system32\dfshim.dll
2013-08-08 17:44:15 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-08-08 17:44:15 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-08-08 17:44:12 ----A---- C:\Windows\system32\d3d10warp.dll
2013-08-08 17:44:11 ----A---- C:\Windows\system32\mfc40u.dll
2013-08-08 17:44:11 ----A---- C:\Windows\system32\mfc40.dll
2013-08-08 17:44:10 ----A---- C:\Windows\system32\sysmain.dll
2013-08-08 17:44:09 ----A---- C:\Windows\system32\secproc_isv.dll
2013-08-08 17:44:09 ----A---- C:\Windows\system32\d2d1.dll
2013-08-08 17:44:08 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-08-08 17:44:07 ----A---- C:\Windows\system32\secproc.dll
2013-08-08 17:44:07 ----A---- C:\Windows\system32\RMActivate.exe
2013-08-08 17:44:05 ----A---- C:\Windows\system32\spwizui.dll
2013-08-08 17:44:05 ----A---- C:\Windows\system32\mscoree.dll
2013-08-08 17:44:03 ----A---- C:\Windows\system32\mf.dll
2013-08-08 17:44:03 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-08-08 17:44:03 ----A---- C:\Windows\system32\CertEnroll.dll
2013-08-08 17:44:02 ----A---- C:\Windows\system32\wmp.dll
2013-08-08 17:44:01 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-08-08 17:44:01 ----A---- C:\Windows\system32\PresentationHost.exe
2013-08-08 17:44:01 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-08-08 17:44:01 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-08-08 17:44:00 ----A---- C:\Windows\system32\schedsvc.dll
2013-08-08 17:43:59 ----A---- C:\Windows\system32\RacEngn.dll
2013-08-08 17:43:59 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-08-08 17:43:58 ----A---- C:\Windows\system32\rdpdd.dll
2013-08-08 17:43:57 ----A---- C:\Windows\system32\qmgr.dll
2013-08-08 17:43:57 ----A---- C:\Windows\system32\ole32.dll
2013-08-08 17:43:57 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-08-08 17:43:56 ----A---- C:\Windows\system32\wevtsvc.dll
2013-08-08 17:43:55 ----A---- C:\Windows\system32\vssapi.dll
2013-08-08 17:43:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-08-08 17:43:55 ----A---- C:\Windows\system32\d3d9.dll
2013-08-08 17:43:54 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-08-08 17:43:53 ----A---- C:\Windows\system32\taskschd.dll
2013-08-08 17:43:52 ----A---- C:\Windows\system32\spreview.exe
2013-08-08 17:43:52 ----A---- C:\Windows\system32\spinstall.exe
2013-08-08 17:43:52 ----A---- C:\Windows\system32\mstsc.exe
2013-08-08 17:43:52 ----A---- C:\Windows\system32\FntCache.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\wer.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\termsrv.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\rpcrt4.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\odbc32.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\gpsvc.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\dwmcore.dll
2013-08-08 17:43:51 ----A---- C:\Windows\system32\certcli.dll
2013-08-08 17:43:50 ----A---- C:\Windows\system32\wbengine.exe
2013-08-08 17:43:50 ----A---- C:\Windows\system32\MPSSVC.dll
2013-08-08 17:43:50 ----A---- C:\Windows\system32\diagperf.dll
2013-08-08 17:43:49 ----A---- C:\Windows\system32\WinSAT.exe
2013-08-08 17:43:49 ----A---- C:\Windows\system32\winhttp.dll
2013-08-08 17:43:49 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-08-08 17:43:49 ----A---- C:\Windows\system32\tsmf.dll
2013-08-08 17:43:49 ----A---- C:\Windows\system32\setupapi.dll
2013-08-08 17:43:49 ----A---- C:\Windows\system32\scavengeui.dll
2013-08-08 17:43:49 ----A---- C:\Windows\system32\dot3api.dll
2013-08-08 17:43:48 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-08-08 17:43:48 ----A---- C:\Windows\system32\dbgeng.dll
2013-08-08 17:43:48 ----A---- C:\Windows\system32\apphelp.dll
2013-08-08 17:43:47 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-08-08 17:43:47 ----A---- C:\Windows\system32\winlogon.exe
2013-08-08 17:43:47 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-08-08 17:43:47 ----A---- C:\Windows\system32\VSSVC.exe
2013-08-08 17:43:47 ----A---- C:\Windows\system32\user32.dll
2013-08-08 17:43:47 ----A---- C:\Windows\system32\Query.dll
2013-08-08 17:43:47 ----A---- C:\Windows\system32\netlogon.dll
2013-08-08 17:43:47 ----A---- C:\Windows\system32\netcfgx.dll
2013-08-08 17:43:47 ----A---- C:\Windows\system32\d3d11.dll
2013-08-08 17:43:46 ----A---- C:\Windows\system32\WsmSvc.dll
2013-08-08 17:43:46 ----A---- C:\Windows\system32\advapi32.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\upnp.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\sppobjs.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\SessEnv.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\netfxperf.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\msv1_0.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\msdrm.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\lsm.exe
2013-08-08 17:43:45 ----A---- C:\Windows\system32\imapi2fs.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-08-08 17:43:45 ----A---- C:\Windows\system32\authui.dll
2013-08-08 17:43:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-08-08 17:43:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-08-08 17:43:44 ----A---- C:\Windows\system32\mcbuilder.exe
2013-08-08 17:43:43 ----A---- C:\Windows\system32\xpsservices.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\winload.exe
2013-08-08 17:43:43 ----A---- C:\Windows\system32\WebClnt.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\userenv.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\sppwinob.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\rpcss.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\drvstore.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\cmd.exe
2013-08-08 17:43:43 ----A---- C:\Windows\system32\certmgr.dll
2013-08-08 17:43:43 ----A---- C:\Windows\system32\audiosrv.dll
2013-08-08 17:43:42 ----A---- C:\Windows\system32\propsys.dll
2013-08-08 17:43:42 ----A---- C:\Windows\system32\framedynos.dll
2013-08-08 17:43:42 ----A---- C:\Windows\system32\BFE.DLL
2013-08-08 17:43:41 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\Wldap32.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\winresume.exe
2013-08-08 17:43:41 ----A---- C:\Windows\system32\werconcpl.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\samsrv.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\nlasvc.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\ncsi.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\mfds.dll
2013-08-08 17:43:41 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-08-08 17:43:41 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-08-08 17:43:41 ----A---- C:\Windows\system32\azroles.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\themeui.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\taskeng.exe
2013-08-08 17:43:39 ----A---- C:\Windows\system32\taskcomp.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\spp.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\mswsock.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\evr.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\dxgi.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-08-08 17:43:39 ----A---- C:\Windows\system32\drivers\http.sys
2013-08-08 17:43:39 ----A---- C:\Windows\system32\dhcpcore.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\dbghelp.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\credui.dll
2013-08-08 17:43:39 ----A---- C:\Windows\system32\basecsp.dll
2013-08-08 17:43:38 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-08-08 17:43:38 ----A---- C:\Windows\system32\gdi32.dll
2013-08-08 17:43:38 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-08-08 17:43:38 ----A---- C:\Windows\system32\calc.exe
2013-08-08 17:43:37 ----A---- C:\Windows\system32\vpnike.dll
2013-08-08 17:43:37 ----A---- C:\Windows\system32\UIRibbon.dll
2013-08-08 17:43:37 ----A---- C:\Windows\system32\sxs.dll
2013-08-08 17:43:37 ----A---- C:\Windows\system32\srvsvc.dll
2013-08-08 17:43:37 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-08-08 17:43:37 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-08-08 17:43:37 ----A---- C:\Windows\system32\lpksetup.exe
2013-08-08 17:43:37 ----A---- C:\Windows\system32\fveapi.dll
2013-08-08 17:43:36 ----A---- C:\Windows\system32\ws2_32.dll
2013-08-08 17:43:36 ----A---- C:\Windows\system32\stobject.dll
2013-08-08 17:43:36 ----A---- C:\Windows\system32\netshell.dll
2013-08-08 17:43:36 ----A---- C:\Windows\system32\hgprint.dll
2013-08-08 17:43:36 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-08-08 17:43:35 ----A---- C:\Windows\system32\WSDApi.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\wmpeffects.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\rpchttp.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\prncache.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\printui.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\net1.exe
2013-08-08 17:43:35 ----A---- C:\Windows\system32\inetpp.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-08-08 17:43:35 ----A---- C:\Windows\system32\dps.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\comctl32.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\ci.dll
2013-08-08 17:43:35 ----A---- C:\Windows\system32\aitagent.exe
2013-08-08 17:43:35 ----A---- C:\Windows\system32\aepdu.dll
2013-08-08 17:43:34 ----A---- C:\Windows\system32\vds.exe
2013-08-08 17:43:34 ----A---- C:\Windows\system32\scansetting.dll
2013-08-08 17:43:34 ----A---- C:\Windows\system32\FXSSVC.exe
2013-08-08 17:43:34 ----A---- C:\Windows\system32\drivers\pci.sys
2013-08-08 17:43:33 ----A---- C:\Windows\system32\wpdshext.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-08-08 17:43:33 ----A---- C:\Windows\system32\wlangpui.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\webservices.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\t2embed.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-08-08 17:43:33 ----A---- C:\Windows\system32\pnidui.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-08-08 17:43:33 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-08-08 17:43:33 ----A---- C:\Windows\system32\davclnt.dll
2013-08-08 17:43:33 ----A---- C:\Windows\system32\consent.exe
2013-08-08 17:43:32 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-08-08 17:43:32 ----A---- C:\Windows\system32\SyncCenter.dll
2013-08-08 17:43:32 ----A---- C:\Windows\system32\netdiagfx.dll
2013-08-08 17:43:32 ----A---- C:\Windows\system32\fde.dll
2013-08-08 17:43:32 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-08-08 17:43:31 ----A---- C:\Windows\system32\wscapi.dll
2013-08-08 17:43:31 ----A---- C:\Windows\system32\wisptis.exe
2013-08-08 17:43:31 ----A---- C:\Windows\system32\WinSCard.dll
2013-08-08 17:43:31 ----A---- C:\Windows\system32\sdengin2.dll
2013-08-08 17:43:31 ----A---- C:\Windows\system32\pla.dll
2013-08-08 17:43:31 ----A---- C:\Windows\system32\msasn1.dll
2013-08-08 17:43:31 ----A---- C:\Windows\system32\mcmde.dll
2013-08-08 17:43:30 ----A---- C:\Windows\system32\winsta.dll
2013-08-08 17:43:30 ----A---- C:\Windows\system32\setupcl.exe
2013-08-08 17:43:30 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-08-08 17:43:30 ----A---- C:\Windows\system32\imapi2.dll
2013-08-08 17:43:30 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-08-08 17:43:30 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-08-08 17:43:29 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\wiaservc.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\shsvcs.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\rasmans.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\onex.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\dwmredir.dll
2013-08-08 17:43:29 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-08-08 17:43:29 ----A---- C:\Windows\system32\aeinv.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\winmm.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\vaultsvc.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\TabSvc.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\netiohlp.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\Narrator.exe
2013-08-08 17:43:28 ----A---- C:\Windows\system32\hbaapi.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-08-08 17:43:28 ----A---- C:\Windows\system32\bootres.dll
2013-08-08 17:43:28 ----A---- C:\Windows\system32\autochk.exe
2013-08-08 17:43:28 ----A---- C:\Windows\system32\autofmt.exe
2013-08-08 17:43:28 ----A---- C:\Windows\system32\audiodg.exe
2013-08-08 17:43:27 ----A---- C:\Windows\system32\wcncsvc.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\thumbcache.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\srchadmin.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\schtasks.exe
2013-08-08 17:43:27 ----A---- C:\Windows\system32\samcli.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\regapi.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\proquota.exe
2013-08-08 17:43:27 ----A---- C:\Windows\system32\powercpl.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\msutb.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\msinfo32.exe
2013-08-08 17:43:27 ----A---- C:\Windows\system32\msihnd.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\mimefilt.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-08-08 17:43:27 ----A---- C:\Windows\system32\halmacpi.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\hal.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\framedyn.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\eapphost.dll
2013-08-08 17:43:27 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-08-08 17:43:27 ----A---- C:\Windows\system32\autoconv.exe
2013-08-08 17:43:27 ----A---- C:\Windows\system32\AudioSes.dll
2013-08-08 17:43:26 ----A---- C:\Windows\system32\umpo.dll
2013-08-08 17:43:26 ----A---- C:\Windows\system32\QAGENT.DLL
2013-08-08 17:43:26 ----A---- C:\Windows\system32\netid.dll
2013-08-08 17:43:26 ----A---- C:\Windows\system32\mscorier.dll
2013-08-08 17:43:26 ----A---- C:\Windows\system32\DXP.dll
2013-08-08 17:43:26 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-08-08 17:43:26 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-08-08 17:43:26 ----A---- C:\Windows\system32\actxprxy.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\wlanpref.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\wdc.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\Vault.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\untfs.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\sppsvc.exe
2013-08-08 17:43:25 ----A---- C:\Windows\system32\sdclt.exe
2013-08-08 17:43:25 ----A---- C:\Windows\system32\scesrv.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\rastls.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\nci.dll
2013-08-08 17:43:25 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-08-08 17:43:24 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-08-08 17:43:24 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-08-08 17:43:24 ----A---- C:\Windows\system32\Robocopy.exe
2013-08-08 17:43:24 ----A---- C:\Windows\system32\ListSvc.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\userinit.exe
2013-08-08 17:43:23 ----A---- C:\Windows\system32\termmgr.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\taskmgr.exe
2013-08-08 17:43:23 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\puiobj.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\mtxclu.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\msdri.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\eudcedit.exe
2013-08-08 17:43:23 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-08-08 17:43:23 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-08-08 17:43:23 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-08-08 17:43:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-08-08 17:43:23 ----A---- C:\Windows\system32\Display.dll
2013-08-08 17:43:23 ----A---- C:\Windows\system32\DiagCpl.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\wiadefui.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\sppcomapi.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\shsetup.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\rasppp.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\msdtctm.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\msconfig.exe
2013-08-08 17:43:22 ----A---- C:\Windows\system32\logoncli.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\cabview.dll
2013-08-08 17:43:22 ----A---- C:\Windows\system32\biocpl.dll
2013-08-08 17:43:21 ----A---- C:\Windows\system32\wpccpl.dll
2013-08-08 17:43:21 ----A---- C:\Windows\system32\themecpl.dll
2013-08-08 17:43:21 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-08-08 17:43:21 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-08-08 17:43:21 ----A---- C:\Windows\system32\hgcpl.dll
2013-08-08 17:43:21 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-08-08 17:43:21 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-08-08 17:43:21 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-08-08 17:43:21 ----A---- C:\Windows\system32\dnscmmc.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\tapisrv.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\scecli.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\mscories.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\mscms.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\mprddm.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\localsec.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\iasacct.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\fontext.dll
2013-08-08 17:43:20 ----A---- C:\Windows\system32\bcdsrv.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\wlanui.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\wkssvc.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\wksprt.exe
2013-08-08 17:43:19 ----A---- C:\Windows\system32\w32tm.exe
2013-08-08 17:43:19 ----A---- C:\Windows\system32\VAN.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\usercpl.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\spwizeng.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\SndVol.exe
2013-08-08 17:43:19 ----A---- C:\Windows\system32\qedit.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\prntvpt.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\netcenter.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\mblctr.exe
2013-08-08 17:43:19 ----A---- C:\Windows\system32\KMSVC.DLL
2013-08-08 17:43:19 ----A---- C:\Windows\system32\drivers\ks.sys
2013-08-08 17:43:19 ----A---- C:\Windows\system32\batmeter.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\azroleui.dll
2013-08-08 17:43:19 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-08-08 17:43:18 ----A---- C:\Windows\system32\zipfldr.dll
2013-08-08 17:43:18 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-08-08 17:43:18 ----A---- C:\Windows\system32\fdeploy.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\wusa.exe
2013-08-08 17:43:17 ----A---- C:\Windows\system32\prnfldr.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\networkmap.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\netjoin.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\mspbda.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\Faultrep.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\cryptui.dll
2013-08-08 17:43:17 ----A---- C:\Windows\system32\adsldp.dll
2013-08-08 17:43:16 ----A---- C:\Windows\system32\sud.dll
2013-08-08 17:43:16 ----A---- C:\Windows\system32\photowiz.dll
2013-08-08 17:43:16 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-08-08 17:43:16 ----A---- C:\Windows\system32\msieftp.dll
2013-08-08 17:43:16 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-08-08 17:43:16 ----A---- C:\Windows\system32\ActionCenter.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\wpd_ci.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\taskhost.exe
2013-08-08 17:43:15 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\slui.exe
2013-08-08 17:43:15 ----A---- C:\Windows\system32\sisbkup.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\shwebsvc.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\ifsutil.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\iasrad.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\halacpi.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\ftp.exe
2013-08-08 17:43:15 ----A---- C:\Windows\system32\efscore.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-08-08 17:43:15 ----A---- C:\Windows\system32\dot3cfg.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-08-08 17:43:15 ----A---- C:\Windows\system32\credssp.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\wmpmde.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\syncui.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\sppnp.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\sdcpl.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\recovery.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\ntlanman.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\bcdedit.exe
2013-08-08 17:43:14 ----A---- C:\Windows\system32\autoplay.dll
2013-08-08 17:43:14 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\vdsutil.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\systemcpl.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\rtutils.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\recdisc.exe
2013-08-08 17:43:13 ----A---- C:\Windows\system32\OobeFldr.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\ntprint.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\nshwfp.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\dskquoui.dll
2013-08-08 17:43:13 ----A---- C:\Windows\system32\bcdboot.exe
2013-08-08 17:43:12 ----A---- C:\Windows\system32\sethc.exe
2013-08-08 17:43:12 ----A---- C:\Windows\system32\riched20.dll
2013-08-08 17:43:12 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-08-08 17:43:11 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\nshipsec.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\nlaapi.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\netplwiz.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-08-08 17:43:11 ----A---- C:\Windows\system32\migisol.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\httpapi.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\fms.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-08-08 17:43:11 ----A---- C:\Windows\system32\dpx.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\dot3svc.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\blackbox.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\AxInstSv.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\asycfilt.dll
2013-08-08 17:43:11 ----A---- C:\Windows\system32\activeds.dll
2013-08-08 17:43:10 ----A---- C:\Windows\system32\wsqmcons.exe
2013-08-08 17:43:10 ----A---- C:\Windows\system32\wlanmsm.dll
2013-08-08 17:43:10 ----A---- C:\Windows\system32\wavemsp.dll
2013-08-08 17:43:10 ----A---- C:\Windows\system32\ReAgent.dll
2013-08-08 17:43:10 ----A---- C:\Windows\system32\msftedit.dll
2013-08-08 17:43:10 ----A---- C:\Windows\system32\isoburn.exe
2013-08-08 17:43:09 ----A---- C:\Windows\system32\wvc.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\wtsapi32.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\wimgapi.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\tzutil.exe
2013-08-08 17:43:09 ----A---- C:\Windows\system32\sysclass.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\provsvc.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\ocsetup.exe
2013-08-08 17:43:09 ----A---- C:\Windows\system32\dsuiext.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-08-08 17:43:09 ----A---- C:\Windows\system32\dot3ui.dll
2013-08-08 17:43:09 ----A---- C:\Windows\system32\dfrgui.exe
2013-08-08 17:43:09 ----A---- C:\Windows\system32\appinfo.dll
2013-08-08 17:43:08 ----A---- C:\Windows\twain_32.dll
2013-08-08 17:43:08 ----A---- C:\Windows\system32\twext.dll
2013-08-08 17:43:08 ----A---- C:\Windows\system32\shdocvw.dll
2013-08-08 17:43:08 ----A---- C:\Windows\system32\setupugc.exe
2013-08-08 17:43:08 ----A---- C:\Windows\system32\qcap.dll
2013-08-08 17:43:08 ----A---- C:\Windows\system32\PkgMgr.exe
2013-08-08 17:43:08 ----A---- C:\Windows\system32\mstask.dll
2013-08-08 17:43:08 ----A---- C:\Windows\system32\certprop.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\wwanconn.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\uxlib.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\ssText3d.scr
2013-08-08 17:43:07 ----A---- C:\Windows\system32\srrstr.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\SmiEngine.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\slwga.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\qasf.dll
2013-08-08 17:43:07 ----A---- C:\Windows\system32\imm32.dll
2013-08-08 17:43:06 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-08-08 17:43:06 ----A---- C:\Windows\system32\nslookup.exe
2013-08-08 17:43:06 ----A---- C:\Windows\system32\msvfw32.dll
2013-08-08 17:43:06 ----A---- C:\Windows\system32\mciavi32.dll
2013-08-08 17:43:06 ----A---- C:\Windows\system32\clusapi.dll
2013-08-08 17:43:06 ----A---- C:\Windows\system32\audiodev.dll
2013-08-08 17:43:05 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-08-08 17:43:05 ----A---- C:\Windows\system32\msscp.dll
2013-08-08 17:43:05 ----A---- C:\Windows\system32\diskraid.exe
2013-08-08 17:43:05 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-08-08 17:43:03 ----A---- C:\Windows\system32\wimserv.exe
2013-08-08 17:43:03 ----A---- C:\Windows\system32\TSpkg.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\sdrsvc.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\remotepg.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\rdpencom.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\raschap.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\QUTIL.DLL
2013-08-08 17:43:03 ----A---- C:\Windows\system32\perfmon.exe
2013-08-08 17:43:03 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-08-08 17:43:03 ----A---- C:\Windows\system32\input.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-08-08 17:43:03 ----A---- C:\Windows\system32\acppage.dll
2013-08-08 17:43:02 ----A---- C:\Windows\system32\wmpdxm.dll
2013-08-08 17:43:02 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-08-08 17:43:02 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-08-08 17:43:02 ----A---- C:\Windows\system32\olepro32.dll
2013-08-08 17:43:02 ----A---- C:\Windows\system32\ocsetapi.dll
2013-08-08 17:43:02 ----A---- C:\Windows\system32\nltest.exe
2013-08-08 17:43:02 ----A---- C:\Windows\system32\networkexplorer.dll
2013-08-08 17:43:01 ----A---- C:\Windows\system32\wpdwcn.dll
2013-08-08 17:43:01 ----A---- C:\Windows\system32\vdsbas.dll
2013-08-08 17:43:01 ----A---- C:\Windows\system32\runonce.exe
2013-08-08 17:43:01 ----A---- C:\Windows\system32\onexui.dll
2013-08-08 17:43:01 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-08-08 17:43:01 ----A---- C:\Windows\system32\logagent.exe
2013-08-08 17:43:01 ----A---- C:\Windows\system32\iTVData.dll
2013-08-08 17:43:01 ----A---- C:\Windows\system32\dxdiagn.dll
2013-08-08 17:43:01 ----A---- C:\Windows\bfsvc.exe
2013-08-08 17:42:59 ----A---- C:\Windows\system32\wmpshell.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\unimdmat.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\sqlcese30.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\shacct.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-08-08 17:42:59 ----A---- C:\Windows\system32\msvidc32.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\msiexec.exe
2013-08-08 17:42:59 ----A---- C:\Windows\system32\MFPlay.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\lsmproxy.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\iscsium.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\eapp3hst.dll
2013-08-08 17:42:59 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-08-08 17:42:59 ----A---- C:\Windows\system32\bitsadmin.exe
2013-08-08 17:42:58 ----A---- C:\Windows\system32\tabcal.exe
2013-08-08 17:42:58 ----A---- C:\Windows\system32\rdpd3d.dll
2013-08-08 17:42:58 ----A---- C:\Windows\system32\pdh.dll
2013-08-08 17:42:58 ----A---- C:\Windows\system32\OpcServices.dll
2013-08-08 17:42:58 ----A---- C:\Windows\system32\mprapi.dll
2013-08-08 17:42:58 ----A---- C:\Windows\system32\cscapi.dll
2013-08-08 17:42:58 ----A---- C:\Windows\system32\Bubbles.scr
2013-08-08 17:42:57 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\WPDSp.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\srvcli.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\Ribbons.scr
2013-08-08 17:42:57 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-08-08 17:42:57 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\olethk32.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\ncryptui.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\Mystify.scr
2013-08-08 17:42:57 ----A---- C:\Windows\system32\MdSched.exe
2013-08-08 17:42:57 ----A---- C:\Windows\system32\mapistub.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\mapi32.dll
2013-08-08 17:42:57 ----A---- C:\Windows\system32\lpremove.exe
2013-08-08 17:42:57 ----A---- C:\Windows\system32\logman.exe
2013-08-08 17:42:57 ----A---- C:\Windows\system32\djoin.exe
2013-08-08 17:42:57 ----A---- C:\Windows\system32\ActionQueue.dll
2013-08-08 17:42:56 ----A---- C:\Windows\system32\WMPhoto.dll
2013-08-08 17:42:56 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-08-08 17:42:56 ----A---- C:\Windows\system32\wiavideo.dll
2013-08-08 17:42:56 ----A---- C:\Windows\system32\utildll.dll
2013-08-08 17:42:56 ----A---- C:\Windows\system32\takeown.exe
2013-08-08 17:42:56 ----A---- C:\Windows\system32\fphc.dll
2013-08-08 17:42:56 ----A---- C:\Windows\system32\dot3msm.dll
2013-08-08 17:42:56 ----A---- C:\Windows\system32\avifil32.dll
2013-08-08 17:42:55 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-08-08 17:42:55 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-08-08 17:42:55 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2013-08-08 17:42:55 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-08-08 17:42:55 ----A---- C:\Windows\system32\sppinst.dll
2013-08-08 17:42:55 ----A---- C:\Windows\system32\qdv.dll
2013-08-08 17:42:55 ----A---- C:\Windows\system32\msnetobj.dll
2013-08-08 17:42:55 ----A---- C:\Windows\system32\iyuv_32.dll
2013-08-08 17:42:55 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-08-08 17:42:54 ----A---- C:\Windows\system32\unattend.dll
2013-08-08 17:42:54 ----A---- C:\Windows\system32\RelPost.exe
2013-08-08 17:42:54 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-08-08 17:42:54 ----A---- C:\Windows\system32\msyuv.dll
2013-08-08 17:42:54 ----A---- C:\Windows\system32\msrle32.dll
2013-08-08 17:42:54 ----A---- C:\Windows\system32\cmstp.exe
2013-08-08 17:42:54 ----A---- C:\Windows\system32\cca.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\wsnmp32.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-08-08 17:42:53 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\umb.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\tsbyuv.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\setupcln.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\pdhui.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\MuiUnattend.exe
2013-08-08 17:42:53 ----A---- C:\Windows\system32\msorcl32.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\iasrecst.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-08-08 17:42:53 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-08-08 17:42:53 ----A---- C:\Windows\system32\basesrv.dll
2013-08-08 17:42:53 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\wkscli.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\WavDest.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\sppuinotify.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\spbcd.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\relog.exe
2013-08-08 17:42:52 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\netiougc.exe
2013-08-08 17:42:52 ----A---- C:\Windows\system32\mydocs.dll
2013-08-08 17:42:52 ----A---- C:\Windows\system32\iscsicli.exe
2013-08-08 17:42:52 ----A---- C:\Windows\system32\amstream.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\wmpps.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\syssetup.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\resutils.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\rastapi.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\nrpsrv.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\netbtugc.exe
2013-08-08 17:42:51 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-08-08 17:42:51 ----A---- C:\Windows\system32\itircl.dll
2013-08-08 17:42:51 ----A---- C:\Windows\system32\diskpart.exe
2013-08-08 17:42:51 ----A---- C:\Windows\system32\CertPolEng.dll
2013-08-08 17:42:50 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-08-08 17:42:50 ----A---- C:\Windows\system32\tlscsp.dll
2013-08-08 17:42:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-08-08 17:42:50 ----A---- C:\Windows\system32\ReAgentc.exe
2013-08-08 17:42:50 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-08-08 17:42:50 ----A---- C:\Windows\system32\findstr.exe
2013-08-08 17:42:50 ----A---- C:\Windows\system32\eappgnui.dll
2013-08-08 17:42:49 ----A---- C:\Windows\system32\wiarpc.dll
2013-08-08 17:42:49 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-08-08 17:42:49 ----A---- C:\Windows\system32\netutils.dll
2013-08-08 17:42:49 ----A---- C:\Windows\system32\mobsync.exe
2013-08-08 17:42:49 ----A---- C:\Windows\system32\mciqtz32.dll
2013-08-08 17:42:48 ----A---- C:\Windows\system32\sppc.dll
2013-08-08 17:42:48 ----A---- C:\Windows\system32\spopk.dll
2013-08-08 17:42:48 ----A---- C:\Windows\system32\shimgvw.dll
2013-08-08 17:42:48 ----A---- C:\Windows\system32\muifontsetup.dll
2013-08-08 17:42:48 ----A---- C:\Windows\system32\iccvid.dll
2013-08-08 17:42:48 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-08-08 17:42:48 ----A---- C:\Windows\system32\dosx.exe
2013-08-08 17:42:48 ----A---- C:\Windows\system32\cabinet.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\unlodctr.exe
2013-08-08 17:42:47 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\repair-bde.exe
2013-08-08 17:42:47 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\odbcconf.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\netcfg.exe
2013-08-08 17:42:47 ----A---- C:\Windows\system32\msdmo.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\manage-bde.exe
2013-08-08 17:42:47 ----A---- C:\Windows\system32\luainstall.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\inetmib1.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-08-08 17:42:47 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-08-08 17:42:47 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-08-08 17:42:47 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-08-08 17:42:46 ----A---- C:\Windows\system32\perfts.dll
2013-08-08 17:42:46 ----A---- C:\Windows\system32\icaapi.dll
2013-08-08 17:42:46 ----A---- C:\Windows\system32\FXSMON.dll
2013-08-08 17:42:46 ----A---- C:\Windows\system32\elsTrans.dll
2013-08-08 17:42:46 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-08-08 17:42:46 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-08-08 17:42:45 ----A---- C:\Windows\system32\wshbth.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\TRAPI.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\sscore.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\schedcli.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\napdsnap.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\LogonUI.exe
2013-08-08 17:42:45 ----A---- C:\Windows\system32\dsauth.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-08-08 17:42:45 ----A---- C:\Windows\system32\cscdll.dll
2013-08-08 17:42:45 ----A---- C:\Windows\system32\bitsperf.dll
2013-08-08 17:42:44 ----A---- C:\Windows\system32\wsdchngr.dll
2013-08-08 17:42:44 ----A---- C:\Windows\system32\shgina.dll
2013-08-08 17:42:44 ----A---- C:\Windows\system32\riched32.dll
2013-08-08 17:42:44 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-08-08 17:42:41 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-08-08 17:42:41 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-08-08 17:42:40 ----A---- C:\Windows\system32\drivers\appid.sys
2013-08-08 17:42:39 ----A---- C:\Windows\system32\wshirda.dll
2013-08-08 17:42:39 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-08-08 17:42:38 ----A---- C:\Windows\system32\spwmp.dll
2013-08-08 17:42:38 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-08-08 17:42:38 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-08-08 17:42:38 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-08-08 17:42:38 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-08-08 17:42:38 ----A---- C:\Windows\system32\browseui.dll
2013-08-08 17:42:37 ----A---- C:\Windows\system32\shunimpl.dll
2013-08-08 17:42:37 ----A---- C:\Windows\system32\RDPREFDD.dll
2013-08-08 17:42:37 ----A---- C:\Windows\system32\dxmasf.dll
2013-08-08 17:42:37 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-08-08 17:42:37 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-08-08 17:42:37 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-08-08 17:42:37 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2013-08-08 17:42:37 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-08-08 17:42:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-08-08 17:42:37 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-08-08 17:42:36 ----A---- C:\Windows\system32\wmploc.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDUS.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDSG.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDSF.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDPO.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDMON.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-08-08 17:42:32 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-08-08 17:42:31 ----A---- C:\Windows\system32\spwizres.dll
2013-08-08 17:42:31 ----A---- C:\Windows\system32\pifmgr.dll
2013-08-08 17:42:31 ----A---- C:\Windows\system32\nlsbres.dll
2013-08-08 17:42:31 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-08-08 17:42:31 ----A---- C:\Windows\system32\BlbEvents.dll
2013-08-08 17:42:26 ----A---- C:\Windows\system32\wdscore.dll
2013-08-08 17:42:16 ----A---- C:\Windows\system32\wbemcomn.dll
2013-08-08 17:42:08 ----A---- C:\Windows\system32\sqmapi.dll
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-08-08 17:20:57 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-08-08 17:20:56 ----A---- C:\Windows\system32\esent.dll
2013-08-08 17:20:55 ----A---- C:\Windows\system32\fsutil.exe
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\storport.sys
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-08-08 17:20:55 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-08-08 06:03:29 ----A---- C:\Windows\system32\fontsub.dll
2013-08-08 06:03:29 ----A---- C:\Windows\system32\atmlib.dll
2013-08-08 06:03:29 ----A---- C:\Windows\system32\atmfd.dll
2013-08-08 05:15:54 ----A---- C:\Windows\system32\MRT.exe
2013-08-08 05:13:13 ----A---- C:\Windows\system32\Wdfres.dll
2013-08-08 05:13:13 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-08-08 05:13:13 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-08-08 05:12:19 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-08-08 05:12:19 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-08-08 05:12:19 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-08-08 05:12:19 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-08-08 05:12:18 ----A---- C:\Windows\system32\WUDFx.dll
2013-08-08 05:12:18 ----A---- C:\Windows\system32\WUDFHost.exe
2013-08-08 05:12:18 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-08-08 05:10:50 ----A---- C:\Windows\system32\wmi.dll
2013-08-08 05:10:50 ----A---- C:\Windows\system32\imagehlp.dll
2013-08-08 05:10:50 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-08-08 05:10:10 ----A---- C:\Windows\system32\wininet.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\urlmon.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-08-08 05:10:10 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-08 05:10:10 ----A---- C:\Windows\system32\msrating.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\msls31.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\mshtmler.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\msfeedssync.exe
2013-08-08 05:10:10 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\iesysprep.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\iertutil.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\ieakeng.dll
2013-08-08 05:10:10 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\wextract.exe
2013-08-08 05:10:09 ----A---- C:\Windows\system32\webcheck.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\vbscript.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\url.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\pngfilt.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\occache.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\mshtmled.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\mshtml.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\mshta.exe
2013-08-08 05:10:09 ----A---- C:\Windows\system32\msfeeds.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\licmgr10.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\jscript9.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\jscript.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\inseng.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\imgutil.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\iexpress.exe
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieUnatt.exe
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieui.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\iesetup.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\iernonce.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\iepeers.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieframe.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\iedkcs32.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieapfltr.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieapfltr.dat
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieakui.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ieaksie.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\ie4uinit.exe
2013-08-08 05:10:09 ----A---- C:\Windows\system32\icardie.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\dxtrans.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\dxtmsft.dll
2013-08-08 05:10:09 ----A---- C:\Windows\system32\admparse.dll
2013-08-08 05:07:55 ----A---- C:\Windows\system32\browserchoice.exe
2013-08-08 04:57:15 ----SHD---- C:\Config.Msi
2013-08-08 04:15:52 ----A---- C:\Windows\system32\spoolsv.exe
2013-08-08 04:15:50 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-08-08 04:15:49 ----A---- C:\Windows\system32\usp10.dll
2013-08-08 04:15:48 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-08-08 04:15:48 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-08-08 04:15:48 ----A---- C:\Windows\system32\drivers\srv.sys
2013-08-08 04:15:46 ----A---- C:\Windows\system32\drivers\afd.sys
2013-08-08 04:15:44 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-08-08 04:15:42 ----A---- C:\Windows\system32\ntdll.dll
2013-08-08 04:15:41 ----A---- C:\Windows\system32\win32k.sys
2013-08-08 04:15:40 ----A---- C:\Windows\system32\wintrust.dll
2013-08-08 04:15:28 ----A---- C:\Windows\system32\xmllite.dll
2013-08-08 04:15:27 ----A---- C:\Windows\system32\dpnet.dll
2013-08-08 04:15:27 ----A---- C:\Windows\system32\dpnaddr.dll
2013-08-08 04:15:26 ----A---- C:\Windows\system32\prevhost.exe
2013-08-08 04:15:08 ----A---- C:\Windows\system32\win32spl.dll
2013-08-08 04:15:07 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-08-08 04:15:06 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-08-08 04:15:06 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-08-08 04:15:06 ----A---- C:\Windows\system32\dnsapi.dll
2013-08-08 04:15:05 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-08-08 04:15:04 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-08-08 04:15:03 ----A---- C:\Windows\system32\smss.exe
2013-08-08 04:15:03 ----A---- C:\Windows\system32\csrsrv.dll
2013-08-08 04:14:48 ----A---- C:\Windows\system32\cryptsvc.dll
2013-08-08 04:14:48 ----A---- C:\Windows\system32\cryptnet.dll
2013-08-08 04:14:48 ----A---- C:\Windows\system32\crypt32.dll
2013-08-08 04:14:28 ----A---- C:\Windows\system32\psisdecd.dll
2013-08-08 04:14:26 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-08-08 04:14:22 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-08-08 04:14:22 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-08-08 04:14:16 ----A---- C:\Windows\system32\sspisrv.dll
2013-08-08 04:14:16 ----A---- C:\Windows\system32\sspicli.dll
2013-08-08 04:14:16 ----A---- C:\Windows\system32\schannel.dll
2013-08-08 04:14:16 ----A---- C:\Windows\system32\secur32.dll
2013-08-08 04:14:16 ----A---- C:\Windows\system32\lsass.exe
2013-08-08 04:14:16 ----A---- C:\Windows\system32\lsasrv.dll
2013-08-08 04:14:16 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-08-08 04:14:16 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-08-08 04:14:16 ----A---- C:\Windows\system32\drivers\cng.sys
2013-08-08 04:14:12 ----A---- C:\Windows\system32\msxml3r.dll
2013-08-08 04:14:12 ----A---- C:\Windows\system32\msxml3.dll
2013-08-08 04:14:10 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-08-08 04:14:10 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-08-08 04:14:10 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-08-08 04:14:09 ----A---- C:\Windows\system32\oleaut32.dll
2013-08-08 04:14:09 ----A---- C:\Windows\system32\oleacc.dll
2013-08-08 04:14:02 ----A---- C:\Windows\system32\tsgqec.dll
2013-08-08 04:14:02 ----A---- C:\Windows\system32\mstscax.dll
2013-08-08 04:14:02 ----A---- C:\Windows\system32\aaclient.dll
2013-08-08 04:13:51 ----A---- C:\Windows\system32\msxml6.dll
2013-08-08 04:13:50 ----A---- C:\Windows\system32\inetcomm.dll
2013-08-08 04:13:22 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-08-08 04:13:22 ----A---- C:\Windows\system32\drivers\netio.sys
2013-08-08 04:13:22 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-08-08 04:13:18 ----A---- C:\Windows\system32\packager.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-08 04:13:14 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-08 04:13:14 ----A---- C:\Windows\system32\KernelBase.dll
2013-08-08 04:13:14 ----A---- C:\Windows\system32\kernel32.dll
2013-08-08 04:13:14 ----A---- C:\Windows\system32\conhost.exe
2013-08-08 04:13:05 ----A---- C:\Windows\system32\tquery.dll
2013-08-08 04:13:05 ----A---- C:\Windows\system32\mssrch.dll
2013-08-08 04:13:04 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-08-08 04:13:04 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-08-08 04:13:04 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-08-08 04:13:04 ----A---- C:\Windows\system32\mssvp.dll
2013-08-08 04:13:04 ----A---- C:\Windows\system32\mssphtb.dll
2013-08-08 04:13:04 ----A---- C:\Windows\system32\mssph.dll
2013-08-08 04:13:04 ----A---- C:\Windows\system32\msscntrs.dll
2013-08-08 04:12:54 ----A---- C:\Windows\system32\cdosys.dll
2013-08-08 04:12:45 ----A---- C:\Windows\system32\WFS.exe
2013-08-08 04:12:45 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-08-08 04:12:43 ----A---- C:\Windows\system32\srcore.dll
2013-08-08 04:12:43 ----A---- C:\Windows\system32\rstrui.exe
2013-08-08 04:12:42 ----A---- C:\Windows\system32\netapi32.dll
2013-08-08 04:12:42 ----A---- C:\Windows\system32\EncDec.dll
2013-08-08 04:12:42 ----A---- C:\Windows\system32\browser.dll
2013-08-08 04:12:42 ----A---- C:\Windows\system32\browcli.dll
2013-08-08 04:12:41 ----A---- C:\Windows\system32\XpsPrint.dll
2013-08-08 04:12:38 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-08-08 04:12:22 ----A---- C:\Windows\system32\sbe.dll
2013-08-08 04:12:22 ----A---- C:\Windows\system32\CPFilters.dll
2013-08-08 04:12:11 ----A---- C:\Windows\system32\quartz.dll
2013-08-08 04:12:10 ----A---- C:\Windows\system32\qdvd.dll
2013-08-08 04:12:10 ----A---- C:\Windows\system32\kerberos.dll
2013-08-08 04:12:01 ----A---- C:\Windows\system32\msi.dll
2013-08-08 04:12:00 ----A---- C:\Windows\explorer.exe
2013-08-08 04:11:58 ----A---- C:\Windows\system32\d3d10level9.dll
2013-08-08 04:11:51 ----A---- C:\Windows\system32\Wpc.dll
2013-08-08 04:11:51 ----A---- C:\Windows\system32\gameux.dll
2013-08-08 04:11:42 ----A---- C:\Windows\system32\ncrypt.dll
2013-08-08 04:11:41 ----A---- C:\Windows\system32\webio.dll
2013-08-08 04:11:39 ----A---- C:\Windows\system32\odbcjt32.dll
2013-08-08 04:11:39 ----A---- C:\Windows\system32\odbccu32.dll
2013-08-08 04:11:39 ----A---- C:\Windows\system32\odbccr32.dll
2013-08-08 04:11:39 ----A---- C:\Windows\system32\odbccp32.dll
2013-08-08 04:11:38 ----A---- C:\Windows\system32\odbctrac.dll
2013-08-08 04:11:38 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-08-08 04:11:38 ----A---- C:\Windows\system32\d3d10_1.dll
2013-08-08 04:11:37 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-08-08 04:11:36 ----A---- C:\Windows\system32\msvcrt.dll
2013-08-08 04:11:35 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-08-08 04:11:35 ----A---- C:\Windows\system32\rdpwsx.dll
2013-08-08 04:11:35 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-08-08 04:11:33 ----A---- C:\Windows\system32\profsvc.dll
2013-08-08 04:11:33 ----A---- C:\Windows\system32\profprov.dll
2013-08-08 04:11:31 ----A---- C:\Windows\system32\synceng.dll
2013-08-08 04:11:16 ----A---- C:\Windows\system32\localspl.dll
2013-08-08 04:11:12 ----A---- C:\Windows\system32\ntshrui.dll
2013-08-08 04:11:09 ----A---- C:\Windows\system32\DWrite.dll
2013-08-08 04:11:07 ----A---- C:\Windows\system32\mfc42u.dll
2013-08-08 04:11:07 ----A---- C:\Windows\system32\mfc42.dll
2013-08-08 04:11:06 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-08-08 04:10:58 ----A---- C:\Windows\system32\shell32.dll
2013-08-08 04:10:53 ----A---- C:\Windows\system32\poqexec.exe
2013-08-08 04:10:52 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-08-08 04:10:41 ----A---- C:\Windows\system32\tzres.dll
2013-08-08 04:10:06 ----A---- C:\Windows\system32\winsrv.dll
2013-08-08 04:10:05 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-08-08 04:10:05 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-08-08 04:10:05 ----A---- C:\Windows\system32\cdd.dll
2013-08-08 03:41:39 ----A---- C:\Windows\system32\rdpcore.dll
2013-08-08 03:41:39 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-08-08 03:41:39 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2013-08-06 19:33:01 ----D---- C:\rsit
2013-08-06 19:33:01 ----D---- C:\Program Files\trend micro
2013-08-05 18:57:47 ----D---- C:\ProgramData\EPSON
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAudio2_6.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAudio2_5.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\xactengine3_7.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\xactengine3_6.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\xactengine3_5.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\D3DX9_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\d3dx10_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\d3dcsx_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-08-05 18:46:56 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\D3DX9_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dx11_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dx10_41.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\d3dcsx_42.dll
2013-08-05 18:46:55 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAudio2_4.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAudio2_3.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAudio2_2.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\xactengine3_4.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\xactengine3_3.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\D3DX9_41.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\D3DX9_40.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\d3dx10_40.dll
2013-08-05 18:46:54 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\XAudio2_1.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\xactengine3_2.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\xactengine3_1.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DX9_39.dll

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 09 srp 2013 02:28
od frezent
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DX9_38.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\d3dx10_38.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2013-08-05 18:46:53 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\XAudio2_0.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\xactengine3_0.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\xactengine2_10.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\D3DX9_37.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\d3dx10_37.dll
2013-08-05 18:46:52 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2013-08-05 18:46:51 ----A---- C:\Windows\system32\d3dx9_36.dll
2013-08-05 18:46:51 ----A---- C:\Windows\system32\d3dx10_36.dll
2013-08-05 18:46:51 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xinput1_3.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xactengine2_9.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xactengine2_8.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\xactengine2_7.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx9_35.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx9_34.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx10_35.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx10_34.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\d3dx10_33.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2013-08-05 18:46:50 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\xactengine2_6.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\xactengine2_5.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\d3dx9_33.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\d3dx9_32.dll
2013-08-05 18:46:49 ----A---- C:\Windows\system32\d3dx10.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xinput1_2.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xinput1_1.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_4.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\x3daudio1_1.dll
2013-08-05 18:46:48 ----A---- C:\Windows\system32\d3dx9_31.dll
2013-08-05 18:46:47 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-08-05 18:46:46 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-08-05 18:46:45 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-08-05 18:46:45 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-08-05 18:44:46 ----D---- C:\Windows\system32\directx
2013-08-04 16:31:11 ----D---- C:\Users\PhoFe\AppData\Roaming\ftblauncher
2013-08-03 18:51:26 ----D---- C:\Users\PhoFe\AppData\Roaming\Opera
2013-08-03 14:35:17 ----D---- C:\Users\PhoFe\AppData\Roaming\Opera Software
2013-08-03 14:27:28 ----D---- C:\Users\PhoFe\AppData\Roaming\Mozilla
2013-08-03 14:27:22 ----D---- C:\ProgramData\Mozilla
2013-08-03 14:27:21 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-08-03 14:27:20 ----D---- C:\Program Files\Mozilla Firefox
2013-07-29 23:48:45 ----D---- C:\Users\PhoFe\AppData\Roaming\Notepad++
2013-07-29 23:48:45 ----D---- C:\Program Files\Notepad++
2013-07-29 20:01:52 ----D---- C:\Users\PhoFe\AppData\Roaming\FileZilla
2013-07-28 20:44:05 ----D---- C:\Program Files\Noël Danjou
2013-07-28 19:37:51 ----D---- C:\Users\PhoFe\AppData\Roaming\PDAppFlex
2013-07-28 19:20:17 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2013-07-28 19:18:29 ----D---- C:\Program Files\Adobe
2013-07-28 19:14:19 ----D---- C:\Program Files\Common Files\Adobe
2013-07-28 17:09:18 ----D---- C:\ProgramData\Adobe
2013-07-24 11:46:37 ----D---- C:\Users\PhoFe\AppData\Roaming\Macromedia
2013-07-24 11:46:37 ----D---- C:\Users\PhoFe\AppData\Roaming\Adobe
2013-07-24 11:39:14 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-07-24 11:39:12 ----D---- C:\Windows\system32\Macromed
2013-07-23 19:38:48 ----D---- C:\Users\PhoFe\AppData\Roaming\vlc
2013-07-23 19:37:10 ----D---- C:\Program Files\VideoLAN
2013-07-23 02:55:49 ----D---- C:\Users\PhoFe\AppData\Roaming\GoforFiles
2013-07-23 02:55:49 ----D---- C:\Program Files\GoforFiles
2013-07-23 02:51:23 ----A---- C:\Windows\system32\drivers\HWiNFO32.SYS
2013-07-23 02:51:09 ----D---- C:\Program Files\HWiNFO32
2013-07-22 23:06:42 ----D---- C:\Users\PhoFe\AppData\Roaming\NVIDIA
2013-07-22 20:16:45 ----D---- C:\Program Files\Microsoft.NET
2013-07-22 20:09:56 ----D---- C:\Program Files\AGEIA Technologies
2013-07-22 20:08:43 ----D---- C:\ProgramData\NVIDIA Corporation
2013-07-22 20:07:58 ----A---- C:\Windows\system32\nvwgf2um.dll
2013-07-22 20:07:58 ----A---- C:\Windows\system32\nvhdap32.dll
2013-07-22 20:07:58 ----A---- C:\Windows\system32\nvhdagenco3220103.dll
2013-07-22 20:07:58 ----A---- C:\Windows\system32\drivers\nvhda32v.sys
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvopencl.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvoglv32.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\NvIFR.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\NvFBC.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvdispgenco3232049.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvdispco3232049.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcuvid.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcuda.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\nvcompiler.dll
2013-07-22 20:07:57 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-07-22 19:57:06 ----D---- C:\Program Files\Common Files\Steam
2013-07-22 19:17:45 ----D---- C:\Program Files\CCleaner
2013-07-22 14:54:12 ----D---- C:\Windows\Panther
2013-07-22 07:57:48 ----D---- C:\Windows\system32\RTCOM
2013-07-22 07:57:22 ----A---- C:\Windows\system32\WavesLib.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\WavesGUILib.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\tosade.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\TepeqAPO.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\tadefxapo2.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\tadefxapo.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSWOW.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSTSXT.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSTSHD.dll
2013-07-22 07:57:22 ----A---- C:\Windows\system32\SRSHP360.dll
2013-07-22 07:57:21 ----A---- C:\Windows\system32\sltech32.dll
2013-07-22 07:57:21 ----A---- C:\Windows\system32\slprp32.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\slcnt32.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\sl3apo32.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFSS_APO.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFNHK.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFCOM.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\SFAPO.dll
2013-07-22 07:57:20 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2013-07-22 07:57:20 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2013-07-22 07:57:19 ----A---- C:\Windows\system32\RTKSMSettingsIPC.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTKSMlfx.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkPgExt.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkCoLDR.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkCoInstII.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkApoApi.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RtkAPO.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEEP32A.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEEL32A.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEEG32A.dll
2013-07-22 07:57:18 ----A---- C:\Windows\system32\RTEED32A.dll
2013-07-22 07:57:17 ----A---- C:\Windows\system32\RP3DHT32.dll
2013-07-22 07:57:17 ----A---- C:\Windows\system32\RP3DAA32.dll
2013-07-22 07:57:17 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2013-07-22 07:57:16 ----A---- C:\Windows\system32\RCoRes.dat
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEP32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEL32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEG32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EED32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\R4EEA32A.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\MISS_APO.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2013-07-22 07:57:16 ----A---- C:\Windows\system32\MaxxAudioVnA.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO50.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO40.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2013-07-22 07:57:15 ----A---- C:\Windows\system32\KAAPORT.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\FMAPO.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2013-07-22 07:57:12 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2013-07-22 07:57:11 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2013-07-22 07:57:10 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2013-07-22 07:57:09 ----A---- C:\Windows\system32\AERTARen.dll
2013-07-22 07:57:09 ----A---- C:\Windows\system32\AERTACap.dll
2013-07-22 07:57:08 ----HD---- C:\Program Files\InstallShield Installation Information
2013-07-22 07:25:09 ----D---- C:\Program Files\Realtek
2013-07-22 07:25:07 ----HD---- C:\Program Files\Temp
2013-07-22 07:25:06 ----A---- C:\Windows\RtlExUpd.dll
2013-07-22 07:24:59 ----D---- C:\Program Files\Common Files\InstallShield
2013-07-22 07:20:31 ----D---- C:\Users\PhoFe\AppData\Roaming\TS3Client
2013-07-22 07:09:26 ----D---- C:\Users\PhoFe\AppData\Roaming\Sony Creative Software Inc
2013-07-22 06:07:07 ----D---- C:\Users\PhoFe\AppData\Roaming\Publish Providers
2013-07-22 06:01:18 ----D---- C:\ProgramData\Sony
2013-07-22 06:01:18 ----D---- C:\Program Files\Sony
2013-07-22 05:59:12 ----D---- C:\Users\PhoFe\AppData\Roaming\Sony
2013-07-22 05:47:35 ----D---- C:\Users\PhoFe\AppData\Roaming\.technic
2013-07-22 05:42:20 ----D---- C:\Users\PhoFe\AppData\Roaming\BANDISOFT
2013-07-22 05:41:36 ----D---- C:\Program Files\BandiMPEG1
2013-07-22 05:38:31 ----A---- C:\Windows\system32\wups2.dll
2013-07-22 05:38:31 ----A---- C:\Windows\system32\wuauclt.exe
2013-07-22 05:38:30 ----A---- C:\Windows\system32\wucltux.dll
2013-07-22 05:38:30 ----A---- C:\Windows\system32\wuaueng.dll
2013-07-22 05:38:24 ----A---- C:\Windows\system32\wups.dll
2013-07-22 05:38:24 ----A---- C:\Windows\system32\wudriver.dll
2013-07-22 05:38:24 ----A---- C:\Windows\system32\wuapi.dll
2013-07-22 05:38:18 ----A---- C:\Windows\system32\wuwebv.dll
2013-07-22 05:38:18 ----A---- C:\Windows\system32\wuapp.exe
2013-07-22 05:21:33 ----D---- C:\Users\PhoFe\AppData\Roaming\.minecraft
2013-07-22 05:19:05 ----N---- C:\Windows\system32\MpSigStub.exe
2013-07-22 05:17:04 ----D---- C:\Users\PhoFe\AppData\Roaming\BitTorrent
2013-07-22 05:12:43 ----D---- C:\ProgramData\Sun
2013-07-22 05:12:43 ----D---- C:\Program Files\Common Files\Java
2013-07-22 05:12:37 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-07-22 05:12:37 ----A---- C:\Windows\system32\javaws.exe
2013-07-22 05:12:37 ----A---- C:\Windows\system32\deployJava1.dll
2013-07-22 05:12:34 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-07-22 05:12:34 ----A---- C:\Windows\system32\javaw.exe
2013-07-22 05:12:34 ----A---- C:\Windows\system32\java.exe
2013-07-22 05:12:27 ----D---- C:\Program Files\Java
2013-07-22 05:10:54 ----D---- C:\Users\PhoFe\AppData\Roaming\Skype
2013-07-22 05:10:49 ----RD---- C:\Program Files\Skype
2013-07-22 05:10:49 ----D---- C:\Program Files\Common Files\Skype
2013-07-22 05:10:47 ----D---- C:\ProgramData\Skype
2013-07-22 05:09:18 ----A---- C:\Windows\system32\nvcohda.dll
2013-07-22 05:09:14 ----D---- C:\NVIDIA
2013-07-22 05:08:53 ----D---- C:\ProgramData\NVIDIA
2013-07-22 05:08:00 ----SHD---- C:\Windows\Installer
2013-07-22 05:07:53 ----D---- C:\Program Files\NVIDIA Corporation
2013-07-22 05:06:00 ----D---- C:\Program Files\Google
2013-07-22 05:05:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-22 05:01:17 ----D---- C:\Users\PhoFe\AppData\Roaming\Identities
2013-07-22 05:01:08 ----SD---- C:\Users\PhoFe\AppData\Roaming\Microsoft
2013-07-22 05:01:08 ----D---- C:\Users\PhoFe\AppData\Roaming\Media Center Programs
2013-07-22 05:00:50 ----SHD---- C:\Recovery
2013-07-22 04:58:03 ----D---- C:\Windows\SoftwareDistribution
2013-07-22 04:55:52 ----D---- C:\Windows\Prefetch
2013-07-22 04:55:11 ----ASH---- C:\pagefile.sys
2013-07-22 04:55:10 ----SHD---- C:\System Volume Information
2013-07-22 04:55:10 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2013-08-09 03:23:53 ----D---- C:\Windows\Temp
2013-08-08 22:14:04 ----D---- C:\Windows\system32\config
2013-08-08 22:01:54 ----D---- C:\Windows
2013-08-08 22:01:53 ----D---- C:\Windows\winsxs
2013-08-08 21:59:45 ----D---- C:\Windows\system32\drivers
2013-08-08 21:59:45 ----D---- C:\Windows\System32
2013-08-08 21:59:44 ----D---- C:\Windows\system32\catroot
2013-08-08 21:59:44 ----D---- C:\Windows\inf
2013-08-08 21:59:43 ----D---- C:\Windows\system32\DriverStore
2013-08-08 21:58:04 ----D---- C:\Windows\system32\catroot2
2013-08-08 21:31:58 ----D---- C:\Windows\Microsoft.NET
2013-08-08 21:31:29 ----RSD---- C:\Windows\assembly
2013-08-08 20:13:49 ----D---- C:\Windows\Logs
2013-08-08 19:58:37 ----D---- C:\Program Files\Windows Sidebar
2013-08-08 19:58:37 ----D---- C:\Program Files\Windows Portable Devices
2013-08-08 19:58:37 ----D---- C:\Program Files\Windows Media Player
2013-08-08 19:58:37 ----D---- C:\Program Files\Windows Mail
2013-08-08 19:58:37 ----D---- C:\Program Files\Internet Explorer
2013-08-08 19:58:37 ----D---- C:\Program Files\DVD Maker
2013-08-08 19:58:36 ----D---- C:\Program Files\Windows Photo Viewer
2013-08-08 19:58:36 ----D---- C:\Program Files\Windows Journal
2013-08-08 19:58:35 ----D---- C:\Windows\servicing
2013-08-08 19:58:35 ----D---- C:\Windows\ehome
2013-08-08 19:58:35 ----D---- C:\Program Files\Windows Defender
2013-08-08 19:58:35 ----D---- C:\Program Files\Common Files\System
2013-08-08 19:58:28 ----D---- C:\Windows\system32\sysprep
2013-08-08 19:58:28 ----D---- C:\Windows\system32\oobe
2013-08-08 19:58:28 ----D---- C:\Windows\system32\en-US
2013-08-08 19:58:28 ----D---- C:\Windows\system32\da-DK
2013-08-08 19:58:27 ----D---- C:\Windows\system32\sppui
2013-08-08 19:58:27 ----D---- C:\Windows\system32\Setup
2013-08-08 19:58:27 ----D---- C:\Windows\system32\migration
2013-08-08 19:58:27 ----D---- C:\Windows\system32\manifeststore
2013-08-08 19:58:27 ----D---- C:\Windows\system32\es-ES
2013-08-08 19:58:27 ----D---- C:\Windows\system32\en
2013-08-08 19:58:27 ----D---- C:\Windows\system32\cs-CZ
2013-08-08 19:58:27 ----D---- C:\Windows\system32\AdvancedInstallers
2013-08-08 19:58:26 ----D---- C:\Windows\system32\wbem
2013-08-08 19:58:26 ----D---- C:\Windows\system32\migwiz
2013-08-08 19:58:26 ----D---- C:\Windows\system32\drivers\en-US
2013-08-08 19:58:26 ----D---- C:\Windows\system32\Dism
2013-08-08 19:58:16 ----D---- C:\Windows\system32\wdi
2013-08-08 19:58:14 ----RSD---- C:\Windows\Fonts
2013-08-08 19:58:13 ----D---- C:\Windows\AppPatch
2013-08-08 19:58:05 ----D---- C:\Windows\system32\Boot
2013-08-08 19:56:14 ----A---- C:\Windows\system32\msclmd.dll
2013-08-08 19:54:51 ----SD---- C:\ProgramData\Microsoft
2013-08-08 17:53:14 ----D---- C:\Windows\system32\NDF
2013-08-08 06:53:03 ----D---- C:\Windows\rescache
2013-08-08 06:20:50 ----D---- C:\Windows\PolicyDefinitions
2013-08-08 05:35:52 ----D---- C:\Windows\twain_32
2013-08-08 05:15:57 ----D---- C:\Windows\debug
2013-08-06 19:47:35 ----RD---- C:\Program Files
2013-08-06 19:33:04 ----D---- C:\Windows\system32\drivers\etc
2013-08-05 18:57:47 ----HD---- C:\ProgramData
2013-07-28 19:14:19 ----D---- C:\Program Files\Common Files
2013-07-24 11:39:14 ----D---- C:\Windows\Tasks
2013-07-24 11:39:14 ----D---- C:\Windows\system32\Tasks
2013-07-22 12:29:07 ----D---- C:\Windows\system32\LogFiles
2013-07-22 06:08:22 ----D---- C:\Program Files\Common Files\microsoft shared
2013-07-22 05:12:16 ----D---- C:\Windows\system32\restore
2013-07-22 05:09:35 ----D---- C:\Windows\system32\CodeIntegrity
2013-07-22 05:08:11 ----D---- C:\Windows\Help
2013-07-22 05:01:15 ----SHD---- C:\$Recycle.Bin
2013-07-22 05:01:05 ----RD---- C:\Users
2013-07-22 04:56:33 ----D---- C:\Windows\system32\drivers\UMDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2013-07-23 22560]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2013-03-29 2646088]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-02-25 154400]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2008-07-22 51200]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
R3 SNPSTD3;USB PC Camera (SNPSTD3); C:\Windows\system32\DRIVERS\snpstd3.sys [2005-10-13 8701824]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 640288]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-07-22 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-06-21 162408]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-24 257416]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-07-22 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-06-18 117144]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2013-07-10 559016]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-08-08 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 09 srp 2013 08:06
od Márty84
OK, jdeme na to.

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Prohledat a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner[R?].txt ), ten mi sem zkopirujte.

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 13 srp 2013 02:26
od frezent
Omlouvám se za menší nepřítomnost. Neměl jsem přístup k PC. Hned se na to vrhnu a log sem přihodím :)

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 13 srp 2013 02:28
od frezent
# AdwCleaner v2.306 - Logfile created 08/13/2013 at 03:27:37
# Updated 19/07/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (32 bits)
# User : PhoFe - PHOFE-PC
# Boot Mode : Normal
# Running from : C:\Users\PhoFe\AppData\Local\Opera\Opera\temporary_downloads\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\Users\PhoFe\Desktop\nbt

***** [Registry] *****

Key Found : HKCU\Software\Softonic

***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16635

[OK] Registry is clean.

-\\ Mozilla Firefox v22.0 (cs)

File : C:\Users\PhoFe\AppData\Roaming\Mozilla\Firefox\Profiles\u031a68k.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v28.0.1500.95

File : C:\Users\PhoFe\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v [Unable to get version]

File : C:\Users\PhoFe\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [1053 octets] - [13/08/2013 03:27:37]

########## EOF - C:\AdwCleaner[R1].txt - [1113 octets] ##########

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 13 srp 2013 07:29
od Márty84
:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 14 srp 2013 13:36
od frezent
zde:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.14.03

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16635
PhoFe :: PHOFE-PC [administrátor]

Ochrana: Povolena

14.8.2013 13:33:25
MBAM-log-2013-08-14 (14-32-59).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 356348
Uplynulý čas: 57 minut, 38 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 5
C:\Users\PhoFe\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\62227d32-5aed43ae (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\MSASGui.exe (PUP.BitCoinMiner) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mshcshf\mshcshf.exe (BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\msvthe\msvthe.exe (BitcoinMiner) -> Nebyla provedena žádná instrukce.
D:\Stažené soubory\SFInstaller_SFFZ_filezilla_8706467_.exe (PUP.Optional.BundledToolBar.A) -> Nebyla provedena žádná instrukce.

(konec)


Mimochodem, ty BitcoinMinery mi při startu pc dost využívájí CPU tak to pokaždé vypínám.

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 14 srp 2013 18:26
od Márty84
Nalezy nechte odstranit, po restartu pc udelejte novou kontrolu, at zjistime, jestli se to nevraci. Log zase sem, pripadne jen info

Re: RSIT - Prosim o kontrolu logu + csrss.exe + Zpomalený ne

Napsal: 15 srp 2013 21:04
od frezent
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.08.15.04

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16660
PhoFe :: PHOFE-PC [administrátor]

Ochrana: Povolena

15.8.2013 21:10:33
mbam-log-2013-08-15 (21-10-33).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 356908
Uplynulý čas: 53 minut, 49 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)