Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2014-01-13 11:42:31
Microsoft Windows 8.1 Pro
System drive C: has 122 GB (85%) free of 143 GB
Total RAM: 3003 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:42:37, on 13. 1. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16384)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedadssvc.exe
C:\Program Files\trend micro\Administrator.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PrivDogExtension - {FB16E5C3-A9E2-47A2-8EFC-319E775E62CC} - C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedads.dll
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [PrivDogService] "C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedadssvc.exe"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-21-1546684791-1234734158-1691060437-1025\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User 'K22')
O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedads.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Print Spooler (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: Block Level Backup Engine Service (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 4188 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
taskhostex.exe
"c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedadssvc.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 908 912 920 65536 916
"C:\Users\K22.k2\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
=========Mozilla firefox=========
ProfilePath - C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\e4hvfske.default
prefs.js - "browser.startup.homepage" - "
www.seznam.cz"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=E:\Program Files\Picasa3\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll
C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\e4hvfske.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}]
PrivDog Extension - C:\Program Files\AdTrustMedia\PrivDog\1.8.0.18\trustedads.dll [2013-12-13 842920]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}]
PrivDog Extension - C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedads.dll [2013-12-13 745640]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2013-12-26 6563096]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CanonSolutionMenuEx"=C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-08-04 1612920]
"PrivDogService"=C:\Program Files (x86)\AdTrustMedia\PrivDog\1.8.0.18\trustedadssvc.exe [2013-12-13 525480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SystemEventsBroker]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mbamchameleon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SystemEventsBroker]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SafeModeBlockNonAdmins"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoResolveSearch"=1
"NoResolveTrack"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktopChanges"=1
"NoActiveDesktop"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2014-01-13 11:42:32 ----D---- C:\Program Files\trend micro
2014-01-13 11:42:31 ----D---- C:\rsit
2014-01-13 11:18:30 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2014-01-12 23:00:21 ----A---- C:\WINDOWS\SYSWOW64\msvcr71.dll
2014-01-12 23:00:21 ----A---- C:\WINDOWS\SYSWOW64\mfc71.dll
2014-01-12 22:55:50 ----A---- C:\WINDOWS\wininit.ini
2014-01-12 21:07:59 ----SD---- C:\ProgramData\Shared Space
2014-01-12 21:03:01 ----D---- C:\Program Files\AdTrustMedia
2014-01-12 21:03:01 ----D---- C:\Program Files (x86)\AdTrustMedia
2014-01-12 21:02:57 ----D---- C:\ProgramData\Adtrustmedia
2014-01-12 21:00:47 ----D---- C:\first_launch
2014-01-11 09:00:17 ----D---- C:\forum
2014-01-08 15:57:43 ----HD---- C:\VTRoot
2014-01-08 15:40:42 ----D---- C:\ProgramData\COMODO
2014-01-08 15:40:00 ----D---- C:\Program Files\COMODO
2014-01-08 15:37:53 ----D---- C:\Program Files (x86)\Comodo
2014-01-08 15:35:35 ----D---- C:\ProgramData\Comodo Downloader
2014-01-04 03:59:31 ----D---- C:\Program Files (x86)\Firefox
2013-12-26 23:08:01 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys.bak
2013-12-26 23:08:01 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys.bak
2013-12-26 23:08:00 ----A---- C:\WINDOWS\system32\drivers\ws2ifsl.sys.bak
2013-12-26 23:08:00 ----A---- C:\WINDOWS\system32\drivers\WppRecorder.sys.bak
2013-12-26 23:08:00 ----A---- C:\WINDOWS\system32\drivers\WpdUpFltr.sys.bak
2013-12-26 23:08:00 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys.bak
2013-12-26 23:07:59 ----A---- C:\WINDOWS\system32\drivers\wmilib.sys.bak
2013-12-26 23:07:59 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys.bak
2013-12-26 23:07:59 ----A---- C:\WINDOWS\system32\drivers\winhv.sys.bak
2013-12-26 23:07:58 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys.bak
2013-12-26 23:07:58 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys.bak
2013-12-26 23:07:58 ----A---- C:\WINDOWS\system32\drivers\werkernel.sys.bak
2013-12-26 23:07:57 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys.bak
2013-12-26 23:07:57 ----A---- C:\WINDOWS\system32\drivers\WdfLdr.sys.bak
2013-12-26 23:07:56 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys.bak
2013-12-26 23:07:56 ----A---- C:\WINDOWS\system32\drivers\Wdf01000.sys.bak
2013-12-26 23:07:56 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys.bak
2013-12-26 23:07:55 ----A---- C:\WINDOWS\system32\drivers\watchdog.sys.bak
2013-12-26 23:07:55 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys.bak
2013-12-26 23:07:55 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys.bak
2013-12-26 23:07:54 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys.bak
2013-12-26 23:07:54 ----A---- C:\WINDOWS\system32\drivers\VSTXRAID.SYS.bak
2013-12-26 23:07:54 ----A---- C:\WINDOWS\system32\drivers\vsmraid.sys.bak
2013-12-26 23:07:53 ----A---- C:\WINDOWS\system32\drivers\vpcivsp.sys.bak
2013-12-26 23:07:53 ----A---- C:\WINDOWS\system32\drivers\vpci.sys.bak
2013-12-26 23:07:53 ----A---- C:\WINDOWS\system32\drivers\volmgrx.sys.bak
2013-12-26 23:07:53 ----A---- C:\WINDOWS\system32\drivers\vmstorfl.sys.bak
2013-12-26 23:07:52 ----A---- C:\WINDOWS\system32\drivers\vms3cap.sys.bak
2013-12-26 23:07:52 ----A---- C:\WINDOWS\system32\drivers\vmgencounter.sys.bak
2013-12-26 23:07:52 ----A---- C:\WINDOWS\system32\drivers\vmbusr.sys.bak
2013-12-26 23:07:51 ----A---- C:\WINDOWS\system32\drivers\VMBusHID.sys.bak
2013-12-26 23:07:51 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys.bak
2013-12-26 23:07:51 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys.bak
2013-12-26 23:07:51 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys.bak
2013-12-26 23:07:50 ----A---- C:\WINDOWS\system32\drivers\videoprt.sys.bak
2013-12-26 23:07:50 ----A---- C:\WINDOWS\system32\drivers\Vid.sys.bak
2013-12-26 23:07:50 ----A---- C:\WINDOWS\system32\drivers\viaide.sys.bak
2013-12-26 23:07:49 ----A---- C:\WINDOWS\system32\drivers\VerifierExt.sys.bak
2013-12-26 23:07:49 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys.bak
2013-12-26 23:07:49 ----A---- C:\WINDOWS\system32\drivers\usbrpm.sys.bak
2013-12-26 23:07:48 ----A---- C:\WINDOWS\system32\drivers\USBCAMD2.sys.bak
2013-12-26 23:07:48 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys.bak
2013-12-26 23:07:48 ----A---- C:\WINDOWS\system32\drivers\ULIAGPKX.SYS.bak
2013-12-26 23:07:47 ----A---- C:\WINDOWS\system32\drivers\udfs.sys.bak
2013-12-26 23:07:47 ----A---- C:\WINDOWS\system32\drivers\UAGP35.SYS.bak
2013-12-26 23:07:47 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys.bak
2013-12-26 23:07:46 ----A---- C:\WINDOWS\system32\drivers\TsUsbFlt.sys.bak
2013-12-26 23:07:46 ----A---- C:\WINDOWS\system32\drivers\tm.sys.bak
2013-12-26 23:07:46 ----A---- C:\WINDOWS\system32\drivers\tdx.sys.bak
2013-12-26 23:07:45 ----A---- C:\WINDOWS\system32\drivers\tdi.sys.bak
2013-12-26 23:07:44 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys.bak
2013-12-26 23:07:44 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys.bak
2013-12-26 23:07:44 ----A---- C:\WINDOWS\system32\drivers\tbs.sys.bak
2013-12-26 23:07:43 ----A---- C:\WINDOWS\system32\drivers\tape.sys.bak
2013-12-26 23:07:43 ----A---- C:\WINDOWS\system32\drivers\stream.sys.bak
2013-12-26 23:07:43 ----A---- C:\WINDOWS\system32\drivers\storvsp.sys.bak
2013-12-26 23:07:42 ----A---- C:\WINDOWS\system32\drivers\storvsc.sys.bak
2013-12-26 23:07:42 ----A---- C:\WINDOWS\system32\drivers\storport.sys.bak
2013-12-26 23:07:42 ----A---- C:\WINDOWS\system32\drivers\storahci.sys.bak
2013-12-26 23:07:41 ----A---- C:\WINDOWS\system32\drivers\stexstor.sys.bak
2013-12-26 23:07:41 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys.bak
2013-12-26 23:07:41 ----A---- C:\WINDOWS\system32\drivers\srv2.sys.bak
2013-12-26 23:07:40 ----A---- C:\WINDOWS\system32\drivers\SpbCx.sys.bak
2013-12-26 23:07:40 ----A---- C:\WINDOWS\system32\drivers\smclib.sys.bak
2013-12-26 23:07:40 ----A---- C:\WINDOWS\system32\drivers\sisraid4.sys.bak
2013-12-26 23:07:39 ----A---- C:\WINDOWS\system32\drivers\sisraid2.sys.bak
2013-12-26 23:07:39 ----A---- C:\WINDOWS\system32\drivers\SerCx2.sys.bak
2013-12-26 23:07:39 ----A---- C:\WINDOWS\system32\drivers\SerCx.sys.bak
2013-12-26 23:07:39 ----A---- C:\WINDOWS\system32\drivers\secdrv.sys.bak
2013-12-26 23:07:38 ----A---- C:\WINDOWS\system32\drivers\scsiport.sys.bak
2013-12-26 23:07:38 ----A---- C:\WINDOWS\system32\drivers\scfilter.sys.bak
2013-12-26 23:07:38 ----A---- C:\WINDOWS\system32\drivers\rspndr.sys.bak
2013-12-26 23:07:38 ----A---- C:\WINDOWS\system32\drivers\rootmdm.sys.bak
2013-12-26 23:07:37 ----A---- C:\WINDOWS\system32\drivers\RNDISMP.sys.bak
2013-12-26 23:07:37 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys.bak
2013-12-26 23:07:36 ----A---- C:\WINDOWS\system32\drivers\refs.sys.bak
2013-12-26 23:07:36 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys.bak
2013-12-26 23:07:35 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys.bak
2013-12-26 23:07:35 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys.bak
2013-12-26 23:07:35 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys.bak
2013-12-26 23:07:34 ----A---- C:\WINDOWS\system32\drivers\rassstp.sys.bak
2013-12-26 23:07:34 ----A---- C:\WINDOWS\system32\drivers\raspptp.sys.bak
2013-12-26 23:07:34 ----A---- C:\WINDOWS\system32\drivers\raspppoe.sys.bak
2013-12-26 23:07:34 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys.bak
2013-12-26 23:07:33 ----A---- C:\WINDOWS\system32\drivers\rasacd.sys.bak
2013-12-26 23:07:33 ----A---- C:\WINDOWS\system32\drivers\qwavedrv.sys.bak
2013-12-26 23:07:32 ----A---- C:\WINDOWS\system32\drivers\point64.sys.bak
2013-12-26 23:07:32 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys.bak
2013-12-26 23:07:32 ----A---- C:\WINDOWS\system32\drivers\pdc.sys.bak
2013-12-26 23:07:31 ----A---- C:\WINDOWS\system32\drivers\pcw.sys.bak
2013-12-26 23:07:31 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys.bak
2013-12-26 23:07:31 ----A---- C:\WINDOWS\system32\drivers\pacer.sys.bak
2013-12-26 23:07:30 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys.bak
2013-12-26 23:07:30 ----A---- C:\WINDOWS\system32\drivers\nvstor.sys.bak
2013-12-26 23:07:30 ----A---- C:\WINDOWS\system32\drivers\NV_AGP.SYS.bak
2013-12-26 23:07:29 ----A---- C:\WINDOWS\system32\drivers\nvraid.sys.bak
2013-12-26 23:07:29 ----A---- C:\WINDOWS\system32\drivers\null.sys.bak
2013-12-26 23:07:28 ----A---- C:\WINDOWS\system32\drivers\nuidfltr.sys.bak
2013-12-26 23:07:28 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys.bak
2013-12-26 23:07:27 ----A---- C:\WINDOWS\system32\drivers\nsiproxy.sys.bak
2013-12-26 23:07:26 ----A---- C:\WINDOWS\system32\drivers\npfs.sys.bak
2013-12-26 23:07:25 ----A---- C:\WINDOWS\system32\drivers\Netwsw00.sys.bak
2013-12-26 23:07:25 ----A---- C:\WINDOWS\system32\drivers\netvsc63.sys.bak
2013-12-26 23:07:24 ----A---- C:\WINDOWS\system32\drivers\netio.sys.bak
2013-12-26 23:07:24 ----A---- C:\WINDOWS\system32\drivers\netbt.sys.bak
2013-12-26 23:07:24 ----A---- C:\WINDOWS\system32\drivers\netbios.sys.bak
2013-12-26 23:07:23 ----A---- C:\WINDOWS\system32\drivers\Ndu.sys.bak
2013-12-26 23:07:23 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys.bak
2013-12-26 23:07:23 ----A---- C:\WINDOWS\system32\drivers\ndiswan.sys.bak
2013-12-26 23:07:23 ----A---- C:\WINDOWS\system32\drivers\NdisVirtualBus.sys.bak
2013-12-26 23:07:22 ----A---- C:\WINDOWS\system32\drivers\ndisuio.sys.bak
2013-12-26 23:07:22 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys.bak
2013-12-26 23:07:22 ----A---- C:\WINDOWS\system32\drivers\NdisImPlatform.sys.bak
2013-12-26 23:07:21 ----A---- C:\WINDOWS\system32\drivers\ndiscap.sys.bak
2013-12-26 23:07:20 ----A---- C:\WINDOWS\system32\drivers\ndis.sys.bak
2013-12-26 23:07:20 ----A---- C:\WINDOWS\system32\drivers\mvumis.sys.bak
2013-12-26 23:07:20 ----A---- C:\WINDOWS\system32\drivers\mup.sys.bak
2013-12-26 23:07:19 ----A---- C:\WINDOWS\system32\drivers\mstee.sys.bak
2013-12-26 23:07:19 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys.bak
2013-12-26 23:07:19 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys.bak
2013-12-26 23:07:18 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys.bak
2013-12-26 23:07:18 ----A---- C:\WINDOWS\system32\drivers\mslldp.sys.bak
2013-12-26 23:07:18 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys.bak
2013-12-26 23:07:18 ----A---- C:\WINDOWS\system32\drivers\mshidumdf.sys.bak
2013-12-26 23:07:17 ----A---- C:\WINDOWS\system32\drivers\mshidkmdf.sys.bak
2013-12-26 23:07:17 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys.bak
2013-12-26 23:07:17 ----A---- C:\WINDOWS\system32\drivers\msfs.sys.bak
2013-12-26 23:07:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys.bak
2013-12-26 23:07:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys.bak
2013-12-26 23:07:15 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys.bak
2013-12-26 23:07:15 ----A---- C:\WINDOWS\system32\drivers\mpsdrv.sys.bak
2013-12-26 23:07:15 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys.bak
2013-12-26 23:07:14 ----A---- C:\WINDOWS\system32\drivers\modem.sys.bak
2013-12-26 23:07:14 ----A---- C:\WINDOWS\system32\drivers\megasr.sys.bak
2013-12-26 23:07:14 ----A---- C:\WINDOWS\system32\drivers\megasas.sys.bak
2013-12-26 23:07:13 ----A---- C:\WINDOWS\system32\drivers\mcd.sys.bak
2013-12-26 23:07:13 ----A---- C:\WINDOWS\system32\drivers\luafv.sys.bak
2013-12-26 23:07:13 ----A---- C:\WINDOWS\system32\drivers\lsi_sss.sys.bak
2013-12-26 23:07:13 ----A---- C:\WINDOWS\system32\drivers\lsi_sas3.sys.bak
2013-12-26 23:07:12 ----A---- C:\WINDOWS\system32\drivers\lsi_sas2.sys.bak
2013-12-26 23:07:12 ----A---- C:\WINDOWS\system32\drivers\lsi_sas.sys.bak
2013-12-26 23:07:12 ----A---- C:\WINDOWS\system32\drivers\lltdio.sys.bak
2013-12-26 23:07:11 ----A---- C:\WINDOWS\system32\drivers\L1C63x64.sys.bak
2013-12-26 23:07:11 ----A---- C:\WINDOWS\system32\drivers\ksthunk.sys.bak
2013-12-26 23:07:11 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys.bak
2013-12-26 23:07:10 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys.bak
2013-12-26 23:07:10 ----A---- C:\WINDOWS\system32\drivers\ks.sys.bak
2013-12-26 23:07:10 ----A---- C:\WINDOWS\system32\drivers\kbldfltr.sys.bak
2013-12-26 23:07:09 ----A---- C:\WINDOWS\system32\drivers\irenum.sys.bak
2013-12-26 23:07:09 ----A---- C:\WINDOWS\system32\drivers\irda.sys.bak
2013-12-26 23:07:09 ----A---- C:\WINDOWS\system32\drivers\ipnat.sys.bak
2013-12-26 23:07:09 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys.bak
2013-12-26 23:07:08 ----A---- C:\WINDOWS\system32\drivers\ipfltdrv.sys.bak
2013-12-26 23:07:06 ----A---- C:\WINDOWS\system32\drivers\intelide.sys.bak
2013-12-26 23:07:05 ----A---- C:\WINDOWS\system32\drivers\igdkmd64.sys.bak
2013-12-26 23:07:04 ----A---- C:\WINDOWS\system32\drivers\iaStorV.sys.bak
2013-12-26 23:07:04 ----A---- C:\WINDOWS\system32\drivers\iaStorAV.sys.bak
2013-12-26 23:07:03 ----A---- C:\WINDOWS\system32\drivers\iaLPSSi_I2C.sys.bak
2013-12-26 23:07:03 ----A---- C:\WINDOWS\system32\drivers\iaLPSSi_GPIO.sys.bak
2013-12-26 23:07:03 ----A---- C:\WINDOWS\system32\drivers\HyperVideo.sys.bak
2013-12-26 23:07:03 ----A---- C:\WINDOWS\system32\drivers\hyperkbd.sys.bak
2013-12-26 23:07:02 ----A---- C:\WINDOWS\system32\drivers\hwpolicy.sys.bak
2013-12-26 23:07:02 ----A---- C:\WINDOWS\system32\drivers\http.sys.bak
2013-12-26 23:07:02 ----A---- C:\WINDOWS\system32\drivers\HpSAMD.sys.bak
2013-12-26 23:07:01 ----A---- C:\WINDOWS\system32\drivers\hidir.sys.bak
2013-12-26 23:07:01 ----A---- C:\WINDOWS\system32\drivers\GAGP30KX.SYS.bak
2013-12-26 23:07:00 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS.bak
2013-12-26 23:07:00 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys.bak
2013-12-26 23:07:00 ----A---- C:\WINDOWS\system32\drivers\fsdepends.sys.bak
2013-12-26 23:07:00 ----A---- C:\WINDOWS\system32\drivers\fs_rec.sys.bak
2013-12-26 23:06:59 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys.bak
2013-12-26 23:06:59 ----A---- C:\WINDOWS\system32\drivers\filetrace.sys.bak
2013-12-26 23:06:59 ----A---- C:\WINDOWS\system32\drivers\fileinfo.sys.bak
2013-12-26 23:06:58 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys.bak
2013-12-26 23:06:57 ----A---- C:\WINDOWS\system32\drivers\exfat.sys.bak
2013-12-26 23:06:56 ----A---- C:\WINDOWS\system32\drivers\evbda.sys.bak
2013-12-26 23:06:56 ----A---- C:\WINDOWS\system32\drivers\EhStorClass.sys.bak
2013-12-26 23:06:55 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys.bak
2013-12-26 23:06:55 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys.bak
2013-12-26 23:06:54 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys.bak
2013-12-26 23:06:54 ----A---- C:\WINDOWS\system32\drivers\Dumpata.sys.bak
2013-12-26 23:06:54 ----A---- C:\WINDOWS\system32\drivers\dmvsc.sys.bak
2013-12-26 23:06:54 ----A---- C:\WINDOWS\system32\drivers\Dmpusbstor.sys.bak
2013-12-26 23:06:53 ----A---- C:\WINDOWS\system32\drivers\Diskdump.sys.bak
2013-12-26 23:06:53 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys.bak
2013-12-26 23:06:53 ----A---- C:\WINDOWS\system32\drivers\dc3d.sys.bak
2013-12-26 23:06:52 ----A---- C:\WINDOWS\system32\drivers\dam.sys.bak
2013-12-26 23:06:52 ----A---- C:\WINDOWS\system32\drivers\csc.sys.bak
2013-12-26 23:06:52 ----A---- C:\WINDOWS\system32\drivers\crashdmp.sys.bak
2013-12-26 23:06:51 ----A---- C:\WINDOWS\system32\drivers\condrv.sys.bak
2013-12-26 23:06:51 ----A---- C:\WINDOWS\system32\drivers\cng.sys.bak
2013-12-26 23:06:51 ----A---- C:\WINDOWS\system32\drivers\clfs.sys.bak
2013-12-26 23:06:50 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys.bak
2013-12-26 23:06:50 ----A---- C:\WINDOWS\system32\drivers\cdfs.sys.bak
2013-12-26 23:06:50 ----A---- C:\WINDOWS\system32\drivers\bxvbda.sys.bak
2013-12-26 23:06:49 ----A---- C:\WINDOWS\system32\drivers\bridge.sys.bak
2013-12-26 23:06:49 ----A---- C:\WINDOWS\system32\drivers\bowser.sys.bak
2013-12-26 23:06:49 ----A---- C:\WINDOWS\system32\drivers\beep.sys.bak
2013-12-26 23:06:49 ----A---- C:\WINDOWS\system32\drivers\bcmfn2.sys.bak
2013-12-26 23:06:48 ----A---- C:\WINDOWS\system32\drivers\asyncmac.sys.bak
2013-12-26 23:06:48 ----A---- C:\WINDOWS\system32\drivers\arcsas.sys.bak
2013-12-26 23:06:48 ----A---- C:\WINDOWS\system32\drivers\appid.sys.bak
2013-12-26 23:06:48 ----A---- C:\WINDOWS\system32\drivers\amdxata.sys.bak
2013-12-26 23:06:47 ----A---- C:\WINDOWS\system32\drivers\amdsbs.sys.bak
2013-12-26 23:06:47 ----A---- C:\WINDOWS\system32\drivers\amdsata.sys.bak
2013-12-26 23:06:47 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys.bak
2013-12-26 23:06:46 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys.bak
2013-12-26 23:06:46 ----A---- C:\WINDOWS\system32\drivers\afd.sys.bak
2013-12-26 23:06:45 ----A---- C:\WINDOWS\system32\drivers\adp80xx.sys.bak
2013-12-26 23:06:45 ----A---- C:\WINDOWS\system32\drivers\acpiex.sys.bak
2013-12-26 23:06:44 ----A---- C:\WINDOWS\system32\drivers\3ware.sys.bak
2013-12-26 22:46:20 ----D---- C:\Program Files\Temp File Cleaner
2013-12-26 22:18:59 ----D---- C:\Program Files (x86)\Firefox Backup Tool
2013-12-22 07:16:38 ----D---- C:\WINDOWS\system32\appmgmt
2013-12-17 08:48:49 ----D---- C:\Program Files\Avidemux 2.6 - 64bits
2013-12-14 02:53:03 ----D---- C:\ProgramData\CanonIJEPPEX
2013-12-14 01:21:34 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2013-12-14 01:20:19 ----D---- C:\Program Files\Adobe
2013-12-14 01:13:35 ----D---- C:\Program Files\Common Files\Adobe
2013-12-14 01:11:03 ----D---- C:\Program Files (x86)\Adobe Media Player
2013-12-13 20:20:43 ----D---- C:\ProgramData\WinZip
2013-12-13 20:20:38 ----D---- C:\Program Files\WinZip
2013-12-13 03:44:22 ----D---- C:\Users\Administrator\AppData\Roaming\SUPERAntiSpyware.com
2013-12-13 03:43:51 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2013-12-13 03:43:51 ----D---- C:\Program Files\SUPERAntiSpyware
2013-12-13 03:31:22 ----A---- C:\WINDOWS\SYSWOW64\GPhotos.scr
2013-12-12 19:44:23 ----D---- C:\ProgramData\PearlMountain
2013-12-12 17:57:45 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2013-12-12 17:57:44 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-12 17:57:43 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2013-12-12 17:57:42 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2013-12-12 17:57:40 ----A---- C:\WINDOWS\system32\twinui.dll
2013-12-12 17:57:37 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2013-12-12 17:57:37 ----A---- C:\WINDOWS\system32\WSShared.dll
2013-12-12 17:57:36 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2013-12-12 17:57:35 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-12 17:57:35 ----A---- C:\WINDOWS\system32\dcomp.dll
2013-12-12 17:57:34 ----AC---- C:\WINDOWS\system32\drivers\spaceport.sys
2013-12-12 17:57:34 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2013-12-12 17:57:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-12 17:57:33 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2013-12-12 17:57:33 ----A---- C:\WINDOWS\system32\wlidcli.dll
2013-12-12 17:57:33 ----A---- C:\WINDOWS\system32\msftedit.dll
2013-12-12 17:57:33 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-12 17:57:32 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2013-12-12 17:57:32 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2013-12-12 17:57:32 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-12 17:57:32 ----A---- C:\WINDOWS\system32\Display.dll
2013-12-12 17:57:31 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2013-12-12 17:57:31 ----A---- C:\WINDOWS\system32\winresume.exe
2013-12-12 17:57:30 ----A---- C:\WINDOWS\SYSWOW64\Display.dll
2013-12-12 17:57:28 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2013-12-12 17:57:28 ----A---- C:\WINDOWS\system32\winload.exe
2013-12-12 17:57:27 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2013-12-12 17:57:27 ----A---- C:\WINDOWS\system32\wpncore.dll
2013-12-12 17:57:27 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2013-12-12 17:57:27 ----A---- C:\WINDOWS\system32\appmgr.dll
2013-12-12 17:57:26 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2013-12-12 17:57:26 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2013-12-12 17:57:26 ----A---- C:\WINDOWS\system32\drivers\SerCx2.sys
2013-12-12 17:57:26 ----A---- C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-12 17:57:25 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2013-12-12 17:57:25 ----A---- C:\WINDOWS\SYSWOW64\CredentialMigrationHandler.dll
2013-12-12 17:57:24 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2013-12-12 17:57:24 ----A---- C:\WINDOWS\system32\d3d11.dll
2013-12-12 17:57:22 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2013-12-12 17:57:22 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2013-12-12 17:57:22 ----A---- C:\WINDOWS\system32\dxgi.dll
2013-12-12 17:57:22 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2013-12-12 17:57:20 ----A---- C:\WINDOWS\SYSWOW64\appmgr.dll
2013-12-12 17:57:20 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-12 17:57:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-12 17:57:19 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2013-12-12 17:57:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-12 17:57:19 ----A---- C:\WINDOWS\system32\winbici.dll
2013-12-12 17:57:19 ----A---- C:\WINDOWS\system32\dwmcore.dll
2013-12-11 05:35:03 ----A---- C:\WINDOWS\SYSWOW64\imagehlp.dll
2013-12-11 05:35:03 ----A---- C:\WINDOWS\system32\scrrun.dll
2013-12-11 05:35:03 ----A---- C:\WINDOWS\system32\imagehlp.dll
2013-12-11 05:35:02 ----A---- C:\WINDOWS\SYSWOW64\scrrun.dll
2013-12-11 05:35:02 ----A---- C:\WINDOWS\system32\mshtml.dll
2013-12-11 05:35:00 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2013-12-11 05:34:55 ----A---- C:\WINDOWS\system32\jscript9.dll
2013-12-11 05:34:54 ----A---- C:\WINDOWS\system32\ieframe.dll
2013-12-11 05:34:52 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2013-12-11 05:34:50 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2013-12-11 05:34:50 ----A---- C:\WINDOWS\system32\urlmon.dll
2013-12-11 05:34:49 ----A---- C:\WINDOWS\system32\wininet.dll
2013-12-11 05:34:49 ----A---- C:\WINDOWS\system32\iertutil.dll
2013-12-11 05:34:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2013-12-11 05:34:48 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2013-12-11 05:34:47 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2013-12-11 05:34:46 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2013-12-11 05:34:44 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2013-12-11 05:34:44 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2013-12-11 05:34:33 ----A---- C:\WINDOWS\system32\win32k.sys
2013-12-10 17:11:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-10 15:23:04 ----SHD---- C:\$RECYCLE.BIN
2013-12-09 15:32:00 ----D---- C:\Program Files (x86)\Adobe
2013-12-09 15:31:36 ----D---- C:\ProgramData\Adobe
2013-12-08 04:49:01 ----D---- C:\ProgramData\CanonIJMyPrinter
2013-12-08 02:15:11 ----D---- C:\ProgramData\CanonIJPLM
2013-12-08 00:53:56 ----D---- C:\Users\Administrator\AppData\Roaming\OpenOffice
2013-12-07 19:38:02 ----D---- C:\ProgramData\Canon IJ Network Tool
2013-12-07 19:29:14 ----D---- C:\WINDOWS\SYSWOW64\STRING
2013-12-07 14:28:45 ----D---- C:\ProgramData\Oracle
2013-12-07 13:53:02 ----D---- C:\Users\Administrator\AppData\Roaming\addpcs
2013-12-07 02:51:03 ----D---- C:\Users\Administrator\AppData\Roaming\Leadertech
2013-12-06 01:34:57 ----D---- C:\ProgramData\SecTaskMan
2013-12-06 01:34:52 ----D---- C:\Program Files (x86)\Security Task Manager
2013-12-06 00:22:47 ----A---- C:\WINDOWS\system32\perfi005.dat
2013-12-06 00:22:46 ----A---- C:\WINDOWS\system32\perfh005.dat
2013-12-06 00:22:46 ----A---- C:\WINDOWS\system32\perfd005.dat
2013-12-06 00:22:46 ----A---- C:\WINDOWS\system32\perfc005.dat
2013-12-06 00:20:22 ----D---- C:\WINDOWS\SYSWOW64\cs
2013-12-06 00:20:14 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2013-12-06 00:20:14 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2013-12-06 00:20:14 ----D---- C:\WINDOWS\cs-CZ
2013-12-06 00:20:13 ----D---- C:\WINDOWS\system32\cs
2013-12-06 00:20:03 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2013-12-04 18:27:00 ----HD---- C:\ProgramData\CanonIJEGV
2013-12-03 21:05:22 ----D---- C:\ProgramData\CanonIJ
2013-12-03 21:04:12 ----HD---- C:\ProgramData\CanonIJScan
2013-12-03 20:49:02 ----D---- C:\ProgramData\CanonIJSolutionMenuEX
2013-12-03 20:49:00 ----D---- C:\ProgramData\CanonIJEPPEX2
2013-12-03 20:49:00 ----D---- C:\ProgramData\CanonEPP
2013-12-03 20:48:59 ----D---- C:\Users\Administrator\AppData\Roaming\Canon
2013-12-03 20:46:37 ----A---- C:\WINDOWS\system32\CNMXLMAT.DLL
2013-12-03 20:43:32 ----D---- C:\Program Files\Common Files\CANON
2013-12-03 20:43:23 ----D---- C:\ProgramData\CanonIJWSpt
2013-12-03 20:39:27 ----HD---- C:\ProgramData\CanonBJ
2013-12-03 20:39:03 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2013-12-03 20:38:56 ----A---- C:\WINDOWS\SYSWOW64\CNHMCA.dll
2013-12-03 20:38:56 ----A---- C:\WINDOWS\SYSWOW64\CNC_ATU.dll
2013-12-03 20:38:56 ----A---- C:\WINDOWS\SYSWOW64\CNC_ATL.dll
2013-12-03 20:38:56 ----A---- C:\WINDOWS\system32\CNHMCA6.dll
2013-12-03 20:38:56 ----A---- C:\WINDOWS\system32\CNC_ATL.dll
2013-12-03 20:38:56 ----A---- C:\WINDOWS\system32\CNC_ATI.dll
2013-12-03 20:38:56 ----A---- C:\WINDOWS\system32\CNC_ATC.dll
2013-12-03 20:38:36 ----A---- C:\WINDOWS\system32\CNMLMAT.DLL
2013-12-03 20:38:21 ----A---- C:\WINDOWS\system32\CNMIUAT.DLL
2013-12-03 20:38:03 ----HD---- C:\Program Files\CanonBJ
2013-12-03 20:37:50 ----D---- C:\WINDOWS\system32\STRING
2013-12-03 20:37:50 ----A---- C:\WINDOWS\system32\CNMN6UI.DLL
2013-12-03 20:37:49 ----A---- C:\WINDOWS\SYSWOW64\CNMNPPM.DLL
2013-12-03 20:37:49 ----A---- C:\WINDOWS\system32\CNMN6PPM.DLL
2013-12-03 20:35:16 ----D---- C:\Program Files (x86)\Canon
2013-12-03 01:21:30 ----D---- C:\Program Files\Microsoft Mouse and Keyboard Center
2013-12-02 11:05:43 ----D---- C:\Users\Administrator\AppData\Roaming\Macromedia
2013-12-02 09:01:47 ----D---- C:\Users\Administrator\AppData\Roaming\Mozilla
2013-11-29 01:59:34 ----D---- C:\WINDOWS\Minidump
2013-11-24 15:37:17 ----A---- C:\WINDOWS\system32\WSService.dll
2013-11-24 15:37:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2013-11-24 15:37:11 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2013-11-24 15:37:10 ----A---- C:\WINDOWS\system32\wuaueng.dll
2013-11-24 15:37:08 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2013-11-24 15:37:07 ----A---- C:\WINDOWS\system32\authui.dll
2013-11-24 15:37:06 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2013-11-24 15:37:06 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2013-11-24 15:37:06 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2013-11-24 15:37:06 ----A---- C:\WINDOWS\explorer.exe
2013-11-24 15:37:05 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2013-11-24 15:37:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2013-11-24 15:37:04 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2013-11-24 15:37:04 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2013-11-24 15:37:04 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2013-11-24 15:37:03 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2013-11-24 15:37:03 ----A---- C:\WINDOWS\system32\mfsvr.dll
2013-11-24 15:37:03 ----A---- C:\WINDOWS\system32\kernel32.dll
2013-11-24 15:37:03 ----A---- C:\WINDOWS\system32\d3d9.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\system32\winmde.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2013-11-24 15:37:02 ----A---- C:\WINDOWS\system32\d2d1.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\system32\wmpmde.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\system32\iuilp.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\system32\dnsapi.dll
2013-11-24 15:37:01 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2013-11-24 15:37:00 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2013-11-24 15:37:00 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2013-11-24 15:37:00 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2013-11-24 15:37:00 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2013-11-24 15:37:00 ----A---- C:\WINDOWS\system32\WWAHost.exe
2013-11-24 15:37:00 ----A---- C:\WINDOWS\system32\eapphost.dll
2013-11-24 15:36:58 ----AC---- C:\WINDOWS\system32\drivers\acpi.sys
2013-11-24 15:36:57 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2013-11-24 15:36:57 ----A---- C:\WINDOWS\system32\ploptin.dll
2013-11-24 15:36:57 ----A---- C:\WINDOWS\system32\kd_02_8086.dll
2013-11-24 15:36:57 ----A---- C:\WINDOWS\system32\AudioSes.dll
2013-11-24 15:36:56 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2013-11-24 15:36:56 ----A---- C:\WINDOWS\system32\tsmf.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\system32\wintrust.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\system32\psmsrv.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\system32\comdlg32.dll
2013-11-24 15:36:55 ----A---- C:\WINDOWS\system32\apphelp.dll
2013-11-24 15:36:54 ----AC---- C:\WINDOWS\system32\drivers\usbccgp.sys
2013-11-24 15:36:54 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\wldp.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\samsrv.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\profsvc.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\msched.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\embeddedapplauncher.exe
2013-11-24 15:36:54 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2013-11-24 15:36:53 ----AC---- C:\WINDOWS\system32\drivers\stornvme.sys
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\wuauclt.exe
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\shsetup.dll
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\dafWfdProvider.dll
2013-11-24 15:36:53 ----A---- C:\WINDOWS\system32\dafBth.dll
2013-11-24 15:36:52 ----A---- C:\WINDOWS\SYSWOW64\shsetup.dll
2013-11-24 15:36:52 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2013-11-24 15:36:52 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2013-11-24 15:36:52 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2013-11-24 15:36:52 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2013-11-24 15:36:52 ----A---- C:\WINDOWS\system32\eappcfg.dll
2013-11-24 15:36:51 ----A---- C:\WINDOWS\SYSWOW64\ftp.exe
2013-11-24 15:36:51 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2013-11-24 15:36:51 ----A---- C:\WINDOWS\system32\wucltux.dll
2013-11-24 15:36:51 ----A---- C:\WINDOWS\system32\eappgnui.dll
2013-11-24 15:36:50 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2013-11-24 15:36:50 ----A---- C:\WINDOWS\SYSWOW64\miutils.dll
2013-11-24 15:36:50 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2013-11-24 15:36:50 ----A---- C:\WINDOWS\system32\rdpclip.exe
2013-11-24 15:36:50 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2013-11-24 15:36:50 ----A---- C:\WINDOWS\system32\miutils.dll
2013-11-24 15:36:50 ----A---- C:\WINDOWS\system32\ftp.exe
2013-11-24 15:36:50 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2013-11-24 15:16:54 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2013-11-24 15:16:51 ----A---- C:\WINDOWS\system32\shell32.dll
2013-11-24 15:16:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2013-11-24 15:16:47 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2013-11-24 15:16:40 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2013-11-24 15:16:40 ----A---- C:\WINDOWS\system32\actxprxy.dll
2013-11-24 15:16:39 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2013-11-24 15:16:39 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2013-11-24 12:55:04 ----D---- C:\Program Files\Canon
2013-11-17 00:17:35 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2013-11-17 00:17:35 ----A---- C:\WINDOWS\system32\gdi32.dll
2013-11-17 00:17:35 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2013-11-17 00:17:34 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2013-11-17 00:17:34 ----A---- C:\WINDOWS\system32\BFE.DLL
2013-11-17 00:14:36 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2013-11-17 00:14:36 ----A---- C:\WINDOWS\system32\crypt32.dll
2013-11-17 00:14:04 ----D---- C:\Program Files\CCleaner
2013-11-14 11:38:24 ----A---- C:\WINDOWS\system32\drivers\cmdguard.sys
2013-11-14 11:38:02 ----A---- C:\WINDOWS\system32\cmdcsr.dll
2013-11-09 19:01:38 ----D---- C:\Users\Administrator\AppData\Roaming\Adobe
2013-11-09 19:01:19 ----D---- C:\WINDOWS\Downloaded Installations
2013-11-09 18:35:25 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2013-11-09 17:11:11 ----D---- C:\Program Files (x86)\Reference Assemblies
2013-11-09 17:11:11 ----D---- C:\Program Files (x86)\MSBuild
2013-11-09 17:10:59 ----D---- C:\Program Files\Reference Assemblies
2013-11-09 17:10:59 ----D---- C:\Program Files\MSBuild
2013-11-09 17:08:38 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2013-11-09 17:08:38 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2013-11-09 17:08:38 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-11-09 17:08:35 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2013-11-09 17:08:35 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2013-11-09 17:08:34 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2013-11-09 15:59:01 ----SD---- C:\Users\Administrator\AppData\Roaming\Microsoft
2013-11-04 20:20:29 ----D---- C:\WINDOWS\BrowserChoice
2013-11-04 09:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2013-11-04 09:35:15 ----A---- C:\WINDOWS\system32\mfplat.dll
2013-11-04 09:34:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2013-11-04 09:34:51 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2013-11-04 09:34:51 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2013-11-04 09:34:51 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2013-11-04 09:34:51 ----A---- C:\WINDOWS\system32\msctf.dll
2013-11-04 09:34:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2013-11-04 01:02:44 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2013-11-04 00:40:26 ----D---- C:\WINDOWS\Prefetch
2013-11-04 00:05:17 ----D---- C:\ProgramData\Mozilla
2013-10-22 18:24:20 ----D---- C:\Program Files (x86)\OpenOffice 4