samo se mi občas mění nastavení v PC
Napsal: 10 úno 2014 10:43
Dobrý den.
Měl bych na Vás velikou prosbu.
Myslím si, že se mi někdo dostal do PC a bohužel nevím, co s tím.
Dával jsem si počítač překontrolovat a našli tam vir Z-TERM, který údajně odesílá navštěvované stránky a hesla. Ale obávám se, že nenašli asi vše. Od té doby se mi stalo, že při prohlížení pošty, aniž bych na cokoliv sáhl mi přeskočila další zpráva. Ve firefoxu se mi změnilo nastavení z nepamatovat si hesla a historii na pravý opak. I když jsem blokoval vzdálený přísup na plochu tak nevím, jestli i tam není problém.
Děti na počítač chodí, ale tohle by určitě nezvládly přenastavit.
Velice Vám děkuji za případnou pomoc.
Podle návodu jsem se pokusil udělat Logfile:
Při odelání mi to napsalo, že mohu poslat jenom 100000 znaků tak to posílám na dvě části.
Logfile of random's system information tool 1.09 (written by random/random)
Run by name at 2014-02-10 10:26:43
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 52 GB (50%) free of 103 GB
Total RAM: 4095 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:27:07, on 10.2.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\AVG\AVG2014\avgui.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\trend micro\name.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1187863526-2632742443-2962134052-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1187863526-2632742443-2962134052-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Sledovat výstrahy inkoustu - HP Deskjet 5520 series.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8363 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG2014\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe /pipeName=d53b881b-95af-4a3b-9908-ed4bb1a2681b /coreSdkOptions=4382 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\5c8ca717-966b-4c13-b91f-0d6b3867b915-14c-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2014\" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Windows\system32\RunDll32.exe" "C:\Program Files\HP\HP Deskjet 5520 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN2A91B1JM05SX;CONNECTION=USB;MONITOR=1;
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgemca.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\CyberLink\Shared files\brs.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe /pipeName=d6955834-42ce-4458-9382-990348353621 /coreSdkOptions=4114 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\bf9d8451-f2fa-465f-96a5-1d4de60a8964-a30-oopp.tmp" /loggerName=AVG.NS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2014\" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\SeaPort.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE"
C:\Windows\splwow64.exe 12288
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
taskeng.exe {5E4B3472-938C-4E42-97AF-BC3A1D85648D}
"C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe"
"D:\stahování internet\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\HP Photo Creations Communicator.job
=========Mozilla firefox=========
ProfilePath - C:\Users\name\AppData\Roaming\Mozilla\Firefox\Profiles\8s7f7y5u.default
prefs.js - "browser.startup.homepage" - "about blank"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll [2013-12-16 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll [2013-12-16 1432224]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-21 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-21 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{eec0f710-38b5-4aba-99bf-ec87564a4e13} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll [2013-12-16 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{eec0f710-38b5-4aba-99bf-ec87564a4e13} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll [2013-12-16 1432224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2010-02-03 87336]
"BDRegion"=C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [2010-06-28 75048]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2014\avgui.exe [2013-11-07 4956176]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
""= []
C:\Users\name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sledovat výstrahy inkoustu - HP Deskjet 5520 series.lnk - C:\Windows\system32\RunDll32.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FFDS"=ff_vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-02-10 10:26:43 ----D---- C:\rsit
2014-02-10 10:26:43 ----D---- C:\Program Files\trend micro
2014-01-30 11:26:32 ----D---- C:\Users\name\AppData\Roaming\NVIDIA
2014-01-21 21:11:35 ----D---- C:\Users\name\AppData\Roaming\Wargaming.net
2014-01-21 18:52:23 ----D---- C:\Windows\SYSWOW64\directx
2014-01-21 18:52:20 ----D---- C:\Games
2014-01-21 18:41:31 ----D---- C:\Users\name\AppData\Roaming\Visan
2014-01-21 17:55:34 ----D---- C:\Program Files (x86)\Microsoft
2014-01-21 17:55:25 ----D---- C:\ProgramData\Visan
2014-01-21 17:55:25 ----D---- C:\ProgramData\HP Photo Creations
2014-01-21 17:55:25 ----D---- C:\Program Files (x86)\HP Photo Creations
2014-01-21 17:55:08 ----D---- C:\Users\name\AppData\Roaming\HpUpdate
2014-01-21 17:55:01 ----N---- C:\Windows\system32\HPDiscoPMB611.dll
2014-01-21 17:54:26 ----D---- C:\ProgramData\HP
2014-01-21 17:54:16 ----D---- C:\Program Files (x86)\HP
2014-01-21 17:54:00 ----D---- C:\Program Files\HP
2014-01-21 17:53:55 ----A---- C:\ProgramData\Ament.ini
2014-01-21 17:15:10 ----D---- C:\Users\name\AppData\Roaming\Thunderbird
2014-01-21 17:15:02 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2014-01-21 02:29:32 ----D---- C:\Users\name\AppData\Roaming\Macromedia
2014-01-21 02:27:04 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-01-21 02:27:03 ----D---- C:\Windows\SYSWOW64\Macromed
2014-01-21 02:27:02 ----D---- C:\Windows\system32\Macromed
2014-01-21 02:12:34 ----D---- C:\Users\name\AppData\Roaming\Opera
2014-01-21 02:12:29 ----D---- C:\Program Files (x86)\Opera
2014-01-21 02:08:44 ----D---- C:\Windows\SYSWOW64\Adobe
2014-01-21 01:25:14 ----D---- C:\Users\name\AppData\Roaming\AVG2014
2014-01-21 01:23:28 ----HD---- C:\$AVG
2014-01-21 01:23:28 ----D---- C:\ProgramData\AVG2014
2014-01-21 01:22:01 ----D---- C:\Program Files (x86)\AVG
2014-01-21 01:20:51 ----HD---- C:\ProgramData\Common Files
2014-01-21 01:20:51 ----D---- C:\ProgramData\MFAData
2014-01-21 01:17:33 ----D---- C:\ProgramData\Sun
2014-01-21 01:17:23 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-01-21 01:17:18 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-01-21 01:17:18 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-01-21 01:17:18 ----A---- C:\Windows\SYSWOW64\java.exe
2014-01-21 01:17:10 ----D---- C:\Program Files (x86)\Java
2014-01-21 01:02:03 ----D---- C:\Program Files (x86)\IrfanView
2014-01-21 00:38:46 ----D---- C:\Program Files (x86)\MSXML 4.0
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\rmoc3260.dll
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\pndx5032.dll
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\pndx5016.dll
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\pncrt.dll
2014-01-21 00:30:48 ----D---- C:\Program Files (x86)\Real Alternative
2014-01-21 00:30:34 ----D---- C:\ProgramData\Apple Computer
2014-01-21 00:30:32 ----A---- C:\Windows\SYSWOW64\QTCF.dll
2014-01-21 00:30:30 ----D---- C:\Program Files (x86)\QuickTime Alternative
2014-01-21 00:28:27 ----D---- C:\Program Files (x86)\Adobe
2014-01-21 00:27:42 ----D---- C:\ProgramData\Adobe
2014-01-21 00:27:06 ----D---- C:\Program Files (x86)\MSECache
2014-01-21 00:16:52 ----D---- C:\Program Files (x86)\Microsoft Works
2014-01-21 00:16:41 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2014-01-21 00:16:30 ----D---- C:\Windows\PCHEALTH
2014-01-21 00:15:11 ----D---- C:\Program Files\Microsoft Office
2014-01-21 00:14:18 ----D---- C:\ProgramData\Microsoft Help
2014-01-21 00:14:18 ----D---- C:\Program Files (x86)\Microsoft Office
2014-01-21 00:13:59 ----RHD---- C:\MSOCache
2014-01-20 22:16:51 ----D---- C:\Users\name\AppData\Roaming\CyberLink
2014-01-20 22:13:44 ----D---- C:\ProgramData\CyberLink
2014-01-20 22:13:29 ----D---- C:\Program Files (x86)\InstallShield Installation Information
2014-01-20 22:11:36 ----D---- C:\Program Files (x86)\CyberLink
2014-01-20 22:11:36 ----A---- C:\Windows\SYSWOW64\msxml3a.dll
2014-01-20 22:11:36 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-01-20 22:11:36 ----A---- C:\Windows\SYSWOW64\msvcp71.dll
2014-01-20 22:11:18 ----D---- C:\ProgramData\Temp
2014-01-20 22:09:14 ----D---- C:\Users\name\AppData\Roaming\Media Player Classic
2014-01-20 21:47:48 ----D---- C:\Program Files (x86)\FinalWire
2014-01-20 21:45:59 ----D---- C:\Program Files (x86)\CrystalDiskInfo6_0_4
2014-01-20 21:42:51 ----D---- C:\Program Files\ffdshow
2014-01-20 21:42:51 ----A---- C:\Windows\system32\ff_vfw.dll
2014-01-20 21:41:49 ----D---- C:\Program Files\MPC-HC.1.6.5.6366.x64
2014-01-20 21:40:03 ----D---- C:\Users\name\AppData\Roaming\WinRAR
2014-01-20 21:39:28 ----D---- C:\Program Files\WinRAR
2014-01-20 21:35:50 ----D---- C:\Users\name\AppData\Roaming\BSplayer PRO
2014-01-20 21:35:49 ----D---- C:\Program Files (x86)\Webteh
2014-01-20 21:26:37 ----D---- C:\ProgramData\LightScribe
2014-01-20 21:25:35 ----D---- C:\Users\name\AppData\Roaming\Nero
2014-01-20 21:21:40 ----D---- C:\Program Files (x86)\Nero
2014-01-20 21:21:31 ----D---- C:\ProgramData\Nero
2014-01-20 21:13:57 ----D---- C:\Program Files\cpu-z_1.62-64bits-en
2014-01-20 21:07:39 ----D---- C:\Users\name\AppData\Roaming\GHISLER
2014-01-20 21:07:39 ----D---- C:\totalcmd
2014-01-20 20:42:49 ----A---- C:\Windows\system32\ieui.dll
2014-01-20 20:42:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-01-20 20:42:48 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-01-20 20:42:48 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\jsproxy.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ieUnatt.exe
2014-01-20 20:42:48 ----A---- C:\Windows\system32\iesetup.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\iernonce.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ie4uinit.exe
2014-01-20 20:42:47 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-01-20 20:42:47 ----A---- C:\Windows\system32\mshtml.dll
2014-01-20 20:42:47 ----A---- C:\Windows\system32\jscript9diag.dll
2014-01-20 20:42:47 ----A---- C:\Windows\system32\ieapfltr.dll
2014-01-20 20:42:46 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-01-20 20:42:46 ----A---- C:\Windows\system32\iertutil.dll
2014-01-20 20:42:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-01-20 20:42:45 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-01-20 20:42:45 ----A---- C:\Windows\system32\wininet.dll
2014-01-20 20:42:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-01-20 20:42:44 ----A---- C:\Windows\system32\urlmon.dll
2014-01-20 20:42:43 ----A---- C:\Windows\system32\ieframe.dll
2014-01-20 20:42:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-01-20 20:42:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-01-20 20:42:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-01-20 20:42:41 ----A---- C:\Windows\system32\jscript9.dll
2014-01-20 20:41:34 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-01-20 20:41:34 ----A---- C:\Windows\system32\WMPhoto.dll
2014-01-20 20:41:33 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-01-20 20:41:33 ----A---- C:\Windows\explorer.exe
2014-01-20 20:41:32 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-01-20 20:41:32 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-01-20 20:41:32 ----A---- C:\Windows\system32\spoolsv.exe
2014-01-20 20:41:32 ----A---- C:\Windows\splwow64.exe
2014-01-20 20:34:35 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-01-20 20:30:26 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-01-20 20:30:26 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-01-20 20:30:23 ----A---- C:\Windows\system32\elshyph.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\url.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\wextract.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\webcheck.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\vbscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\url.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\pngfilt.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\occache.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msrating.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msls31.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshtmler.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshtmled.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshta.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msfeedssync.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msfeeds.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\licmgr10.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\jsIntl.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\jscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\inseng.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\imgutil.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iexpress.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iesysprep.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iepeers.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iedkcs32.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\ieapfltr.dat
2014-01-20 20:30:22 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\icardie.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\dxtrans.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\dxtmsft.dll
2014-01-20 20:25:03 ----D---- C:\Users\name\AppData\Roaming\Adobe
2014-01-20 20:15:51 ----A---- C:\Windows\system32\wmploc.DLL
2014-01-20 20:15:50 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-01-20 20:15:50 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-01-20 20:15:49 ----A---- C:\Windows\system32\wmp.dll
2014-01-20 20:09:35 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-01-20 20:07:51 ----D---- C:\Windows\Migration
2014-01-20 19:30:27 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-01-20 19:30:27 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-01-20 19:30:27 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-01-20 19:30:26 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-01-20 19:30:26 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\wksprtPS.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\wksprt.exe
2014-01-20 19:30:25 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-01-20 19:30:25 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\tsgqec.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\rdpudd.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\aaclient.dll
2014-01-20 19:30:24 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-01-20 19:30:24 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-01-20 19:30:24 ----A---- C:\Windows\system32\rdpcorets.dll
2014-01-20 19:30:24 ----A---- C:\Windows\system32\mstscax.dll
2014-01-20 19:30:24 ----A---- C:\Windows\system32\mstsc.exe
2014-01-20 19:09:42 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-01-20 19:09:42 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-01-20 19:09:42 ----A---- C:\Windows\system32\UIAnimation.dll
2014-01-20 19:09:42 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-01-20 19:09:40 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\dxgi.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10warp.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10level9.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10_1.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\XpsPrint.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\FntCache.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\DWrite.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\d3d10.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\d2d1.dll
2014-01-20 18:46:56 ----A---- C:\Windows\system32\consent.exe
2014-01-20 18:46:56 ----A---- C:\Windows\system32\appinfo.dll
2014-01-20 18:46:44 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-01-20 18:46:44 ----A---- C:\Windows\system32\d3d11.dll
2014-01-20 18:46:37 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-01-20 18:46:37 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-01-20 18:46:37 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-01-20 18:46:37 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-01-20 18:46:37 ----A---- C:\Windows\system32\credui.dll
2014-01-20 18:46:37 ----A---- C:\Windows\system32\authui.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\sspisrv.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\sspicli.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\schannel.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\secur32.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\ncrypt.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\lsass.exe
2014-01-20 18:46:28 ----A---- C:\Windows\system32\lsasrv.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-01-20 18:46:28 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-01-20 18:46:28 ----A---- C:\Windows\system32\drivers\cng.sys
2014-01-20 18:46:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-01-20 18:46:24 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-01-20 18:46:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-01-20 18:46:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-01-20 18:46:24 ----A---- C:\Windows\system32\tdh.dll
2014-01-20 18:46:24 ----A---- C:\Windows\system32\ntdll.dll
2014-01-20 18:46:24 ----A---- C:\Windows\system32\advapi32.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\user.exe
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-01-20 18:46:23 ----A---- C:\Windows\system32\wow64.dll
2014-01-20 18:46:21 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-01-20 18:46:21 ----A---- C:\Windows\system32\tzres.dll
2014-01-20 18:46:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-01-20 18:46:03 ----A---- C:\Windows\system32\wintrust.dll
2014-01-20 18:45:56 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-01-20 18:45:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-01-20 18:45:54 ----A---- C:\Windows\system32\KernelBase.dll
2014-01-20 18:45:53 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\winsrv.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\smss.exe
2014-01-20 18:45:53 ----A---- C:\Windows\system32\kernel32.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\csrsrv.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\conhost.exe
2014-01-20 18:45:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-01-20 18:45:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-01-20 18:45:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-01-20 18:45:49 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-01-20 18:45:46 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-01-20 18:45:46 ----A---- C:\Windows\system32\apisetschema.dll
2014-01-20 18:45:43 ----A---- C:\Windows\system32\shell32.dll
2014-01-20 18:45:42 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-01-20 18:45:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-01-20 18:45:42 ----A---- C:\Windows\system32\shdocvw.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\nlasvc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\nlaapi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\netevent.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\netcorehc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\ncsi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-01-20 18:45:33 ----A---- C:\Windows\system32\taskhost.exe
2014-01-20 18:45:33 ----A---- C:\Windows\system32\drivers\afd.sys
2014-01-20 18:45:30 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-01-20 18:45:30 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-01-20 18:45:30 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-01-20 18:45:30 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-01-20 18:45:25 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-01-20 18:45:25 ----A---- C:\Windows\system32\qedit.dll
2014-01-20 18:45:20 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-01-20 18:45:17 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-01-20 18:45:17 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-01-20 18:45:17 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-01-20 18:45:17 ----A---- C:\Windows\system32\cryptsvc.dll
2014-01-20 18:45:17 ----A---- C:\Windows\system32\cryptnet.dll
2014-01-20 18:45:17 ----A---- C:\Windows\system32\crypt32.dll
2014-01-20 18:45:11 ----A---- C:\Windows\system32\wwansvc.dll
2014-01-20 18:45:11 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-01-20 18:45:10 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-01-20 18:45:10 ----A---- C:\Windows\system32\mswsock.dll
2014-01-20 18:45:09 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-01-20 18:45:08 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-01-20 18:45:08 ----A---- C:\Windows\system32\comctl32.dll
2014-01-20 18:45:07 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-01-20 18:45:07 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-01-20 18:45:07 ----A---- C:\Windows\system32\WebClnt.dll
2014-01-20 18:45:07 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-01-20 18:45:07 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-01-20 18:45:07 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-01-20 18:45:07 ----A---- C:\Windows\system32\davclnt.dll
2014-01-20 18:45:06 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-01-20 18:45:06 ----A---- C:\Windows\system32\msieftp.dll
2014-01-20 18:45:05 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-01-20 18:45:05 ----A---- C:\Windows\system32\qdvd.dll
2014-01-20 18:45:05 ----A---- C:\Windows\system32\drivers\usbscan.sys
2014-01-20 18:45:05 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-01-20 18:45:05 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-01-20 18:44:07 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-01-20 18:44:07 ----A---- C:\Windows\system32\win32spl.dll
2014-01-20 18:44:05 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-01-20 18:44:04 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-01-20 18:44:04 ----A---- C:\Windows\system32\rpcrt4.dll
2014-01-20 18:44:04 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-01-20 18:44:04 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-01-20 18:44:03 ----A---- C:\Windows\system32\lpk.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\fontsub.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\dciman32.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\atmlib.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\atmfd.dll
2014-01-20 18:44:02 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-01-20 18:44:02 ----A---- C:\Windows\system32\imagehlp.dll
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-01-20 18:39:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-01-20 18:39:38 ----A---- C:\Windows\system32\gdi32.dll
2014-01-20 18:39:17 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-01-20 18:39:10 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-01-20 18:39:10 ----A---- C:\Windows\system32\drivers\netio.sys
2014-01-20 18:39:02 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-01-20 18:39:02 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-01-20 18:39:02 ----A---- C:\Windows\system32\fsutil.exe
2014-01-20 18:39:02 ----A---- C:\Windows\system32\esent.dll
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\storport.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-01-20 18:38:53 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-01-20 18:38:53 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-01-20 18:38:53 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-01-20 18:38:53 ----A---- C:\Windows\system32\wscript.exe
2014-01-20 18:38:53 ----A---- C:\Windows\system32\scrrun.dll
2014-01-20 18:38:53 ----A---- C:\Windows\system32\cscript.exe
2014-01-20 18:38:25 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-01-20 18:38:25 ----A---- C:\Windows\system32\cryptdlg.dll
2014-01-20 18:38:18 ----A---- C:\Windows\system32\win32k.sys
2014-01-20 18:36:44 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-01-20 18:36:44 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-01-20 18:36:33 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-01-20 18:36:33 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-01-20 18:36:33 ----A---- C:\Windows\system32\certutil.exe
2014-01-20 18:36:33 ----A---- C:\Windows\system32\certenc.dll
2014-01-20 18:36:10 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-01-20 18:36:10 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-01-20 18:36:10 ----A---- C:\Windows\system32\cdd.dll
2014-01-20 18:36:07 ----A---- C:\Windows\system32\scavengeui.dll
2014-01-20 18:36:06 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-01-20 18:36:06 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-01-20 18:36:06 ----A---- C:\Windows\system32\nshwfp.dll
2014-01-20 18:36:06 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-01-20 18:36:06 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-01-20 18:24:29 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-01-20 18:24:10 ----SHD---- C:\Windows\Installer
2014-01-20 18:05:44 ----D---- C:\Users\name\AppData\Roaming\Mozilla
2014-01-20 18:05:40 ----D---- C:\ProgramData\Mozilla
2014-01-20 18:05:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-01-20 18:05:38 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-01-20 17:59:57 ----D---- C:\Windows\SYSWOW64\Wat
2014-01-20 17:59:57 ----D---- C:\Windows\system32\Wat
2014-01-20 17:49:42 ----D---- C:\ProgramData\NVIDIA
2014-01-20 17:49:35 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvvsvc.exe
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvsvcr.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvsvc64.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvshext.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvmctray.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvcpl.dll
2014-01-20 17:49:03 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-01-20 17:49:03 ----A---- C:\Windows\system32\OpenCL.dll
2014-01-20 17:48:44 ----D---- C:\ProgramData\NVIDIA Corporation
2014-01-20 17:43:51 ----D---- C:\Program Files\NVIDIA Corporation
2014-01-20 17:43:51 ----A---- C:\Windows\system32\cohelper.dll
2014-01-20 17:41:05 ----A---- C:\Windows\system32\Wdfres.dll
2014-01-20 17:41:05 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-01-20 17:34:56 ----A---- C:\Windows\system32\browserchoice.exe
2014-01-20 17:25:21 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-01-20 17:25:21 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-01-20 17:25:21 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-01-20 17:25:21 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-01-20 17:25:20 ----A---- C:\Windows\system32\WUDFx.dll
2014-01-20 17:25:20 ----A---- C:\Windows\system32\WUDFHost.exe
2014-01-20 17:25:20 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-01-20 17:22:31 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-01-20 17:22:31 ----A---- C:\Windows\system32\wmi.dll
2014-01-20 17:22:31 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-01-20 17:20:23 ----D---- C:\Windows\system32\MRT
2014-01-20 17:20:18 ----A---- C:\Windows\system32\MRT.exe
2014-01-20 17:03:17 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-01-20 17:03:17 ----A---- C:\Windows\system32\ntshrui.dll
2014-01-20 17:03:13 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-01-20 17:03:13 ----A---- C:\Windows\system32\sbe.dll
2014-01-20 17:03:13 ----A---- C:\Windows\system32\CPFilters.dll
2014-01-20 17:03:12 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-01-20 17:03:09 ----A---- C:\Windows\system32\tquery.dll
2014-01-20 17:03:09 ----A---- C:\Windows\system32\mssrch.dll
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-01-20 17:03:08 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-01-20 17:03:08 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-01-20 17:03:08 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-01-20 17:03:08 ----A---- C:\Windows\system32\mssvp.dll
2014-01-20 17:03:08 ----A---- C:\Windows\system32\mssphtb.dll
2014-01-20 17:03:08 ----A---- C:\Windows\system32\mssph.dll
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-01-20 17:03:07 ----A---- C:\Windows\system32\msscntrs.dll
2014-01-20 17:02:54 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-01-20 17:02:54 ----A---- C:\Windows\system32\poqexec.exe
2014-01-20 17:02:53 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-01-20 17:02:53 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-01-20 17:02:53 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-01-20 17:02:38 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-01-20 17:02:38 ----A---- C:\Windows\system32\quartz.dll
2014-01-20 17:02:37 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-01-20 17:02:37 ----A---- C:\Windows\system32\webio.dll
2014-01-20 17:02:32 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-01-20 17:02:32 ----A---- C:\Windows\system32\xmllite.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbctrac.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbccu32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbccr32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbccp32.dll
2014-01-20 17:02:30 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-01-20 17:01:48 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-01-20 17:01:39 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-01-20 17:01:39 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-01-20 17:01:39 ----A---- C:\Windows\system32\mfc42u.dll
2014-01-20 17:01:39 ----A---- C:\Windows\system32\mfc42.dll
2014-01-20 17:01:38 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-01-20 17:01:25 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-01-20 17:01:25 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-01-20 17:01:25 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-01-20 17:01:25 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-01-20 17:01:25 ----A---- C:\Windows\system32\dnsapi.dll
2014-01-20 17:01:23 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-01-20 17:01:23 ----A---- C:\Windows\system32\rdpwsx.dll
2014-01-20 17:01:23 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-01-20 17:01:23 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-01-20 17:01:17 ----A---- C:\Windows\system32\profsvc.dll
2014-01-20 17:01:16 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-01-20 17:01:16 ----A---- C:\Windows\system32\msxml6.dll
2014-01-20 17:01:16 ----A---- C:\Windows\system32\msxml3.dll
2014-01-20 17:01:15 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-01-20 17:01:15 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-01-20 17:01:15 ----A---- C:\Windows\system32\msxml3r.dll
2014-01-20 17:00:48 ----A---- C:\Windows\system32\dpnet.dll
2014-01-20 17:00:47 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-01-20 17:00:46 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-01-20 17:00:46 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-01-20 17:00:46 ----A---- C:\Windows\system32\drivers\srv.sys
2014-01-20 17:00:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-01-20 17:00:45 ----A---- C:\Windows\system32\kerberos.dll
2014-01-20 17:00:41 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-01-20 17:00:35 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-01-20 17:00:35 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-01-20 17:00:35 ----A---- C:\Windows\system32\Wpc.dll
2014-01-20 17:00:35 ----A---- C:\Windows\system32\gameux.dll
2014-01-20 17:00:25 ----A---- C:\Windows\system32\usp10.dll
2014-01-20 17:00:24 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-01-20 17:00:22 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-01-20 17:00:21 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-01-20 17:00:21 ----A---- C:\Windows\system32\psisdecd.dll
2014-01-20 17:00:17 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-01-20 17:00:11 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-01-20 17:00:11 ----A---- C:\Windows\system32\synceng.dll
2014-01-20 17:00:06 ----A---- C:\Windows\system32\wow64win.dll
2014-01-20 17:00:05 ----A---- C:\Windows\system32\ntvdm64.dll
2014-01-20 17:00:04 ----A---- C:\Windows\system32\wow64cpu.dll
2014-01-20 16:59:49 ----A---- C:\Windows\system32\msi.dll
2014-01-20 16:59:48 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-01-20 16:59:26 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-01-20 16:59:26 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-01-20 16:59:26 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-01-20 16:59:26 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-01-20 16:59:25 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-01-20 16:59:25 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-01-20 16:59:24 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-01-20 16:59:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-01-20 16:59:24 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-01-20 16:59:24 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-01-20 16:59:22 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-01-20 16:59:22 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-01-20 16:59:22 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-01-20 16:59:22 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-01-20 16:59:21 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-01-20 16:59:21 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-01-20 16:59:20 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-01-20 16:59:20 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-01-20 16:59:19 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-01-20 16:59:19 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-01-20 16:59:18 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-01-20 16:59:18 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-01-20 16:59:18 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-01-20 16:59:18 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-01-20 16:59:18 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-01-20 16:59:18 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-01-20 16:59:17 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-01-20 16:59:17 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-01-20 16:59:15 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-01-20 16:59:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-01-20 16:59:15 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-01-20 16:59:15 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-01-20 16:59:14 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-01-20 16:59:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-01-20 16:59:14 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-01-20 16:59:14 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-01-20 16:59:14 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-01-20 16:59:14 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-01-20 16:59:13 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-01-20 16:59:13 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-01-20 16:59:13 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-01-20 16:59:13 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-01-20 16:59:12 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-01-20 16:59:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-01-20 16:59:12 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-01-20 16:59:12 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-01-20 16:59:11 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-01-20 16:59:11 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-01-20 16:59:10 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-01-20 16:59:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-01-20 16:59:10 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-01-20 16:59:10 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-01-20 16:59:06 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-01-20 16:59:06 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-01-20 16:59:05 ----A---- C:\Windows\system32\winresume.exe
2014-01-20 16:59:05 ----A---- C:\Windows\system32\winload.exe
2014-01-20 16:59:05 ----A---- C:\Windows\system32\kdusb.dll
2014-01-20 16:59:05 ----A---- C:\Windows\system32\kdcom.dll
2014-01-20 16:59:05 ----A---- C:\Windows\system32\kd1394.dll
2014-01-20 16:59:04 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-01-20 16:59:04 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-01-20 16:59:02 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-01-20 16:59:02 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-01-20 16:59:00 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-01-20 16:58:56 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-01-20 16:58:56 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-01-20 16:58:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-01-20 16:58:56 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-01-20 16:58:56 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-01-20 16:58:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-01-20 16:58:55 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-01-20 16:58:55 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-01-20 16:58:51 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-01-20 16:58:51 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-01-20 16:58:50 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-01-20 16:58:50 ----A---- C:\Windows\system32\xinput1_3.dll
2014-01-20 16:58:49 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-01-20 16:58:49 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-01-20 16:58:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-01-20 16:58:49 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-01-20 16:58:49 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-01-20 16:58:49 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-01-20 16:58:48 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-01-20 16:58:48 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-01-20 16:58:47 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-01-20 16:58:47 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-01-20 16:58:43 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-01-20 16:58:43 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-01-20 16:58:42 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-01-20 16:58:42 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-01-20 16:58:42 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-01-20 16:58:42 ----A---- C:\Windows\system32\d3dx10.dll
2014-01-20 16:58:41 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-01-20 16:58:41 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-01-20 16:58:41 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-01-20 16:58:41 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-01-20 16:58:39 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-01-20 16:58:39 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-01-20 16:58:38 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-01-20 16:58:38 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-01-20 16:58:38 ----A---- C:\Windows\system32\xinput1_2.dll
2014-01-20 16:58:38 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-01-20 16:58:36 ----A---- C:\Windows\system32\xinput1_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-01-20 16:58:36 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-01-20 16:58:35 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-01-20 16:58:35 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-01-20 16:58:35 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-01-20 16:58:25 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-01-20 16:58:25 ----A---- C:\Windows\system32\inetcomm.dll
2014-01-20 16:58:25 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-01-20 16:58:24 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-01-20 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-01-20 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-01-20 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-01-20 16:58:23 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-01-20 16:58:23 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-01-20 16:58:23 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-01-20 16:58:22 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-01-20 16:58:22 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-01-20 16:58:21 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-01-20 16:58:21 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-01-20 16:58:21 ----A---- C:\Windows\system32\browser.dll
2014-01-20 16:58:20 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-01-20 16:58:20 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-01-20 16:58:20 ----A---- C:\Windows\system32\netapi32.dll
2014-01-20 16:58:20 ----A---- C:\Windows\system32\browcli.dll
2014-01-20 16:58:18 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-01-20 16:58:18 ----A---- C:\Windows\system32\prevhost.exe
2014-01-20 16:58:15 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-01-20 16:58:15 ----A---- C:\Windows\system32\srcore.dll
2014-01-20 16:58:13 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-01-20 16:58:10 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-01-20 16:58:10 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-01-20 16:58:10 ----A---- C:\Windows\system32\oleaut32.dll
2014-01-20 16:58:10 ----A---- C:\Windows\system32\oleacc.dll
2014-01-20 16:58:07 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-01-20 16:58:01 ----A---- C:\Windows\system32\msvcrt.dll
2014-01-20 16:58:00 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-01-20 16:57:50 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-01-20 16:57:50 ----A---- C:\Windows\system32\EncDec.dll
2014-01-20 16:57:46 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-01-20 16:57:44 ----A---- C:\Windows\system32\localspl.dll
2014-01-20 16:57:33 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-01-20 16:57:32 ----A---- C:\Windows\system32\cdosys.dll
2014-01-20 16:36:46 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-01-20 16:36:46 ----A---- C:\Windows\system32\packager.dll
2014-01-20 16:36:40 ----D---- C:\Windows\system32\SPReview
2014-01-20 16:31:17 ----N---- C:\Windows\system32\MpSigStub.exe
2014-01-20 16:30:53 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-01-20 16:30:53 ----A---- C:\Windows\system32\rdpcore.dll
2014-01-20 16:30:53 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\mstask.dll
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-01-20 16:07:39 ----A---- C:\Windows\system32\msdri.dll
2014-01-20 16:07:39 ----A---- C:\Windows\system32\mprddm.dll
2014-01-20 16:07:39 ----A---- C:\Windows\system32\mobsync.exe
2014-01-20 16:07:39 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\samcli.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\raschap.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\logagent.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\sdcpl.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\Ribbons.scr
2014-01-20 16:07:38 ----A---- C:\Windows\system32\RDPENCDD.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\rdpclip.exe
2014-01-20 16:07:38 ----A---- C:\Windows\system32\printui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\pnidui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\pifmgr.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\OobeFldr.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\nslookup.exe
2014-01-20 16:07:38 ----A---- C:\Windows\system32\netshell.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\netlogon.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\netjoin.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\MultiDigiMon.exe
2014-01-20 16:07:38 ----A---- C:\Windows\system32\KBDBLR.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\system32\itircl.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\inetmib1.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\drivers\scsiport.sys
2014-01-20 16:07:38 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\cmd.exe
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\activeds.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\ftp.exe
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\cdrom.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\appid.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\diagperf.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\dbghelp.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\dbgeng.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\d3d9.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\comdlg32.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\CertPolEng.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\certmgr.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\certcli.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\bcdsrv.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\bcdedit.exe
2014-01-20 16:07:37 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\aepdu.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\aeinv.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\AdmTmpl.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\acppage.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\evr.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2014-01-20 16:07:36 ----A---- C:\Windows\system32\SearchFolder.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\imapi2fs.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\Faultrep.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\elsTrans.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\drivers\http.sys
2014-01-20 16:07:36 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2014-01-20 16:07:36 ----A---- C:\Windows\system32\Display.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\spp.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\wmdrmnet.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\wmdrmdev.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\tscfgwmi.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\thumbcache.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\taskschd.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\tabcal.exe
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sysmain.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sysclass.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\srchadmin.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sqmapi.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sppsvc.exe
2014-01-20 16:07:35 ----A---- C:\Windows\system32\spp.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\shwebsvc.dll
2014-01-20 16:07:34 ----A---- C:\Windows\twain_32.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wvc.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\untfs.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wwanconn.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wsqmcons.exe
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wsdchngr.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\ws2_32.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wpdwcn.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wpd_ci.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wmpeffects.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\WMADMOD.DLL
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wkssvc.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\winhttp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\userinit.exe
2014-01-20 16:07:34 ----A---- C:\Windows\system32\umrdp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\umb.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-01-20 16:07:33 ----A---- C:\Windows\system32\drivers\umbus.sys
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\wdc.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\shacct.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-01-20 16:07:32 ----A---- C:\Windows\system32\WerFaultSecure.exe
2014-01-20 16:07:32 ----A---- C:\Windows\system32\VSSVC.exe
2014-01-20 16:07:32 ----A---- C:\Windows\system32\vssapi.dll
2014-01-20 16:07:32 ----A---- C:\Windows\system32\vss_ps.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\logman.exe
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\itircl.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\OpcServices.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\netutils.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mscorier.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mimefilt.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mfps.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\MFPlay.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mfds.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mf.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\Mcx2Svc.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mblctr.exe
2014-01-20 16:07:31 ----A---- C:\Windows\system32\luainstall.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\LogonUI.exe
2014-01-20 16:07:31 ----A---- C:\Windows\system32\logoff.exe
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDUS.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDTUF.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDINBEN.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDGKL.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\IPSECSVC.DLL
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\ole32.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2014-01-20 16:07:30 ----A---- C:\Windows\system32\muifontsetup.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msvidc32.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msrle32.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\mspbda.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msdrm.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msdmo.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\choice.exe
2014-01-20 16:07:30 ----A---- C:\Windows\system32\chgusr.exe
2014-01-20 16:07:30 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2014-01-20 16:07:30 ----A---- C:\Windows\system32\drivers\msdsm.sys
2014-01-20 16:07:30 ----A---- C:\Windows\system32\drivers\csc.sys
2014-01-20 16:07:30 ----A---- C:\Windows\system32\dot3cfg.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\CscMig.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\imm32.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\cabview.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\autochk.exe
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\imapi2.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\IcCoinstall.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\iasrad.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\iasacct.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\chgport.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\chglogon.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\change.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\fveapi.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2014-01-20 16:07:29 ----A---- C:\Windows\system32\diskraid.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\cca.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\Bubbles.scr
2014-01-20 16:07:29 ----A---- C:\Windows\system32\asycfilt.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\apphelp.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\fde.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\efscore.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\UIRibbonRes.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\UIRibbon.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tsmf.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tskill.exe
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tsdiscon.exe
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tscon.exe
2014-01-20 16:07:28 ----A---- C:\Windows\system32\TRAPI.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\fontext.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\upnp.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\relog.exe
2014-01-20 16:07:27 ----A---- C:\Windows\system32\XpsRasterService.dll
Měl bych na Vás velikou prosbu.
Myslím si, že se mi někdo dostal do PC a bohužel nevím, co s tím.
Dával jsem si počítač překontrolovat a našli tam vir Z-TERM, který údajně odesílá navštěvované stránky a hesla. Ale obávám se, že nenašli asi vše. Od té doby se mi stalo, že při prohlížení pošty, aniž bych na cokoliv sáhl mi přeskočila další zpráva. Ve firefoxu se mi změnilo nastavení z nepamatovat si hesla a historii na pravý opak. I když jsem blokoval vzdálený přísup na plochu tak nevím, jestli i tam není problém.
Děti na počítač chodí, ale tohle by určitě nezvládly přenastavit.
Velice Vám děkuji za případnou pomoc.
Podle návodu jsem se pokusil udělat Logfile:
Při odelání mi to napsalo, že mohu poslat jenom 100000 znaků tak to posílám na dvě části.
Logfile of random's system information tool 1.09 (written by random/random)
Run by name at 2014-02-10 10:26:43
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 52 GB (50%) free of 103 GB
Total RAM: 4095 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:27:07, on 10.2.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\AVG\AVG2014\avgui.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\trend micro\name.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1187863526-2632742443-2962134052-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1187863526-2632742443-2962134052-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Sledovat výstrahy inkoustu - HP Deskjet 5520 series.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8363 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG2014\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe /pipeName=d53b881b-95af-4a3b-9908-ed4bb1a2681b /coreSdkOptions=4382 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\5c8ca717-966b-4c13-b91f-0d6b3867b915-14c-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2014\" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Windows\system32\RunDll32.exe" "C:\Program Files\HP\HP Deskjet 5520 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN2A91B1JM05SX;CONNECTION=USB;MONITOR=1;
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgemca.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\CyberLink\Shared files\brs.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe /pipeName=d6955834-42ce-4458-9382-990348353621 /coreSdkOptions=4114 /logConfFile="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\bf9d8451-f2fa-465f-96a5-1d4de60a8964-a30-oopp.tmp" /loggerName=AVG.NS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2014\" /tempPath="C:\Windows\system32\config\systemprofile\AppData\Local\Avg2014\temp\"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\SeaPort.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE"
C:\Windows\splwow64.exe 12288
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
taskeng.exe {5E4B3472-938C-4E42-97AF-BC3A1D85648D}
"C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe"
"D:\stahování internet\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\HP Photo Creations Communicator.job
=========Mozilla firefox=========
ProfilePath - C:\Users\name\AppData\Roaming\Mozilla\Firefox\Profiles\8s7f7y5u.default
prefs.js - "browser.startup.homepage" - "about blank"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.43 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll [2013-12-16 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll [2013-12-16 1432224]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-01-21 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-01-21 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{eec0f710-38b5-4aba-99bf-ec87564a4e13} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll [2013-12-16 1154720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{eec0f710-38b5-4aba-99bf-ec87564a4e13} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll [2013-12-16 1432224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2010-02-03 87336]
"BDRegion"=C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [2010-06-28 75048]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2014\avgui.exe [2013-11-07 4956176]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28 49208]
""= []
C:\Users\name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sledovat výstrahy inkoustu - HP Deskjet 5520 series.lnk - C:\Windows\system32\RunDll32.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FFDS"=ff_vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-02-10 10:26:43 ----D---- C:\rsit
2014-02-10 10:26:43 ----D---- C:\Program Files\trend micro
2014-01-30 11:26:32 ----D---- C:\Users\name\AppData\Roaming\NVIDIA
2014-01-21 21:11:35 ----D---- C:\Users\name\AppData\Roaming\Wargaming.net
2014-01-21 18:52:23 ----D---- C:\Windows\SYSWOW64\directx
2014-01-21 18:52:20 ----D---- C:\Games
2014-01-21 18:41:31 ----D---- C:\Users\name\AppData\Roaming\Visan
2014-01-21 17:55:34 ----D---- C:\Program Files (x86)\Microsoft
2014-01-21 17:55:25 ----D---- C:\ProgramData\Visan
2014-01-21 17:55:25 ----D---- C:\ProgramData\HP Photo Creations
2014-01-21 17:55:25 ----D---- C:\Program Files (x86)\HP Photo Creations
2014-01-21 17:55:08 ----D---- C:\Users\name\AppData\Roaming\HpUpdate
2014-01-21 17:55:01 ----N---- C:\Windows\system32\HPDiscoPMB611.dll
2014-01-21 17:54:26 ----D---- C:\ProgramData\HP
2014-01-21 17:54:16 ----D---- C:\Program Files (x86)\HP
2014-01-21 17:54:00 ----D---- C:\Program Files\HP
2014-01-21 17:53:55 ----A---- C:\ProgramData\Ament.ini
2014-01-21 17:15:10 ----D---- C:\Users\name\AppData\Roaming\Thunderbird
2014-01-21 17:15:02 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2014-01-21 02:29:32 ----D---- C:\Users\name\AppData\Roaming\Macromedia
2014-01-21 02:27:04 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-01-21 02:27:03 ----D---- C:\Windows\SYSWOW64\Macromed
2014-01-21 02:27:02 ----D---- C:\Windows\system32\Macromed
2014-01-21 02:12:34 ----D---- C:\Users\name\AppData\Roaming\Opera
2014-01-21 02:12:29 ----D---- C:\Program Files (x86)\Opera
2014-01-21 02:08:44 ----D---- C:\Windows\SYSWOW64\Adobe
2014-01-21 01:25:14 ----D---- C:\Users\name\AppData\Roaming\AVG2014
2014-01-21 01:23:28 ----HD---- C:\$AVG
2014-01-21 01:23:28 ----D---- C:\ProgramData\AVG2014
2014-01-21 01:22:01 ----D---- C:\Program Files (x86)\AVG
2014-01-21 01:20:51 ----HD---- C:\ProgramData\Common Files
2014-01-21 01:20:51 ----D---- C:\ProgramData\MFAData
2014-01-21 01:17:33 ----D---- C:\ProgramData\Sun
2014-01-21 01:17:23 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-01-21 01:17:18 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-01-21 01:17:18 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-01-21 01:17:18 ----A---- C:\Windows\SYSWOW64\java.exe
2014-01-21 01:17:10 ----D---- C:\Program Files (x86)\Java
2014-01-21 01:02:03 ----D---- C:\Program Files (x86)\IrfanView
2014-01-21 00:38:46 ----D---- C:\Program Files (x86)\MSXML 4.0
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\rmoc3260.dll
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\pndx5032.dll
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\pndx5016.dll
2014-01-21 00:30:49 ----A---- C:\Windows\SYSWOW64\pncrt.dll
2014-01-21 00:30:48 ----D---- C:\Program Files (x86)\Real Alternative
2014-01-21 00:30:34 ----D---- C:\ProgramData\Apple Computer
2014-01-21 00:30:32 ----A---- C:\Windows\SYSWOW64\QTCF.dll
2014-01-21 00:30:30 ----D---- C:\Program Files (x86)\QuickTime Alternative
2014-01-21 00:28:27 ----D---- C:\Program Files (x86)\Adobe
2014-01-21 00:27:42 ----D---- C:\ProgramData\Adobe
2014-01-21 00:27:06 ----D---- C:\Program Files (x86)\MSECache
2014-01-21 00:16:52 ----D---- C:\Program Files (x86)\Microsoft Works
2014-01-21 00:16:41 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2014-01-21 00:16:30 ----D---- C:\Windows\PCHEALTH
2014-01-21 00:15:11 ----D---- C:\Program Files\Microsoft Office
2014-01-21 00:14:18 ----D---- C:\ProgramData\Microsoft Help
2014-01-21 00:14:18 ----D---- C:\Program Files (x86)\Microsoft Office
2014-01-21 00:13:59 ----RHD---- C:\MSOCache
2014-01-20 22:16:51 ----D---- C:\Users\name\AppData\Roaming\CyberLink
2014-01-20 22:13:44 ----D---- C:\ProgramData\CyberLink
2014-01-20 22:13:29 ----D---- C:\Program Files (x86)\InstallShield Installation Information
2014-01-20 22:11:36 ----D---- C:\Program Files (x86)\CyberLink
2014-01-20 22:11:36 ----A---- C:\Windows\SYSWOW64\msxml3a.dll
2014-01-20 22:11:36 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2014-01-20 22:11:36 ----A---- C:\Windows\SYSWOW64\msvcp71.dll
2014-01-20 22:11:18 ----D---- C:\ProgramData\Temp
2014-01-20 22:09:14 ----D---- C:\Users\name\AppData\Roaming\Media Player Classic
2014-01-20 21:47:48 ----D---- C:\Program Files (x86)\FinalWire
2014-01-20 21:45:59 ----D---- C:\Program Files (x86)\CrystalDiskInfo6_0_4
2014-01-20 21:42:51 ----D---- C:\Program Files\ffdshow
2014-01-20 21:42:51 ----A---- C:\Windows\system32\ff_vfw.dll
2014-01-20 21:41:49 ----D---- C:\Program Files\MPC-HC.1.6.5.6366.x64
2014-01-20 21:40:03 ----D---- C:\Users\name\AppData\Roaming\WinRAR
2014-01-20 21:39:28 ----D---- C:\Program Files\WinRAR
2014-01-20 21:35:50 ----D---- C:\Users\name\AppData\Roaming\BSplayer PRO
2014-01-20 21:35:49 ----D---- C:\Program Files (x86)\Webteh
2014-01-20 21:26:37 ----D---- C:\ProgramData\LightScribe
2014-01-20 21:25:35 ----D---- C:\Users\name\AppData\Roaming\Nero
2014-01-20 21:21:40 ----D---- C:\Program Files (x86)\Nero
2014-01-20 21:21:31 ----D---- C:\ProgramData\Nero
2014-01-20 21:13:57 ----D---- C:\Program Files\cpu-z_1.62-64bits-en
2014-01-20 21:07:39 ----D---- C:\Users\name\AppData\Roaming\GHISLER
2014-01-20 21:07:39 ----D---- C:\totalcmd
2014-01-20 20:42:49 ----A---- C:\Windows\system32\ieui.dll
2014-01-20 20:42:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-01-20 20:42:48 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-01-20 20:42:48 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\jsproxy.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ieUnatt.exe
2014-01-20 20:42:48 ----A---- C:\Windows\system32\iesetup.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\iernonce.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-01-20 20:42:48 ----A---- C:\Windows\system32\ie4uinit.exe
2014-01-20 20:42:47 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-01-20 20:42:47 ----A---- C:\Windows\system32\mshtml.dll
2014-01-20 20:42:47 ----A---- C:\Windows\system32\jscript9diag.dll
2014-01-20 20:42:47 ----A---- C:\Windows\system32\ieapfltr.dll
2014-01-20 20:42:46 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-01-20 20:42:46 ----A---- C:\Windows\system32\iertutil.dll
2014-01-20 20:42:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-01-20 20:42:45 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-01-20 20:42:45 ----A---- C:\Windows\system32\wininet.dll
2014-01-20 20:42:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-01-20 20:42:44 ----A---- C:\Windows\system32\urlmon.dll
2014-01-20 20:42:43 ----A---- C:\Windows\system32\ieframe.dll
2014-01-20 20:42:42 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-01-20 20:42:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-01-20 20:42:41 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-01-20 20:42:41 ----A---- C:\Windows\system32\jscript9.dll
2014-01-20 20:41:34 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-01-20 20:41:34 ----A---- C:\Windows\system32\WMPhoto.dll
2014-01-20 20:41:33 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-01-20 20:41:33 ----A---- C:\Windows\explorer.exe
2014-01-20 20:41:32 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-01-20 20:41:32 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-01-20 20:41:32 ----A---- C:\Windows\system32\spoolsv.exe
2014-01-20 20:41:32 ----A---- C:\Windows\splwow64.exe
2014-01-20 20:34:35 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-01-20 20:30:26 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-01-20 20:30:26 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-01-20 20:30:23 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-01-20 20:30:23 ----A---- C:\Windows\system32\elshyph.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\url.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-01-20 20:30:22 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\wextract.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\webcheck.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\vbscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\url.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\pngfilt.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\occache.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msrating.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msls31.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshtmler.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshtmled.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\mshta.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msfeedssync.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\msfeeds.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\licmgr10.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\jsIntl.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\jscript.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\inseng.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\imgutil.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iexpress.exe
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iesysprep.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iepeers.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\iedkcs32.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\ieapfltr.dat
2014-01-20 20:30:22 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\icardie.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\dxtrans.dll
2014-01-20 20:30:22 ----A---- C:\Windows\system32\dxtmsft.dll
2014-01-20 20:25:03 ----D---- C:\Users\name\AppData\Roaming\Adobe
2014-01-20 20:15:51 ----A---- C:\Windows\system32\wmploc.DLL
2014-01-20 20:15:50 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-01-20 20:15:50 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-01-20 20:15:49 ----A---- C:\Windows\system32\wmp.dll
2014-01-20 20:09:35 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-01-20 20:07:51 ----D---- C:\Windows\Migration
2014-01-20 19:30:27 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-01-20 19:30:27 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-01-20 19:30:27 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-01-20 19:30:26 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-01-20 19:30:26 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-01-20 19:30:25 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\wksprtPS.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\wksprt.exe
2014-01-20 19:30:25 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-01-20 19:30:25 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\tsgqec.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\rdpudd.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-01-20 19:30:25 ----A---- C:\Windows\system32\aaclient.dll
2014-01-20 19:30:24 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-01-20 19:30:24 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-01-20 19:30:24 ----A---- C:\Windows\system32\rdpcorets.dll
2014-01-20 19:30:24 ----A---- C:\Windows\system32\mstscax.dll
2014-01-20 19:30:24 ----A---- C:\Windows\system32\mstsc.exe
2014-01-20 19:09:42 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-01-20 19:09:42 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-01-20 19:09:42 ----A---- C:\Windows\system32\UIAnimation.dll
2014-01-20 19:09:42 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-01-20 19:09:40 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-01-20 19:09:39 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-01-20 19:09:39 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\dxgi.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10warp.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10level9.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-01-20 19:09:39 ----A---- C:\Windows\system32\d3d10_1.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-01-20 19:09:38 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\XpsPrint.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\FntCache.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\DWrite.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\d3d10.dll
2014-01-20 19:09:38 ----A---- C:\Windows\system32\d2d1.dll
2014-01-20 18:46:56 ----A---- C:\Windows\system32\consent.exe
2014-01-20 18:46:56 ----A---- C:\Windows\system32\appinfo.dll
2014-01-20 18:46:44 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-01-20 18:46:44 ----A---- C:\Windows\system32\d3d11.dll
2014-01-20 18:46:37 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-01-20 18:46:37 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-01-20 18:46:37 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-01-20 18:46:37 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-01-20 18:46:37 ----A---- C:\Windows\system32\credui.dll
2014-01-20 18:46:37 ----A---- C:\Windows\system32\authui.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-01-20 18:46:28 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\sspisrv.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\sspicli.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\schannel.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\secur32.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\ncrypt.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\lsass.exe
2014-01-20 18:46:28 ----A---- C:\Windows\system32\lsasrv.dll
2014-01-20 18:46:28 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-01-20 18:46:28 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-01-20 18:46:28 ----A---- C:\Windows\system32\drivers\cng.sys
2014-01-20 18:46:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-01-20 18:46:24 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-01-20 18:46:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-01-20 18:46:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-01-20 18:46:24 ----A---- C:\Windows\system32\tdh.dll
2014-01-20 18:46:24 ----A---- C:\Windows\system32\ntdll.dll
2014-01-20 18:46:24 ----A---- C:\Windows\system32\advapi32.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\user.exe
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-01-20 18:46:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-01-20 18:46:23 ----A---- C:\Windows\system32\wow64.dll
2014-01-20 18:46:21 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-01-20 18:46:21 ----A---- C:\Windows\system32\tzres.dll
2014-01-20 18:46:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-01-20 18:46:03 ----A---- C:\Windows\system32\wintrust.dll
2014-01-20 18:45:56 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-01-20 18:45:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-01-20 18:45:54 ----A---- C:\Windows\system32\KernelBase.dll
2014-01-20 18:45:53 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\winsrv.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\smss.exe
2014-01-20 18:45:53 ----A---- C:\Windows\system32\kernel32.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\csrsrv.dll
2014-01-20 18:45:53 ----A---- C:\Windows\system32\conhost.exe
2014-01-20 18:45:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-01-20 18:45:52 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-01-20 18:45:51 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-01-20 18:45:50 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-01-20 18:45:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-01-20 18:45:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-01-20 18:45:49 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-01-20 18:45:48 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-01-20 18:45:47 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-01-20 18:45:46 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-01-20 18:45:46 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-01-20 18:45:46 ----A---- C:\Windows\system32\apisetschema.dll
2014-01-20 18:45:43 ----A---- C:\Windows\system32\shell32.dll
2014-01-20 18:45:42 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-01-20 18:45:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-01-20 18:45:42 ----A---- C:\Windows\system32\shdocvw.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\nlasvc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\nlaapi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\netevent.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\netcorehc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\ncsi.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-01-20 18:45:36 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-01-20 18:45:33 ----A---- C:\Windows\system32\taskhost.exe
2014-01-20 18:45:33 ----A---- C:\Windows\system32\drivers\afd.sys
2014-01-20 18:45:30 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-01-20 18:45:30 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-01-20 18:45:30 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-01-20 18:45:30 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-01-20 18:45:25 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-01-20 18:45:25 ----A---- C:\Windows\system32\qedit.dll
2014-01-20 18:45:20 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-01-20 18:45:17 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-01-20 18:45:17 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-01-20 18:45:17 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-01-20 18:45:17 ----A---- C:\Windows\system32\cryptsvc.dll
2014-01-20 18:45:17 ----A---- C:\Windows\system32\cryptnet.dll
2014-01-20 18:45:17 ----A---- C:\Windows\system32\crypt32.dll
2014-01-20 18:45:11 ----A---- C:\Windows\system32\wwansvc.dll
2014-01-20 18:45:11 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-01-20 18:45:10 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-01-20 18:45:10 ----A---- C:\Windows\system32\mswsock.dll
2014-01-20 18:45:09 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-01-20 18:45:08 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-01-20 18:45:08 ----A---- C:\Windows\system32\comctl32.dll
2014-01-20 18:45:07 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-01-20 18:45:07 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-01-20 18:45:07 ----A---- C:\Windows\system32\WebClnt.dll
2014-01-20 18:45:07 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-01-20 18:45:07 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-01-20 18:45:07 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-01-20 18:45:07 ----A---- C:\Windows\system32\davclnt.dll
2014-01-20 18:45:06 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-01-20 18:45:06 ----A---- C:\Windows\system32\msieftp.dll
2014-01-20 18:45:05 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-01-20 18:45:05 ----A---- C:\Windows\system32\qdvd.dll
2014-01-20 18:45:05 ----A---- C:\Windows\system32\drivers\usbscan.sys
2014-01-20 18:45:05 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-01-20 18:45:05 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-01-20 18:44:07 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-01-20 18:44:07 ----A---- C:\Windows\system32\win32spl.dll
2014-01-20 18:44:05 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-01-20 18:44:04 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-01-20 18:44:04 ----A---- C:\Windows\system32\rpcrt4.dll
2014-01-20 18:44:04 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-01-20 18:44:04 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-01-20 18:44:03 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-01-20 18:44:03 ----A---- C:\Windows\system32\lpk.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\fontsub.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\dciman32.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\atmlib.dll
2014-01-20 18:44:03 ----A---- C:\Windows\system32\atmfd.dll
2014-01-20 18:44:02 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-01-20 18:44:02 ----A---- C:\Windows\system32\imagehlp.dll
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-01-20 18:44:02 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-01-20 18:39:38 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-01-20 18:39:38 ----A---- C:\Windows\system32\gdi32.dll
2014-01-20 18:39:17 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-01-20 18:39:10 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-01-20 18:39:10 ----A---- C:\Windows\system32\drivers\netio.sys
2014-01-20 18:39:02 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-01-20 18:39:02 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-01-20 18:39:02 ----A---- C:\Windows\system32\fsutil.exe
2014-01-20 18:39:02 ----A---- C:\Windows\system32\esent.dll
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\storport.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-01-20 18:39:02 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-01-20 18:38:53 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-01-20 18:38:53 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-01-20 18:38:53 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-01-20 18:38:53 ----A---- C:\Windows\system32\wscript.exe
2014-01-20 18:38:53 ----A---- C:\Windows\system32\scrrun.dll
2014-01-20 18:38:53 ----A---- C:\Windows\system32\cscript.exe
2014-01-20 18:38:25 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-01-20 18:38:25 ----A---- C:\Windows\system32\cryptdlg.dll
2014-01-20 18:38:18 ----A---- C:\Windows\system32\win32k.sys
2014-01-20 18:36:44 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-01-20 18:36:44 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-01-20 18:36:33 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-01-20 18:36:33 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-01-20 18:36:33 ----A---- C:\Windows\system32\certutil.exe
2014-01-20 18:36:33 ----A---- C:\Windows\system32\certenc.dll
2014-01-20 18:36:10 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-01-20 18:36:10 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-01-20 18:36:10 ----A---- C:\Windows\system32\cdd.dll
2014-01-20 18:36:07 ----A---- C:\Windows\system32\scavengeui.dll
2014-01-20 18:36:06 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-01-20 18:36:06 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-01-20 18:36:06 ----A---- C:\Windows\system32\nshwfp.dll
2014-01-20 18:36:06 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-01-20 18:36:06 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-01-20 18:24:29 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-01-20 18:24:10 ----SHD---- C:\Windows\Installer
2014-01-20 18:05:44 ----D---- C:\Users\name\AppData\Roaming\Mozilla
2014-01-20 18:05:40 ----D---- C:\ProgramData\Mozilla
2014-01-20 18:05:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-01-20 18:05:38 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-01-20 17:59:57 ----D---- C:\Windows\SYSWOW64\Wat
2014-01-20 17:59:57 ----D---- C:\Windows\system32\Wat
2014-01-20 17:49:42 ----D---- C:\ProgramData\NVIDIA
2014-01-20 17:49:35 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvvsvc.exe
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvsvcr.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvsvc64.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvshext.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvmctray.dll
2014-01-20 17:49:18 ----A---- C:\Windows\system32\nvcpl.dll
2014-01-20 17:49:03 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-01-20 17:49:03 ----A---- C:\Windows\system32\OpenCL.dll
2014-01-20 17:48:44 ----D---- C:\ProgramData\NVIDIA Corporation
2014-01-20 17:43:51 ----D---- C:\Program Files\NVIDIA Corporation
2014-01-20 17:43:51 ----A---- C:\Windows\system32\cohelper.dll
2014-01-20 17:41:05 ----A---- C:\Windows\system32\Wdfres.dll
2014-01-20 17:41:05 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-01-20 17:34:56 ----A---- C:\Windows\system32\browserchoice.exe
2014-01-20 17:25:21 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-01-20 17:25:21 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-01-20 17:25:21 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-01-20 17:25:21 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-01-20 17:25:20 ----A---- C:\Windows\system32\WUDFx.dll
2014-01-20 17:25:20 ----A---- C:\Windows\system32\WUDFHost.exe
2014-01-20 17:25:20 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-01-20 17:22:31 ----A---- C:\Windows\SYSWOW64\wmi.dll
2014-01-20 17:22:31 ----A---- C:\Windows\system32\wmi.dll
2014-01-20 17:22:31 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2014-01-20 17:20:23 ----D---- C:\Windows\system32\MRT
2014-01-20 17:20:18 ----A---- C:\Windows\system32\MRT.exe
2014-01-20 17:03:17 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-01-20 17:03:17 ----A---- C:\Windows\system32\ntshrui.dll
2014-01-20 17:03:13 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2014-01-20 17:03:13 ----A---- C:\Windows\system32\sbe.dll
2014-01-20 17:03:13 ----A---- C:\Windows\system32\CPFilters.dll
2014-01-20 17:03:12 ----A---- C:\Windows\SYSWOW64\sbe.dll
2014-01-20 17:03:09 ----A---- C:\Windows\system32\tquery.dll
2014-01-20 17:03:09 ----A---- C:\Windows\system32\mssrch.dll
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-01-20 17:03:08 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-01-20 17:03:08 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-01-20 17:03:08 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-01-20 17:03:08 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-01-20 17:03:08 ----A---- C:\Windows\system32\mssvp.dll
2014-01-20 17:03:08 ----A---- C:\Windows\system32\mssphtb.dll
2014-01-20 17:03:08 ----A---- C:\Windows\system32\mssph.dll
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-01-20 17:03:07 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-01-20 17:03:07 ----A---- C:\Windows\system32\msscntrs.dll
2014-01-20 17:02:54 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2014-01-20 17:02:54 ----A---- C:\Windows\system32\poqexec.exe
2014-01-20 17:02:53 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-01-20 17:02:53 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2014-01-20 17:02:53 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2014-01-20 17:02:38 ----A---- C:\Windows\SYSWOW64\quartz.dll
2014-01-20 17:02:38 ----A---- C:\Windows\system32\quartz.dll
2014-01-20 17:02:37 ----A---- C:\Windows\SYSWOW64\webio.dll
2014-01-20 17:02:37 ----A---- C:\Windows\system32\webio.dll
2014-01-20 17:02:32 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-01-20 17:02:32 ----A---- C:\Windows\system32\xmllite.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbctrac.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbccu32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbccr32.dll
2014-01-20 17:02:31 ----A---- C:\Windows\system32\odbccp32.dll
2014-01-20 17:02:30 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2014-01-20 17:01:48 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-01-20 17:01:39 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2014-01-20 17:01:39 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2014-01-20 17:01:39 ----A---- C:\Windows\system32\mfc42u.dll
2014-01-20 17:01:39 ----A---- C:\Windows\system32\mfc42.dll
2014-01-20 17:01:38 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-01-20 17:01:25 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2014-01-20 17:01:25 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2014-01-20 17:01:25 ----A---- C:\Windows\system32\dnsrslvr.dll
2014-01-20 17:01:25 ----A---- C:\Windows\system32\dnscacheugc.exe
2014-01-20 17:01:25 ----A---- C:\Windows\system32\dnsapi.dll
2014-01-20 17:01:23 ----A---- C:\Windows\system32\rdrmemptylst.exe
2014-01-20 17:01:23 ----A---- C:\Windows\system32\rdpwsx.dll
2014-01-20 17:01:23 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-01-20 17:01:23 ----A---- C:\Windows\system32\drivers\usb8023.sys
2014-01-20 17:01:17 ----A---- C:\Windows\system32\profsvc.dll
2014-01-20 17:01:16 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-01-20 17:01:16 ----A---- C:\Windows\system32\msxml6.dll
2014-01-20 17:01:16 ----A---- C:\Windows\system32\msxml3.dll
2014-01-20 17:01:15 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-01-20 17:01:15 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-01-20 17:01:15 ----A---- C:\Windows\system32\msxml3r.dll
2014-01-20 17:00:48 ----A---- C:\Windows\system32\dpnet.dll
2014-01-20 17:00:47 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2014-01-20 17:00:46 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-01-20 17:00:46 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-01-20 17:00:46 ----A---- C:\Windows\system32\drivers\srv.sys
2014-01-20 17:00:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-01-20 17:00:45 ----A---- C:\Windows\system32\kerberos.dll
2014-01-20 17:00:41 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-01-20 17:00:35 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-01-20 17:00:35 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-01-20 17:00:35 ----A---- C:\Windows\system32\Wpc.dll
2014-01-20 17:00:35 ----A---- C:\Windows\system32\gameux.dll
2014-01-20 17:00:25 ----A---- C:\Windows\system32\usp10.dll
2014-01-20 17:00:24 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-01-20 17:00:22 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-01-20 17:00:21 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2014-01-20 17:00:21 ----A---- C:\Windows\system32\psisdecd.dll
2014-01-20 17:00:17 ----A---- C:\Windows\system32\drivers\partmgr.sys
2014-01-20 17:00:11 ----A---- C:\Windows\SYSWOW64\synceng.dll
2014-01-20 17:00:11 ----A---- C:\Windows\system32\synceng.dll
2014-01-20 17:00:06 ----A---- C:\Windows\system32\wow64win.dll
2014-01-20 17:00:05 ----A---- C:\Windows\system32\ntvdm64.dll
2014-01-20 17:00:04 ----A---- C:\Windows\system32\wow64cpu.dll
2014-01-20 16:59:49 ----A---- C:\Windows\system32\msi.dll
2014-01-20 16:59:48 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-01-20 16:59:26 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-01-20 16:59:26 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-01-20 16:59:26 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-01-20 16:59:26 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-01-20 16:59:25 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-01-20 16:59:25 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-01-20 16:59:24 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-01-20 16:59:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-01-20 16:59:24 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-01-20 16:59:24 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-01-20 16:59:23 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-01-20 16:59:22 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-01-20 16:59:22 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-01-20 16:59:22 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-01-20 16:59:22 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-01-20 16:59:21 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-01-20 16:59:21 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-01-20 16:59:20 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-01-20 16:59:20 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-01-20 16:59:19 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-01-20 16:59:19 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-01-20 16:59:18 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-01-20 16:59:18 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-01-20 16:59:18 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-01-20 16:59:18 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-01-20 16:59:18 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-01-20 16:59:18 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-01-20 16:59:17 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-01-20 16:59:17 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-01-20 16:59:16 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-01-20 16:59:15 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-01-20 16:59:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-01-20 16:59:15 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-01-20 16:59:15 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-01-20 16:59:14 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-01-20 16:59:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-01-20 16:59:14 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-01-20 16:59:14 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-01-20 16:59:14 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-01-20 16:59:14 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-01-20 16:59:13 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-01-20 16:59:13 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-01-20 16:59:13 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-01-20 16:59:13 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-01-20 16:59:12 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-01-20 16:59:12 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-01-20 16:59:12 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-01-20 16:59:12 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-01-20 16:59:11 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-01-20 16:59:11 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-01-20 16:59:10 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-01-20 16:59:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-01-20 16:59:10 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-01-20 16:59:10 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-01-20 16:59:09 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-01-20 16:59:08 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-01-20 16:59:07 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-01-20 16:59:06 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-01-20 16:59:06 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-01-20 16:59:05 ----A---- C:\Windows\system32\winresume.exe
2014-01-20 16:59:05 ----A---- C:\Windows\system32\winload.exe
2014-01-20 16:59:05 ----A---- C:\Windows\system32\kdusb.dll
2014-01-20 16:59:05 ----A---- C:\Windows\system32\kdcom.dll
2014-01-20 16:59:05 ----A---- C:\Windows\system32\kd1394.dll
2014-01-20 16:59:04 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-01-20 16:59:04 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-01-20 16:59:03 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-01-20 16:59:02 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-01-20 16:59:02 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-01-20 16:59:00 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-01-20 16:59:00 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-01-20 16:58:56 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-01-20 16:58:56 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-01-20 16:58:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-01-20 16:58:56 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-01-20 16:58:56 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-01-20 16:58:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-01-20 16:58:55 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-01-20 16:58:55 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-01-20 16:58:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-01-20 16:58:54 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-01-20 16:58:51 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-01-20 16:58:51 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-01-20 16:58:50 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-01-20 16:58:50 ----A---- C:\Windows\system32\xinput1_3.dll
2014-01-20 16:58:49 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-01-20 16:58:49 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-01-20 16:58:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-01-20 16:58:49 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-01-20 16:58:49 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-01-20 16:58:49 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-01-20 16:58:48 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-01-20 16:58:48 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-01-20 16:58:47 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-01-20 16:58:47 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-01-20 16:58:43 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-01-20 16:58:43 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-01-20 16:58:42 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-01-20 16:58:42 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-01-20 16:58:42 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-01-20 16:58:42 ----A---- C:\Windows\system32\d3dx10.dll
2014-01-20 16:58:41 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-01-20 16:58:41 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-01-20 16:58:41 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-01-20 16:58:41 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-01-20 16:58:39 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-01-20 16:58:39 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-01-20 16:58:38 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-01-20 16:58:38 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-01-20 16:58:38 ----A---- C:\Windows\system32\xinput1_2.dll
2014-01-20 16:58:38 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2014-01-20 16:58:36 ----A---- C:\Windows\system32\xinput1_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-01-20 16:58:36 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-01-20 16:58:36 ----A---- C:\Windows\system32\umpnpmgr.dll
2014-01-20 16:58:35 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2014-01-20 16:58:35 ----A---- C:\Windows\SYSWOW64\devobj.dll
2014-01-20 16:58:35 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2014-01-20 16:58:25 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-01-20 16:58:25 ----A---- C:\Windows\system32\inetcomm.dll
2014-01-20 16:58:25 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2014-01-20 16:58:24 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-01-20 16:58:24 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-01-20 16:58:24 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-01-20 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-01-20 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-01-20 16:58:23 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-01-20 16:58:23 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-01-20 16:58:23 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-01-20 16:58:23 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-01-20 16:58:22 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-01-20 16:58:22 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-01-20 16:58:21 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-01-20 16:58:21 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-01-20 16:58:21 ----A---- C:\Windows\system32\browser.dll
2014-01-20 16:58:20 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2014-01-20 16:58:20 ----A---- C:\Windows\SYSWOW64\browcli.dll
2014-01-20 16:58:20 ----A---- C:\Windows\system32\netapi32.dll
2014-01-20 16:58:20 ----A---- C:\Windows\system32\browcli.dll
2014-01-20 16:58:18 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-01-20 16:58:18 ----A---- C:\Windows\system32\prevhost.exe
2014-01-20 16:58:15 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-01-20 16:58:15 ----A---- C:\Windows\system32\srcore.dll
2014-01-20 16:58:13 ----A---- C:\Windows\system32\FXSCOVER.exe
2014-01-20 16:58:10 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2014-01-20 16:58:10 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2014-01-20 16:58:10 ----A---- C:\Windows\system32\oleaut32.dll
2014-01-20 16:58:10 ----A---- C:\Windows\system32\oleacc.dll
2014-01-20 16:58:07 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-01-20 16:58:01 ----A---- C:\Windows\system32\msvcrt.dll
2014-01-20 16:58:00 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2014-01-20 16:57:50 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2014-01-20 16:57:50 ----A---- C:\Windows\system32\EncDec.dll
2014-01-20 16:57:46 ----A---- C:\Windows\system32\drivers\bowser.sys
2014-01-20 16:57:44 ----A---- C:\Windows\system32\localspl.dll
2014-01-20 16:57:33 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2014-01-20 16:57:32 ----A---- C:\Windows\system32\cdosys.dll
2014-01-20 16:36:46 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-01-20 16:36:46 ----A---- C:\Windows\system32\packager.dll
2014-01-20 16:36:40 ----D---- C:\Windows\system32\SPReview
2014-01-20 16:31:17 ----N---- C:\Windows\system32\MpSigStub.exe
2014-01-20 16:30:53 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2014-01-20 16:30:53 ----A---- C:\Windows\system32\rdpcore.dll
2014-01-20 16:30:53 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\mstask.dll
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2014-01-20 16:07:39 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-01-20 16:07:39 ----A---- C:\Windows\system32\msdri.dll
2014-01-20 16:07:39 ----A---- C:\Windows\system32\mprddm.dll
2014-01-20 16:07:39 ----A---- C:\Windows\system32\mobsync.exe
2014-01-20 16:07:39 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\samcli.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\raschap.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\logagent.exe
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\sdcpl.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\Ribbons.scr
2014-01-20 16:07:38 ----A---- C:\Windows\system32\RDPENCDD.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\rdpclip.exe
2014-01-20 16:07:38 ----A---- C:\Windows\system32\printui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\pnidui.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\pifmgr.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\OobeFldr.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\nslookup.exe
2014-01-20 16:07:38 ----A---- C:\Windows\system32\netshell.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\netlogon.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\netjoin.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\MultiDigiMon.exe
2014-01-20 16:07:38 ----A---- C:\Windows\system32\KBDBLR.DLL
2014-01-20 16:07:38 ----A---- C:\Windows\system32\itircl.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\inetmib1.dll
2014-01-20 16:07:38 ----A---- C:\Windows\system32\drivers\scsiport.sys
2014-01-20 16:07:38 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\cmd.exe
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2014-01-20 16:07:37 ----A---- C:\Windows\SYSWOW64\activeds.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\ftp.exe
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\cdrom.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\drivers\appid.sys
2014-01-20 16:07:37 ----A---- C:\Windows\system32\diagperf.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\dbghelp.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\dbgeng.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\d3d9.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\comdlg32.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\CertPolEng.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\certmgr.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\certcli.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\bcdsrv.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\bcdedit.exe
2014-01-20 16:07:37 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\aepdu.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\aeinv.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\AdmTmpl.dll
2014-01-20 16:07:37 ----A---- C:\Windows\system32\acppage.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\evr.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2014-01-20 16:07:36 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2014-01-20 16:07:36 ----A---- C:\Windows\system32\SearchFolder.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\imapi2fs.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\Faultrep.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\elsTrans.dll
2014-01-20 16:07:36 ----A---- C:\Windows\system32\drivers\http.sys
2014-01-20 16:07:36 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2014-01-20 16:07:36 ----A---- C:\Windows\system32\Display.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\spp.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2014-01-20 16:07:35 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\wmdrmnet.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\wmdrmdev.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\tscfgwmi.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\thumbcache.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\taskschd.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\tabcal.exe
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sysmain.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sysclass.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\srchadmin.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sqmapi.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\sppsvc.exe
2014-01-20 16:07:35 ----A---- C:\Windows\system32\spp.dll
2014-01-20 16:07:35 ----A---- C:\Windows\system32\shwebsvc.dll
2014-01-20 16:07:34 ----A---- C:\Windows\twain_32.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wvc.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\untfs.dll
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2014-01-20 16:07:34 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wwanconn.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wsqmcons.exe
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wsdchngr.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\ws2_32.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wpdwcn.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wpd_ci.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wmpeffects.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\WMADMOD.DLL
2014-01-20 16:07:34 ----A---- C:\Windows\system32\wkssvc.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\winhttp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\userinit.exe
2014-01-20 16:07:34 ----A---- C:\Windows\system32\umrdp.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\umb.dll
2014-01-20 16:07:34 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-01-20 16:07:33 ----A---- C:\Windows\system32\drivers\umbus.sys
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\wdc.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\shacct.dll
2014-01-20 16:07:32 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-01-20 16:07:32 ----A---- C:\Windows\system32\WerFaultSecure.exe
2014-01-20 16:07:32 ----A---- C:\Windows\system32\VSSVC.exe
2014-01-20 16:07:32 ----A---- C:\Windows\system32\vssapi.dll
2014-01-20 16:07:32 ----A---- C:\Windows\system32\vss_ps.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\logman.exe
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\SYSWOW64\itircl.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\OpcServices.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\netutils.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mscorier.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mimefilt.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mfps.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\MFPlay.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mfds.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mf.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\Mcx2Svc.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\mblctr.exe
2014-01-20 16:07:31 ----A---- C:\Windows\system32\luainstall.dll
2014-01-20 16:07:31 ----A---- C:\Windows\system32\LogonUI.exe
2014-01-20 16:07:31 ----A---- C:\Windows\system32\logoff.exe
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDUS.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDTUF.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDINBEN.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\KBDGKL.DLL
2014-01-20 16:07:31 ----A---- C:\Windows\system32\IPSECSVC.DLL
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2014-01-20 16:07:30 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\ole32.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2014-01-20 16:07:30 ----A---- C:\Windows\system32\muifontsetup.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msvidc32.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msrle32.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\mspbda.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msdrm.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\msdmo.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\choice.exe
2014-01-20 16:07:30 ----A---- C:\Windows\system32\chgusr.exe
2014-01-20 16:07:30 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2014-01-20 16:07:30 ----A---- C:\Windows\system32\drivers\msdsm.sys
2014-01-20 16:07:30 ----A---- C:\Windows\system32\drivers\csc.sys
2014-01-20 16:07:30 ----A---- C:\Windows\system32\dot3cfg.dll
2014-01-20 16:07:30 ----A---- C:\Windows\system32\CscMig.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\imm32.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\cabview.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\autochk.exe
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2014-01-20 16:07:29 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\imapi2.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\IcCoinstall.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\iasrad.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\iasacct.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\chgport.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\chglogon.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\change.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\fveapi.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2014-01-20 16:07:29 ----A---- C:\Windows\system32\diskraid.exe
2014-01-20 16:07:29 ----A---- C:\Windows\system32\cca.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\Bubbles.scr
2014-01-20 16:07:29 ----A---- C:\Windows\system32\asycfilt.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\apphelp.dll
2014-01-20 16:07:29 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\fde.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2014-01-20 16:07:28 ----A---- C:\Windows\SYSWOW64\efscore.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\UIRibbonRes.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\UIRibbon.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tsmf.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tskill.exe
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tsdiscon.exe
2014-01-20 16:07:28 ----A---- C:\Windows\system32\tscon.exe
2014-01-20 16:07:28 ----A---- C:\Windows\system32\TRAPI.dll
2014-01-20 16:07:28 ----A---- C:\Windows\system32\fontext.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\upnp.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2014-01-20 16:07:27 ----A---- C:\Windows\SYSWOW64\relog.exe
2014-01-20 16:07:27 ----A---- C:\Windows\system32\XpsRasterService.dll