Stránka 1 z 1

YoutubeBookmark 1.0 a další

Napsal: 11 pro 2013 17:10
od Weika
Dobrý den, milí rádcové,
slušně prosím, jestli by se mě tady mohl někdo ujmout, a budu moc vděčná, když mi poradí s léčbou notebooku.
Příznaky:
- avast hlásil "Tak to bylo těsné...", přestože jsem na počítači zrovna nebyla činná
- v rozšířeních v Google Chromu se mi neustále objevuje aplikace YoutubeBookmark 1.0
- výpadky připojení k internetu (objeví se žlutý trojúhelníček; restartovat router nikdy nepomohlo, musela jsem vypnout a zapnout připojení k síti na notebooku)
- objevila se modrá obrazovka

Podezření z nákazy:
- neuvážená instalace smajlíků do skypu (já vím... klidně mě pranýřujte opovržlivými nadávkami, máte na to právo a mé nejvyšší pochopení)

Další žádost navíc: Ještě bych chtěla požádat, zdali byste mi poradili prověřený způsob, jak se dozbavit avastu z PC.

Předem děkuju mockrát za ochotu a čas strávený řešením mé blbosti. Tisíckrát se vám to vrátí :-)

Log z RSIT:

Logfile of random's system information tool 1.09 (written by random/random)
Run by user at 2013-12-11 16:50:40
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 230 GB (48%) free of 477 GB
Total RAM: 4009 MB (36% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:50:49, on 11.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Google Pinyin 2\GooglePinyinDaemon.exe
C:\Program Files (x86)\Google\Google Pinyin 2\GooglePinyinService.exe
C:\Windows\vsnp2uvc.exe
C:\Users\user\AppData\Local\Viber\Viber.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QuickPinyin.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\user.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.zonealarm.com/?src=hp&tbi ... tsId=&ver=&
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\bh\zonealarm.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: surf and ekEep - {9507765F-E705-AC4E-D5D7-2F8931DCF59F} - C:\Program Files (x86)\surf and ekEep\8n0xHHgHG6.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: DVDVideoSoft.WebPageAdjuster - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
O3 - Toolbar: ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\zonealarmTlbr.dll
O4 - HKLM\..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\1a48c7fc-199c-4b5c-90e4-f9d525363006.exe /check
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKCU\..\Run: [Viber] "C:\Users\user\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: QuickPinyin.exe
O4 - Startup: QuickPinyin.ini
O4 - Global Startup: OneNote Gem Favorite.lnk = C:\Program Files (x86)\OneNoteGem\NoteGemFavorites2013\GemFix.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
O9 - Extra 'Tools' menuitem: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\sshelp~1\psupport.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe

--
End of file - 12322 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe" -service
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\WLANExt.exe 4787440
\??\C:\Windows\system32\conhost.exe "-56492798121106395201450752609-1349289711-2988734312025213980385425959-1847519410
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
taskeng.exe {1CB4F00A-0344-4920-BE28-59380A55AB16}
"C:\Program Files (x86)\Google\Google Pinyin 2\GooglePinyinDaemon.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe"
"C:\Program Files\Fujitsu\PSUtility\PSUService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Program Files (x86)\Google\Google Pinyin 2\GooglePinyinService.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Windows\System32\hkcmd.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Windows\vsnp2uvc.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe"
"C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe"
"C:\Program Files\Fujitsu\PSUtility\TrayManager.exe"
"C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe"
"C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe"
"C:\Users\user\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe"
"C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QuickPinyin.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe"
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.EXE"
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1068.0.1875955285\187569156" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2372 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.1.19580837\2097952136" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.4.1788581378\1757258328" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.5.1417143511\1859790745" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.6.1881663038\1556988649" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.7.215351977\842262540" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.8.131420966\1428416467" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.9.1346538515\545449276" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --extension-process --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.11.1634130229\2073004522" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.12.1406008550\1451931186" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.13.746574641\295432434" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.14.1162127971\2007990960" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.15.1941759210\2103808595" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd\3.0.17_0\nplastpass.dll" --lang=cs --channel="1068.16.966729510\1875340231" /prefetch:-390060480
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="1068.21.1807822980\583216864" /prefetch:673131151
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group13 pct:1f stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-1-Percent/group_32/UMA-Uniformity-Trial-10-Percent/group_01/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --disable-accelerated-video-decode --channel="1068.22.1208132025\1523645091" /prefetch:673131151
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\user\Downloads\RSITx64.exe"
"C:\Windows\system32\wuauclt.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9507765F-E705-AC4E-D5D7-2F8931DCF59F}]
surf and ekEep - C:\Program Files (x86)\surf and ekEep\8n0xHHgHG6.x64.dll [2013-12-05 475648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
DVDVideoSoft IE Extension - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2013-11-28 357432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}]
Zonealarm Helper Object - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\bh\zonealarm.dll [2013-07-22 302992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-11-17 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9507765F-E705-AC4E-D5D7-2F8931DCF59F}]
surf and ekEep - C:\Program Files (x86)\surf and ekEep\8n0xHHgHG6.dll [2012-12-05 426496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-11-17 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
DVDVideoSoft IE Extension - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2013-11-28 294456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - ZoneAlarm Security Toolbar - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\zonealarmTlbr.dll [2013-07-22 289168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-04-20 168216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-04-20 392472]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-04-20 416024]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-04-20 11663464]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-11-19 1886504]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2011-03-30 10372368]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"IntelWireless"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2011-01-05 1933584]
"LoadFUJ02E3"=C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [2010-06-08 45680]
"FDM7"=C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe [2009-11-26 164712]
"PSUTility"=C:\Program Files\Fujitsu\PSUtility\TrayManager.exe [2010-11-13 199528]
"PfNet"=C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe [2010-10-07 6311424]
"LoadFujitsuQuickTouch"=C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [2010-07-16 162416]
"LoadBtnHnd"=C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2010-07-09 21616]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Viber"=C:\Users\user\AppData\Local\Viber\Viber.exe [2013-07-31 912904]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2013-09-25 20133824]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2009-07-14 427520]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-15 20588704]
"uTorrent"=C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe [2013-10-10 393728]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"IndicatorUtility"=C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [2010-09-29 48752]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"20131121"=C:\Program Files\AVAST Software\Avast\setup\emupdate\1a48c7fc-199c-4b5c-90e4-f9d525363006.exe [2013-11-23 180184]
"ZoneAlarm"=C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [2013-10-25 73832]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
OneNote Gem Favorite.lnk - C:\Program Files (x86)\OneNoteGem\NoteGemFavorites2013\GemFix.exe

C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
QuickPinyin.exe
QuickPinyin.ini

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-04-15 385024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-12-11 16:50:40 ----D---- C:\rsit
2013-12-11 16:50:40 ----D---- C:\Program Files\trend micro
2013-12-11 00:26:42 ----SHD---- C:\Config.Msi
2013-12-10 23:11:43 ----SD---- C:\Windows\SYSWOW64\Microsoft
2013-12-10 01:00:24 ----A---- C:\Windows\system32\drivers\kl1.sys
2013-12-10 01:00:15 ----DC---- C:\Windows\system32\DRVSTORE
2013-12-10 01:00:15 ----A---- C:\Windows\system32\drivers\klif.sys
2013-12-10 01:00:15 ----A---- C:\Windows\system32\drivers\klflt.sys
2013-12-10 00:54:25 ----D---- C:\Program Files (x86)\Check Point Software Technologies LTD
2013-12-10 00:54:23 ----D---- C:\Users\user\AppData\Roaming\Check Point Software Technologies LTD
2013-12-10 00:54:23 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-10 00:54:19 ----D---- C:\Program Files (x86)\CheckPoint
2013-12-10 00:53:53 ----D---- C:\ProgramData\CheckPoint
2013-12-08 11:52:11 ----N---- C:\Windows\system32\fpres7-x64.dll
2013-12-08 11:52:11 ----N---- C:\Windows\system32\fpmon7.dll
2013-12-05 19:49:48 ----D---- C:\Program Files (x86)\Movie Subtitles Searcher
2013-12-05 18:59:04 ----D---- C:\Program Files (x86)\ss helper
2013-12-05 18:58:18 ----D---- C:\ProgramData\surf and ekEep
2013-12-05 18:58:17 ----D---- C:\Program Files (x86)\surf and ekEep
2013-12-02 06:43:46 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-12-02 06:43:46 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-12-02 06:43:46 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-12-02 06:43:45 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-12-02 06:43:45 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-12-02 06:43:45 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-12-02 06:43:45 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-11-29 16:51:44 ----D---- C:\Users\user\AppData\Roaming\DVDVideoSoft
2013-11-29 13:03:03 ----D---- C:\Users\user\AppData\Roaming\DVDVideoSoftIEHelpers
2013-11-29 13:02:34 ----D---- C:\Program Files (x86)\DVDVideoSoft
2013-11-24 18:26:20 ----D---- C:\ProgramData\QuickSet
2013-11-24 18:26:19 ----D---- C:\ProgramData\surf and kkeepp
2013-11-24 18:26:19 ----D---- C:\Program Files (x86)\surf and kkeepp
2013-11-24 15:39:19 ----D---- C:\ProgramData\WinterSoft
2013-11-24 15:39:18 ----D---- C:\ProgramData\YoutubeAdblocker
2013-11-24 15:39:18 ----D---- C:\Program Files (x86)\YoutubeAdblocker
2013-11-24 15:38:55 ----D---- C:\ProgramData\surf anad keeep
2013-11-24 15:38:55 ----D---- C:\Program Files (x86)\surf anad keeep
2013-11-24 15:38:31 ----D---- C:\ProgramData\2ba18983070fee78
2013-11-24 15:38:05 ----D---- C:\ProgramData\InstallMate
2013-11-23 15:20:43 ----D---- C:\Users\user\AppData\Roaming\Skype
2013-11-23 15:20:33 ----RD---- C:\Program Files (x86)\Skype
2013-11-23 15:20:23 ----D---- C:\ProgramData\Skype
2013-11-23 10:53:28 ----D---- C:\Users\user\AppData\Roaming\OneNoteGem
2013-11-23 10:47:13 ----D---- C:\ProgramData\Licenses
2013-11-23 10:47:13 ----AD---- C:\ProgramData\TEMP
2013-11-23 10:47:09 ----D---- C:\Program Files (x86)\OneNoteGem
2013-11-23 10:45:18 ----D---- C:\Users\user\AppData\Roaming\Onetastic
2013-11-23 10:45:17 ----D---- C:\Program Files\Onetastic
2013-11-23 10:19:51 ----D---- C:\Users\user\AppData\Roaming\IrfanView
2013-11-23 10:19:50 ----D---- C:\Program Files (x86)\IrfanView
2013-11-21 15:36:51 ----D---- C:\ProgramData\PPLive
2013-11-19 11:04:28 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-11-19 11:00:18 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-11-19 11:00:18 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\url.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-11-19 11:00:11 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-11-19 11:00:11 ----A---- C:\Windows\system32\jsIntl.dll
2013-11-19 11:00:11 ----A---- C:\Windows\system32\elshyph.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\wininet.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\urlmon.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-11-19 11:00:10 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-19 11:00:10 ----A---- C:\Windows\system32\msrating.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\msls31.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\mshtmler.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\msfeedssync.exe
2013-11-19 11:00:10 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\jscript9diag.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\jscript9.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\iertutil.dll
2013-11-19 11:00:10 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\wextract.exe
2013-11-19 11:00:09 ----A---- C:\Windows\system32\webcheck.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\vbscript.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\url.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\pngfilt.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\occache.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\mshtmled.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\mshtml.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\mshta.exe
2013-11-19 11:00:09 ----A---- C:\Windows\system32\msfeeds.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\licmgr10.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\jscript.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\inseng.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\imgutil.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\iexpress.exe
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieUnatt.exe
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieui.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\iesysprep.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\iesetup.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\iernonce.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\iepeers.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieframe.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-11-19 11:00:09 ----A---- C:\Windows\system32\iedkcs32.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieapfltr.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ieapfltr.dat
2013-11-19 11:00:09 ----A---- C:\Windows\system32\ie4uinit.exe
2013-11-19 11:00:09 ----A---- C:\Windows\system32\icardie.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\dxtrans.dll
2013-11-19 11:00:09 ----A---- C:\Windows\system32\dxtmsft.dll
2013-11-19 10:36:59 ----A---- C:\Windows\explorer.exe
2013-11-19 10:36:58 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-11-19 10:36:57 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-11-19 10:36:57 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-11-19 10:36:53 ----A---- C:\Windows\system32\spoolsv.exe
2013-11-19 10:36:52 ----A---- C:\Windows\splwow64.exe
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-11-18 18:33:46 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-11-18 18:33:46 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\XpsPrint.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\WMPhoto.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\UIAnimation.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\FntCache.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\dxgi.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\DWrite.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d3d10warp.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d3d10level9.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d3d10core.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d3d10_1.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d3d10.dll
2013-11-18 18:33:46 ----A---- C:\Windows\system32\d2d1.dll
2013-11-18 16:13:26 ----D---- C:\Users\user\AppData\Roaming\AIMP3
2013-11-18 16:13:22 ----D---- C:\Program Files (x86)\AIMP3
2013-11-18 15:35:15 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-11-18 15:35:15 ----A---- C:\Windows\system32\comctl32.dll
2013-11-18 15:34:51 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-11-18 15:34:51 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-11-18 15:34:51 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-11-18 15:34:51 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-11-18 15:34:44 ----A---- C:\Windows\system32\wintrust.dll
2013-11-18 15:34:43 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-11-18 15:34:23 ----A---- C:\Windows\system32\consent.exe
2013-11-18 15:34:22 ----A---- C:\Windows\system32\appinfo.dll
2013-11-18 15:34:08 ----A---- C:\Windows\system32\wwansvc.dll
2013-11-18 15:34:08 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-11-18 15:34:05 ----A---- C:\Windows\system32\crypt32.dll
2013-11-18 15:34:04 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-11-18 15:34:04 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-11-18 15:34:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-11-18 15:34:04 ----A---- C:\Windows\system32\cryptsvc.dll
2013-11-18 15:34:04 ----A---- C:\Windows\system32\cryptnet.dll
2013-11-18 15:33:41 ----A---- C:\Windows\system32\drivers\afd.sys
2013-11-18 15:33:38 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-11-18 15:33:38 ----A---- C:\Windows\system32\tzres.dll
2013-11-18 15:33:31 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-11-18 15:33:25 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-11-18 15:33:25 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-11-18 15:33:25 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-18 15:33:25 ----A---- C:\Windows\system32\credui.dll
2013-11-18 15:33:25 ----A---- C:\Windows\system32\authui.dll
2013-11-18 15:33:24 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-11-18 15:33:10 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-11-18 15:33:10 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-11-18 15:33:10 ----A---- C:\Windows\system32\lpk.dll
2013-11-18 15:33:10 ----A---- C:\Windows\system32\dciman32.dll
2013-11-18 15:33:10 ----A---- C:\Windows\system32\atmfd.dll
2013-11-18 15:33:09 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-11-18 15:33:09 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-11-18 15:33:09 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-11-18 15:33:09 ----A---- C:\Windows\system32\fontsub.dll
2013-11-18 15:33:09 ----A---- C:\Windows\system32\atmlib.dll
2013-11-18 15:33:07 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-11-18 15:33:07 ----A---- C:\Windows\system32\schannel.dll
2013-11-18 15:33:07 ----A---- C:\Windows\system32\lsasrv.dll
2013-11-18 15:33:07 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-11-18 15:33:07 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-11-18 15:33:07 ----A---- C:\Windows\system32\drivers\cng.sys
2013-11-18 15:33:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-11-18 15:33:06 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-11-18 15:33:06 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-11-18 15:33:06 ----A---- C:\Windows\system32\sspisrv.dll
2013-11-18 15:33:06 ----A---- C:\Windows\system32\sspicli.dll
2013-11-18 15:33:06 ----A---- C:\Windows\system32\secur32.dll
2013-11-18 15:33:06 ----A---- C:\Windows\system32\ncrypt.dll
2013-11-18 15:33:06 ----A---- C:\Windows\system32\lsass.exe
2013-11-18 15:33:00 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-11-18 15:33:00 ----A---- C:\Windows\system32\d3d11.dll
2013-11-18 15:32:59 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-11-18 15:32:59 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-11-18 15:32:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-11-18 15:32:54 ----A---- C:\Windows\system32\KernelBase.dll
2013-11-18 15:32:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-11-18 15:32:53 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-11-18 15:32:53 ----A---- C:\Windows\system32\winsrv.dll
2013-11-18 15:32:53 ----A---- C:\Windows\system32\smss.exe
2013-11-18 15:32:53 ----A---- C:\Windows\system32\kernel32.dll
2013-11-18 15:32:53 ----A---- C:\Windows\system32\csrsrv.dll
2013-11-18 15:32:53 ----A---- C:\Windows\system32\conhost.exe
2013-11-18 15:32:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-11-18 15:32:52 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-11-18 15:32:51 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-11-18 15:32:50 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-11-18 15:32:49 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-11-18 15:32:48 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-11-18 15:32:47 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-11-18 15:32:47 ----A---- C:\Windows\system32\apisetschema.dll
2013-11-18 15:32:46 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-11-18 15:32:45 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-11-18 15:32:43 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-11-18 15:32:42 ----A---- C:\Windows\system32\rpcrt4.dll
2013-11-18 15:32:41 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-11-18 15:32:40 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-11-18 15:32:40 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-11-18 15:32:36 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-11-18 15:32:36 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-11-18 15:32:36 ----A---- C:\Windows\system32\nlasvc.dll
2013-11-18 15:32:36 ----A---- C:\Windows\system32\netcorehc.dll
2013-11-18 15:32:36 ----A---- C:\Windows\system32\ncsi.dll
2013-11-18 15:32:36 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-11-18 15:32:35 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-11-18 15:32:35 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-11-18 15:32:34 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-11-18 15:32:34 ----A---- C:\Windows\system32\nlaapi.dll
2013-11-18 15:32:34 ----A---- C:\Windows\system32\netevent.dll
2013-11-18 15:32:23 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-11-18 15:32:23 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-11-18 15:31:44 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-11-18 15:31:44 ----A---- C:\Windows\system32\WebClnt.dll
2013-11-18 15:31:43 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-11-18 15:31:43 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-11-18 15:31:43 ----A---- C:\Windows\system32\davclnt.dll
2013-11-18 15:31:42 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-11-18 15:31:42 ----A---- C:\Windows\system32\qedit.dll
2013-11-18 15:31:40 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-11-18 15:30:16 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-11-18 15:30:14 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-11-18 15:30:14 ----A---- C:\Windows\system32\mswsock.dll
2013-11-18 15:30:14 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-11-18 15:30:12 ----A---- C:\Windows\system32\win32k.sys
2013-11-18 15:29:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-11-18 15:29:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-11-18 15:29:23 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-11-18 15:29:23 ----A---- C:\Windows\system32\ntdll.dll
2013-11-18 15:29:23 ----A---- C:\Windows\system32\advapi32.dll
2013-11-18 15:29:22 ----A---- C:\Windows\SYSWOW64\tdh.dll
2013-11-18 15:29:22 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-11-18 15:29:22 ----A---- C:\Windows\system32\tdh.dll
2013-11-18 15:29:21 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-11-18 15:29:21 ----A---- C:\Windows\system32\wow64.dll
2013-11-18 15:29:20 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-11-18 15:29:20 ----A---- C:\Windows\SYSWOW64\user.exe
2013-11-18 15:29:20 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-11-18 15:29:20 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-11-18 15:29:20 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-11-18 15:28:41 ----A---- C:\Windows\system32\shell32.dll
2013-11-18 15:28:40 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-11-18 15:28:39 ----A---- C:\Windows\system32\shdocvw.dll
2013-11-18 15:28:38 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-11-18 15:28:30 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-11-18 15:28:30 ----A---- C:\Windows\system32\win32spl.dll
2013-11-18 15:28:29 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-11-18 15:28:29 ----A---- C:\Windows\system32\gdi32.dll
2013-11-18 15:28:28 ----A---- C:\Windows\system32\taskhost.exe
2013-11-18 15:28:26 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-11-18 15:28:26 ----A---- C:\Windows\system32\cryptdlg.dll
2013-11-18 15:28:14 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-11-18 15:28:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-11-18 15:28:09 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-11-18 15:28:09 ----A---- C:\Windows\system32\certutil.exe
2013-11-18 15:28:07 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-11-18 15:28:07 ----A---- C:\Windows\system32\certenc.dll
2013-11-18 15:27:54 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-11-18 15:27:54 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-11-18 15:27:54 ----A---- C:\Windows\system32\cdd.dll
2013-11-18 15:27:27 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-11-18 15:27:26 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-11-18 15:27:26 ----A---- C:\Windows\system32\nshwfp.dll
2013-11-18 15:27:26 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-11-18 15:27:25 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-11-18 15:27:24 ----A---- C:\Windows\system32\scavengeui.dll
2013-11-18 00:25:31 ----D---- C:\Windows\system32\SPReview
2013-11-17 15:59:26 ----A---- C:\Windows\pdf2word.INI
2013-11-17 15:58:11 ----D---- C:\Program Files (x86)\VeryPDF PDF2Word v3.1
2013-11-17 15:44:06 ----D---- C:\ProgramData\Oracle
2013-11-17 15:44:04 ----D---- C:\ProgramData\Sun
2013-11-17 15:43:50 ----A---- C:\Windows\SYSWOW64\javaws.exe
2013-11-17 15:43:40 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-11-17 15:43:40 ----A---- C:\Windows\SYSWOW64\javaw.exe
2013-11-17 15:43:40 ----A---- C:\Windows\SYSWOW64\java.exe
2013-11-17 15:43:24 ----D---- C:\Program Files (x86)\Java
2013-11-17 15:26:47 ----D---- C:\Program Files (x86)\The KMPlayer
2013-11-17 14:48:23 ----D---- C:\Users\user\AppData\Roaming\Mozilla
2013-11-17 14:47:50 ----D---- C:\ProgramData\APN
2013-11-17 00:32:27 ----D---- C:\Users\user\AppData\Roaming\Google
2013-11-17 00:32:27 ----D---- C:\ProgramData\Google
2013-11-17 00:00:16 ----D---- C:\Users\user\AppData\Roaming\AVAST Software
2013-11-16 23:56:39 ----D---- C:\Windows\system32\EventProviders
2013-11-16 23:44:52 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-11-16 23:44:49 ----D---- C:\Windows\system32\Macromed
2013-11-16 23:12:01 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2013-11-16 23:09:47 ----D---- C:\Program Files\Common Files\Adobe
2013-11-16 23:08:33 ----D---- C:\Program Files (x86)\Adobe Media Player
2013-11-16 23:07:00 ----D---- C:\Windows\SYSWOW64\Macromed
2013-11-16 23:06:48 ----D---- C:\Program Files (x86)\Adobe
2013-11-16 23:06:00 ----D---- C:\ProgramData\Adobe
2013-11-16 23:04:14 ----D---- C:\Users\user\AppData\Roaming\Macromedia
2013-11-16 23:04:07 ----D---- C:\Users\user\AppData\Roaming\Adobe
2013-11-16 21:45:00 ----A---- C:\Windows\system32\netfxperf.dll
2013-11-16 21:45:00 ----A---- C:\Windows\system32\dfshim.dll
2013-11-16 21:44:52 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-11-16 21:44:48 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-11-16 21:44:47 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-11-16 21:44:40 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-11-16 21:44:40 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-11-16 21:44:39 ----A---- C:\Windows\system32\sysmain.dll
2013-11-16 21:44:37 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-11-16 21:44:35 ----A---- C:\Windows\system32\wmp.dll
2013-11-16 21:44:34 ----A---- C:\Windows\system32\mscoree.dll
2013-11-16 21:44:33 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-11-16 21:44:32 ----A---- C:\Windows\system32\secproc_isv.dll
2013-11-16 21:44:32 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-11-16 21:44:32 ----A---- C:\Windows\system32\mf.dll
2013-11-16 21:44:31 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-11-16 21:44:31 ----A---- C:\Windows\system32\xpsservices.dll
2013-11-16 21:44:31 ----A---- C:\Windows\system32\secproc.dll
2013-11-16 21:44:31 ----A---- C:\Windows\system32\RMActivate.exe
2013-11-16 21:44:29 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-11-16 21:44:29 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-11-16 21:44:28 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-11-16 21:44:27 ----A---- C:\Windows\system32\schedsvc.dll
2013-11-16 21:44:27 ----A---- C:\Windows\system32\ole32.dll
2013-11-16 21:44:26 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-11-16 21:44:26 ----A---- C:\Windows\system32\spwizui.dll
2013-11-16 21:44:25 ----A---- C:\Windows\system32\taskschd.dll
2013-11-16 21:44:24 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-11-16 21:44:24 ----A---- C:\Windows\system32\wevtsvc.dll
2013-11-16 21:44:24 ----A---- C:\Windows\system32\RacEngn.dll
2013-11-16 21:44:24 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-11-16 21:44:24 ----A---- C:\Windows\system32\diagperf.dll
2013-11-16 21:44:23 ----A---- C:\Windows\system32\vssapi.dll
2013-11-16 21:44:22 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-11-16 21:44:22 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-11-16 21:44:22 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-11-16 21:44:21 ----A---- C:\Windows\system32\UIRibbon.dll
2013-11-16 21:44:21 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-11-16 21:44:20 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-11-16 21:44:18 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-11-16 21:44:18 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-11-16 21:44:18 ----A---- C:\Windows\system32\WsmSvc.dll
2013-11-16 21:44:18 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-11-16 21:44:17 ----A---- C:\Windows\system32\rdpdd.dll
2013-11-16 21:44:17 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-11-16 21:44:17 ----A---- C:\Windows\system32\PresentationHost.exe
2013-11-16 21:44:16 ----A---- C:\Windows\system32\spreview.exe
2013-11-16 21:44:16 ----A---- C:\Windows\system32\spinstall.exe
2013-11-16 21:44:16 ----A---- C:\Windows\system32\MPSSVC.dll
2013-11-16 21:44:16 ----A---- C:\Windows\system32\CertEnroll.dll
2013-11-16 21:44:15 ----A---- C:\Windows\system32\WinSAT.exe
2013-11-16 21:44:14 ----A---- C:\Windows\system32\d3d9.dll
2013-11-16 21:44:13 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-11-16 21:44:13 ----A---- C:\Windows\system32\SearchFolder.dll
2013-11-16 21:44:12 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-11-16 21:44:12 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-11-16 21:44:11 ----A---- C:\Windows\system32\VSSVC.exe
2013-11-16 21:44:11 ----A---- C:\Windows\system32\gpsvc.dll
2013-11-16 21:44:11 ----A---- C:\Windows\system32\dwmcore.dll
2013-11-16 21:44:10 ----A---- C:\Windows\system32\drivers\http.sys
2013-11-16 21:44:10 ----A---- C:\Windows\system32\dbgeng.dll
2013-11-16 21:44:08 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-11-16 21:44:07 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-11-16 21:44:07 ----A---- C:\Windows\system32\actxprxy.dll
2013-11-16 21:44:06 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-11-16 21:44:06 ----A---- C:\Windows\system32\termsrv.dll
2013-11-16 21:44:06 ----A---- C:\Windows\system32\qmgr.dll
2013-11-16 21:44:06 ----A---- C:\Windows\system32\audiosrv.dll
2013-11-16 21:44:05 ----A---- C:\Windows\system32\mstsc.exe
2013-11-16 21:44:04 ----A---- C:\Windows\system32\netlogon.dll
2013-11-16 21:44:04 ----A---- C:\Windows\system32\imapi2fs.dll
2013-11-16 21:44:03 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-11-16 21:44:03 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-11-16 21:44:03 ----A---- C:\Windows\system32\winhttp.dll
2013-11-16 21:44:02 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-11-16 21:44:02 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-11-16 21:44:02 ----A---- C:\Windows\system32\setupapi.dll
2013-11-16 21:44:02 ----A---- C:\Windows\system32\rpcss.dll
2013-11-16 21:44:02 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-11-16 21:44:02 ----A---- C:\Windows\system32\propsys.dll
2013-11-16 21:44:02 ----A---- C:\Windows\system32\msv1_0.dll
2013-11-16 21:44:01 ----A---- C:\Windows\system32\wbengine.exe
2013-11-16 21:44:00 ----A---- C:\Windows\system32\werconcpl.dll
2013-11-16 21:44:00 ----A---- C:\Windows\system32\taskeng.exe
2013-11-16 21:44:00 ----A---- C:\Windows\system32\odbc32.dll
2013-11-16 21:43:59 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-11-16 21:43:59 ----A---- C:\Windows\system32\WSDApi.dll
2013-11-16 21:43:59 ----A---- C:\Windows\system32\user32.dll
2013-11-16 21:43:58 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-11-16 21:43:58 ----A---- C:\Windows\system32\dhcpcore.dll
2013-11-16 21:43:58 ----A---- C:\Windows\system32\certmgr.dll
2013-11-16 21:43:57 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-11-16 21:43:57 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-11-16 21:43:57 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-11-16 21:43:56 ----A---- C:\Windows\system32\tsmf.dll
2013-11-16 21:43:56 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-11-16 21:43:55 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-11-16 21:43:55 ----A---- C:\Windows\system32\shlwapi.dll
2013-11-16 21:43:55 ----A---- C:\Windows\system32\msdtctm.dll
2013-11-16 21:43:55 ----A---- C:\Windows\system32\msdrm.dll
2013-11-16 21:43:55 ----A---- C:\Windows\system32\framedynos.dll
2013-11-16 21:43:54 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll

Re: YoutubeBookmark 1.0 a další

Napsal: 11 pro 2013 17:11
od Weika
2013-11-16 21:43:54 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-11-16 21:43:54 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-11-16 21:43:54 ----A---- C:\Windows\system32\netshell.dll
2013-11-16 21:43:53 ----A---- C:\Windows\system32\ws2_32.dll
2013-11-16 21:43:53 ----A---- C:\Windows\system32\winlogon.exe
2013-11-16 21:43:53 ----A---- C:\Windows\system32\netcfgx.dll
2013-11-16 21:43:52 ----A---- C:\Windows\system32\wmpps.dll
2013-11-16 21:43:52 ----A---- C:\Windows\system32\lsm.exe
2013-11-16 21:43:52 ----A---- C:\Windows\system32\comdlg32.dll
2013-11-16 21:43:51 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-11-16 21:43:51 ----A---- C:\Windows\system32\Query.dll
2013-11-16 21:43:51 ----A---- C:\Windows\system32\apphelp.dll
2013-11-16 21:43:50 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2013-11-16 21:43:50 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2013-11-16 21:43:50 ----A---- C:\Windows\system32\wpdshext.dll
2013-11-16 21:43:50 ----A---- C:\Windows\system32\drvstore.dll
2013-11-16 21:43:50 ----A---- C:\Windows\system32\azroles.dll
2013-11-16 21:43:49 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-11-16 21:43:49 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-11-16 21:43:49 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-11-16 21:43:49 ----A---- C:\Windows\system32\Vault.dll
2013-11-16 21:43:49 ----A---- C:\Windows\system32\QAGENT.DLL
2013-11-16 21:43:49 ----A---- C:\Windows\system32\cmd.exe
2013-11-16 21:43:49 ----A---- C:\Windows\system32\BFE.DLL
2013-11-16 21:43:48 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2013-11-16 21:43:48 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2013-11-16 21:43:48 ----A---- C:\Windows\system32\samsrv.dll
2013-11-16 21:43:48 ----A---- C:\Windows\system32\lpksetup.exe
2013-11-16 21:43:48 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-11-16 21:43:47 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2013-11-16 21:43:46 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-11-16 21:43:45 ----A---- C:\Windows\SYSWOW64\Query.dll
2013-11-16 21:43:45 ----A---- C:\Windows\system32\sxs.dll
2013-11-16 21:43:45 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-11-16 21:43:44 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2013-11-16 21:43:44 ----A---- C:\Windows\system32\Wldap32.dll
2013-11-16 21:43:44 ----A---- C:\Windows\system32\taskcomp.dll
2013-11-16 21:43:44 ----A---- C:\Windows\system32\mfds.dll
2013-11-16 21:43:44 ----A---- C:\Windows\system32\mcbuilder.exe
2013-11-16 21:43:43 ----A---- C:\Windows\SYSWOW64\upnp.dll
2013-11-16 21:43:43 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2013-11-16 21:43:43 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2013-11-16 21:43:43 ----A---- C:\Windows\system32\pnidui.dll
2013-11-16 21:43:43 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-11-16 21:43:43 ----A---- C:\Windows\system32\hgprint.dll
2013-11-16 21:43:42 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-11-16 21:43:42 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2013-11-16 21:43:42 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2013-11-16 21:43:42 ----A---- C:\Windows\system32\webservices.dll
2013-11-16 21:43:42 ----A---- C:\Windows\system32\SessEnv.dll
2013-11-16 21:43:41 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2013-11-16 21:43:41 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2013-11-16 21:43:41 ----A---- C:\Windows\system32\winsta.dll
2013-11-16 21:43:41 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-11-16 21:43:40 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2013-11-16 21:43:40 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2013-11-16 21:43:40 ----A---- C:\Windows\system32\fveapi.dll
2013-11-16 21:43:40 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-11-16 21:43:40 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-11-16 21:43:40 ----A---- C:\Windows\system32\dot3api.dll
2013-11-16 21:43:39 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2013-11-16 21:43:39 ----A---- C:\Windows\system32\schtasks.exe
2013-11-16 21:43:39 ----A---- C:\Windows\system32\prncache.dll
2013-11-16 21:43:39 ----A---- C:\Windows\system32\mcmde.dll
2013-11-16 21:43:38 ----A---- C:\Windows\SYSWOW64\userenv.dll
2013-11-16 21:43:38 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2013-11-16 21:43:38 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-11-16 21:43:38 ----A---- C:\Windows\system32\wlanpref.dll
2013-11-16 21:43:38 ----A---- C:\Windows\system32\vpnike.dll
2013-11-16 21:43:37 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2013-11-16 21:43:37 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-11-16 21:43:37 ----A---- C:\Windows\system32\userenv.dll
2013-11-16 21:43:37 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-11-16 21:43:37 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-11-16 21:43:36 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2013-11-16 21:43:36 ----A---- C:\Windows\system32\photowiz.dll
2013-11-16 21:43:36 ----A---- C:\Windows\system32\evr.dll
2013-11-16 21:43:35 ----A---- C:\Windows\SYSWOW64\cmd.exe
2013-11-16 21:43:35 ----A---- C:\Windows\system32\wmpmde.dll
2013-11-16 21:43:35 ----A---- C:\Windows\system32\sppobjs.dll
2013-11-16 21:43:35 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-11-16 21:43:35 ----A---- C:\Windows\system32\FXSSVC.exe
2013-11-16 21:43:35 ----A---- C:\Windows\system32\framedyn.dll
2013-11-16 21:43:35 ----A---- C:\Windows\system32\AudioSes.dll
2013-11-16 21:43:35 ----A---- C:\Windows\system32\aepdu.dll
2013-11-16 21:43:34 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-11-16 21:43:34 ----A---- C:\Windows\system32\wmpeffects.dll
2013-11-16 21:43:34 ----A---- C:\Windows\system32\SyncCenter.dll
2013-11-16 21:43:34 ----A---- C:\Windows\system32\srvsvc.dll
2013-11-16 21:43:34 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-11-16 21:43:33 ----A---- C:\Windows\system32\shsvcs.dll
2013-11-16 21:43:33 ----A---- C:\Windows\system32\aeinv.dll
2013-11-16 21:43:32 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2013-11-16 21:43:32 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-11-16 21:43:32 ----A---- C:\Windows\SYSWOW64\mfds.dll
2013-11-16 21:43:32 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2013-11-16 21:43:32 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-11-16 21:43:32 ----A---- C:\Windows\system32\fde.dll
2013-11-16 21:43:31 ----A---- C:\Windows\system32\stobject.dll
2013-11-16 21:43:31 ----A---- C:\Windows\system32\netdiagfx.dll
2013-11-16 21:43:31 ----A---- C:\Windows\system32\localsec.dll
2013-11-16 21:43:31 ----A---- C:\Windows\system32\imapi2.dll
2013-11-16 21:43:31 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-11-16 21:43:31 ----A---- C:\Windows\system32\bcryptprimitives.dll
2013-11-16 21:43:30 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-11-16 21:43:30 ----A---- C:\Windows\system32\netid.dll
2013-11-16 21:43:30 ----A---- C:\Windows\system32\inetpp.dll
2013-11-16 21:43:30 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-11-16 21:43:29 ----A---- C:\Windows\SYSWOW64\azroles.dll
2013-11-16 21:43:29 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-11-16 21:43:29 ----A---- C:\Windows\system32\spp.dll
2013-11-16 21:43:29 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-11-16 21:43:29 ----A---- C:\Windows\system32\biocpl.dll
2013-11-16 21:43:28 ----A---- C:\Windows\system32\msinfo32.exe
2013-11-16 21:43:27 ----A---- C:\Windows\SYSWOW64\themeui.dll
2013-11-16 21:43:27 ----A---- C:\Windows\system32\scansetting.dll
2013-11-16 21:43:27 ----A---- C:\Windows\system32\printui.dll
2013-11-16 21:43:27 ----A---- C:\Windows\system32\pla.dll
2013-11-16 21:43:27 ----A---- C:\Windows\system32\mspbda.dll
2013-11-16 21:43:26 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-11-16 21:43:26 ----A---- C:\Windows\SYSWOW64\spp.dll
2013-11-16 21:43:26 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-11-16 21:43:26 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-11-16 21:43:25 ----A---- C:\Windows\system32\wusa.exe
2013-11-16 21:43:25 ----A---- C:\Windows\system32\wiaservc.dll
2013-11-16 21:43:25 ----A---- C:\Windows\system32\vds.exe
2013-11-16 21:43:25 ----A---- C:\Windows\system32\msdri.dll
2013-11-16 21:43:25 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-11-16 21:43:25 ----A---- C:\Windows\system32\aitagent.exe
2013-11-16 21:43:24 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2013-11-16 21:43:24 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2013-11-16 21:43:24 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2013-11-16 21:43:24 ----A---- C:\Windows\system32\rpchttp.dll
2013-11-16 21:43:24 ----A---- C:\Windows\system32\mscms.dll
2013-11-16 21:43:24 ----A---- C:\Windows\system32\drivers\pci.sys
2013-11-16 21:43:23 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2013-11-16 21:43:23 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-11-16 21:43:23 ----A---- C:\Windows\system32\wisptis.exe
2013-11-16 21:43:23 ----A---- C:\Windows\system32\PkgMgr.exe
2013-11-16 21:43:23 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-11-16 21:43:23 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2013-11-16 21:43:22 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2013-11-16 21:43:22 ----A---- C:\Windows\SYSWOW64\evr.dll
2013-11-16 21:43:22 ----A---- C:\Windows\system32\ocsetup.exe
2013-11-16 21:43:21 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-11-16 21:43:21 ----A---- C:\Windows\SYSWOW64\calc.exe
2013-11-16 21:43:21 ----A---- C:\Windows\system32\sppwinob.dll
2013-11-16 21:43:21 ----A---- C:\Windows\system32\ocsetapi.dll
2013-11-16 21:43:21 ----A---- C:\Windows\system32\DXP.dll
2013-11-16 21:43:20 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2013-11-16 21:43:20 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-11-16 21:43:20 ----A---- C:\Windows\system32\eapp3hst.dll
2013-11-16 21:43:20 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-11-16 21:43:20 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-11-16 21:43:20 ----A---- C:\Windows\system32\ci.dll
2013-11-16 21:43:19 ----A---- C:\Windows\system32\wcncsvc.dll
2013-11-16 21:43:19 ----A---- C:\Windows\system32\upnp.dll
2013-11-16 21:43:19 ----A---- C:\Windows\system32\Robocopy.exe
2013-11-16 21:43:19 ----A---- C:\Windows\system32\mprapi.dll
2013-11-16 21:43:19 ----A---- C:\Windows\system32\eapphost.dll
2013-11-16 21:43:18 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-11-16 21:43:18 ----A---- C:\Windows\SYSWOW64\sxs.dll
2013-11-16 21:43:18 ----A---- C:\Windows\system32\thumbcache.dll
2013-11-16 21:43:18 ----A---- C:\Windows\system32\t2embed.dll
2013-11-16 21:43:18 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2013-11-16 21:43:17 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2013-11-16 21:43:17 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-11-16 21:43:17 ----A---- C:\Windows\SYSWOW64\netshell.dll
2013-11-16 21:43:17 ----A---- C:\Windows\system32\hal.dll
2013-11-16 21:43:16 ----A---- C:\Windows\system32\scecli.dll
2013-11-16 21:43:16 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-11-16 21:43:16 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-11-16 21:43:16 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-11-16 21:43:16 ----A---- C:\Windows\system32\dwmredir.dll
2013-11-16 21:43:15 ----A---- C:\Windows\SYSWOW64\prncache.dll
2013-11-16 21:43:15 ----A---- C:\Windows\system32\puiobj.dll
2013-11-16 21:43:15 ----A---- C:\Windows\system32\msasn1.dll
2013-11-16 21:43:15 ----A---- C:\Windows\system32\iasrad.dll
2013-11-16 21:43:15 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2013-11-16 21:43:15 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-11-16 21:43:14 ----A---- C:\Windows\SYSWOW64\printui.dll
2013-11-16 21:43:14 ----A---- C:\Windows\system32\themeui.dll
2013-11-16 21:43:14 ----A---- C:\Windows\system32\onex.dll
2013-11-16 21:43:14 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-11-16 21:43:13 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-11-16 21:43:13 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2013-11-16 21:43:13 ----A---- C:\Windows\SYSWOW64\net1.exe
2013-11-16 21:43:12 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2013-11-16 21:43:11 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2013-11-16 21:43:11 ----A---- C:\Windows\system32\wdc.dll
2013-11-16 21:43:11 ----A---- C:\Windows\system32\scesrv.dll
2013-11-16 21:43:11 ----A---- C:\Windows\system32\rasmans.dll
2013-11-16 21:43:10 ----A---- C:\Windows\system32\wlangpui.dll
2013-11-16 21:43:10 ----A---- C:\Windows\system32\sdengin2.dll
2013-11-16 21:43:10 ----A---- C:\Windows\system32\msftedit.dll
2013-11-16 21:43:09 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-11-16 21:43:09 ----A---- C:\Windows\system32\wiadefui.dll
2013-11-16 21:43:09 ----A---- C:\Windows\system32\VAN.dll
2013-11-16 21:43:09 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-11-16 21:43:09 ----A---- C:\Windows\system32\netcenter.dll
2013-11-16 21:43:09 ----A---- C:\Windows\system32\dskquoui.dll
2013-11-16 21:43:08 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2013-11-16 21:43:08 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2013-11-16 21:43:08 ----A---- C:\Windows\system32\wscapi.dll
2013-11-16 21:43:08 ----A---- C:\Windows\system32\SndVol.exe
2013-11-16 21:43:08 ----A---- C:\Windows\system32\samcli.dll
2013-11-16 21:43:08 ----A---- C:\Windows\system32\regapi.dll
2013-11-16 21:43:08 ----A---- C:\Windows\system32\iasacct.dll
2013-11-16 21:43:08 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-11-16 21:43:08 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-11-16 21:43:07 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2013-11-16 21:43:07 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2013-11-16 21:43:07 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2013-11-16 21:43:07 ----A---- C:\Windows\system32\TabSvc.dll
2013-11-16 21:43:07 ----A---- C:\Windows\system32\srchadmin.dll
2013-11-16 21:43:07 ----A---- C:\Windows\system32\QUTIL.DLL
2013-11-16 21:43:06 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2013-11-16 21:43:06 ----A---- C:\Windows\SYSWOW64\webservices.dll
2013-11-16 21:43:06 ----A---- C:\Windows\SYSWOW64\fde.dll
2013-11-16 21:43:06 ----A---- C:\Windows\system32\setupcl.exe
2013-11-16 21:43:06 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-11-16 21:43:05 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2013-11-16 21:43:05 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2013-11-16 21:43:05 ----A---- C:\Windows\system32\wksprt.exe
2013-11-16 21:43:05 ----A---- C:\Windows\system32\rastls.dll
2013-11-16 21:43:04 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-11-16 21:43:04 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-11-16 21:43:04 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-11-16 21:43:03 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-11-16 21:43:03 ----A---- C:\Windows\SYSWOW64\pla.dll
2013-11-16 21:43:03 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2013-11-16 21:43:03 ----A---- C:\Windows\system32\tapisrv.dll
2013-11-16 21:43:03 ----A---- C:\Windows\system32\netiohlp.dll
2013-11-16 21:43:03 ----A---- C:\Windows\system32\msconfig.exe
2013-11-16 21:43:03 ----A---- C:\Windows\system32\mimefilt.dll
2013-11-16 21:43:03 ----A---- C:\Windows\system32\ListSvc.dll
2013-11-16 21:43:03 ----A---- C:\Windows\system32\hgcpl.dll
2013-11-16 21:43:03 ----A---- C:\Windows\system32\drivers\raspptp.sys
2013-11-16 21:43:02 ----A---- C:\Windows\system32\lsmproxy.dll
2013-11-16 21:43:02 ----A---- C:\Windows\system32\fdeploy.dll
2013-11-16 21:43:02 ----A---- C:\Windows\system32\drivers\ks.sys
2013-11-16 21:43:02 ----A---- C:\Windows\system32\clusapi.dll
2013-11-16 21:43:02 ----A---- C:\Windows\system32\basecsp.dll
2013-11-16 21:43:01 ----A---- C:\Windows\SYSWOW64\winsta.dll
2013-11-16 21:43:01 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2013-11-16 21:43:01 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-11-16 21:43:01 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-11-16 21:43:00 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2013-11-16 21:43:00 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-11-16 21:43:00 ----A---- C:\Windows\system32\mtxclu.dll
2013-11-16 21:42:59 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2013-11-16 21:42:59 ----A---- C:\Windows\system32\riched20.dll
2013-11-16 21:42:59 ----A---- C:\Windows\system32\dnscmmc.dll
2013-11-16 21:42:58 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-11-16 21:42:58 ----A---- C:\Windows\system32\powercpl.dll
2013-11-16 21:42:58 ----A---- C:\Windows\system32\logoncli.dll
2013-11-16 21:42:57 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2013-11-16 21:42:57 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-11-16 21:42:57 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2013-11-16 21:42:57 ----A---- C:\Windows\SYSWOW64\onex.dll
2013-11-16 21:42:57 ----A---- C:\Windows\system32\themecpl.dll
2013-11-16 21:42:57 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-11-16 21:42:57 ----A---- C:\Windows\system32\nci.dll
2013-11-16 21:42:56 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2013-11-16 21:42:56 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2013-11-16 21:42:56 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-11-16 21:42:56 ----A---- C:\Windows\system32\netjoin.dll
2013-11-16 21:42:56 ----A---- C:\Windows\system32\Narrator.exe
2013-11-16 21:42:56 ----A---- C:\Windows\system32\Faultrep.dll
2013-11-16 21:42:56 ----A---- C:\Windows\system32\eudcedit.exe
2013-11-16 21:42:55 ----A---- C:\Windows\SYSWOW64\samcli.dll
2013-11-16 21:42:55 ----A---- C:\Windows\SYSWOW64\proquota.exe
2013-11-16 21:42:55 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2013-11-16 21:42:55 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-11-16 21:42:55 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-11-16 21:42:55 ----A---- C:\Windows\system32\wkssvc.dll
2013-11-16 21:42:55 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-11-16 21:42:54 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2013-11-16 21:42:54 ----A---- C:\Windows\SYSWOW64\regapi.dll
2013-11-16 21:42:54 ----A---- C:\Windows\SYSWOW64\msutb.dll
2013-11-16 21:42:54 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2013-11-16 21:42:54 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2013-11-16 21:42:54 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-11-16 21:42:54 ----A---- C:\Windows\system32\sppcomapi.dll
2013-11-16 21:42:54 ----A---- C:\Windows\system32\cabview.dll
2013-11-16 21:42:54 ----A---- C:\Windows\system32\autochk.exe
2013-11-16 21:42:54 ----A---- C:\Windows\system32\autofmt.exe
2013-11-16 21:42:53 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2013-11-16 21:42:53 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2013-11-16 21:42:53 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2013-11-16 21:42:53 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2013-11-16 21:42:53 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2013-11-16 21:42:53 ----A---- C:\Windows\system32\shsetup.dll
2013-11-16 21:42:53 ----A---- C:\Windows\system32\nshipsec.dll
2013-11-16 21:42:53 ----A---- C:\Windows\system32\fms.dll
2013-11-16 21:42:53 ----A---- C:\Windows\system32\autoconv.exe
2013-11-16 21:42:53 ----A---- C:\Windows\system32\audiodg.exe
2013-11-16 21:42:52 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2013-11-16 21:42:52 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2013-11-16 21:42:52 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2013-11-16 21:42:52 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2013-11-16 21:42:52 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2013-11-16 21:42:52 ----A---- C:\Windows\system32\wpd_ci.dll
2013-11-16 21:42:52 ----A---- C:\Windows\system32\sdclt.exe
2013-11-16 21:42:52 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-11-16 21:42:52 ----A---- C:\Windows\system32\bcdsrv.dll
2013-11-16 21:42:51 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2013-11-16 21:42:51 ----A---- C:\Windows\system32\wwanconn.dll
2013-11-16 21:42:51 ----A---- C:\Windows\system32\wlanui.dll
2013-11-16 21:42:51 ----A---- C:\Windows\system32\prntvpt.dll
2013-11-16 21:42:51 ----A---- C:\Windows\system32\mscorier.dll
2013-11-16 21:42:51 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-11-16 21:42:50 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2013-11-16 21:42:50 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-11-16 21:42:50 ----A---- C:\Windows\system32\SmiEngine.dll
2013-11-16 21:42:50 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-11-16 21:42:50 ----A---- C:\Windows\system32\dps.dll
2013-11-16 21:42:49 ----A---- C:\Windows\SYSWOW64\netid.dll
2013-11-16 21:42:49 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-11-16 21:42:49 ----A---- C:\Windows\system32\mprddm.dll
2013-11-16 21:42:49 ----A---- C:\Windows\system32\fontext.dll
2013-11-16 21:42:49 ----A---- C:\Windows\system32\Display.dll
2013-11-16 21:42:49 ----A---- C:\Windows\system32\AxInstSv.dll
2013-11-16 21:42:48 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-11-16 21:42:48 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-11-16 21:42:48 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2013-11-16 21:42:48 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-11-16 21:42:48 ----A---- C:\Windows\system32\mblctr.exe
2013-11-16 21:42:48 ----A---- C:\Windows\system32\credssp.dll
2013-11-16 21:42:48 ----A---- C:\Windows\system32\batmeter.dll
2013-11-16 21:42:47 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2013-11-16 21:42:47 ----A---- C:\Windows\SYSWOW64\Vault.dll
2013-11-16 21:42:47 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-11-16 21:42:47 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2013-11-16 21:42:47 ----A---- C:\Windows\SYSWOW64\rastls.dll
2013-11-16 21:42:47 ----A---- C:\Windows\SYSWOW64\nci.dll
2013-11-16 21:42:47 ----A---- C:\Windows\system32\DiagCpl.dll
2013-11-16 21:42:46 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2013-11-16 21:42:46 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-11-16 21:42:46 ----A---- C:\Windows\system32\usercpl.dll
2013-11-16 21:42:46 ----A---- C:\Windows\system32\rtutils.dll
2013-11-16 21:42:46 ----A---- C:\Windows\system32\provsvc.dll
2013-11-16 21:42:46 ----A---- C:\Windows\system32\bootres.dll
2013-11-16 21:42:45 ----A---- C:\Windows\system32\wpccpl.dll
2013-11-16 21:42:45 ----A---- C:\Windows\system32\sppsvc.exe
2013-11-16 21:42:45 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-11-16 21:42:44 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2013-11-16 21:42:44 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2013-11-16 21:42:44 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-11-16 21:42:44 ----A---- C:\Windows\system32\rasppp.dll
2013-11-16 21:42:44 ----A---- C:\Windows\system32\dot3cfg.dll
2013-11-16 21:42:43 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2013-11-16 21:42:43 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-11-16 21:42:43 ----A---- C:\Windows\system32\dxdiagn.dll
2013-11-16 21:42:43 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-11-16 21:42:42 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-11-16 21:42:42 ----A---- C:\Windows\SYSWOW64\userinit.exe
2013-11-16 21:42:42 ----A---- C:\Windows\system32\hbaapi.dll
2013-11-16 21:42:41 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2013-11-16 21:42:41 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2013-11-16 21:42:41 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2013-11-16 21:42:41 ----A---- C:\Windows\system32\taskmgr.exe
2013-11-16 21:42:41 ----A---- C:\Windows\system32\proquota.exe
2013-11-16 21:42:41 ----A---- C:\Windows\system32\prnfldr.dll
2013-11-16 21:42:41 ----A---- C:\Windows\system32\pdh.dll
2013-11-16 21:42:40 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-11-16 21:42:40 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-11-16 21:42:39 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2013-11-16 21:42:39 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2013-11-16 21:42:39 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2013-11-16 21:42:39 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2013-11-16 21:42:39 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2013-11-16 21:42:39 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-11-16 21:42:39 ----A---- C:\Windows\system32\userinit.exe
2013-11-16 21:42:39 ----A---- C:\Windows\system32\untfs.dll
2013-11-16 21:42:39 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-11-16 21:42:38 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2013-11-16 21:42:38 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-11-16 21:42:37 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2013-11-16 21:42:37 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2013-11-16 21:42:37 ----A---- C:\Windows\system32\slui.exe
2013-11-16 21:42:36 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2013-11-16 21:42:36 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2013-11-16 21:42:36 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2013-11-16 21:42:36 ----A---- C:\Windows\system32\zipfldr.dll
2013-11-16 21:42:36 ----A---- C:\Windows\system32\msieftp.dll
2013-11-16 21:42:36 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-11-16 21:42:34 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2013-11-16 21:42:34 ----A---- C:\Windows\SYSWOW64\scecli.dll
2013-11-16 21:42:34 ----A---- C:\Windows\SYSWOW64\mscories.dll
2013-11-16 21:42:34 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-11-16 21:42:34 ----A---- C:\Windows\SYSWOW64\localsec.dll
2013-11-16 21:42:34 ----A---- C:\Windows\SYSWOW64\fontext.dll
2013-11-16 21:42:34 ----A---- C:\Windows\system32\sud.dll
2013-11-16 21:42:34 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-11-16 21:42:33 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2013-11-16 21:42:33 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2013-11-16 21:42:33 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-11-16 21:42:33 ----A---- C:\Windows\system32\networkmap.dll
2013-11-16 21:42:33 ----A---- C:\Windows\system32\dot3svc.dll
2013-11-16 21:42:33 ----A---- C:\Windows\system32\cryptui.dll
2013-11-16 21:42:32 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2013-11-16 21:42:32 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-11-16 21:42:32 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2013-11-16 21:42:32 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2013-11-16 21:42:32 ----A---- C:\Windows\system32\twext.dll
2013-11-16 21:42:32 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-11-16 21:42:32 ----A---- C:\Windows\system32\ActionCenter.dll
2013-11-16 21:42:31 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-11-16 21:42:31 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2013-11-16 21:42:31 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2013-11-16 21:42:31 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2013-11-16 21:42:31 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-11-16 21:42:31 ----A---- C:\Windows\system32\uxlib.dll
2013-11-16 21:42:31 ----A---- C:\Windows\system32\OobeFldr.dll
2013-11-16 21:42:31 ----A---- C:\Windows\system32\bcdedit.exe
2013-11-16 21:42:30 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2013-11-16 21:42:30 ----A---- C:\Windows\system32\recovery.dll
2013-11-16 21:42:30 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-11-16 21:42:30 ----A---- C:\Windows\system32\azroleui.dll
2013-11-16 21:42:28 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2013-11-16 21:42:28 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2013-11-16 21:42:28 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2013-11-16 21:42:28 ----A---- C:\Windows\system32\tzutil.exe
2013-11-16 21:42:28 ----A---- C:\Windows\system32\sisbkup.dll
2013-11-16 21:42:28 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-11-16 21:42:28 ----A---- C:\Windows\system32\isoburn.exe
2013-11-16 21:42:28 ----A---- C:\Windows\system32\efscore.dll
2013-11-16 21:42:28 ----A---- C:\Windows\system32\dsuiext.dll
2013-11-16 21:42:28 ----A---- C:\Windows\system32\cca.dll
2013-11-16 21:42:28 ----A---- C:\Windows\system32\asycfilt.dll
2013-11-16 21:42:27 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2013-11-16 21:42:27 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2013-11-16 21:42:27 ----A---- C:\Windows\system32\systemcpl.dll
2013-11-16 21:42:27 ----A---- C:\Windows\system32\syncui.dll
2013-11-16 21:42:27 ----A---- C:\Windows\system32\sdcpl.dll
2013-11-16 21:42:27 ----A---- C:\Windows\system32\recdisc.exe
2013-11-16 21:42:27 ----A---- C:\Windows\system32\netplwiz.dll
2013-11-16 21:42:27 ----A---- C:\Windows\system32\httpapi.dll
2013-11-16 21:42:26 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2013-11-16 21:42:26 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2013-11-16 21:42:26 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2013-11-16 21:42:26 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2013-11-16 21:42:26 ----A---- C:\Windows\system32\shwebsvc.dll
2013-11-16 21:42:26 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-11-16 21:42:26 ----A---- C:\Windows\system32\autoplay.dll
2013-11-16 21:42:25 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2013-11-16 21:42:25 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2013-11-16 21:42:25 ----A---- C:\Windows\system32\wlanmsm.dll
2013-11-16 21:42:25 ----A---- C:\Windows\system32\sysclass.dll
2013-11-16 21:42:25 ----A---- C:\Windows\system32\sdrsvc.dll
2013-11-16 21:42:25 ----A---- C:\Windows\system32\ncryptui.dll
2013-11-16 21:42:25 ----A---- C:\Windows\system32\certcli.dll
2013-11-16 21:42:25 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-11-16 21:42:24 ----A---- C:\Windows\SYSWOW64\wusa.exe
2013-11-16 21:42:24 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-11-16 21:42:24 ----A---- C:\Windows\system32\msvidc32.dll
2013-11-16 21:42:24 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-11-16 21:42:23 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2013-11-16 21:42:23 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2013-11-16 21:42:23 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2013-11-16 21:42:23 ----A---- C:\Windows\system32\spwizeng.dll
2013-11-16 21:42:23 ----A---- C:\Windows\system32\MFPlay.dll
2013-11-16 21:42:22 ----A---- C:\Windows\SYSWOW64\sud.dll
2013-11-16 21:42:22 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2013-11-16 21:42:22 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-11-16 21:42:22 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2013-11-16 21:42:22 ----A---- C:\Windows\SYSWOW64\credssp.dll
2013-11-16 21:42:22 ----A---- C:\Windows\system32\vdsutil.dll
2013-11-16 21:42:22 ----A---- C:\Windows\system32\termmgr.dll
2013-11-16 21:42:21 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2013-11-16 21:42:21 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2013-11-16 21:42:21 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2013-11-16 21:42:21 ----A---- C:\Windows\system32\sethc.exe
2013-11-16 21:42:21 ----A---- C:\Windows\system32\msscp.dll
2013-11-16 21:42:20 ----A---- C:\Windows\SYSWOW64\ftp.exe
2013-11-16 21:42:20 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2013-11-16 21:42:20 ----A---- C:\Windows\system32\ReAgent.dll
2013-11-16 21:42:20 ----A---- C:\Windows\system32\ntlanman.dll
2013-11-16 21:42:19 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2013-11-16 21:42:19 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2013-11-16 21:42:19 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2013-11-16 21:42:19 ----A---- C:\Windows\SYSWOW64\efscore.dll
2013-11-16 21:42:19 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-11-16 21:42:19 ----A---- C:\Windows\system32\sqlcese30.dll
2013-11-16 21:42:19 ----A---- C:\Windows\system32\rdpd3d.dll
2013-11-16 21:42:19 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-11-16 21:42:19 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-11-16 21:42:18 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2013-11-16 21:42:18 ----A---- C:\Windows\system32\ssText3d.scr
2013-11-16 21:42:18 ----A---- C:\Windows\system32\iyuv_32.dll
2013-11-16 21:42:18 ----A---- C:\Windows\system32\iTVData.dll
2013-11-16 21:42:17 ----A---- C:\Windows\SYSWOW64\syncui.dll
2013-11-16 21:42:17 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2013-11-16 21:42:17 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2013-11-16 21:42:17 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-11-16 21:42:17 ----A---- C:\Windows\system32\srvcli.dll
2013-11-16 21:42:17 ----A---- C:\Windows\system32\slwga.dll
2013-11-16 21:42:17 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-11-16 21:42:16 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2013-11-16 21:42:16 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2013-11-16 21:42:16 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2013-11-16 21:42:16 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2013-11-16 21:42:16 ----A---- C:\Windows\system32\nslookup.exe
2013-11-16 21:42:16 ----A---- C:\Windows\system32\msiexec.exe
2013-11-16 21:42:15 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2013-11-16 21:42:15 ----A---- C:\Windows\SYSWOW64\sethc.exe
2013-11-16 21:42:15 ----A---- C:\Windows\SYSWOW64\riched20.dll
2013-11-16 21:42:15 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2013-11-16 21:42:15 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2013-11-16 21:42:15 ----A---- C:\Windows\system32\wavemsp.dll
2013-11-16 21:42:15 ----A---- C:\Windows\system32\ntprint.dll
2013-11-16 21:42:15 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-11-16 21:42:15 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-11-16 21:42:15 ----A---- C:\Windows\system32\bcdboot.exe
2013-11-16 21:42:15 ----A---- C:\Windows\system32\acppage.dll
2013-11-16 21:42:14 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2013-11-16 21:42:14 ----A---- C:\Windows\system32\srrstr.dll
2013-11-16 21:42:14 ----A---- C:\Windows\system32\sppnp.dll
2013-11-16 21:42:13 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2013-11-16 21:42:13 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-11-16 21:42:13 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2013-11-16 21:42:13 ----A---- C:\Windows\SYSWOW64\migisol.dll
2013-11-16 21:42:13 ----A---- C:\Windows\SYSWOW64\fms.dll
2013-11-16 21:42:13 ----A---- C:\Windows\SYSWOW64\activeds.dll
2013-11-16 21:42:13 ----A---- C:\Windows\system32\TSpkg.dll
2013-11-16 21:42:13 ----A---- C:\Windows\system32\certprop.dll
2013-11-16 21:42:12 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2013-11-16 21:42:12 ----A---- C:\Windows\SYSWOW64\dpx.dll
2013-11-16 21:42:12 ----A---- C:\Windows\system32\wkscli.dll
2013-11-16 21:42:12 ----A---- C:\Windows\system32\remotepg.dll
2013-11-16 21:42:12 ----A---- C:\Windows\system32\networkexplorer.dll
2013-11-16 21:42:12 ----A---- C:\Windows\system32\cabinet.dll
2013-11-16 21:42:11 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2013-11-16 21:42:11 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-11-16 21:42:11 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2013-11-16 21:42:11 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2013-11-16 21:42:11 ----A---- C:\Windows\system32\dfrgui.exe
2013-11-16 21:42:10 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-11-16 21:42:10 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-11-16 21:42:10 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2013-11-16 21:42:10 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-11-16 21:42:10 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2013-11-16 21:42:10 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2013-11-16 21:42:10 ----A---- C:\Windows\system32\wsnmp32.dll
2013-11-16 21:42:10 ----A---- C:\Windows\system32\wmpdxm.dll
2013-11-16 21:42:10 ----A---- C:\Windows\system32\WinSCard.dll
2013-11-16 21:42:10 ----A---- C:\Windows\system32\net1.exe
2013-11-16 21:42:10 ----A---- C:\Windows\system32\ftp.exe
2013-11-16 21:42:09 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2013-11-16 21:42:09 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2013-11-16 21:42:09 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2013-11-16 21:42:09 ----A---- C:\Windows\system32\wvc.dll
2013-11-16 21:42:09 ----A---- C:\Windows\system32\wsqmcons.exe
2013-11-16 21:42:09 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-11-16 21:42:09 ----A---- C:\Windows\system32\blackbox.dll
2013-11-16 21:42:08 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-11-16 21:42:08 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2013-11-16 21:42:08 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2013-11-16 21:42:08 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2013-11-16 21:42:08 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-11-16 21:42:08 ----A---- C:\Windows\system32\msyuv.dll
2013-11-16 21:42:08 ----A---- C:\Windows\system32\mfps.dll
2013-11-16 21:42:07 ----A---- C:\Windows\SYSWOW64\twext.dll
2013-11-16 21:42:07 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2013-11-16 21:42:07 ----A---- C:\Windows\SYSWOW64\mstask.dll
2013-11-16 21:42:07 ----A---- C:\Windows\system32\mapistub.dll
2013-11-16 21:42:07 ----A---- C:\Windows\system32\mapi32.dll
2013-11-16 21:42:06 ----A---- C:\Windows\twain_32.dll
2013-11-16 21:42:06 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2013-11-16 21:42:06 ----A---- C:\Windows\SYSWOW64\qcap.dll
2013-11-16 21:42:06 ----A---- C:\Windows\system32\unimdmat.dll
2013-11-16 21:42:06 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-11-16 21:42:06 ----A---- C:\Windows\system32\OpcServices.dll
2013-11-16 21:42:06 ----A---- C:\Windows\system32\msrle32.dll
2013-11-16 21:42:06 ----A---- C:\Windows\system32\Bubbles.scr
2013-11-16 21:42:05 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2013-11-16 21:42:05 ----A---- C:\Windows\SYSWOW64\slwga.dll
2013-11-16 21:42:05 ----A---- C:\Windows\SYSWOW64\qasf.dll
2013-11-16 21:42:05 ----A---- C:\Windows\system32\tsbyuv.dll
2013-11-16 21:42:05 ----A---- C:\Windows\system32\seclogon.dll
2013-11-16 21:42:05 ----A---- C:\Windows\system32\Ribbons.scr
2013-11-16 21:42:05 ----A---- C:\Windows\system32\iscsium.dll
2013-11-16 21:42:05 ----A---- C:\Windows\system32\ifsutil.dll
2013-11-16 21:42:05 ----A---- C:\Windows\system32\diskraid.exe
2013-11-16 21:42:04 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2013-11-16 21:42:04 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2013-11-16 21:42:04 ----A---- C:\Windows\system32\Mystify.scr
2013-11-16 21:42:04 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-11-16 21:42:03 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2013-11-16 21:42:03 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2013-11-16 21:42:03 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2013-11-16 21:42:03 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-11-16 21:42:03 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2013-11-16 21:42:03 ----A---- C:\Windows\system32\wmpshell.dll
2013-11-16 21:42:03 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-11-16 21:42:03 ----A---- C:\Windows\system32\rdpencom.dll
2013-11-16 21:42:03 ----A---- C:\Windows\system32\perfmon.exe
2013-11-16 21:42:03 ----A---- C:\Windows\system32\muifontsetup.dll
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\msscp.dll
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2013-11-16 21:42:02 ----A---- C:\Windows\SYSWOW64\acppage.dll
2013-11-16 21:42:02 ----A---- C:\Windows\system32\umb.dll
2013-11-16 21:42:02 ----A---- C:\Windows\system32\tlscsp.dll
2013-11-16 21:42:02 ----A---- C:\Windows\system32\qasf.dll
2013-11-16 21:42:02 ----A---- C:\Windows\system32\netutils.dll
2013-11-16 21:42:02 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-11-16 21:42:02 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-11-16 21:42:01 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2013-11-16 21:42:01 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2013-11-16 21:42:01 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2013-11-16 21:42:01 ----A---- C:\Windows\system32\runonce.exe
2013-11-16 21:42:01 ----A---- C:\Windows\system32\FXSAPI.dll
2013-11-16 21:42:01 ----A---- C:\Windows\system32\dbghelp.dll
2013-11-16 21:42:01 ----A---- C:\Windows\system32\ActionQueue.dll
2013-11-16 21:42:01 ----A---- C:\Windows\bfsvc.exe
2013-11-16 21:42:00 ----A---- C:\Windows\SYSWOW64\raschap.dll
2013-11-16 21:42:00 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2013-11-16 21:42:00 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2013-11-16 21:42:00 ----A---- C:\Windows\SYSWOW64\input.dll
2013-11-16 21:42:00 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2013-11-16 21:42:00 ----A---- C:\Windows\system32\wpdwcn.dll
2013-11-16 21:42:00 ----A---- C:\Windows\system32\wiavideo.dll
2013-11-16 21:42:00 ----A---- C:\Windows\system32\syssetup.dll
2013-11-16 21:42:00 ----A---- C:\Windows\system32\raschap.dll
2013-11-16 21:41:59 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2013-11-16 21:41:59 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2013-11-16 21:41:59 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2013-11-16 21:41:59 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2013-11-16 21:41:59 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-11-16 21:41:59 ----A---- C:\Windows\system32\MdSched.exe
2013-11-16 21:41:58 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2013-11-16 21:41:58 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2013-11-16 21:41:58 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2013-11-16 21:41:58 ----A---- C:\Windows\SYSWOW64\onexui.dll
2013-11-16 21:41:58 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2013-11-16 21:41:58 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-11-16 21:41:58 ----A---- C:\Windows\system32\vdsbas.dll
2013-11-16 21:41:58 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-11-16 21:41:57 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2013-11-16 21:41:57 ----A---- C:\Windows\SYSWOW64\runonce.exe
2013-11-16 21:41:57 ----A---- C:\Windows\SYSWOW64\logagent.exe
2013-11-16 21:41:57 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2013-11-16 21:41:57 ----A---- C:\Windows\system32\nltest.exe
2013-11-16 21:41:57 ----A---- C:\Windows\system32\mstask.dll
2013-11-16 21:41:57 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-11-16 21:41:57 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-11-16 21:41:57 ----A---- C:\Windows\system32\bitsadmin.exe
2013-11-16 21:41:56 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2013-11-16 21:41:56 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2013-11-16 21:41:56 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-11-16 21:41:56 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2013-11-16 21:41:56 ----A---- C:\Windows\system32\shacct.dll
2013-11-16 21:41:56 ----A---- C:\Windows\system32\cscapi.dll
2013-11-16 21:41:55 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2013-11-16 21:41:55 ----A---- C:\Windows\SYSWOW64\shacct.dll
2013-11-16 21:41:55 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-11-16 21:41:55 ----A---- C:\Windows\system32\vss_ps.dll
2013-11-16 21:41:55 ----A---- C:\Windows\system32\tabcal.exe
2013-11-16 21:41:55 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-11-16 21:41:55 ----A---- C:\Windows\system32\logman.exe
2013-11-16 21:41:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-11-16 21:41:54 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2013-11-16 21:41:54 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2013-11-16 21:41:54 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2013-11-16 21:41:54 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2013-11-16 21:41:54 ----A---- C:\Windows\system32\WPDSp.dll
2013-11-16 21:41:54 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-11-16 21:41:54 ----A---- C:\Windows\system32\qcap.dll
2013-11-16 21:41:54 ----A---- C:\Windows\system32\msnetobj.dll
2013-11-16 21:41:53 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2013-11-16 21:41:53 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2013-11-16 21:41:53 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2013-11-16 21:41:53 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2013-11-16 21:41:53 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2013-11-16 21:41:53 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-11-16 21:41:53 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-11-16 21:41:53 ----A---- C:\Windows\system32\qdv.dll
2013-11-16 21:41:53 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\pdh.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\logman.exe
2013-11-16 21:41:52 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2013-11-16 21:41:52 ----A---- C:\Windows\system32\spbcd.dll
2013-11-16 21:41:52 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-11-16 21:41:52 ----A---- C:\Windows\system32\fphc.dll
2013-11-16 21:41:52 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-11-16 21:41:52 ----A---- C:\Windows\system32\dot3ui.dll
2013-11-16 21:41:51 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2013-11-16 21:41:51 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2013-11-16 21:41:51 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2013-11-16 21:41:51 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2013-11-16 21:41:51 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2013-11-16 21:41:51 ----A---- C:\Windows\system32\takeown.exe
2013-11-16 21:41:51 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\utildll.dll
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\fphc.dll
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2013-11-16 21:41:50 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2013-11-16 21:41:50 ----A---- C:\Windows\system32\amstream.dll
2013-11-16 21:41:49 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2013-11-16 21:41:49 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2013-11-16 21:41:49 ----A---- C:\Windows\SYSWOW64\takeown.exe
2013-11-16 21:41:49 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2013-11-16 21:41:49 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-11-16 21:41:49 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-11-16 21:41:49 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-11-16 21:41:48 ----A---- C:\Windows\SYSWOW64\qdv.dll
2013-11-16 21:41:48 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2013-11-16 21:41:48 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2013-11-16 21:41:48 ----A---- C:\Windows\system32\shimgvw.dll
2013-11-16 21:41:48 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-11-16 21:41:48 ----A---- C:\Windows\system32\nrpsrv.dll
2013-11-16 21:41:48 ----A---- C:\Windows\system32\iasrecst.dll
2013-11-16 21:41:48 ----A---- C:\Windows\system32\djoin.exe
2013-11-16 21:41:48 ----A---- C:\Windows\system32\cmstp.exe
2013-11-16 21:41:48 ----A---- C:\Windows\system32\CertPolEng.dll
2013-11-16 21:41:47 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2013-11-16 21:41:47 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2013-11-16 21:41:47 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2013-11-16 21:41:47 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2013-11-16 21:41:47 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2013-11-16 21:41:47 ----A---- C:\Windows\SYSWOW64\cca.dll
2013-11-16 21:41:47 ----A---- C:\Windows\system32\WavDest.dll
2013-11-16 21:41:47 ----A---- C:\Windows\system32\fdProxy.dll
2013-11-16 21:41:46 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2013-11-16 21:41:46 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2013-11-16 21:41:46 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2013-11-16 21:41:46 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-11-16 21:41:46 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2013-11-16 21:41:46 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2013-11-16 21:41:46 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-11-16 21:41:46 ----A---- C:\Windows\system32\KMSVC.DLL
2013-11-16 21:41:46 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-11-16 21:41:45 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2013-11-16 21:41:45 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2013-11-16 21:41:45 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2013-11-16 21:41:45 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2013-11-16 21:41:45 ----A---- C:\Windows\system32\sscore.dll
2013-11-16 21:41:45 ----A---- C:\Windows\system32\relog.exe
2013-11-16 21:41:45 ----A---- C:\Windows\system32\mydocs.dll
2013-11-16 21:41:45 ----A---- C:\Windows\system32\mobsync.exe
2013-11-16 21:41:45 ----A---- C:\Windows\system32\iscsicli.exe
2013-11-16 21:41:45 ----A---- C:\Windows\system32\diskpart.exe
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\relog.exe
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2013-11-16 21:41:44 ----A---- C:\Windows\SYSWOW64\amstream.dll
2013-11-16 21:41:44 ----A---- C:\Windows\system32\msdmo.dll
2013-11-16 21:41:44 ----A---- C:\Windows\system32\itircl.dll
2013-11-16 21:41:44 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\itircl.dll
2013-11-16 21:41:43 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2013-11-16 21:41:43 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-11-16 21:41:43 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-11-16 21:41:43 ----A---- C:\Windows\system32\dot3msm.dll
2013-11-16 21:41:42 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2013-11-16 21:41:42 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2013-11-16 21:41:42 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2013-11-16 21:41:42 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-11-16 21:41:42 ----A---- C:\Windows\system32\eappgnui.dll
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\findstr.exe
2013-11-16 21:41:41 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2013-11-16 21:41:41 ----A---- C:\Windows\system32\sppc.dll
2013-11-16 21:41:41 ----A---- C:\Windows\system32\mciqtz32.dll
2013-11-16 21:41:41 ----A---- C:\Windows\system32\luainstall.dll
2013-11-16 21:41:41 ----A---- C:\Windows\system32\choice.exe
2013-11-16 21:41:41 ----A---- C:\Windows\system32\findstr.exe
2013-11-16 21:41:41 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-11-16 21:41:40 ----A---- C:\Windows\SYSWOW64\netutils.dll
2013-11-16 21:41:40 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2013-11-16 21:41:40 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2013-11-16 21:41:40 ----A---- C:\Windows\system32\schedcli.dll
2013-11-16 21:41:40 ----A---- C:\Windows\system32\onexui.dll
2013-11-16 21:41:40 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-11-16 21:41:39 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-11-16 21:41:39 ----A---- C:\Windows\SYSWOW64\spopk.dll
2013-11-16 21:41:39 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-11-16 21:41:39 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2013-11-16 21:41:39 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2013-11-16 21:41:39 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-11-16 21:41:39 ----A---- C:\Windows\system32\spopk.dll
2013-11-16 21:41:39 ----A---- C:\Windows\system32\repair-bde.exe
2013-11-16 21:41:39 ----A---- C:\Windows\system32\manage-bde.exe
2013-11-16 21:41:39 ----A---- C:\Windows\system32\inetmib1.dll
2013-11-16 21:41:38 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2013-11-16 21:41:38 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2013-11-16 21:41:38 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2013-11-16 21:41:38 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2013-11-16 21:41:38 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-11-16 21:41:38 ----A---- C:\Windows\system32\odbcconf.dll
2013-11-16 21:41:37 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2013-11-16 21:41:37 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2013-11-16 21:41:37 ----A---- C:\Windows\system32\fixmapi.exe
2013-11-16 21:41:36 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-11-16 21:41:36 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2013-11-16 21:41:36 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-11-16 21:41:36 ----A---- C:\Windows\system32\FXSMON.dll
2013-11-16 21:41:36 ----A---- C:\Windows\system32\elsTrans.dll
2013-11-16 21:41:35 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-11-16 21:41:35 ----A---- C:\Windows\SYSWOW64\perfts.dll
2013-11-16 21:41:35 ----A---- C:\Windows\SYSWOW64\imm32.dll
2013-11-16 21:41:35 ----A---- C:\Windows\system32\wshbth.dll
2013-11-16 21:41:35 ----A---- C:\Windows\system32\TRAPI.dll
2013-11-16 21:41:35 ----A---- C:\Windows\system32\LogonUI.exe
2013-11-16 21:41:35 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-11-16 21:41:34 ----A---- C:\Windows\system32\napdsnap.dll
2013-11-16 21:41:34 ----A---- C:\Windows\system32\dsauth.dll
2013-11-16 21:41:33 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2013-11-16 21:41:33 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2013-11-16 21:41:33 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2013-11-16 21:41:33 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-11-16 21:41:33 ----A---- C:\Windows\system32\FXSUNATD.exe
2013-11-16 21:41:33 ----A---- C:\Windows\system32\cscdll.dll
2013-11-16 21:41:33 ----A---- C:\Windows\system32\bitsperf.dll
2013-11-16 21:41:32 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2013-11-16 21:41:32 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2013-11-16 21:41:32 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2013-11-16 21:41:32 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2013-11-16 21:41:32 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2013-11-16 21:41:32 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-11-16 21:41:31 ----A---- C:\Windows\system32\wsdchngr.dll
2013-11-16 21:41:31 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-11-16 21:41:30 ----A---- C:\Windows\SYSWOW64\sscore.dll
2013-11-16 21:41:30 ----A---- C:\Windows\system32\shgina.dll
2013-11-16 21:41:29 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2013-11-16 21:41:29 ----A---- C:\Windows\SYSWOW64\shgina.dll
2013-11-16 21:41:29 ----A---- C:\Windows\SYSWOW64\riched32.dll
2013-11-16 21:41:28 ----A---- C:\Windows\system32\wshirda.dll
2013-11-16 21:41:28 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-11-16 21:41:28 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-11-16 21:41:27 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-11-16 21:41:27 ----A---- C:\Windows\system32\drivers\appid.sys
2013-11-16 21:41:26 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2013-11-16 21:41:26 ----A---- C:\Windows\system32\riched32.dll
2013-11-16 21:41:26 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-11-16 21:41:26 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-11-16 21:41:25 ----A---- C:\Windows\system32\spwmp.dll
2013-11-16 21:41:25 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-11-16 21:41:25 ----A---- C:\Windows\system32\browseui.dll
2013-11-16 21:41:24 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-11-16 21:41:24 ----A---- C:\Windows\SYSWOW64\browseui.dll
2013-11-16 21:41:24 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-11-16 21:41:23 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-11-16 21:41:23 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2013-11-16 21:41:23 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-11-16 21:41:23 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2013-11-16 21:41:23 ----A---- C:\Windows\system32\shunimpl.dll
2013-11-16 21:41:23 ----A---- C:\Windows\system32\dxmasf.dll
2013-11-16 21:41:23 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-11-16 21:41:23 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-11-16 21:41:23 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-11-16 21:41:23 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-11-16 21:41:23 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-11-16 21:41:22 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2013-11-16 21:41:21 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDSG.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDSF.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDPO.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-11-16 21:41:21 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-11-16 21:41:20 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-11-16 21:41:20 ----A---- C:\Windows\system32\wmploc.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\system32\KBDUS.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\system32\KBDMON.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-11-16 21:41:19 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-11-16 21:41:18 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-11-16 21:41:17 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2013-11-16 21:41:17 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2013-11-16 21:41:17 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2013-11-16 21:41:17 ----A---- C:\Windows\system32\spwizres.dll
2013-11-16 21:41:17 ----A---- C:\Windows\system32\pifmgr.dll
2013-11-16 21:41:17 ----A---- C:\Windows\system32\nlsbres.dll
2013-11-16 21:41:17 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-11-16 21:41:17 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-11-16 21:41:17 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-11-16 21:41:16 ----A---- C:\Windows\system32\BlbEvents.dll
2013-11-16 21:40:48 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2013-11-16 21:40:47 ----A---- C:\Windows\system32\dpx.dll
2013-11-16 21:40:41 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2013-11-16 21:40:35 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2013-11-16 21:39:47 ----A---- C:\Windows\system32\wbemcomn.dll
2013-11-16 21:39:44 ----A---- C:\Windows\system32\sqmapi.dll
2013-11-16 20:54:44 ----A---- C:\Windows\system32\drivers\bthport.sys
2013-11-16 20:54:43 ----A---- C:\Windows\system32\fsquirt.exe
2013-11-16 20:54:43 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2013-11-16 20:54:31 ----A---- C:\Windows\system32\esent.dll
2013-11-16 20:54:30 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-11-16 20:54:29 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-11-16 20:54:29 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-11-16 20:54:29 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-11-16 20:54:28 ----A---- C:\Windows\system32\drivers\storport.sys
2013-11-16 20:54:28 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-11-16 20:54:28 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-11-16 20:54:27 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-11-16 20:54:27 ----A---- C:\Windows\system32\fsutil.exe
2013-11-16 20:54:27 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-11-16 18:50:47 ----D---- C:\Users\user\AppData\Roaming\uTorrent
2013-11-16 15:32:38 ----D---- C:\Windows\system32\MRT
2013-11-16 15:32:32 ----A---- C:\Windows\system32\MRT.exe
2013-11-16 13:42:12 ----D---- C:\Windows\SYSWOW64\Wat
2013-11-16 13:42:12 ----D---- C:\Windows\system32\Wat
2013-11-16 10:32:23 ----A---- C:\Windows\system32\Wdfres.dll
2013-11-16 10:32:23 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-11-16 10:17:11 ----A---- C:\Windows\system32\browserchoice.exe
2013-11-16 09:51:21 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-11-16 09:51:20 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-11-16 09:51:19 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-11-16 09:51:19 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-11-16 09:51:16 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-11-16 09:51:15 ----A---- C:\Windows\system32\WUDFx.dll
2013-11-16 09:51:15 ----A---- C:\Windows\system32\WUDFHost.exe
2013-11-16 09:39:26 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-11-16 09:39:26 ----A---- C:\Windows\system32\wmi.dll
2013-11-16 09:39:26 ----A---- C:\Windows\system32\imagehlp.dll
2013-11-16 09:39:26 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-11-16 09:39:25 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-11-16 01:38:20 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-11-16 01:38:20 ----A---- C:\Windows\system32\xmllite.dll
2013-11-16 01:38:18 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-11-16 01:38:18 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-11-16 01:38:18 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-11-16 01:38:18 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-11-16 01:38:18 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-11-16 01:38:18 ----A---- C:\Windows\system32\odbctrac.dll
2013-11-16 01:38:18 ----A---- C:\Windows\system32\odbccu32.dll
2013-11-16 01:38:18 ----A---- C:\Windows\system32\odbccr32.dll
2013-11-16 01:38:18 ----A---- C:\Windows\system32\odbccp32.dll
2013-11-16 01:37:59 ----A---- C:\Windows\system32\poqexec.exe
2013-11-16 01:37:58 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-11-16 01:37:57 ----A---- C:\Windows\system32\mstscax.dll
2013-11-16 01:37:56 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-11-16 01:37:56 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-11-16 01:37:56 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-11-16 01:37:56 ----A---- C:\Windows\system32\tsgqec.dll
2013-11-16 01:37:56 ----A---- C:\Windows\system32\aaclient.dll
2013-11-16 01:37:39 ----A---- C:\Windows\system32\CPFilters.dll
2013-11-16 01:37:38 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-11-16 01:37:38 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-11-16 01:37:38 ----A---- C:\Windows\system32\sbe.dll
2013-11-16 01:37:03 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-11-16 01:37:03 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-11-16 01:37:03 ----A---- C:\Windows\system32\quartz.dll
2013-11-16 01:37:03 ----A---- C:\Windows\system32\qdvd.dll
2013-11-16 01:36:53 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-11-16 01:36:53 ----A---- C:\Windows\system32\ntshrui.dll
2013-11-16 01:36:52 ----A---- C:\Windows\system32\tquery.dll
2013-11-16 01:36:51 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-11-16 01:36:51 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-11-16 01:36:51 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-11-16 01:36:51 ----A---- C:\Windows\system32\mssrch.dll
2013-11-16 01:36:50 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-11-16 01:36:50 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-11-16 01:36:50 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-11-16 01:36:50 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-11-16 01:36:50 ----A---- C:\Windows\system32\mssvp.dll
2013-11-16 01:36:50 ----A---- C:\Windows\system32\mssph.dll
2013-11-16 01:36:49 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-11-16 01:36:49 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-11-16 01:36:49 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-11-16 01:36:49 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-11-16 01:36:49 ----A---- C:\Windows\system32\mssphtb.dll
2013-11-16 01:36:48 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-11-16 01:36:48 ----A---- C:\Windows\system32\msscntrs.dll
2013-11-16 01:36:34 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-11-16 01:36:34 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-11-16 01:36:34 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-11-16 01:36:32 ----A---- C:\Windows\system32\webio.dll
2013-11-16 01:36:31 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-11-16 01:35:36 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-11-16 01:34:52 ----A---- C:\Windows\system32\mfc42u.dll
2013-11-16 01:34:51 ----A---- C:\Windows\system32\mfc42.dll
2013-11-16 01:34:50 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-11-16 01:34:50 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-11-16 01:34:34 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-11-16 01:34:32 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-11-16 01:34:32 ----A---- C:\Windows\system32\rdpwsx.dll
2013-11-16 01:34:32 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-11-16 01:33:54 ----A---- C:\Windows\system32\msxml3.dll
2013-11-16 01:33:53 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-11-16 01:33:53 ----A---- C:\Windows\system32\msxml6.dll
2013-11-16 01:33:52 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-11-16 01:33:52 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-11-16 01:33:52 ----A---- C:\Windows\system32\msxml3r.dll
2013-11-16 01:33:49 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-11-16 01:33:48 ----A---- C:\Windows\system32\profsvc.dll
2013-11-16 01:33:48 ----A---- C:\Windows\system32\profprov.dll
2013-11-16 01:33:47 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-11-16 01:33:47 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-11-16 01:33:47 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-11-16 01:33:47 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-11-16 01:33:47 ----A---- C:\Windows\system32\dnsapi.dll
2013-11-16 01:33:08 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-11-16 01:33:08 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-11-16 01:33:08 ----A---- C:\Windows\system32\dpnet.dll
2013-11-16 01:33:08 ----A---- C:\Windows\system32\dpnaddr.dll
2013-11-16 01:32:49 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-11-16 01:32:49 ----A---- C:\Windows\system32\drivers\srv.sys
2013-11-16 01:32:48 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-11-16 01:32:47 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-11-16 01:32:47 ----A---- C:\Windows\system32\usp10.dll
2013-11-16 01:32:44 ----A---- C:\Windows\system32\drivers\netio.sys
2013-11-16 01:32:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-11-16 01:32:38 ----A---- C:\Windows\system32\Wpc.dll
2013-11-16 01:32:37 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-11-16 01:32:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-11-16 01:32:37 ----A---- C:\Windows\system32\gameux.dll
2013-11-16 01:32:11 ----A---- C:\Windows\system32\psisdecd.dll
2013-11-16 01:32:10 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-11-16 01:32:03 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-11-16 01:31:19 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-11-16 01:31:18 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-11-16 01:31:18 ----A---- C:\Windows\system32\kerberos.dll
2013-11-16 01:31:16 ----A---- C:\Windows\system32\msi.dll
2013-11-16 01:31:15 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-11-16 01:31:05 ----A---- C:\Windows\system32\wow64win.dll
2013-11-16 01:31:04 ----A---- C:\Windows\system32\wow64cpu.dll
2013-11-16 01:31:04 ----A---- C:\Windows\system32\ntvdm64.dll
2013-11-16 01:29:32 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-11-16 01:29:32 ----A---- C:\Windows\system32\synceng.dll
2013-11-16 01:29:28 ----A---- C:\Windows\system32\winload.exe
2013-11-16 01:29:27 ----A---- C:\Windows\system32\winresume.exe
2013-11-16 01:29:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-11-16 01:29:22 ----A---- C:\Windows\system32\kdusb.dll
2013-11-16 01:29:22 ----A---- C:\Windows\system32\kdcom.dll
2013-11-16 01:29:22 ----A---- C:\Windows\system32\kd1394.dll
2013-11-16 01:28:37 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-11-16 01:27:52 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-11-16 01:27:52 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-11-16 01:27:52 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-11-16 01:27:52 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-11-16 01:27:52 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-11-16 01:27:52 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-11-16 01:27:46 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-11-16 01:27:46 ----A---- C:\Windows\system32\netapi32.dll
2013-11-16 01:27:46 ----A---- C:\Windows\system32\browser.dll
2013-11-16 01:27:46 ----A---- C:\Windows\system32\browcli.dll
2013-11-16 01:27:45 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-11-16 01:27:34 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-11-16 01:27:34 ----A---- C:\Windows\system32\prevhost.exe
2013-11-16 01:27:32 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-11-16 01:27:30 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-11-16 01:27:30 ----A---- C:\Windows\system32\srcore.dll
2013-11-16 01:27:30 ----A---- C:\Windows\system32\rstrui.exe
2013-11-16 01:27:29 ----A---- C:\Windows\system32\msvcrt.dll
2013-11-16 01:27:28 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-11-16 01:27:25 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-11-16 01:27:25 ----A---- C:\Windows\system32\inetcomm.dll
2013-11-16 01:27:23 ----A---- C:\Windows\system32\WFS.exe
2013-11-16 01:27:23 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-11-16 01:27:17 ----A---- C:\Windows\system32\localspl.dll
2013-11-16 01:27:12 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-11-16 01:27:02 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-11-16 01:27:02 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-11-16 01:27:02 ----A---- C:\Windows\system32\oleaut32.dll
2013-11-16 01:27:02 ----A---- C:\Windows\system32\oleacc.dll
2013-11-16 01:26:59 ----A---- C:\Windows\system32\EncDec.dll
2013-11-16 01:26:58 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-11-16 01:26:36 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-11-16 01:26:35 ----A---- C:\Windows\system32\cdosys.dll
2013-11-16 01:24:34 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-11-16 01:21:18 ----D---- C:\ProgramData\Microsoft Help
2013-11-16 01:19:40 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-11-16 01:19:40 ----A---- C:\Windows\system32\packager.dll
2013-11-16 00:50:05 ----D---- C:\Users\user\AppData\Roaming\ViberPC
2013-11-16 00:49:49 ----D---- C:\Program Files\CCleaner
2013-11-16 00:39:02 ----D---- C:\Program Files (x86)\Anki
2013-11-16 00:33:56 ----D---- C:\Users\user\AppData\Roaming\WinRAR
2013-11-16 00:33:28 ----D---- C:\Program Files\WinRAR
2013-11-16 00:30:30 ----D---- C:\Data
2013-11-16 00:24:56 ----D---- C:\Program Files (x86)\Google
2013-11-16 00:23:38 ----A---- C:\Windows\system32\aswBoot.exe
2013-11-16 00:21:41 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2013-11-16 00:21:27 ----D---- C:\ProgramData\AVAST Software
2013-11-16 00:21:27 ----D---- C:\Program Files\AVAST Software
2013-11-16 00:13:50 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-11-16 00:13:50 ----A---- C:\Windows\system32\rdpcore.dll
2013-11-16 00:13:50 ----A---- C:\Windows\system32\drivers\tdtcp.sys

======List of files/folders modified in the last 1 month======

2013-12-11 16:50:49 ----D---- C:\Windows\Prefetch
2013-12-11 16:50:44 ----D---- C:\Windows\Temp
2013-12-11 16:50:40 ----RD---- C:\Program Files
2013-12-11 16:50:11 ----D---- C:\Windows\system32\config
2013-12-11 07:47:29 ----RSD---- C:\Windows\assembly
2013-12-11 07:47:29 ----D---- C:\Windows\Microsoft.NET
2013-12-11 07:35:32 ----D---- C:\Windows\inf
2013-12-11 07:35:06 ----D---- C:\Windows
2013-12-11 00:39:28 ----SHD---- C:\Windows\Installer
2013-12-11 00:39:27 ----RD---- C:\Program Files (x86)
2013-12-11 00:37:55 ----SD---- C:\ProgramData\Microsoft
2013-12-11 00:37:35 ----SHD---- C:\System Volume Information
2013-12-11 00:37:03 ----D---- C:\Windows\winsxs
2013-12-11 00:30:26 ----RSD---- C:\Windows\Fonts
2013-12-11 00:30:06 ----D---- C:\Windows\ShellNew
2013-12-11 00:29:59 ----D---- C:\Program Files (x86)\MSBuild
2013-12-11 00:29:49 ----D---- C:\Windows\SysWOW64
2013-12-11 00:29:49 ----D---- C:\Program Files (x86)\Common Files
2013-12-11 00:27:59 ----A---- C:\Windows\win.ini
2013-12-11 00:26:56 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-12-10 23:46:08 ----D---- C:\Windows\System32
2013-12-10 23:46:08 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-12-10 23:11:59 ----D---- C:\Windows\system32\Tasks
2013-12-10 23:11:57 ----D---- C:\Windows\system32\drivers
2013-12-10 23:10:26 ----HD---- C:\ProgramData
2013-12-10 01:00:34 ----D---- C:\Windows\system32\DriverStore
2013-12-10 01:00:34 ----D---- C:\Windows\system32\catroot
2013-12-09 13:46:11 ----D---- C:\Windows\system32\NDF
2013-12-02 06:41:28 ----D---- C:\Windows\system32\catroot2
2013-11-30 10:05:45 ----D---- C:\Windows\system32\wdi
2013-11-29 12:30:52 ----SD---- C:\Users\user\AppData\Roaming\Microsoft
2013-11-27 11:11:53 ----D---- C:\Windows\PANTHER
2013-11-27 11:11:48 ----D---- C:\Windows\Logs
2013-11-27 11:11:48 ----D---- C:\Windows\debug
2013-11-21 15:34:21 ----D---- C:\Program Files (x86)\Internet Explorer
2013-11-20 21:27:18 ----D---- C:\Windows\rescache
2013-11-19 16:57:54 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-11-19 16:57:54 ----D---- C:\Program Files\Internet Explorer
2013-11-19 16:57:53 ----D---- C:\Windows\system32\cs-CZ
2013-11-19 16:57:52 ----D---- C:\Windows\SYSWOW64\migration
2013-11-19 16:57:52 ----D---- C:\Windows\SYSWOW64\en-US
2013-11-19 16:57:51 ----D---- C:\Windows\system32\migration
2013-11-19 16:57:51 ----D---- C:\Windows\system32\en-US
2013-11-19 16:57:51 ----D---- C:\Windows\PolicyDefinitions
2013-11-18 19:53:00 ----D---- C:\Windows\AppPatch
2013-11-18 19:52:56 ----D---- C:\Program Files (x86)\Windows Defender
2013-11-18 19:52:55 ----D---- C:\Program Files\Windows Defender
2013-11-18 19:52:34 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-11-18 19:52:34 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-11-18 19:52:34 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-11-18 19:52:34 ----D---- C:\Windows\SYSWOW64\it-IT
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-11-18 19:52:33 ----D---- C:\Windows\SYSWOW64\el-GR
2013-11-18 19:52:32 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-11-18 19:52:32 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-11-18 19:52:32 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-11-18 19:52:32 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-11-18 19:52:32 ----D---- C:\Windows\SYSWOW64\es-ES
2013-11-18 19:52:32 ----D---- C:\Windows\SYSWOW64\de-DE
2013-11-18 19:52:31 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-11-18 19:52:31 ----D---- C:\Windows\SYSWOW64\da-DK
2013-11-18 19:52:30 ----D---- C:\Windows\system32\pt-PT
2013-11-18 19:52:30 ----D---- C:\Windows\system32\pt-BR
2013-11-18 19:52:30 ----D---- C:\Windows\system32\it-IT
2013-11-18 19:52:29 ----D---- C:\Windows\system32\zh-TW
2013-11-18 19:52:29 ----D---- C:\Windows\system32\zh-HK
2013-11-18 19:52:29 ----D---- C:\Windows\system32\tr-TR
2013-11-18 19:52:29 ----D---- C:\Windows\system32\sv-SE
2013-11-18 19:52:29 ----D---- C:\Windows\system32\pl-PL
2013-11-18 19:52:29 ----D---- C:\Windows\system32\nl-NL
2013-11-18 19:52:29 ----D---- C:\Windows\system32\ko-KR
2013-11-18 19:52:29 ----D---- C:\Windows\system32\hu-HU
2013-11-18 19:52:29 ----D---- C:\Windows\system32\fr-FR
2013-11-18 19:52:29 ----D---- C:\Windows\system32\fi-FI
2013-11-18 19:52:29 ----D---- C:\Windows\system32\es-ES
2013-11-18 19:52:29 ----D---- C:\Windows\system32\el-GR
2013-11-18 19:52:29 ----D---- C:\Windows\system32\de-DE
2013-11-18 19:52:28 ----D---- C:\Windows\system32\zh-CN
2013-11-18 19:52:28 ----D---- C:\Windows\system32\ru-RU
2013-11-18 19:52:28 ----D---- C:\Windows\system32\nb-NO
2013-11-18 19:52:28 ----D---- C:\Windows\system32\ja-JP
2013-11-18 19:52:28 ----D---- C:\Windows\system32\da-DK
2013-11-18 19:52:08 ----D---- C:\Program Files\Windows Journal
2013-11-18 09:21:01 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-11-18 09:21:01 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-11-18 09:21:01 ----D---- C:\Program Files (x86)\Windows Mail
2013-11-18 09:21:00 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-11-18 09:21:00 ----D---- C:\Program Files (x86)\Windows Media Player
2013-11-18 09:20:56 ----D---- C:\Program Files\Windows Sidebar
2013-11-18 09:20:56 ----D---- C:\Program Files\Windows Portable Devices
2013-11-18 09:20:56 ----D---- C:\Program Files\Windows Mail
2013-11-18 09:20:56 ----D---- C:\Program Files\DVD Maker
2013-11-18 09:20:55 ----D---- C:\Program Files\Windows Photo Viewer
2013-11-18 09:20:55 ----D---- C:\Program Files\Windows Media Player
2013-11-18 09:20:52 ----D---- C:\Program Files\Common Files\System
2013-11-18 09:20:50 ----D---- C:\Windows\servicing
2013-11-18 09:20:49 ----D---- C:\Windows\ehome
2013-11-18 09:20:32 ----D---- C:\Windows\SYSWOW64\Setup
2013-11-18 09:20:32 ----D---- C:\Windows\SYSWOW64\oobe
2013-11-18 09:20:32 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2013-11-18 09:20:31 ----D---- C:\Windows\SYSWOW64\cs
2013-11-18 09:20:27 ----D---- C:\Windows\SYSWOW64\sppui
2013-11-18 09:20:27 ----D---- C:\Windows\SYSWOW64\manifeststore
2013-11-18 09:20:26 ----D---- C:\Windows\SYSWOW64\wbem
2013-11-18 09:20:25 ----D---- C:\Windows\SYSWOW64\migwiz
2013-11-18 09:20:24 ----D---- C:\Windows\SYSWOW64\Dism
2013-11-18 09:19:49 ----D---- C:\Windows\system32\oobe
2013-11-18 09:19:47 ----D---- C:\Windows\system32\Setup
2013-11-18 09:19:47 ----D---- C:\Windows\system32\cs
2013-11-18 09:19:47 ----D---- C:\Windows\system32\AdvancedInstallers
2013-11-18 09:19:42 ----D---- C:\Windows\system32\sppui
2013-11-18 09:19:42 ----D---- C:\Windows\system32\manifeststore
2013-11-18 09:19:40 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-11-18 09:19:39 ----D---- C:\Windows\system32\wbem
2013-11-18 09:19:38 ----D---- C:\Windows\system32\migwiz
2013-11-18 09:19:38 ----D---- C:\Windows\system32\Dism
2013-11-18 09:18:36 ----D---- C:\Windows\system32\Boot
2013-11-18 00:34:47 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2013-11-18 00:34:47 ----A---- C:\Windows\system32\msclmd.dll
2013-11-16 23:44:54 ----D---- C:\Windows\Tasks
2013-11-16 23:09:47 ----D---- C:\Program Files\Common Files
2013-11-16 13:41:36 ----D---- C:\Windows\SYSWOW64\winrm
2013-11-16 13:41:36 ----D---- C:\Windows\SYSWOW64\slmgr
2013-11-16 13:41:36 ----D---- C:\Windows\SYSWOW64\en
2013-11-16 13:41:36 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2013-11-16 13:41:26 ----D---- C:\Windows\SYSWOW64\WCN
2013-11-16 13:41:26 ----D---- C:\Windows\SYSWOW64\DriverStore
2013-11-16 13:41:25 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2013-11-16 13:41:24 ----D---- C:\Windows\system32\winrm
2013-11-16 13:41:24 ----D---- C:\Windows\system32\slmgr
2013-11-16 13:41:24 ----D---- C:\Windows\system32\en
2013-11-16 13:41:24 ----D---- C:\Windows\en-US
2013-11-16 13:41:16 ----D---- C:\Windows\system32\drivers\en-US
2013-11-16 13:41:15 ----D---- C:\Windows\system32\WCN
2013-11-16 13:41:15 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2013-11-16 13:41:14 ----D---- C:\Windows\Speech
2013-11-16 09:38:27 ----D---- C:\Windows\SoftwareDistribution
2013-11-16 09:29:42 ----D---- C:\Windows\system32\LogFiles
2013-11-16 00:45:00 ----SHD---- C:\$Recycle.Bin

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 FBIOSDRV;Fujitsu BIOS Driver; C:\Windows\System32\Drivers\FBIOSDRV.sys [2009-06-24 21104]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2011-02-18 439320]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2013-07-17 7717984]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2013-10-09 489568]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2013-10-23 454168]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2011-03-08 51712]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-03-08 274944]
R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\Windows\system32\DRIVERS\FUJ02B1.sys [2006-11-01 7808]
R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver; C:\Windows\system32\DRIVERS\FUJ02E3.sys [2006-11-01 7296]
R3 iBtFltCoex;iBtFltCoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-03-22 59904]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-04-15 12228128]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-04-20 2657768]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 NETwNs64;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-01-04 8507392]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-05-07 245792]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2010-10-09 1801216]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-11-19 299568]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-05 65640]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-03-30 923984]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2011-03-30 1001808]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-01-05 1515792]
R2 PFNService;PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2010-10-07 331776]
R2 PowerSavingUtilityService;PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [2010-06-17 63336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-01-05 836880]
R2 vsmon;TrueVector Internet Monitor; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2013-10-25 2445816]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [2013-10-15 50704]
R3 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2011-03-30 1321296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-16 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-16 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-16 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-19 111616]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-05 340240]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-16 1255736]

-----------------EOF-----------------

Re: YoutubeBookmark 1.0 a další

Napsal: 11 pro 2013 18:04
od Márty84
Zdravim :)

:???: Proc se chcete zbavit Avastu? http://www.avast.com/cs-cz/uninstall-utility


:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Re: YoutubeBookmark 1.0 a další

Napsal: 13 pro 2013 19:26
od Weika
Děkuji :-)

Kvůli firewallu používám Zone Alarm. Proto chci odinstalovat avast, hádá se se ZA.

A log:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.12.13.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
user :: USER-PC [administrátor]

Ochrana: Povolena

13.12.2013 18:00:48
MBAM-log-2013-12-13 (19-20-14).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 352690
Uplynulý čas: 1 hodin, 18 minut, 38 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 6
HKCR\CLSID\{9507765F-E705-AC4E-D5D7-2F8931DCF59F} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9507765F-E705-AC4E-D5D7-2F8931DCF59F} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9507765F-E705-AC4E-D5D7-2F8931DCF59F} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9507765F-E705-AC4E-D5D7-2F8931DCF59F} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9507765F-E705-AC4E-D5D7-2F8931DCF59F} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\Software\AppDataLow\SProtector (PUP.Optional.SProtector.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (PUP.Optional.SProtect.A) -> Špatný: (c:\progra~2\sshelp~1\psupport.dll) Dobrý: () -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 5
C:\Program Files (x86)\ss helper\psupport.dll (PUP.Optional.SProtect.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\surf and ekEep\8n0xHHgHG6.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\Data\Zoo Tycoon 2 ® Ultimate Collection with save+Extras\DAEMON Tools Lite 4.11.2\daemon-4112-lite.exe (Adware.Vomba) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\surf and ekEep\8n0xHHgHG6.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\InstallMate\{CB8432F8-A9DF-4B45-A9AE-E1FD1067100E}\Custom.dll (PUP.Optional.InstalleRex) -> Nebyla provedena žádná instrukce.

(konec)

Re: YoutubeBookmark 1.0 a další

Napsal: 13 pro 2013 23:22
od Márty84
A jaky antivir tedy budete pouzivat?

Jinak Avast free nema firewall, takze by se tlouct se ZA nemel :boxed:


:arrow: Nalezy MBAM nechte odstranit. Po smazani a restartu pc udelejte novy test. Napiste zda neco nasel a podle toho zvolim dalsi postup.

Re: YoutubeBookmark 1.0 a další

Napsal: 14 pro 2013 11:13
od Weika
No požívám verzi ZA, která má jak firewall, tak antivir s ochranou v reálném čase (a ta tedy nemohla probíhat dokud byl zapnutý avast). A popravdě, když jsem spustila úplný test počítače v avastu, podle výsledku se nenašla žádná hrozba. Zatímco ZA je alespoň detekoval.
Ale ráda si nechám od odborníka poradit. Pokud máte pocit, že dělám blbost, když měním avast za ZA, normálně mi to vysvětlete :-)



Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.12.13.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
user :: USER-PC [administrátor]

Ochrana: Povolena

14.12.2013 0:05:33
MBAM-log-2013-12-14 (10-12-57).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 353265
Uplynulý čas: 1 hodin, 15 minut, 41 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 1
C:\Users\user\AppData\Local\Temp\KMP_3.7.0.113.exe (PUP.Optional.Softonic.A) -> Nebyla provedena žádná instrukce.

(konec)

Re: YoutubeBookmark 1.0 a další

Napsal: 14 pro 2013 21:08
od Márty84
Weika píše:A popravdě, když jsem spustila úplný test počítače v avastu, podle výsledku se nenašla žádná hrozba. Zatímco ZA je alespoň detekoval.
Ono taky zalezi co detekoval :?:
Podle mne je Avast lepsi antivir a nechal bych si spis jeho, ale kazdemu vyhovuje neco jineho, takze zalezi ciste na vas :) Hlavne aby tam nejaky byl.


:arrow: Nalez MBAM nechte odstranit, pak MBAM odinstalujte.

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner\AdwCleaner[R?].txt ), ten mi sem zkopirujte.

Re: YoutubeBookmark 1.0 a další

Napsal: 16 pro 2013 18:27
od Weika
# AdwCleaner v3.015 - Report created 16/12/2013 at 18:26:33
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : user - USER-PC
# Running from : C:\Users\user\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found : C:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
Folder Found : C:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
Folder Found : C:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
Folder Found : C:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\Extensions\{ACAA314B-EEBA-48E4-AD47-84E31C44796C}
Folder Found C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Found C:\Program Files (x86)\surf anad keeep
Folder Found C:\Program Files (x86)\surf and ekEep
Folder Found C:\Program Files (x86)\surf and kkeepp
Folder Found C:\Program Files (x86)\YoutubeAdblocker
Folder Found C:\ProgramData\apn
Folder Found C:\ProgramData\QuickSet
Folder Found C:\ProgramData\surf anad keeep
Folder Found C:\ProgramData\surf and ekEep
Folder Found C:\ProgramData\surf and kkeepp
Folder Found C:\ProgramData\WinterSoft
Folder Found C:\ProgramData\YoutubeAdblocker
Folder Found C:\users\user\AppData\Roaming\dvdvideosoftiehelpers

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\Classes\and
Key Found : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Found : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Found : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Found : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Found : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Key Found : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Found : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Found : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : HKLM\SOFTWARE\Classes\ScriptHost.Tool
Key Found : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
Key Found : HKLM\SOFTWARE\Classes\surf
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}
Key Found : HKLM\Software\SP Global
Key Found : HKLM\Software\SProtector
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v

-\\ Google Chrome v31.0.1650.63

[ File : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Found : urls_to_restore_on_startup
Found : urls_to_restore_on_startup

*************************

AdwCleaner[R0].txt - [5952 octets] - [16/12/2013 18:24:37]
AdwCleaner[R1].txt - [5848 octets] - [16/12/2013 18:26:33]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [5908 octets] ##########

Re: YoutubeBookmark 1.0 a další

Napsal: 16 pro 2013 19:07
od Márty84
:arrow: Znovu ukoncete vsechny programy a spustte AdwCleaner jako spravce.
Tentokrat kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne dalsi log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zase zkopirujte.

Re: YoutubeBookmark 1.0 a další

Napsal: 17 pro 2013 08:35
od Weika
# AdwCleaner v3.015 - Report created 17/12/2013 at 08:30:17
# Updated 10/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : user - USER-PC
# Running from : C:\Users\user\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\QuickSet
Folder Deleted : C:\ProgramData\WinterSoft
Folder Deleted : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\ProgramData\surf anad keeep
Folder Deleted : C:\ProgramData\surf and ekEep
Folder Deleted : C:\ProgramData\surf and kkeepp
Folder Deleted : C:\Program Files (x86)\YoutubeAdblocker
Folder Deleted : C:\Program Files (x86)\surf anad keeep
Folder Deleted : C:\Program Files (x86)\surf and ekEep
Folder Deleted : C:\Program Files (x86)\surf and kkeepp
Folder Deleted : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\users\user\AppData\Roaming\dvdvideosoftiehelpers
Folder Deleted : C:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\Extensions\{ACAA314B-EEBA-48E4-AD47-84E31C44796C}

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\and
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
Key Deleted : HKLM\SOFTWARE\Classes\surf
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\Software\SP Global
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v

-\\ Google Chrome v31.0.1650.63

[ File : C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : urls_to_restore_on_startup

*************************

AdwCleaner[R0].txt - [5952 octets] - [16/12/2013 18:24:37]
AdwCleaner[R1].txt - [6012 octets] - [16/12/2013 18:26:33]
AdwCleaner[S0].txt - [5556 octets] - [17/12/2013 08:30:17]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5616 octets] ##########

Re: YoutubeBookmark 1.0 a další

Napsal: 17 pro 2013 15:10
od Márty84
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte

Re: YoutubeBookmark 1.0 a další

Napsal: 17 pro 2013 20:17
od Weika
RogueKiller V8.7.12 [Dec 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Kontrola -- Datum : 12/17/2013 19:52:25
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP PATH] Viber.exe -- C:\Users\user\AppData\Local\Viber\Viber.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] utorrent.exe -- C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe [-] -> SMAZÁNO [TermProc]
[SUSP PATH] QuickPinyin.exe -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QuickPinyin.exe [-] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 16 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Viber ("C:\Users\user\AppData\Local\Viber\Viber.exe" StartMinimized [7][x]) -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : uTorrent ("C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe" [-]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3141289670-3640636279-4033825743-1000\[...]\Run : Viber ("C:\Users\user\AppData\Local\Viber\Viber.exe" StartMinimized [7][x]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3141289670-3640636279-4033825743-1000\[...]\Run : uTorrent ("C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe" [-]) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyDocs (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowUser (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyPics (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyMusic (0) -> NALEZENO
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowHelp (0) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) TOSHIBA MK5076GSX +++++
--- User ---
[MBR] c7e6cfa4be18244c0c2db17da07e9890
[BSP] d79d41f7f0810e285860a3f709651d94 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_12172013_195225.txt >>

Re: YoutubeBookmark 1.0 a další

Napsal: 17 pro 2013 20:46
od Márty84
:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.

Re: YoutubeBookmark 1.0 a další

Napsal: 17 pro 2013 21:02
od Weika
RogueKiller V8.7.12 [Dec 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Odebrat -- Datum : 12/17/2013 21:01:14
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP PATH] Viber.exe -- C:\Users\user\AppData\Local\Viber\Viber.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] utorrent.exe -- C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe [-] -> SMAZÁNO [TermProc]
[SUSP PATH] QuickPinyin.exe -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QuickPinyin.exe [-] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 16 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Viber ("C:\Users\user\AppData\Local\Viber\Viber.exe" StartMinimized [7][x]) -> VYMAZÁNO
[RUN][SUSP PATH] HKCU\[...]\Run : uTorrent ("C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe" [-]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-3141289670-3640636279-4033825743-1000\[...]\Run : Viber ("C:\Users\user\AppData\Local\Viber\Viber.exe" StartMinimized [7][x]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP PATH] HKUS\S-1-5-21-3141289670-3640636279-4033825743-1000\[...]\Run : uTorrent ("C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe" [-]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyDocs (0) -> NAHRAZENO (1)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowUser (0) -> NAHRAZENO (1)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyPics (0) -> NAHRAZENO (1)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyGames (0) -> NAHRAZENO (1)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowMyMusic (0) -> NAHRAZENO (1)
[HJ SMENU][PUM] HKCU\[...]\Advanced : Start_ShowHelp (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\ClassicStartMenu : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKCU\[...]\NewStartPanel : {645FF040-5081-101B-9F08-00AA002F954E} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) TOSHIBA MK5076GSX +++++
--- User ---
[MBR] c7e6cfa4be18244c0c2db17da07e9890
[BSP] d79d41f7f0810e285860a3f709651d94 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_12172013_210114.txt >>
RKreport[0]_S_12172013_195225.txt





--------------------------------------------



RogueKiller V8.7.12 [Dec 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : user [Práva správce]
Mód : Oprava HOSTS -- Datum : 12/17/2013 21:01:43
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP PATH] Viber.exe -- C:\Users\user\AppData\Local\Viber\Viber.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] utorrent.exe -- C:\Users\user\AppData\Roaming\uTorrent\utorrent.exe [-] -> SMAZÁNO [TermProc]
[SUSP PATH] QuickPinyin.exe -- C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QuickPinyin.exe [-] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost


Dokončeno : << RKreport[0]_H_12172013_210143.txt >>
RKreport[0]_D_12172013_210114.txt;RKreport[0]_S_12172013_195225.txt

Re: YoutubeBookmark 1.0 a další

Napsal: 18 pro 2013 04:56
od Márty84
Dejte novy log z RSIT


8.2. pro neaktivitu :lock: http://forum.viry.cz/viewtopic.php?f=12&t=123975