Dobry den, tak som nahral zalohu mozili, iba hesla, historiu prehliadania, zalozky, certifikaty, ak by RSIT nieco ukazal neziaduce, chcem sa spitat dalo by sa to odstranit tak ze mi zostane historia prehliadania? No ale dufam ze log bude cisty

PC sa chova dobre.
--------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Ja at 2015-01-14 15:09:36
Microsoft Windows 8.1
System drive C: has 199 GB (70%) free of 286 GB
Total RAM: 3982 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:09:41, on 14.1.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Users\Ja\AppData\Roaming\ICQM\icq.exe
C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
D:\TCP-IP-Port-Scanner_1.5.0\Tcp Port Scanner\Bin\TcpScanner.exe
C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\svchost.exe
C:\Program Files\trend micro\Ja.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [icq] C:\Users\Ja\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: svchost.exe
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stiahnuť obsah FLV s IDM - C:\Program Files (x86)\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Stiahnuť s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stiahnuť s IDM všetky prepojenia - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Ja\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Ja\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files\ASUS\P4G\InsOnSrv.exe
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: CyberGhost 5 Client Service (CGVPNCliService) - CyberGhost S.R.L - C:\Program Files\CyberGhost 5\Service.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11113 bytes
======Listing Processes======
wininit.exe
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\WINDOWS\Explorer.EXE
KBFiltr.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
taskhostex.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe"
"C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe"
"C:\Program Files\CyberGhost 5\Service.exe"
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
ngservice.exe pipeserver
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
ClassicStartMenu.exe -startup
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Users\Ja\AppData\Roaming\ICQM\icq.exe" -CU
"C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\ASUS\P4G\InsOnSrv.exe"
"C:\Program Files\ASUS\P4G\InsOnWMI.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
"D:\TCP-IP-Port-Scanner_1.5.0\Tcp Port Scanner\Bin\TcpScanner.exe"
"C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" -Embedding
"C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-37c217ac-79a6-44d3-920f-ea054da2c614 -SystemEventPortName:HostProcess-47f0043b-628c-4e25-88db-61d1320f7ae4 -IoCancelEventPortName:HostProcess-7b798a6c-aa49-4e3a-9d09-7aa8859a1692 -NonStateChangingEventPortName:HostProcess-165d6051-7b64-45b8-b139-276e57428c6b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:da7e801c-d96b-485b-af14-4977183ec0d9 -DeviceGroupId:WpdFsGroup
"C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\svchost.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe113_ Global\UsGthrCtrlFltPipeMssGthrPipe113 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 568 572 580 65536 576
"C:\Users\Ja\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\c7jf2rt1.default
prefs.js - "browser.startup.homepage" - "
http://www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.257 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0]
"Description"=DivX Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=1.0.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.257 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_257.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\c7jf2rt1.default\extensions\
mozilla_cc@internetdownloadmanager.com
{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\c7jf2rt1.default\searchplugins\
sfd.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-04-24 132736]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"icq"=C:\Users\Ja\AppData\Roaming\ICQM\icq.exe [2014-12-02 35239432]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30873192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUSPRP]
C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DisableS3S4]
c:\windows\temp\DisableS3S464\sethigh.cmd []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-07-04 1321688]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-07-23 13632216]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"=C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe [2005-07-15 479232]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-11 5227112]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-04-24 132736]
C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
svchost.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-01 623104]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
"SoftwareSASGeneration"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-14 15:09:36 ----D---- C:\rsit
2015-01-14 15:09:36 ----D---- C:\Program Files\trend micro
2015-01-08 20:04:50 ----D---- C:\Users\Ja\AppData\Roaming\WinRAR
2015-01-08 12:38:01 ----D---- C:\Program Files (x86)\Firebird
2015-01-08 12:37:36 ----D---- C:\Program Files (x86)\SpacialAudio
2015-01-06 18:42:01 ----D---- C:\FRST
2015-01-06 18:40:36 ----A---- C:\WINDOWS\ntbtlog.txt
2015-01-06 12:06:12 ----SHD---- C:\$RECYCLE.BIN
2015-01-06 11:54:31 ----D---- C:\WINDOWS\Temp
2015-01-05 04:16:54 ----D---- C:\WINDOWS\Sun
2015-01-05 00:30:15 ----D---- C:\Program Files\iptools
2014-12-27 19:48:19 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-27 19:48:19 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-27 19:48:18 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-27 19:48:17 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-27 19:48:17 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-27 19:48:16 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-27 19:48:16 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-27 19:48:14 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-27 19:48:14 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-27 19:48:13 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-27 19:48:12 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-27 19:48:12 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-27 19:48:11 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-27 19:48:11 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-27 19:48:10 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-27 19:48:10 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-27 19:48:06 ----A---- C:\WINDOWS\system32\wmp.dll
2014-12-27 19:47:41 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2014-12-27 19:47:41 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-27 19:47:20 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-27 19:47:20 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-27 19:47:19 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-27 19:47:18 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-27 19:47:16 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-27 19:47:15 ----A---- C:\WINDOWS\system32\WSService.dll
2014-12-27 19:47:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-27 19:47:11 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-27 19:47:09 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2014-12-27 19:47:08 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-12-27 19:47:08 ----A---- C:\WINDOWS\system32\atlthunk.dll
2014-12-27 19:47:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-27 19:47:05 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-27 19:47:04 ----AC---- C:\WINDOWS\system32\drivers\swenum.sys
2014-12-27 19:47:04 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-27 19:47:03 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-27 19:47:02 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2014-12-27 19:47:01 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2014-12-27 19:47:00 ----A---- C:\WINDOWS\system32\msftedit.dll
2014-12-27 19:46:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2014-12-27 19:46:58 ----A---- C:\WINDOWS\system32\rdpinput.exe
2014-12-27 19:46:58 ----A---- C:\WINDOWS\system32\rdpcore.dll
2014-12-27 19:46:58 ----A---- C:\WINDOWS\system32\rdpclip.exe
2014-12-27 19:46:57 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2014-12-27 19:46:57 ----A---- C:\WINDOWS\system32\d2d1.dll
2014-12-27 19:46:56 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2014-12-27 19:46:54 ----A---- C:\WINDOWS\system32\tquery.dll
2014-12-27 19:46:54 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-12-27 19:46:52 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2014-12-27 19:46:52 ----A---- C:\WINDOWS\system32\msxml6.dll
2014-12-27 19:46:51 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2014-12-27 19:46:51 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2014-12-27 19:46:50 ----A---- C:\WINDOWS\system32\mssrch.dll
2014-12-27 19:46:49 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-12-27 19:46:49 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-27 19:46:49 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-27 19:46:48 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2014-12-27 19:46:48 ----A---- C:\WINDOWS\system32\dbgeng.dll
2014-12-27 19:46:48 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-27 19:46:47 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2014-12-27 19:46:46 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2014-12-27 19:46:44 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2014-12-27 19:46:42 ----A---- C:\WINDOWS\system32\esent.dll
2014-12-27 19:46:41 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2014-12-27 19:46:41 ----A---- C:\WINDOWS\system32\xpsservices.dll
2014-12-27 19:46:41 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2014-12-27 19:46:39 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2014-12-27 19:46:39 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2014-12-27 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-27 19:46:37 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-27 19:46:37 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-27 19:46:35 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2014-12-27 19:46:35 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-27 19:46:35 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2014-12-27 19:46:34 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2014-12-27 19:46:34 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2014-12-27 19:46:34 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2014-12-27 19:46:33 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2014-12-27 19:46:32 ----A---- C:\WINDOWS\system32\combase.dll
2014-12-27 19:46:31 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-27 19:46:30 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-27 19:46:29 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2014-12-27 19:46:27 ----A---- C:\WINDOWS\system32\dwmcore.dll
2014-12-27 19:46:27 ----A---- C:\WINDOWS\system32\d3d11.dll
2014-12-27 19:46:26 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-27 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2014-12-27 19:46:24 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2014-12-27 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2014-12-27 19:46:23 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2014-12-27 19:46:22 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-27 19:46:21 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-27 19:46:20 ----A---- C:\WINDOWS\system32\DWrite.dll
2014-12-27 19:46:18 ----AC---- C:\WINDOWS\system32\drivers\drmkaud.sys
2014-12-27 19:46:18 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2014-12-27 19:46:17 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-27 19:46:17 ----A---- C:\WINDOWS\system32\ole32.dll
2014-12-27 19:46:16 ----A---- C:\WINDOWS\explorer.exe
2014-12-27 19:46:15 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-27 19:46:13 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2014-12-27 19:46:13 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2014-12-27 19:46:12 ----A---- C:\WINDOWS\system32\wmpmde.dll
2014-12-27 19:46:11 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2014-12-27 19:46:11 ----A---- C:\WINDOWS\system32\winmde.dll
2014-12-27 19:46:11 ----A---- C:\WINDOWS\system32\storagewmi.dll
2014-12-27 19:46:10 ----A---- C:\WINDOWS\SYSWOW64\MSAudDecMFT.dll
2014-12-27 19:46:10 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2014-12-27 19:46:10 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2014-12-27 19:46:09 ----A---- C:\WINDOWS\system32\dui70.dll
2014-12-27 19:46:08 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2014-12-27 19:46:08 ----A---- C:\WINDOWS\system32\OpcServices.dll
2014-12-27 19:46:07 ----A---- C:\WINDOWS\system32\gpsvc.dll
2014-12-27 19:46:06 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-27 19:46:06 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2014-12-27 19:46:05 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2014-12-27 19:46:04 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2014-12-27 19:46:03 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2014-12-27 19:46:03 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2014-12-27 19:46:02 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2014-12-27 19:46:02 ----A---- C:\WINDOWS\system32\SRH.dll
2014-12-27 19:46:01 ----A---- C:\WINDOWS\system32\blackbox.dll
2014-12-27 19:46:00 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2014-12-27 19:45:59 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2014-12-27 19:45:59 ----A---- C:\WINDOWS\system32\taskschd.dll
2014-12-27 19:45:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2014-12-27 19:45:58 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2014-12-27 19:45:58 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2014-12-27 19:45:57 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2014-12-27 19:45:57 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2014-12-27 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-27 19:45:55 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2014-12-27 19:45:54 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2014-12-27 19:45:54 ----A---- C:\WINDOWS\system32\webservices.dll
2014-12-27 19:45:53 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2014-12-27 19:45:52 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2014-12-27 19:45:51 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2014-12-27 19:45:51 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2014-12-27 19:45:49 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2014-12-27 19:45:49 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-27 19:45:49 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2014-12-27 19:45:47 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2014-12-27 19:45:46 ----A---- C:\WINDOWS\system32\mmc.exe
2014-12-27 19:45:45 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2014-12-27 19:45:45 ----A---- C:\WINDOWS\system32\quartz.dll
2014-12-27 19:45:44 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2014-12-27 19:45:43 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2014-12-27 19:45:43 ----A---- C:\WINDOWS\system32\wpccpl.dll
2014-12-27 19:45:43 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-12-27 19:45:42 ----A---- C:\WINDOWS\system32\diagperf.dll
2014-12-27 19:45:41 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2014-12-27 19:45:41 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2014-12-27 19:45:39 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2014-12-27 19:45:39 ----A---- C:\WINDOWS\system32\comsvcs.dll
2014-12-27 19:45:38 ----A---- C:\WINDOWS\system32\xpssvcs.dll
2014-12-27 19:45:37 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2014-12-27 19:45:36 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2014-12-27 19:45:36 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2014-12-27 19:45:36 ----A---- C:\WINDOWS\system32\sbe.dll
2014-12-27 19:45:35 ----A---- C:\WINDOWS\SYSWOW64\blackbox.dll
2014-12-27 19:45:35 ----A---- C:\WINDOWS\system32\rpcss.dll
2014-12-27 19:45:34 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2014-12-27 19:45:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2014-12-27 19:45:33 ----A---- C:\WINDOWS\system32\WMNetMgr.dll
2014-12-27 19:45:33 ----A---- C:\WINDOWS\system32\pla.dll
2014-12-27 19:45:33 ----A---- C:\WINDOWS\system32\FntCache.dll
2014-12-27 19:45:31 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2014-12-27 19:45:31 ----A---- C:\WINDOWS\system32\WinSAT.exe
2014-12-27 19:45:30 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2014-12-27 19:45:30 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2014-12-27 19:45:30 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-12-27 19:45:29 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2014-12-27 19:45:29 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2014-12-27 19:45:28 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2014-12-27 19:45:28 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2014-12-27 19:45:28 ----A---- C:\WINDOWS\system32\gdi32.dll
2014-12-27 19:45:27 ----A---- C:\WINDOWS\system32\sqlceqp40.dll
2014-12-27 19:45:27 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-27 19:45:26 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-27 19:45:26 ----A---- C:\WINDOWS\system32\termsrv.dll
2014-12-27 19:45:26 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2014-12-27 19:45:23 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2014-12-27 19:45:23 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-27 19:45:22 ----A---- C:\WINDOWS\system32\uxtheme.dll
2014-12-27 19:45:21 ----A---- C:\WINDOWS\SYSWOW64\pla.dll
2014-12-27 19:45:21 ----A---- C:\WINDOWS\SYSWOW64\drmv2clt.dll
2014-12-27 19:45:20 ----A---- C:\WINDOWS\SYSWOW64\psapi.dll
2014-12-27 19:45:20 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2014-12-27 19:45:20 ----A---- C:\WINDOWS\system32\qmgr.dll
2014-12-27 19:45:20 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-27 19:45:19 ----A---- C:\WINDOWS\system32\wlansvc.dll
2014-12-27 19:45:19 ----A---- C:\WINDOWS\system32\mispace.dll
2014-12-27 19:45:18 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2014-12-27 19:45:18 ----A---- C:\WINDOWS\system32\msdtctm.dll
2014-12-27 19:45:17 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2014-12-27 19:45:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2014-12-27 19:45:17 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2014-12-27 19:45:16 ----A---- C:\WINDOWS\system32\dbghelp.dll
2014-12-27 19:45:15 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2014-12-27 19:45:15 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2014-12-27 19:45:15 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-27 19:45:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2014-12-27 19:45:14 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2014-12-27 19:45:13 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2014-12-27 19:45:13 ----A---- C:\WINDOWS\system32\SHCore.dll
2014-12-27 19:45:12 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2014-12-27 19:45:12 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2014-12-27 19:45:12 ----A---- C:\WINDOWS\system32\mf.dll
2014-12-27 19:45:11 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-27 19:45:11 ----A---- C:\WINDOWS\system32\RacEngn.dll
2014-12-27 19:45:10 ----A---- C:\WINDOWS\system32\winhttp.dll
2014-12-27 19:45:10 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-27 19:45:10 ----A---- C:\WINDOWS\system32\lsm.dll
2014-12-27 19:45:09 ----A---- C:\WINDOWS\SYSWOW64\WMNetMgr.dll
2014-12-27 19:45:09 ----A---- C:\WINDOWS\SYSWOW64\sbe.dll
2014-12-27 19:45:09 ----A---- C:\WINDOWS\system32\sysmain.dll
2014-12-27 19:45:08 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2014-12-27 19:45:08 ----A---- C:\WINDOWS\system32\cdosys.dll
2014-12-27 19:45:07 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2014-12-27 19:45:07 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2014-12-27 19:45:06 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2014-12-27 19:45:06 ----A---- C:\WINDOWS\system32\twinapi.dll
2014-12-27 19:45:05 ----A---- C:\WINDOWS\SYSWOW64\sqlceqp40.dll
2014-12-27 19:45:05 ----A---- C:\WINDOWS\system32\wmdrmdev.dll
2014-12-27 19:45:04 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2014-12-27 19:45:04 ----A---- C:\WINDOWS\system32\ogldrv.dll
2014-12-27 19:45:04 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-27 19:45:04 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-27 19:45:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-27 19:45:03 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-27 19:45:03 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-27 19:45:03 ----A---- C:\WINDOWS\system32\WWAHost.exe
2014-12-27 19:45:03 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2014-12-27 19:45:03 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2014-12-27 19:45:03 ----A---- C:\WINDOWS\system32\mfds.dll
2014-12-27 19:45:02 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2014-12-27 19:45:02 ----A---- C:\WINDOWS\system32\mspaint.exe
2014-12-27 19:45:01 ----A---- C:\WINDOWS\SYSWOW64\RacEngn.dll
2014-12-27 19:45:01 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2014-12-27 19:45:01 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-27 19:45:00 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2014-12-27 19:45:00 ----A---- C:\WINDOWS\system32\riched20.dll
2014-12-27 19:44:58 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2014-12-27 19:44:57 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2014-12-27 19:44:57 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-27 19:44:57 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2014-12-27 19:44:55 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2014-12-27 19:44:55 ----A---- C:\WINDOWS\system32\evr.dll
2014-12-27 19:44:55 ----A---- C:\WINDOWS\system32\comdlg32.dll
2014-12-27 19:44:55 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-27 19:44:54 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2014-12-27 19:44:54 ----A---- C:\WINDOWS\system32\odbc32.dll
2014-12-27 19:44:54 ----A---- C:\WINDOWS\system32\dllhost.exe
2014-12-27 19:44:54 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-27 19:44:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2014-12-27 19:44:53 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2014-12-27 19:44:53 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2014-12-27 19:44:53 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-27 19:44:52 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2014-12-27 19:44:52 ----A---- C:\WINDOWS\system32\duser.dll
2014-12-27 19:44:51 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2014-12-27 19:44:51 ----A---- C:\WINDOWS\system32\CPFilters.dll
2014-12-27 19:44:49 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-27 19:44:49 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2014-12-27 19:44:49 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2014-12-27 19:44:49 ----A---- C:\WINDOWS\system32\SettingSync.dll
2014-12-27 19:44:49 ----A---- C:\WINDOWS\system32\MSMPEG2ENC.DLL
2014-12-27 19:44:48 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2014-12-27 19:44:48 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2014-12-27 19:44:48 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2014-12-27 19:44:48 ----A---- C:\WINDOWS\system32\WinSync.dll
2014-12-27 19:44:48 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2014-12-27 19:44:47 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2014-12-27 19:44:47 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2014-12-27 19:44:46 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2014-12-27 19:44:45 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2014-12-27 19:44:45 ----A---- C:\WINDOWS\SYSWOW64\ogldrv.dll
2014-12-27 19:44:45 ----A---- C:\WINDOWS\system32\wdc.dll
2014-12-27 19:44:45 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-27 19:44:44 ----A---- C:\WINDOWS\SYSWOW64\wmdrmdev.dll
2014-12-27 19:44:44 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2014-12-27 19:44:44 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2014-12-27 19:44:44 ----A---- C:\WINDOWS\system32\setupapi.dll
2014-12-27 19:44:44 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2014-12-27 19:44:43 ----A---- C:\WINDOWS\SYSWOW64\riched20.dll
2014-12-27 19:44:43 ----A---- C:\WINDOWS\system32\provcore.dll
2014-12-27 19:44:43 ----A---- C:\WINDOWS\system32\PortableDeviceApi.dll
2014-12-27 19:44:43 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2014-12-27 19:44:42 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2014-12-27 19:44:42 ----A---- C:\WINDOWS\system32\wpdshext.dll
2014-12-27 19:44:42 ----A---- C:\WINDOWS\system32\WavDest.dll
2014-12-27 19:44:42 ----A---- C:\WINDOWS\system32\qedit.dll
2014-12-27 19:44:41 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2014-12-27 19:44:41 ----A---- C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2014-12-27 19:44:40 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2014-12-27 19:44:40 ----A---- C:\WINDOWS\system32\wmdrmnet.dll
2014-12-27 19:44:40 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2014-12-27 19:44:40 ----A---- C:\WINDOWS\system32\samsrv.dll
2014-12-27 19:44:40 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-27 19:44:40 ----A---- C:\WINDOWS\system32\defragsvc.dll
2014-12-27 19:44:39 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2014-12-27 19:44:39 ----A---- C:\WINDOWS\SYSWOW64\cdosys.dll
2014-12-27 19:44:39 ----A---- C:\WINDOWS\system32\WinTypes.dll
2014-12-27 19:44:39 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2014-12-27 19:44:38 ----A---- C:\WINDOWS\SYSWOW64\MSMPEG2ENC.DLL
2014-12-27 19:44:38 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2014-12-27 19:44:38 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-27 19:44:37 ----A---- C:\WINDOWS\system32\wbengine.exe
2014-12-27 19:44:37 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2014-12-27 19:44:37 ----A---- C:\WINDOWS\system32\clbcatq.dll
2014-12-27 19:44:37 ----A---- C:\WINDOWS\system32\autoconv.exe
2014-12-27 19:44:36 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2014-12-27 19:44:36 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2014-12-27 19:44:36 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2014-12-27 19:44:35 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2014-12-27 19:44:35 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2014-12-27 19:44:35 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2014-12-27 19:44:35 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2014-12-27 19:44:34 ----A---- C:\WINDOWS\system32\perftrack.dll
2014-12-27 19:44:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2014-12-27 19:44:34 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2014-12-27 19:44:34 ----A---- C:\WINDOWS\system32\comuid.dll
2014-12-27 19:44:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2014-12-27 19:44:33 ----A---- C:\WINDOWS\system32\wmdrmsdk.dll
2014-12-27 19:44:33 ----A---- C:\WINDOWS\system32\mfsvr.dll
2014-12-27 19:44:33 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-27 19:44:33 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-27 19:44:32 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2014-12-27 19:44:32 ----A---- C:\WINDOWS\system32\WUDFx.dll
2014-12-27 19:44:32 ----A---- C:\WINDOWS\system32\wpncore.dll
2014-12-27 19:44:32 ----A---- C:\WINDOWS\system32\netlogon.dll
2014-12-27 19:44:31 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2014-12-27 19:44:31 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2014-12-27 19:44:31 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2014-12-27 19:44:31 ----A---- C:\WINDOWS\SYSWOW64\comuid.dll
2014-12-27 19:44:31 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2014-12-27 19:44:30 ----A---- C:\WINDOWS\system32\MSWB70804.dll
2014-12-27 19:44:30 ----A---- C:\WINDOWS\system32\MSWB70404.dll
2014-12-27 19:44:30 ----A---- C:\WINDOWS\system32\MSWB7001E.dll
2014-12-27 19:44:30 ----A---- C:\WINDOWS\system32\MSWB70011.dll
2014-12-27 19:44:29 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2014-12-27 19:44:29 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-27 19:44:29 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2014-12-27 19:44:29 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2014-12-27 19:44:29 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2014-12-27 19:44:28 ----A---- C:\WINDOWS\SYSWOW64\xpssvcs.dll
2014-12-27 19:44:28 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2014-12-27 19:44:28 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2014-12-27 19:44:28 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2014-12-27 19:44:26 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2014-12-27 19:44:25 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL