Stránka 1 z 2

log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 13:33
od tekier
Zdravím, potřeboval bych pomoct. V ntb. byla nákaza, kterou jsem odstranil pomocí několika free jednorázových antivirových programů, v současné době je vše bez detekce havěti. Prosím o kontrolu, zda je to opravdu všechno v pořádku. Druhým problémem je funkčnost programu AmitiAntivirus, dříve fungoval bez problémů, teď se pomalu ani neotevře okno s programem a program ihned zamrzá (od/instalace nepomohla), následně program spadne..



Logfile of random's system information tool 1.10 (written by random/random)
Run by Tekier at 2014-10-25 14:23:55
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 419 GB (88%) free of 477 GB
Total RAM: 3710 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:24:00, on 25.10.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files\trend micro\Tekier.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Integrated Camera_Monitor] "C:\Program Files (x86)\Integrated Camera\monitor.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [AmitiAntivirus] C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAv.exe
O4 - Global Startup: Apache Web Server Monitor.lnk = C:\Program Files (x86)\Zend\Apache2\bin\ApacheMonitor.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMITI Antivirus Engine (amitiavsrv) - NETGATE Technologies s.r.o. - C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe
O23 - Service: Apache2.2-Zend - Apache Software Foundation - C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\Windows\system32\ibmpmsvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MySQL_ZendServer55 - Unknown owner - C:\Program.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Zend Deployment (ZendDeployment) - Zend Technologies Ltd. - C:\Program Files (x86)\Zend\ZendServer\bin\zdd.exe
O23 - Service: Zend Job Queue (ZendJobQueue) - Zend Technologies Ltd - C:\Program Files (x86)\Zend\ZendServer\bin\jqd.exe
O23 - Service: Zend Monitor (ZendMonitor) - Zend Technologies Ltd. - C:\Program Files (x86)\Zend\ZendServer\bin\MonitorNode.exe
O23 - Service: Zend Server Daemon (ZendServerDaemon) - Zend Technologies Ltd. - C:\Program Files (x86)\Zend\ZendServer\bin\zsd.exe
O23 - Service: Zend Session Clustering (ZendSessionClustering) - Zend Technologies Ltd - C:\Program Files (x86)\Zend\ZendServer\bin\scd.exe

--
End of file - 8719 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\ibmpmsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\WLANExt.exe 29043520
\??\C:\Windows\system32\conhost.exe "-1612148796884695984125606761859123368292899175176656090875133045-1148618124
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe" -k runservice
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Zend\MySQL55\bin\mysqld" --defaults-file="C:\Program Files (x86)\Zend\MySQL55\my.ini" MySQL_ZendServer55
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Zend\ZendServer\bin\zdd.exe" "C:\Program Files (x86)\Zend\ZendServer\etc\zdd.ini"
"C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe" -d "C:/Program Files (x86)/Zend/Apache2"
C:\PROGRA~1\LENOVO\HOTKEY\tpnumlk.exe
"C:\Program Files (x86)\Zend\ZendServer\bin\MonitorNode.exe" "C:\Program Files (x86)\Zend\ZendServer\etc\monitor_node.ini"
"C:\Program Files (x86)\Zend\ZendServer\bin\zsd.exe" "C:\Program Files (x86)\Zend\ZendServer\etc\zsd.ini"
"C:\Program Files (x86)\Zend\ZendServer\bin\scd.exe" -p "C:\Program Files (x86)\Zend\ZendServer\etc\scd.ini"
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "107191875420202782971407821692-1691546679-13254720461841339584-1193628316-492359165
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"taskhost.exe"
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\rundll32.exe "C:\Program Files\LENOVO\HOTKEY\hotkey.dll",InstallAudioHotkeyHook
C:\PROGRA~1\LENOVO\HOTKEY\tpnumlkd.exe
taskeng.exe {BDDE1601-FDBB-4178-A36A-552791A729E0}
C:\Windows\Explorer.EXE
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "10264051091675736079348651900-733667413-269502033831989059274561422-642529554
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "1559532897-952656235878686279-19897394513267736451092759581214323702-295079963
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "-1553698275-482024331112311769711917074362059079-12016729391435594652010884911
"C:\Windows\SysWOW64\RunDll32.exe" "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe"
"C:\Windows\system32\wuauclt.exe"
"C:\Users\Tekier\Downloads\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3745769451-656390983-4175067129-10008_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3745769451-656390983-4175067129-10008 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Tekier\AppData\Roaming\Mozilla\Firefox\Profiles\fhi28ewo.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-10-25 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-25 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BLEServicesCtrl"=C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [2012-05-31 184112]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2012-06-18 11586944]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-05-28 380544]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-13 13538376]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-08-27 172016]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-08-27 399856]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-08-27 442352]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-08-08 22734160]
"AmitiAntivirus"=C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAv.exe [2014-10-01 1557312]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Integrated Camera_Monitor"=C:\Program Files (x86)\Integrated Camera\monitor.exe [2013-04-26 1718648]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-03-27 291608]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-09-12 959176]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Apache Web Server Monitor.lnk - C:\Program Files (x86)\Zend\Apache2\bin\ApacheMonitor.exe
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-06-27 442880]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.ac3filter"=ac3filter64.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-10-25 14:23:55 ----D---- C:\rsit
2014-10-25 14:23:55 ----D---- C:\Program Files\trend micro
2014-10-25 14:04:05 ----D---- C:\Windows\Sun
2014-10-25 14:02:43 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-10-25 14:02:16 ----D---- C:\ProgramData\Oracle
2014-10-25 14:02:13 ----D---- C:\Program Files (x86)\Java
2014-10-25 14:01:48 ----D---- C:\Users\Tekier\AppData\Roaming\AC3Filter
2014-10-25 12:48:28 ----D---- C:\Users\Tekier\AppData\Roaming\Amiti Antivirus
2014-10-25 12:48:27 ----D---- C:\ProgramData\NETGATE
2014-10-25 12:48:27 ----D---- C:\Program Files (x86)\NETGATE
2014-10-25 12:48:27 ----A---- C:\Windows\SYSWOW64\drivers\amitiav_guard.sys
2014-10-25 12:21:46 ----D---- C:\$RECYCLE.BIN
2014-10-25 12:11:31 ----D---- C:\Qoobox
2014-10-25 10:43:54 ----A---- C:\Windows\system32\drivers\TrueSight.sys
2014-10-25 10:32:23 ----RAD---- C:\Autorun.inf
2014-10-24 23:33:48 ----A---- C:\Windows\system32\wmploc.DLL
2014-10-24 23:33:47 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-10-24 23:33:47 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-10-24 23:33:46 ----A---- C:\Windows\system32\wmp.dll
2014-10-24 23:21:39 ----D---- C:\Windows\Migration
2014-10-24 23:16:42 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-10-24 23:08:00 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-10-24 23:08:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\url.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\wininet.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\wextract.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\webcheck.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\vbscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\urlmon.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\url.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\pngfilt.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\occache.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msrating.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msls31.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtmler.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtmled.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtml.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshta.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msfeedssync.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msfeeds.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\licmgr10.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jsproxy.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jsIntl.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jscript9diag.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jscript9.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\inseng.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\imgutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iexpress.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieUnatt.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieui.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iesysprep.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iesetup.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iertutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iernonce.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iepeers.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieframe.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iedkcs32.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieapfltr.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieapfltr.dat
2014-10-24 23:07:56 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ie4uinit.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\icardie.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\elshyph.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\dxtrans.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\dxtmsft.dll
2014-10-24 22:52:26 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\wksprtPS.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\wksprt.exe
2014-10-24 22:52:24 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-10-24 22:52:24 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-10-24 22:52:24 ----A---- C:\Windows\system32\tsgqec.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-10-24 22:52:23 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-10-24 22:52:23 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-10-24 22:52:23 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-10-24 22:52:23 ----A---- C:\Windows\system32\mstscax.dll
2014-10-24 22:52:23 ----A---- C:\Windows\system32\mstsc.exe
2014-10-24 22:17:17 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-10-24 22:17:15 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-10-24 22:17:15 ----A---- C:\Windows\system32\rdpudd.dll
2014-10-24 22:17:15 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-10-24 22:17:14 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-10-24 22:17:14 ----A---- C:\Windows\system32\rdpcorets.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFx.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFHost.exe
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-10-24 21:37:52 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-10-24 21:26:31 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-10-24 21:26:31 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-10-24 21:26:31 ----A---- C:\Windows\system32\UIAnimation.dll
2014-10-24 21:26:31 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-10-24 21:26:30 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-10-24 21:26:29 ----A---- C:\Windows\system32\WMPhoto.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-10-24 21:26:28 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-10-24 21:26:28 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-10-24 21:26:28 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-10-24 21:26:28 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-10-24 21:26:28 ----A---- C:\Windows\system32\d3d10warp.dll
2014-10-24 21:26:28 ----A---- C:\Windows\system32\d3d10_1.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\XpsPrint.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\FntCache.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\dxgi.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\DWrite.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10level9.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10.dll
2014-10-24 21:26:26 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-10-24 21:26:26 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-10-24 21:26:26 ----A---- C:\Windows\system32\d2d1.dll
2014-10-24 21:18:08 ----D---- C:\Windows\system32\MRT
2014-10-24 21:18:03 ----A---- C:\Windows\system32\MRT.exe
2014-10-24 21:15:55 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-10-24 21:15:55 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-10-24 21:15:55 ----A---- C:\Windows\system32\infocardapi.dll
2014-10-24 21:15:55 ----A---- C:\Windows\system32\icardagt.exe
2014-10-24 21:15:54 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-10-24 21:15:54 ----A---- C:\Windows\system32\icardres.dll
2014-10-24 21:15:36 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-10-24 21:15:36 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-10-24 21:14:11 ----A---- C:\Windows\system32\sspisrv.dll
2014-10-24 21:14:11 ----A---- C:\Windows\system32\sspicli.dll
2014-10-24 21:14:11 ----A---- C:\Windows\system32\secur32.dll
2014-10-24 21:14:11 ----A---- C:\Windows\system32\lsass.exe
2014-10-24 21:14:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-10-24 21:14:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-10-24 21:14:11 ----A---- C:\Windows\system32\drivers\cng.sys
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\lpk.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\fontsub.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\dciman32.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\atmlib.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\atmfd.dll
2014-10-24 21:13:31 ----A---- C:\Windows\system32\schannel.dll
2014-10-24 21:13:31 ----A---- C:\Windows\system32\lsasrv.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\winsta.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\winlogon.exe
2014-10-24 21:13:30 ----A---- C:\Windows\system32\wdigest.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\TSpkg.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\termsrv.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\ncrypt.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\msv1_0.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\kerberos.dll
2014-10-24 21:13:29 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-10-24 21:13:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-10-24 21:13:29 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-10-24 21:13:29 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-10-24 21:13:29 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-10-24 21:13:29 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-10-24 21:13:29 ----A---- C:\Windows\system32\credssp.dll
2014-10-24 21:12:12 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-10-24 21:12:12 ----A---- C:\Windows\system32\wow64win.dll
2014-10-24 21:12:12 ----A---- C:\Windows\system32\wow64.dll
2014-10-24 21:12:12 ----A---- C:\Windows\system32\kernel32.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 13:34
od tekier
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\user.exe
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-10-24 21:12:11 ----A---- C:\Windows\system32\wow64cpu.dll
2014-10-24 21:12:11 ----A---- C:\Windows\system32\winsrv.dll
2014-10-24 21:12:11 ----A---- C:\Windows\system32\ntvdm64.dll
2014-10-24 21:12:11 ----A---- C:\Windows\system32\conhost.exe
2014-10-24 21:12:05 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-10-24 21:12:04 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-10-24 21:12:04 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-10-24 21:12:04 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-10-24 21:12:04 ----A---- C:\Windows\system32\objsel.dll
2014-10-24 21:12:04 ----A---- C:\Windows\system32\KernelBase.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\wincredprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\smss.exe
2014-10-24 21:12:03 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\dimsroam.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\csrsrv.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\cngprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\capiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\apisetschema.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\adprovider.dll
2014-10-24 21:11:11 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-10-24 21:11:11 ----A---- C:\Windows\system32\ntshrui.dll
2014-10-24 21:11:07 ----A---- C:\Windows\system32\tquery.dll
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-10-24 21:11:06 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-10-24 21:11:06 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-10-24 21:11:06 ----A---- C:\Windows\system32\mssrch.dll
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-10-24 21:11:05 ----A---- C:\Windows\system32\mssvp.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\mssphtb.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\mssph.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\msscntrs.dll
2014-10-24 21:11:01 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-10-24 21:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-10-24 21:11:01 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-10-24 21:11:01 ----A---- C:\Windows\system32\tdh.dll
2014-10-24 21:11:01 ----A---- C:\Windows\system32\ntdll.dll
2014-10-24 21:11:01 ----A---- C:\Windows\system32\advapi32.dll
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\secproc_isv.dll
2014-10-24 21:10:50 ----A---- C:\Windows\system32\secproc.dll
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate.exe
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-10-24 21:10:49 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-10-24 21:10:49 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-10-24 21:10:49 ----A---- C:\Windows\system32\msdrm.dll
2014-10-24 21:10:15 ----A---- C:\Windows\system32\Wpc.dll
2014-10-24 21:10:14 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-10-24 21:10:14 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-10-24 21:10:14 ----A---- C:\Windows\system32\gameux.dll
2014-10-24 21:09:49 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-10-24 21:09:49 ----A---- C:\Windows\system32\d3d11.dll
2014-10-24 21:09:41 ----A---- C:\Windows\system32\msi.dll
2014-10-24 21:09:40 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-10-24 21:09:40 ----A---- C:\Windows\system32\authui.dll
2014-10-24 21:09:39 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-10-24 21:09:39 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-10-24 21:09:39 ----A---- C:\Windows\system32\msihnd.dll
2014-10-24 21:09:39 ----A---- C:\Windows\system32\consent.exe
2014-10-24 21:09:39 ----A---- C:\Windows\system32\appinfo.dll
2014-10-24 21:09:37 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-10-24 21:09:37 ----A---- C:\Windows\system32\osk.exe
2014-10-24 21:09:22 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-10-24 21:09:22 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-10-24 21:09:22 ----A---- C:\Windows\system32\certutil.exe
2014-10-24 21:09:22 ----A---- C:\Windows\system32\certenc.dll
2014-10-24 21:09:18 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\nlasvc.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\netcorehc.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\ncsi.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-10-24 21:09:17 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-10-24 21:09:17 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-10-24 21:09:17 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-10-24 21:09:17 ----A---- C:\Windows\system32\nlaapi.dll
2014-10-24 21:09:17 ----A---- C:\Windows\system32\netevent.dll
2014-10-24 21:09:17 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-10-24 21:09:04 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-10-24 21:09:04 ----A---- C:\Windows\system32\shdocvw.dll
2014-10-24 21:08:51 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-10-24 21:08:51 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-10-24 21:08:51 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-10-24 21:08:51 ----A---- C:\Windows\system32\cryptsvc.dll
2014-10-24 21:08:51 ----A---- C:\Windows\system32\cryptnet.dll
2014-10-24 21:08:51 ----A---- C:\Windows\system32\crypt32.dll
2014-10-24 21:08:49 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-10-24 21:08:49 ----A---- C:\Windows\system32\WebClnt.dll
2014-10-24 21:08:48 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-10-24 21:08:48 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-10-24 21:08:48 ----A---- C:\Windows\system32\davclnt.dll
2014-10-24 21:08:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-10-24 21:08:43 ----A---- C:\Windows\system32\drivers\netio.sys
2014-10-24 21:08:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-10-24 21:08:41 ----A---- C:\Windows\system32\shell32.dll
2014-10-24 21:08:40 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-10-24 21:08:37 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-10-24 21:08:37 ----A---- C:\Windows\system32\mswsock.dll
2014-10-24 21:08:24 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-10-24 21:08:24 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-10-24 21:08:21 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-10-24 21:08:21 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-10-24 21:08:21 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-10-24 21:08:21 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-10-24 21:08:13 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-10-24 21:08:13 ----A---- C:\Windows\system32\wintrust.dll
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-10-24 21:08:06 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-10-24 21:08:06 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-10-24 21:08:06 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-10-24 21:08:06 ----A---- C:\Windows\system32\credui.dll
2014-10-24 21:08:04 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-10-24 21:08:04 ----A---- C:\Windows\system32\srcore.dll
2014-10-24 21:08:03 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-10-24 21:08:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-10-24 21:07:56 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-10-24 21:07:56 ----A---- C:\Windows\system32\cryptdlg.dll
2014-10-24 21:07:46 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-10-24 21:07:36 ----A---- C:\Windows\system32\msxml6.dll
2014-10-24 21:07:36 ----A---- C:\Windows\system32\msxml3.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-10-24 21:07:35 ----A---- C:\Windows\system32\msxml6r.dll
2014-10-24 21:07:35 ----A---- C:\Windows\system32\msxml3r.dll
2014-10-24 21:07:33 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-10-24 21:07:33 ----A---- C:\Windows\system32\tzres.dll
2014-10-24 21:07:31 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-10-24 21:07:23 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-10-24 21:07:23 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-10-24 21:07:23 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-10-24 21:07:23 ----A---- C:\Windows\system32\mscories.dll
2014-10-24 21:07:23 ----A---- C:\Windows\system32\mscorier.dll
2014-10-24 21:07:23 ----A---- C:\Windows\system32\dfshim.dll
2014-10-24 21:07:22 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-10-24 21:07:22 ----A---- C:\Windows\system32\msieftp.dll
2014-10-24 21:07:19 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-10-24 21:07:19 ----A---- C:\Windows\system32\packager.dll
2014-10-24 21:07:18 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-10-24 21:07:18 ----A---- C:\Windows\system32\xmllite.dll
2014-10-24 21:07:15 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-10-24 21:07:15 ----A---- C:\Windows\system32\iologmsg.dll
2014-10-24 21:07:15 ----A---- C:\Windows\system32\drivers\storport.sys
2014-10-24 21:07:15 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-10-24 21:07:15 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-10-24 21:07:05 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-10-24 21:07:05 ----A---- C:\Windows\system32\qedit.dll
2014-10-24 21:07:04 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-10-24 21:07:03 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-10-24 21:07:03 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-10-24 21:07:03 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-10-24 21:07:01 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-10-24 21:07:01 ----A---- C:\Windows\system32\comctl32.dll
2014-10-24 21:07:00 ----A---- C:\Windows\system32\drivers\afd.sys
2014-10-24 21:06:57 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-10-24 21:06:57 ----A---- C:\Windows\system32\wer.dll
2014-10-24 21:06:53 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-10-24 21:06:53 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-10-24 21:06:52 ----A---- C:\Windows\system32\wwansvc.dll
2014-10-24 21:06:52 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-10-24 21:06:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-10-24 21:06:49 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-10-24 21:06:49 ----A---- C:\Windows\system32\cdd.dll
2014-10-24 21:06:48 ----A---- C:\Windows\system32\win32k.sys
2014-10-24 21:06:43 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-10-24 21:06:43 ----A---- C:\Windows\system32\imagehlp.dll
2014-10-24 21:06:42 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-10-24 21:06:42 ----A---- C:\Windows\system32\usp10.dll
2014-10-24 21:06:41 ----A---- C:\Windows\system32\profsvc.dll
2014-10-24 21:06:39 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-24 21:06:39 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-24 21:06:35 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-10-24 21:06:35 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-10-24 21:06:35 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-10-24 21:06:35 ----A---- C:\Windows\system32\wscript.exe
2014-10-24 21:06:35 ----A---- C:\Windows\system32\scrrun.dll
2014-10-24 21:06:35 ----A---- C:\Windows\system32\cscript.exe
2014-10-24 21:06:33 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-10-24 21:06:33 ----A---- C:\Windows\system32\prevhost.exe
2014-10-24 21:06:15 ----A---- C:\Windows\system32\taskhost.exe
2014-10-24 21:06:06 ----A---- C:\Windows\system32\Wdfres.dll
2014-10-24 21:06:06 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-10-24 21:06:06 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-10-24 21:06:06 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-10-24 21:06:05 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-10-24 21:06:05 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-10-24 21:06:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-10-24 21:06:04 ----A---- C:\Windows\system32\gdi32.dll
2014-10-24 21:06:03 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-10-24 21:06:03 ----A---- C:\Windows\system32\win32spl.dll
2014-10-24 21:06:01 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-10-24 21:06:00 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-10-24 21:06:00 ----A---- C:\Windows\system32\rastls.dll
2014-10-24 21:06:00 ----A---- C:\Windows\system32\qdvd.dll
2014-10-24 21:05:59 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-10-24 20:47:49 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-10-24 20:47:49 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-10-24 20:47:49 ----A---- C:\Windows\system32\nshwfp.dll
2014-10-24 20:47:49 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-10-24 20:47:49 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-10-24 20:46:39 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-10-24 20:46:39 ----A---- C:\Windows\system32\rpcrt4.dll
2014-10-24 20:46:36 ----A---- C:\Windows\system32\scavengeui.dll
2014-10-22 20:44:22 ----D---- C:\Program Files\CCleaner
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wups2.dll
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wucltux.dll
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wuaueng.dll
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wuauclt.exe
2014-10-11 12:55:02 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-10-11 12:55:02 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-10-11 12:55:02 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-10-11 12:55:02 ----A---- C:\Windows\system32\wups.dll
2014-10-11 12:55:02 ----A---- C:\Windows\system32\wudriver.dll
2014-10-11 12:55:02 ----A---- C:\Windows\system32\wuapi.dll
2014-10-11 12:54:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-10-11 12:54:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-10-11 12:54:46 ----A---- C:\Windows\system32\wuwebv.dll
2014-10-11 12:54:46 ----A---- C:\Windows\system32\wuapp.exe
2014-10-10 19:22:29 ----D---- C:\Windows\system32\SPReview
2014-10-10 19:21:47 ----D---- C:\Windows\system32\EventProviders
2014-10-09 21:26:34 ----A---- C:\Windows\system32\netfxperf.dll
2014-10-09 21:26:19 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2014-10-09 21:26:19 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2014-10-09 21:26:19 ----A---- C:\Windows\system32\sysmain.dll
2014-10-09 21:26:18 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2014-10-09 21:26:17 ----A---- C:\Windows\system32\MSVidCtl.dll
2014-10-09 21:26:16 ----A---- C:\Windows\system32\mscoree.dll
2014-10-09 21:26:15 ----A---- C:\Windows\system32\mmcndmgr.dll
2014-10-09 21:26:15 ----A---- C:\Windows\system32\mf.dll
2014-10-09 21:26:14 ----A---- C:\Windows\system32\xpsservices.dll
2014-10-09 21:26:12 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2014-10-09 21:26:12 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2014-10-09 21:26:12 ----A---- C:\Windows\system32\schedsvc.dll
2014-10-09 21:26:11 ----A---- C:\Windows\system32\ole32.dll
2014-10-09 21:26:10 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-10-09 21:26:10 ----A---- C:\Windows\system32\spwizui.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\wevtsvc.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\taskschd.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\RacEngn.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\diagperf.dll
2014-10-09 21:26:08 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-10-09 21:26:08 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2014-10-09 21:26:08 ----A---- C:\Windows\system32\vssapi.dll
2014-10-09 21:26:08 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-10-09 21:26:07 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2014-10-09 21:26:06 ----A---- C:\Windows\system32\UIRibbon.dll
2014-10-09 21:26:06 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2014-10-09 21:26:06 ----A---- C:\Windows\explorer.exe
2014-10-09 21:26:04 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-10-09 21:26:04 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-10-09 21:26:04 ----A---- C:\Windows\system32\WsmSvc.dll
2014-10-09 21:26:04 ----A---- C:\Windows\system32\WMVCORE.DLL
2014-10-09 21:26:04 ----A---- C:\Windows\system32\rdpdd.dll
2014-10-09 21:26:04 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-10-09 21:26:04 ----A---- C:\Windows\system32\PresentationHost.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\WinSAT.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\spreview.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\spinstall.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\MPSSVC.dll
2014-10-09 21:26:03 ----A---- C:\Windows\system32\CertEnroll.dll
2014-10-09 21:26:00 ----A---- C:\Windows\system32\d3d9.dll
2014-10-09 21:25:59 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-10-09 21:25:59 ----A---- C:\Windows\system32\SearchFolder.dll
2014-10-09 21:25:58 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2014-10-09 21:25:58 ----A---- C:\Windows\system32\gpsvc.dll
2014-10-09 21:25:58 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2014-10-09 21:25:57 ----A---- C:\Windows\system32\VSSVC.exe
2014-10-09 21:25:57 ----A---- C:\Windows\system32\dwmcore.dll
2014-10-09 21:25:57 ----A---- C:\Windows\system32\dbgeng.dll
2014-10-09 21:25:56 ----A---- C:\Windows\system32\drivers\http.sys
2014-10-09 21:25:55 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-10-09 21:25:54 ----A---- C:\Windows\SYSWOW64\ole32.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\qmgr.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\gpprefcl.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\audiosrv.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\actxprxy.dll
2014-10-09 21:25:52 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2014-10-09 21:25:52 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-10-09 21:25:52 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\winhttp.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\QAGENTRT.DLL
2014-10-09 21:25:52 ----A---- C:\Windows\system32\propsys.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\netlogon.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\imapi2fs.dll
2014-10-09 21:25:51 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2014-10-09 21:25:51 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-10-09 21:25:51 ----A---- C:\Windows\system32\wbengine.exe
2014-10-09 21:25:51 ----A---- C:\Windows\system32\setupapi.dll
2014-10-09 21:25:51 ----A---- C:\Windows\system32\rpcss.dll
2014-10-09 21:25:51 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2014-10-09 21:25:50 ----A---- C:\Windows\system32\werconcpl.dll
2014-10-09 21:25:50 ----A---- C:\Windows\system32\taskeng.exe
2014-10-09 21:25:50 ----A---- C:\Windows\system32\odbc32.dll
2014-10-09 21:25:49 ----A---- C:\Windows\system32\WSDApi.dll
2014-10-09 21:25:49 ----A---- C:\Windows\system32\user32.dll
2014-10-09 21:25:46 ----A---- C:\Windows\system32\umrdp.dll
2014-10-09 21:25:46 ----A---- C:\Windows\system32\drivers\tdx.sys
2014-10-09 21:25:46 ----A---- C:\Windows\system32\dhcpcore.dll
2014-10-09 21:25:46 ----A---- C:\Windows\system32\certmgr.dll
2014-10-09 21:25:45 ----A---- C:\Windows\SYSWOW64\certcli.dll
2014-10-09 21:25:45 ----A---- C:\Windows\system32\tsmf.dll
2014-10-09 21:25:45 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2014-10-09 21:25:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2014-10-09 21:25:44 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2014-10-09 21:25:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2014-10-09 21:25:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\wmicmiplugin.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\shlwapi.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\netshell.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\msdtctm.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\framedynos.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\ws2_32.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\netcfgx.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\lsm.exe
2014-10-09 21:25:43 ----A---- C:\Windows\system32\drivers\csc.sys
2014-10-09 21:25:43 ----A---- C:\Windows\system32\comdlg32.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\appmgr.dll
2014-10-09 21:25:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2014-10-09 21:25:42 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\wmpps.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\Query.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\drvstore.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\apphelp.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\wpdshext.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\Vault.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\samsrv.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\QAGENT.DLL
2014-10-09 21:25:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\cmd.exe
2014-10-09 21:25:41 ----A---- C:\Windows\system32\BFE.DLL
2014-10-09 21:25:41 ----A---- C:\Windows\system32\azroles.dll
2014-10-09 21:25:40 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2014-10-09 21:25:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-10-09 21:25:40 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2014-10-09 21:25:40 ----A---- C:\Windows\system32\rdpclip.exe
2014-10-09 21:25:40 ----A---- C:\Windows\system32\lpksetup.exe
2014-10-09 21:25:40 ----A---- C:\Windows\system32\cscsvc.dll
2014-10-09 21:25:39 ----A---- C:\Windows\SYSWOW64\Query.dll
2014-10-09 21:25:39 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2014-10-09 21:25:39 ----A---- C:\Windows\system32\sxs.dll
2014-10-09 21:25:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2014-10-09 21:25:38 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2014-10-09 21:25:38 ----A---- C:\Windows\SYSWOW64\upnp.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\Wldap32.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\taskcomp.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\pnidui.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\mfds.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\mcbuilder.exe
2014-10-09 21:25:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\cscobj.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\webservices.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\spoolsv.exe
2014-10-09 21:25:37 ----A---- C:\Windows\system32\SessEnv.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\rdpendp.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\hgprint.dll
2014-10-09 21:25:36 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2014-10-09 21:25:36 ----A---- C:\Windows\system32\sqlsrv32.dll
2014-10-09 21:25:36 ----A---- C:\Windows\system32\fveapi.dll
2014-10-09 21:25:36 ----A---- C:\Windows\system32\dot3api.dll
2014-10-09 21:25:35 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2014-10-09 21:25:35 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2014-10-09 21:25:35 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2014-10-09 21:25:35 ----A---- C:\Windows\system32\prncache.dll
2014-10-09 21:25:35 ----A---- C:\Windows\system32\mcmde.dll
2014-10-09 21:25:35 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-10-09 21:25:35 ----A---- C:\Windows\system32\drivers\msrpc.sys
2014-10-09 21:25:34 ----A---- C:\Windows\SYSWOW64\userenv.dll
2014-10-09 21:25:34 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\WMNetMgr.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\wlanpref.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\vpnike.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\schtasks.exe
2014-10-09 21:25:33 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2014-10-09 21:25:33 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2014-10-09 21:25:33 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\userenv.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\photowiz.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\evr.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\drivers\rdbss.sys
2014-10-09 21:25:33 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2014-10-09 21:25:32 ----A---- C:\Windows\system32\IPSECSVC.DLL
2014-10-09 21:25:32 ----A---- C:\Windows\system32\framedyn.dll
2014-10-09 21:25:32 ----A---- C:\Windows\system32\AudioSes.dll
2014-10-09 21:25:31 ----A---- C:\Windows\SYSWOW64\cmd.exe
2014-10-09 21:25:31 ----A---- C:\Windows\system32\wmpmde.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\WMPEncEn.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\wmpeffects.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\SyncCenter.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\sppobjs.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\FXSSVC.exe
2014-10-09 21:25:31 ----A---- C:\Windows\system32\aepdu.dll
2014-10-09 21:25:30 ----A---- C:\Windows\system32\tscfgwmi.dll
2014-10-09 21:25:30 ----A---- C:\Windows\system32\srvsvc.dll
2014-10-09 21:25:30 ----A---- C:\Windows\system32\mfreadwrite.dll
2014-10-09 21:25:29 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-10-09 21:25:29 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2014-10-09 21:25:29 ----A---- C:\Windows\system32\vmicsvc.exe
2014-10-09 21:25:29 ----A---- C:\Windows\system32\shsvcs.dll
2014-10-09 21:25:29 ----A---- C:\Windows\system32\fde.dll
2014-10-09 21:25:29 ----A---- C:\Windows\system32\aeinv.dll
2014-10-09 21:25:28 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2014-10-09 21:25:28 ----A---- C:\Windows\SYSWOW64\mfds.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\WinSATAPI.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\stobject.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\localsec.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\imapi2.dll
2014-10-09 21:25:27 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-10-09 21:25:27 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2014-10-09 21:25:27 ----A---- C:\Windows\system32\netdiagfx.dll
2014-10-09 21:25:27 ----A---- C:\Windows\system32\inetpp.dll
2014-10-09 21:25:27 ----A---- C:\Windows\system32\drivers\vmbus.sys
2014-10-09 21:25:27 ----A---- C:\Windows\system32\drivers\udfs.sys
2014-10-09 21:25:27 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-10-09 21:25:26 ----A---- C:\Windows\system32\netid.dll
2014-10-09 21:25:26 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-10-09 21:25:25 ----A---- C:\Windows\SYSWOW64\azroles.dll
2014-10-09 21:25:25 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\spp.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\QSHVHOST.DLL
2014-10-09 21:25:25 ----A---- C:\Windows\system32\cscui.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\biocpl.dll
2014-10-09 21:25:24 ----A---- C:\Windows\system32\msinfo32.exe
2014-10-09 21:25:23 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-10-09 21:25:23 ----A---- C:\Windows\system32\scansetting.dll
2014-10-09 21:25:23 ----A---- C:\Windows\system32\printui.dll
2014-10-09 21:25:23 ----A---- C:\Windows\system32\mspbda.dll
2014-10-09 21:25:22 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2014-10-09 21:25:22 ----A---- C:\Windows\SYSWOW64\spp.dll
2014-10-09 21:25:22 ----A---- C:\Windows\system32\pla.dll
2014-10-09 21:25:22 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2014-10-09 21:25:22 ----A---- C:\Windows\splwow64.exe
2014-10-09 21:25:21 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2014-10-09 21:25:21 ----A---- C:\Windows\system32\wusa.exe
2014-10-09 21:25:21 ----A---- C:\Windows\system32\vds.exe
2014-10-09 21:25:21 ----A---- C:\Windows\system32\msdri.dll
2014-10-09 21:25:21 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2014-10-09 21:25:21 ----A---- C:\Windows\system32\aitagent.exe
2014-10-09 21:25:20 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2014-10-09 21:25:20 ----A---- C:\Windows\system32\wiaservc.dll
2014-10-09 21:25:20 ----A---- C:\Windows\system32\rpchttp.dll
2014-10-09 21:25:20 ----A---- C:\Windows\system32\drivers\pci.sys
2014-10-09 21:25:20 ----A---- C:\Windows\system32\AdmTmpl.dll
2014-10-09 21:25:19 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2014-10-09 21:25:19 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2014-10-09 21:25:19 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\XpsRasterService.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\wisptis.exe
2014-10-09 21:25:19 ----A---- C:\Windows\system32\PkgMgr.exe
2014-10-09 21:25:19 ----A---- C:\Windows\system32\mscms.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2014-10-09 21:25:18 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2014-10-09 21:25:18 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2014-10-09 21:25:18 ----A---- C:\Windows\SYSWOW64\evr.dll
2014-10-09 21:25:18 ----A---- C:\Windows\system32\sppwinob.dll
2014-10-09 21:25:18 ----A---- C:\Windows\system32\ocsetup.exe
2014-10-09 21:25:17 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2014-10-09 21:25:17 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2014-10-09 21:25:17 ----A---- C:\Windows\SYSWOW64\calc.exe
2014-10-09 21:25:17 ----A---- C:\Windows\system32\wpdbusenum.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\wcncsvc.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\upnp.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\Robocopy.exe
2014-10-09 21:25:17 ----A---- C:\Windows\system32\ocsetapi.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\mprapi.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\eapphost.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\eapp3hst.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\DXP.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\drivers\volmgr.sys
2014-10-09 21:25:17 ----A---- C:\Windows\system32\drivers\msdsm.sys
2014-10-09 21:25:17 ----A---- C:\Windows\system32\ci.dll
2014-10-09 21:25:16 ----A---- C:\Windows\SYSWOW64\sxs.dll
2014-10-09 21:25:16 ----A---- C:\Windows\system32\thumbcache.dll
2014-10-09 21:25:16 ----A---- C:\Windows\system32\t2embed.dll
2014-10-09 21:25:16 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2014-10-09 21:25:15 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2014-10-09 21:25:15 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-10-09 21:25:15 ----A---- C:\Windows\SYSWOW64\netshell.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\scecli.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2014-10-09 21:25:15 ----A---- C:\Windows\system32\hal.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\DxpTaskSync.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\dwmredir.dll
2014-10-09 21:25:14 ----A---- C:\Windows\SYSWOW64\prncache.dll
2014-10-09 21:25:14 ----A---- C:\Windows\SYSWOW64\printui.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\themeui.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\scrptadm.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\puiobj.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\onex.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\msasn1.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\iasrad.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2014-10-09 21:25:14 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\net1.exe
2014-10-09 21:25:13 ----A---- C:\Windows\system32\wdc.dll
2014-10-09 21:25:13 ----A---- C:\Windows\system32\scesrv.dll
2014-10-09 21:25:13 ----A---- C:\Windows\system32\rasmans.dll
2014-10-09 21:25:12 ----A---- C:\Windows\system32\wlangpui.dll
2014-10-09 21:25:12 ----A---- C:\Windows\system32\msftedit.dll
2014-10-09 21:25:10 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2014-10-09 21:25:10 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2014-10-09 21:25:10 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\wscapi.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\wiadefui.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\VAN.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\StructuredQuery.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\SndVol.exe
2014-10-09 21:25:10 ----A---- C:\Windows\system32\sdengin2.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\samcli.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\netcenter.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\iasacct.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\dskquoui.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\webservices.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\fde.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\TabSvc.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\srchadmin.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\setupcl.exe
2014-10-09 21:25:09 ----A---- C:\Windows\system32\regapi.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\QUTIL.DLL
2014-10-09 21:25:09 ----A---- C:\Windows\system32\drivers\termdd.sys
2014-10-09 21:25:09 ----A---- C:\Windows\system32\drivers\msahci.sys
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\tapisrv.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\netiohlp.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\msconfig.exe
2014-10-09 21:25:08 ----A---- C:\Windows\system32\mimefilt.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\ListSvc.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\drivers\raspptp.sys
2014-10-09 21:25:08 ----A---- C:\Windows\system32\drivers\acpi.sys
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\pla.dll
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\lsmproxy.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\hgcpl.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\fdeploy.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2014-10-09 21:25:07 ----A---- C:\Windows\system32\drivers\ks.sys
2014-10-09 21:25:07 ----A---- C:\Windows\system32\clusapi.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\basecsp.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2014-10-09 21:25:06 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2014-10-09 21:25:06 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2014-10-09 21:25:06 ----A---- C:\Windows\system32\riched20.dll
2014-10-09 21:25:06 ----A---- C:\Windows\system32\mtxclu.dll
2014-10-09 21:25:06 ----A---- C:\Windows\system32\dnscmmc.dll
2014-10-09 21:25:05 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2014-10-09 21:25:05 ----A---- C:\Windows\SYSWOW64\onex.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\sharemediacpl.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\RpcRtRemote.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\powercpl.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\logoncli.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2014-10-09 21:25:04 ----A---- C:\Windows\system32\themecpl.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\SensorsCpl.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\netjoin.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\nci.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\Narrator.exe
2014-10-09 21:25:04 ----A---- C:\Windows\system32\Faultrep.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\eudcedit.exe
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\samcli.dll
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\proquota.exe
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\msutb.dll
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\autochk.exe
2014-10-09 21:25:03 ----A---- C:\Windows\system32\wkssvc.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\vpnikeapi.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\sppcomapi.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\cabview.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\autochk.exe
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\regapi.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\shsetup.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\nshipsec.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\fms.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\autofmt.exe
2014-10-09 21:25:02 ----A---- C:\Windows\system32\autoconv.exe
2014-10-09 21:25:02 ----A---- C:\Windows\system32\audiodg.exe
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\wwanconn.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\wpd_ci.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\wlanui.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\sdclt.exe
2014-10-09 21:25:01 ----A---- C:\Windows\system32\prntvpt.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\drivers\winusb.sys
2014-10-09 21:25:01 ----A---- C:\Windows\system32\drivers\wanarp.sys
2014-10-09 21:25:01 ----A---- C:\Windows\system32\drivers\scsiport.sys
2014-10-09 21:25:01 ----A---- C:\Windows\system32\bcdsrv.dll
2014-10-09 21:25:00 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2014-10-09 21:25:00 ----A---- C:\Windows\SYSWOW64\netid.dll
2014-10-09 21:25:00 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\SmiEngine.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\mprddm.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\fontext.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2014-10-09 21:25:00 ----A---- C:\Windows\system32\dps.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\Display.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\AxInstSv.dll
2014-10-09 21:24:59 ----A---- C:\Windows\SYSWOW64\wdc.dll
2014-10-09 21:24:59 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-10-09 21:24:59 ----A---- C:\Windows\system32\batmeter.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\Vault.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\untfs.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\nci.dll
2014-10-09 21:24:58 ----A---- C:\Windows\system32\wmpsrcwp.dll
2014-10-09 21:24:58 ----A---- C:\Windows\system32\mblctr.exe
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-10-09 21:24:57 ----A---- C:\Windows\system32\usercpl.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\rtutils.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\provsvc.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\DiagCpl.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\bootres.dll
2014-10-09 21:24:56 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2014-10-09 21:24:56 ----A---- C:\Windows\system32\wpccpl.dll
2014-10-09 21:24:56 ----A---- C:\Windows\system32\sppsvc.exe
2014-10-09 21:24:56 ----A---- C:\Windows\system32\rasppp.dll
2014-10-09 21:24:56 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2014-10-09 21:24:55 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2014-10-09 21:24:55 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2014-10-09 21:24:55 ----A---- C:\Windows\SYSWOW64\Display.dll
2014-10-09 21:24:55 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-10-09 21:24:55 ----A---- C:\Windows\system32\dxdiagn.dll
2014-10-09 21:24:55 ----A---- C:\Windows\system32\drivers\winhv.sys
2014-10-09 21:24:55 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2014-10-09 21:24:55 ----A---- C:\Windows\system32\dot3cfg.dll
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\userinit.exe
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2014-10-09 21:24:54 ----A---- C:\Windows\system32\taskmgr.exe
2014-10-09 21:24:54 ----A---- C:\Windows\system32\prnfldr.dll
2014-10-09 21:24:54 ----A---- C:\Windows\system32\hbaapi.dll
2014-10-09 21:24:53 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2014-10-09 21:24:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2014-10-09 21:24:53 ----A---- C:\Windows\system32\proquota.exe
2014-10-09 21:24:53 ----A---- C:\Windows\system32\pdh.dll
2014-10-09 21:24:53 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\cabview.dll
2014-10-09 21:24:52 ----A---- C:\Windows\system32\untfs.dll
2014-10-09 21:24:52 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2014-10-09 21:24:51 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2014-10-09 21:24:51 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2014-10-09 21:24:51 ----A---- C:\Windows\system32\userinit.exe
2014-10-09 21:24:51 ----A---- C:\Windows\system32\accessibilitycpl.dll
2014-10-09 21:24:50 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2014-10-09 21:24:50 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2014-10-09 21:24:50 ----A---- C:\Windows\system32\zipfldr.dll
2014-10-09 21:24:50 ----A---- C:\Windows\system32\slui.exe
2014-10-09 21:24:50 ----A---- C:\Windows\system32\drivers\storvsc.sys
2014-10-09 21:24:50 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2014-10-09 21:24:49 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2014-10-09 21:24:49 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\scecli.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\mscms.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\localsec.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\fontext.dll
2014-10-09 21:24:48 ----A---- C:\Windows\system32\sud.dll
2014-10-09 21:24:48 ----A---- C:\Windows\system32\DeviceCenter.dll
2014-10-09 21:24:47 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2014-10-09 21:24:47 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2014-10-09 21:24:47 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\taskbarcpl.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\networkmap.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\dot3svc.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\cryptui.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2014-10-09 21:24:46 ----A---- C:\Windows\system32\twext.dll
2014-10-09 21:24:46 ----A---- C:\Windows\system32\ActionCenter.dll
2014-10-09 21:24:45 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2014-10-09 21:24:45 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-10-09 21:24:45 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\uxlib.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\recovery.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\OobeFldr.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2014-10-09 21:24:45 ----A---- C:\Windows\system32\bcdedit.exe
2014-10-09 21:24:45 ----A---- C:\Windows\system32\azroleui.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\tzutil.exe
2014-10-09 21:24:44 ----A---- C:\Windows\system32\sisbkup.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\isoburn.exe
2014-10-09 21:24:44 ----A---- C:\Windows\system32\efscore.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\dsuiext.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\cca.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\asycfilt.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\systemcpl.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\syncui.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\shwebsvc.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\sdcpl.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\recdisc.exe
2014-10-09 21:24:43 ----A---- C:\Windows\system32\netplwiz.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\httpapi.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\drivers\mpio.sys
2014-10-09 21:24:43 ----A---- C:\Windows\system32\certcli.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\autoplay.dll
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\wlanmsm.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\sysclass.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\sdrsvc.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\ncryptui.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\msvidc32.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2014-10-09 21:24:42 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\sud.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-10-09 21:24:41 ----A---- C:\Windows\system32\vdsutil.dll
2014-10-09 21:24:41 ----A---- C:\Windows\system32\spwizeng.dll
2014-10-09 21:24:41 ----A---- C:\Windows\system32\MFPlay.dll
2014-10-09 21:24:40 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2014-10-09 21:24:40 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2014-10-09 21:24:40 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\termmgr.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\sethc.exe
2014-10-09 21:24:40 ----A---- C:\Windows\system32\rstrui.exe
2014-10-09 21:24:40 ----A---- C:\Windows\system32\ReAgent.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\ntlanman.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\msscp.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\ftp.exe
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\efscore.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\sqlcese30.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\rdpd3d.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\iprtrmgr.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\syncui.dll
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\ssText3d.scr
2014-10-09 21:24:38 ----A---- C:\Windows\system32\srvcli.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\slwga.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\iyuv_32.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\iTVData.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\drmmgrtn.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\wavemsp.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\ntprint.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\nslookup.exe
2014-10-09 21:24:37 ----A---- C:\Windows\system32\NAPHLPR.DLL
2014-10-09 21:24:37 ----A---- C:\Windows\system32\msiexec.exe
2014-10-09 21:24:37 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\acppage.dll
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\sethc.exe
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\riched20.dll
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2014-10-09 21:24:36 ----A---- C:\Windows\system32\srrstr.dll
2014-10-09 21:24:36 ----A---- C:\Windows\system32\sppnp.dll
2014-10-09 21:24:36 ----A---- C:\Windows\system32\bcdboot.exe
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\migisol.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\fms.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\dpx.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\activeds.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\remotepg.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\networkexplorer.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\certprop.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\cabinet.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2014-10-09 21:24:34 ----A---- C:\Windows\system32\wkscli.dll
2014-10-09 21:24:34 ----A---- C:\Windows\system32\WinSCard.dll
2014-10-09 21:24:34 ----A---- C:\Windows\system32\PresentationSettings.exe
2014-10-09 21:24:34 ----A---- C:\Windows\system32\ftp.exe
2014-10-09 21:24:34 ----A---- C:\Windows\system32\dfrgui.exe
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wvc.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wsqmcons.exe
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wsnmp32.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wmpdxm.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wmdrmdev.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\net1.exe
2014-10-09 21:24:33 ----A---- C:\Windows\system32\blackbox.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\wvc.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\mstask.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2014-10-09 21:24:32 ----A---- C:\Windows\system32\WerFaultSecure.exe
2014-10-09 21:24:32 ----A---- C:\Windows\system32\msyuv.dll
2014-10-09 21:24:32 ----A---- C:\Windows\system32\mfps.dll
2014-10-09 21:24:31 ----A---- C:\Windows\twain_32.dll
2014-10-09 21:24:31 ----A---- C:\Windows\SYSWOW64\twext.dll
2014-10-09 21:24:31 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2014-10-09 21:24:31 ----A---- C:\Windows\SYSWOW64\qcap.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\unimdmat.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\OpcServices.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\msrle32.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\mapistub.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\mapi32.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\Bubbles.scr
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\slwga.dll
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\qasf.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\tsbyuv.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\seclogon.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\Ribbons.scr
2014-10-09 21:24:30 ----A---- C:\Windows\system32\Mystify.scr
2014-10-09 21:24:30 ----A---- C:\Windows\system32\iscsium.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\ifsutil.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\diskraid.exe
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\wmpshell.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2014-10-09 21:24:29 ----A---- C:\Windows\system32\rdpencom.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\perfmon.exe
2014-10-09 21:24:29 ----A---- C:\Windows\system32\muifontsetup.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\drivers\umbus.sys
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\msscp.dll
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\acppage.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\umb.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\tlscsp.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\runonce.exe
2014-10-09 21:24:28 ----A---- C:\Windows\system32\qasf.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\netutils.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2014-10-09 21:24:28 ----A---- C:\Windows\system32\FXSAPI.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\dbghelp.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\AzSqlExt.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\ActionQueue.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\raschap.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\input.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\wpdwcn.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\WMADMOD.DLL
2014-10-09 21:24:27 ----A---- C:\Windows\system32\wiavideo.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\syssetup.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\raschap.dll
2014-10-09 21:24:27 ----A---- C:\Windows\bfsvc.exe
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2014-10-09 21:24:26 ----A---- C:\Windows\system32\WMVSDECD.DLL
2014-10-09 21:24:26 ----A---- C:\Windows\system32\vdsbas.dll
2014-10-09 21:24:26 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2014-10-09 21:24:26 ----A---- C:\Windows\system32\MdSched.exe
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\runonce.exe
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\onexui.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\logagent.exe
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2014-10-09 21:24:25 ----A---- C:\Windows\system32\nltest.exe
2014-10-09 21:24:25 ----A---- C:\Windows\system32\mstask.dll
2014-10-09 21:24:25 ----A---- C:\Windows\system32\Mcx2Svc.dll
2014-10-09 21:24:25 ----A---- C:\Windows\system32\drivers\rmcast.sys
2014-10-09 21:24:25 ----A---- C:\Windows\system32\bitsadmin.exe
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2014-10-09 21:24:24 ----A---- C:\Windows\system32\vss_ps.dll
2014-10-09 21:24:24 ----A---- C:\Windows\system32\tabcal.exe
2014-10-09 21:24:24 ----A---- C:\Windows\system32\shacct.dll
2014-10-09 21:24:24 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2014-10-09 21:24:24 ----A---- C:\Windows\system32\cscapi.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\shacct.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2014-10-09 21:24:23 ----A---- C:\Windows\system32\WPDSp.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2014-10-09 21:24:23 ----A---- C:\Windows\system32\wmdrmnet.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\qcap.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\msnetobj.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\logman.exe
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\pdh.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\logman.exe
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2014-10-09 21:24:22 ----A---- C:\Windows\system32\vmictimeprovider.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\spbcd.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\qdv.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\CscMig.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\utildll.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2014-10-09 21:24:21 ----A---- C:\Windows\system32\takeown.exe
2014-10-09 21:24:21 ----A---- C:\Windows\system32\PnPUnattend.exe
2014-10-09 21:24:21 ----A---- C:\Windows\system32\fphc.dll
2014-10-09 21:24:21 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2014-10-09 21:24:21 ----A---- C:\Windows\system32\dot3ui.dll
2014-10-09 21:24:21 ----A---- C:\Windows\system32\amstream.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\takeown.exe
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\qdv.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\fphc.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\vfwwdm32.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\shimgvw.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\QCLIPROV.DLL
2014-10-09 21:24:20 ----A---- C:\Windows\system32\nrpsrv.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\EhStorAPI.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\djoin.exe
2014-10-09 21:24:20 ----A---- C:\Windows\system32\cmstp.exe
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\cca.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\WavDest.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\iasrecst.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\fdProxy.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\drivers\pacer.sys
2014-10-09 21:24:19 ----A---- C:\Windows\system32\CertPolEng.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2014-10-09 21:24:18 ----A---- C:\Windows\system32\sscore.dll
2014-10-09 21:24:18 ----A---- C:\Windows\system32\relog.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\mydocs.dll
2014-10-09 21:24:18 ----A---- C:\Windows\system32\MultiDigiMon.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\mobsync.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\KMSVC.DLL
2014-10-09 21:24:18 ----A---- C:\Windows\system32\iscsicli.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\diskpart.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\relog.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\itircl.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\amstream.dll
2014-10-09 21:24:17 ----A---- C:\Windows\system32\msdmo.dll
2014-10-09 21:24:17 ----A---- C:\Windows\system32\itircl.dll
2014-10-09 21:24:17 ----A---- C:\Windows\system32\dot3msm.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\findstr.exe
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\sppc.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\qprocess.exe
2014-10-09 21:24:16 ----A---- C:\Windows\system32\onexui.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\mciqtz32.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\luainstall.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\choice.exe
2014-10-09 21:24:16 ----A---- C:\Windows\system32\FXSTIFF.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\findstr.exe
2014-10-09 21:24:16 ----A---- C:\Windows\system32\eappgnui.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\drivers\tunnel.sys
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\sppc.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\spopk.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\netutils.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\spopk.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\schedcli.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\repair-bde.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\qappsrv.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\manage-bde.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\inetmib1.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\chglogon.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\drivers\dfsc.sys
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\vmstorfltres.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\vmicres.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\vmbusres.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\tskill.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\tsdiscon.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\tscon.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\shadow.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\rwinsta.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\RDPENCDD.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\profprov.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\odbcconf.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\logoff.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\chgusr.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\chgport.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\FXSMON.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\fixmapi.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\elsTrans.dll
2014-10-09 21:24:13 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2014-10-09 21:24:13 ----A---- C:\Windows\SYSWOW64\perfts.dll
2014-10-09 21:24:13 ----A---- C:\Windows\SYSWOW64\imm32.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\wshbth.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\UIRibbonRes.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\TRAPI.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\reset.exe
2014-10-09 21:24:13 ----A---- C:\Windows\system32\LogonUI.exe
2014-10-09 21:24:13 ----A---- C:\Windows\system32\dsauth.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\drivers\tdi.sys
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\query.exe
2014-10-09 21:24:12 ----A---- C:\Windows\system32\napdsnap.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\change.exe
2014-10-09 21:24:12 ----A---- C:\Windows\system32\FXSUNATD.exe
2014-10-09 21:24:12 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2014-10-09 21:24:12 ----A---- C:\Windows\system32\cscdll.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\bitsperf.dll
2014-10-09 21:24:11 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2014-10-09 21:24:11 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2014-10-09 21:24:11 ----A---- C:\Windows\system32\wsdchngr.dll
2014-10-09 21:24:11 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2014-10-09 21:24:09 ----A---- C:\Windows\SYSWOW64\sscore.dll
2014-10-09 21:24:09 ----A---- C:\Windows\system32\shgina.dll
2014-10-09 21:24:08 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2014-10-09 21:24:08 ----A---- C:\Windows\SYSWOW64\shgina.dll
2014-10-09 21:24:08 ----A---- C:\Windows\SYSWOW64\riched32.dll
2014-10-09 21:24:08 ----A---- C:\Windows\system32\wshirda.dll
2014-10-09 21:24:08 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2014-10-09 21:24:08 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2014-10-09 21:24:07 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2014-10-09 21:24:07 ----A---- C:\Windows\system32\riched32.dll
2014-10-09 21:24:07 ----A---- C:\Windows\system32\rdpcfgex.dll
2014-10-09 21:24:07 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2014-10-09 21:24:07 ----A---- C:\Windows\system32\drivers\hidusb.sys
2014-10-09 21:24:07 ----A---- C:\Windows\system32\drivers\appid.sys
2014-10-09 21:24:06 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2014-10-09 21:24:06 ----A---- C:\Windows\SYSWOW64\browseui.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\VmdCoinstall.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\vmbuspipe.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\spwmp.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\IcCoinstall.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-10-09 21:24:06 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2014-10-09 21:24:06 ----A---- C:\Windows\system32\drivers\cdrom.sys
2014-10-09 21:24:06 ----A---- C:\Windows\system32\C_ISCII.DLL
2014-10-09 21:24:06 ----A---- C:\Windows\system32\browseui.dll
2014-10-09 21:24:05 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\shunimpl.dll
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDTUF.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDSF.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDPO.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDINTAM.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDINBEN.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\dxmasf.dll
2014-10-09 21:24:05 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2014-10-09 21:24:05 ----A---- C:\Windows\system32\drivers\scfilter.sys
2014-10-09 21:24:05 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-10-09 21:24:04 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDTUQ.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDSG.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDNEPR.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\kbdlk41a.dll
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDGR1.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDGKL.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDUS.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDTURME.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDMON.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDMAORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDLT1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDINTEL.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDINORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDINMAR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDGEO.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDCZ1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDBULG.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDBLR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2014-10-09 21:24:02 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2014-10-09 21:24:02 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\spwizres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\pifmgr.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\nlsbres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\KBDINKAN.DLL
2014-10-09 21:24:02 ----A---- C:\Windows\system32\KBDINHIN.DLL
2014-10-09 21:24:02 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2014-10-09 21:24:02 ----A---- C:\Windows\system32\BlbEvents.dll
2014-10-09 21:23:51 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2014-10-09 21:23:51 ----A---- C:\Windows\system32\dpx.dll
2014-10-09 21:23:38 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2014-10-09 21:23:35 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2014-10-09 21:22:54 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2014-10-09 21:16:46 ----A---- C:\Windows\system32\wbemcomn.dll
2014-10-09 21:16:19 ----A---- C:\Windows\system32\sqmapi.dll
2014-10-09 21:12:26 ----A---- C:\Windows\system32\fsquirt.exe
2014-10-09 21:12:26 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2014-10-09 21:12:26 ----A---- C:\Windows\system32\drivers\bthport.sys
2014-10-09 21:11:35 ----A---- C:\Windows\system32\esent.dll
2014-10-09 21:11:34 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-10-09 21:11:34 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-10-09 21:11:34 ----A---- C:\Windows\system32\fsutil.exe
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-10-08 23:24:09 ----D---- C:\Users\Tekier\AppData\Roaming\DropboxMaster
2014-10-08 23:22:44 ----D---- C:\Users\Tekier\AppData\Roaming\Dropbox
2014-09-27 14:03:25 ----D---- C:\Users\Tekier\AppData\Roaming\FileZilla

======List of files/folders modified in the last 1 month======

2014-10-25 14:24:00 ----D---- C:\Windows\Prefetch
2014-10-25 14:23:57 ----D---- C:\Windows\Temp
2014-10-25 14:23:55 ----D---- C:\Program Files
2014-10-25 14:10:59 ----D---- C:\Windows\system32\config
2014-10-25 14:04:05 ----D---- C:\Windows
2014-10-25 14:03:40 ----SHD---- C:\Windows\Installer
2014-10-25 14:03:36 ----D---- C:\Windows\System32
2014-10-25 14:03:36 ----D---- C:\ProgramData
2014-10-25 14:03:12 ----D---- C:\Program Files (x86)\Common Files
2014-10-25 14:02:43 ----D---- C:\Windows\SysWOW64
2014-10-25 14:02:13 ----RD---- C:\Program Files (x86)
2014-10-25 12:48:27 ----D---- C:\Windows\SYSWOW64\drivers
2014-10-25 12:45:04 ----D---- C:\Windows\Panther
2014-10-25 12:45:04 ----D---- C:\Windows\Logs
2014-10-25 12:45:04 ----D---- C:\Windows\inf
2014-10-25 12:45:04 ----D---- C:\Windows\debug
2014-10-25 12:44:35 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-10-25 12:27:22 ----D---- C:\Windows\system32\drivers
2014-10-25 12:21:50 ----A---- C:\Windows\system.ini
2014-10-25 12:21:40 ----D---- C:\Windows\system32\drivers\etc
2014-10-25 12:16:15 ----D---- C:\Windows\AppPatch
2014-10-25 11:24:23 ----SHD---- C:\System Volume Information
2014-10-25 10:06:50 ----SD---- C:\ProgramData\Microsoft
2014-10-25 09:50:08 ----D---- C:\Windows\Downloaded Program Files
2014-10-25 09:18:43 ----D---- C:\Windows\winsxs
2014-10-25 09:14:56 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-10-25 09:06:06 ----D---- C:\Windows\Microsoft.NET
2014-10-25 09:05:36 ----RSD---- C:\Windows\assembly
2014-10-25 08:50:08 ----D---- C:\Windows\system32\catroot2
2014-10-25 08:45:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-10-25 08:45:47 ----D---- C:\Windows\system32\cs-CZ
2014-10-25 08:45:47 ----D---- C:\Windows\ehome
2014-10-25 08:45:47 ----D---- C:\Program Files\Windows Media Player
2014-10-25 08:45:47 ----D---- C:\Program Files (x86)\Windows Media Player
2014-10-25 08:45:45 ----D---- C:\Program Files\Internet Explorer
2014-10-25 08:45:45 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-25 08:45:43 ----D---- C:\Windows\SYSWOW64\migration
2014-10-25 08:45:43 ----D---- C:\Windows\SYSWOW64\en-US
2014-10-25 08:45:42 ----D---- C:\Windows\system32\migration
2014-10-25 08:45:42 ----D---- C:\Windows\system32\en-US
2014-10-25 08:45:42 ----D---- C:\Windows\PolicyDefinitions
2014-10-25 08:45:41 ----D---- C:\Windows\SYSWOW64\wbem
2014-10-25 08:45:41 ----D---- C:\Program Files\Windows Journal
2014-10-25 08:45:40 ----D---- C:\Windows\system32\wbem
2014-10-25 08:45:40 ----D---- C:\Windows\system32\drivers\en-US
2014-10-25 08:45:27 ----D---- C:\Windows\SYSWOW64\Dism
2014-10-25 08:45:27 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-10-25 08:45:27 ----D---- C:\Windows\system32\Dism
2014-10-25 08:45:25 ----RSD---- C:\Windows\Fonts
2014-10-25 08:45:24 ----D---- C:\Program Files\Windows Defender
2014-10-25 08:45:24 ----D---- C:\Program Files (x86)\Windows Defender
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\it-IT
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\es-ES
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\el-GR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\de-DE
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\da-DK
2014-10-25 08:45:07 ----D---- C:\Windows\system32\zh-TW
2014-10-25 08:45:07 ----D---- C:\Windows\system32\zh-HK
2014-10-25 08:45:07 ----D---- C:\Windows\system32\zh-CN
2014-10-25 08:45:07 ----D---- C:\Windows\system32\tr-TR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\sv-SE
2014-10-25 08:45:07 ----D---- C:\Windows\system32\ru-RU
2014-10-25 08:45:07 ----D---- C:\Windows\system32\pt-PT
2014-10-25 08:45:07 ----D---- C:\Windows\system32\pt-BR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\pl-PL
2014-10-25 08:45:07 ----D---- C:\Windows\system32\nl-NL
2014-10-25 08:45:07 ----D---- C:\Windows\system32\nb-NO
2014-10-25 08:45:07 ----D---- C:\Windows\system32\ko-KR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\ja-JP
2014-10-25 08:45:07 ----D---- C:\Windows\system32\it-IT
2014-10-25 08:45:07 ----D---- C:\Windows\system32\hu-HU
2014-10-25 08:45:07 ----D---- C:\Windows\system32\fr-FR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\fi-FI
2014-10-25 08:45:07 ----D---- C:\Windows\system32\es-ES
2014-10-25 08:45:07 ----D---- C:\Windows\system32\el-GR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\de-DE
2014-10-25 08:45:07 ----D---- C:\Windows\system32\da-DK
2014-10-25 08:30:59 ----D---- C:\Windows\system32\DriverStore
2014-10-24 23:34:29 ----D---- C:\Windows\system32\catroot
2014-10-24 23:23:48 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-10-24 21:57:35 ----D---- C:\ProgramData\Microsoft Help
2014-10-24 21:57:33 ----D---- C:\Program Files (x86)\Microsoft Works
2014-10-24 21:51:53 ----A---- C:\Windows\win.ini
2014-10-23 19:32:40 ----D---- C:\Windows\system32\wdi
2014-10-22 20:45:28 ----D---- C:\Users\Tekier\AppData\Roaming\inkscape
2014-10-22 20:45:28 ----D---- C:\Users\Tekier\AppData\Roaming\DAEMON Tools Lite
2014-10-22 20:44:23 ----D---- C:\Windows\system32\Tasks
2014-10-21 19:06:07 ----D---- C:\Program Files\NetBeans 8.0
2014-10-18 10:35:11 ----D---- C:\Program Files\Civilization IV
2014-10-15 19:38:17 ----D---- C:\Program Files (x86)\Opera
2014-10-12 21:48:27 ----D---- C:\Users\Tekier\AppData\Roaming\Skype
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Sidebar
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Portable Devices
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Photo Viewer
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Mail
2014-10-11 09:25:09 ----D---- C:\Program Files\DVD Maker
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Mail
2014-10-11 09:25:08 ----D---- C:\Windows\servicing
2014-10-11 09:25:08 ----D---- C:\Program Files\Common Files\System
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\Setup
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\oobe
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\cs
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-10-11 09:25:05 ----D---- C:\Windows\SYSWOW64\sppui
2014-10-11 09:25:05 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-10-11 09:25:02 ----D---- C:\Windows\SYSWOW64\migwiz
2014-10-11 09:24:57 ----D---- C:\Windows\system32\oobe
2014-10-11 09:24:55 ----D---- C:\Windows\system32\Setup
2014-10-11 09:24:55 ----D---- C:\Windows\system32\cs
2014-10-11 09:24:55 ----D---- C:\Windows\system32\AdvancedInstallers
2014-10-11 09:24:49 ----D---- C:\Windows\system32\sppui
2014-10-11 09:24:49 ----D---- C:\Windows\system32\migwiz
2014-10-11 09:24:49 ----D---- C:\Windows\system32\manifeststore
2014-10-11 09:24:30 ----D---- C:\Windows\system32\Boot
2014-10-11 09:21:29 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-10-11 09:21:29 ----A---- C:\Windows\system32\msclmd.dll
2014-10-11 09:10:44 ----D---- C:\Program Files\Microsoft Silverlight
2014-10-11 09:10:41 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-10-09 20:48:32 ----D---- C:\Users\Tekier\AppData\Roaming\Azureus
2014-10-09 20:47:38 ----D---- C:\Windows\ModemLogs
2014-10-02 15:53:02 ----N---- C:\Windows\system32\MpSigStub.exe

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 13:35
od tekier
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-03-27 19224]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-07-06 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2012-04-20 97880]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-03-27 170200]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2014-07-05 5443688]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2012-05-21 111104]
R3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-12-04 598808]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-05-02 184144]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2012-03-06 210984]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-17 39976]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-06 21544]
R3 IBMPMDRV;IBMPMDRV; C:\Windows\system32\DRIVERS\ibmpmdrv.sys [2014-02-27 57144]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-06-27 5361920]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-05-14 3413320]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2012-12-27 342528]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-03-27 356632]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-03-27 789272]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-17 62784]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-10-25 769168]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-03-29 44272]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2013-06-11 1509112]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-03-29 448240]
S1 SpyEmrg;Amiti Antivirus Driver; C:\Windows\System32\Drivers\spyemrg.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys []
S3 huawei_cdcacm;huawei_cdcacm; C:\Windows\system32\DRIVERS\ew_jucdcacm.sys []
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\Windows\system32\DRIVERS\ew_juextctrl.sys []
S3 huawei_wwanecm;huawei_wwanecm; C:\Windows\system32\DRIVERS\ew_juwwanecm.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 amitiavsrv;AMITI Antivirus Engine; C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe [2014-10-01 726848]
R2 Apache2.2-Zend;Apache2.2-Zend; C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe [2014-06-30 21416]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-06-18 1095616]
R2 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2012-06-18 1333184]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-06-18 1124288]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2013-05-21 1006384]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 IBMPMSVC;Lenovo PM Service; C:\Windows\system32\ibmpmsvc.exe [2014-02-27 68440]
R2 MySQL_ZendServer55;MySQL_ZendServer55; C:\Program Files (x86)\Zend\MySQL55\bin\mysqld --defaults-file=C:\Program Files (x86)\Zend\MySQL55\my.ini MySQL_ZendServer55 []
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2014-06-10 124400]
R2 TPHKSVC;On Screen Display; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [2014-04-01 126512]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-05 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-09 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-08-27 279024]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-05 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-10-24 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-07-04 1255736]
S4 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2014-04-07 110128]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 17:16
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 17:59
od tekier
vše bez problémů proběhlo dle návodu



# AdwCleaner v4.001 - Report created 25/10/2014 at 18:56:19
# DB v2014-10-23.2
# Updated 20/10/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Tekier - TEKIER-NTB
# Running from : C:\Users\Tekier\Desktop\adwcleaner_4.001.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17344


-\\ Mozilla Firefox v30.0 (cs)


-\\ Google Chrome v38.0.2125.104


*************************

AdwCleaner[R4].txt - [784 octets] - [25/10/2014 18:53:59]
AdwCleaner[S2].txt - [699 octets] - [25/10/2014 18:56:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [758 octets] ##########

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 18:45
od Rudy
Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:commands
[Purity]
[Emptyemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 20:00
od tekier
Logfile of random's system information tool 1.10 (written by random/random)
Run by Tekier at 2014-10-25 20:58:24
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 418 GB (88%) free of 477 GB
Total RAM: 3710 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:58:29, on 25.10.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\PROGRA~1\Lenovo\HOTKEY\TPONSCR.EXE
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Zend\Apache2\bin\ApacheMonitor.exe
C:\Program Files (x86)\Integrated Camera\Monitor.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files\trend micro\Tekier.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Integrated Camera_Monitor] "C:\Program Files (x86)\Integrated Camera\monitor.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [AmitiAntivirus] C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAv.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Global Startup: Apache Web Server Monitor.lnk = C:\Program Files (x86)\Zend\Apache2\bin\ApacheMonitor.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat do Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Odeslat do Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apache2.2-Zend - Apache Software Foundation - C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Lenovo PM Service (IBMPMSVC) - Unknown owner - C:\Windows\system32\ibmpmsvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MySQL_ZendServer55 - Unknown owner - C:\Program.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Zend Deployment (ZendDeployment) - Zend Technologies Ltd. - C:\Program Files (x86)\Zend\ZendServer\bin\zdd.exe
O23 - Service: Zend Job Queue (ZendJobQueue) - Zend Technologies Ltd - C:\Program Files (x86)\Zend\ZendServer\bin\jqd.exe
O23 - Service: Zend Monitor (ZendMonitor) - Zend Technologies Ltd. - C:\Program Files (x86)\Zend\ZendServer\bin\MonitorNode.exe
O23 - Service: Zend Server Daemon (ZendServerDaemon) - Zend Technologies Ltd. - C:\Program Files (x86)\Zend\ZendServer\bin\zsd.exe
O23 - Service: Zend Session Clustering (ZendSessionClustering) - Zend Technologies Ltd - C:\Program Files (x86)\Zend\ZendServer\bin\scd.exe

--
End of file - 9051 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\ibmpmsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\WLANExt.exe 28580000
\??\C:\Windows\system32\conhost.exe "1701659586-13293961311834932829-1931836802-92028415519205389951282798491319756626
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe" -k runservice
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Zend\MySQL55\bin\mysqld" --defaults-file="C:\Program Files (x86)\Zend\MySQL55\my.ini" MySQL_ZendServer55
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Zend\ZendServer\bin\zdd.exe" "C:\Program Files (x86)\Zend\ZendServer\etc\zdd.ini"
"C:\Program Files (x86)\Zend\ZendServer\bin\MonitorNode.exe" "C:\Program Files (x86)\Zend\ZendServer\etc\monitor_node.ini"
"C:\Program Files (x86)\Zend\ZendServer\bin\zsd.exe" "C:\Program Files (x86)\Zend\ZendServer\etc\zsd.ini"
"C:\Program Files (x86)\Zend\ZendServer\bin\scd.exe" -p "C:\Program Files (x86)\Zend\ZendServer\etc\scd.ini"
C:\PROGRA~1\LENOVO\HOTKEY\tpnumlk.exe
"C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe"
"C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe" -d "C:/Program Files (x86)/Zend/Apache2"
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "19876971101767210895-745949480-63242310813520506991215824708248834192-1236983409
"taskhost.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\PROGRA~1\LENOVO\HOTKEY\tpnumlkd.exe
C:\Windows\system32\wbem\wmiprvse.exe
taskeng.exe {6E86942F-67BF-41D2-8DF1-BDA04963A897}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskeng.exe {C3AA613D-063C-476E-9938-DF2D146984FA}
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "17697227366125647201781515652-287747121-841877931857702518127740441-639110135
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "334347257-11155863181007039716-1123357840-1088465422895479563620446499596052982
C:\Windows\system32\rundll32.exe "C:\Program Files\LENOVO\HOTKEY\hotkey.dll",InstallAudioHotkeyHook
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Zend\ZendServer\bin\php-cgi.exe"
\??\C:\Windows\system32\conhost.exe "431954601-20558029901048244059-1447402084-14411546804036212668554125661915280486
C:\PROGRA~1\Lenovo\HOTKEY\TPONSCR.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.OnScreenDisplay
C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE /UEFI\\.\pipe\{C6A9690C-33AE-4a55-8B65-9498CC0A7B34}.ShortcutKey
"C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Zend\Apache2\bin\ApacheMonitor.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\Integrated Camera\Monitor.exe"
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\SysWOW64\RunDll32.exe" "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3745769451-656390983-4175067129-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3745769451-656390983-4175067129-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe" -Embedding
"C:\Users\Tekier\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Tekier\AppData\Roaming\Mozilla\Firefox\Profiles\fhi28ewo.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.189 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.189 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-10-25 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-25 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BLEServicesCtrl"=C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [2012-05-31 184112]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2012-06-18 11586944]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2012-05-28 380544]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-13 13538376]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-08-27 172016]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-08-27 399856]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-08-27 442352]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2014-08-08 22734160]
"AmitiAntivirus"=C:\Program Files (x86)\NETGATE\Amiti Antivirus\AmitiAv.exe []
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Integrated Camera_Monitor"=C:\Program Files (x86)\Integrated Camera\monitor.exe [2013-04-26 1718648]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-03-27 291608]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-09-12 959176]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Apache Web Server Monitor.lnk - C:\Program Files (x86)\Zend\Apache2\bin\ApacheMonitor.exe
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-06-27 442880]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.ac3filter"=ac3filter64.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2014-10-25 20:54:11 ----D---- C:\_OTM
2014-10-25 19:29:55 ----D---- C:\Windows\SYSWOW64\Adobe
2014-10-25 19:29:36 ----D---- C:\Users\Tekier\AppData\Roaming\Macromedia
2014-10-25 19:23:47 ----D---- C:\Windows\system32\appmgmt
2014-10-25 19:23:37 ----D---- C:\ProgramData\Skype
2014-10-25 19:21:27 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-10-25 19:15:05 ----D---- C:\Program Files (x86)\FileHippo.com
2014-10-25 16:00:24 ----D---- C:\Program Files (x86)\eTesty
2014-10-25 14:23:55 ----D---- C:\rsit
2014-10-25 14:23:55 ----D---- C:\Program Files\trend micro
2014-10-25 14:04:05 ----D---- C:\Windows\Sun
2014-10-25 14:02:43 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-10-25 14:02:16 ----D---- C:\ProgramData\Oracle
2014-10-25 14:02:13 ----D---- C:\Program Files (x86)\Java
2014-10-25 14:01:48 ----D---- C:\Users\Tekier\AppData\Roaming\AC3Filter
2014-10-25 12:48:27 ----D---- C:\Program Files (x86)\NETGATE
2014-10-25 12:21:46 ----D---- C:\$RECYCLE.BIN
2014-10-25 12:11:31 ----D---- C:\Qoobox
2014-10-25 10:43:54 ----A---- C:\Windows\system32\drivers\TrueSight.sys
2014-10-25 10:32:23 ----RAD---- C:\Autorun.inf
2014-10-24 23:33:48 ----A---- C:\Windows\system32\wmploc.DLL
2014-10-24 23:33:47 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2014-10-24 23:33:47 ----A---- C:\Windows\SYSWOW64\wmp.dll
2014-10-24 23:33:46 ----A---- C:\Windows\system32\wmp.dll
2014-10-24 23:21:39 ----D---- C:\Windows\Migration
2014-10-24 23:16:42 ----A---- C:\Windows\system32\IEUDINIT.EXE
2014-10-24 23:08:00 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2014-10-24 23:08:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\wextract.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\url.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\occache.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msls31.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\mshta.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\jscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\inseng.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieui.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\icardie.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-10-24 23:07:56 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\wininet.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\wextract.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\webcheck.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\vbscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\urlmon.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\url.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\pngfilt.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\occache.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msrating.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msls31.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtmler.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtmled.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshtml.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\mshta.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msfeedssync.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\msfeeds.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\licmgr10.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jsproxy.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jsIntl.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jscript9diag.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jscript9.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\jscript.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\inseng.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\imgutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iexpress.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieUnatt.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieui.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iesysprep.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iesetup.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iertutil.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iernonce.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iepeers.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieframe.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\iedkcs32.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieapfltr.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ieapfltr.dat
2014-10-24 23:07:56 ----A---- C:\Windows\system32\IEAdvpack.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\ie4uinit.exe
2014-10-24 23:07:56 ----A---- C:\Windows\system32\icardie.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\elshyph.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\dxtrans.dll
2014-10-24 23:07:56 ----A---- C:\Windows\system32\dxtmsft.dll
2014-10-24 22:52:26 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2014-10-24 22:52:24 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\wksprtPS.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\wksprt.exe
2014-10-24 22:52:24 ----A---- C:\Windows\system32\TSWbPrxy.exe
2014-10-24 22:52:24 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-10-24 22:52:24 ----A---- C:\Windows\system32\tsgqec.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2014-10-24 22:52:24 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2014-10-24 22:52:23 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-10-24 22:52:23 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-10-24 22:52:23 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-10-24 22:52:23 ----A---- C:\Windows\system32\mstscax.dll
2014-10-24 22:52:23 ----A---- C:\Windows\system32\mstsc.exe
2014-10-24 22:17:17 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-10-24 22:17:15 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2014-10-24 22:17:15 ----A---- C:\Windows\system32\rdpudd.dll
2014-10-24 22:17:15 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2014-10-24 22:17:14 ----A---- C:\Windows\system32\rdpendp_winip.dll
2014-10-24 22:17:14 ----A---- C:\Windows\system32\rdpcorets.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFx.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFSvc.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFPlatform.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFHost.exe
2014-10-24 21:37:52 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2014-10-24 21:37:52 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2014-10-24 21:37:52 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2014-10-24 21:26:31 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2014-10-24 21:26:31 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2014-10-24 21:26:31 ----A---- C:\Windows\system32\UIAnimation.dll
2014-10-24 21:26:31 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2014-10-24 21:26:30 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2014-10-24 21:26:29 ----A---- C:\Windows\system32\WMPhoto.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-10-24 21:26:28 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-10-24 21:26:28 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2014-10-24 21:26:28 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-10-24 21:26:28 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2014-10-24 21:26:28 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2014-10-24 21:26:28 ----A---- C:\Windows\system32\d3d10warp.dll
2014-10-24 21:26:28 ----A---- C:\Windows\system32\d3d10_1.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-10-24 21:26:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\XpsPrint.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\FntCache.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\dxgi.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\DWrite.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10level9.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2014-10-24 21:26:27 ----A---- C:\Windows\system32\d3d10.dll
2014-10-24 21:26:26 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2014-10-24 21:26:26 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-10-24 21:26:26 ----A---- C:\Windows\system32\d2d1.dll
2014-10-24 21:18:08 ----D---- C:\Windows\system32\MRT
2014-10-24 21:18:03 ----A---- C:\Windows\system32\MRT.exe
2014-10-24 21:15:55 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2014-10-24 21:15:55 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2014-10-24 21:15:55 ----A---- C:\Windows\system32\infocardapi.dll
2014-10-24 21:15:55 ----A---- C:\Windows\system32\icardagt.exe
2014-10-24 21:15:54 ----A---- C:\Windows\SYSWOW64\icardres.dll
2014-10-24 21:15:54 ----A---- C:\Windows\system32\icardres.dll
2014-10-24 21:15:36 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-10-24 21:15:36 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-10-24 21:14:11 ----A---- C:\Windows\system32\sspisrv.dll
2014-10-24 21:14:11 ----A---- C:\Windows\system32\sspicli.dll
2014-10-24 21:14:11 ----A---- C:\Windows\system32\secur32.dll
2014-10-24 21:14:11 ----A---- C:\Windows\system32\lsass.exe
2014-10-24 21:14:11 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2014-10-24 21:14:11 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2014-10-24 21:14:11 ----A---- C:\Windows\system32\drivers\cng.sys
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\lpk.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2014-10-24 21:13:59 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\lpk.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\fontsub.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\dciman32.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\atmlib.dll
2014-10-24 21:13:59 ----A---- C:\Windows\system32\atmfd.dll
2014-10-24 21:13:31 ----A---- C:\Windows\system32\schannel.dll
2014-10-24 21:13:31 ----A---- C:\Windows\system32\lsasrv.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\winsta.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2014-10-24 21:13:30 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\winsta.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\winlogon.exe
2014-10-24 21:13:30 ----A---- C:\Windows\system32\wdigest.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\TSpkg.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\termsrv.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\ncrypt.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\msv1_0.dll
2014-10-24 21:13:30 ----A---- C:\Windows\system32\kerberos.dll
2014-10-24 21:13:29 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2014-10-24 21:13:29 ----A---- C:\Windows\SYSWOW64\secur32.dll
2014-10-24 21:13:29 ----A---- C:\Windows\SYSWOW64\credssp.dll
2014-10-24 21:13:29 ----A---- C:\Windows\system32\rdpcorekmts.dll
2014-10-24 21:13:29 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2014-10-24 21:13:29 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2014-10-24 21:13:29 ----A---- C:\Windows\system32\credssp.dll
2014-10-24 21:12:12 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2014-10-24 21:12:12 ----A---- C:\Windows\system32\wow64win.dll
2014-10-24 21:12:12 ----A---- C:\Windows\system32\wow64.dll
2014-10-24 21:12:12 ----A---- C:\Windows\system32\kernel32.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-10-24 21:12:11 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\wow32.dll
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\user.exe
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\setup16.exe
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2014-10-24 21:12:11 ----A---- C:\Windows\SYSWOW64\instnm.exe
2014-10-24 21:12:11 ----A---- C:\Windows\system32\wow64cpu.dll
2014-10-24 21:12:11 ----A---- C:\Windows\system32\winsrv.dll
2014-10-24 21:12:11 ----A---- C:\Windows\system32\ntvdm64.dll
2014-10-24 21:12:11 ----A---- C:\Windows\system32\conhost.exe
2014-10-24 21:12:05 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-10-24 21:12:04 ----A---- C:\Windows\SYSWOW64\objsel.dll
2014-10-24 21:12:04 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2014-10-24 21:12:04 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2014-10-24 21:12:04 ----A---- C:\Windows\system32\objsel.dll
2014-10-24 21:12:04 ----A---- C:\Windows\system32\KernelBase.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2014-10-24 21:12:03 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\wincredprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\smss.exe
2014-10-24 21:12:03 ----A---- C:\Windows\system32\dpapiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\dimsroam.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\csrsrv.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\cngprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\capiprovider.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\apisetschema.dll
2014-10-24 21:12:03 ----A---- C:\Windows\system32\adprovider.dll
2014-10-24 21:11:11 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2014-10-24 21:11:11 ----A---- C:\Windows\system32\ntshrui.dll
2014-10-24 21:11:07 ----A---- C:\Windows\system32\tquery.dll
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\tquery.dll
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2014-10-24 21:11:06 ----A---- C:\Windows\SYSWOW64\mssph.dll
2014-10-24 21:11:06 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2014-10-24 21:11:06 ----A---- C:\Windows\system32\SearchIndexer.exe
2014-10-24 21:11:06 ----A---- C:\Windows\system32\mssrch.dll
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2014-10-24 21:11:05 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\SearchFilterHost.exe
2014-10-24 21:11:05 ----A---- C:\Windows\system32\mssvp.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\mssphtb.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\mssph.dll
2014-10-24 21:11:05 ----A---- C:\Windows\system32\msscntrs.dll
2014-10-24 21:11:01 ----A---- C:\Windows\SYSWOW64\tdh.dll
2014-10-24 21:11:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2014-10-24 21:11:01 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2014-10-24 21:11:01 ----A---- C:\Windows\system32\tdh.dll
2014-10-24 21:11:01 ----A---- C:\Windows\system32\ntdll.dll
2014-10-24 21:11:01 ----A---- C:\Windows\system32\advapi32.dll
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\secproc_isv.dll
2014-10-24 21:10:50 ----A---- C:\Windows\system32\secproc.dll
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate_isv.exe
2014-10-24 21:10:50 ----A---- C:\Windows\system32\RMActivate.exe
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\secproc.dll
2014-10-24 21:10:49 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2014-10-24 21:10:49 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2014-10-24 21:10:49 ----A---- C:\Windows\system32\secproc_ssp.dll
2014-10-24 21:10:49 ----A---- C:\Windows\system32\msdrm.dll
2014-10-24 21:10:15 ----A---- C:\Windows\system32\Wpc.dll
2014-10-24 21:10:14 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-10-24 21:10:14 ----A---- C:\Windows\SYSWOW64\gameux.dll
2014-10-24 21:10:14 ----A---- C:\Windows\system32\gameux.dll
2014-10-24 21:09:49 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2014-10-24 21:09:49 ----A---- C:\Windows\system32\d3d11.dll
2014-10-24 21:09:41 ----A---- C:\Windows\system32\msi.dll
2014-10-24 21:09:40 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-10-24 21:09:40 ----A---- C:\Windows\system32\authui.dll
2014-10-24 21:09:39 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-10-24 21:09:39 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-10-24 21:09:39 ----A---- C:\Windows\system32\msihnd.dll
2014-10-24 21:09:39 ----A---- C:\Windows\system32\consent.exe
2014-10-24 21:09:39 ----A---- C:\Windows\system32\appinfo.dll
2014-10-24 21:09:37 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-10-24 21:09:37 ----A---- C:\Windows\system32\osk.exe
2014-10-24 21:09:22 ----A---- C:\Windows\SYSWOW64\certutil.exe
2014-10-24 21:09:22 ----A---- C:\Windows\SYSWOW64\certenc.dll
2014-10-24 21:09:22 ----A---- C:\Windows\system32\certutil.exe
2014-10-24 21:09:22 ----A---- C:\Windows\system32\certenc.dll
2014-10-24 21:09:18 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\nlasvc.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\netcorehc.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\ncsi.dll
2014-10-24 21:09:18 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-10-24 21:09:17 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2014-10-24 21:09:17 ----A---- C:\Windows\SYSWOW64\netevent.dll
2014-10-24 21:09:17 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2014-10-24 21:09:17 ----A---- C:\Windows\system32\nlaapi.dll
2014-10-24 21:09:17 ----A---- C:\Windows\system32\netevent.dll
2014-10-24 21:09:17 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2014-10-24 21:09:04 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2014-10-24 21:09:04 ----A---- C:\Windows\system32\shdocvw.dll
2014-10-24 21:08:51 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2014-10-24 21:08:51 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2014-10-24 21:08:51 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2014-10-24 21:08:51 ----A---- C:\Windows\system32\cryptsvc.dll
2014-10-24 21:08:51 ----A---- C:\Windows\system32\cryptnet.dll
2014-10-24 21:08:51 ----A---- C:\Windows\system32\crypt32.dll
2014-10-24 21:08:49 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-10-24 21:08:49 ----A---- C:\Windows\system32\WebClnt.dll
2014-10-24 21:08:48 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2014-10-24 21:08:48 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2014-10-24 21:08:48 ----A---- C:\Windows\system32\davclnt.dll
2014-10-24 21:08:43 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-10-24 21:08:43 ----A---- C:\Windows\system32\drivers\netio.sys
2014-10-24 21:08:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2014-10-24 21:08:41 ----A---- C:\Windows\system32\shell32.dll
2014-10-24 21:08:40 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-10-24 21:08:37 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2014-10-24 21:08:37 ----A---- C:\Windows\system32\mswsock.dll
2014-10-24 21:08:24 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2014-10-24 21:08:24 ----A---- C:\Windows\system32\TSWorkspace.dll
2014-10-24 21:08:21 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2014-10-24 21:08:21 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2014-10-24 21:08:21 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2014-10-24 21:08:21 ----A---- C:\Windows\system32\dhcpcore6.dll
2014-10-24 21:08:13 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2014-10-24 21:08:13 ----A---- C:\Windows\system32\wintrust.dll
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbport.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbehci.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2014-10-24 21:08:10 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-10-24 21:08:06 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2014-10-24 21:08:06 ----A---- C:\Windows\SYSWOW64\credui.dll
2014-10-24 21:08:06 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2014-10-24 21:08:06 ----A---- C:\Windows\system32\credui.dll
2014-10-24 21:08:04 ----A---- C:\Windows\SYSWOW64\srclient.dll
2014-10-24 21:08:04 ----A---- C:\Windows\system32\srcore.dll
2014-10-24 21:08:03 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-10-24 21:08:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-10-24 21:07:56 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2014-10-24 21:07:56 ----A---- C:\Windows\system32\cryptdlg.dll
2014-10-24 21:07:46 ----A---- C:\Windows\system32\OxpsConverter.exe
2014-10-24 21:07:36 ----A---- C:\Windows\system32\msxml6.dll
2014-10-24 21:07:36 ----A---- C:\Windows\system32\msxml3.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2014-10-24 21:07:35 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2014-10-24 21:07:35 ----A---- C:\Windows\system32\msxml6r.dll
2014-10-24 21:07:35 ----A---- C:\Windows\system32\msxml3r.dll
2014-10-24 21:07:33 ----A---- C:\Windows\SYSWOW64\tzres.dll
2014-10-24 21:07:33 ----A---- C:\Windows\system32\tzres.dll
2014-10-24 21:07:31 ----A---- C:\Windows\system32\drivers\ataport.sys
2014-10-24 21:07:23 ----A---- C:\Windows\SYSWOW64\mscories.dll
2014-10-24 21:07:23 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2014-10-24 21:07:23 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-10-24 21:07:23 ----A---- C:\Windows\system32\mscories.dll
2014-10-24 21:07:23 ----A---- C:\Windows\system32\mscorier.dll
2014-10-24 21:07:23 ----A---- C:\Windows\system32\dfshim.dll
2014-10-24 21:07:22 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2014-10-24 21:07:22 ----A---- C:\Windows\system32\msieftp.dll
2014-10-24 21:07:19 ----A---- C:\Windows\SYSWOW64\packager.dll
2014-10-24 21:07:19 ----A---- C:\Windows\system32\packager.dll
2014-10-24 21:07:18 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2014-10-24 21:07:18 ----A---- C:\Windows\system32\xmllite.dll
2014-10-24 21:07:15 ----A---- C:\Windows\SYSWOW64\iologmsg.dll
2014-10-24 21:07:15 ----A---- C:\Windows\system32\iologmsg.dll
2014-10-24 21:07:15 ----A---- C:\Windows\system32\drivers\storport.sys
2014-10-24 21:07:15 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2014-10-24 21:07:15 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2014-10-24 21:07:05 ----A---- C:\Windows\SYSWOW64\qedit.dll
2014-10-24 21:07:05 ----A---- C:\Windows\system32\qedit.dll
2014-10-24 21:07:04 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2014-10-24 21:07:03 ----A---- C:\Windows\system32\drivers\usbcir.sys
2014-10-24 21:07:03 ----A---- C:\Windows\system32\drivers\portcls.sys
2014-10-24 21:07:03 ----A---- C:\Windows\system32\drivers\drmk.sys
2014-10-24 21:07:01 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2014-10-24 21:07:01 ----A---- C:\Windows\system32\comctl32.dll
2014-10-24 21:07:00 ----A---- C:\Windows\system32\drivers\afd.sys
2014-10-24 21:06:57 ----A---- C:\Windows\SYSWOW64\wer.dll
2014-10-24 21:06:57 ----A---- C:\Windows\system32\wer.dll
2014-10-24 21:06:53 ----A---- C:\Windows\system32\drivers\hidparse.sys
2014-10-24 21:06:53 ----A---- C:\Windows\system32\drivers\hidclass.sys
2014-10-24 21:06:52 ----A---- C:\Windows\system32\wwansvc.dll
2014-10-24 21:06:52 ----A---- C:\Windows\system32\wwanprotdim.dll
2014-10-24 21:06:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2014-10-24 21:06:49 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-10-24 21:06:49 ----A---- C:\Windows\system32\cdd.dll
2014-10-24 21:06:48 ----A---- C:\Windows\system32\win32k.sys
2014-10-24 21:06:43 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2014-10-24 21:06:43 ----A---- C:\Windows\system32\imagehlp.dll
2014-10-24 21:06:42 ----A---- C:\Windows\SYSWOW64\usp10.dll
2014-10-24 21:06:42 ----A---- C:\Windows\system32\usp10.dll
2014-10-24 21:06:41 ----A---- C:\Windows\system32\profsvc.dll
2014-10-24 21:06:39 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-24 21:06:39 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-24 21:06:35 ----A---- C:\Windows\SYSWOW64\wscript.exe
2014-10-24 21:06:35 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2014-10-24 21:06:35 ----A---- C:\Windows\SYSWOW64\cscript.exe
2014-10-24 21:06:35 ----A---- C:\Windows\system32\wscript.exe
2014-10-24 21:06:35 ----A---- C:\Windows\system32\scrrun.dll
2014-10-24 21:06:35 ----A---- C:\Windows\system32\cscript.exe
2014-10-24 21:06:33 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2014-10-24 21:06:33 ----A---- C:\Windows\system32\prevhost.exe
2014-10-24 21:06:15 ----A---- C:\Windows\system32\taskhost.exe
2014-10-24 21:06:06 ----A---- C:\Windows\system32\Wdfres.dll
2014-10-24 21:06:06 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2014-10-24 21:06:06 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2014-10-24 21:06:06 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-10-24 21:06:05 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2014-10-24 21:06:05 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-10-24 21:06:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-10-24 21:06:04 ----A---- C:\Windows\system32\gdi32.dll
2014-10-24 21:06:03 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2014-10-24 21:06:03 ----A---- C:\Windows\system32\win32spl.dll
2014-10-24 21:06:01 ----A---- C:\Windows\system32\drivers\fvevol.sys
2014-10-24 21:06:00 ----A---- C:\Windows\SYSWOW64\rastls.dll
2014-10-24 21:06:00 ----A---- C:\Windows\system32\rastls.dll
2014-10-24 21:06:00 ----A---- C:\Windows\system32\qdvd.dll
2014-10-24 21:05:59 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2014-10-24 20:47:49 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2014-10-24 20:47:49 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2014-10-24 20:47:49 ----A---- C:\Windows\system32\nshwfp.dll
2014-10-24 20:47:49 ----A---- C:\Windows\system32\IKEEXT.DLL
2014-10-24 20:47:49 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2014-10-24 20:46:39 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-10-24 20:46:39 ----A---- C:\Windows\system32\rpcrt4.dll
2014-10-24 20:46:36 ----A---- C:\Windows\system32\scavengeui.dll
2014-10-22 20:44:22 ----D---- C:\Program Files\CCleaner
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wups2.dll
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wucltux.dll
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wuaueng.dll
2014-10-11 12:55:25 ----A---- C:\Windows\system32\wuauclt.exe
2014-10-11 12:55:02 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-10-11 12:55:02 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-10-11 12:55:02 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-10-11 12:55:02 ----A---- C:\Windows\system32\wups.dll
2014-10-11 12:55:02 ----A---- C:\Windows\system32\wudriver.dll
2014-10-11 12:55:02 ----A---- C:\Windows\system32\wuapi.dll
2014-10-11 12:54:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2014-10-11 12:54:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2014-10-11 12:54:46 ----A---- C:\Windows\system32\wuwebv.dll
2014-10-11 12:54:46 ----A---- C:\Windows\system32\wuapp.exe
2014-10-10 19:22:29 ----D---- C:\Windows\system32\SPReview
2014-10-10 19:21:47 ----D---- C:\Windows\system32\EventProviders
2014-10-09 21:26:34 ----A---- C:\Windows\system32\netfxperf.dll
2014-10-09 21:26:19 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2014-10-09 21:26:19 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2014-10-09 21:26:19 ----A---- C:\Windows\system32\sysmain.dll
2014-10-09 21:26:18 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2014-10-09 21:26:17 ----A---- C:\Windows\system32\MSVidCtl.dll
2014-10-09 21:26:16 ----A---- C:\Windows\system32\mscoree.dll
2014-10-09 21:26:15 ----A---- C:\Windows\system32\mmcndmgr.dll
2014-10-09 21:26:15 ----A---- C:\Windows\system32\mf.dll
2014-10-09 21:26:14 ----A---- C:\Windows\system32\xpsservices.dll
2014-10-09 21:26:12 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2014-10-09 21:26:12 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2014-10-09 21:26:12 ----A---- C:\Windows\system32\schedsvc.dll
2014-10-09 21:26:11 ----A---- C:\Windows\system32\ole32.dll
2014-10-09 21:26:10 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-10-09 21:26:10 ----A---- C:\Windows\system32\spwizui.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\wevtsvc.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\taskschd.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\RacEngn.dll
2014-10-09 21:26:09 ----A---- C:\Windows\system32\diagperf.dll
2014-10-09 21:26:08 ----A---- C:\Windows\SYSWOW64\mf.dll
2014-10-09 21:26:08 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2014-10-09 21:26:08 ----A---- C:\Windows\system32\vssapi.dll
2014-10-09 21:26:08 ----A---- C:\Windows\system32\ExplorerFrame.dll
2014-10-09 21:26:07 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2014-10-09 21:26:06 ----A---- C:\Windows\system32\UIRibbon.dll
2014-10-09 21:26:06 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2014-10-09 21:26:06 ----A---- C:\Windows\explorer.exe
2014-10-09 21:26:04 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-10-09 21:26:04 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-10-09 21:26:04 ----A---- C:\Windows\system32\WsmSvc.dll
2014-10-09 21:26:04 ----A---- C:\Windows\system32\WMVCORE.DLL
2014-10-09 21:26:04 ----A---- C:\Windows\system32\rdpdd.dll
2014-10-09 21:26:04 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-10-09 21:26:04 ----A---- C:\Windows\system32\PresentationHost.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\WinSAT.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\spreview.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\spinstall.exe
2014-10-09 21:26:03 ----A---- C:\Windows\system32\MPSSVC.dll
2014-10-09 21:26:03 ----A---- C:\Windows\system32\CertEnroll.dll
2014-10-09 21:26:00 ----A---- C:\Windows\system32\d3d9.dll
2014-10-09 21:25:59 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2014-10-09 21:25:59 ----A---- C:\Windows\system32\SearchFolder.dll
2014-10-09 21:25:58 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2014-10-09 21:25:58 ----A---- C:\Windows\system32\gpsvc.dll
2014-10-09 21:25:58 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2014-10-09 21:25:57 ----A---- C:\Windows\system32\VSSVC.exe
2014-10-09 21:25:57 ----A---- C:\Windows\system32\dwmcore.dll
2014-10-09 21:25:57 ----A---- C:\Windows\system32\dbgeng.dll
2014-10-09 21:25:56 ----A---- C:\Windows\system32\drivers\http.sys
2014-10-09 21:25:55 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2014-10-09 21:25:54 ----A---- C:\Windows\SYSWOW64\ole32.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\qmgr.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\gpprefcl.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\audiosrv.dll
2014-10-09 21:25:54 ----A---- C:\Windows\system32\actxprxy.dll
2014-10-09 21:25:52 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2014-10-09 21:25:52 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2014-10-09 21:25:52 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\winhttp.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\QAGENTRT.DLL
2014-10-09 21:25:52 ----A---- C:\Windows\system32\propsys.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\netlogon.dll
2014-10-09 21:25:52 ----A---- C:\Windows\system32\imapi2fs.dll
2014-10-09 21:25:51 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2014-10-09 21:25:51 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-10-09 21:25:51 ----A---- C:\Windows\system32\wbengine.exe
2014-10-09 21:25:51 ----A---- C:\Windows\system32\setupapi.dll
2014-10-09 21:25:51 ----A---- C:\Windows\system32\rpcss.dll
2014-10-09 21:25:51 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2014-10-09 21:25:50 ----A---- C:\Windows\system32\werconcpl.dll
2014-10-09 21:25:50 ----A---- C:\Windows\system32\taskeng.exe
2014-10-09 21:25:50 ----A---- C:\Windows\system32\odbc32.dll
2014-10-09 21:25:49 ----A---- C:\Windows\system32\WSDApi.dll
2014-10-09 21:25:49 ----A---- C:\Windows\system32\user32.dll
2014-10-09 21:25:46 ----A---- C:\Windows\system32\umrdp.dll
2014-10-09 21:25:46 ----A---- C:\Windows\system32\drivers\tdx.sys
2014-10-09 21:25:46 ----A---- C:\Windows\system32\dhcpcore.dll
2014-10-09 21:25:46 ----A---- C:\Windows\system32\certmgr.dll
2014-10-09 21:25:45 ----A---- C:\Windows\SYSWOW64\certcli.dll
2014-10-09 21:25:45 ----A---- C:\Windows\system32\tsmf.dll
2014-10-09 21:25:45 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2014-10-09 21:25:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2014-10-09 21:25:44 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2014-10-09 21:25:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2014-10-09 21:25:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\wmicmiplugin.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\shlwapi.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\netshell.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\msdtctm.dll
2014-10-09 21:25:44 ----A---- C:\Windows\system32\framedynos.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\ws2_32.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\netcfgx.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\lsm.exe
2014-10-09 21:25:43 ----A---- C:\Windows\system32\drivers\csc.sys
2014-10-09 21:25:43 ----A---- C:\Windows\system32\comdlg32.dll
2014-10-09 21:25:43 ----A---- C:\Windows\system32\appmgr.dll
2014-10-09 21:25:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2014-10-09 21:25:42 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\wmpps.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\Query.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\drvstore.dll
2014-10-09 21:25:42 ----A---- C:\Windows\system32\apphelp.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2014-10-09 21:25:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\wpdshext.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\Vault.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\samsrv.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\QAGENT.DLL
2014-10-09 21:25:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2014-10-09 21:25:41 ----A---- C:\Windows\system32\cmd.exe
2014-10-09 21:25:41 ----A---- C:\Windows\system32\BFE.DLL
2014-10-09 21:25:41 ----A---- C:\Windows\system32\azroles.dll
2014-10-09 21:25:40 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2014-10-09 21:25:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-10-09 21:25:40 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2014-10-09 21:25:40 ----A---- C:\Windows\system32\rdpclip.exe
2014-10-09 21:25:40 ----A---- C:\Windows\system32\lpksetup.exe
2014-10-09 21:25:40 ----A---- C:\Windows\system32\cscsvc.dll
2014-10-09 21:25:39 ----A---- C:\Windows\SYSWOW64\Query.dll
2014-10-09 21:25:39 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2014-10-09 21:25:39 ----A---- C:\Windows\system32\sxs.dll
2014-10-09 21:25:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2014-10-09 21:25:38 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2014-10-09 21:25:38 ----A---- C:\Windows\SYSWOW64\upnp.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\Wldap32.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\taskcomp.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\pnidui.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\mfds.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\mcbuilder.exe
2014-10-09 21:25:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2014-10-09 21:25:38 ----A---- C:\Windows\system32\cscobj.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2014-10-09 21:25:37 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\webservices.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\spoolsv.exe
2014-10-09 21:25:37 ----A---- C:\Windows\system32\SessEnv.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\rdpendp.dll
2014-10-09 21:25:37 ----A---- C:\Windows\system32\hgprint.dll
2014-10-09 21:25:36 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2014-10-09 21:25:36 ----A---- C:\Windows\system32\sqlsrv32.dll
2014-10-09 21:25:36 ----A---- C:\Windows\system32\fveapi.dll
2014-10-09 21:25:36 ----A---- C:\Windows\system32\dot3api.dll
2014-10-09 21:25:35 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2014-10-09 21:25:35 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2014-10-09 21:25:35 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2014-10-09 21:25:35 ----A---- C:\Windows\system32\prncache.dll
2014-10-09 21:25:35 ----A---- C:\Windows\system32\mcmde.dll
2014-10-09 21:25:35 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-10-09 21:25:35 ----A---- C:\Windows\system32\drivers\msrpc.sys
2014-10-09 21:25:34 ----A---- C:\Windows\SYSWOW64\userenv.dll
2014-10-09 21:25:34 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\WMNetMgr.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\wlanpref.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\vpnike.dll
2014-10-09 21:25:34 ----A---- C:\Windows\system32\schtasks.exe
2014-10-09 21:25:33 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2014-10-09 21:25:33 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2014-10-09 21:25:33 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\userenv.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\photowiz.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\evr.dll
2014-10-09 21:25:33 ----A---- C:\Windows\system32\drivers\rdbss.sys
2014-10-09 21:25:33 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2014-10-09 21:25:32 ----A---- C:\Windows\system32\IPSECSVC.DLL
2014-10-09 21:25:32 ----A---- C:\Windows\system32\framedyn.dll
2014-10-09 21:25:32 ----A---- C:\Windows\system32\AudioSes.dll
2014-10-09 21:25:31 ----A---- C:\Windows\SYSWOW64\cmd.exe
2014-10-09 21:25:31 ----A---- C:\Windows\system32\wmpmde.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\WMPEncEn.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\wmpeffects.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\SyncCenter.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\sppobjs.dll
2014-10-09 21:25:31 ----A---- C:\Windows\system32\FXSSVC.exe
2014-10-09 21:25:31 ----A---- C:\Windows\system32\aepdu.dll
2014-10-09 21:25:30 ----A---- C:\Windows\system32\tscfgwmi.dll
2014-10-09 21:25:30 ----A---- C:\Windows\system32\srvsvc.dll
2014-10-09 21:25:30 ----A---- C:\Windows\system32\mfreadwrite.dll
2014-10-09 21:25:29 ----A---- C:\Windows\SYSWOW64\propsys.dll
2014-10-09 21:25:29 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2014-10-09 21:25:29 ----A---- C:\Windows\system32\vmicsvc.exe
2014-10-09 21:25:29 ----A---- C:\Windows\system32\shsvcs.dll
2014-10-09 21:25:29 ----A---- C:\Windows\system32\fde.dll
2014-10-09 21:25:29 ----A---- C:\Windows\system32\aeinv.dll
2014-10-09 21:25:28 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2014-10-09 21:25:28 ----A---- C:\Windows\SYSWOW64\mfds.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\WinSATAPI.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\stobject.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\localsec.dll
2014-10-09 21:25:28 ----A---- C:\Windows\system32\imapi2.dll
2014-10-09 21:25:27 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-10-09 21:25:27 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2014-10-09 21:25:27 ----A---- C:\Windows\system32\netdiagfx.dll
2014-10-09 21:25:27 ----A---- C:\Windows\system32\inetpp.dll
2014-10-09 21:25:27 ----A---- C:\Windows\system32\drivers\vmbus.sys
2014-10-09 21:25:27 ----A---- C:\Windows\system32\drivers\udfs.sys
2014-10-09 21:25:27 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-10-09 21:25:26 ----A---- C:\Windows\system32\netid.dll
2014-10-09 21:25:26 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2014-10-09 21:25:25 ----A---- C:\Windows\SYSWOW64\azroles.dll
2014-10-09 21:25:25 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\spp.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\QSHVHOST.DLL
2014-10-09 21:25:25 ----A---- C:\Windows\system32\cscui.dll
2014-10-09 21:25:25 ----A---- C:\Windows\system32\biocpl.dll
2014-10-09 21:25:24 ----A---- C:\Windows\system32\msinfo32.exe
2014-10-09 21:25:23 ----A---- C:\Windows\SYSWOW64\themeui.dll
2014-10-09 21:25:23 ----A---- C:\Windows\system32\scansetting.dll
2014-10-09 21:25:23 ----A---- C:\Windows\system32\printui.dll
2014-10-09 21:25:23 ----A---- C:\Windows\system32\mspbda.dll
2014-10-09 21:25:22 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2014-10-09 21:25:22 ----A---- C:\Windows\SYSWOW64\spp.dll
2014-10-09 21:25:22 ----A---- C:\Windows\system32\pla.dll
2014-10-09 21:25:22 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2014-10-09 21:25:22 ----A---- C:\Windows\splwow64.exe
2014-10-09 21:25:21 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2014-10-09 21:25:21 ----A---- C:\Windows\system32\wusa.exe
2014-10-09 21:25:21 ----A---- C:\Windows\system32\vds.exe
2014-10-09 21:25:21 ----A---- C:\Windows\system32\msdri.dll
2014-10-09 21:25:21 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2014-10-09 21:25:21 ----A---- C:\Windows\system32\aitagent.exe
2014-10-09 21:25:20 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2014-10-09 21:25:20 ----A---- C:\Windows\system32\wiaservc.dll
2014-10-09 21:25:20 ----A---- C:\Windows\system32\rpchttp.dll
2014-10-09 21:25:20 ----A---- C:\Windows\system32\drivers\pci.sys
2014-10-09 21:25:20 ----A---- C:\Windows\system32\AdmTmpl.dll
2014-10-09 21:25:19 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2014-10-09 21:25:19 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2014-10-09 21:25:19 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\XpsRasterService.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\wisptis.exe
2014-10-09 21:25:19 ----A---- C:\Windows\system32\PkgMgr.exe
2014-10-09 21:25:19 ----A---- C:\Windows\system32\mscms.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2014-10-09 21:25:19 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2014-10-09 21:25:18 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2014-10-09 21:25:18 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2014-10-09 21:25:18 ----A---- C:\Windows\SYSWOW64\evr.dll
2014-10-09 21:25:18 ----A---- C:\Windows\system32\sppwinob.dll
2014-10-09 21:25:18 ----A---- C:\Windows\system32\ocsetup.exe
2014-10-09 21:25:17 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2014-10-09 21:25:17 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2014-10-09 21:25:17 ----A---- C:\Windows\SYSWOW64\calc.exe
2014-10-09 21:25:17 ----A---- C:\Windows\system32\wpdbusenum.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\wcncsvc.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\upnp.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\Robocopy.exe
2014-10-09 21:25:17 ----A---- C:\Windows\system32\ocsetapi.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\mprapi.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\eapphost.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\eapp3hst.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\DXP.dll
2014-10-09 21:25:17 ----A---- C:\Windows\system32\drivers\volmgr.sys
2014-10-09 21:25:17 ----A---- C:\Windows\system32\drivers\msdsm.sys
2014-10-09 21:25:17 ----A---- C:\Windows\system32\ci.dll
2014-10-09 21:25:16 ----A---- C:\Windows\SYSWOW64\sxs.dll
2014-10-09 21:25:16 ----A---- C:\Windows\system32\thumbcache.dll
2014-10-09 21:25:16 ----A---- C:\Windows\system32\t2embed.dll
2014-10-09 21:25:16 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2014-10-09 21:25:15 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2014-10-09 21:25:15 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-10-09 21:25:15 ----A---- C:\Windows\SYSWOW64\netshell.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\scecli.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2014-10-09 21:25:15 ----A---- C:\Windows\system32\hal.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\DxpTaskSync.dll
2014-10-09 21:25:15 ----A---- C:\Windows\system32\dwmredir.dll
2014-10-09 21:25:14 ----A---- C:\Windows\SYSWOW64\prncache.dll
2014-10-09 21:25:14 ----A---- C:\Windows\SYSWOW64\printui.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\themeui.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\scrptadm.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\puiobj.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\onex.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\msasn1.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\iasrad.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2014-10-09 21:25:14 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2014-10-09 21:25:14 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2014-10-09 21:25:13 ----A---- C:\Windows\SYSWOW64\net1.exe
2014-10-09 21:25:13 ----A---- C:\Windows\system32\wdc.dll
2014-10-09 21:25:13 ----A---- C:\Windows\system32\scesrv.dll
2014-10-09 21:25:13 ----A---- C:\Windows\system32\rasmans.dll
2014-10-09 21:25:12 ----A---- C:\Windows\system32\wlangpui.dll
2014-10-09 21:25:12 ----A---- C:\Windows\system32\msftedit.dll
2014-10-09 21:25:10 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2014-10-09 21:25:10 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2014-10-09 21:25:10 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\wscapi.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\wiadefui.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\VAN.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\StructuredQuery.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\SndVol.exe
2014-10-09 21:25:10 ----A---- C:\Windows\system32\sdengin2.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\samcli.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\netcenter.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\iasacct.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\dskquoui.dll
2014-10-09 21:25:10 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\webservices.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\t2embed.dll

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 20:00
od tekier
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2014-10-09 21:25:09 ----A---- C:\Windows\SYSWOW64\fde.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\TabSvc.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\srchadmin.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\setupcl.exe
2014-10-09 21:25:09 ----A---- C:\Windows\system32\regapi.dll
2014-10-09 21:25:09 ----A---- C:\Windows\system32\QUTIL.DLL
2014-10-09 21:25:09 ----A---- C:\Windows\system32\drivers\termdd.sys
2014-10-09 21:25:09 ----A---- C:\Windows\system32\drivers\msahci.sys
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2014-10-09 21:25:08 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\tapisrv.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\netiohlp.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\msconfig.exe
2014-10-09 21:25:08 ----A---- C:\Windows\system32\mimefilt.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\ListSvc.dll
2014-10-09 21:25:08 ----A---- C:\Windows\system32\drivers\raspptp.sys
2014-10-09 21:25:08 ----A---- C:\Windows\system32\drivers\acpi.sys
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\pla.dll
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2014-10-09 21:25:07 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\lsmproxy.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\hgcpl.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\fdeploy.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2014-10-09 21:25:07 ----A---- C:\Windows\system32\drivers\ks.sys
2014-10-09 21:25:07 ----A---- C:\Windows\system32\clusapi.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\basecsp.dll
2014-10-09 21:25:07 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2014-10-09 21:25:06 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2014-10-09 21:25:06 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2014-10-09 21:25:06 ----A---- C:\Windows\system32\riched20.dll
2014-10-09 21:25:06 ----A---- C:\Windows\system32\mtxclu.dll
2014-10-09 21:25:06 ----A---- C:\Windows\system32\dnscmmc.dll
2014-10-09 21:25:05 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2014-10-09 21:25:05 ----A---- C:\Windows\SYSWOW64\onex.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\sharemediacpl.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\RpcRtRemote.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\powercpl.dll
2014-10-09 21:25:05 ----A---- C:\Windows\system32\logoncli.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2014-10-09 21:25:04 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2014-10-09 21:25:04 ----A---- C:\Windows\system32\themecpl.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\SensorsCpl.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\netjoin.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\nci.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\Narrator.exe
2014-10-09 21:25:04 ----A---- C:\Windows\system32\Faultrep.dll
2014-10-09 21:25:04 ----A---- C:\Windows\system32\eudcedit.exe
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\samcli.dll
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\proquota.exe
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\msutb.dll
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2014-10-09 21:25:03 ----A---- C:\Windows\SYSWOW64\autochk.exe
2014-10-09 21:25:03 ----A---- C:\Windows\system32\wkssvc.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\vpnikeapi.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\sppcomapi.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\cabview.dll
2014-10-09 21:25:03 ----A---- C:\Windows\system32\autochk.exe
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\regapi.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2014-10-09 21:25:02 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\shsetup.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\nshipsec.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\fms.dll
2014-10-09 21:25:02 ----A---- C:\Windows\system32\autofmt.exe
2014-10-09 21:25:02 ----A---- C:\Windows\system32\autoconv.exe
2014-10-09 21:25:02 ----A---- C:\Windows\system32\audiodg.exe
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2014-10-09 21:25:01 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\wwanconn.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\wpd_ci.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\wlanui.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\sdclt.exe
2014-10-09 21:25:01 ----A---- C:\Windows\system32\prntvpt.dll
2014-10-09 21:25:01 ----A---- C:\Windows\system32\drivers\winusb.sys
2014-10-09 21:25:01 ----A---- C:\Windows\system32\drivers\wanarp.sys
2014-10-09 21:25:01 ----A---- C:\Windows\system32\drivers\scsiport.sys
2014-10-09 21:25:01 ----A---- C:\Windows\system32\bcdsrv.dll
2014-10-09 21:25:00 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2014-10-09 21:25:00 ----A---- C:\Windows\SYSWOW64\netid.dll
2014-10-09 21:25:00 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\SmiEngine.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\mprddm.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\fontext.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2014-10-09 21:25:00 ----A---- C:\Windows\system32\dps.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\Display.dll
2014-10-09 21:25:00 ----A---- C:\Windows\system32\AxInstSv.dll
2014-10-09 21:24:59 ----A---- C:\Windows\SYSWOW64\wdc.dll
2014-10-09 21:24:59 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-10-09 21:24:59 ----A---- C:\Windows\system32\batmeter.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\Vault.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\untfs.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2014-10-09 21:24:58 ----A---- C:\Windows\SYSWOW64\nci.dll
2014-10-09 21:24:58 ----A---- C:\Windows\system32\wmpsrcwp.dll
2014-10-09 21:24:58 ----A---- C:\Windows\system32\mblctr.exe
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2014-10-09 21:24:57 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2014-10-09 21:24:57 ----A---- C:\Windows\system32\usercpl.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\rtutils.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\provsvc.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\DiagCpl.dll
2014-10-09 21:24:57 ----A---- C:\Windows\system32\bootres.dll
2014-10-09 21:24:56 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2014-10-09 21:24:56 ----A---- C:\Windows\system32\wpccpl.dll
2014-10-09 21:24:56 ----A---- C:\Windows\system32\sppsvc.exe
2014-10-09 21:24:56 ----A---- C:\Windows\system32\rasppp.dll
2014-10-09 21:24:56 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2014-10-09 21:24:55 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2014-10-09 21:24:55 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2014-10-09 21:24:55 ----A---- C:\Windows\SYSWOW64\Display.dll
2014-10-09 21:24:55 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-10-09 21:24:55 ----A---- C:\Windows\system32\dxdiagn.dll
2014-10-09 21:24:55 ----A---- C:\Windows\system32\drivers\winhv.sys
2014-10-09 21:24:55 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2014-10-09 21:24:55 ----A---- C:\Windows\system32\dot3cfg.dll
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\userinit.exe
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2014-10-09 21:24:54 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2014-10-09 21:24:54 ----A---- C:\Windows\system32\taskmgr.exe
2014-10-09 21:24:54 ----A---- C:\Windows\system32\prnfldr.dll
2014-10-09 21:24:54 ----A---- C:\Windows\system32\hbaapi.dll
2014-10-09 21:24:53 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2014-10-09 21:24:53 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2014-10-09 21:24:53 ----A---- C:\Windows\system32\proquota.exe
2014-10-09 21:24:53 ----A---- C:\Windows\system32\pdh.dll
2014-10-09 21:24:53 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2014-10-09 21:24:52 ----A---- C:\Windows\SYSWOW64\cabview.dll
2014-10-09 21:24:52 ----A---- C:\Windows\system32\untfs.dll
2014-10-09 21:24:52 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2014-10-09 21:24:51 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2014-10-09 21:24:51 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2014-10-09 21:24:51 ----A---- C:\Windows\system32\userinit.exe
2014-10-09 21:24:51 ----A---- C:\Windows\system32\accessibilitycpl.dll
2014-10-09 21:24:50 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2014-10-09 21:24:50 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2014-10-09 21:24:50 ----A---- C:\Windows\system32\zipfldr.dll
2014-10-09 21:24:50 ----A---- C:\Windows\system32\slui.exe
2014-10-09 21:24:50 ----A---- C:\Windows\system32\drivers\storvsc.sys
2014-10-09 21:24:50 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2014-10-09 21:24:49 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2014-10-09 21:24:49 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\scecli.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\mscms.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\localsec.dll
2014-10-09 21:24:48 ----A---- C:\Windows\SYSWOW64\fontext.dll
2014-10-09 21:24:48 ----A---- C:\Windows\system32\sud.dll
2014-10-09 21:24:48 ----A---- C:\Windows\system32\DeviceCenter.dll
2014-10-09 21:24:47 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2014-10-09 21:24:47 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2014-10-09 21:24:47 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\taskbarcpl.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\networkmap.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\dot3svc.dll
2014-10-09 21:24:47 ----A---- C:\Windows\system32\cryptui.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2014-10-09 21:24:46 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2014-10-09 21:24:46 ----A---- C:\Windows\system32\twext.dll
2014-10-09 21:24:46 ----A---- C:\Windows\system32\ActionCenter.dll
2014-10-09 21:24:45 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2014-10-09 21:24:45 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-10-09 21:24:45 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\uxlib.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\recovery.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\OobeFldr.dll
2014-10-09 21:24:45 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2014-10-09 21:24:45 ----A---- C:\Windows\system32\bcdedit.exe
2014-10-09 21:24:45 ----A---- C:\Windows\system32\azroleui.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2014-10-09 21:24:44 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\tzutil.exe
2014-10-09 21:24:44 ----A---- C:\Windows\system32\sisbkup.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\isoburn.exe
2014-10-09 21:24:44 ----A---- C:\Windows\system32\efscore.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\dsuiext.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\cca.dll
2014-10-09 21:24:44 ----A---- C:\Windows\system32\asycfilt.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2014-10-09 21:24:43 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\systemcpl.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\syncui.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\shwebsvc.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\sdcpl.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\recdisc.exe
2014-10-09 21:24:43 ----A---- C:\Windows\system32\netplwiz.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\httpapi.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\drivers\mpio.sys
2014-10-09 21:24:43 ----A---- C:\Windows\system32\certcli.dll
2014-10-09 21:24:43 ----A---- C:\Windows\system32\autoplay.dll
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\wusa.exe
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2014-10-09 21:24:42 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\wlanmsm.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\sysclass.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\sdrsvc.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\ncryptui.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\msvidc32.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2014-10-09 21:24:42 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2014-10-09 21:24:42 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\sud.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2014-10-09 21:24:41 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-10-09 21:24:41 ----A---- C:\Windows\system32\vdsutil.dll
2014-10-09 21:24:41 ----A---- C:\Windows\system32\spwizeng.dll
2014-10-09 21:24:41 ----A---- C:\Windows\system32\MFPlay.dll
2014-10-09 21:24:40 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2014-10-09 21:24:40 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2014-10-09 21:24:40 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\termmgr.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\sethc.exe
2014-10-09 21:24:40 ----A---- C:\Windows\system32\rstrui.exe
2014-10-09 21:24:40 ----A---- C:\Windows\system32\ReAgent.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\ntlanman.dll
2014-10-09 21:24:40 ----A---- C:\Windows\system32\msscp.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\ftp.exe
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\efscore.dll
2014-10-09 21:24:39 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\sqlcese30.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\rdpd3d.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\iprtrmgr.dll
2014-10-09 21:24:39 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\syncui.dll
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2014-10-09 21:24:38 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\ssText3d.scr
2014-10-09 21:24:38 ----A---- C:\Windows\system32\srvcli.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\slwga.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\iyuv_32.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\iTVData.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\drmmgrtn.dll
2014-10-09 21:24:38 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2014-10-09 21:24:37 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\wavemsp.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\ntprint.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\nslookup.exe
2014-10-09 21:24:37 ----A---- C:\Windows\system32\NAPHLPR.DLL
2014-10-09 21:24:37 ----A---- C:\Windows\system32\msiexec.exe
2014-10-09 21:24:37 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2014-10-09 21:24:37 ----A---- C:\Windows\system32\acppage.dll
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\sethc.exe
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\riched20.dll
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2014-10-09 21:24:36 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2014-10-09 21:24:36 ----A---- C:\Windows\system32\srrstr.dll
2014-10-09 21:24:36 ----A---- C:\Windows\system32\sppnp.dll
2014-10-09 21:24:36 ----A---- C:\Windows\system32\bcdboot.exe
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\migisol.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\fms.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\dpx.dll
2014-10-09 21:24:35 ----A---- C:\Windows\SYSWOW64\activeds.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\remotepg.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\networkexplorer.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\certprop.dll
2014-10-09 21:24:35 ----A---- C:\Windows\system32\cabinet.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2014-10-09 21:24:34 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2014-10-09 21:24:34 ----A---- C:\Windows\system32\wkscli.dll
2014-10-09 21:24:34 ----A---- C:\Windows\system32\WinSCard.dll
2014-10-09 21:24:34 ----A---- C:\Windows\system32\PresentationSettings.exe
2014-10-09 21:24:34 ----A---- C:\Windows\system32\ftp.exe
2014-10-09 21:24:34 ----A---- C:\Windows\system32\dfrgui.exe
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2014-10-09 21:24:33 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wvc.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wsqmcons.exe
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wsnmp32.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wmpdxm.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\wmdrmdev.dll
2014-10-09 21:24:33 ----A---- C:\Windows\system32\net1.exe
2014-10-09 21:24:33 ----A---- C:\Windows\system32\blackbox.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\wvc.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\mstask.dll
2014-10-09 21:24:32 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2014-10-09 21:24:32 ----A---- C:\Windows\system32\WerFaultSecure.exe
2014-10-09 21:24:32 ----A---- C:\Windows\system32\msyuv.dll
2014-10-09 21:24:32 ----A---- C:\Windows\system32\mfps.dll
2014-10-09 21:24:31 ----A---- C:\Windows\twain_32.dll
2014-10-09 21:24:31 ----A---- C:\Windows\SYSWOW64\twext.dll
2014-10-09 21:24:31 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2014-10-09 21:24:31 ----A---- C:\Windows\SYSWOW64\qcap.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\unimdmat.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\OpcServices.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\msrle32.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\mapistub.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\mapi32.dll
2014-10-09 21:24:31 ----A---- C:\Windows\system32\Bubbles.scr
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\slwga.dll
2014-10-09 21:24:30 ----A---- C:\Windows\SYSWOW64\qasf.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\tsbyuv.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\seclogon.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\Ribbons.scr
2014-10-09 21:24:30 ----A---- C:\Windows\system32\Mystify.scr
2014-10-09 21:24:30 ----A---- C:\Windows\system32\iscsium.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\ifsutil.dll
2014-10-09 21:24:30 ----A---- C:\Windows\system32\diskraid.exe
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-10-09 21:24:29 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\wmpshell.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2014-10-09 21:24:29 ----A---- C:\Windows\system32\rdpencom.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\perfmon.exe
2014-10-09 21:24:29 ----A---- C:\Windows\system32\muifontsetup.dll
2014-10-09 21:24:29 ----A---- C:\Windows\system32\drivers\umbus.sys
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\msscp.dll
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2014-10-09 21:24:28 ----A---- C:\Windows\SYSWOW64\acppage.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\umb.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\tlscsp.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\runonce.exe
2014-10-09 21:24:28 ----A---- C:\Windows\system32\qasf.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\netutils.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2014-10-09 21:24:28 ----A---- C:\Windows\system32\FXSAPI.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\dbghelp.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\AzSqlExt.dll
2014-10-09 21:24:28 ----A---- C:\Windows\system32\ActionQueue.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\raschap.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\input.dll
2014-10-09 21:24:27 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\wpdwcn.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\WMADMOD.DLL
2014-10-09 21:24:27 ----A---- C:\Windows\system32\wiavideo.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\syssetup.dll
2014-10-09 21:24:27 ----A---- C:\Windows\system32\raschap.dll
2014-10-09 21:24:27 ----A---- C:\Windows\bfsvc.exe
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2014-10-09 21:24:26 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2014-10-09 21:24:26 ----A---- C:\Windows\system32\WMVSDECD.DLL
2014-10-09 21:24:26 ----A---- C:\Windows\system32\vdsbas.dll
2014-10-09 21:24:26 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2014-10-09 21:24:26 ----A---- C:\Windows\system32\MdSched.exe
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\runonce.exe
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\onexui.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\logagent.exe
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2014-10-09 21:24:25 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2014-10-09 21:24:25 ----A---- C:\Windows\system32\nltest.exe
2014-10-09 21:24:25 ----A---- C:\Windows\system32\mstask.dll
2014-10-09 21:24:25 ----A---- C:\Windows\system32\Mcx2Svc.dll
2014-10-09 21:24:25 ----A---- C:\Windows\system32\drivers\rmcast.sys
2014-10-09 21:24:25 ----A---- C:\Windows\system32\bitsadmin.exe
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2014-10-09 21:24:24 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2014-10-09 21:24:24 ----A---- C:\Windows\system32\vss_ps.dll
2014-10-09 21:24:24 ----A---- C:\Windows\system32\tabcal.exe
2014-10-09 21:24:24 ----A---- C:\Windows\system32\shacct.dll
2014-10-09 21:24:24 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2014-10-09 21:24:24 ----A---- C:\Windows\system32\cscapi.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\shacct.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2014-10-09 21:24:23 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2014-10-09 21:24:23 ----A---- C:\Windows\system32\WPDSp.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2014-10-09 21:24:23 ----A---- C:\Windows\system32\wmdrmnet.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\qcap.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\msnetobj.dll
2014-10-09 21:24:23 ----A---- C:\Windows\system32\logman.exe
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\pdh.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\logman.exe
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2014-10-09 21:24:22 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2014-10-09 21:24:22 ----A---- C:\Windows\system32\vmictimeprovider.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\spbcd.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\qdv.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2014-10-09 21:24:22 ----A---- C:\Windows\system32\CscMig.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\utildll.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2014-10-09 21:24:21 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2014-10-09 21:24:21 ----A---- C:\Windows\system32\takeown.exe
2014-10-09 21:24:21 ----A---- C:\Windows\system32\PnPUnattend.exe
2014-10-09 21:24:21 ----A---- C:\Windows\system32\fphc.dll
2014-10-09 21:24:21 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2014-10-09 21:24:21 ----A---- C:\Windows\system32\dot3ui.dll
2014-10-09 21:24:21 ----A---- C:\Windows\system32\amstream.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\takeown.exe
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\qdv.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\fphc.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2014-10-09 21:24:20 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\vfwwdm32.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\shimgvw.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\QCLIPROV.DLL
2014-10-09 21:24:20 ----A---- C:\Windows\system32\nrpsrv.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\EhStorAPI.dll
2014-10-09 21:24:20 ----A---- C:\Windows\system32\djoin.exe
2014-10-09 21:24:20 ----A---- C:\Windows\system32\cmstp.exe
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2014-10-09 21:24:19 ----A---- C:\Windows\SYSWOW64\cca.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\WavDest.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\iasrecst.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\fdProxy.dll
2014-10-09 21:24:19 ----A---- C:\Windows\system32\drivers\pacer.sys
2014-10-09 21:24:19 ----A---- C:\Windows\system32\CertPolEng.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2014-10-09 21:24:18 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2014-10-09 21:24:18 ----A---- C:\Windows\system32\sscore.dll
2014-10-09 21:24:18 ----A---- C:\Windows\system32\relog.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\mydocs.dll
2014-10-09 21:24:18 ----A---- C:\Windows\system32\MultiDigiMon.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\mobsync.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\KMSVC.DLL
2014-10-09 21:24:18 ----A---- C:\Windows\system32\iscsicli.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\diskpart.exe
2014-10-09 21:24:18 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\resutils.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\relog.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\itircl.dll
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2014-10-09 21:24:17 ----A---- C:\Windows\SYSWOW64\amstream.dll
2014-10-09 21:24:17 ----A---- C:\Windows\system32\msdmo.dll
2014-10-09 21:24:17 ----A---- C:\Windows\system32\itircl.dll
2014-10-09 21:24:17 ----A---- C:\Windows\system32\dot3msm.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\findstr.exe
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2014-10-09 21:24:16 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\sppc.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\qprocess.exe
2014-10-09 21:24:16 ----A---- C:\Windows\system32\onexui.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\mciqtz32.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\luainstall.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\choice.exe
2014-10-09 21:24:16 ----A---- C:\Windows\system32\FXSTIFF.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\findstr.exe
2014-10-09 21:24:16 ----A---- C:\Windows\system32\eappgnui.dll
2014-10-09 21:24:16 ----A---- C:\Windows\system32\drivers\tunnel.sys
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\sppc.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\spopk.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\netutils.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2014-10-09 21:24:15 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\spopk.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\schedcli.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\repair-bde.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\qappsrv.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\manage-bde.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\inetmib1.dll
2014-10-09 21:24:15 ----A---- C:\Windows\system32\chglogon.exe
2014-10-09 21:24:15 ----A---- C:\Windows\system32\drivers\dfsc.sys
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2014-10-09 21:24:14 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\vmstorfltres.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\vmicres.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\vmbusres.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\tskill.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\tsdiscon.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\tscon.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\shadow.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\rwinsta.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\RDPENCDD.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\profprov.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\odbcconf.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\logoff.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\chgusr.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\chgport.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\FXSMON.dll
2014-10-09 21:24:14 ----A---- C:\Windows\system32\fixmapi.exe
2014-10-09 21:24:14 ----A---- C:\Windows\system32\elsTrans.dll
2014-10-09 21:24:13 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2014-10-09 21:24:13 ----A---- C:\Windows\SYSWOW64\perfts.dll
2014-10-09 21:24:13 ----A---- C:\Windows\SYSWOW64\imm32.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\wshbth.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\UIRibbonRes.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\TRAPI.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\reset.exe
2014-10-09 21:24:13 ----A---- C:\Windows\system32\LogonUI.exe
2014-10-09 21:24:13 ----A---- C:\Windows\system32\dsauth.dll
2014-10-09 21:24:13 ----A---- C:\Windows\system32\drivers\tdi.sys
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2014-10-09 21:24:12 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\query.exe
2014-10-09 21:24:12 ----A---- C:\Windows\system32\napdsnap.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\change.exe
2014-10-09 21:24:12 ----A---- C:\Windows\system32\FXSUNATD.exe
2014-10-09 21:24:12 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2014-10-09 21:24:12 ----A---- C:\Windows\system32\cscdll.dll
2014-10-09 21:24:12 ----A---- C:\Windows\system32\bitsperf.dll
2014-10-09 21:24:11 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2014-10-09 21:24:11 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2014-10-09 21:24:11 ----A---- C:\Windows\system32\wsdchngr.dll
2014-10-09 21:24:11 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2014-10-09 21:24:09 ----A---- C:\Windows\SYSWOW64\sscore.dll
2014-10-09 21:24:09 ----A---- C:\Windows\system32\shgina.dll
2014-10-09 21:24:08 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2014-10-09 21:24:08 ----A---- C:\Windows\SYSWOW64\shgina.dll
2014-10-09 21:24:08 ----A---- C:\Windows\SYSWOW64\riched32.dll
2014-10-09 21:24:08 ----A---- C:\Windows\system32\wshirda.dll
2014-10-09 21:24:08 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2014-10-09 21:24:08 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2014-10-09 21:24:07 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2014-10-09 21:24:07 ----A---- C:\Windows\system32\riched32.dll
2014-10-09 21:24:07 ----A---- C:\Windows\system32\rdpcfgex.dll
2014-10-09 21:24:07 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2014-10-09 21:24:07 ----A---- C:\Windows\system32\drivers\hidusb.sys
2014-10-09 21:24:07 ----A---- C:\Windows\system32\drivers\appid.sys
2014-10-09 21:24:06 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2014-10-09 21:24:06 ----A---- C:\Windows\SYSWOW64\browseui.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\VmdCoinstall.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\vmbuspipe.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\spwmp.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\IcCoinstall.dll
2014-10-09 21:24:06 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-10-09 21:24:06 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2014-10-09 21:24:06 ----A---- C:\Windows\system32\drivers\cdrom.sys
2014-10-09 21:24:06 ----A---- C:\Windows\system32\C_ISCII.DLL
2014-10-09 21:24:06 ----A---- C:\Windows\system32\browseui.dll
2014-10-09 21:24:05 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2014-10-09 21:24:05 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\shunimpl.dll
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDTUF.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDSF.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDPO.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDINTAM.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\KBDINBEN.DLL
2014-10-09 21:24:05 ----A---- C:\Windows\system32\dxmasf.dll
2014-10-09 21:24:05 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2014-10-09 21:24:05 ----A---- C:\Windows\system32\drivers\scfilter.sys
2014-10-09 21:24:05 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-10-09 21:24:04 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDTUQ.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDSG.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDNEPR.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\kbdlk41a.dll
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDGR1.DLL
2014-10-09 21:24:04 ----A---- C:\Windows\system32\KBDGKL.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDUS.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDTURME.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDMON.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDMAORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDLT1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDINTEL.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDINORI.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDINMAR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDGEO.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDCZ1.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDBULG.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDBLR.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-10-09 21:24:03 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2014-10-09 21:24:02 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2014-10-09 21:24:02 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\spwizres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\pifmgr.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\nlsbres.dll
2014-10-09 21:24:02 ----A---- C:\Windows\system32\KBDINKAN.DLL
2014-10-09 21:24:02 ----A---- C:\Windows\system32\KBDINHIN.DLL
2014-10-09 21:24:02 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2014-10-09 21:24:02 ----A---- C:\Windows\system32\BlbEvents.dll
2014-10-09 21:23:51 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2014-10-09 21:23:51 ----A---- C:\Windows\system32\dpx.dll
2014-10-09 21:23:38 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2014-10-09 21:23:35 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2014-10-09 21:22:54 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2014-10-09 21:16:46 ----A---- C:\Windows\system32\wbemcomn.dll
2014-10-09 21:16:19 ----A---- C:\Windows\system32\sqmapi.dll
2014-10-09 21:12:26 ----A---- C:\Windows\system32\fsquirt.exe
2014-10-09 21:12:26 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2014-10-09 21:12:26 ----A---- C:\Windows\system32\drivers\bthport.sys
2014-10-09 21:11:35 ----A---- C:\Windows\system32\esent.dll
2014-10-09 21:11:34 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2014-10-09 21:11:34 ----A---- C:\Windows\SYSWOW64\esent.dll
2014-10-09 21:11:34 ----A---- C:\Windows\system32\fsutil.exe
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\nvstor.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\nvraid.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\amdxata.sys
2014-10-09 21:11:34 ----A---- C:\Windows\system32\drivers\amdsata.sys
2014-10-08 23:24:09 ----D---- C:\Users\Tekier\AppData\Roaming\DropboxMaster
2014-10-08 23:22:44 ----D---- C:\Users\Tekier\AppData\Roaming\Dropbox
2014-09-27 14:03:25 ----D---- C:\Users\Tekier\AppData\Roaming\FileZilla

======List of files/folders modified in the last 1 month======

2014-10-25 20:58:02 ----D---- C:\Windows\Temp
2014-10-25 20:54:11 ----D---- C:\Windows\Tasks
2014-10-25 19:30:32 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-10-25 19:29:56 ----SHD---- C:\Windows\Installer
2014-10-25 19:29:55 ----D---- C:\Windows\SysWOW64
2014-10-25 19:29:43 ----D---- C:\Users\Tekier\AppData\Roaming\Adobe
2014-10-25 19:29:43 ----D---- C:\ProgramData\Adobe
2014-10-25 19:29:40 ----D---- C:\Program Files (x86)\Common Files
2014-10-25 19:29:40 ----D---- C:\Program Files (x86)\Adobe
2014-10-25 19:29:36 ----SHD---- C:\System Volume Information
2014-10-25 19:23:47 ----D---- C:\Windows\System32
2014-10-25 19:23:46 ----RD---- C:\Program Files (x86)
2014-10-25 19:23:37 ----D---- C:\ProgramData
2014-10-25 19:22:20 ----D---- C:\Program Files (x86)\FileZilla FTP Client
2014-10-25 19:15:15 ----D---- C:\Windows\Prefetch
2014-10-25 19:11:32 ----D---- C:\Windows\system32\config
2014-10-25 17:28:27 ----D---- C:\Windows\inf
2014-10-25 16:04:47 ----D---- C:\Users\Tekier\AppData\Roaming\inkscape
2014-10-25 16:00:25 ----SD---- C:\Users\Tekier\AppData\Roaming\Microsoft
2014-10-25 15:48:57 ----D---- C:\Program Files\Civilization IV
2014-10-25 15:36:31 ----D---- C:\Users\Tekier\AppData\Roaming\DAEMON Tools Lite
2014-10-25 14:46:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-10-25 14:41:04 ----D---- C:\Windows
2014-10-25 14:40:12 ----D---- C:\Windows\SYSWOW64\drivers
2014-10-25 14:23:55 ----D---- C:\Program Files
2014-10-25 12:45:04 ----D---- C:\Windows\Panther
2014-10-25 12:45:04 ----D---- C:\Windows\Logs
2014-10-25 12:45:04 ----D---- C:\Windows\debug
2014-10-25 12:27:22 ----D---- C:\Windows\system32\drivers
2014-10-25 12:21:50 ----A---- C:\Windows\system.ini
2014-10-25 12:21:40 ----D---- C:\Windows\system32\drivers\etc
2014-10-25 12:16:15 ----D---- C:\Windows\AppPatch
2014-10-25 10:06:50 ----SD---- C:\ProgramData\Microsoft
2014-10-25 09:50:08 ----D---- C:\Windows\Downloaded Program Files
2014-10-25 09:18:43 ----D---- C:\Windows\winsxs
2014-10-25 09:14:56 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-10-25 09:06:06 ----D---- C:\Windows\Microsoft.NET
2014-10-25 09:05:36 ----RSD---- C:\Windows\assembly
2014-10-25 08:50:08 ----D---- C:\Windows\system32\catroot2
2014-10-25 08:45:47 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-10-25 08:45:47 ----D---- C:\Windows\system32\cs-CZ
2014-10-25 08:45:47 ----D---- C:\Windows\ehome
2014-10-25 08:45:47 ----D---- C:\Program Files\Windows Media Player
2014-10-25 08:45:47 ----D---- C:\Program Files (x86)\Windows Media Player
2014-10-25 08:45:45 ----D---- C:\Program Files\Internet Explorer
2014-10-25 08:45:45 ----D---- C:\Program Files (x86)\Internet Explorer
2014-10-25 08:45:43 ----D---- C:\Windows\SYSWOW64\migration
2014-10-25 08:45:43 ----D---- C:\Windows\SYSWOW64\en-US
2014-10-25 08:45:42 ----D---- C:\Windows\system32\migration
2014-10-25 08:45:42 ----D---- C:\Windows\system32\en-US
2014-10-25 08:45:42 ----D---- C:\Windows\PolicyDefinitions
2014-10-25 08:45:41 ----D---- C:\Windows\SYSWOW64\wbem
2014-10-25 08:45:41 ----D---- C:\Program Files\Windows Journal
2014-10-25 08:45:40 ----D---- C:\Windows\system32\wbem
2014-10-25 08:45:40 ----D---- C:\Windows\system32\drivers\en-US
2014-10-25 08:45:27 ----D---- C:\Windows\SYSWOW64\Dism
2014-10-25 08:45:27 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-10-25 08:45:27 ----D---- C:\Windows\system32\Dism
2014-10-25 08:45:25 ----RSD---- C:\Windows\Fonts
2014-10-25 08:45:24 ----D---- C:\Program Files\Windows Defender
2014-10-25 08:45:24 ----D---- C:\Program Files (x86)\Windows Defender
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\zh-TW
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\zh-HK
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\zh-CN
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\tr-TR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\sv-SE
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\ru-RU
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\pl-PL
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\nl-NL
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\nb-NO
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\ko-KR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\ja-JP
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\it-IT
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\hu-HU
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\fr-FR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\fi-FI
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\es-ES
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\el-GR
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\de-DE
2014-10-25 08:45:09 ----D---- C:\Windows\SYSWOW64\da-DK
2014-10-25 08:45:07 ----D---- C:\Windows\system32\zh-TW
2014-10-25 08:45:07 ----D---- C:\Windows\system32\zh-HK
2014-10-25 08:45:07 ----D---- C:\Windows\system32\zh-CN
2014-10-25 08:45:07 ----D---- C:\Windows\system32\tr-TR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\sv-SE
2014-10-25 08:45:07 ----D---- C:\Windows\system32\ru-RU
2014-10-25 08:45:07 ----D---- C:\Windows\system32\pt-PT
2014-10-25 08:45:07 ----D---- C:\Windows\system32\pt-BR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\pl-PL
2014-10-25 08:45:07 ----D---- C:\Windows\system32\nl-NL
2014-10-25 08:45:07 ----D---- C:\Windows\system32\nb-NO
2014-10-25 08:45:07 ----D---- C:\Windows\system32\ko-KR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\ja-JP
2014-10-25 08:45:07 ----D---- C:\Windows\system32\it-IT
2014-10-25 08:45:07 ----D---- C:\Windows\system32\hu-HU
2014-10-25 08:45:07 ----D---- C:\Windows\system32\fr-FR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\fi-FI
2014-10-25 08:45:07 ----D---- C:\Windows\system32\es-ES
2014-10-25 08:45:07 ----D---- C:\Windows\system32\el-GR
2014-10-25 08:45:07 ----D---- C:\Windows\system32\de-DE
2014-10-25 08:45:07 ----D---- C:\Windows\system32\da-DK
2014-10-25 08:30:59 ----D---- C:\Windows\system32\DriverStore
2014-10-24 23:34:29 ----D---- C:\Windows\system32\catroot
2014-10-24 23:23:48 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-10-24 21:57:35 ----D---- C:\ProgramData\Microsoft Help
2014-10-24 21:57:33 ----D---- C:\Program Files (x86)\Microsoft Works
2014-10-24 21:51:53 ----A---- C:\Windows\win.ini
2014-10-23 19:32:40 ----D---- C:\Windows\system32\wdi
2014-10-22 20:44:23 ----D---- C:\Windows\system32\Tasks
2014-10-21 19:06:07 ----D---- C:\Program Files\NetBeans 8.0
2014-10-15 19:38:17 ----D---- C:\Program Files (x86)\Opera
2014-10-12 21:48:27 ----D---- C:\Users\Tekier\AppData\Roaming\Skype
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Sidebar
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Portable Devices
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Photo Viewer
2014-10-11 09:25:09 ----D---- C:\Program Files\Windows Mail
2014-10-11 09:25:09 ----D---- C:\Program Files\DVD Maker
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-10-11 09:25:09 ----D---- C:\Program Files (x86)\Windows Mail
2014-10-11 09:25:08 ----D---- C:\Windows\servicing
2014-10-11 09:25:08 ----D---- C:\Program Files\Common Files\System
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\Setup
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\oobe
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\cs
2014-10-11 09:25:06 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-10-11 09:25:05 ----D---- C:\Windows\SYSWOW64\sppui
2014-10-11 09:25:05 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-10-11 09:25:02 ----D---- C:\Windows\SYSWOW64\migwiz
2014-10-11 09:24:57 ----D---- C:\Windows\system32\oobe
2014-10-11 09:24:55 ----D---- C:\Windows\system32\Setup
2014-10-11 09:24:55 ----D---- C:\Windows\system32\cs
2014-10-11 09:24:55 ----D---- C:\Windows\system32\AdvancedInstallers
2014-10-11 09:24:49 ----D---- C:\Windows\system32\sppui
2014-10-11 09:24:49 ----D---- C:\Windows\system32\migwiz
2014-10-11 09:24:49 ----D---- C:\Windows\system32\manifeststore
2014-10-11 09:24:30 ----D---- C:\Windows\system32\Boot
2014-10-11 09:21:29 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-10-11 09:21:29 ----A---- C:\Windows\system32\msclmd.dll
2014-10-11 09:10:44 ----D---- C:\Program Files\Microsoft Silverlight
2014-10-11 09:10:41 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-10-09 20:48:32 ----D---- C:\Users\Tekier\AppData\Roaming\Azureus
2014-10-09 20:47:38 ----D---- C:\Windows\ModemLogs
2014-10-02 15:53:02 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-03-27 19224]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-07-06 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2012-04-20 97880]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2013-03-27 170200]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys [2014-07-05 5443688]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2012-05-21 111104]
R3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-12-04 598808]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-05-02 184144]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\DRIVERS\btwavdt.sys [2012-03-06 210984]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-17 39976]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-06 21544]
R3 IBMPMDRV;IBMPMDRV; C:\Windows\system32\DRIVERS\ibmpmdrv.sys [2014-02-27 57144]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-06-27 5361920]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-05-14 3413320]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2012-12-27 342528]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-03-27 356632]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-03-27 789272]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-07-17 62784]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-10-25 769168]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-03-29 44272]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2013-06-11 1509112]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-03-29 448240]
S1 SpyEmrg;Amiti Antivirus Driver; C:\Windows\System32\Drivers\spyemrg.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys []
S3 huawei_cdcacm;huawei_cdcacm; C:\Windows\system32\DRIVERS\ew_jucdcacm.sys []
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\Windows\system32\DRIVERS\ew_juextctrl.sys []
S3 huawei_wwanecm;huawei_wwanecm; C:\Windows\system32\DRIVERS\ew_juwwanecm.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 Apache2.2-Zend;Apache2.2-Zend; C:\Program Files (x86)\Zend\Apache2\bin\httpd.exe [2014-06-30 21416]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-06-18 1095616]
R2 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2012-06-18 1333184]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-06-18 1124288]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2013-05-21 1006384]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 IBMPMSVC;Lenovo PM Service; C:\Windows\system32\ibmpmsvc.exe [2014-02-27 68440]
R2 MySQL_ZendServer55;MySQL_ZendServer55; C:\Program Files (x86)\Zend\MySQL55\bin\mysqld --defaults-file=C:\Program Files (x86)\Zend\MySQL55\my.ini MySQL_ZendServer55 []
R2 TPHKLOAD;Lenovo Hotkey Client Loader; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [2014-06-10 124400]
R2 TPHKSVC;On Screen Display; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [2014-04-01 126512]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-05 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-25 267440]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-08-27 279024]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-05 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-10-24 111616]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-07-04 1255736]
S4 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2014-04-07 110128]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 20:58
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 25 říj 2014 22:16
od tekier
vše až na funkčnost Amiti.. zkoušel jsem i stáhnout z jiných zdrojů.. nevím s čím může mít problém.. máte případně nějaké jiné doporučení na nějaký funkční antivirový program, který nezaseká počítač?

Amiti: instalace bez problémů, naběhnutí programu bez problémů (nebo to nic nehlásí), otevření hlavního okna programu = zamrzaní, nebo totální spadnutí programu

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 26 říj 2014 11:04
od Rudy
Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 26 říj 2014 19:25
od tekier
ComboFix 14-10-27.01 - Tekier 26.10.2014 19:17:53.2.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3710.2450 [GMT 1:00]
Spuštěný z: c:\users\Tekier\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-09-26 do 2014-10-26 )))))))))))))))))))))))))))))))
.
.
2014-10-26 18:23 . 2014-10-26 18:23 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-10-25 21:42 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2014-10-25 21:42 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2014-10-25 21:25 . 2014-10-25 21:25 -------- d-----w- c:\users\Tekier\AppData\Roaming\Amiti Antivirus
2014-10-25 21:25 . 2013-05-23 15:41 16576 ----a-w- c:\windows\SysWow64\drivers\amitiav_guard.sys
2014-10-25 21:25 . 2014-10-25 21:25 -------- d-----w- c:\programdata\NETGATE
2014-10-25 21:17 . 2014-06-24 03:29 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2014-10-25 21:17 . 2014-06-24 02:59 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2014-10-25 21:17 . 2014-08-29 02:07 3179520 ----a-w- c:\windows\system32\rdpcorets.dll
2014-10-25 21:17 . 2014-05-08 09:32 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-10-25 21:17 . 2014-09-05 01:52 5703168 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-10-25 21:17 . 2014-09-05 02:11 6584320 ----a-w- c:\windows\system32\mstscax.dll
2014-10-25 21:17 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2014-10-25 21:17 . 2013-11-22 22:48 3928064 ----a-w- c:\windows\system32\d2d1.dll
2014-10-25 21:16 . 2014-09-19 01:18 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-10-25 21:16 . 2014-02-04 02:32 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-10-25 21:16 . 2014-02-04 02:04 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-10-25 21:16 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2014-10-25 21:16 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2014-10-25 21:09 . 2014-10-25 21:09 -------- d-----w- c:\program files (x86)\NETGATE
2014-10-25 17:29 . 2014-10-25 17:29 -------- d-----w- c:\windows\SysWow64\Adobe
2014-10-25 17:29 . 2014-10-25 17:29 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2014-10-25 17:23 . 2014-10-25 17:23 -------- d-----w- c:\windows\system32\appmgmt
2014-10-25 17:23 . 2014-10-25 17:23 -------- d-----w- c:\programdata\Skype
2014-10-25 17:15 . 2014-10-25 17:36 -------- d-----w- c:\program files (x86)\FileHippo.com
2014-10-25 14:00 . 2014-10-25 14:00 -------- d-----w- c:\program files (x86)\eTesty
2014-10-25 12:23 . 2014-10-25 18:58 -------- d-----w- c:\program files\trend micro
2014-10-25 12:04 . 2014-10-25 12:04 -------- d-----w- c:\windows\Sun
2014-10-25 12:03 . 2014-10-25 12:03 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-10-25 12:02 . 2014-10-25 12:02 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-10-25 12:02 . 2014-10-25 12:02 -------- d-----w- c:\programdata\Oracle
2014-10-25 12:02 . 2014-10-25 12:02 -------- d-----w- c:\program files (x86)\Java
2014-10-25 12:01 . 2014-10-25 17:24 -------- d-----w- c:\users\Tekier\AppData\Local\CrashDumps
2014-10-25 12:01 . 2014-10-25 12:01 -------- d-----w- c:\users\Tekier\AppData\Roaming\AC3Filter
2014-10-25 08:43 . 2014-10-25 08:43 37624 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2014-10-25 07:48 . 2014-10-25 07:48 -------- d-sh--w- c:\users\Tekier\AppData\Local\EmieUserList
2014-10-25 07:48 . 2014-10-25 07:48 -------- d-sh--w- c:\users\Tekier\AppData\Local\EmieSiteList
2014-10-24 21:35 . 2014-10-14 19:59 11627712 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C2748B1-48A7-438C-984B-8651D9BB71DF}\mpengine.dll
2014-10-24 21:33 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-10-24 21:33 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2014-10-24 21:33 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-10-24 21:33 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-10-24 21:33 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-10-24 21:21 . 2014-10-24 21:21 -------- d-----w- c:\windows\Migration
2014-10-24 21:16 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2014-10-24 21:08 . 2014-10-24 21:08 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-10-24 20:52 . 2013-10-02 01:10 44544 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll
2014-10-24 20:25 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2014-10-24 20:17 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-10-24 20:17 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-10-24 20:17 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-10-24 20:17 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-10-24 19:37 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2014-10-24 19:37 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2014-10-24 19:37 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2014-10-24 19:37 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2014-10-24 19:37 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2014-10-24 19:37 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2014-10-24 19:37 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2014-10-24 19:18 . 2014-10-24 19:22 -------- d-----w- c:\windows\system32\MRT
2014-10-24 19:15 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2014-10-24 19:15 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2014-10-24 19:15 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2014-10-24 19:15 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2014-10-24 19:15 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2014-10-24 19:15 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2014-10-24 19:15 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2014-10-24 19:15 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2014-10-24 19:14 . 2014-04-12 02:22 95680 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2014-10-24 19:14 . 2014-04-12 02:22 155072 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2014-10-24 19:14 . 2014-04-12 02:19 29184 ----a-w- c:\windows\system32\sspisrv.dll
2014-10-24 19:14 . 2014-04-12 02:19 136192 ----a-w- c:\windows\system32\sspicli.dll
2014-10-24 19:14 . 2014-04-12 02:19 28160 ----a-w- c:\windows\system32\secur32.dll
2014-10-24 19:14 . 2014-04-12 02:19 31232 ----a-w- c:\windows\system32\lsass.exe
2014-10-24 19:14 . 2013-07-04 12:18 458712 ----a-w- c:\windows\system32\drivers\cng.sys
2014-10-24 19:12 . 2014-03-04 09:44 362496 ----a-w- c:\windows\system32\wow64win.dll
2014-10-24 19:11 . 2012-01-04 10:44 509952 ----a-w- c:\windows\system32\ntshrui.dll
2014-10-24 19:10 . 2013-12-04 02:27 485888 ----a-w- c:\windows\system32\secproc_isv.dll
2014-10-24 19:09 . 2013-04-25 23:30 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2014-10-24 19:08 . 2013-10-05 20:25 1474048 ----a-w- c:\windows\system32\crypt32.dll
2014-10-24 19:07 . 2013-05-10 05:49 30720 ----a-w- c:\windows\system32\cryptdlg.dll
2014-10-24 19:06 . 2014-01-29 02:32 484864 ----a-w- c:\windows\system32\wer.dll
2014-10-24 19:05 . 2014-09-25 01:40 519680 ----a-w- c:\windows\SysWow64\qdvd.dll
2014-10-24 18:47 . 2013-10-12 02:30 830464 ----a-w- c:\windows\system32\nshwfp.dll
2014-10-24 18:47 . 2013-10-12 02:29 859648 ----a-w- c:\windows\system32\IKEEXT.DLL
2014-10-24 18:47 . 2013-10-12 02:29 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2014-10-24 18:47 . 2013-10-12 02:03 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll
2014-10-24 18:47 . 2013-10-12 02:01 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL
2014-10-24 18:46 . 2014-07-14 02:02 1216000 ----a-w- c:\windows\system32\rpcrt4.dll
2014-10-24 18:46 . 2014-07-14 01:40 664064 ----a-w- c:\windows\SysWow64\rpcrt4.dll
2014-10-24 18:46 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2014-10-22 18:44 . 2014-10-25 10:44 -------- d-----w- c:\program files\CCleaner
2014-10-11 10:55 . 2014-05-14 16:23 44512 ----a-w- c:\windows\system32\wups2.dll
2014-10-11 10:55 . 2014-05-14 16:23 58336 ----a-w- c:\windows\system32\wuauclt.exe
2014-10-11 10:55 . 2014-05-14 16:23 2477536 ----a-w- c:\windows\system32\wuaueng.dll
2014-10-11 10:55 . 2014-05-14 16:21 2620928 ----a-w- c:\windows\system32\wucltux.dll
2014-10-11 10:55 . 2014-05-14 16:23 38880 ----a-w- c:\windows\system32\wups.dll
2014-10-11 10:55 . 2014-05-14 16:23 36320 ----a-w- c:\windows\SysWow64\wups.dll
2014-10-11 10:55 . 2014-05-14 16:23 700384 ----a-w- c:\windows\system32\wuapi.dll
2014-10-11 10:55 . 2014-05-14 16:23 581600 ----a-w- c:\windows\SysWow64\wuapi.dll
2014-10-11 10:55 . 2014-05-14 16:20 97792 ----a-w- c:\windows\system32\wudriver.dll
2014-10-11 10:55 . 2014-05-14 16:17 92672 ----a-w- c:\windows\SysWow64\wudriver.dll
2014-10-11 10:54 . 2014-05-14 07:23 198600 ----a-w- c:\windows\system32\wuwebv.dll
2014-10-11 10:54 . 2014-05-14 07:23 179656 ----a-w- c:\windows\SysWow64\wuwebv.dll
2014-10-11 10:54 . 2014-05-14 07:20 36864 ----a-w- c:\windows\system32\wuapp.exe
2014-10-11 10:54 . 2014-05-14 07:17 33792 ----a-w- c:\windows\SysWow64\wuapp.exe
2014-10-10 17:22 . 2014-10-10 17:22 -------- d-----w- c:\windows\system32\SPReview
2014-10-10 17:21 . 2014-10-10 17:21 -------- d-----w- c:\windows\system32\EventProviders
2014-10-09 19:25 . 2010-11-20 13:27 867840 ----a-w- c:\windows\system32\SearchFolder.dll
2014-10-09 19:24 . 2010-11-20 13:25 749568 ----a-w- c:\windows\system32\batmeter.dll
2014-10-09 19:23 . 2010-11-20 13:32 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\rdpwd.sys.mui
2014-10-09 19:23 . 2010-11-20 13:26 3584 ----a-w- c:\windows\system32\drivers\cs-CZ\tsusbflt.sys.mui
2014-10-09 19:23 . 2010-11-20 13:32 4608 ----a-w- c:\windows\system32\drivers\cs-CZ\kbdclass.sys.mui
2014-10-09 19:23 . 2010-11-20 13:31 3072 ----a-w- c:\windows\system32\drivers\cs-CZ\GAGP30KX.SYS.mui
2014-10-09 19:23 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
2014-10-09 19:23 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
2014-10-09 19:23 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\sqmapi.dll
2014-10-09 19:22 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
2014-10-09 19:22 . 2010-11-20 12:21 189952 ----a-w- c:\program files (x86)\Windows Portable Devices\sqmapi.dll
2014-10-09 19:22 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
2014-10-09 19:16 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2014-10-09 19:16 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2014-10-09 19:16 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2014-10-09 19:12 . 2012-07-06 20:07 552960 ----a-w- c:\windows\system32\drivers\bthport.sys
2014-10-09 19:12 . 2011-04-28 03:54 80384 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-10-25 17:30 . 2014-07-04 22:20 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-10-25 17:30 . 2014-07-04 22:20 701104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-10-24 21:07 . 2014-10-24 21:07 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-10-24 21:07 . 2014-10-24 21:07 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2014-10-11 07:21 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2014-10-11 07:21 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2014-10-02 13:53 . 2014-07-04 22:40 278152 ------w- c:\windows\system32\MpSigStub.exe
2014-09-22 18:21 . 2014-09-21 20:47 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2014-09-22 18:21 . 2014-09-21 20:47 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2014-09-22 18:21 . 2014-09-21 20:47 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2014-09-22 18:21 . 2014-09-21 20:47 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2014-08-08 22734160]
"AmitiAntivirus"="c:\program files (x86)\NETGATE\Amiti Antivirus\AmitiAv.exe" [2014-10-01 1557312]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Integrated Camera_Monitor"="c:\program files (x86)\Integrated Camera\monitor.exe" [2013-04-26 1718648]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-03-26 291608]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-09-12 959176]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Apache Web Server Monitor.lnk - c:\program files (x86)\Zend\Apache2\bin\ApacheMonitor.exe [2014-6-30 39848]
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2013-5-21 1393968]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli c:\program files\Lenovo\Bluetooth Software\BtwProximityCP.dll
.
2;2 amitiavsrv;AMITI Antivirus Engine;c:\program files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe;c:\program files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe [x]
R1 SpyEmrg;Amiti Antivirus Driver;c:\windows\system32\Drivers\spyemrg.sys;c:\windows\SYSNATIVE\Drivers\spyemrg.sys [x]
R2 Apache2.2-Zend;Apache2.2-Zend;c:\program files (x86)\Zend\Apache2\bin\httpd.exe;c:\program files (x86)\Zend\Apache2\bin\httpd.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 ZendJobQueue;Zend Job Queue ;c:\program files (x86)\Zend\ZendServer\bin\jqd.exe;c:\program files (x86)\Zend\ZendServer\bin\jqd.exe [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys;c:\windows\SYSNATIVE\DRIVERS\ew_usbenumfilter.sys [x]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys;c:\windows\SYSNATIVE\DRIVERS\ew_juextctrl.sys [x]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_juwwanecm.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\LENOVO\HOTKEY\MICMUTE.exe;c:\program files\LENOVO\HOTKEY\MICMUTE.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [x]
S2 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [x]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [x]
S2 MySQL_ZendServer55;MySQL_ZendServer55;c:\program files (x86)\Zend\MySQL55\bin\mysqld --defaults-file=c:\program files (x86)\Zend\MySQL55\my.ini MySQL_ZendServer55;c:\program files (x86)\Zend\MySQL55\bin\mysqld --defaults-file=c:\program files (x86)\Zend\MySQL55\my.ini MySQL_ZendServer55 [x]
S2 TPHKLOAD;Lenovo Hotkey Client Loader;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe [x]
S2 TPHKSVC;On Screen Display;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe [x]
S2 ZendDeployment;Zend Deployment;c:\program files (x86)\Zend\ZendServer\bin\zdd.exe;c:\program files (x86)\Zend\ZendServer\bin\zdd.exe [x]
S2 ZendMonitor;Zend Monitor;c:\program files (x86)\Zend\ZendServer\bin\MonitorNode.exe;c:\program files (x86)\Zend\ZendServer\bin\MonitorNode.exe [x]
S2 ZendServerDaemon;Zend Server Daemon;c:\program files (x86)\Zend\ZendServer\bin\zsd.exe;c:\program files (x86)\Zend\ZendServer\bin\zsd.exe [x]
S2 ZendSessionClustering;Zend Session Clustering;c:\program files (x86)\Zend\ZendServer\bin\scd.exe;c:\program files (x86)\Zend\ZendServer\bin\scd.exe [x]
S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter;c:\windows\system32\drivers\bcbtums.sys;c:\windows\SYSNATIVE\drivers\bcbtums.sys [x]
S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys;c:\windows\SYSNATIVE\DRIVERS\btmaux.sys [x]
S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys;c:\windows\SYSNATIVE\drivers\btwampfl.sys [x]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x]
S3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-10-18 11:47 1089352 ----a-w- c:\program files (x86)\Google\Chrome\Application\38.0.2125.104\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-10-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-04 17:30]
.
2014-10-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-04 22:34]
.
2014-10-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-04 22:34]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BLEServicesCtrl"="c:\program files (x86)\Intel\Bluetooth\BleServicesCtrl.exe" [2012-05-31 184112]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2012-06-18 11586944]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2012-05-28 380544]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2013-05-13 13538376]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2013-08-27 172016]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2013-08-27 399856]
"Persistence"="c:\windows\system32\igfxpers.exe" [2013-08-27 442352]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~3\Office15\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
IE: Odeslat do Bluetooth - c:\program files (x86)\Intel\Bluetooth\btSendToObject.htm
IE: Se&nd to OneNote - c:\progra~2\MICROS~3\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Tekier\AppData\Roaming\Mozilla\Firefox\Profiles\fhi28ewo.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MySQL_ZendServer55]
"ImagePath"="\"c:\program files (x86)\Zend\MySQL55\bin\mysqld\" --defaults-file=\"c:\program files (x86)\Zend\MySQL55\my.ini\" MySQL_ZendServer55"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-10-26 19:25:04
ComboFix-quarantined-files.txt 2014-10-26 18:25
.
Před spuštěním: Volných bajtů: 437 393 321 984
Po spuštění: Volných bajtů: 437 032 030 208
.
- - End Of File - - B35FAC56101B1170EB3B5957B2C53E67
A36C5E4F47E84449FF07ED3517B43A31

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 26 říj 2014 19:53
od Rudy
Log je v zásadě čistý, jen odemkneme některé klíče.

Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

File:
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

Reboot::
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 26 říj 2014 20:52
od tekier
ComboFix 14-10-27.01 - Tekier 26.10.2014 20:23:56.3.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3710.2100 [GMT 1:00]
Spuštěný z: c:\users\Tekier\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Tekier\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Tekier\AppData\Local\Temp\_MEI36282\_ctypes.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\_elementtree.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\_hashlib.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\_multiprocessing.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\_socket.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\_ssl.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\hashobjs_ext.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\pyexpat.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\pysqlite2._sqlite.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\python27.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\pythoncom27.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\PyWinTypes27.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\select.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\unicodedata.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32api.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32com.shell.shell.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32crypt.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32event.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32file.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32gui.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32inet.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32pdh.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32pipe.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32process.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32profile.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32security.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\win32ts.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\windows._lib_cacheinvalidation.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._animate.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._controls_.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._core_.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._gdi_.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._html2.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._misc_.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._windows_.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wx._wizard.pyd
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wxbase294u_net_vc90.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wxbase294u_vc90.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wxmsw294u_adv_vc90.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wxmsw294u_core_vc90.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wxmsw294u_html_vc90.dll
c:\users\Tekier\AppData\Local\Temp\_MEI36282\wxmsw294u_webview_vc90.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-09-26 do 2014-10-26 )))))))))))))))))))))))))))))))
.
.
2014-10-26 19:29 . 2014-10-26 19:29 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-10-25 21:42 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2014-10-25 21:42 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll
2014-10-25 21:25 . 2014-10-25 21:25 -------- d-----w- c:\users\Tekier\AppData\Roaming\Amiti Antivirus
2014-10-25 21:25 . 2013-05-23 15:41 16576 ----a-w- c:\windows\SysWow64\drivers\amitiav_guard.sys
2014-10-25 21:25 . 2014-10-25 21:25 -------- d-----w- c:\programdata\NETGATE
2014-10-25 21:17 . 2014-06-24 03:29 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2014-10-25 21:17 . 2014-06-24 02:59 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2014-10-25 21:17 . 2014-08-29 02:07 3179520 ----a-w- c:\windows\system32\rdpcorets.dll
2014-10-25 21:17 . 2014-05-08 09:32 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2014-10-25 21:17 . 2014-09-05 01:52 5703168 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-10-25 21:17 . 2014-09-05 02:11 6584320 ----a-w- c:\windows\system32\mstscax.dll
2014-10-25 21:17 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll
2014-10-25 21:17 . 2013-11-22 22:48 3928064 ----a-w- c:\windows\system32\d2d1.dll
2014-10-25 21:16 . 2014-09-19 01:18 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-10-25 21:16 . 2014-02-04 02:32 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-10-25 21:16 . 2014-02-04 02:04 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-10-25 21:16 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2014-10-25 21:16 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2014-10-25 21:09 . 2014-10-25 21:09 -------- d-----w- c:\program files (x86)\NETGATE
2014-10-25 17:29 . 2014-10-25 17:29 -------- d-----w- c:\windows\SysWow64\Adobe
2014-10-25 17:29 . 2014-10-25 17:29 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2014-10-25 17:23 . 2014-10-25 17:23 -------- d-----w- c:\windows\system32\appmgmt
2014-10-25 17:23 . 2014-10-25 17:23 -------- d-----w- c:\programdata\Skype
2014-10-25 17:15 . 2014-10-25 17:36 -------- d-----w- c:\program files (x86)\FileHippo.com
2014-10-25 14:00 . 2014-10-25 14:00 -------- d-----w- c:\program files (x86)\eTesty
2014-10-25 12:23 . 2014-10-25 18:58 -------- d-----w- c:\program files\trend micro
2014-10-25 12:04 . 2014-10-25 12:04 -------- d-----w- c:\windows\Sun
2014-10-25 12:03 . 2014-10-25 12:03 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-10-25 12:02 . 2014-10-25 12:02 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-10-25 12:02 . 2014-10-25 12:02 -------- d-----w- c:\programdata\Oracle
2014-10-25 12:02 . 2014-10-25 12:02 -------- d-----w- c:\program files (x86)\Java
2014-10-25 12:01 . 2014-10-25 17:24 -------- d-----w- c:\users\Tekier\AppData\Local\CrashDumps
2014-10-25 12:01 . 2014-10-25 12:01 -------- d-----w- c:\users\Tekier\AppData\Roaming\AC3Filter
2014-10-25 08:43 . 2014-10-25 08:43 37624 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2014-10-25 07:48 . 2014-10-25 07:48 -------- d-sh--w- c:\users\Tekier\AppData\Local\EmieUserList
2014-10-25 07:48 . 2014-10-25 07:48 -------- d-sh--w- c:\users\Tekier\AppData\Local\EmieSiteList
2014-10-24 21:35 . 2014-10-14 19:59 11627712 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2C2748B1-48A7-438C-984B-8651D9BB71DF}\mpengine.dll
2014-10-24 21:33 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-10-24 21:33 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2014-10-24 21:33 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe
2014-10-24 21:33 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-10-24 21:33 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-10-24 21:21 . 2014-10-24 21:21 -------- d-----w- c:\windows\Migration
2014-10-24 21:16 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2014-10-24 21:08 . 2014-10-24 21:08 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-10-24 20:52 . 2013-10-02 01:10 44544 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll
2014-10-24 20:25 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2014-10-24 20:17 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll
2014-10-24 20:17 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2014-10-24 20:17 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2014-10-24 20:17 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2014-10-24 19:37 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2014-10-24 19:37 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2014-10-24 19:37 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2014-10-24 19:37 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2014-10-24 19:37 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2014-10-24 19:37 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2014-10-24 19:37 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2014-10-24 19:18 . 2014-10-24 19:22 -------- d-----w- c:\windows\system32\MRT
2014-10-24 19:15 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2014-10-24 19:15 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2014-10-24 19:15 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2014-10-24 19:15 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2014-10-24 19:15 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2014-10-24 19:15 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2014-10-24 19:15 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2014-10-24 19:15 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2014-10-24 19:14 . 2014-04-12 02:22 95680 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2014-10-24 19:14 . 2014-04-12 02:22 155072 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2014-10-24 19:14 . 2014-04-12 02:19 29184 ----a-w- c:\windows\system32\sspisrv.dll
2014-10-24 19:14 . 2014-04-12 02:19 136192 ----a-w- c:\windows\system32\sspicli.dll
2014-10-24 19:14 . 2014-04-12 02:19 28160 ----a-w- c:\windows\system32\secur32.dll
2014-10-24 19:14 . 2014-04-12 02:19 31232 ----a-w- c:\windows\system32\lsass.exe
2014-10-24 19:14 . 2013-07-04 12:18 458712 ----a-w- c:\windows\system32\drivers\cng.sys
2014-10-24 19:12 . 2014-03-04 09:44 362496 ----a-w- c:\windows\system32\wow64win.dll
2014-10-24 19:11 . 2012-01-04 10:44 509952 ----a-w- c:\windows\system32\ntshrui.dll
2014-10-24 19:10 . 2013-12-04 02:27 485888 ----a-w- c:\windows\system32\secproc_isv.dll
2014-10-24 19:09 . 2013-04-25 23:30 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2014-10-24 19:08 . 2013-10-05 20:25 1474048 ----a-w- c:\windows\system32\crypt32.dll
2014-10-24 19:07 . 2013-05-10 05:49 30720 ----a-w- c:\windows\system32\cryptdlg.dll
2014-10-24 19:06 . 2014-01-29 02:32 484864 ----a-w- c:\windows\system32\wer.dll
2014-10-24 19:05 . 2014-09-25 01:40 519680 ----a-w- c:\windows\SysWow64\qdvd.dll
2014-10-24 18:47 . 2013-10-12 02:30 830464 ----a-w- c:\windows\system32\nshwfp.dll
2014-10-24 18:47 . 2013-10-12 02:29 859648 ----a-w- c:\windows\system32\IKEEXT.DLL
2014-10-24 18:47 . 2013-10-12 02:29 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2014-10-24 18:47 . 2013-10-12 02:03 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll
2014-10-24 18:47 . 2013-10-12 02:01 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL
2014-10-24 18:46 . 2014-07-14 02:02 1216000 ----a-w- c:\windows\system32\rpcrt4.dll
2014-10-24 18:46 . 2014-07-14 01:40 664064 ----a-w- c:\windows\SysWow64\rpcrt4.dll
2014-10-24 18:46 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2014-10-22 18:44 . 2014-10-25 10:44 -------- d-----w- c:\program files\CCleaner
2014-10-11 10:55 . 2014-05-14 16:23 44512 ----a-w- c:\windows\system32\wups2.dll
2014-10-11 10:55 . 2014-05-14 16:23 58336 ----a-w- c:\windows\system32\wuauclt.exe
2014-10-11 10:55 . 2014-05-14 16:23 2477536 ----a-w- c:\windows\system32\wuaueng.dll
2014-10-11 10:55 . 2014-05-14 16:21 2620928 ----a-w- c:\windows\system32\wucltux.dll
2014-10-11 10:55 . 2014-05-14 16:23 38880 ----a-w- c:\windows\system32\wups.dll
2014-10-11 10:55 . 2014-05-14 16:23 36320 ----a-w- c:\windows\SysWow64\wups.dll
2014-10-11 10:55 . 2014-05-14 16:23 700384 ----a-w- c:\windows\system32\wuapi.dll
2014-10-11 10:55 . 2014-05-14 16:23 581600 ----a-w- c:\windows\SysWow64\wuapi.dll
2014-10-11 10:55 . 2014-05-14 16:20 97792 ----a-w- c:\windows\system32\wudriver.dll
2014-10-11 10:55 . 2014-05-14 16:17 92672 ----a-w- c:\windows\SysWow64\wudriver.dll
2014-10-11 10:54 . 2014-05-14 07:23 198600 ----a-w- c:\windows\system32\wuwebv.dll
2014-10-11 10:54 . 2014-05-14 07:23 179656 ----a-w- c:\windows\SysWow64\wuwebv.dll
2014-10-11 10:54 . 2014-05-14 07:20 36864 ----a-w- c:\windows\system32\wuapp.exe
2014-10-11 10:54 . 2014-05-14 07:17 33792 ----a-w- c:\windows\SysWow64\wuapp.exe
2014-10-10 17:22 . 2014-10-10 17:22 -------- d-----w- c:\windows\system32\SPReview
2014-10-10 17:21 . 2014-10-10 17:21 -------- d-----w- c:\windows\system32\EventProviders
2014-10-09 19:25 . 2010-11-20 13:27 867840 ----a-w- c:\windows\system32\SearchFolder.dll
2014-10-09 19:24 . 2010-11-20 13:25 749568 ----a-w- c:\windows\system32\batmeter.dll
2014-10-09 19:23 . 2010-11-20 13:32 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\rdpwd.sys.mui
2014-10-09 19:23 . 2010-11-20 13:26 3584 ----a-w- c:\windows\system32\drivers\cs-CZ\tsusbflt.sys.mui
2014-10-09 19:23 . 2010-11-20 13:32 4608 ----a-w- c:\windows\system32\drivers\cs-CZ\kbdclass.sys.mui
2014-10-09 19:23 . 2010-11-20 13:31 3072 ----a-w- c:\windows\system32\drivers\cs-CZ\GAGP30KX.SYS.mui
2014-10-09 19:23 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
2014-10-09 19:23 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
2014-10-09 19:23 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\sqmapi.dll
2014-10-09 19:22 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
2014-10-09 19:22 . 2010-11-20 12:21 189952 ----a-w- c:\program files (x86)\Windows Portable Devices\sqmapi.dll
2014-10-09 19:22 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
2014-10-09 19:16 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2014-10-09 19:16 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2014-10-09 19:16 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2014-10-09 19:12 . 2012-07-06 20:07 552960 ----a-w- c:\windows\system32\drivers\bthport.sys
2014-10-09 19:12 . 2011-04-28 03:54 80384 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-10-25 17:30 . 2014-07-04 22:20 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-10-25 17:30 . 2014-07-04 22:20 701104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-10-24 21:07 . 2014-10-24 21:07 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-10-24 21:07 . 2014-10-24 21:07 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2014-10-11 07:21 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2014-10-11 07:21 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2014-10-02 13:53 . 2014-07-04 22:40 278152 ------w- c:\windows\system32\MpSigStub.exe
2014-09-22 18:21 . 2014-09-21 20:47 466456 ----a-w- c:\windows\system32\wrap_oal.dll
2014-09-22 18:21 . 2014-09-21 20:47 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll
2014-09-22 18:21 . 2014-09-21 20:47 122904 ----a-w- c:\windows\system32\OpenAL32.dll
2014-09-22 18:21 . 2014-09-21 20:47 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2014-08-08 22734160]
"AmitiAntivirus"="c:\program files (x86)\NETGATE\Amiti Antivirus\AmitiAv.exe" [2014-10-01 1557312]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Integrated Camera_Monitor"="c:\program files (x86)\Integrated Camera\monitor.exe" [2013-04-26 1718648]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-03-26 291608]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-09-12 959176]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Apache Web Server Monitor.lnk - c:\program files (x86)\Zend\Apache2\bin\ApacheMonitor.exe [2014-6-30 39848]
Bluetooth.lnk - c:\program files\Lenovo\Bluetooth Software\BTTray.exe [2013-5-21 1393968]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli c:\program files\Lenovo\Bluetooth Software\BtwProximityCP.dll
.
2;2 amitiavsrv;AMITI Antivirus Engine;c:\program files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe;c:\program files (x86)\NETGATE\Amiti Antivirus\AmitiAvSrv.exe [x]
R1 SpyEmrg;Amiti Antivirus Driver;c:\windows\system32\Drivers\spyemrg.sys;c:\windows\SYSNATIVE\Drivers\spyemrg.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 ZendJobQueue;Zend Job Queue ;c:\program files (x86)\Zend\ZendServer\bin\jqd.exe;c:\program files (x86)\Zend\ZendServer\bin\jqd.exe [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys;c:\windows\SYSNATIVE\DRIVERS\ew_usbenumfilter.sys [x]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys;c:\windows\SYSNATIVE\DRIVERS\ew_juextctrl.sys [x]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_juwwanecm.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\LENOVO\HOTKEY\MICMUTE.exe;c:\program files\LENOVO\HOTKEY\MICMUTE.exe [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 Apache2.2-Zend;Apache2.2-Zend;c:\program files (x86)\Zend\Apache2\bin\httpd.exe;c:\program files (x86)\Zend\Apache2\bin\httpd.exe [x]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [x]
S2 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [x]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [x]
S2 MySQL_ZendServer55;MySQL_ZendServer55;c:\program files (x86)\Zend\MySQL55\bin\mysqld --defaults-file=c:\program files (x86)\Zend\MySQL55\my.ini MySQL_ZendServer55;c:\program files (x86)\Zend\MySQL55\bin\mysqld --defaults-file=c:\program files (x86)\Zend\MySQL55\my.ini MySQL_ZendServer55 [x]
S2 TPHKLOAD;Lenovo Hotkey Client Loader;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe [x]
S2 TPHKSVC;On Screen Display;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe [x]
S2 ZendDeployment;Zend Deployment;c:\program files (x86)\Zend\ZendServer\bin\zdd.exe;c:\program files (x86)\Zend\ZendServer\bin\zdd.exe [x]
S2 ZendMonitor;Zend Monitor;c:\program files (x86)\Zend\ZendServer\bin\MonitorNode.exe;c:\program files (x86)\Zend\ZendServer\bin\MonitorNode.exe [x]
S2 ZendServerDaemon;Zend Server Daemon;c:\program files (x86)\Zend\ZendServer\bin\zsd.exe;c:\program files (x86)\Zend\ZendServer\bin\zsd.exe [x]
S2 ZendSessionClustering;Zend Session Clustering;c:\program files (x86)\Zend\ZendServer\bin\scd.exe;c:\program files (x86)\Zend\ZendServer\bin\scd.exe [x]
S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter;c:\windows\system32\drivers\bcbtums.sys;c:\windows\SYSNATIVE\drivers\bcbtums.sys [x]
S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys;c:\windows\SYSNATIVE\DRIVERS\btmaux.sys [x]
S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys;c:\windows\SYSNATIVE\drivers\btwampfl.sys [x]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x]
S3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-10-18 11:47 1089352 ----a-w- c:\program files (x86)\Google\Chrome\Application\38.0.2125.104\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-10-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-04 17:30]
.
2014-10-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-04 22:34]
.
2014-10-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-07-04 22:34]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Tekier\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2014-08-08 08:34 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BLEServicesCtrl"="c:\program files (x86)\Intel\Bluetooth\BleServicesCtrl.exe" [2012-05-31 184112]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2012-06-18 11586944]
"AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2012-05-28 380544]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2013-05-13 13538376]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2013-08-27 172016]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2013-08-27 399856]
"Persistence"="c:\windows\system32\igfxpers.exe" [2013-08-27 442352]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~3\Office15\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
IE: Odeslat do Bluetooth - c:\program files (x86)\Intel\Bluetooth\btSendToObject.htm
IE: Se&nd to OneNote - c:\progra~2\MICROS~3\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\Tekier\AppData\Roaming\Mozilla\Firefox\Profiles\fhi28ewo.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MySQL_ZendServer55]
"ImagePath"="\"c:\program files (x86)\Zend\MySQL55\bin\mysqld\" --defaults-file=\"c:\program files (x86)\Zend\MySQL55\my.ini\" MySQL_ZendServer55"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Zend\MySQL55\bin\mysqld.exe
c:\program files (x86)\Zend\ZendServer\bin\php-cgi.exe
c:\program files (x86)\Zend\ZendServer\bin\php-cgi.exe
c:\program files (x86)\Zend\ZendServer\bin\php-cgi.exe
c:\progra~1\Lenovo\HOTKEY\TPONSCR.EXE
c:\program files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
.
**************************************************************************
.
Celkový čas: 2014-10-26 20:42:07 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-10-26 19:42
ComboFix2.txt 2014-10-26 18:25
.
Před spuštěním: Volných bajtů: 446 394 351 616
Po spuštění: Volných bajtů: 446 325 903 360
.
- - End Of File - - 79534203574F244504D53547EACDCDD7
A36C5E4F47E84449FF07ED3517B43A31

Re: log po odstranění nákazy + nefunkční antivirus

Napsal: 26 říj 2014 21:10
od Rudy
Smazáno. CF odinstalujte pomocí T-Cleraneru: http://vyosek.tym.cz/pro_usery/T-Cleaner.exe . Nastala nějaká změna?