Kompijuter mi koči

2

Kompijuter mi koči

offline
  • Pridružio: 25 Okt 2014
  • Poruke: 17

Napisano: 26 Okt 2014 13:02

mycity.rs/must-login.png

Dopuna: 26 Okt 2014 13:05

mycity.rs/must-login.png

mycity.rs/must-login.png








Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-10-2014
Ran by Ristic (administrator) on KRSNA-CC33828F0 on 26-10-2014 13:03:13
Running from C:\Documents and Settings\Ristic\Desktop
Loaded Profile: Ristic (Available profiles: Ristic)
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
(Cyberlink Corp.) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(BitTorrent Inc.) C:\Documents and Settings\Ristic\Application Data\BitTorrent\BitTorrent.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Farbar) C:\Documents and Settings\Ristic\Desktop\FRST(2).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe [1388544 2004-10-14] (Analog Devices, Inc.)
HKLM\...\Run: [ATICCC] => C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [45056 2005-08-12] (ATI Technologies Inc.)
HKLM\...\Run: [NeroFilterCheck] => C:\WINDOWS\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
HKLM\...\Run: [RemoteControl] => C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [32768 2003-12-08] (Cyberlink Corp.)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Winlogon: [UIHost] C:\WINDOWS\system32\logonui.exe [514560 2008-04-14] ( (Microsoft Corporation))
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.)
HKU\S-1-5-21-2025429265-1336601894-839522115-1003\...\Run: [BitTorrent] => C:\Documents and Settings\Ristic\Application Data\BitTorrent\BitTorrent.exe [1388376 2014-10-24] (BitTorrent Inc.)
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Catalyst System Tray.lnk
ShortcutTarget: Catalyst System Tray.lnk -> C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe (ATI Technologies Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
URLSearchHook: HKLM - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKCU - {3C7B5DCC-7F96-42D8-9FD8-D392E905B0D0} URL = only-search.com/?babsrc=SP_kms&affI.....314&q={searchTerms}
SearchScopes: HKCU - {81DE073D-060E-428F-804D-1F017BF4AFE6} URL = only-search.com/?babsrc=SP_kms&affI.....314&q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default
FF NewTab: hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=70900010C6A8D8DD&affID=120698&tsp=4960
FF SearchEngineOrder.1: Delta Search
FF SearchEngineOrder.3: Bing
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Documents and Settings\Ristic\Local Settings\Application Data\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\bingp.xml
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\BitGuard.xml
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\BrowserDefender.xml

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Documents and Settings\Ristic\Local Settings\Application Data\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Documents and Settings\Ristic\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-08]
CHR Extension: (YouTube) - C:\Documents and Settings\Ristic\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-08]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-07-10] (Oracle Corporation)
R2 SoundMAX Agent Service (default); C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [45056 2002-09-20] (Analog Devices, Inc.) [File not signed]
S2 spdfrmon; C:\Program Files\SpeedItup Free\spdfrmon.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 MidiSyn; C:\WINDOWS\System32\drivers\MidiSyn.sys [88960 2004-09-14] (Analog Devices, Inc.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R0 PxHelp20; C:\WINDOWS\System32\DRIVERS\PxHelp20.sys [20016 2003-10-28] (Sonic Solutions) [File not signed]
R3 senfilt; C:\WINDOWS\System32\drivers\senfilt.sys [393088 2005-10-27] (Sensaura)
S3 twusbnet; C:\WINDOWS\System32\DRIVERS\twusbnet.sys [129536 2013-07-31] (QUALCOMM Incorporated)
S3 WCDMA_Datacard_Usb_Ser; C:\WINDOWS\System32\DRIVERS\WCDMA_Datacard_Usb_Ser.sys [105984 2013-07-31] (QUALCOMM Incorporated)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S4 IntelIde; No ImagePath
R1 iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-26 13:03 - 2014-10-26 13:03 - 00010187 _____ () C:\Documents and Settings\Ristic\Desktop\FRST.txt
2014-10-26 13:02 - 2014-10-26 13:03 - 00000000 ____D () C:\FRST
2014-10-26 13:02 - 2014-10-26 13:02 - 01104896 _____ (Farbar) C:\Documents and Settings\Ristic\Desktop\FRST(2).exe
2014-10-26 12:55 - 2014-10-26 12:56 - 00000792 _____ () C:\Documents and Settings\LocalService\Start Menu\Programs\Windows Media Player.lnk
2014-10-26 12:55 - 2014-10-26 12:56 - 00000000 ____D () C:\WINDOWS\LastGood
2014-10-26 12:55 - 2008-04-14 05:42 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpns.dll
2014-10-26 12:54 - 2014-10-26 12:54 - 00000187 _____ () C:\WINDOWS\spupdsvc.log.1.log
2014-10-26 12:54 - 2014-10-26 12:54 - 00000090 _____ () C:\WINDOWS\system32\spupdwxp.log
2014-10-26 12:49 - 2014-10-26 12:56 - 00070136 _____ () C:\WINDOWS\spupdsvc.log
2014-10-26 12:49 - 2008-04-14 05:42 - 01306624 ____N (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2014-10-26 12:49 - 2008-04-14 05:42 - 01306624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6.dll
2014-10-26 12:49 - 2008-04-14 05:40 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msaud32.acm
2014-10-26 12:49 - 2008-04-14 05:40 - 00086016 ____C (Sipro Lab Telecom Inc.) C:\WINDOWS\system32\dllcache\sl_anet.acm
2014-10-26 12:49 - 2008-04-14 05:39 - 00290816 ____C (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\dllcache\l3codeca.acm
2014-10-26 12:49 - 2008-04-13 22:58 - 00184959 ____C () C:\WINDOWS\system32\dllcache\compact.wmz
2014-10-26 12:49 - 2008-04-13 22:58 - 00066725 ____C () C:\WINDOWS\system32\dllcache\revert.wmz
2014-10-26 12:49 - 2008-04-13 22:57 - 00079872 ____N (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2014-10-26 12:49 - 2008-04-13 22:57 - 00079872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6r.dll
2014-10-26 12:49 - 2007-06-26 11:30 - 00572557 ____C () C:\WINDOWS\system32\dllcache\rtuner.wmv
2014-10-26 12:49 - 2007-06-26 11:30 - 00457607 ____C () C:\WINDOWS\system32\dllcache\mdlib.wmv
2014-10-26 12:49 - 2007-06-26 11:30 - 00381425 ____C () C:\WINDOWS\system32\dllcache\copycd.wmv
2014-10-26 12:49 - 2007-06-26 11:30 - 00375519 ____C () C:\WINDOWS\system32\dllcache\nuskin.wmv
2014-10-26 12:49 - 2007-06-26 11:30 - 00354468 ____C () C:\WINDOWS\system32\dllcache\wmpaud1.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00343204 ____C () C:\WINDOWS\system32\dllcache\wmpaud7.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00343204 ____C () C:\WINDOWS\system32\dllcache\wmpaud6.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00300969 ____C () C:\WINDOWS\system32\dllcache\viz.wmv
2014-10-26 12:49 - 2007-06-26 11:30 - 00172196 ____C () C:\WINDOWS\system32\dllcache\wmpaud9.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00172196 ____C () C:\WINDOWS\system32\dllcache\wmpaud8.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00172196 ____C () C:\WINDOWS\system32\dllcache\wmpaud3.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00086196 ____C () C:\WINDOWS\system32\dllcache\wmpaud5.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00086180 ____C () C:\WINDOWS\system32\dllcache\wmpaud4.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00086180 ____C () C:\WINDOWS\system32\dllcache\wmpaud2.wav
2014-10-26 12:49 - 2007-06-26 11:30 - 00022060 ____C () C:\WINDOWS\system32\dllcache\npds.zip
2014-10-26 12:49 - 2007-06-26 11:30 - 00010457 ____C () C:\WINDOWS\system32\dllcache\wmptour.hta
2014-10-26 12:49 - 2007-06-26 11:30 - 00009585 ____C () C:\WINDOWS\system32\dllcache\controls.css
2014-10-26 12:49 - 2007-06-26 11:30 - 00008298 ____C () C:\WINDOWS\system32\dllcache\contents.htm
2014-10-26 12:49 - 2007-06-26 11:30 - 00006878 ____C () C:\WINDOWS\system32\dllcache\controls.js
2014-10-26 12:49 - 2007-06-26 11:30 - 00005971 ____C () C:\WINDOWS\system32\dllcache\events.js
2014-10-26 12:49 - 2007-06-26 11:30 - 00003187 ____C () C:\WINDOWS\system32\dllcache\tour.js
2014-10-26 12:49 - 2007-06-26 11:30 - 00001771 ____C () C:\WINDOWS\system32\dllcache\wmptour.css
2014-10-26 12:49 - 2007-06-26 11:30 - 00001148 ____C () C:\WINDOWS\system32\dllcache\snd.htm
2014-10-26 12:49 - 2007-06-26 11:30 - 00000420 ____C () C:\WINDOWS\system32\dllcache\wmploc.js
2014-10-26 12:49 - 2007-06-26 11:29 - 00097117 ____C () C:\WINDOWS\system32\dllcache\mplayer2.hlp
2014-10-26 12:49 - 2007-06-26 11:29 - 00001885 ____C () C:\WINDOWS\system32\dllcache\mplayer2.cnt
2014-10-26 12:49 - 2007-06-26 11:28 - 00613334 ____C () C:\WINDOWS\system32\dllcache\wmplayer.chm
2014-10-26 12:49 - 2007-06-26 11:28 - 00067374 ____C () C:\WINDOWS\system32\dllcache\wmplayer.adm
2014-10-26 12:49 - 2007-06-26 11:26 - 00077307 ____C () C:\WINDOWS\system32\dllcache\plyr_err.chm
2014-10-26 12:49 - 2007-06-26 11:26 - 00001477 ____C () C:\WINDOWS\system32\dllcache\plylst6.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001477 ____C () C:\WINDOWS\system32\dllcache\plylst5.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001474 ____C () C:\WINDOWS\system32\dllcache\plylst3.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001451 ____C () C:\WINDOWS\system32\dllcache\plylst12.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001448 ____C () C:\WINDOWS\system32\dllcache\plylst4.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001250 ____C () C:\WINDOWS\system32\dllcache\plylst1.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001049 ____C () C:\WINDOWS\system32\dllcache\plylst2.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001046 ____C () C:\WINDOWS\system32\dllcache\plylst7.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00001036 ____C () C:\WINDOWS\system32\dllcache\plylst8.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000789 ____C () C:\WINDOWS\system32\dllcache\plylst11.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000787 ____C () C:\WINDOWS\system32\dllcache\plylst10.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000784 ____C () C:\WINDOWS\system32\dllcache\plylst9.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000783 ____C () C:\WINDOWS\system32\dllcache\plylst13.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000775 ____C () C:\WINDOWS\system32\dllcache\plylst14.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000733 ____C () C:\WINDOWS\system32\dllcache\plylst15.wpl
2014-10-26 12:49 - 2007-06-26 11:26 - 00000403 ____C () C:\WINDOWS\system32\dllcache\npdrmv2.zip
2014-10-26 12:49 - 2007-04-02 23:21 - 00023195 ____C () C:\WINDOWS\system32\dllcache\wmplay.chm
2014-10-26 12:48 - 2014-10-26 12:48 - 00000000 ____D () C:\WINDOWS\system32\scripting
2014-10-26 12:48 - 2014-10-26 12:48 - 00000000 ____D () C:\WINDOWS\system32\bits
2014-10-26 12:48 - 2014-10-26 12:48 - 00000000 ____D () C:\WINDOWS\l2schemas
2014-10-26 12:48 - 2008-04-14 05:42 - 04274816 ____N (NVIDIA Corporation) C:\WINDOWS\system32\nv4_disp.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 01737856 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\mtxparhd.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00712704 ____N (Microsoft Corporation) C:\WINDOWS\system32\windowscodecs.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00412160 ____N (Microsoft Corporation) C:\WINDOWS\system32\photometadatahandler.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00397056 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\s3gnb.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00346112 ____N (Microsoft Corporation) C:\WINDOWS\system32\windowscodecsext.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00291328 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagentrt.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00290304 ____N (Microsoft Corporation) C:\WINDOWS\system32\rhttpaa.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00286792 ____N (Smart Link) C:\WINDOWS\system32\slextspk.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00276992 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmphoto.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00193024 ____N (Microsoft Corporation) C:\WINDOWS\system32\napmontr.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00188508 ____N (Smart Link) C:\WINDOWS\system32\slgen.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00176640 ____N (Microsoft Corporation) C:\WINDOWS\system32\napstat.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00155136 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00150528 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagent.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00144384 ____N (Microsoft Corporation) C:\WINDOWS\system32\onex.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00121856 ____N (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00076800 ____N (Microsoft Corporation) C:\WINDOWS\system32\qutil.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00073832 ____N (Smart Link) C:\WINDOWS\system32\slcoinst.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00073796 ____N (Smart Link) C:\WINDOWS\system32\slserv.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00069120 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00062464 ____N (Microsoft Corporation) C:\WINDOWS\system32\qcliprov.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00061952 ____N (Microsoft Corporation) C:\WINDOWS\system32\rasqec.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00053248 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00050688 ____N (Microsoft Corporation) C:\WINDOWS\system32\tspkg.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcperf.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00032866 ____N (Smart Link) C:\WINDOWS\system32\slrundll.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00032866 ____N (Smart Link) C:\WINDOWS\slrundll.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00032768 ____N (Microsoft Corporation) C:\WINDOWS\system32\setupn.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00030208 ____N (Microsoft Corporation) C:\WINDOWS\system32\napipsec.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe
2014-10-26 12:48 - 2008-04-14 05:42 - 00023040 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativmvxx.ax
2014-10-26 12:48 - 2008-04-14 05:42 - 00010752 ____N (Microsoft Corporation) C:\WINDOWS\system32\smtpapi.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\rwnh.dll
2014-10-26 12:48 - 2008-04-14 05:42 - 00009728 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativdaxx.ax
2014-10-26 12:48 - 2008-04-14 05:41 - 00870784 ____N (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3d1ag.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00650752 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00397312 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcex.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00377984 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvaa.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00233472 ____N (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00184832 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\microsoft.managementconsole.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00180224 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00136192 ____N (Microsoft Corporation) C:\WINDOWS\system32\aaclient.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00132096 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00126976 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00106496 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcfxcommon.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00094208 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00086016 ____N (Conexant) C:\WINDOWS\system32\mdmxsdk.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00061440 ____N (Microsoft Corporation) C:\WINDOWS\system32\kmsvc.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00059392 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapqec.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00057856 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3cfg.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00056320 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00048640 ____N (Microsoft Corporation) C:\WINDOWS\system32\dhcpqec.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3gpclnt.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00037376 ____N (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00032768 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativtmxx.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00032285 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\hsfcisp2.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00030720 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapolqec.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00026112 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00019456 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsntfy.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00009216 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll
2014-10-26 12:48 - 2008-04-14 05:41 - 00007168 ____N (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll
2014-10-26 12:48 - 2008-04-14 05:40 - 00102912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dpcdll.dll
2014-10-26 12:48 - 2008-04-14 05:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdpash.dll
2014-10-26 12:48 - 2008-04-14 05:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdnepr.dll
2014-10-26 12:48 - 2008-04-14 05:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdiultn.dll
2014-10-26 12:48 - 2008-04-14 05:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdbhc.dll
2014-10-26 12:48 - 2008-04-14 00:15 - 00046592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irbus.sys
2014-10-26 12:48 - 2008-04-14 00:13 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\comsdupd.exe
2014-10-26 12:48 - 2008-04-13 23:45 - 00076800 ____N (Microsoft Corporation) C:\WINDOWS\system32\msshavmsg.dll
2014-10-26 12:48 - 2008-04-13 23:09 - 00689152 ____N (Microsoft Corporation) C:\WINDOWS\system32\xpsp3res.dll
2014-10-26 12:47 - 2014-10-26 12:49 - 00000000 ____D () C:\WINDOWS\ServicePackFiles
2014-10-26 12:46 - 2008-04-14 05:42 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlimport.exe
2014-10-26 12:45 - 2014-10-26 12:48 - 00095071 _____ () C:\WINDOWS\updspapi.log
2014-10-26 12:45 - 2008-04-14 05:42 - 00011325 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\vchnt5.dll
2014-10-26 12:45 - 2008-04-14 05:42 - 00003901 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\siint5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv04nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00021183 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv01nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00017279 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv10nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00015423 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\ch7xxnt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00014143 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv06nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00011359 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv02nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00004255 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv01nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00003967 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv02nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00003775 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv11nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00003711 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv09nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00003647 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv07nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00003615 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv05nt5.dll
2014-10-26 12:45 - 2008-04-14 05:41 - 00003135 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv08nt5.dll
2014-10-26 12:45 - 2008-04-14 00:26 - 00030592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rndismpx.sys
2014-10-26 12:45 - 2008-04-14 00:26 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023x.sys
2014-10-26 12:45 - 2008-04-14 00:21 - 00101120 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00273024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00059136 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00037888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00036480 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthprint.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthusb.sys
2014-10-26 12:45 - 2008-04-14 00:16 - 00017024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2014-10-26 12:45 - 2008-04-14 00:15 - 00019200 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidir.sys
2014-10-26 12:45 - 2008-04-14 00:13 - 00014208 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wacompen.sys
2014-10-26 12:45 - 2008-04-14 00:13 - 00012672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mutohpen.sys
2014-10-26 12:45 - 2008-04-14 00:10 - 00010240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sffp_mmc.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00046464 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gagp30kx.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00044928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agpcpq.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00044672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uagp35.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00043008 ____N (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdagp.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00042752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\alim1541.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00042368 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agp440.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00042240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\viaagp.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00040960 ____N (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\Drivers\sisagp.sys
2014-10-26 12:45 - 2008-04-14 00:06 - 00005888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\smbali.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 01309184 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlstrm.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 01041536 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfdpsp2.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00685056 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfcxts2.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00404990 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slntamr.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00220032 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfbs2s2.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00180360 ____N (Smart Link) C:\WINDOWS\system32\Drivers\ntmtlfax.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00129535 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnt7554.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00126686 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlmnt5.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00095424 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnthal.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00013776 ____N (Smart Link) C:\WINDOWS\system32\Drivers\recagent.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00013240 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slwdmsup.sys
2014-10-26 12:45 - 2008-04-13 23:53 - 00011868 ____N (Conexant) C:\WINDOWS\system32\Drivers\mdmxsdk.sys
2014-10-26 12:45 - 2008-04-13 22:06 - 00144384 ____N (Windows (R) Server 2003 DDK provider) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 01897408 ____N (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nv4_mini.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00452736 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\Drivers\mtxparhm.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00327040 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtaa.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00166912 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\Drivers\s3gnbm.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00104960 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinrvxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00073216 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atintuxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00063663 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1rvxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00063488 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxsxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00057856 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinbtxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00056623 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1btxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00052224 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinraxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00036463 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1tuxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00034735 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xsxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00031744 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxbxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00030671 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1raxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00029455 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xbxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00028672 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinsnxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00026367 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1snxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv10nt.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00022271 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv06nt.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00021343 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1ttxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00014336 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinpdxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinttxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinmdxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00012047 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1pdxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00011935 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv11nt.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00011871 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv09nt.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00011807 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv07nt.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00011615 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1mdxx.sys
2014-10-26 12:45 - 2008-04-13 22:04 - 00011295 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv08nt.sys
2014-10-26 12:45 - 2007-04-02 21:36 - 00129045 ____N () C:\WINDOWS\system32\Drivers\cxthsfs2.cty
2014-10-26 12:45 - 2006-12-29 20:21 - 00064352 ____N () C:\WINDOWS\system32\Drivers\ativmc20.cod
2014-10-26 12:45 - 2006-12-29 20:02 - 00067866 ____N () C:\WINDOWS\system32\Drivers\netwlan5.img
2014-10-26 12:43 - 2007-08-10 20:46 - 00026488 _____ (Microsoft Corporation) C:\WINDOWS\system32\spupdsvc.exe
2014-10-26 12:43 - 2007-08-10 20:46 - 00017272 ____N (Microsoft Corporation) C:\WINDOWS\system32\spmsg.dll
2014-10-26 12:43 - 2006-12-29 00:31 - 00019569 _____ () C:\WINDOWS\002927_.tmp
2014-10-26 12:40 - 2014-10-26 12:43 - 00000000 __HDC () C:\WINDOWS\$NtServicePackUninstall$
2014-10-26 12:38 - 2014-10-26 12:56 - 00027194 _____ () C:\WINDOWS\setupapi.log
2014-10-26 12:37 - 2014-10-26 12:52 - 00503880 _____ () C:\WINDOWS\svcpack.log
2014-10-26 12:32 - 2014-10-26 12:36 - 331805736 _____ (Microsoft Corporation) C:\Documents and Settings\Ristic\Desktop\windowsxp-kb936929-sp3-x86-enu_c81472f7eeea2eca421e116cd4c03e2300ebfde4.exe
2014-10-26 12:31 - 2014-10-26 12:31 - 00022048 _____ () C:\Documents and Settings\Ristic\Desktop\AdwCleaner[S0].txt
2014-10-26 12:30 - 2014-10-26 13:00 - 00000000 ____D () C:\Documents and Settings\Ristic\Application Data\isafe
2014-10-26 12:12 - 2014-10-26 12:27 - 00000000 ____D () C:\AdwCleaner
2014-10-26 12:11 - 2014-10-26 12:12 - 01962496 _____ () C:\Documents and Settings\Ristic\Desktop\AdwCleaner.exe
2014-10-26 00:41 - 2014-10-26 00:41 - 00013981 _____ () C:\ComboFix.txt
2014-10-26 00:41 - 2014-10-26 00:41 - 00000000 ____D () C:\Documents and Settings\NetworkService\Local Settings\temp
2014-10-26 00:41 - 2014-10-26 00:41 - 00000000 ____D () C:\Documents and Settings\LocalService\Local Settings\temp
2014-10-25 21:18 - 2014-10-26 00:33 - 00008192 ____H () C:\WINDOWS\system32\config\SECURITY.tmp.LOG
2014-10-25 21:18 - 2014-10-25 21:18 - 00000000 ____H () C:\WINDOWS\system32\config\system.tmp.LOG
2014-10-25 21:18 - 2014-10-25 21:18 - 00000000 ____H () C:\WINDOWS\system32\config\software.tmp.LOG
2014-10-25 21:18 - 2014-10-25 21:18 - 00000000 ____H () C:\WINDOWS\system32\config\SAM.tmp.LOG
2014-10-25 21:18 - 2014-10-25 21:18 - 00000000 ____H () C:\WINDOWS\system32\config\default.tmp.LOG
2014-10-25 20:26 - 2014-10-25 20:26 - 00000000 _RSHD () C:\cmdcons
2014-10-25 20:26 - 2013-07-03 19:51 - 00000211 _____ () C:\Boot.bak
2014-10-25 20:26 - 2004-08-03 22:00 - 00260272 __RSH () C:\cmldr
2014-10-25 20:20 - 2014-10-25 20:20 - 00000918 _____ () C:\Documents and Settings\Ristic\Desktop\Shortcut to ComboFix.lnk
2014-10-25 20:10 - 2014-10-26 00:42 - 00000000 ____D () C:\Qoobox
2014-10-25 20:10 - 2011-06-26 07:45 - 00256000 _____ () C:\WINDOWS\PEV.exe
2014-10-25 20:10 - 2010-11-07 18:20 - 00208896 _____ () C:\WINDOWS\MBR.exe
2014-10-25 20:10 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe
2014-10-25 20:10 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe
2014-10-25 20:10 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe
2014-10-25 20:10 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe
2014-10-25 20:10 - 2000-08-31 01:00 - 00098816 _____ () C:\WINDOWS\sed.exe
2014-10-25 20:10 - 2000-08-31 01:00 - 00080412 _____ () C:\WINDOWS\grep.exe
2014-10-25 20:10 - 2000-08-31 01:00 - 00068096 _____ () C:\WINDOWS\zip.exe
2014-10-25 20:09 - 2014-10-26 00:33 - 00000000 ____D () C:\WINDOWS\erdnt
2014-10-25 19:50 - 2014-10-25 19:50 - 00010435 _____ () C:\Documents and Settings\Ristic\Desktop\dds.txt
2014-10-25 19:50 - 2014-10-25 19:50 - 00007242 _____ () C:\Documents and Settings\Ristic\Desktop\attach.txt
2014-10-25 18:55 - 2014-10-25 18:55 - 00000000 ____D () C:\Documents and Settings\Ristic\Application Data\Gena01
2014-10-25 18:55 - 2014-10-25 18:55 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Win32Pad
2014-10-25 18:08 - 2014-10-25 18:08 - 00000000 ___SD () C:\Program Files\Sitecom 3G MiFi
2014-10-25 18:08 - 2014-10-25 18:08 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Sitecom 3G MiFi
2014-10-25 18:08 - 2013-07-31 16:14 - 00129536 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\twusbnet.sys
2014-10-25 18:08 - 2013-07-31 16:14 - 00105984 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\WCDMA_Datacard_Usb_Ser.sys
2014-10-14 01:00 - 2014-10-14 01:00 - 00000104 _____ () C:\Documents and Settings\Ristic\Desktop\Shortcut to My Computer.lnk
2014-10-11 15:56 - 2014-10-11 16:49 - 00000000 ____D () C:\Documents and Settings\Ristic\Desktop\xCATx
2014-10-10 00:33 - 2014-10-18 19:09 - 00000000 ____D () C:\Documents and Settings\Ristic\Desktop\Uno, Duo
2014-09-29 21:59 - 2014-10-23 13:46 - 00000000 ____D () C:\Documents and Settings\Ristic\Desktop\maki
2014-09-26 14:51 - 2014-09-26 14:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-26 13:03 - 2013-07-03 20:01 - 00000000 ____D () C:\Documents and Settings\Ristic\Local Settings\Temp
2014-10-26 13:02 - 2014-06-05 16:14 - 00000000 ____D () C:\Documents and Settings\Ristic\Application Data\BitTorrent
2014-10-26 13:01 - 2013-07-03 19:55 - 00403352 _____ () C:\WINDOWS\WindowsUpdate.log
2014-10-26 13:00 - 2013-12-05 11:46 - 00000000 ____D () C:\Program Files\iSafe
2014-10-26 13:00 - 2013-07-14 12:17 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-10-26 12:57 - 2013-07-03 21:46 - 00475330 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-10-26 12:56 - 2013-07-03 21:46 - 00003585 _____ () C:\WINDOWS\tabletoc.log
2014-10-26 12:56 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\Help
2014-10-26 12:56 - 2013-07-03 20:03 - 00101656 _____ () C:\Documents and Settings\Ristic\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2014-10-26 12:56 - 2013-07-03 20:01 - 00000792 _____ () C:\Documents and Settings\Ristic\Start Menu\Programs\Windows Media Player.lnk
2014-10-26 12:56 - 2013-07-03 20:01 - 00000767 _____ () C:\Documents and Settings\Ristic\Start Menu\Programs\Internet Explorer.lnk
2014-10-26 12:56 - 2013-07-03 20:01 - 00000738 _____ () C:\Documents and Settings\Ristic\Start Menu\Programs\Outlook Express.lnk
2014-10-26 12:56 - 2013-07-03 19:56 - 00316640 _____ () C:\WINDOWS\WMSysPr9.prx
2014-10-26 12:56 - 2013-07-03 19:53 - 00054676 _____ () C:\WINDOWS\wmsetup.log
2014-10-26 12:55 - 2013-07-03 21:45 - 00173420 _____ () C:\WINDOWS\setupact.log
2014-10-26 12:55 - 2013-07-03 19:53 - 00000359 _____ () C:\WINDOWS\DtcInstall.log
2014-10-26 12:55 - 2004-08-04 01:07 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-10-26 12:54 - 2013-07-03 21:49 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-10-26 12:54 - 2013-07-03 21:49 - 00000050 _____ () C:\WINDOWS\wiaservc.log
2014-10-26 12:54 - 2013-07-03 20:00 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-10-26 12:53 - 2013-07-03 21:45 - 00338648 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-10-26 12:53 - 2013-07-03 21:40 - 00524288 _____ () C:\WINDOWS\system32\config\ACEEvent.evt
2014-10-26 12:53 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\security
2014-10-26 12:53 - 2013-07-03 20:01 - 00000178 ___SH () C:\Documents and Settings\Ristic\ntuser.ini
2014-10-26 12:53 - 2013-07-03 20:00 - 00032332 _____ () C:\WINDOWS\SchedLgU.Txt
2014-10-26 12:52 - 2013-07-03 21:46 - 00120860 _____ () C:\WINDOWS\iis6.log
2014-10-26 12:52 - 2013-07-03 21:46 - 00037468 _____ () C:\WINDOWS\tsoc.log
2014-10-26 12:52 - 2013-07-03 21:46 - 00032276 _____ () C:\WINDOWS\comsetup.log
2014-10-26 12:52 - 2013-07-03 21:46 - 00020574 _____ () C:\WINDOWS\ntdtcsetup.log
2014-10-26 12:52 - 2013-07-03 21:46 - 00004149 _____ () C:\WINDOWS\ocmsn.log
2014-10-26 12:52 - 2013-07-03 21:46 - 00002711 _____ () C:\WINDOWS\imsins.log
2014-10-26 12:51 - 2013-07-03 21:46 - 00057402 _____ () C:\WINDOWS\FaxSetup.log
2014-10-26 12:51 - 2013-07-03 21:46 - 00055151 _____ () C:\WINDOWS\ocgen.log
2014-10-26 12:51 - 2013-07-03 21:46 - 00030424 _____ () C:\WINDOWS\msmqinst.log
2014-10-26 12:51 - 2013-07-03 21:46 - 00013159 _____ () C:\WINDOWS\netfxocm.log
2014-10-26 12:51 - 2013-07-03 21:46 - 00006979 _____ () C:\WINDOWS\MedCtrOC.log
2014-10-26 12:51 - 2013-07-03 21:46 - 00004126 _____ () C:\WINDOWS\msgsocm.log
2014-10-26 12:49 - 2013-07-03 19:56 - 00001563 _____ () C:\Documents and Settings\All Users\Start Menu\Set Program Access and Defaults.lnk
2014-10-26 12:49 - 2013-07-03 19:53 - 00001281 _____ () C:\WINDOWS\sessmgr.setup.log
2014-10-26 12:49 - 2013-07-03 19:52 - 00000000 ____D () C:\Program Files\Messenger
2014-10-26 12:49 - 2013-07-03 19:51 - 00000373 _____ () C:\WINDOWS\cmsetacl.log
2014-10-26 12:49 - 2013-07-03 19:51 - 00000000 ___RD () C:\Documents and Settings\All Users\Start Menu\Programs\Accessories
2014-10-26 12:48 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\system32\usmt
2014-10-26 12:48 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\system32\inetsrv
2014-10-26 12:48 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\PeerNet
2014-10-26 12:48 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\ime
2014-10-26 12:48 - 2013-07-03 19:54 - 00000000 ____D () C:\Program Files\Movie Maker
2014-10-26 12:46 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\system32\npp
2014-10-26 12:46 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\system
2014-10-26 12:46 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\mui
2014-10-26 12:46 - 2013-07-03 21:40 - 00000000 ____D () C:\WINDOWS\msagent
2014-10-26 12:46 - 2013-07-03 19:54 - 00000000 ____D () C:\WINDOWS\system32\Restore
2014-10-26 12:46 - 2013-07-03 19:54 - 00000000 ____D () C:\WINDOWS\srchasst
2014-10-26 12:46 - 2013-07-03 19:54 - 00000000 ____D () C:\Program Files\Outlook Express
2014-10-26 12:46 - 2013-07-03 19:54 - 00000000 ____D () C:\Program Files\NetMeeting
2014-10-26 12:46 - 2013-07-03 19:53 - 00000000 ____D () C:\Program Files\Common Files\System
2014-10-26 12:46 - 2013-07-03 19:52 - 00000000 ____D () C:\WINDOWS\system32\Com
2014-10-26 12:46 - 2013-07-03 19:52 - 00000000 ____D () C:\Program Files\Windows NT
2014-10-26 12:44 - 2004-08-04 01:07 - 00250048 __RSH () C:\ntldr
2014-10-26 12:43 - 2013-07-03 21:05 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
2014-10-26 12:30 - 2013-07-03 21:45 - 01752093 _____ () C:\WINDOWS\setupapi.log.0.old
2014-10-26 12:29 - 2013-08-31 07:54 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\AVAST Software
2014-10-26 12:27 - 2013-10-29 18:21 - 00000000 ____D () C:\Documents and Settings\Ristic\Local Settings\Application Data\CRE
2014-10-26 12:27 - 2013-07-03 20:01 - 00000000 ____D () C:\Documents and Settings\Ristic
2014-10-26 10:55 - 2013-08-04 18:10 - 00001002 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2025429265-1336601894-839522115-1003UA.job
2014-10-26 09:53 - 2013-07-03 19:59 - 00000000 __SHD () C:\Documents and Settings\NetworkService
2014-10-26 00:38 - 2004-08-04 01:07 - 00000227 _____ () C:\WINDOWS\system.ini
2014-10-26 00:33 - 2013-07-03 21:45 - 00495616 _____ () C:\WINDOWS\system32\config\SECURITY.bak
2014-10-26 00:33 - 2013-07-03 21:45 - 00028672 _____ () C:\WINDOWS\system32\config\SAM.bak
2014-10-26 00:33 - 2013-07-03 21:44 - 24592384 _____ () C:\WINDOWS\system32\config\software.bak
2014-10-26 00:33 - 2013-07-03 21:44 - 04980736 _____ () C:\WINDOWS\system32\config\system.bak
2014-10-26 00:33 - 2013-07-03 21:44 - 00253952 _____ () C:\WINDOWS\system32\config\default.bak
2014-10-25 20:43 - 2013-08-11 13:42 - 00000000 ____D () C:\WINDOWS\Minidump
2014-10-25 20:33 - 2013-07-04 09:23 - 00000000 __SHD () C:\WINDOWS\CSC
2014-10-25 20:26 - 2013-07-03 21:44 - 00000327 __RSH () C:\boot.ini
2014-10-23 21:44 - 2013-08-10 10:35 - 00469504 ___SH () C:\Documents and Settings\Ristic\Desktop\Thumbs.db
2014-10-23 12:55 - 2013-08-04 18:10 - 00000980 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2025429265-1336601894-839522115-1003Core.job
2014-10-15 19:51 - 2014-06-24 09:47 - 00000000 ____D () C:\Documents and Settings\Ristic\Desktop\New Folder
2014-10-14 19:51 - 2013-10-29 17:44 - 00000492 _____ () C:\Documents and Settings\Ristic\My Documents\spider.sav
2014-09-28 11:09 - 2013-10-30 17:35 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-09-26 15:00 - 2013-07-03 22:18 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-09-26 15:00 - 2013-07-03 22:18 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl

Files to move or delete:
====================
C:\Documents and Settings\Ristic\TempWmicBatchFile.bat


Some content of TEMP:
====================
C:\Documents and Settings\Ristic\Local Settings\Temp\Quarantine.exe
C:\Documents and Settings\Ristic\Local Settings\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

Start
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
SearchScopes: HKCU - {3C7B5DCC-7F96-42D8-9FD8-D392E905B0D0} URL = http://www.only-search.com/?babsrc=SP_kms&affID=129300&tt=160714_kms&mntrid=70900010C6A8D8DD&tsp=5314&q={searchTerms}
SearchScopes: HKCU - {81DE073D-060E-428F-804D-1F017BF4AFE6} URL = http://www.only-search.com/?babsrc=SP_kms&affID=129300&tt=160714_kms&mntrid=70900010C6A8D8DD&tsp=5314&q={searchTerms}
FF NewTab: hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=70900010C6A8D8DD&affID=120698&tsp=4960
FF SearchEngineOrder.1: Delta Search
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\BitGuard.xml
FF SearchPlugin: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\BrowserDefender.xml
S2 spdfrmon; C:\Program Files\SpeedItup Free\spdfrmon.exe [X]
R1 iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [X]
C:\Documents and Settings\Ristic\TempWmicBatchFile.bat
EmpyTemp:
End


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Pridružio: 25 Okt 2014
  • Poruke: 17

mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:


QuickScan;
autoclean;


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Pridružio: 25 Okt 2014
  • Poruke: 17

Napisano: 26 Okt 2014 14:12

Zoek.exe v5.0.0.0 Updated 24-10-2014
Tool run by Ristic on 26.10.2014 at 13:43:19,98.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\Ristic\Desktop\New Folder (2)\zoek.com [Scan all users] [Script inserted]

==== System Restore Info ======================

10/26/2014 1:43:54 PM Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default

user.js not found
---- Lines CT3289075 removed from prefs.js ----
user_pref("CT3289075.UserID", "UN19881371528013303");
user_pref("CT3289075.fullUserID", "UN19881371528013303.IN.20140123182256");
user_pref("CT3289075.installerVersion", "1.8.1.4");
user_pref("CT3289075.toolbarInstallDate", "23-01-2014 18:22:56");
user_pref("CT3289075.versionFromInstaller", "10.23.0.722");
user_pref("CT3289075.xpeMode", "1");
---- Lines a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510 removed from prefs.js ----
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6c
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6c
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6c
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6c
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6c
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6c
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d2
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d2
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.active", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.addressbar", "NA");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.addressbarenhanced", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.asyncdb.was_copied", "true");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.asyncdb_dbWasSet", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.asyncdb_dbWasSet_FF25_FIX", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.asyncinternaldb.was_copied", "true");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.asyncinternaldb_dbWasSet", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.asyncinternaldb_dbWasSet_FF25_FIX", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.backgroundver", 1);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.certdomaininstaller", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.changeprevious", false);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.cookie.InstallationTime.value", "1403099964");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.cookie.jw_token.expiration", "Fri Feb 01 2030 00
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.cookie.jw_token.value", "%2277e10540-9d2f-9097-9
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.cookie.uc.expiration", "Fri Oct 10 2014 15:33:31
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.cookie.uc.value", "%22%5C%22RS%5C%22%22");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.description", "iWebar");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.domain", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.enablesearch", false);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.homepage", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.iframe", false);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.InstallationTime", 1403099964);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb._installer_additional_info.expiration
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb._installer_additional_info.value", "%
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_appVer.value", "356");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_lastVersion.value", "37");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_nextCheck.expiration", "Thu
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_remote_resources.expiration
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817940.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817941.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817942.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817943.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817944.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817945.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817946.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817947.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817948.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817949.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817950.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817951.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817953.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817954.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817955.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817956.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.internaldb.Resources_resource_817957.expiration"
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.lastDailyReport", "1412846517454");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.lastUpdate", "1412846517086");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.manifesturl", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.name", "iWebar");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.newtab", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.opensearch", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.pluginsurl", "http://js.newdatastatsserv.com/plu
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.pluginsversion", 175);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.publisher", "iWebar");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.searchstatus", 0);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.setnewtab", false);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.thankyou", "");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.updateinterval", 360);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.35510.ver", 356);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.apps", "35510");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.bic", "146af4661ca3355b49858d21811b7a09");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.cid", 35510);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.firstrun", false);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.hadappinstalled", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.installationdate", 1403099964);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.installerAdditionalInfo", "{\"asw\":[2, 109051908]}");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.modetype", "production");
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.reportInstall", true);
user_pref("extensions.a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510.statsDailyCounter", 216);
---- Lines aFCDO95039354CZOZWUA38283062com61183 removed from prefs.js ----
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.active", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.addressbar", "NA");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.addressbarenhanced", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.aFCDO95039354CZOZWUA38283062com61183_dbWasSet", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.aFCDO95039354CZOZWUA38283062com61183_dbWasSet_FF25_FIX", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.asyncdb.was_copied", "true");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.asyncdb_dbWasSet", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.asyncdb_dbWasSet_FF25_FIX", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.asyncinternaldb.was_copied", "true");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.asyncinternaldb_dbWasSet", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.asyncinternaldb_dbWasSet_FF25_FIX", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.backgroundver", 2);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.certdomaininstaller", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.changeprevious", false);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.au.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Europe Standard Ti
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.au.value", "%222014-7-21%22");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.cnt.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Europe Standard T
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.cnt.value", "%22RS%22");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.first_run.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Europe Stan
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.first_run.value", "%221%22");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.install.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Europe Standa
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.install.value", "%222014-7-20%22");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Euro
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.InstallationTime.value", "%221405865434%22");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Europ
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.cookie.InstallerParams.value", "%7B%22source_id%22%3A%22001825%22%2C%22sub_id%22%3A%2
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.description", "Images Zoom Extension");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.domain", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.enablesearch", false);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.homepage", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.iframe", false);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.InstallationThankYouPage", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.InstallationTime", 1405865434);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.__defualt_browser__.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Centr
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.__defualt_browser__.value", "%22ff%22");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb._installer_additional_info.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb._installer_additional_info.value", "%7B%22asw%22%3A%5B2%2C41943044%2C0%5D%
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.installer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Europe
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.installer.value", "%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic%22%
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Cent
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%220CDF8F0EB02246FF
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central E
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerParams.value", "%7B%22source_id%22%3A%22001825%22%2C%22sub_id%22%
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerParamsCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Cent
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerParamsCache.value", "%7B%22source_id%22%3A%22001825%22%2C%22sub_i
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerUserIdentifiersCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.InstallerUserIdentifiersCache.value", "%7B%22installer_bic%22%3A%220CDF8F0
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 00:00:00 GMT
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 2030 00:00:00
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_bundledWithHash.value", "null");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2030 00:00:00
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Feb 01 2030 0
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_appVer.value", "28");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Cen
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central Eu
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_meta.value", "%7B%22zoom.js%22%3A%7B%22id%22%3A733476%2C%22ver%2
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_nextCheck.expiration", "Mon Jul 21 2014 16:24:18 GMT+0200 (Centr
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100 (Central E
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_remote_resources.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_remote_resources.value", "%7B%22remoteId%22%3A0%7D");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733476.expiration", "Sat Oct 18 2014 16:17:58 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733478.expiration", "Sat Oct 18 2014 16:17:59 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733480.expiration", "Sat Oct 18 2014 16:17:59 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733480.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0K
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733481.expiration", "Sat Oct 18 2014 16:17:58 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733481.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0K
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733482.expiration", "Sat Oct 18 2014 16:17:58 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733483.expiration", "Sat Oct 18 2014 16:17:58 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733484.expiration", "Sat Oct 18 2014 16:17:58 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733484.value", "%22data%3Aimage/gif%3Bbase64%2CR0lGODlh
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.internaldb.Resources_resource_733485.expiration", "Sat Oct 18 2014 16:17:58 GMT+0200
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.lastDailyReport", "1405931056006");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.lastUpdate", "1405931055813");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.manifesturl", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.name", "TheGoPhoto.it V10");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.newtab", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.opensearch", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.pluginsurl", "http://js.genstatsnet.com/plugin/apps/61183/plugins/na/ff/plugins.json"
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.pluginsversion", 23);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.publisher", "Joseph CM");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.searchstatus", 0);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.setnewtab", false);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.thankyou", "");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.updateinterval", 360);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.61183.ver", 28);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.apps", "61183");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.bic", "146af4661ca3355b49858d21811b7a09");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.cid", 61183);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.firstrun", false);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.hadappinstalled", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.installationdate", 1405865862);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.installerAdditionalInfo", "{\"asw\":[2, 41943044, 0]}");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.modetype", "production");
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.reportInstall", true);
user_pref("extensions.aFCDO95039354CZOZWUA38283062com61183.statsDailyCounter", 3);
---- Lines crossrider removed from prefs.js ----
user_pref("extensions.crossrider.bic", "146af4661ca3355b49858d21811b7a09");
---- Lines smartbar removed from prefs.js ----
user_pref("smartbar.machineId", "5DLOULEK84U9ANWFHI2N9/RCPXY");
---- Lines extensions.520785cc170b2 removed from prefs.js ----
user_pref("extensions.520785cc170b2.epoch", "1383692657");
user_pref("extensions.520785cc170b2.url", "http://getproxy5.info/sync2/?ext=vdx&pid=317&country=RS®d=130811123836&lsd=131104230418&ver=7&ind=266388
---- Lines extensions.520785cda28c3 removed from prefs.js ----
user_pref("extensions.520785cda28c3.epoch", "1383692657");
user_pref("extensions.520785cda28c3.url", "http://getjpijs.info/sync2/?ext=vdx&pid=317&country=RS®d=130811123837&lsd=131104230418&ver=7&ind=3738925
---- FireFox user.js and prefs.js backups ----

prefs__1355_.backup

==== Deleting Files \ Folders ======================

C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe deleted
C:\Documents and Settings\Ristic\.android deleted
C:\Program Files\ComPlus Applications deleted
C:\extensions deleted
C:\Documents and Settings\LocalService\Application Data\isafe deleted
C:\Documents and Settings\Ristic\Application Data\isafe deleted
C:\WINDOWS\system32\config\systemprofile\Application Data\isafe deleted
C:\DOCUME~1\ALLUSE~1\APPLIC~1\spds90.txt deleted
C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallMate deleted
C:\Documents and Settings\Ristic\Local Settings\Application Data\CRE deleted
C:\Documents and Settings\Ristic\Local Settings\Application Data\avgchrome deleted
C:\Documents and Settings\Ristic\Local Settings\Application Data\cache deleted
C:\Documents and Settings\Ristic\Local Settings\Application Data\Installer deleted
C:\Documents and Settings\Ristic\Local Settings\Application Data\CrashRpt deleted
C:\WINDOWS\002927_.tmp deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
C:\WINDOWS\wininit.ini deleted
C:\WINDOWS\SpeedItup Free Setup Log.txt deleted
C:\WINDOWS\SpeedItup Free Uninstall Log.txt deleted
C:\WINDOWS\System32\searchplugins deleted
C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\searchplugins\bingp.xml deleted
C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\CT3289075 deleted
"C:\Program Files\Common Files\System\SysMenu.dll" deleted
"C:\DOCUME~1\ALLUSE~1\APPLIC~1\6d2ebf10d51639d6\{CA41BB14-E67B-1653-C57B-5CA99418A866}" deleted
"C:\DOCUME~1\ALLUSE~1\APPLIC~1\6d2ebf10d51639d6\{CA41BB14-E67B-1653-C57B-5CA99418A866}.old" deleted
"C:\DOCUME~1\ALLUSE~1\APPLIC~1\6d2ebf10d51639d6" deleted

==== Files Recently Created / Modified ======================

====== C:\WINDOWS ====
2014-10-26 11:48:38 224A97EA5029845D2F5D1A6D85BBC798 32866 ------w- C:\WINDOWS\slrundll.exe
2014-10-25 19:10:30 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\WINDOWS\PEV.exe
2014-10-25 19:10:30 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\WINDOWS\grep.exe
2014-10-25 19:10:30 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\WINDOWS\zip.exe
2014-10-25 19:10:30 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\WINDOWS\SWSC.exe
2014-10-25 19:10:30 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\WINDOWS\MBR.exe
====== C:\DOCUME~1\Ristic\LOCALS~1\Temp ====
2014-10-19 20:58:16 5C73E64374D9BA37AC5569D1F7DE5C9B 665682 ----a-w- C:\Documents and Settings\Ristic\Local Settings\Temp\sqlite3.dll
====== Java Cache =====
====== C:\WINDOWS\system32 =====
2014-10-26 11:55:41 C5B41140DBDA488A02E8D33B5FF95686 221184 ----a-w- C:\WINDOWS\System32\wmpns.dll
2014-10-26 11:49:10 93E3D65953C59685ED1D823949C08722 1306624 ------w- C:\WINDOWS\System32\msxml6.dll
2014-10-26 11:49:10 89AFA12F6A1AD5837377E0B01C11E40E 79872 ------w- C:\WINDOWS\System32\msxml6r.dll
2014-10-26 11:48:50 F22ED2CD5E26514C6E8D21B5DA4572A3 10752 ------w- C:\WINDOWS\System32\smtpapi.dll
2014-10-26 11:48:50 5D55DEFB3AB92BC43C4DFD06935FA0F1 9728 ------w- C:\WINDOWS\System32\rwnh.dll
2014-10-26 11:48:50 5B431DCAC4A76276CEB8A1AB0C1C11F2 9728 ------w- C:\WINDOWS\System32\comsdupd.exe
2014-10-26 11:48:47 E85FD6ABA80BD637AA2AA9D93308D355 57856 ------w- C:\WINDOWS\System32\dot3cfg.dll
2014-10-26 11:48:47 E2092F0A1D7ABC243F9C2362483D150D 19456 ------w- C:\WINDOWS\System32\dimsntfy.dll
2014-10-26 11:48:47 B0C23B6813A9FCBAE18370247BE594CE 136192 ------w- C:\WINDOWS\System32\aaclient.dll
2014-10-26 11:48:47 994F947386C9A17BBA19569DC3A92B2C 32768 ------w- C:\WINDOWS\System32\ativtmxx.dll
2014-10-26 11:48:47 97AE3A4180CAB360F44F7F03E5E0F409 7168 ------w- C:\WINDOWS\System32\bitsprx4.dll
2014-10-26 11:48:47 96FF2C80DC7962D1B5016B85558109B4 9728 ------w- C:\WINDOWS\System32\ativdaxx.ax
2014-10-26 11:48:47 8E2CC37BA87D8F681066E0E9C8A19F73 26112 ------w- C:\WINDOWS\System32\dot3api.dll
2014-10-26 11:48:47 8E20D83D04076A3682706A2BE1BBA80E 12800 ------w- C:\WINDOWS\System32\credssp.dll
2014-10-26 11:48:47 5B6245518D71A6108BC385C4A8348218 233472 ------w- C:\WINDOWS\System32\azroles.dll
2014-10-26 11:48:47 4E8F3230BAC8C1CAADF01A8C728E1C5C 9216 ------w- C:\WINDOWS\System32\dot3dlg.dll
2014-10-26 11:48:47 481A805B5ABC92363CF901CFCF1EE68D 23040 ------w- C:\WINDOWS\System32\ativmvxx.ax
2014-10-26 11:48:47 2C15B4A5E8AB5BB8CFBEB375750AC05C 377984 ------w- C:\WINDOWS\System32\ati2dvaa.dll
2014-10-26 11:48:47 1B874ADE4C19D65D6557527189B8A968 870784 ------w- C:\WINDOWS\System32\ati3d1ag.dll
2014-10-26 11:48:47 11F4A22796CB652BD574D8CB03B9874C 39936 ------w- C:\WINDOWS\System32\dimsroam.dll
2014-10-26 11:48:47 11A9E0581F6441876FFBF331D294C10A 48640 ------w- C:\WINDOWS\System32\dhcpqec.dll
2014-10-26 11:48:46 F69189EB97B118B690ACCA93760AD738 39936 ------w- C:\WINDOWS\System32\dot3gpclnt.dll
2014-10-26 11:48:46 F21A712EB2B656CD86FCC057446F9C34 650752 ------w- C:\WINDOWS\System32\dot3ui.dll
2014-10-26 11:48:46 EA39DA293C8BBAA0F89419BA64734CC7 56320 ------w- C:\WINDOWS\System32\dot3msm.dll
2014-10-26 11:48:46 E6EF7BC927D9F8F9BA1584BFC39E0C6F 30720 ------w- C:\WINDOWS\System32\eapolqec.dll
2014-10-26 11:48:46 ABC4206543450C0666D152F4B65833B8 40960 ------w- C:\WINDOWS\System32\eappprxy.dll
2014-10-26 11:48:46 7954A8B0657676E947403F0AC0F21755 184832 ------w- C:\WINDOWS\System32\eapp3hst.dll
2014-10-26 11:48:46 5DB625E7D095604010CF84DE2D8ACFA6 126976 ------w- C:\WINDOWS\System32\eappcfg.dll
2014-10-26 11:48:46 3B06CDD1A41618944A906589C052F2B3 59392 ------w- C:\WINDOWS\System32\eapqec.dll
2014-10-26 11:48:46 395FD41D69C1AB8CE91FEABD2168097E 94208 ------w- C:\WINDOWS\System32\eappgnui.dll
2014-10-26 11:48:46 2187855A7703ADEF0CEF9EE4285182CC 33792 ------w- C:\WINDOWS\System32\eapsvc.dll
2014-10-26 11:48:46 0F0F6E687E5E15579EF4DA8DD6945814 132096 ------w- C:\WINDOWS\System32\dot3svc.dll
2014-10-26 11:48:46 0BCB0EBC1B08FA384EC68F253C7253EF 180224 ------w- C:\WINDOWS\System32\eapphost.dll
2014-10-26 11:48:45 F0874563D668EEC633AC52F8B6167ACD 6144 ------w- C:\WINDOWS\System32\kbdbhc.dll
2014-10-26 11:48:45 5B6EDB1DD780D8256CB301E58B4BC690 32285 ------w- C:\WINDOWS\System32\hsfcisp2.dll
2014-10-26 11:48:44 A445F7BE8100EFB90161E4868A643E34 6144 ------w- C:\WINDOWS\System32\kbdnepr.dll
2014-10-26 11:48:44 9FE65E81B4C27D967DB6646271AB242F 6144 ------w- C:\WINDOWS\System32\kbdpash.dll
2014-10-26 11:48:44 9AF037DF48AE21B6E30177DFE1481C45 86016 ------w- C:\WINDOWS\System32\mdmxsdk.dll
2014-10-26 11:48:44 9A425D4F1C1ED0DA1A35B25DE5632378 184320 ------w- C:\WINDOWS\System32\microsoft.managementconsole.dll
2014-10-26 11:48:44 8878BD685E490239777BFE51320B88E9 61440 ------w- C:\WINDOWS\System32\kmsvc.dll
2014-10-26 11:48:44 82FDD74B54E27D9BB2A486B1181EC7A9 6144 ------w- C:\WINDOWS\System32\kbdiultn.dll
2014-10-26 11:48:44 4BD42056A26567FF609902DC2840BFEC 106496 ------w- C:\WINDOWS\System32\mmcfxcommon.dll
2014-10-26 11:48:44 3F8C2784BD466834FA87F973D0FBB120 33792 ------w- C:\WINDOWS\System32\mmcperf.exe
2014-10-26 11:48:44 3879D931FBB110292A16C8A3A11D7ED4 37376 ------w- C:\WINDOWS\System32\l2gpstore.dll
2014-10-26 11:48:44 308EC3363A4784EDF02100D597111F2D 397312 ------w- C:\WINDOWS\System32\mmcex.dll
2014-10-26 11:48:43 F7BBAA9485F04E46A053E147CDFAD079 155136 ------w- C:\WINDOWS\System32\mssha.dll
2014-10-26 11:48:43 87906187B3AF89582380D156DA601F68 30208 ------w- C:\WINDOWS\System32\napipsec.dll
2014-10-26 11:48:43 568B07313D95BD82BF7C9089FBAB1118 76800 ------w- C:\WINDOWS\System32\msshavmsg.dll
2014-10-26 11:48:43 5099188F965E8C3DA76281E9CBCB0E7F 193024 ------w- C:\WINDOWS\System32\napmontr.dll
2014-10-26 11:48:43 3EF3363283E118A9F460E31BB17A702A 1737856 ------w- C:\WINDOWS\System32\mtxparhd.dll
2014-10-26 11:48:43 3AF52290B3C5F21E25F1C582A60CEBF2 176640 ------w- C:\WINDOWS\System32\napstat.exe
2014-10-26 11:48:42 FB8E05CEDB3EF65C80FEBD2698C80998 150528 ------w- C:\WINDOWS\System32\qagent.dll
2014-10-26 11:48:42 CA04959077AFE36369D37B3504740C87 144384 ------w- C:\WINDOWS\System32\onex.dll
2014-10-26 11:48:42 BA71647BD0BF68A3A127E061FA816E9B 412160 ------w- C:\WINDOWS\System32\photometadatahandler.dll
2014-10-26 11:48:42 A655C88AA555BB8EF8957BD29408827F 61952 ------w- C:\WINDOWS\System32\rasqec.dll
2014-10-26 11:48:42 8AE93AACC648921BAACB8602991AC4B3 76800 ------w- C:\WINDOWS\System32\qutil.dll
2014-10-26 11:48:42 66C217ADC165BE397788EBC24BF21D2C 4274816 ------w- C:\WINDOWS\System32\nv4_disp.dll
2014-10-26 11:48:42 492D127C533F328380F0BD1C2C59B44B 62464 ------w- C:\WINDOWS\System32\qcliprov.dll
2014-10-26 11:48:42 28D9646A6B8DE72980B683AF06D9D981 290304 ------w- C:\WINDOWS\System32\rhttpaa.dll
2014-10-26 11:48:42 1144070C67CC7F3E673EBB124F1B06AA 397056 ------w- C:\WINDOWS\System32\s3gnb.dll
2014-10-26 11:48:42 0102140028FAD045756796E1C685D695 291328 ------w- C:\WINDOWS\System32\qagentrt.dll
2014-10-26 11:48:41 F41358AD08C811F6B28FBC45600D1F49 286792 ------w- C:\WINDOWS\System32\slextspk.dll
2014-10-26 11:48:41 EB2D2E05E471208CD651DDCDF77904BF 346112 ------w- C:\WINDOWS\System32\windowscodecsext.dll
2014-10-26 11:48:41 E23C2933A53B4459482E84BB56D24681 50688 ------w- C:\WINDOWS\System32\tspkg.dll
2014-10-26 11:48:41 D8DBD3FF60BDAC98ACD115F8F0A3B161 73832 ------w- C:\WINDOWS\System32\slcoinst.dll
2014-10-26 11:48:41 B726ACE88025433615F2918B0FD07F9C 32768 ------w- C:\WINDOWS\System32\setupn.exe
2014-10-26 11:48:41 91790D6749EBED90E2C40479C0A91879 28672 ------w- C:\WINDOWS\System32\verclsid.exe
2014-10-26 11:48:41 5F63E2B2A72E1E6448123E0920D31530 712704 ------w- C:\WINDOWS\System32\windowscodecs.dll
2014-10-26 11:48:41 224A97EA5029845D2F5D1A6D85BBC798 32866 ------w- C:\WINDOWS\System32\slrundll.exe
2014-10-26 11:48:41 2248F303CCFF449FC5DEA712C92D4B2E 60416 ------w- C:\WINDOWS\System32\tzchange.exe
2014-10-26 11:48:41 1396F781364754123E5180074FC3CB85 53248 ------w- C:\WINDOWS\System32\tsgqec.dll
2014-10-26 11:48:41 10485BD94D0C8B0C9DE0A4A05D19EBA0 188508 ------w- C:\WINDOWS\System32\slgen.dll
2014-10-26 11:48:41 054177EFA4EA208003DD88637B02BA2B 73796 ------w- C:\WINDOWS\System32\slserv.exe
2014-10-26 11:48:40 EF3EC9DCFEECE43A1F69C8A95505E47A 276992 ------w- C:\WINDOWS\System32\wmphoto.dll
2014-10-26 11:48:40 9EEFE69139FDBB4A3C327630F8EB993A 69120 ------w- C:\WINDOWS\System32\wlanapi.dll
2014-10-26 11:48:39 BEA4AEE74FEF171EB61DE1BAD8FAF427 121856 ------w- C:\WINDOWS\System32\xmllite.dll
2014-10-26 11:48:38 1B3B381E1AAB46F7B321A46150D890CB 689152 ------w- C:\WINDOWS\System32\xpsp3res.dll
2014-10-26 11:43:38 96C9A439DCDA7643DCB20D88F6DB66F3 17272 ------w- C:\WINDOWS\System32\spmsg.dll
2014-10-26 11:43:05 5329079D8726DE34A58C2EF0BD2AC8B9 26488 ----a-w- C:\WINDOWS\System32\spupdsvc.exe
====== C:\WINDOWS\system32\drivers =====
2014-10-26 11:48:50 B43B36B382AEA10861F7C7A37F9D4AE2 46592 ------w- C:\WINDOWS\System32\drivers\irbus.sys
2014-10-26 11:45:09 9A193E5B5416E800B1FEDD7A4C5425C9 3967 ------w- C:\WINDOWS\System32\drivers\adv02nt5.dll
2014-10-26 11:45:09 1A7DDD37DEB481A9C25BBE705D63966B 4255 ------w- C:\WINDOWS\System32\drivers\adv01nt5.dll
2014-10-26 11:45:08 F7706DAE7D101F1B19CE552D772EBFCE 21343 ------w- C:\WINDOWS\System32\drivers\ati1ttxx.sys
2014-10-26 11:45:08 EDD66332608D27F4FD5069BCD0BC5164 73216 ------w- C:\WINDOWS\System32\drivers\atintuxx.sys
2014-10-26 11:45:08 ED4C2BF8403F4437987C0BA09CF48716 13824 ------w- C:\WINDOWS\System32\drivers\atinmdxx.sys
2014-10-26 11:45:08 E90AC2B14E98F1A4372E5891B4278784 14336 ------w- C:\WINDOWS\System32\drivers\atinpdxx.sys
2014-10-26 11:45:08 E2FB83E16D003E973C0A6F25CA39A281 3615 ------w- C:\WINDOWS\System32\drivers\adv05nt5.dll
2014-10-26 11:45:08 DB6D4CBF4DEBFA810A83035952EEC707 3775 ------w- C:\WINDOWS\System32\drivers\adv11nt5.dll
2014-10-26 11:45:08 DAC7D785CF62F5BD41441E9D6F5A6EFE 26367 ------w- C:\WINDOWS\System32\drivers\ati1snxx.sys
2014-10-26 11:45:08 DA36687D701C833430605A298731410B 52224 ------w- C:\WINDOWS\System32\drivers\atinraxx.sys
2014-10-26 11:45:08 D80A8F6C0A717446496C3A06D33B0D9C 13824 ------w- C:\WINDOWS\System32\drivers\atinttxx.sys
2014-10-26 11:45:08 D649C57DA6FA762C64013747E5D7D2D6 56623 ------w- C:\WINDOWS\System32\drivers\ati1btxx.sys
2014-10-26 11:45:08 CEDDEE2E0591894D19654D458FD3B9BE 28672 ------w- C:\WINDOWS\System32\drivers\atinsnxx.sys
2014-10-26 11:45:08 CB08AED0DE2DD889A8A820CD8082D83C 42752 ------w- C:\WINDOWS\System32\drivers\alim1541.sys
2014-10-26 11:45:08 BCAF267B10620F8C93F6E87AB726E145 63663 ------w- C:\WINDOWS\System32\drivers\ati1rvxx.sys
2014-10-26 11:45:08 AA4F39968C3C48F44AC93C19C74531AC 17279 ------w- C:\WINDOWS\System32\drivers\atv10nt5.dll
2014-10-26 11:45:08 A7A01B907DB63898D40B0A14248FF9A2 104960 ------w- C:\WINDOWS\System32\drivers\atinrvxx.sys
2014-10-26 11:45:08 9FD9797D7E74AEA57915C726D82697F4 3135 ------w- C:\WINDOWS\System32\drivers\adv08nt5.dll
2014-10-26 11:45:08 9D318099BF3876A4AF4BC75966D27603 30671 ------w- C:\WINDOWS\System32\drivers\ati1raxx.sys
2014-10-26 11:45:08 993E7BD6438FE989E328C6B4BCA246A9 57856 ------w- C:\WINDOWS\System32\drivers\atinbtxx.sys
2014-10-26 11:45:08 99265584139E0361156AF8AAFB9F05FD 11359 ------w- C:\WINDOWS\System32\drivers\atv02nt5.dll
2014-10-26 11:45:08 95B4FB835E28AA1336CEEB07FD5B9398 43008 ------w- C:\WINDOWS\System32\drivers\amdagp.sys
2014-10-26 11:45:08 8E59F9BE251C8AE32A1CEB068B3F96B1 64352 ------w- C:\WINDOWS\System32\drivers\ativmc20.cod
2014-10-26 11:45:08 77B575D7AAB35D5908AE6CE681608D62 63488 ------w- C:\WINDOWS\System32\drivers\atinxsxx.sys
2014-10-26 11:45:08 76DEC026845C0C7679C194BF3FAD81F0 3711 ------w- C:\WINDOWS\System32\drivers\adv09nt5.dll
2014-10-26 11:45:08 6FDC61E8E8E17F6ECC2D9A10FA8DF347 12047 ------w- C:\WINDOWS\System32\drivers\ati1pdxx.sys
2014-10-26 11:45:08 6F714B4720DD80FFA9F8D2731594EA4C 36463 ------w- C:\WINDOWS\System32\drivers\ati1tuxx.sys
2014-10-26 11:45:08 67FFBC158DD4D27BA3FC92C6ACD87F73 29455 ------w- C:\WINDOWS\System32\drivers\ati1xbxx.sys
2014-10-26 11:45:08 60B6AA2DC1521DA343F781B70EB7895A 11615 ------w- C:\WINDOWS\System32\drivers\ati1mdxx.sys
2014-10-26 11:45:08 4CCDEF76BC20B56037C24D39E5C0E4EA 14143 ------w- C:\WINDOWS\System32\drivers\atv06nt5.dll
2014-10-26 11:45:08 3E7D485CBD0B0D9F6EA2AD9442411831 31744 ------w- C:\WINDOWS\System32\drivers\atinxbxx.sys
2014-10-26 11:45:08 379F31C68379519C15A2B7BF66F8A80E 25471 ------w- C:\WINDOWS\System32\drivers\atv04nt5.dll
2014-10-26 11:45:08 2D030C2F6B036CA0BC243E1B16D924D1 327040 ------w- C:\WINDOWS\System32\drivers\ati2mtaa.sys
2014-10-26 11:45:08 23C8D06EBE70CA5D8364818AD6342BDA 3647 ------w- C:\WINDOWS\System32\drivers\adv07nt5.dll
2014-10-26 11:45:08 1532382086A0B61982E69FEFFBA77469 21183 ------w- C:\WINDOWS\System32\drivers\atv01nt5.dll
2014-10-26 11:45:08 0D8CAB1F08F7D3C4DE228B49E12E596A 34735 ------w- C:\WINDOWS\System32\drivers\ati1xsxx.sys
2014-10-26 11:45:08 08FD04AA961BDC77FB983F328334E3D7 42368 ------w- C:\WINDOWS\System32\drivers\agp440.sys
2014-10-26 11:45:08 03A7E0922ACFE1B07D5DB2EEB0773063 44928 ------w- C:\WINDOWS\System32\drivers\agpcpq.sys
2014-10-26 11:45:07 FCA6F069597B62D42495191ACE3FC6C1 37888 ------w- C:\WINDOWS\System32\drivers\bthmodem.sys
2014-10-26 11:45:07 EBB354438A4C5A3327FB97306260714A 1041536 ------w- C:\WINDOWS\System32\drivers\hsfdpsp2.sys
2014-10-26 11:45:07 BB68CEBFFD181E18A26112D1B9F90F3D 36480 ------w- C:\WINDOWS\System32\drivers\bthprint.sys
2014-10-26 11:45:07 BB1A6FB7D35A91E599973FA74A619056 19200 ------w- C:\WINDOWS\System32\drivers\hidir.sys
2014-10-26 11:45:07 B279426E3C0C344893ED78A613A73BDE 17024 ------w- C:\WINDOWS\System32\drivers\bthenum.sys
2014-10-26 11:45:07 970178E8E003EB1481293830069624B9 220032 ------w- C:\WINDOWS\System32\drivers\hsfbs2s2.sys
2014-10-26 11:45:07 80602B8746D3738F5886CE3D67EF06B6 101120 ------w- C:\WINDOWS\System32\drivers\bthpan.sys
2014-10-26 11:45:07 7BD2DE4C85EB4241EED57672B16A7D8D 25600 ------w- C:\WINDOWS\System32\drivers\hidbth.sys
2014-10-26 11:45:07 61ED91FDC8BDC432C9E51DDCB3D66FEE 15423 ------w- C:\WINDOWS\System32\drivers\ch7xxnt5.dll
2014-10-26 11:45:07 61364CD71EF63B0F038B7E9DF00F1EFA 18944 ------w- C:\WINDOWS\System32\drivers\bthusb.sys
2014-10-26 11:45:07 573C7D0A32852B48F3058CFD8026F511 144384 ------w- C:\WINDOWS\System32\drivers\hdaudbus.sys
2014-10-26 11:45:07 3A74C423CF6BCCA6982715878F450A3B 46464 ------w- C:\WINDOWS\System32\drivers\gagp30kx.sys
2014-10-26 11:45:07 3194C32E8A2403073B812183355E25C6 129045 ------w- C:\WINDOWS\System32\drivers\cxthsfs2.cty
2014-10-26 11:45:07 1225EBEA76AAC3C84DF6C54FE5E5D8BE 685056 ------w- C:\WINDOWS\System32\drivers\hsfcxts2.sys
2014-10-26 11:45:07 10B85171B90C449F8DA71C2640B797E9 273024 ------w- C:\WINDOWS\System32\drivers\bthport.sys
2014-10-26 11:45:06 E9AAA0092D74A9D371659C4C38882E12 13776 ------w- C:\WINDOWS\System32\drivers\recagent.sys
2014-10-26 11:45:06 D66D22D76878BF3483A6BE30183FB648 10240 ------w- C:\WINDOWS\System32\drivers\sffp_mmc.sys
2014-10-26 11:45:06 C53775780148884AC87C455489A0C070 126686 ------w- C:\WINDOWS\System32\drivers\mtlmnt5.sys
2014-10-26 11:45:06 B538DCD9816EA35FA4F637CFC261AAA8 12672 ------w- C:\WINDOWS\System32\drivers\mutohpen.sys
2014-10-26 11:45:06 905CB655E93D39C97E078A3C4C884F31 67866 ------w- C:\WINDOWS\System32\drivers\netwlan5.img
2014-10-26 11:45:06 851C30DF2807FCFA21E4C681A7D6440E 59136 ------w- C:\WINDOWS\System32\drivers\rfcomm.sys
2014-10-26 11:45:06 726548542AFECA56257FF01EB13BB6D7 30592 ------w- C:\WINDOWS\System32\drivers\rndismpx.sys
2014-10-26 11:45:06 6DDA78A0BE692B61B668FAB860F276CF 452736 ------w- C:\WINDOWS\System32\drivers\mtxparhm.sys
2014-10-26 11:45:06 576B34CEAE5B7E5D9FD2775E93B3DB53 180360 ------w- C:\WINDOWS\System32\drivers\ntmtlfax.sys
2014-10-26 11:45:06 54886A652BF5685192141DF304E923FD 1309184 ------w- C:\WINDOWS\System32\drivers\mtlstrm.sys
2014-10-26 11:45:06 2B298519EDBFCF451D43E0F1E8F1006D 1897408 ------w- C:\WINDOWS\System32\drivers\nv4_mini.sys
2014-10-26 11:45:06 195741AEE20369980796B557358CD774 11868 ------w- C:\WINDOWS\System32\drivers\mdmxsdk.sys
2014-10-26 11:45:06 0DBCC071A268E0340A2BA6BDD98BACE4 166912 ------w- C:\WINDOWS\System32\drivers\s3gnbm.sys
2014-10-26 11:45:05 F9B8E30E82EE95CF3E1D3E495599B99C 95424 ------w- C:\WINDOWS\System32\drivers\slnthal.sys
2014-10-26 11:45:05 DB56BB2C55723815CF549D7FC50CFCEB 13240 ------w- C:\WINDOWS\System32\drivers\slwdmsup.sys
2014-10-26 11:45:05 D9673011648A71ED1E1F77B831BC85E6 129535 ------w- C:\WINDOWS\System32\drivers\slnt7554.sys
2014-10-26 11:45:05 D85938F272D1BCF3DB3A31FC0A048928 44672 ------w- C:\WINDOWS\System32\drivers\uagp35.sys
2014-10-26 11:45:05 B6CC50279D6CD28E090A5D33244ADC9A 12800 ------w- C:\WINDOWS\System32\drivers\usb8023x.sys
2014-10-26 11:45:05 ACED8C149B30F8496C237BCBA3727B48 14208 ------w- C:\WINDOWS\System32\drivers\wacompen.sys
2014-10-26 11:45:05 895BE38A993B9BD5ABBE570D63D88A2E 5888 ------w- C:\WINDOWS\System32\drivers\smbali.sys
2014-10-26 11:45:05 7BB3AA595E4507A788DE1CDC63F4C8C4 11871 ------w- C:\WINDOWS\System32\drivers\wadv09nt.sys
2014-10-26 11:45:05 791CC45DE6E50445BE72E8AD6401FF45 25471 ------w- C:\WINDOWS\System32\drivers\watv10nt.sys
2014-10-26 11:45:05 754292CE5848B3738281B4F3607EAEF4 42240 ------w- C:\WINDOWS\System32\drivers\viaagp.sys
2014-10-26 11:45:05 714038A8AA5DE08E12062202CD7EAEB5 11295 ------w- C:\WINDOWS\System32\drivers\wadv08nt.sys
2014-10-26 11:45:05 6B910A4F9FD45CAE6579564DA22D69AE 3901 ------w- C:\WINDOWS\System32\drivers\siint5.dll
2014-10-26 11:45:05 6B33D0EBD30DB32E27D1D78FE946A754 40960 ------w- C:\WINDOWS\System32\drivers\sisagp.sys
2014-10-26 11:45:05 5E9313B8BFB6025E7C38E9A0BF185303 11325 ------w- C:\WINDOWS\System32\drivers\vchnt5.dll
2014-10-26 11:45:05 36E6C405B6143D09687F4056FD9A0D10 11935 ------w- C:\WINDOWS\System32\drivers\wadv11nt.sys
2014-10-26 11:45:05 352FA0E98BC461CE1CE5D41F64DB558D 22271 ------w- C:\WINDOWS\System32\drivers\watv06nt.sys
2014-10-26 11:45:05 2C1779C0FEB1F4A6033600305EBA623A 404990 ------w- C:\WINDOWS\System32\drivers\slntamr.sys
2014-10-26 11:45:05 0308AEF61941E4AF478FA1A0F83812F5 11807 ------w- C:\WINDOWS\System32\drivers\wadv07nt.sys
2014-10-25 17:08:57 DBA34C0AB6049AB3557CDA1578125D70 129536 ----a-w- C:\WINDOWS\System32\drivers\twusbnet.sys
2014-10-25 17:08:57 8880FC9AE8BD03DAC35DD674DD324B90 105984 ----a-w- C:\WINDOWS\System32\drivers\WCDMA_Datacard_Usb_Ser.sys
====== C:\WINDOWS\Tasks ======
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2014-10-25 17:08:56 -------- d-s---w- C:\Program Files\Sitecom 3G MiFi
======= C: =====
2014-10-25 19:26:14 FA579938B0733B87066546AFE951082C 211 ----a-w- C:\Boot.bak
2014-10-25 19:26:10 94E5450C43E4CF78E1D3AD4816966909 260272 --sha-r- C:\cmldr
====== C:\Documents and Settings\Ristic\Application Data ======
2014-10-25 17:55:43 -------- d-----w- C:\Documents and Settings\Ristic\Application Data\Gena01
====== C:\Documents and Settings\Ristic ======
2014-10-26 12:02:05 4EAAFFC3D3562585A60D2F0742BE330C 1104896 ----a-w- C:\Documents and Settings\Ristic\Desktop\FRST(2).exe
2014-10-26 11:54:28 -------- d-s---w- C:\WINDOWS\system32\config\systemprofile\Cookies
2014-10-26 11:32:05 BB25707C919DD835A9D9706B5725AF58 331805736 ----a-w- C:\Documents and Settings\Ristic\Desktop\windowsxp-kb936929-sp3-x86-enu_c81472f7eeea2eca421e116cd4c03e2300ebfde4.exe
2014-10-26 11:11:55 EB40DC01EF0D0D91F13AABA0FE1FC0CA 1962496 ----a-w- C:\Documents and Settings\Ristic\Desktop\AdwCleaner.exe
2014-10-26 08:53:15 -------- d-s---w- C:\Documents and Settings\NetworkService\Cookies

====== C: exe-files ==
2014-10-26 12:02:05 4EAAFFC3D3562585A60D2F0742BE330C 1104896 ----a-w- C:\Documents and Settings\Ristic\Desktop\FRST(2).exe
2014-10-26 11:49:10 954BD0D7C3CB90D23C136FEC90999377 123392 ------w- C:\WINDOWS\ServicePackFiles\i386\mplay32.exe
2014-10-26 11:48:50 5B431DCAC4A76276CEB8A1AB0C1C11F2 9728 ------w- C:\WINDOWS\system32\comsdupd.exe
2014-10-26 11:48:49 AAC1D4EE39DF138C5D30AC5883E3B59F 558080 ------w- C:\WINDOWS\network diagnostic\xpnetdiag.exe
2014-10-26 11:48:44 3F8C2784BD466834FA87F973D0FBB120 33792 ------w- C:\WINDOWS\system32\mmcperf.exe
2014-10-26 11:48:43 3AF52290B3C5F21E25F1C582A60CEBF2 176640 ------w- C:\WINDOWS\system32\napstat.exe
2014-10-26 11:48:41 B726ACE88025433615F2918B0FD07F9C 32768 ------w- C:\WINDOWS\system32\setupn.exe
2014-10-26 11:48:41 91790D6749EBED90E2C40479C0A91879 28672 ------w- C:\WINDOWS\system32\verclsid.exe
2014-10-26 11:48:41 224A97EA5029845D2F5D1A6D85BBC798 32866 ------w- C:\WINDOWS\system32\slrundll.exe
2014-10-26 11:48:41 2248F303CCFF449FC5DEA712C92D4B2E 60416 ------w- C:\WINDOWS\system32\tzchange.exe
2014-10-26 11:48:41 054177EFA4EA208003DD88637B02BA2B 73796 ------w- C:\WINDOWS\system32\slserv.exe
2014-10-26 11:48:38 224A97EA5029845D2F5D1A6D85BBC798 32866 ------w- C:\WINDOWS\slrundll.exe
2014-10-26 11:48:38 20E27F7A6FE3EAE808EF8460E668FB3E 241152 ------w- C:\WINDOWS\system32\usmt\migwiza.exe
2014-10-26 11:48:35 7BBE4CF421AECC7F0226EDD75F12079F 208952 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imjpmig.exe
2014-10-26 11:48:35 1B17E09C1223F6D17336D2DD7A1AF4F4 59392 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imscinst.exe
2014-10-26 11:48:34 B36BBA8BAF85B9227832ECB243A689B4 196665 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imjpinst.exe
2014-10-26 11:48:34 7854BDDC7DD769CF957C83A411C42643 44032 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\tintlphr.exe
2014-10-26 11:48:34 135BD481FA24E24895B147FCCDC3BCC7 57399 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\cplexe.exe
2014-10-26 11:48:34 08785071B116574B079DF3B4E4D37D4B 155705 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imjpdsvr.exe
2014-10-26 11:48:32 9F2D3141ED8AAA078C27F27D8BBC188B 307257 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imjpdct.exe
2014-10-26 11:48:31 D6BDB1A89AE17B6F35D6B91D42B5350E 70144 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\pintlphr.exe
2014-10-26 11:48:31 CCEB77BA901F8F5EB0092F860E88C3C5 233527 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imjprw.exe
2014-10-26 11:48:31 BE88F67F4B2BD8B6B93B4DB223CE88BC 480256 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\cintsetp.exe
2014-10-26 11:48:31 40059162F691911DAD738CF7A5D569A1 262200 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\imjputy.exe
2014-10-26 11:48:31 024DC0F68DF5FD6AE9DD82DFBAF479D6 455168 ------w- C:\WINDOWS\ServicePackFiles\i386\lang\tintsetp.exe
2014-10-26 11:48:30 413B2F6E0F073996C3318B8B47595319 19968 ------w- C:\WINDOWS\ServicePackFiles\i386\mqbkup.exe
2014-10-26 11:48:29 DB3C22745C0DA4666F3BE31F1AF36B2F 15360 ------w- C:\WINDOWS\ServicePackFiles\i386\inetin51.exe
2014-10-26 11:48:29 3045293662B6602A2EE7D754C8F1EDCC 76288 ------w- C:\WINDOWS\ServicePackFiles\i386\taskkill.exe
2014-10-26 11:48:29 1832FE014FF6B1FBB3A5E62E39218B82 120832 ------w- C:\WINDOWS\ServicePackFiles\i386\gprslt.exe
2014-10-26 11:48:28 AF4E13CA861860A3F620B595B49065A1 56832 ------w- C:\WINDOWS\ServicePackFiles\i386\cipher.exe
2014-10-26 11:48:27 483856FBEC9624C76F3CFD4C8FD3603F 50688 ------w- C:\WINDOWS\ServicePackFiles\i386\evcreate.exe
2014-10-26 11:48:26 72D1890E6F0CD5C3CF05A1F1DBC598D9 59904 ------w- C:\WINDOWS\ServicePackFiles\i386\getmac.exe
2014-10-26 11:48:26 5B431DCAC4A76276CEB8A1AB0C1C11F2 9728 ------w- C:\WINDOWS\ServicePackFiles\i386\comsdupd.exe
2014-10-26 11:48:25 C8667F83C8FECAFD3EFB0FD6F9C3787B 30208 ------w- C:\WINDOWS\ServicePackFiles\i386\asr_fmt.exe
2014-10-26 11:48:24 E73DBE781CEAB122C698A3863E362775 42496 ------w- C:\WINDOWS\ServicePackFiles\i386\davcdata.exe
2014-10-26 11:48:24 DB7205804759FF62C34E3EFD8A4CC76A 73216 ------w- C:\WINDOWS\ServicePackFiles\i386\tlntsvr.exe
2014-10-26 11:48:23 FA51FB71FBD5022B08E9EC55C5DB7BF3 61440 ------w- C:\WINDOWS\ServicePackFiles\i386\tlntadmn.exe
2014-10-26 11:48:23 E9F6BDB0D4578C4A27590FC6AA0713D3 62976 ------w- C:\WINDOWS\ServicePackFiles\i386\drvqry.exe
2014-10-26 11:48:23 E8B108654C5789AD3F75E08B0A89C609 77824 ------w- C:\WINDOWS\ServicePackFiles\i386\tasklist.exe
2014-10-26 11:48:23 DF42260BA2A5826F77B7A4BD105BAACC 142848 ------w- C:\WINDOWS\ServicePackFiles\i386\bootcfg.exe
2014-10-26 11:48:22 CF106F24787BA435A6BCA51A54C44193 121856 ------w- C:\WINDOWS\ServicePackFiles\i386\sctasks.exe
2014-10-26 11:48:21 F5AD210CF45C5340195AB20FA775BDE3 82944 ------w- C:\WINDOWS\ServicePackFiles\i386\evtrig.exe
2014-10-26 11:48:21 4DEEA507636692E622D5FD33CDC6522C 12800 ------w- C:\WINDOWS\ServicePackFiles\i386\spiisupd.exe
2014-10-26 11:48:20 BC8941FCB5F4C658054DC49B7E5C526B 32768 ------w- C:\WINDOWS\ServicePackFiles\i386\asr_pfu.exe
2014-10-26 11:48:20 AFB909B537AAE1BEAE7BBDB6A36D40B0 4608 ------w- C:\WINDOWS\ServicePackFiles\i386\mqsvc.exe
2014-10-26 11:48:20 A279F4091F940C15A288767F4285C0FF 71680 ------w- C:\WINDOWS\ServicePackFiles\i386\sysinfo.exe
2014-10-26 11:48:20 9A9595AFD979AC16DDEB1475BA44DE6F 78336 ------w- C:\WINDOWS\ServicePackFiles\i386\tlntsess.exe
2014-10-26 11:48:20 56B82E4FC6F57D3616E86BAED5FEF52E 259584 ------w- C:\WINDOWS\ServicePackFiles\i386\tracerpt.exe
2014-10-26 11:48:20 12D50FC03BCFCCF785C6C6F650B758D5 107520 ------w- C:\WINDOWS\ServicePackFiles\i386\rsnotify.exe
2014-10-26 11:48:20 060D8088F95A3A4BEA0F0E11A65F853D 1200640 ------w- C:\WINDOWS\ServicePackFiles\i386\ntbackup.exe
2014-10-26 11:48:18 7F955FF3B1BB93376EBE75D5ACCDC6DB 117248 ------w- C:\WINDOWS\ServicePackFiles\i386\mqtgsvc.exe
2014-10-26 11:48:17 8F50467FBE98C3F2D81F120C94172088 358912 ------w- C:\WINDOWS\ServicePackFiles\i386\wmic.exe
2014-10-26 11:48:16 4BF1D916FD6F96F2DEF9832D7083AF2D 67584 ------w- C:\WINDOWS\ServicePackFiles\i386\opnfiles.exe
2014-10-26 11:48:16 45808E221A6A90359D44DED609A2FA0A 18944 ------w- C:\WINDOWS\ServicePackFiles\i386\secedit.exe
2014-10-26 11:48:16 167E83E9776B57FA5CD3B37FBD1D935F 30720 ------w- C:\WINDOWS\ServicePackFiles\i386\iisrstas.exe
2014-10-26 11:48:15 D4B13D675DEC600C5A0ED2BB0EB301E6 184320 ------w- C:\WINDOWS\ServicePackFiles\i386\accwiz.exe
2014-10-26 11:48:15 5F1D5F88303D4A4DBC8E5F97BA967CC3 15360 ------w- C:\WINDOWS\ServicePackFiles\i386\ctfmon.exe
2014-10-26 11:48:15 57E036885A222D1A8EF237C7399BE98B 67072 ------w- C:\WINDOWS\ServicePackFiles\i386\rdshost.exe
2014-10-26 11:48:15 068D794FD2FF78A92AC574DFEE819A7E 92224 ------w- C:\WINDOWS\ServicePackFiles\i386\krnl386.exe
2014-10-26 11:48:14 D18F1F0C101D06A1C1ADF26EED16FCDD 32768 ------w- C:\WINDOWS\ServicePackFiles\i386\mnmsrvc.exe
2014-10-26 11:48:14 6DD28A6D99CF7B14B2D1786D143624E0 39424 ------w- C:\WINDOWS\ServicePackFiles\i386\grpconv.exe
2014-10-26 11:48:13 A9AAA9D9A1C08E7017B21577DCD3411D 14848 ------w- C:\WINDOWS\ServicePackFiles\i386\stimon.exe
2014-10-26 11:48:13 7A526169AC958E6602023A39734C8684 102912 ------w- C:\WINDOWS\ServicePackFiles\i386\clipbrd.exe
2014-10-26 11:48:13 63A25A27D494BDD49D995EADAA44A53B 60416 ------w- C:\WINDOWS\ServicePackFiles\i386\oemig50.exe
2014-10-26 11:48:13 3E42EC792FE69A064585DCEA58336A01 24064 ------w- C:\WINDOWS\ServicePackFiles\i386\evntcmd.exe
2014-10-26 11:48:13 3DA1F70B0E28685A790E61567CB01C8C 30208 ------w- C:\WINDOWS\ServicePackFiles\i386\wabmig.exe
2014-10-26 11:48:12 EA587D3A081F21358A8D3D62AD006DC1 17920 ------w- C:\WINDOWS\ServicePackFiles\i386\dvdupgrd.exe
2014-10-26 11:48:12 7095C047A4D1D1C7341B10B3B77B7ED2 15360 ------w- C:\WINDOWS\ServicePackFiles\i386\nppagent.exe
2014-10-26 11:48:12 3F14C041342E3FBA343F2A1D11E74BBA 124928 ------w- C:\WINDOWS\ServicePackFiles\i386\net1.exe
2014-10-26 11:48:12 331B01DD3D2F0EFB16F9149F42305D64 5632 ------w- C:\WINDOWS\ServicePackFiles\i386\winver.exe
2014-10-26 11:48:12 018ABDB00989AE1006EBBB9AB1B3E82A 53248 ------w- C:\WINDOWS\ServicePackFiles\i386\ipv6.exe
2014-10-26 11:48:12 0131552EB5C43A74163A62BDCA7AA715 39936 ------w- C:\WINDOWS\ServicePackFiles\i386\cmmon32.exe
2014-10-26 11:48:11 C29AB058E20C56E8D1ECB44FEDEBC69F 13824 ------w- C:\WINDOWS\ServicePackFiles\i386\rdsaddin.exe
2014-10-26 11:48:11 ABC9002269E569538901109441660DD2 27648 ------w- C:\WINDOWS\ServicePackFiles\i386\conime.exe
2014-10-26 11:48:11 8F81884447C7AAB1E8B5E036A729BECD 236544 ------w- C:\WINDOWS\ServicePackFiles\i386\smi2smir.exe
2014-10-26 11:48:11 435C7907F33DED3DA09E63F9C8A2B17A 72704 ------w- C:\WINDOWS\ServicePackFiles\i386\magnify.exe
2014-10-26 11:48:11 14A1E5A8CFEF5F18B96540C1FB52CCB2 1327320 ------w- C:\WINDOWS\ServicePackFiles\i386\msnsusii.exe
2014-10-26 11:48:11 054177EFA4EA208003DD88637B02BA2B 73796 ------w- C:\WINDOWS\ServicePackFiles\i386\slserv.exe
2014-10-26 11:48:10 1DE6ABBFCCB3F8E3FA19898A182998D2 24576 ------w- C:\WINDOWS\ServicePackFiles\i386\sort.exe
2014-10-26 11:48:09 CED05751354AA6587D008AE53C92B7C0 13824 ------w- C:\WINDOWS\ServicePackFiles\i386\rexec.exe
2014-10-26 11:48:09 04CE8D325E42F7011F937448DBB77971 18432 ------w- C:\WINDOWS\ServicePackFiles\i386\iedw.exe
2014-10-26 11:48:08 E97D6A8684466DF94FF3BC24FB787A07 267776 ------w- C:\WINDOWS\ServicePackFiles\i386\fxssvc.exe
2014-10-26 11:48:08 944C37B5812DE862086DCBC313BEE3AB 92160 ------w- C:\WINDOWS\ServicePackFiles\i386\evntwin.exe
2014-10-26 11:48:08 40F8880122A030A7E9E1FEDEA833B33D 2145280 ------w- C:\WINDOWS\ServicePackFiles\i386\ntkrnlmp.exe
2014-10-26 11:48:07 F92E1076C42FCD6DB3D72D8CFE9816D5 13824 ------w- C:\WINDOWS\ServicePackFiles\i386\wscntfy.exe
2014-10-26 11:48:06 D7EDD711DABD96B1261F7A02A56DB379 26112 ------w- C:\WINDOWS\ServicePackFiles\i386\skeys.exe
2014-10-26 11:48:06 34CBE729F38138217F9C80212A2A0C82 33280 ------w- C:\WINDOWS\ServicePackFiles\i386\clipsrv.exe
2014-10-26 11:48:05 D5738F58E19F04E12ECD3A25C8BC6231 15872 ------w- C:\WINDOWS\ServicePackFiles\i386\dmremote.exe
2014-10-26 11:48:05 473AEFCD0D33ED3BB04FC9755AE37DBF 13312 ------w- C:\WINDOWS\ServicePackFiles\i386\savedump.exe
2014-10-26 11:48:05 34781A7E9683F42C4B2FE6F09456568C 55808 ------w- C:\WINDOWS\ServicePackFiles\i386\ipconfig.exe
2014-10-26 11:48:05 07CD104EFEE14E89123FC261BB341D35 151552 ------w- C:\WINDOWS\ServicePackFiles\i386\irftp.exe
2014-10-26 11:48:04 609ADB6AAC0ACD162B051CCE9106F07E 105472 ------w- C:\WINDOWS\ServicePackFiles\i386\dfrgntfs.exe
2014-10-26 11:48:04 5E28284F9B5F9097640D58A73D38AD4C 69120 ------w- C:\WINDOWS\ServicePackFiles\i386\notepad.exe
2014-10-26 11:48:04 482AE619667429CD12D23A9089F5BF22 29184 ------w- C:\WINDOWS\ServicePackFiles\i386\msoobe.exe
2014-10-26 11:48:04 0EEB3D08B6BAD0DE021EAA187D00AD4F 77824 ------w- C:\WINDOWS\ServicePackFiles\i386\shrpubw.exe
2014-10-26 11:48:04 0DF640C0665596DC256E40D6010078A6 24064 ------w- C:\WINDOWS\ServicePackFiles\i386\extrac32.exe
2014-10-26 11:48:03 5507FD0FD6009C98CDFA2EBCBBB3D044 53840 ------w- C:\WINDOWS\ServicePackFiles\i386\dosx.exe
2014-10-26 11:48:03 05365FB38FCA1E98F7A566AAAF5D1815 18432 ------w- C:\WINDOWS\ServicePackFiles\i386\ups.exe
2014-10-26 11:48:02 B857BA82860D7FF85AE29B095645563B 111104 ------w- C:\WINDOWS\ServicePackFiles\i386\netdde.exe
2014-10-26 11:48:02 A137F1470499A205ABBB9AAFB3B6F2B1 6144 ------w- C:\WINDOWS\ServicePackFiles\i386\msdtc.exe
2014-10-26 11:48:02 2CD1C3506A85B38E2D17E61ADED175C4 135680 ------w- C:\WINDOWS\ServicePackFiles\i386\taskmgr.exe
2014-10-26 11:48:02 2B86C9EEE08AF3B536203F1A13B464B5 45056 ------w- C:\WINDOWS\ServicePackFiles\i386\shmgrate.exe
2014-10-26 11:48:02 1ED259755AE18F8C0F50E82B5F504B64 21504 ------w- C:\WINDOWS\ServicePackFiles\i386\rcp.exe
2014-10-26 11:48:02 106C0F76987CD8EA3CB6EED6DCDB1588 11264 ------w- C:\WINDOWS\ServicePackFiles\i386\autolfn.exe
2014-10-26 11:48:02 0845E936C85AD45B452CBC86A316CF2A 50176 ------w- C:\WINDOWS\ServicePackFiles\i386\utilman.exe
2014-10-26 11:48:01 FD3DA8425624B98903407DF608CF2C11 42496 ------w- C:\WINDOWS\ServicePackFiles\i386\net.exe
2014-10-26 11:48:01 E0673F1106E62A68D2257E376079F821 126464 ------w- C:\WINDOWS\ServicePackFiles\i386\wmiapsrv.exe
2014-10-26 11:48:01 8DD5CF6D82BD78433E95D86EFA117D67 677888 ------w- C:\WINDOWS\ServicePackFiles\i386\lhmstsc.exe
2014-10-26 11:48:01 713CC8FAC6DD1F1EB0AB05B864341188 77312 ------w- C:\WINDOWS\ServicePackFiles\i386\rtcshare.exe
2014-10-26 11:48:01 5D4C1C55D0CE844E3D7E28413C2F8014 214528 ------w- C:\WINDOWS\ServicePackFiles\i386\icwconn1.exe
2014-10-26 11:48:00 EA36B806E30D927F70E24EAF545CCC17 83456 ------w- C:\WINDOWS\ServicePackFiles\i386\dpvsetup.exe
2014-10-26 11:48:00 1AEFE261E5F1A754847626DB85ECA5FD 70144 ------w- C:\WINDOWS\ServicePackFiles\i386\sigverif.exe
2014-10-26 11:47:59 06AC31BAC1C7A6EC43A26730A3A11779 1298432 ------w- C:\WINDOWS\ServicePackFiles\i386\dxdiag.exe
2014-10-26 11:47:58 B703072AF60373AEBC8F0BA1EA211F5E 109568 ------w- C:\WINDOWS\ServicePackFiles\i386\progman.exe
2014-10-26 11:47:58 A93AEE1928A9D7CE3E16D24EC7380F89 26112 ------w- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
2014-10-26 11:47:58 6D778E0F95447E6546553EEEA709D03C 389120 ------w- C:\WINDOWS\ServicePackFiles\i386\cmd.exe
2014-10-26 11:47:58 56C7905CB7A7356F1301E5B209C96272 4096 ------w- C:\WINDOWS\ServicePackFiles\i386\actmovie.exe
2014-10-26 11:47:58 1EEAE496A51F017D04DD41322935D2B9 60416 ------w- C:\WINDOWS\ServicePackFiles\i386\msimn.exe
2014-10-26 11:47:57 64024D168BA513F47E5A68BFD0630844 40960 ------w- C:\WINDOWS\ServicePackFiles\i386\msiregmv.exe
2014-10-26 11:47:57 04E20D6D69FEC8535FA57E02BA3D8E59 82944 ------w- C:\WINDOWS\ServicePackFiles\i386\dfrgfat.exe
2014-10-26 11:47:56 D6AEA0E2D8C85086A9AA5BE7E7CB167A 3338 ------w- C:\WINDOWS\ServicePackFiles\i386\redir.exe
2014-10-26 11:47:56 90A2416951A4968E78D29A034E97B269 114688 ------w- C:\WINDOWS\ServicePackFiles\i386\iexpress.exe
2014-10-26 11:47:56 037B1E7798960E0420003D05BB577EE6 33280 ------w- C:\WINDOWS\ServicePackFiles\i386\rundll32.exe
2014-10-26 11:47:55 3BD2348E0EB21960D82FDF5347E04BA5 29696 ------w- C:\WINDOWS\ServicePackFiles\i386\dplaysvr.exe
2014-10-26 11:47:54 FBDB9D0935B9907B809B381FDDF1627F 11776 ------w- C:\WINDOWS\ServicePackFiles\i386\regsvr32.exe
2014-10-26 11:47:54 ED7262E52C31CF1625B65039102BC16C 111104 ------w- C:\WINDOWS\ServicePackFiles\i386\wuauclt.exe
2014-10-26 11:47:54 9F45D6316D06EC8FAC0CF07279823DDE 30720 ------w- C:\WINDOWS\ServicePackFiles\i386\xcopy.exe
2014-10-26 11:47:54 224A97EA5029845D2F5D1A6D85BBC798 32866 ------w- C:\WINDOWS\ServicePackFiles\i386\slrundll.exe
2014-10-26 11:47:53 66CDF02D86C9F0B4300EE981A614D296 17920 ------w- C:\WINDOWS\ServicePackFiles\i386\ping.exe
2014-10-26 11:47:53 3E235D5E9093B8BAC47D9C8B124EA16C 155648 ------w- C:\WINDOWS\ServicePackFiles\i386\wscript.exe
2014-10-26 11:47:53 05AE2B513FA46E157E4F58F11FE0F351 29184 ------w- C:\WINDOWS\ServicePackFiles\i386\mshta.exe
2014-10-26 11:47:52 FAA1FDE004B3C60B5A8068A7C3AAB151 281088 ------w- C:\WINDOWS\ServicePackFiles\i386\pinball.exe
2014-10-26 11:47:52 8D1492DBE9A856EE306EDC5A103E0BF2 538624 ------w- C:\WINDOWS\ServicePackFiles\i386\spider.exe
2014-10-26 11:47:52 799961190A2DEB65B180A46F1E7AA0A6 193024 ------w- C:\WINDOWS\ServicePackFiles\i386\eudcedit.exe
2014-10-26 11:47:51 DCCF6ED915BC05C244801B550AD12B17 62976 ------w- C:\WINDOWS\ServicePackFiles\i386\rdpclip.exe
2014-10-26 11:47:51 B80F34A9022EC3850E4CC58C3855C4B2 58368 ------w- C:\WINDOWS\ServicePackFiles\i386\packager.exe
2014-10-26 11:47:51 B726ACE88025433615F2918B0FD07F9C 32768 ------w- C:\WINDOWS\ServicePackFiles\i386\setupn.exe
2014-10-26 11:47:51 8E16BF5600797E678EA97051CF93E6BF 10752 ------w- C:\WINDOWS\ServicePackFiles\i386\dumprep.exe
2014-10-26 11:47:51 550F769BE81998626D0343F0456BE843 34304 ------w- C:\WINDOWS\ServicePackFiles\i386\ie4uinit.exe
2014-10-26 11:47:50 FF90EEC0FAB78482BE97C5637FEF4090 25088 ------w- C:\WINDOWS\ServicePackFiles\i386\at.exe
2014-10-26 11:47:50 5F176F9431BB67B54A233BA2494CE718 6144 ------w- C:\WINDOWS\ServicePackFiles\i386\comrereg.exe
2014-10-26 11:47:50 11028D0B142FCCC52213E3A7C9078089 7680 ------w- C:\WINDOWS\ServicePackFiles\i386\migregdb.exe
2014-10-26 11:47:49 E59EE4D24DE74A110A8829FEC6C642E4 8192 ------w- C:\WINDOWS\ServicePackFiles\i386\smbinst.exe
2014-10-26 11:47:49 90CE97657B3F0B651EE8F438A4AB577E 32256 ------w- C:\WINDOWS\ServicePackFiles\i386\wpabaln.exe
2014-10-26 11:47:48 84759CB654F45422BC2458806AB07762 15872 ------w- C:\WINDOWS\ServicePackFiles\i386\help.exe
2014-10-26 11:47:48 7EF35DB257F647A73DB396AA9760D011 165888 ------w- C:\WINDOWS\ServicePackFiles\i386\wuauclt1.exe
2014-10-26 11:47:48 4C7DC46C27D2BF288726BAC3F8FE34EC 30208 ------w- C:\WINDOWS\ServicePackFiles\i386\ddeshare.exe
2014-10-26 11:47:48 3AFB256A97EE75F570059D287820D847 69632 ------w- C:\WINDOWS\ServicePackFiles\i386\odbcconf.exe
2014-10-26 11:47:48 18D08C2775806ED82B08524078BA03A2 229376 ------w- C:\WINDOWS\ServicePackFiles\i386\fxscover.exe
2014-10-26 11:47:47 AAED593F84AFA419BBAE8572AF87CF6A 75264 ------w- C:\WINDOWS\ServicePackFiles\i386\locator.exe
2014-10-26 11:47:47 20E27F7A6FE3EAE808EF8460E668FB3E 241152 ------w- C:\WINDOWS\ServicePackFiles\i386\migwiza.exe
2014-10-26 11:47:47 04B8261CE83C7518A83D9850DCA8BD0E 16384 ------w- C:\WINDOWS\ServicePackFiles\i386\mofcomp.exe
2014-10-26 11:47:46 F69576955AD53CC33A17BA1E4709AA34 245248 ------w- C:\WINDOWS\ServicePackFiles\i386\migwiz.exe
2014-10-26 11:47:46 BADD8E359595F3A646E944757426D919 9216 ------w- C:\WINDOWS\ServicePackFiles\i386\proxycfg.exe
2014-10-26 11:47:46 8A7EE413726790398D6B315B7CFB5B0A 36864 ------w- C:\WINDOWS\ServicePackFiles\i386\netstat.exe
2014-10-26 11:47:46 7E484F0150B2E4CA55388992820246D4 36352 ------w- C:\WINDOWS\ServicePackFiles\i386\scrcons.exe
2014-10-26 11:47:45 FB11420FC0AF573B5A86DC7C1C4737F7 16896 ------w- C:\WINDOWS\ServicePackFiles\i386\upnpcont.exe
2014-10-26 11:47:45 5879D691E842574A20FE63817CB76DF9 78848 ------w- C:\WINDOWS\ServicePackFiles\i386\msiexec.exe
2014-10-26 11:47:45 55794B97A7FAABD2910873C85274F409 93184 ------w- C:\WINDOWS\ServicePackFiles\i386\iexplore.exe
2014-10-26 11:47:45 2C4E4027E418EB4F0ED1E3793A4834DF 64000 ------w- C:\WINDOWS\ServicePackFiles\i386\cleanmgr.exe
2014-10-26 11:47:44 7862D384F7C1636544C83B75B57006E7 12288 ------w- C:\WINDOWS\ServicePackFiles\i386\tracert.exe
2014-10-26 11:47:44 3F8C2784BD466834FA87F973D0FBB120 33792 ------w- C:\WINDOWS\ServicePackFiles\i386\mmcperf.exe
2014-10-26 11:47:43 86D007E7A654B9A71D1D7D856B104353 95744 ------w- C:\WINDOWS\ServicePackFiles\i386\scardsvr.exe
2014-10-26 11:47:43 60C377BE6B3CC83F6A8584934B181D2E 33280 ------w- C:\WINDOWS\ServicePackFiles\i386\snmp.exe
2014-10-26 11:47:43 2248F303CCFF449FC5DEA712C92D4B2E 60416 ------w- C:\WINDOWS\ServicePackFiles\i386\tzchange.exe
2014-10-26 11:47:42 E6D680494C812B82A15600FD23C94424 12288 ------w- C:\WINDOWS\ServicePackFiles\i386\attrib.exe
2014-10-26 11:47:42 E46050330BD42F33609117F861E32D3C 224768 ------w- C:\WINDOWS\ServicePackFiles\i386\dmadmin.exe
2014-10-26 11:47:42 C65122B94F7C82065FE86C32CF271F6D 50176 ------w- C:\WINDOWS\ServicePackFiles\i386\reg.exe
2014-10-26 11:47:42 A81135541C9D4EBCE43EFA8AD31395B4 169984 ------w- C:\WINDOWS\ServicePackFiles\i386\msconfig.exe
2014-10-26 11:47:42 80A050795A107A76C2B1CD4CFBE010E6 8704 ------w- C:\WINDOWS\ServicePackFiles\i386\snmptrap.exe
2014-10-26 11:47:42 45CC061D9581E52F008E90E81DA2CFD9 19968 ------w- C:\WINDOWS\ServicePackFiles\i386\cacls.exe
2014-10-26 11:47:42 24A91DCEEA2449ED1385B931BEFEA5A5 90624 ------w- C:\WINDOWS\ServicePackFiles\i386\muisetup.exe
2014-10-26 11:47:41 5F816C1F539266D2D4C78694239DA0B5 50688 ------w- C:\WINDOWS\ServicePackFiles\i386\smss.exe
2014-10-26 11:47:41 4C1718D6FCC35C25D1616247D374672B 76800 ------w- C:\WINDOWS\ServicePackFiles\i386\nslookup.exe
2014-10-26 11:47:41 0A9BA6AF531AFE7FA5E4FB973852D863 5120 ------w- C:\WINDOWS\ServicePackFiles\i386\dllhost.exe
2014-10-26 11:47:40 759A1524C60DA113B43C5A13B5FD39AC 23040 ------w- C:\WINDOWS\ServicePackFiles\i386\setup.exe
2014-10-26 11:47:40 75951D8A85067F8ECCD0076F21E9E4E8 27136 ------w- C:\WINDOWS\ServicePackFiles\i386\findstr.exe
2014-10-26 11:47:40 5AD00EED5722CAABDDAAC1CB92F68E57 19968 ------w- C:\WINDOWS\ServicePackFiles\i386\qprocess.exe
2014-10-26 11:47:38 F8709DDF1063462FECE91F386FF7BA99 150528 ------w- C:\WINDOWS\ServicePackFiles\i386\uploadm.exe
2014-10-26 11:47:38 B9CBAEA39CEA686827D152C650247EED 744448 ------w- C:\WINDOWS\ServicePackFiles\i386\helpsvc.exe
2014-10-26 11:47:38 485FE82CA36117F5E1599831EDD6FB14 433664 ------w- C:\WINDOWS\ServicePackFiles\i386\wiaacmgr.exe
2014-10-26 11:47:37 F90B51CB5FDFD2731AF88CCD5CB22EAC 20480 ------w- C:\WINDOWS\ServicePackFiles\i386\cliconfg.exe
2014-10-26 11:47:37 AAC1D4EE39DF138C5D30AC5883E3B59F 558080 ------w- C:\WINDOWS\ServicePackFiles\i386\xpnetdg.exe
2014-10-26 11:47:37 2B6B61FE79E9706BE306856F7A795133 32768 ------w- C:\WINDOWS\ServicePackFiles\i386\odbcad32.exe
2014-10-26 11:47:37 1CFE720EB8D93A7158A4EBC3AB178BDE 5632 ------w- C:\WINDOWS\ServicePackFiles\i386\cisvc.exe
2014-10-26 11:47:35 D5788A5243D1DD160E0F97AA4808B2BE 12288 ------w- C:\WINDOWS\ServicePackFiles\i386\mstinit.exe
2014-10-26 11:47:35 4E04412089EB106BE2B24B74D9093DB2 14848 ------w- C:\WINDOWS\ServicePackFiles\i386\rsh.exe
2014-10-26 11:47:35 3CD582300BD7D3352D3280DD152AC6E4 20992 ------w- C:\WINDOWS\ServicePackFiles\i386\fontview.exe
2014-10-26 11:47:35 27C6D03BCDB8CFEB96B716F3D8BE3E18 14336 ------w- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
2014-10-26 11:47:34 E22C39EAA1FEA6BB4A7BF4FE7BE6BE5E 106496 ------w- C:\WINDOWS\ServicePackFiles\i386\sysocmgr.exe
2014-10-26 11:47:34 7149F73425EF389BEA3FBAA2483EC0E2 31232 ------w- C:\WINDOWS\ServicePackFiles\i386\sethc.exe
2014-10-26 11:47:34 665666ADAEA4ECA5942518785CB94CAF 119808 ------w- C:\WINDOWS\ServicePackFiles\i386\mtstocom.exe
2014-10-26 11:47:33 C10F6916C61A70926ADF2365B56F2FEA 14336 ------w- C:\WINDOWS\ServicePackFiles\i386\runonce.exe
2014-10-26 11:47:33 949BC05CEF66BCD68EB23F08EB4C2DFF 343040 ------w- C:\WINDOWS\ServicePackFiles\i386\mspaint.exe
2014-10-26 11:47:33 681B807E53BDADA337735C28C0E48A1B 420864 ------w- C:\WINDOWS\ServicePackFiles\i386\ntvdm.exe
2014-10-26 11:47:33 3C37BF86641BDA977C3BF8A840F3B7FA 141312 ------w- C:\WINDOWS\ServicePackFiles\i386\sessmgr.exe
2014-10-26 11:47:32 E9A57BC090E4232D9393E9E393EF3F8D 116224 ------w- C:\WINDOWS\ServicePackFiles\i386\wbemtest.exe
2014-10-26 11:47:32 781DA7B4E3D8F28EB8BE9184BBD12811 1032192 ------w- C:\WINDOWS\ServicePackFiles\i386\conf.exe
2014-10-26 11:47:32 74195DF6C813F61FFE5B9CDFD10BB10F 3558912 ------w- C:\WINDOWS\ServicePackFiles\i386\moviemk.exe
2014-10-26 11:47:32 231138871DCE86961694177508CC8F17 63488 ------w- C:\WINDOWS\ServicePackFiles\i386\cmstp.exe
2014-10-26 11:47:32 1DE61BAEDE3FD349B7AE86F428C25482 23040 ------w- C:\WINDOWS\ServicePackFiles\i386\fltmc.exe
2014-10-26 11:47:32 11B050D9474681405B07A6F47681590F 193024 ------w- C:\WINDOWS\ServicePackFiles\i386\fsquirt.exe
2014-10-26 11:47:31 8058C01E0B96EC2F74FF764BE1B67D7F 73216 ------w- C:\WINDOWS\ServicePackFiles\i386\setup50.exe
2014-10-26 11:47:30 F209365E10DAEDA9A084DC30A8096487 256512 ------w- C:\WINDOWS\ServicePackFiles\i386\agentsvr.exe
2014-10-26 11:47:30 95786E866A54C7782E60855D2BAE5410 143360 ------w- C:\WINDOWS\ServicePackFiles\i386\mobsync.exe
2014-10-26 11:47:28 DEDDBCE9D0B6E4864F593A8A36849E1D 9728 ------w- C:\WINDOWS\ServicePackFiles\i386\comrepl.exe
2014-10-26 11:47:28 8F08609E4E0B3D26814B3073A42DF415 46080 ------w- C:\WINDOWS\ServicePackFiles\i386\wab.exe
2014-10-26 11:47:28 0FFAE66E6D5B1C87CBD22D1F3B6079FD 218112 ------w- C:\WINDOWS\ServicePackFiles\i386\wmiprvse.exe
2014-10-26 11:47:27 F6465A2EEF75468988A4FCF124148FA8 50176 ------w- C:\WINDOWS\ServicePackFiles\i386\proquota.exe
2014-10-26 11:47:27 F1E6A861E3829FFAEDBDDF72ADBD184C 82944 ------w- C:\WINDOWS\ServicePackFiles\i386\tp4mon.exe
2014-10-26 11:47:27 B32A4DB8FA8BA07AFB1E86F8C9FB852E 769024 ------w- C:\WINDOWS\ServicePackFiles\i386\helpctr.exe
2014-10-26 11:47:27 B22332758A8293C14DB318748A928CC4 131584 ------w- C:\WINDOWS\ServicePackFiles\i386\sndrec32.exe
2014-10-26 11:47:27 967B5E52CA77911F2E6B3BD497A51766 20480 ------w- C:\WINDOWS\ServicePackFiles\i386\inetwiz.exe
2014-10-26 11:47:27 8EC667F737001EEA1651A8A9D8F5E11D 49152 ------w- C:\WINDOWS\ServicePackFiles\i386\powercfg.exe
2014-10-26 11:47:27 762E8FB1BC0AC306DC0CFCE76FFEB934 24576 ------w- C:\WINDOWS\ServicePackFiles\i386\icwrmind.exe
2014-10-26 11:47:26 F4BF3B83F909440724A358665867D6C8 214528 ------w- C:\WINDOWS\ServicePackFiles\i386\wordpad.exe
2014-10-26 11:47:26 682B5487811C86C8D7A5C86C34295599 1414656 ------w- C:\WINDOWS\ServicePackFiles\i386\mmc.exe
2014-10-26 11:47:26 4B6424D5A198284129312CE23FB7D74B 4096 ------w- C:\WINDOWS\ServicePackFiles\i386\nddeapir.exe
2014-10-26 11:47:26 44F275C64738EA2056E3D9580C23B60F 6144 ------w- C:\WINDOWS\ServicePackFiles\i386\csrss.exe
2014-10-26 11:47:26 0E776ED5F7CC9F94299E70461B7B8185 108544 ------w- C:\WINDOWS\ServicePackFiles\i386\services.exe
2014-10-26 11:47:25 D8E14A61ACC1D4A6CD0D38AEBAC7FA3B 57856 ------w- C:\WINDOWS\ServicePackFiles\i386\spoolsv.exe
2014-10-26 11:47:25 BF2466B3E18E970D8A976FB95FC1CA85 13312 ------w- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
2014-10-26 11:47:25 8C515081584A38AA007909CD02020B3D 44544 ------w- C:\WINDOWS\ServicePackFiles\i386\alg.exe
2014-10-26 11:47:25 74B230A8261EC5DDC1DC0F3BBECD5B20 87040 ------w- C:\WINDOWS\ServicePackFiles\i386\diantz.exe
2014-10-26 11:47:24 12896823FB95BFB3DC9B46BCAEDC9923 1033728 ------w- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
2014-10-26 11:47:22 EBEA03067798E4F96A69DF77DF81D2C8 86016 ------w- C:\WINDOWS\ServicePackFiles\i386\icwconn2.exe
2014-10-26 11:47:22 9DAAC1F5A12B2293F7A5C4A15D5F4E8F 77312 ------w- C:\WINDOWS\ServicePackFiles\i386\sdbinst.exe
2014-10-26 11:47:22 0C89243C7C3EE199B96FCC16990E0679 2188928 ------w- C:\WINDOWS\ServicePackFiles\i386\ntoskrnl.exe
2014-10-26 11:47:21 3C080025710F409484862A4373DAFAE0 139264 ------w- C:\WINDOWS\ServicePackFiles\i386\cscript.exe
2014-10-26 11:47:21 30DEAF54A9755BB8546168CFE8A6B5E1 150528 ------w- C:\WINDOWS\ServicePackFiles\i386\imapi.exe
2014-10-26 11:47:20 6BA0A833DCABF3E28622143689E2C92E 10752 ------w- C:\WINDOWS\ServicePackFiles\i386\hh.exe
2014-10-26 11:47:20 109F8E3E3C82E337BB71B6BC9B895D61 2065792 ------w- C:\WINDOWS\ServicePackFiles\i386\ntkrnlpa.exe
2014-10-26 11:47:20 02972E153C4633BE999D8F5890BEA71E 215552 ------w- C:\WINDOWS\ServicePackFiles\i386\osk.exe
2014-10-26 11:47:19 EBBCE3D0D19127579C9ABBDFE7874A36 15872 ------w- C:\WINDOWS\ServicePackFiles\i386\perfmon.exe
2014-10-26 11:47:19 8D9C34F9D67DADD376EA7DF1DDD3C6C5 539136 ------w- C:\WINDOWS\ServicePackFiles\i386\dialer.exe
2014-10-26 11:47:18 7A9DB3A67C333BF0BD42E42B8596854B 289792 ------w- C:\WINDOWS\ServicePackFiles\i386\vssvc.exe
2014-10-26 11:47:18 3A988D8877393374230D2445E77733F7 98304 ------w- C:\WINDOWS\ServicePackFiles\i386\ahui.exe
2014-10-26 11:47:18 1F54D1F842805E71562552A9AE757C9C 602624 ------w- C:\WINDOWS\ServicePackFiles\i386\autoconv.exe
2014-10-26 11:47:18 0F91C0DBDD463A1F0FC13FAB46522C87 42496 ------w- C:\WINDOWS\ServicePackFiles\i386\ftp.exe
2014-10-26 11:47:17 BD6C1488F63D64DEA8EE514802FC2CDD 380416 ------w- C:\WINDOWS\ServicePackFiles\i386\rstrui.exe
2014-10-26 11:47:15 C010EC2378BFBED7D652CF9982A34AE2 11053008 ------w- C:\WINDOWS\ServicePackFiles\i386\msncli.exe
2014-10-26 11:47:15 59526DEAC6E55BBB19CF39174DCD1E59 14336 ------w- C:\WINDOWS\ServicePackFiles\i386\auditusr.exe
2014-10-26 11:47:15 3FB7A90504E70D19CF4A206880620BEF 142848 ------w- C:\WINDOWS\ServicePackFiles\i386\fxsclnt.exe
2014-10-26 11:47:15 29D41E4ED94B2048F96583D18BC1950F 25088 ------w- C:\WINDOWS\ServicePackFiles\i386\defrag.exe
2014-10-26 11:47:15 238BDCE83AF21A6C2C0FCF216D3260E3 6144 ------w- C:\WINDOWS\ServicePackFiles\i386\dcomcnfg.exe
2014-10-26 11:47:15 108793450496F028BB9D0C6D6DE0ADE9 51200 ------w- C:\WINDOWS\ServicePackFiles\i386\oobebaln.exe
2014-10-26 11:47:14 C7758F43F68584FFBC17AFD0C3B3F9BD 11264 ------w- C:\WINDOWS\ServicePackFiles\i386\wpnpinst.exe
2014-10-26 11:47:12 F29356002DF533028467ED7947BE1DC4 71680 ------w- C:\WINDOWS\ServicePackFiles\i386\blastcln.exe
2014-10-26 11:47:12 91790D6749EBED90E2C40479C0A91879 28672 ------w- C:\WINDOWS\ServicePackFiles\i386\verclsid.exe
2014-10-26 11:47:12 6309955F8A1BDD10A8467C50ED3F023E 86016 ------w- C:\WINDOWS\ServicePackFiles\i386\netsh.exe
2014-10-26 11:47:12 3DEE07C13C39194F627A4031E909332F 57344 ------w- C:\WINDOWS\ServicePackFiles\i386\makecab.exe
2014-10-26 11:47:12 287D66D215A5156AF6C5B2882732C9B3 19456 ------w- C:\WINDOWS\ServicePackFiles\i386\shutdown.exe
2014-10-26 11:47:10 FC8C41CFA2E3408EE217EFFA3B854798 25600 ------w- C:\WINDOWS\ServicePackFiles\i386\cmdl32.exe
2014-10-26 11:47:10 F5CF984927625B23757C83B0E3AACFA9 196608 ------w- C:\WINDOWS\ServicePackFiles\i386\wmiadap.exe
2014-10-26 11:47:10 4AB98661E251E53F3A2C00919F0A3EB8 7680 ------w- C:\WINDOWS\ServicePackFiles\i386\forcedos.exe
2014-10-26 11:47:10 3AF52290B3C5F21E25F1C582A60CEBF2 176640 ------w- C:\WINDOWS\ServicePackFiles\i386\napstat.exe
2014-10-26 11:47:09 FC1F164B1DF33802CC7DC15203C043F4 35840 ------w- C:\WINDOWS\ServicePackFiles\i386\rcimlby.exe
2014-10-26 11:47:09 86042F6F6A5287EAF9379C91D0BF72B6 180224 ------w- C:\WINDOWS\ServicePackFiles\i386\dwwin.exe
2014-10-26 11:47:08 A52DD5B6566B092143AE42877F2EDD62 347136 ------w- C:\WINDOWS\ServicePackFiles\i386\tourstrt.exe
2014-10-26 11:47:08 818D262CFDC84CC0BF8244EFDF4D9252 56832 ------w- C:\WINDOWS\ServicePackFiles\i386\rasphone.exe
2014-10-26 11:47:08 38C974C74897A423586E9231AB289102 230400 ------w- C:\WINDOWS\ServicePackFiles\i386\osloader.exe
2014-10-26 11:47:07 7E51F5BC7016ACC4B7CA017A197D63FD 17920 ------w- C:\WINDOWS\ServicePackFiles\i386\dpnsvr.exe
2014-10-26 11:47:07 51C2BBF52894411B0A2D4D3D72ABEEA4 163840 ------w- C:\WINDOWS\ServicePackFiles\i386\diskpart.exe
2014-10-26 11:47:07 21F839F2281473642AC2060F30E19DC7 53760 ------w- C:\WINDOWS\ServicePackFiles\i386\narrator.exe
2014-10-26 11:47:06 F735147FE43962CAFEE7C3AFA84A8F8B 103936 ------w- C:\WINDOWS\ServicePackFiles\i386\migload.exe
2014-10-26 11:47:06 91015B1F922C050498B1C9C725307F3D 11264 ------w- C:\WINDOWS\ServicePackFiles\i386\atmadm.exe
2014-10-26 11:47:06 8AFC7670B061D457897BE947F591BC24 884712 ------w- C:\WINDOWS\ServicePackFiles\i386\digcore.exe
2014-10-26 11:47:06 2FCCA89EA18CBABAD85B47D8D0CC375B 65024 ------w- C:\WINDOWS\ServicePackFiles\i386\wextract.exe
2014-10-26 11:47:05 E40E2580AB6FF1EF4867535E085A7005 18432 ------w- C:\WINDOWS\ServicePackFiles\i386\hscupd.exe
2014-10-26 11:47:05 7F653A89F6E89E3AE0D49830EECE35D4 2023936 ------w- C:\WINDOWS\ServicePackFiles\i386\ntkrpamp.exe
2014-10-26 11:47:05 65A9495A436F5402BC1C467E1B926C27 283648 ------w- C:\WINDOWS\ServicePackFiles\i386\winhlp32.exe
2014-10-26 11:47:05 5A3EB34CC341E09A55CEDB01F0D901B2 23552 ------w- C:\WINDOWS\ServicePackFiles\i386\ipxroute.exe
2014-10-26 11:46:50 A9686229DD8CC02F8F6EF81D41BEC556 294912 ------w- C:\Program Files\Windows Media Player\dlimport.exe
2014-10-26 11:46:46 A9686229DD8CC02F8F6EF81D41BEC556 294912 -c----w- C:\WINDOWS\system32\dllcache\dlimport.exe
2014-10-26 11:43:05 78141AD888BA82E3ABC854D229A59F07 231288 -c----w- C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
2014-10-26 11:43:05 5329079D8726DE34A58C2EF0BD2AC8B9 26488 ----a-w- C:\WINDOWS\system32\spupdsvc.exe
2014-10-26 11:42:00 B53343FE60A33EE765C2476D50D27B26 1667584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msmsgs.exe
2014-10-26 11:42:00 B3F8341410367B57A15DBC9440E2DA9A 786432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\migrate.exe
2014-10-26 11:41:54 F1673FD5C161121B3D6AB022F45C3E91 193024 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fsquirt.exe
2014-10-26 11:41:54 8148D865276C330ED47160728816BF12 407552 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mstsc.exe
2014-10-26 11:41:43 B8A44C04BA6EDE4B759EB1B2BF51A10B 12800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\spiisupd.exe
2014-10-26 11:41:42 07B0E978939B04AD6E69C1554FE214E3 32768 -c----w- C:\WINDOWS\$NtServicePackUninstall$\asr_pfu.exe
2014-10-26 11:41:41 0CFD77715E899E9FDE1DB92E64A4A897 18432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\secedit.exe
2014-10-26 11:41:40 49911DD39E023BB6C45E4E436CFBD297 13824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wscntfy.exe
2014-10-26 11:41:40 1075D51B46F61F4FDD3489387468EFA7 18432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\iedw.exe
2014-10-26 11:41:39 4126D27CECE4471E00E425411F7306B5 111104 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wuauclt.exe
2014-10-26 11:41:38 D9E4C16D208DEBD2D89B18C662FDC8B7 8192 -c----w- C:\WINDOWS\$NtServicePackUninstall$\smbinst.exe
2014-10-26 11:41:38 D6D51A5752637B14351704CB900E74A0 165888 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wuauclt1.exe
2014-10-26 11:41:38 A0E275F747AD2D7A21B0586086234FDF 22528 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fltmc.exe
2014-10-26 11:41:38 70E9C484EBAD7C9A91CB3D393DC19615 11776 -c----w- C:\WINDOWS\$NtServicePackUninstall$\spnpinst.exe
2014-10-26 11:41:37 7472458C7107464AD51F3B652DFBBD31 14336 -c----w- C:\WINDOWS\$NtServicePackUninstall$\auditusr.exe
2014-10-26 11:41:37 4736BFF198BBF13123C545DAA0C15A38 49152 -c----w- C:\WINDOWS\$NtServicePackUninstall$\powercfg.exe
2014-10-26 11:41:37 31B6039D8F5A08E91740C5CD13E2EC88 71680 -c----w- C:\WINDOWS\$NtServicePackUninstall$\blastcln.exe
2014-10-26 11:41:36 FAF14A1BB2441D1D845A6F3BF6A9187D 68096 -c----w- C:\WINDOWS\$NtServicePackUninstall$\systeminfo.exe
2014-10-26 11:41:36 DD84BB924ADB943E177368A225A7F69D 58368 -c----w- C:\WINDOWS\$NtServicePackUninstall$\drvqry.exe
2014-10-26 11:41:36 DD84BB924ADB943E177368A225A7F69D 58368 -c----w- C:\WINDOWS\$NtServicePackUninstall$\driverquery.exe
2014-10-26 11:41:36 D82BA004D3D48A5889EB261AC663DDC4 136704 -c----w- C:\WINDOWS\$NtServicePackUninstall$\bootcfg.exe
2014-10-26 11:41:36 C49F197542DF63BD7CED9E9A24F53091 56320 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cipher.exe
2014-10-26 11:41:36 AB25F5F8899CC9E37B0E436D1B4E0149 119808 -c----w- C:\WINDOWS\$NtServicePackUninstall$\gprslt.exe
2014-10-26 11:41:36 AB25F5F8899CC9E37B0E436D1B4E0149 119808 -c----w- C:\WINDOWS\$NtServicePackUninstall$\gpresult.exe
2014-10-26 11:41:36 AA0825F71B3054B789B0FD9D46D69C32 42496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\davcdata.exe
2014-10-26 11:41:36 8D3DE69A9A484C801C2012BE2346F851 50176 -c----w- C:\WINDOWS\$NtServicePackUninstall$\eventcreate.exe
2014-10-26 11:41:36 8D3DE69A9A484C801C2012BE2346F851 50176 -c----w- C:\WINDOWS\$NtServicePackUninstall$\evcreate.exe
2014-10-26 11:41:36 86E33A8D9174DB2DB5001D0FD5DCFB8D 121856 -c----w- C:\WINDOWS\$NtServicePackUninstall$\schtasks.exe
2014-10-26 11:41:36 8262E29A46F8F5D8068C6F0B2F1D5C11 77824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\evtrig.exe
2014-10-26 11:41:36 8262E29A46F8F5D8068C6F0B2F1D5C11 77824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\eventtriggers.exe
2014-10-26 11:41:36 817754B7A435D78AE8FC49E78E9161DE 18944 -c----w- C:\WINDOWS\$NtServicePackUninstall$\hscupd.exe
2014-10-26 11:41:36 802E4BB4945D8E923481E90B8CF8D62C 55296 -c----w- C:\WINDOWS\$NtServicePackUninstall$\getmac.exe
2014-10-26 11:41:36 366E6DFAB584D9E91C28C514D9FE3AAF 30208 -c----w- C:\WINDOWS\$NtServicePackUninstall$\asr_fmt.exe
2014-10-26 11:41:36 3496CDDD2E08355EFC714842A8826907 67584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\openfiles.exe
2014-10-26 11:41:35 B76B175D3C6FFEAEB144C6264A8F9F08 30720 -c----w- C:\WINDOWS\$NtServicePackUninstall$\iisrstas.exe
2014-10-26 11:41:35 74B9FA2AFAF60B7F4E2A952E77B9DC6C 15872 -c----w- C:\WINDOWS\$NtServicePackUninstall$\inetin51.exe
2014-10-26 11:41:34 FAF14A1BB2441D1D845A6F3BF6A9187D 68096 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sysinfo.exe
2014-10-26 11:41:34 E51950001F6B2E3DF5916EDCB4AAA390 61440 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tlntadmn.exe
2014-10-26 11:41:34 E006CB72837A438F0B58880A58CF51EB 1200128 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ntbackup.exe
2014-10-26 11:41:34 D6601C082B560A1DACEF1D989CB24EC8 19968 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mqbkup.exe
2014-10-26 11:41:34 96C102D0B66D7A6AA3EF9B07DF7EE025 117248 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mqtgsvc.exe
2014-10-26 11:41:34 86E33A8D9174DB2DB5001D0FD5DCFB8D 121856 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sctasks.exe
2014-10-26 11:41:34 84989557565ECC4149C1ED43053BCCF9 358912 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wmic.exe
2014-10-26 11:41:34 72EF444E51025F389C6C232A28B7D736 4608 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mqsvc.exe
2014-10-26 11:41:34 70363A3228DF8FC8CFF4E78F36B31C45 72192 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tasklist.exe
2014-10-26 11:41:34 52D7CF2179DDCE61701F3AE9C4679F49 9216 -c----w- C:\WINDOWS\$NtServicePackUninstall$\proxycfg.exe
2014-10-26 11:41:34 5230A07C44B1750C4F35A61C364E6806 107520 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rsnotify.exe
2014-10-26 11:41:34 37DB0A7D097310E8B4DE803FC3119C78 73216 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tlntsvr.exe
2014-10-26 11:41:34 3496CDDD2E08355EFC714842A8826907 67584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\opnfiles.exe
2014-10-26 11:41:34 2F6A22D6F91CDD5B0C2A6C26727E8CBF 259584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tracerpt.exe
2014-10-26 11:41:34 2A1E4A15FD2309C75BD46FC5188F42F3 78336 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tlntsess.exe
2014-10-26 11:41:34 051036EB5A44774ED861A63F025D062D 72192 -c----w- C:\WINDOWS\$NtServicePackUninstall$\taskkill.exe
2014-10-26 11:41:31 C91B0AF008E40FB467AE75520DC5261A 188480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cfgwiz.exe
2014-10-26 11:41:31 64F04CCD27271961B8E4A5DA12B54EB6 16439 -c----w- C:\WINDOWS\$NtServicePackUninstall$\author.exe
2014-10-26 11:41:31 64F04CCD27271961B8E4A5DA12B54EB6 16439 -c----w- C:\WINDOWS\$NtServicePackUninstall$\admin.exe
2014-10-26 11:41:31 1AC9BE9C1F2D5119D234A1B468808963 256512 -c----w- C:\WINDOWS\$NtServicePackUninstall$\agentsvr.exe
2014-10-26 11:41:30 FCBD571FA0EE8DC238944AE5FAB74461 267776 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fxssvc.exe
2014-10-26 11:41:30 F00AF2BCAFF4AF688508716A4640DD92 24632 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fpadmcgi.exe
2014-10-26 11:41:30 B1B5C7807DB18FA91C767645F8EC484A 1032192 -c----w- C:\WINDOWS\$NtServicePackUninstall$\conf.exe
2014-10-26 11:41:30 B02F79BCE36D992B357779A7E329DC2E 20538 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fpremadm.exe
2014-10-26 11:41:30 908F0EDA6A49625F9858E6B6C7C2A463 5120 -c----w- C:\WINDOWS\$NtServicePackUninstall$\comrereg.exe
2014-10-26 11:41:30 89C27954A453A7D531C58719DA2A8FF7 143360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fxsclnt.exe
2014-10-26 11:41:30 795E9244A49AFE66D867FD1154DCB576 229376 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fxscover.exe
2014-10-26 11:41:30 69197A49051D3BE070E7AC747649DC69 24064 -c----w- C:\WINDOWS\$NtServicePackUninstall$\evntcmd.exe
2014-10-26 11:41:30 4CE9301E409B099669EE87F41EB0312D 14608 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fp98sadm.exe
2014-10-26 11:41:30 42B1F1CE95A41D35AF65CCF8925728A3 9728 -c----w- C:\WINDOWS\$NtServicePackUninstall$\comrepl.exe
2014-10-26 11:41:30 26976F1218F15406E4D9A0C9D1654EAD 539136 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dialer.exe
2014-10-26 11:41:30 224B007D7C4292F8186C7B7762161BD9 188494 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fpcount.exe
2014-10-26 11:41:30 1CEBC12EC1EAFFDFEBB5354936A8D32A 109328 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fp98swin.exe
2014-10-26 11:41:30 11688538913C6DAE8AF3469B1F8AC769 92160 -c----w- C:\WINDOWS\$NtServicePackUninstall$\evntwin.exe
2014-10-26 11:41:28 E7D34346EB9AD89CC37848ED1BA6A804 20480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\inetwiz.exe
2014-10-26 11:41:28 E7484514C0464642BE7B4DC2689354C8 93184 -c----w- C:\WINDOWS\$NtServicePackUninstall$\iexplore.exe
2014-10-26 11:41:28 B719C7D08847D3C9EFD63732E1072A40 743936 -c----w- C:\WINDOWS\$NtServicePackUninstall$\helpsvc.exe
2014-10-26 11:41:28 B45C6C6F4E52530860011D9245EFE7D9 24576 -c----w- C:\WINDOWS\$NtServicePackUninstall$\icwrmind.exe
2014-10-26 11:41:28 7448DD5C9860E02EE99F2DCCDBC0A43E 86016 -c----w- C:\WINDOWS\$NtServicePackUninstall$\icwconn2.exe
2014-10-26 11:41:28 3BA608F5B5EB81B972E047FCC1813BFE 768512 -c----w- C:\WINDOWS\$NtServicePackUninstall$\helpctr.exe
2014-10-26 11:41:28 09A25348786B267204B300CFBC9960EC 214528 -c----w- C:\WINDOWS\$NtServicePackUninstall$\icwconn1.exe
2014-10-26 11:41:27 5417E3435139EB7686605BB1038BF24E 7680 -c----w- C:\WINDOWS\$NtServicePackUninstall$\migregdb.exe
2014-10-26 11:41:26 DB893168B7ABEE8D4FAC488FDD3A0B76 3555328 -c----w- C:\WINDOWS\$NtServicePackUninstall$\moviemk.exe
2014-10-26 11:41:26 D5683E97135348DD081C5269980B0893 111104 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mtstocom.exe
2014-10-26 11:41:26 BD7A16C651B1F5FE6BC7AA6801EAE805 90624 -c----w- C:\WINDOWS\$NtServicePackUninstall$\muisetup.exe
2014-10-26 11:41:26 96641889EEA85EDEFA239AF098FEE8AD 4639 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mplayer2.exe
2014-10-26 11:41:26 4FD22142F54692463A7B98B7DE175573 158208 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msconfig.exe
2014-10-26 11:41:26 4E39664ACBEA1E4FF01696DA2C5A7706 40960 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msiregmv.exe
2014-10-26 11:41:26 091C14F4C71328D4316248A2421190DE 60416 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msimn.exe
2014-10-26 11:41:25 EFA500C2882EAD296DA76F1DC6025EDA 60416 -c----w- C:\WINDOWS\$NtServicePackUninstall$\oemig50.exe
2014-10-26 11:41:25 BB3707496FA1954C92AEFE539FC2694D 70144 -c----w- C:\WINDOWS\$NtServicePackUninstall$\pintlphr.exe
2014-10-26 11:41:25 B39375CA677AF22CF3567F6BB04150AA 236544 -c----w- C:\WINDOWS\$NtServicePackUninstall$\smi2smir.exe
2014-10-26 11:41:25 697B612EE59ADE30B25BFAD1F1BA588D 774144 -c----w- C:\WINDOWS\$NtServicePackUninstall$\setup_wm.exe
2014-10-26 11:41:25 4375CD59161C0A033DF68D9510D1F8CF 380416 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rstrui.exe
2014-10-26 11:41:25 42A8698526DD794C0CDE86DD1EBABDEA 16437 -c----w- C:\WINDOWS\$NtServicePackUninstall$\shtml.exe
2014-10-26 11:41:25 2BA71093C32C6150E57C9A3205063DC6 281088 -c----w- C:\WINDOWS\$NtServicePackUninstall$\pinball.exe
2014-10-26 11:41:25 2144B771CD4B0818A35D4C3337786008 15360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nppagent.exe
2014-10-26 11:41:25 1A67EEE45C2045A69E4DCDDF20C41100 73216 -c----w- C:\WINDOWS\$NtServicePackUninstall$\setup50.exe
2014-10-26 11:41:24 D923BF27723E28E3C121B77F52DB4BCE 32768 -c----w- C:\WINDOWS\$NtServicePackUninstall$\snmp.exe
2014-10-26 11:41:23 DC37651A8025BC210DC8C8EA98CE3127 347136 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tourstrt.exe
2014-10-26 11:41:23 BD2731756148627532BFD77D05CFB4FC 30208 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wabmig.exe
2014-10-26 11:41:23 A7B050F20F8008E7BCDA4A5359C2063F 46080 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wab.exe
2014-10-26 11:41:23 6F591DBEFD11F7697042907B516F1212 8704 -c----w- C:\WINDOWS\$NtServicePackUninstall$\snmptrap.exe
2014-10-26 11:41:23 412ED815756DEE6F7290A8D54A424332 32827 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tcptest.exe
2014-10-26 11:41:23 0F98A6CABD2E04E01ADA3F793C1A077D 150528 -c----w- C:\WINDOWS\$NtServicePackUninstall$\uploadm.exe
2014-10-26 11:41:22 F0543ACEEB5CD8821469958C9F3DD9A4 214528 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wordpad.exe
2014-10-26 11:41:22 48CDAB5EB8C952534AE2C5AED72CCB70 73728 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wmplayer.exe
2014-10-26 11:41:21 D0DCD145DDAD62236FA63D71E58B213A 36864 -c----w- C:\WINDOWS\$NtServicePackUninstall$\scrcons.exe
2014-10-26 11:41:21 084A6735DDEDD46D404F87C100A4E3D6 16384 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mofcomp.exe
2014-10-26 11:41:20 C4E0D8A03AEDA76D4746ECFED1B09B68 116224 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wbemtest.exe
2014-10-26 11:41:20 BA8CECC3E813E1F7C441B20393D4F86C 126464 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wmiapsrv.exe
2014-10-26 11:41:20 28BD3128DD85EEBA6AEF9A15D25B2346 196608 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wmiadap.exe
2014-10-26 11:41:20 075EA6C849AB0FE416A3D6DD65C3CF41 218112 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe
2014-10-26 11:41:18 DE6FEE4DEFBC2A7D54AC0227191F827E 10752 -c----w- C:\WINDOWS\$NtServicePackUninstall$\hh.exe
2014-10-26 11:41:18 D623276C3C72C8226EF4AFC5EB12DAB1 51200 -c----w- C:\WINDOWS\$NtServicePackUninstall$\oobebaln.exe
2014-10-26 11:41:18 CA77F7869E93AEF1C6CA76FCCAD26E62 183808 -c----w- C:\WINDOWS\$NtServicePackUninstall$\accwiz.exe
2014-10-26 11:41:18 A459AA940D845A972576AE48C7AAB71B 4096 -c----w- C:\WINDOWS\$NtServicePackUninstall$\actmovie.exe
2014-10-26 11:41:18 A0732187050030AE399B241436565E64 1032192 -c----w- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
2014-10-26 11:41:18 994C093C50ADAA8D43FB5AFDE2B6312E 103424 -c----w- C:\WINDOWS\$NtServicePackUninstall$\migload.exe
2014-10-26 11:41:18 95F11851AA8794B9716CB1EA39D00FB5 208896 -c----w- C:\WINDOWS\$NtServicePackUninstall$\unregmp2.exe
2014-10-26 11:41:18 783AFC80383C176B22DBF8333343992D 146432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\regedit.exe
2014-10-26 11:41:18 6EFEE479AE08192225BF198E276B5731 28160 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msoobe.exe
2014-10-26 11:41:18 3DC9256DA25BDFF582D7D46C59AD7112 240128 -c----w- C:\WINDOWS\$NtServicePackUninstall$\migwiz.exe
2014-10-26 11:41:18 3371D02425BF6D8CA33DE9C92F359519 283648 -c----w- C:\WINDOWS\$NtServicePackUninstall$\winhlp32.exe
2014-10-26 11:41:17 F1958FBF86D5C004CF19A5951A9514B7 44544 -c----w- C:\WINDOWS\$NtServicePackUninstall$\alg.exe
2014-10-26 11:41:17 DAAA427046A60901A82448F75DEC0BEB 580608 -c----w- C:\WINDOWS\$NtServicePackUninstall$\autofmt.exe
2014-10-26 11:41:17 9BDF13167FBEF8DA3A4E9A558B169E5E 25088 -c----w- C:\WINDOWS\$NtServicePackUninstall$\at.exe
2014-10-26 11:41:17 74628B0E5267E71DE3ABAEB2BB75A8EE 98304 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ahui.exe
2014-10-26 11:41:17 58999128E35656DBA81C721D2A9F8FF8 11264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\atmadm.exe
2014-10-26 11:41:17 2FF66C854FF8D666356EF800426465E9 11264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\attrib.exe
2014-10-26 11:41:17 2E4D50D6FFF72A013118B7F1BB01326D 11264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\autolfn.exe
2014-10-26 11:41:16 99AFE57F0484ED18BBAFEECDB1C17F78 20480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cliconfg.exe
2014-10-26 11:41:16 3D1FC5DE6DBE1DBED07C89D0498B1D88 64000 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cleanmgr.exe
2014-10-26 11:41:16 3192BD04D032A9C4A85A3278C268A13A 5632 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cisvc.exe
2014-10-26 11:41:15 F12B178B1678D778CFD3FF1FC38C71FB 6144 -c----w- C:\WINDOWS\$NtServicePackUninstall$\csrss.exe
2014-10-26 11:41:15 ECA57A224047AFF2890B589DFC0B39F5 163840 -c----w- C:\WINDOWS\$NtServicePackUninstall$\diskpart.exe
2014-10-26 11:41:15 EA04AD67501587F2C018E79B6B541224 98304 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cscript.exe
2014-10-26 11:41:15 DD87DB7387B9EB441C5674888A0D840C 5120 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe
2014-10-26 11:41:15 C8DEC22C4137D7A90F8BDF41CA4B82AE 33280 -c----w- C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe
2014-10-26 11:41:15 C674E935BF5E96FFCC8E5378D6ED06B1 47104 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cmdl32.exe
2014-10-26 11:41:15 AFCA556AFC55E4DFA304F3B2CB1B6527 30208 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ddeshare.exe
2014-10-26 11:41:15 AD13E23A2CCDF46C0EB354E5867EAE72 104960 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dfrgntfs.exe
2014-10-26 11:41:15 9766F1F735C635BE391E59D5DF648A46 15872 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dmremote.exe
2014-10-26 11:41:15 8CB76728A17487C7317AD95723817881 25088 -c----w- C:\WINDOWS\$NtServicePackUninstall$\defrag.exe
2014-10-26 11:41:15 8A75C6A8ACBFCC21D6ADDF66DE4C8363 102912 -c----w- C:\WINDOWS\$NtServicePackUninstall$\clipbrd.exe
2014-10-26 11:41:15 7671D26C046BE6C8A53D83795BDEC5FE 39936 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cmmon32.exe
2014-10-26 11:41:15 69B231148006E8B15EE839ABBF8CA576 63488 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cmstp.exe
2014-10-26 11:41:15 554C7CB178FE3BD12450B81AD63ADBC3 224768 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dmadmin.exe
2014-10-26 11:41:15 48734E9B45DCA36E8A3C48A648826A5F 85504 -c----w- C:\WINDOWS\$NtServicePackUninstall$\diantz.exe
2014-10-26 11:41:15 24232996A38C0B0CF151C2140AE29FC8 15360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe
2014-10-26 11:41:15 1178CD20B90936837DF945162A194465 5120 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dcomcnfg.exe
2014-10-26 11:41:15 054DF8F752497C6B74DD7B65CCA61132 27648 -c----w- C:\WINDOWS\$NtServicePackUninstall$\conime.exe
2014-10-26 11:41:15 01496E720AB441C541E19FDE9902B0A9 82432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dfrgfat.exe
2014-10-26 11:41:14 86420CA7DA82362757E3925355A5F001 30208 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dplaysvr.exe
2014-10-26 11:41:14 084CD12D8261AFA77C6CFC4E5E2C4F32 18432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dpnsvr.exe
2014-10-26 11:41:13 FEA9D7A368A6D8F517ABBFAF2DE01248 83456 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dpvsetup.exe
2014-10-26 11:41:13 F3DB73848AF4BF8B7DE2BF88FD39180B 20992 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fontview.exe
2014-10-26 11:41:13 E62CB31AE2DFFBA6836C7CB780EBF7DE 27136 -c----w- C:\WINDOWS\$NtServicePackUninstall$\findstr.exe
2014-10-26 11:41:13 9EE8C35B3391F30A7D088F5C43435AFB 39424 -c----w- C:\WINDOWS\$NtServicePackUninstall$\grpconv.exe
2014-10-26 11:41:13 945911BE809DFD96551750048A149600 17920 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dvdupgrd.exe
2014-10-26 11:41:13 7C25440617EEE6F69709AA8C915D2C32 180224 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dwwin.exe
2014-10-26 11:41:13 79D390B707701CF0019053BB77C26933 193024 -c----w- C:\WINDOWS\$NtServicePackUninstall$\eudcedit.exe
2014-10-26 11:41:13 4784301C7E558E99716F8F044EFCBCBB 14848 -c----w- C:\WINDOWS\$NtServicePackUninstall$\help.exe
2014-10-26 11:41:13 30344293216BA699C5C16203CF79E914 34304 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ie4uinit.exe
2014-10-26 11:41:13 2101F6C53C5F74F8CE0302E36B363F58 1298432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dxdiag.exe
2014-10-26 11:41:13 16B037EEC30DC5649749B5848F56123F 7168 -c----w- C:\WINDOWS\$NtServicePackUninstall$\forcedos.exe
2014-10-26 11:41:13 13922EB54890C77005268882629A31FE 10752 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dumprep.exe
2014-10-26 11:41:13 0750F142CAC1EB1F57BCC1A56D1FF5F1 45568 -c----w- C:\WINDOWS\$NtServicePackUninstall$\extrac32.exe
2014-10-26 11:41:12 FA788520BCAC0F5D9D5CDE5615C0D931 150016 -c----w- C:\WINDOWS\$NtServicePackUninstall$\imapi.exe
2014-10-26 11:41:12 10E47A14BEC13D96BBB689CF381C0934 114688 -c----w- C:\WINDOWS\$NtServicePackUninstall$\iexpress.exe
2014-10-26 11:41:11 A57F40DC553A2D63438668AABC99344F 23552 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ipxroute.exe
2014-10-26 11:41:11 84885F9B82F4D55C6146EBF6065D75D2 13312 -c----w- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
2014-10-26 11:41:11 7F7C195E9E5E81EB7F39A32CD7D637CF 55808 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ipconfig.exe
2014-10-26 11:41:11 38FBBB9ADD402BFF3200883FB24B4384 53248 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ipv6.exe
2014-10-26 11:41:11 2740DC2FBEFADDB891FD8C056494830B 85504 -c----w- C:\WINDOWS\$NtServicePackUninstall$\makecab.exe
2014-10-26 11:41:11 04A3684E0C08DDBA891825C0C40AD528 72704 -c----w- C:\WINDOWS\$NtServicePackUninstall$\magnify.exe
2014-10-26 11:41:10 F6415361201915B9FE3896B0E4E724FF 32768 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mnmsrvc.exe
2014-10-26 11:41:10 E0336EE56521D27FB42C5D08EBBEC428 123392 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mplay32.exe
2014-10-26 11:41:10 C7C3D89EB0A6F3DBA622EA737FA335B1 6144 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msdtc.exe
2014-10-26 11:41:10 808A9C735682FA8F23747F7E3E765C3B 815104 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mmc.exe
2014-10-26 11:41:10 5531C63F05C7D041F7DA9F8B7D88F00E 143360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mobsync.exe
2014-10-26 11:41:09 C4445BD306656ADE30900E6197FABED1 29184 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mshta.exe
2014-10-26 11:41:09 57ADB09ED3617B042D155449490A9F76 343040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mspaint.exe
2014-10-26 11:41:09 4236AE241F193F58ADAB141CECCFD5F4 77312 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msiexec.exe
2014-10-26 11:41:08 4EC9A411607BFB7288EFF808223C25D6 12288 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mstinit.exe
2014-10-26 11:41:06 C449FDB6D69414B5E5FF8FC9F7FB5B0F 215552 -c----w- C:\WINDOWS\$NtServicePackUninstall$\osk.exe
2014-10-26 11:41:06 9E39EDEEC9905E499886F530975A94A1 329728 -c----w- C:\WINDOWS\$NtServicePackUninstall$\netsetup.exe
2014-10-26 11:41:06 7C52632DDCD68A5D87F293E5E9D0361C 124928 -c----w- C:\WINDOWS\$NtServicePackUninstall$\net1.exe
2014-10-26 11:41:06 797B56BB7F031926FC540D8F6CFFAD50 53760 -c----w- C:\WINDOWS\$NtServicePackUninstall$\narrator.exe
2014-10-26 11:41:06 62B84D99295346AF5A3B1A9C3BDE04AB 17920 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ping.exe
2014-10-26 11:41:06 4EF9B136216C0FC563D911BB3503B632 58368 -c----w- C:\WINDOWS\$NtServicePackUninstall$\packager.exe
2014-10-26 11:41:06 388B8FBC36A8558587AFC90FB23A3B99 69120 -c----w- C:\WINDOWS\$NtServicePackUninstall$\notepad.exe
2014-10-26 11:41:06 373E5BBC38B2330EBE1C7E4B54765FB9 86016 -c----w- C:\WINDOWS\$NtServicePackUninstall$\netsh.exe
2014-10-26 11:41:06 368314E76FC8C0C05E4BA52A91807C31 36864 -c----w- C:\WINDOWS\$NtServicePackUninstall$\netstat.exe
2014-10-26 11:41:06 311D0118CB2AF6DCCEE56DBD1275FEB2 109568 -c----w- C:\WINDOWS\$NtServicePackUninstall$\progman.exe
2014-10-26 11:41:06 2BF3FB5250790A6FC421217A251224BA 4096 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nddeapir.exe
2014-10-26 11:41:06 29ED429A12DEEAEE5E40307C5215E8D8 42496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\net.exe
2014-10-26 11:41:06 230F51F2E4D9C7590F8E1DD76A627143 15872 -c----w- C:\WINDOWS\$NtServicePackUninstall$\perfmon.exe
2014-10-26 11:41:06 156B130BD457BC14027C5947DD641626 32768 -c----w- C:\WINDOWS\$NtServicePackUninstall$\odbcad32.exe
2014-10-26 11:41:06 06F7F2A4C19CE866DAB370696856FF5B 69632 -c----w- C:\WINDOWS\$NtServicePackUninstall$\odbcconf.exe
2014-10-26 11:41:06 05AFB5AD06462257BEA7495283C86D50 111104 -c----w- C:\WINDOWS\$NtServicePackUninstall$\netdde.exe
2014-10-26 11:41:05 FCC64F08E0F26958303AE61805263C86 20480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\qprocess.exe
2014-10-26 11:41:05 AE09D65C7D4EA3B7296C3E0ECA4DCAEA 21504 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rcp.exe
2014-10-26 11:41:05 AB978E64B3CB5B78842BC2BDAE19D0CD 62464 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rdpclip.exe
2014-10-26 11:41:05 8ABBAA7EECEE223B8F854C0393221EB5 56832 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rasphone.exe
2014-10-26 11:41:05 57FB84D077C5C99A365FDDA1100D4BB5 35840 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rcimlby.exe
2014-10-26 11:41:05 4D9D45A4370E0C2AD00C362B7118E2A4 50176 -c----w- C:\WINDOWS\$NtServicePackUninstall$\proquota.exe
2014-10-26 11:41:04 F75133006C6D350E90FA2339C64882B1 14848 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rsh.exe
2014-10-26 11:41:04 E4F5BB68F1827FD42C423BB82EBD5BDE 77312 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sdbinst.exe
2014-10-26 11:41:04 DA285490BBD8A1D0CE6623577D5BA1FF 33280 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rundll32.exe
2014-10-26 11:41:04 CED12C3CD1D6599C6DAC53AE6C3A3449 67072 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rdshost.exe
2014-10-26 11:41:04 C861F40822FB4FCAF6E82FB79E82F337 23040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\setup.exe
2014-10-26 11:41:04 9709EAD856A690333138AC40804F914E 11776 -c----w- C:\WINDOWS\$NtServicePackUninstall$\regsvr32.exe
2014-10-26 11:41:04 95D68E67CE9ED03F9AA0AC10D715DDBC 14336 -c----w- C:\WINDOWS\$NtServicePackUninstall$\runonce.exe
2014-10-26 11:41:04 80660EC4F6ED48B0A0BE54740D121924 13824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rexec.exe
2014-10-26 11:41:04 4DB5C6C8A76EEA7C0461D5C4EE41B4AB 31232 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sethc.exe
2014-10-26 11:41:04 4C2638746BD851949FB9280D4C6B21D3 13824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rdsaddin.exe
2014-10-26 11:41:04 3F1DF5D22C775B5E5DE561755FA9AB55 50176 -c----w- C:\WINDOWS\$NtServicePackUninstall$\reg.exe
2014-10-26 11:41:04 38A34F7E08514C7543784497D75D5384 77312 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rtcshare.exe
2014-10-26 11:41:02 FC160ACE21C81837692B339D230DD4BE 135680 -c----w- C:\WINDOWS\$NtServicePackUninstall$\taskmgr.exe
2014-10-26 11:41:02 F64F6C05B94F637A1C90E8EE341EBFB9 75264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\telnet.exe
2014-10-26 11:41:02 DEE64FD8AD3B76A74DB310CC898226A6 23552 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sort.exe
2014-10-26 11:41:02 DC510347C206F3028A7E10B7CA014934 70144 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sigverif.exe
2014-10-26 11:41:02 DC37651A8025BC210DC8C8EA98CE3127 347136 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tourstart.exe
2014-10-26 11:41:02 D99EEC67F0E7AEED4833DC9DDB3527A9 26112 -c----w- C:\WINDOWS\$NtServicePackUninstall$\skeys.exe
2014-10-26 11:41:02 D6C6F5126C671C6C224C4A1A0C72EF7D 42496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\shmgrate.exe
2014-10-26 11:41:02 ABBFEE135A0B6C23D5B3D1BF758CA8F3 131584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sndrec32.exe
2014-10-26 11:41:02 8F078AE4ED187AAABC0A305146DE6716 14336 -c----w- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
2014-10-26 11:41:02 8B9A897BA5DB04AA59DC32BD2A112563 14848 -c----w- C:\WINDOWS\$NtServicePackUninstall$\stimon.exe
2014-10-26 11:41:02 7435B108B935E42EA92CA94F59C8E717 57856 -c----w- C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe
2014-10-26 11:41:02 6F06118F68E7BD7EBD1C66255DF5CAC8 19456 -c----w- C:\WINDOWS\$NtServicePackUninstall$\shutdown.exe
2014-10-26 11:41:02 582CD03E4F84350150AF8CFD2FA00C22 77824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\shrpubw.exe
2014-10-26 11:41:02 520278F77ABD386A42C7A83A0CD57F16 105984 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sysocmgr.exe
2014-10-26 11:41:02 4749198C70F4162D622F24601B527645 538624 -c----w- C:\WINDOWS\$NtServicePackUninstall$\spider.exe
2014-10-26 11:41:01 D49212322BA85BD4DBE5D5D8657FC0C5 65536 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wextract.exe
2014-10-26 11:41:01 C701829A65D5A09F8CBA4F21B3D4AB18 433664 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wiaacmgr.exe
2014-10-26 11:41:01 BDC85C41E0A1FC0B7E080D903512083B 12288 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tracert.exe
2014-10-26 11:41:01 970E01C0FD2EA78669E5995D5FF70F35 50176 -c----w- C:\WINDOWS\$NtServicePackUninstall$\utilman.exe
2014-10-26 11:41:01 96B52354BD09D09335D84890CD67499F 16896 -c----w- C:\WINDOWS\$NtServicePackUninstall$\upnpcont.exe
2014-10-26 11:41:01 3F5DF65B0758675F95A2D43918A740A3 18432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ups.exe
2014-10-26 11:41:01 3EE00364AE0FD8D604F46CBAF512838A 289792 -c----w- C:\WINDOWS\$NtServicePackUninstall$\vssvc.exe
2014-10-26 11:41:00 E999F3CC5334F36E14BD7DDEB8E11975 32256 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wpnpinst.exe
2014-10-26 11:41:00 C5F10136A584CB4B2B4E794E8739B96D 32256 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wpabaln.exe
2014-10-26 11:41:00 68C0DD27EB8FE05AC1F7386B349CE08C 5632 -c----w- C:\WINDOWS\$NtServicePackUninstall$\winver.exe
2014-10-26 11:41:00 3ADCE7346E279C8E7ADEC5F2428385C6 114688 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wscript.exe
2014-10-26 11:41:00 2C046FCD15DAB01FFDE9652569CE43E5 30720 -c----w- C:\WINDOWS\$NtServicePackUninstall$\xcopy.exe
2014-10-26 11:40:58 EEB024F2C81F0D55936FB825D21A91D6 388608 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cmd.exe
2014-10-26 11:40:58 CEFBCDBADD70C6BB9538B6CAF224FB2E 18432 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cacls.exe
2014-10-26 11:40:58 CE3E0B8C9FB00AE2B214B1C951C4326F 76800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nslookup.exe
2014-10-26 11:40:58 C6CE6EEC82F187615D1002BB3BB50ED4 108032 -c----w- C:\WINDOWS\$NtServicePackUninstall$\services.exe
2014-10-26 11:40:58 BD7FB0957C716F1A60333AEE04DE2178 50688 -c----w- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
2014-10-26 11:40:58 B3415B9D6026F65E43089ABED096C38C 588800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
2014-10-26 11:40:58 910362F6BFC1F0832691ED3BAD8ECDD5 13312 -c----w- C:\WINDOWS\$NtServicePackUninstall$\savedump.exe
2014-10-26 11:40:58 7AD3256835AABF22DF47E232CCFF312F 42496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ftp.exe
2014-10-26 11:40:58 793F04A09B15E7C6C11DBDFFAF06C0AB 75264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\locator.exe
2014-10-26 11:40:58 729798E0933076B8FCFCD9934698F164 140800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sessmgr.exe
2014-10-26 11:40:58 3B5CA9D66D010F1CFC7738EAB0599FD4 602624 -c----w- C:\WINDOWS\$NtServicePackUninstall$\autoconv.exe
2014-10-26 11:40:58 39B1FFB03C2296323832ACBAE50D2AFF 24576 -c----w- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
2014-10-26 11:40:58 25D8DE134DF108E3DBC8D7D23B1AA58E 95744 -c----w- C:\WINDOWS\$NtServicePackUninstall$\scardsvr.exe
2014-10-26 11:40:58 0738F4B53D967E46CC5E51F84BC1EB39 419840 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ntvdm.exe
2014-10-26 11:40:56 CE218BC7088681FAA06633E218596CA7 2180992 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ntoskrnl.exe
2014-10-26 11:40:56 947FB1D86D14AFCFFDB54BF837EC25D0 2056832 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ntkrnlpa.exe
2014-10-26 11:32:05 BB25707C919DD835A9D9706B5725AF58 331805736 ----a-w- C:\Documents and Settings\Ristic\Desktop\windowsxp-kb936929-sp3-x86-enu_c81472f7eeea2eca421e116cd4c03e2300ebfde4.exe
2014-10-26 11:11:55 EB40DC01EF0D0D91F13AABA0FE1FC0CA 1962496 ----a-w- C:\Documents and Settings\Ristic\Desktop\AdwCleaner.exe
2014-10-25 19:26:10 DAAA427046A60901A82448F75DEC0BEB 580608 ----a-w- C:\cmdcons\autofmt.exe
2014-10-25 19:26:09 B3415B9D6026F65E43089ABED096C38C 588800 ----a-w- C:\cmdcons\autochk.exe
2014-10-25 19:10:30 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\WINDOWS\PEV.exe
2014-10-25 19:10:30 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\WINDOWS\grep.exe
2014-10-25 19:10:30 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\WINDOWS\zip.exe
2014-10-25 19:10:30 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\WINDOWS\SWSC.exe
2014-10-25 19:10:30 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\WINDOWS\MBR.exe
2014-10-25 18:36:14 5A275A569DCE6E2F2F0284D82D31310B 699016 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\cbsidlm-cbsi213-XWin32-SEO-10001672.exe
2014-10-25 18:32:47 EA5887B952607BD0A916084CA3956316 4874632 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\setup.exe
2014-10-25 17:58:32 6B269D4D0FE26FCBF1D15DD6EF90EF36 2112512 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\FRST64(2).exe
2014-10-25 17:57:31 6B269D4D0FE26FCBF1D15DD6EF90EF36 2112512 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\FRST64(1).exe
2014-10-25 17:54:51 AF435BC62344A1E71C7DFC6C14815396 370504 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\SoftonicDownloader_for_win32pad.exe
2014-10-25 17:54:33 2C96A37123004DC94E4E97D055A6B40F 1104384 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\FRST(1).exe
2014-10-25 17:53:27 389CA58AF67EB8147A8884B974D07593 347 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\FRST64.exe
2014-10-25 17:42:11 2C96A37123004DC94E4E97D055A6B40F 1104384 ----a-w- C:\Documents and Settings\Ristic\My Documents\Downloads\FRST.exe
2014-10-25 17:08:57 FCB41B6B2827C48A1998D07FDC4F8894 43344 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\DriverInstall.exe
2014-10-25 17:08:57 EC1CAB8161D78AB4D7430733698F4238 330064 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Drivers\Win32\Win32Driver.exe
2014-10-25 17:08:57 95A7C110BAA786C6185DCABEB882837A 309584 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\DriverUninstall.exe
2014-10-25 17:08:57 8B68BB373DFC436F7646BB221B0032D1 2346320 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Drivers\Win64\Win64Driver.exe
2014-10-25 17:08:57 6890C5C3FBCCDBE5402FF390B74A41C4 26960 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Eject.exe
2014-10-25 17:08:57 06E0299DA1A5A7BE7B01307386E96E93 114176 ----a-w- C:\Program Files\Sitecom 3G MiFi\WCDMA_EjectCdrom.exe
2014-10-25 17:08:56 B361F8681B0DDF525FAA962921AF3C49 744038 ----a-w- C:\Program Files\Sitecom 3G MiFi\uninst\unins000.exe
2014-10-25 17:08:56 0E3012774695E2CE294DC29982A2FF5E 311296 ----a-w- C:\Program Files\Sitecom 3G MiFi\Sitecom 3G MiFi.exe
2014-10-24 19:44:55 D2F08F8783EBA3C2B9F007EE0ABAD8E7 1388376 ----a-w- C:\Documents and Settings\Ristic\Application Data\BitTorrent\updates\7.9.2_34947.exe
=== C: other files ==
2014-10-26 11:49:04 D0AB9975792977E620A5E42B3B88A4F1 403 -c----w- C:\WINDOWS\system32\dllcache\npdrmv2.zip
2014-10-26 11:49:04 C1A05574369B552F87898FDC6124AA74 22060 -c----w- C:\WINDOWS\system32\dllcache\npds.zip
2014-10-26 11:48:50 B43B36B382AEA10861F7C7A37F9D4AE2 46592 ------w- C:\WINDOWS\system32\drivers\irbus.sys
2014-10-26 11:48:23 70C14F5CCA5CF73F8A645C73A01D8726 92544 ------w- C:\WINDOWS\ServicePackFiles\i386\mqac.sys
2014-10-26 11:48:19 51FDC510F49A49A2B09B4B8BC00ACF06 85813 ------w- C:\WINDOWS\ServicePackFiles\i386\adsutil.vbs
2014-10-26 11:48:18 36B9B950E3D2E100970A48D8BAD86740 163584 ------w- C:\WINDOWS\ServicePackFiles\i386\nwrdr.sys
2014-10-26 11:48:16 B43B36B382AEA10861F7C7A37F9D4AE2 46592 ------w- C:\WINDOWS\ServicePackFiles\i386\irbus.sys
2014-10-26 11:48:15 D80A8F6C0A717446496C3A06D33B0D9C 13824 ------w- C:\WINDOWS\ServicePackFiles\i386\atinttxx.sys
2014-10-26 11:48:15 C740D0CB238670629AF1B740414A8F3C 17664 ------w- C:\WINDOWS\ServicePackFiles\i386\ppa3.sys
2014-10-26 11:48:15 BB68CEBFFD181E18A26112D1B9F90F3D 36480 ------w- C:\WINDOWS\ServicePackFiles\i386\bthprint.sys
2014-10-26 11:48:15 9EE18A5A45552673A67532EA37370377 606684 ------w- C:\WINDOWS\ServicePackFiles\i386\ltmdmnt.sys
2014-10-26 11:48:15 72FE2BEA6863D4EB93442A1C4FB5CA48 59136 ------w- C:\WINDOWS\ServicePackFiles\i386\gckernel.sys
2014-10-26 11:48:15 03A7E0922ACFE1B07D5DB2EEB0773063 44928 ------w- C:\WINDOWS\ServicePackFiles\i386\agpcpq.sys
2014-10-26 11:48:14 E90AC2B14E98F1A4372E5891B4278784 14336 ------w- C:\WINDOWS\ServicePackFiles\i386\atinpdxx.sys
2014-10-26 11:48:14 DCA17912A1926AE427537648FC0E74D5 154624 ------w- C:\WINDOWS\ServicePackFiles\i386\wlluc48.sys
2014-10-26 11:48:14 9EF487A186DEA361AA06913A75B3FA99 14592 ------w- C:\WINDOWS\ServicePackFiles\i386\kbdhid.sys
2014-10-26 11:48:14 95C6432151CCFF8617352F8E616A1AA4 22016 ------w- C:\WINDOWS\ServicePackFiles\i386\msircomm.sys
2014-10-26 11:48:14 92CDD60B6730B9F50F6A1A0C1F8CDC81 27392 ------w- C:\WINDOWS\ServicePackFiles\i386\fdc.sys
2014-10-26 11:48:14 7BB3AA595E4507A788DE1CDC63F4C8C4 11871 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv09nt.sys
2014-10-26 11:48:14 5252605079810904E31C332E241CD59B 334848 ------w- C:\WINDOWS\ServicePackFiles\i386\srv.sys
2014-10-26 11:48:14 173F317CE0DB8E21322E71B7E60A27E8 32128 ------w- C:\WINDOWS\ServicePackFiles\i386\usbccgp.sys
2014-10-26 11:48:13 B5B8A80875C1DEDEDA8B02765642C32F 60800 ------w- C:\WINDOWS\ServicePackFiles\i386\arp1394.sys
2014-10-26 11:48:13 7FF1F1FD8609C149AA432F95A8163D97 10880 ------w- C:\WINDOWS\ServicePackFiles\i386\ndisip.sys
2014-10-26 11:48:13 754292CE5848B3738281B4F3607EAEF4 42240 ------w- C:\WINDOWS\ServicePackFiles\i386\viaagp.sys
2014-10-26 11:48:13 67FFBC158DD4D27BA3FC92C6ACD87F73 29455 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1xbxx.sys
2014-10-26 11:48:12 D9673011648A71ED1E1F77B831BC85E6 129535 ------w- C:\WINDOWS\ServicePackFiles\i386\slnt7554.sys
2014-10-26 11:48:12 93EA8D04EC73A85DB02EB8805988F733 361344 ------w- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
2014-10-26 11:48:12 8F5FCFF8E8848AFAC920905FBD9D33C8 2944 ------w- C:\WINDOWS\ServicePackFiles\i386\drmkaud.sys
2014-10-26 11:48:12 7AD224AD1A1437FE28D89CF22B17780A 175744 ------w- C:\WINDOWS\ServicePackFiles\i386\rdbss.sys
2014-10-26 11:48:12 6B56CEB3C6F9D5CD7293DBD9FE23B311 34560 ------w- C:\WINDOWS\ServicePackFiles\i386\ntio804.sys
2014-10-26 11:48:12 3E5D89099DED9E86E5639F411693218F 49408 ------w- C:\WINDOWS\ServicePackFiles\i386\stream.sys
2014-10-26 11:48:11 F828DD7E1419B6653894A8F97A0094C5 57600 ------w- C:\WINDOWS\ServicePackFiles\i386\redbook.sys
2014-10-26 11:48:11 DAC7D785CF62F5BD41441E9D6F5A6EFE 26367 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1snxx.sys
2014-10-26 11:48:11 8733A00B08F8CF05D50A5B8F61758A93 8832 ------w- C:\WINDOWS\ServicePackFiles\i386\powerfil.sys
2014-10-26 11:48:11 40B5AC2E4E9066D77F097C6C6FAA778A 48640 ------w- C:\WINDOWS\ServicePackFiles\i386\cwrwdm.sys
2014-10-26 11:48:11 2E9B23EB1C2F16838F48B553CC07F8A7 29502 ------w- C:\WINDOWS\ServicePackFiles\i386\pca200e.sys
2014-10-26 11:48:10 ED4C2BF8403F4437987C0BA09CF48716 13824 ------w- C:\WINDOWS\ServicePackFiles\i386\atinmdxx.sys
2014-10-26 11:48:10 8F861EDA21C05857EB8197300A92501C 12288 ------w- C:\WINDOWS\ServicePackFiles\i386\tunmp.sys
2014-10-26 11:48:10 65FEF13327D25BC33AF78178365C1412 137088 ------w- C:\WINDOWS\ServicePackFiles\i386\essm2e.sys
2014-10-26 11:48:10 4C8FCB5CC53AAB716D810740FE59D025 52352 ------w- C:\WINDOWS\ServicePackFiles\i386\volsnap.sys
2014-10-26 11:48:10 3182D64AE053D6FB034F44B6DEF8034A 30848 ------w- C:\WINDOWS\ServicePackFiles\i386\npfs.sys
2014-10-26 11:48:09 C0F8E0C2C3C0437CF37C6781896DC3EC 15232 ------w- C:\WINDOWS\ServicePackFiles\i386\mpe.sys
2014-10-26 11:48:09 80602B8746D3738F5886CE3D67EF06B6 101120 ------w- C:\WINDOWS\ServicePackFiles\i386\bthpan.sys
2014-10-26 11:48:09 4C0B8EF721783F52F8E531FBDC4B1F74 31744 ------w- C:\WINDOWS\ServicePackFiles\i386\wceusbsh.sys
2014-10-26 11:48:09 0BE5AEF125BE881C4F854C554F2B025C 17024 ------w- C:\WINDOWS\ServicePackFiles\i386\ccdecode.sys
2014-10-26 11:48:08 A717C8721046828520C9EDF31288FC00 25856 ------w- C:\WINDOWS\ServicePackFiles\i386\usbprint.sys
2014-10-26 11:48:08 8FCE268CDBDD83B23419D1F35F42C7B1 37760 ------w- C:\WINDOWS\ServicePackFiles\i386\amdk7.sys
2014-10-26 11:48:08 8C953733D8F36EB2133F5BB58808B66B 36352 ------w- C:\WINDOWS\ServicePackFiles\i386\intelppm.sys
2014-10-26 11:48:08 68755F0FF16070178B54674FE5B847B0 456576 ------w- C:\WINDOWS\ServicePackFiles\i386\mrxsmb.sys
2014-10-26 11:48:08 290913DC4F1125E5A82DE52579A44C43 15872 ------w- C:\WINDOWS\ServicePackFiles\i386\usbintel.sys
2014-10-26 11:48:07 EBB354438A4C5A3327FB97306260714A 1041536 ------w- C:\WINDOWS\ServicePackFiles\i386\hsfdpsp2.sys
2014-10-26 11:48:07 E65E2353A5D74EA89971CB918EEEB2F6 14208 ------w- C:\WINDOWS\ServicePackFiles\i386\diskdump.sys
2014-10-26 11:48:07 9F3A2F5AA6875C72BF062C712CFA2674 96512 ------w- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
2014-10-26 11:48:07 32F322CE525831C105E4BA7989ACA184 7552 ------w- C:\WINDOWS\ServicePackFiles\i386\sonyait.sys
2014-10-26 11:48:06 BCAF267B10620F8C93F6E87AB726E145 63663 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1rvxx.sys
2014-10-26 11:48:06 A7DA20AB18A1BDAE28B0F349E57DA0D1 63744 ------w- C:\WINDOWS\ServicePackFiles\i386\mf.sys
2014-10-26 11:48:06 7C824CF7BBDE77D95C08005717A95F6F 153344 ------w- C:\WINDOWS\ServicePackFiles\i386\dmio.sys
2014-10-26 11:48:06 1DF7F42665C94B825322FAE71721130D 182656 ------w- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
2014-10-26 11:48:05 F7706DAE7D101F1B19CE552D772EBFCE 21343 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1ttxx.sys
2014-10-26 11:48:05 EFEEC01B1D3CF84F16DDD24D9D9D8F99 48384 ------w- C:\WINDOWS\ServicePackFiles\i386\raspptp.sys
2014-10-26 11:48:05 DE01D79A607C7B9AE7FF88E934D0FFB2 1845632 ------w- C:\WINDOWS\ServicePackFiles\i386\win32k.sys
2014-10-26 11:48:05 D738273F218A224C1DDAC04203F27A84 33599 ------w- C:\WINDOWS\ServicePackFiles\i386\watv04nt.sys
2014-10-26 11:48:05 8A7EB56BF52FEED03495C7AB2C718A55 16000 ------w- C:\WINDOWS\ServicePackFiles\i386\smbbatt.sys
2014-10-26 11:48:05 6CB08593487F5701D2D2254E693EAFCE 60160 ------w- C:\WINDOWS\ServicePackFiles\i386\drmk.sys
2014-10-26 11:48:04 F934D1B230F84E1D19DD00AC5A7A83ED 71552 ------w- C:\WINDOWS\ServicePackFiles\i386\bridge.sys
2014-10-26 11:48:04 F50D9BDBB25CCE075E514DC07472A22F 36736 ------w- C:\WINDOWS\ServicePackFiles\i386\crusoe.sys
2014-10-26 11:48:04 C885B02847F5D2FD45A24E219ED93B32 63744 ------w- C:\WINDOWS\ServicePackFiles\i386\cdfs.sys
2014-10-26 11:48:04 A23675760DEC131B9F799B6FB038A1F0 10880 ------w- C:\WINDOWS\ServicePackFiles\i386\admjoy.sys
2014-10-26 11:48:04 0A02C63C8B144BD8C86B103DEE7C86A2 35072 ------w- C:\WINDOWS\ServicePackFiles\i386\msgpc.sys
2014-10-26 11:48:04 0052D118995CBAB152DAABE6106D1442 23615 ------w- C:\WINDOWS\ServicePackFiles\i386\wch7xxnt.sys
2014-10-26 11:48:03 C941EA2454BA8350021D774DAF0F1027 19072 ------w- C:\WINDOWS\ServicePackFiles\i386\msfs.sys
2014-10-26 11:48:03 AB8B92451ECB048A4D1DE7C3FFCB4A9F 6272 ------w- C:\WINDOWS\ServicePackFiles\i386\splitter.sys
2014-10-26 11:48:03 8D04819A3CE51B9EB47E5689B44D43C4 79232 ------w- C:\WINDOWS\ServicePackFiles\i386\sdbus.sys
2014-10-26 11:48:03 6FDC61E8E8E17F6ECC2D9A10FA8DF347 12047 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1pdxx.sys
2014-10-26 11:48:03 3BB22519A194418D5FEC05D800A19AD0 36608 ------w- C:\WINDOWS\ServicePackFiles\i386\ip6fw.sys
2014-10-26 11:48:02 FD79193A9E7352B19DB02630E00F7B6A 27904 ------w- C:\WINDOWS\ServicePackFiles\i386\perm2.sys
2014-10-26 11:48:02 F0F5C4C4BF6018414B066A3600799C77 26112 ------w- C:\WINDOWS\ServicePackFiles\i386\memstpci.sys
2014-10-26 11:48:02 ECFF394D65671EFDE5A872EB9EF4F2D5 202624 ------w- C:\WINDOWS\ServicePackFiles\i386\rmcast.sys
2014-10-26 11:48:02 C42584FD66CE9E17403AEBCA199F7BDB 8832 ------w- C:\WINDOWS\ServicePackFiles\i386\wmiacpi.sys
2014-10-26 11:48:02 BAD59648BA099DA4A17680B39730CB3D 4992 ------w- C:\WINDOWS\ServicePackFiles\i386\mspqm.sys
2014-10-26 11:48:02 714038A8AA5DE08E12062202CD7EAEB5 11295 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv08nt.sys
2014-10-26 11:48:02 56B7F78228CC41FFA1F5BDF3AF799D19 11776 ------w- C:\WINDOWS\ServicePackFiles\i386\bdasup.sys
2014-10-26 11:48:02 0A38F11C446ADA33CAFA1B415AF568E2 12800 ------w- C:\WINDOWS\ServicePackFiles\i386\tree.com
2014-10-26 11:48:01 C93C9FF7B04D772627A3646D89F7BF89 11264 ------w- C:\WINDOWS\ServicePackFiles\i386\irenum.sys
2014-10-26 11:48:01 AD363B8456AB92C88E33B8F544D9D07E 13801 ------w- C:\WINDOWS\ServicePackFiles\i386\tscuinst.vbs
2014-10-26 11:48:01 1C888B000C2F9492F4B15B5B6B84873E 26112 ------w- C:\WINDOWS\ServicePackFiles\i386\usbser.sys
2014-10-26 11:48:01 044452051F3E02E7963599FC8F4F3E25 36352 ------w- C:\WINDOWS\ServicePackFiles\i386\disk.sys
2014-10-26 11:48:00 DA36687D701C833430605A298731410B 52224 ------w- C:\WINDOWS\ServicePackFiles\i386\atinraxx.sys
2014-10-26 11:48:00 CB08AED0DE2DD889A8A820CD8082D83C 42752 ------w- C:\WINDOWS\ServicePackFiles\i386\alim1541.sys
2014-10-26 11:48:00 BEE793D4A059CAEA55D6AC20E19B3A8F 12800 ------w- C:\WINDOWS\ServicePackFiles\i386\usb8023.sys
2014-10-26 11:48:00 8B8B1BE2DBA4025DA6786C645F77F123 88320 ------w- C:\WINDOWS\ServicePackFiles\i386\nwlnkipx.sys
2014-10-26 11:48:00 5D81CF9A2F1A3A756B66CF684911CDF0 34688 ------w- C:\WINDOWS\ServicePackFiles\i386\netbios.sys
2014-10-26 11:48:00 3941D127AEF12E93ADDF6FE6EE027E0F 4352 ------w- C:\WINDOWS\ServicePackFiles\i386\swenum.sys
2014-10-26 11:48:00 130C6F199E953AAC3807F6844B61A8D5 63547 ------w- C:\WINDOWS\ServicePackFiles\i386\sla30nd5.sys
2014-10-26 11:47:59 8B83F3ED0F1688B4958F77CD6D2BF290 60800 ------w- C:\WINDOWS\ServicePackFiles\i386\sysaudio.sys
2014-10-26 11:47:59 63BBFCA7F390F4C49ED4B96BFB1633E0 121984 ------w- C:\WINDOWS\ServicePackFiles\i386\usbvideo.sys
2014-10-26 11:47:59 1AF592532532A402ED7C060F6954004F 36864 ------w- C:\WINDOWS\ServicePackFiles\i386\hidclass.sys
2014-10-26 11:47:58 FBBCFEC1379C5C02D88A361993EDF1B8 42537 ------w- C:\WINDOWS\ServicePackFiles\i386\keyboard.sys
2014-10-26 11:47:58 B1E4EC35BD16D7FAF0B090A74FFD284C 2247 ------w- C:\WINDOWS\ServicePackFiles\i386\tscdsbl.bat
2014-10-26 11:47:58 692BCF44383D056AED41B045A323D378 172416 ------w- C:\WINDOWS\ServicePackFiles\i386\kmixer.sys
2014-10-26 11:47:58 1C1A47B40C23358245AA8D0443B6935E 25600 ------w- C:\WINDOWS\ServicePackFiles\i386\usbcamd.sys
2014-10-26 11:47:57 D66D22D76878BF3483A6BE30183FB648 10240 ------w- C:\WINDOWS\ServicePackFiles\i386\sffp_mmc.sys
2014-10-26 11:47:57 AE76348A2605FB197FA8FF1D6F547836 55808 ------w- C:\WINDOWS\ServicePackFiles\i386\atmlane.sys
2014-10-26 11:47:57 791CC45DE6E50445BE72E8AD6401FF45 25471 ------w- C:\WINDOWS\ServicePackFiles\i386\watv10nt.sys
2014-10-26 11:47:57 60B6AA2DC1521DA343F781B70EB7895A 11615 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1mdxx.sys
2014-10-26 11:47:57 089870DAB7AA277585C475AE09EE4C63 11520 ------w- C:\WINDOWS\ServicePackFiles\i386\scsiscan.sys
2014-10-26 11:47:56 B244960E5A1DB8E9D5D17086DE37C1E4 43904 ------w- C:\WINDOWS\ServicePackFiles\i386\sbp2port.sys
2014-10-26 11:47:56 A80B9A0BAD1B73637DBCBBA7DF72D3FD 42368 ------w- C:\WINDOWS\ServicePackFiles\i386\mountmgr.sys
2014-10-26 11:47:56 76C465F570E90C28942D52CCB2580A10 96384 ------w- C:\WINDOWS\ServicePackFiles\i386\scsiport.sys
2014-10-26 11:47:55 C56B6D0402371CF3700EB322EF3AAF61 21896 ------w- C:\WINDOWS\ServicePackFiles\i386\tdtcp.sys
2014-10-26 11:47:55 6B33D0EBD30DB32E27D1D78FE946A754 40960 ------w- C:\WINDOWS\ServicePackFiles\i386\sisagp.sys
2014-10-26 11:47:55 0D3A8FAFCEACD8B7625CD549757A7DF1 20992 ------w- C:\WINDOWS\ServicePackFiles\i386\vga.sys
2014-10-26 11:47:54 FCA6F069597B62D42495191ACE3FC6C1 37888 ------w- C:\WINDOWS\ServicePackFiles\i386\bthmodem.sys
2014-10-26 11:47:54 BEB3BA25197665D82EC7065B724171C6 19712 ------w- C:\WINDOWS\ServicePackFiles\i386\partmgr.sys
2014-10-26 11:47:54 AC7280566A7BB85CB3291F04DDC1198E 71168 ------w- C:\WINDOWS\ServicePackFiles\i386\dxg.sys
2014-10-26 11:47:54 3E4B043F8BC6BE1D4820CC6C9C500306 206976 ------w- C:\WINDOWS\ServicePackFiles\i386\dot4.sys
2014-10-26 11:47:54 11D42BB6206F33FBB3BA0288D3EF81BD 180608 ------w- C:\WINDOWS\ServicePackFiles\i386\mrxdav.sys
2014-10-26 11:47:53 A8FE41A339CEB3B517321A7FF0ED67C5 20864 ------w- C:\WINDOWS\ServicePackFiles\i386\lwadihid.sys
2014-10-26 11:47:53 8842837C4D8311BF8E72BEE8CCC42217 35424 ------w- C:\WINDOWS\ServicePackFiles\i386\ntio412.sys
2014-10-26 11:47:53 826BDEEF30E4392F5F868ECDF606C29F 28288 ------w- C:\WINDOWS\ServicePackFiles\i386\grserial.sys
2014-10-26 11:47:53 0DBCC071A268E0340A2BA6BDD98BACE4 166912 ------w- C:\WINDOWS\ServicePackFiles\i386\s3gnbm.sys
2014-10-26 11:47:52 EB631AD8B3E8DCE20CEF046B6D602B98 20736 ------w- C:\WINDOWS\ServicePackFiles\i386\ramdisk.sys
2014-10-26 11:47:52 B94D57F1D16BB5A66F6083140346B4AA 34173 ------w- C:\WINDOWS\ServicePackFiles\i386\forehe.sys
2014-10-26 11:47:52 A32BEBAF723557681BFC6BD93E98BD26 35840 ------w- C:\WINDOWS\ServicePackFiles\i386\processr.sys
2014-10-26 11:47:52 895BE38A993B9BD5ABBE570D63D88A2E 5888 ------w- C:\WINDOWS\ServicePackFiles\i386\smbali.sys
2014-10-26 11:47:52 6DDA78A0BE692B61B668FAB860F276CF 452736 ------w- C:\WINDOWS\ServicePackFiles\i386\mtxparhm.sys
2014-10-26 11:47:52 38D332A6D56AF32635675F132548343E 143744 ------w- C:\WINDOWS\ServicePackFiles\i386\fastfat.sys
2014-10-26 11:47:52 0539D5E53587F82D1B4FD74C5BE205CF 19072 ------w- C:\WINDOWS\ServicePackFiles\i386\tdi.sys
2014-10-26 11:47:50 726548542AFECA56257FF01EB13BB6D7 30592 ------w- C:\WINDOWS\ServicePackFiles\i386\rndismpx.sys
2014-10-26 11:47:49 0F6C187D38D98F8DF904589A5F94D411 13952 ------w- C:\WINDOWS\ServicePackFiles\i386\cmbatt.sys
2014-10-26 11:47:48 8CE882BCC6CF8A62F2B2323D95CB3D01 56576 ------w- C:\WINDOWS\ServicePackFiles\i386\swmidi.sys
2014-10-26 11:47:48 88155247177638048422893737429D9E 40840 ------w- C:\WINDOWS\ServicePackFiles\i386\termdd.sys
2014-10-26 11:47:48 77813007BA6265C4B6098187E6ED79D2 15232 ------w- C:\WINDOWS\ServicePackFiles\i386\streamip.sys
2014-10-26 11:47:48 748031FF4FE45CCC47546294905FEAB8 20352 ------w- C:\WINDOWS\ServicePackFiles\i386\hidbatt.sys
2014-10-26 11:47:48 6728E45B66F93C08F11DE2E316FC70DD 139656 ------w- C:\WINDOWS\ServicePackFiles\i386\rdpwd.sys
2014-10-26 11:47:47 F9B8E30E82EE95CF3E1D3E495599B99C 95424 ------w- C:\WINDOWS\ServicePackFiles\i386\slnthal.sys
2014-10-26 11:47:47 F6AACF5BCE2893E0C1754AFEB672E5C9 264832 ------w- C:\WINDOWS\ServicePackFiles\i386\http.sys
2014-10-26 11:47:47 9D318099BF3876A4AF4BC75966D27603 30671 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1raxx.sys
2014-10-26 11:47:47 77B575D7AAB35D5908AE6CE681608D62 63488 ------w- C:\WINDOWS\ServicePackFiles\i386\atinxsxx.sys
2014-10-26 11:47:47 589C2BCDB5BD602BF7B63D210407EF8C 19455 ------w- C:\WINDOWS\ServicePackFiles\i386\wvchntxx.sys
2014-10-26 11:47:47 0308AEF61941E4AF478FA1A0F83812F5 11807 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv07nt.sys
2014-10-26 11:47:46 EB1F6BAB6C22EDE0BA551B527475F7E9 12127 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv02nt.sys
2014-10-26 11:47:46 B87AB476DCF76E72010632B5550955F5 20864 ------w- C:\WINDOWS\ServicePackFiles\i386\ipinip.sys
2014-10-26 11:47:46 914A9709FC3BF419AD2F85547F2A4832 48128 ------w- C:\WINDOWS\ServicePackFiles\i386\61883.sys
2014-10-26 11:47:46 61364CD71EF63B0F038B7E9DF00F1EFA 18944 ------w- C:\WINDOWS\ServicePackFiles\i386\bthusb.sys
2014-10-26 11:47:46 5BC962F2654137C9909C3D4603587DEE 41472 ------w- C:\WINDOWS\ServicePackFiles\i386\raspppoe.sys
2014-10-26 11:47:45 866D538EBE33709A5C9F5C62B73B7D14 11136 ------w- C:\WINDOWS\ServicePackFiles\i386\slip.sys
2014-10-26 11:47:44 C98B39829C2BBD34E454150633C62C78 19200 ------w- C:\WINDOWS\ServicePackFiles\i386\wstcodec.sys
2014-10-26 11:47:44 B153AFFAC761E7F5FCFA822B9C4E97BC 14336 ------w- C:\WINDOWS\ServicePackFiles\i386\asyncmac.sys
2014-10-26 11:47:44 463C1EC80CD17420A542B7F36A36F128 24576 ------w- C:\WINDOWS\ServicePackFiles\i386\kbdclass.sys
2014-10-26 11:47:44 2D030C2F6B036CA0BC243E1B16D924D1 327040 ------w- C:\WINDOWS\ServicePackFiles\i386\ati2mtaa.sys
2014-10-26 11:47:43 E625773D7B950842D582F713656859C0 13696 ------w- C:\WINDOWS\ServicePackFiles\i386\avcstrm.sys
2014-10-26 11:47:43 D507C1400284176573224903819FFDA3 20992 ------w- C:\WINDOWS\ServicePackFiles\i386\rtl8139.sys
2014-10-26 11:47:43 D45926117EB9FA946A6AF572FBE1CAA3 44544 ------w- C:\WINDOWS\ServicePackFiles\i386\fips.sys
2014-10-26 11:47:43 9D27E7B80BFCDF1CDD9B555862D5E7F0 20480 ------w- C:\WINDOWS\ServicePackFiles\i386\flpydisk.sys
2014-10-26 11:47:43 52E60F29221D0D1AC16737E8DBF7C3E9 24960 ------w- C:\WINDOWS\ServicePackFiles\i386\pciidex.sys
2014-10-26 11:47:43 402DDC88356B1BAC0EE3DD1580C76A31 384768 ------w- C:\WINDOWS\ServicePackFiles\i386\update.sys
2014-10-26 11:47:43 05A299EC56E52649B1CF2FC52D20F2D7 37248 ------w- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
2014-10-26 11:47:42 AA7A55536096D646DC7AB0AC5641E9E8 225664 ------w- C:\WINDOWS\ServicePackFiles\i386\tcpip6.sys
2014-10-26 11:47:42 9916C1225104BA14794209CFA8012159 59904 ------w- C:\WINDOWS\ServicePackFiles\i386\atmarpc.sys
2014-10-26 11:47:42 592B9D0FB93647C35B6F6883C988D225 169984 ------w- C:\WINDOWS\ServicePackFiles\i386\pcx500.sys
2014-10-26 11:47:42 2C1779C0FEB1F4A6033600305EBA623A 404990 ------w- C:\WINDOWS\ServicePackFiles\i386\slntamr.sys
2014-10-26 11:47:42 1AB3D00C991AB086E69DB84B6C0ED78F 10112 ------w- C:\WINDOWS\ServicePackFiles\i386\ndistapi.sys
2014-10-26 11:47:41 E20B95BAEDB550F32DD489265C1DA1F6 34560 ------w- C:\WINDOWS\ServicePackFiles\i386\wanarp.sys
2014-10-26 11:47:41 B2CF4B0786F8212CB92ED2B50C6DB6B0 129792 ------w- C:\WINDOWS\ServicePackFiles\i386\fltmgr.sys
2014-10-26 11:47:41 993E7BD6438FE989E328C6B4BCA246A9 57856 ------w- C:\WINDOWS\ServicePackFiles\i386\atinbtxx.sys
2014-10-26 11:47:41 6E4C9F21F0FAE8940661144F41B13203 10240 ------w- C:\WINDOWS\ServicePackFiles\i386\compbatt.sys
2014-10-26 11:47:41 576B34CEAE5B7E5D9FD2775E93B3DB53 180360 ------w- C:\WINDOWS\ServicePackFiles\i386\ntmtlfax.sys
2014-10-26 11:47:41 11B4A627BC9614B885C4969BFA5FF8A6 51328 ------w- C:\WINDOWS\ServicePackFiles\i386\rasl2tp.sys
2014-10-26 11:47:41 116BFF96077A4A724E0AAB800525CEB5 36224 ------w- C:\WINDOWS\ServicePackFiles\i386\an983.sys
2014-10-26 11:47:41 0D93976F7801B7FCD8135CC77257BBD0 14208 ------w- C:\WINDOWS\ServicePackFiles\i386\battc.sys
2014-10-26 11:47:41 083A052659F5310DD8B6A6CB05EDCF8E 42112 ------w- C:\WINDOWS\ServicePackFiles\i386\imapi.sys
2014-10-26 11:47:40 ACA5E7B54409F9CB5EED97ED0C81120E 88192 ------w- C:\WINDOWS\ServicePackFiles\i386\irda.sys
2014-10-26 11:47:40 7BD2DE4C85EB4241EED57672B16A7D8D 25600 ------w- C:\WINDOWS\ServicePackFiles\i386\hidbth.sys
2014-10-26 11:47:40 1F4260CC5B42272D71F79E570A27A4FE 62976 ------w- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
2014-10-26 11:47:39 CC748EA12C6EFFDE940EE98098BF96BB 152832 ------w- C:\WINDOWS\ServicePackFiles\i386\ipnat.sys
2014-10-26 11:47:39 85417255965DBD930311AC30A07780CC 7040 ------w- C:\WINDOWS\ServicePackFiles\i386\ltotape.sys
2014-10-26 11:47:38 C53775780148884AC87C455489A0C070 126686 ------w- C:\WINDOWS\ServicePackFiles\i386\mtlmnt5.sys
2014-10-26 11:47:38 B279426E3C0C344893ED78A613A73BDE 17024 ------w- C:\WINDOWS\ServicePackFiles\i386\bthenum.sys
2014-10-26 11:47:38 6471A66807F5E104E4885F5B67349397 12040 ------w- C:\WINDOWS\ServicePackFiles\i386\tdpipe.sys
2014-10-26 11:47:38 24BB6CA00ED8C91DAE2FD13E5F6EEC39 32384 ------w- C:\WINDOWS\ServicePackFiles\i386\usb101et.sys
2014-10-26 11:47:38 1E421A6BCF2203CC61B821ADA9DE878B 40320 ------w- C:\WINDOWS\ServicePackFiles\i386\nmnt.sys
2014-10-26 11:47:38 01B3E28A153D49F8F6DF82BF9E5900FC 18917 ------w- C:\WINDOWS\ServicePackFiles\i386\tscinst.vbs
2014-10-26 11:47:37 ED968D23354DAA0D7C621580C012A1F6 19551 ------w- C:\WINDOWS\ServicePackFiles\i386\watv02nt.sys
2014-10-26 11:47:37 E82A496C3961EFC6828B508C310CE98F 146048 ------w- C:\WINDOWS\ServicePackFiles\i386\portcls.sys
2014-10-26 11:47:37 C17C331E435ED8737525C86A7557B3AC 11008 ------w- C:\WINDOWS\ServicePackFiles\i386\sffp_sd.sys
2014-10-26 11:47:37 8BED39E3C35D6A489438B8141717A557 142592 ------w- C:\WINDOWS\ServicePackFiles\i386\aec.sys
2014-10-26 11:47:36 AF5F4F3F14A8EA2C26DE30F7A1E17136 15488 ------w- C:\WINDOWS\ServicePackFiles\i386\mssmbios.sys
2014-10-26 11:47:36 819BF44085104BE6527B86A88ACF856B 84480 ------w- C:\WINDOWS\ServicePackFiles\i386\ac97via.sys
2014-10-26 11:47:36 7E14BAD6CBC8EE6857902E33128E6DF2 12288 ------w- C:\WINDOWS\ServicePackFiles\i386\4mmdat.sys
2014-10-26 11:47:36 2B298519EDBFCF451D43E0F1E8F1006D 1897408 ------w- C:\WINDOWS\ServicePackFiles\i386\nv4_mini.sys
2014-10-26 11:47:35 D7701D7E72243286CC88C9973D891057 37376 ------w- C:\WINDOWS\ServicePackFiles\i386\amdk6.sys
2014-10-26 11:47:35 A0F70EDB428EAB4422B665B1943626DD 29696 ------w- C:\WINDOWS\ServicePackFiles\i386\format.com
2014-10-26 11:47:35 A0B8CF9DEB1184FBDD20784A58FA75D4 15104 ------w- C:\WINDOWS\ServicePackFiles\i386\usbscan.sys
2014-10-26 11:47:35 1AB3CDDE553B6E064D2E754EFE20285C 59520 ------w- C:\WINDOWS\ServicePackFiles\i386\usbhub.sys
2014-10-26 11:47:35 0FA803C64DF0914B41F807EA276BF2A6 11904 ------w- C:\WINDOWS\ServicePackFiles\i386\sffdisk.sys
2014-10-26 11:47:35 0D8CAB1F08F7D3C4DE228B49E12E596A 34735 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1xsxx.sys
2014-10-26 11:47:34 9E89EF60E9EE05E3F2EEF2DA7397F1C1 120192 ------w- C:\WINDOWS\ServicePackFiles\i386\pcmcia.sys
2014-10-26 11:47:34 791912E524CC2CC6F50B5F2B52D1EB71 143872 ------w- C:\WINDOWS\ServicePackFiles\i386\usbport.sys
2014-10-26 11:47:34 15CABD0F7C00C47C70124907916AF3F1 196224 ------w- C:\WINDOWS\ServicePackFiles\i386\rdpdr.sys
2014-10-26 11:47:33 EDC1531A49C80614B2CFDA43CA8659AB 91520 ------w- C:\WINDOWS\ServicePackFiles\i386\ndiswan.sys
2014-10-26 11:47:33 E9AAA0092D74A9D371659C4C38882E12 13776 ------w- C:\WINDOWS\ServicePackFiles\i386\recagent.sys
2014-10-26 11:47:33 C1536905AD2067812A238BCE998F4BFF 53376 ------w- C:\WINDOWS\ServicePackFiles\i386\1394bus.sys
2014-10-26 11:47:33 35C9E97194C8CFB8430125F8DBC34D04 23040 ------w- C:\WINDOWS\ServicePackFiles\i386\mouclass.sys
2014-10-26 11:47:33 26496F9DEE2D787FC3E61AD54821FFE6 20608 ------w- C:\WINDOWS\ServicePackFiles\i386\usbuhci.sys
2014-10-26 11:47:33 08FD04AA961BDC77FB983F328334E3D7 42368 ------w- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
2014-10-26 11:47:32 BB1A6FB7D35A91E599973FA74A619056 19200 ------w- C:\WINDOWS\ServicePackFiles\i386\hidir.sys
2014-10-26 11:47:32 A219903CCF74233761D92BEF471A07B1 68224 ------w- C:\WINDOWS\ServicePackFiles\i386\pci.sys
2014-10-26 11:47:32 83F0E06A7F6FC3833BC534AFB0F833CE 6912 ------w- C:\WINDOWS\ServicePackFiles\i386\smbclass.sys
2014-10-26 11:47:32 6768ACF64B18196494413695F0C3A00F 83072 ------w- C:\WINDOWS\ServicePackFiles\i386\wdmaud.sys
2014-10-26 11:47:32 6215023940CFD3702B46ABC304E1D45A 40576 ------w- C:\WINDOWS\ServicePackFiles\i386\ndproxy.sys
2014-10-26 11:47:32 601844CBCF617FF8C868130CA5B2039D 30592 ------w- C:\WINDOWS\ServicePackFiles\i386\rndismp.sys
2014-10-26 11:47:31 8A208DFCF89792A484E76C40E5F50B45 52864 ------w- C:\WINDOWS\ServicePackFiles\i386\dmusic.sys
2014-10-26 11:47:31 7B5B44EFE5EB9DADFB8EE29700885D23 12415 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv01nt.sys
2014-10-26 11:47:31 5B50F1B2A2ED47D560577B221DA734DB 85248 ------w- C:\WINDOWS\ServicePackFiles\i386\nabtsfec.sys
2014-10-26 11:47:31 322D0E36693D6E24A2398BEE62A268CD 138112 ------w- C:\WINDOWS\ServicePackFiles\i386\afd.sys
2014-10-26 11:47:30 FE47DD8FE6D7768FF94EBEC6C74B2719 49536 ------w- C:\WINDOWS\ServicePackFiles\i386\classpnp.sys
2014-10-26 11:47:30 7384EA15B591C7E889F5CD127BDB3D57 420992 ------w- C:\WINDOWS\ServicePackFiles\i386\ltmdmntt.sys
2014-10-26 11:47:30 4A0B06AA8943C1E332520F7440C0AA30 52480 ------w- C:\WINDOWS\ServicePackFiles\i386\i8042prt.sys
2014-10-26 11:47:30 23C74D75E36E7158768DD63D92789A91 75264 ------w- C:\WINDOWS\ServicePackFiles\i386\ipsec.sys
2014-10-26 11:47:29 CA33832DF41AFB202EE7AEB05145922F 61696 ------w- C:\WINDOWS\ServicePackFiles\i386\ohci1394.sys
2014-10-26 11:47:29 C90018BAFDC7098619A4A95B046B30F3 42752 ------w- C:\WINDOWS\ServicePackFiles\i386\p3.sys
2014-10-26 11:47:29 AF19B57573AB7697B3AC6481DA138682 8320 ------w- C:\WINDOWS\ServicePackFiles\i386\dlttape.sys
2014-10-26 11:47:29 8759322FFC1A50569C1E5528EE8026B7 701440 ------w- C:\WINDOWS\ServicePackFiles\i386\ati2mtag.sys
2014-10-26 11:47:29 2F625D11385B1A94360BFC70AAEFDEE1 105344 ------w- C:\WINDOWS\ServicePackFiles\i386\mup.sys
2014-10-26 11:47:29 06B7EF73BA5F302EECC294CDF7E19702 161020 ------w- C:\WINDOWS\ServicePackFiles\i386\i81xnt5.sys
2014-10-26 11:47:28 E53736A9E30C45FA9E7B5EAC55056D1D 5504 ------w- C:\WINDOWS\ServicePackFiles\i386\mstee.sys
2014-10-26 11:47:28 D649C57DA6FA762C64013747E5D7D2D6 56623 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1btxx.sys
2014-10-26 11:47:28 5787B80C2E3C5E2F56C2A233D91FA2C9 66048 ------w- C:\WINDOWS\ServicePackFiles\i386\udfs.sys
2014-10-26 11:47:28 065639773D8B03F33577F6CDAEA21063 10624 ------w- C:\WINDOWS\ServicePackFiles\i386\gameenum.sys
2014-10-26 11:47:27 9A6A0193C0F6A79F191171816976FC73 132695 ------w- C:\WINDOWS\ServicePackFiles\i386\netwlan5.sys
2014-10-26 11:47:27 90A3935D05B494A5A39D37E71F09A677 20480 ------w- C:\WINDOWS\ServicePackFiles\i386\secdrv.sys
2014-10-26 11:47:27 5575FAF8F97CE5E713D108C2A58D7C7C 80128 ------w- C:\WINDOWS\ServicePackFiles\i386\parport.sys
2014-10-26 11:47:27 2EF8C49FD0FCBEE4A94B47D3E1F36C86 16896 ------w- C:\WINDOWS\ServicePackFiles\i386\more.com
2014-10-26 11:47:26 D1575E71568F4D9E14CA56B7B0453BF1 7552 ------w- C:\WINDOWS\ServicePackFiles\i386\mskssrv.sys
2014-10-26 11:47:26 1477849772712BAC69C144DCF2C9CE81 51200 ------w- C:\WINDOWS\ServicePackFiles\i386\msdv.sys
2014-10-26 11:47:26 0F29512CCD6BEAD730039FB4BD2C85CE 15744 ------w- C:\WINDOWS\ServicePackFiles\i386\serenum.sys
2014-10-26 11:47:26 065A6D38A79216592DE03F3525D6296E 231552 ------w- C:\WINDOWS\ServicePackFiles\i386\ac97ali.sys
2014-10-26 11:47:25 95B4FB835E28AA1336CEEB07FD5B9398 43008 ------w- C:\WINDOWS\ServicePackFiles\i386\amdagp.sys
2014-10-26 11:47:25 8E6B8C671615D126FDC553D1E2DE5562 11392 ------w- C:\WINDOWS\ServicePackFiles\i386\sfloppy.sys
2014-10-26 11:47:25 3A74C423CF6BCCA6982715878F450A3B 46464 ------w- C:\WINDOWS\ServicePackFiles\i386\gagp30kx.sys
2014-10-26 11:47:24 F8E6956A614F15A0860474C5E2A7DE6B 38912 ------w- C:\WINDOWS\ServicePackFiles\i386\avc.sys
2014-10-26 11:47:24 65DCF09D0E37D4C6B11B5B0B76D470A7 30208 ------w- C:\WINDOWS\ServicePackFiles\i386\usbehci.sys
2014-10-26 11:47:23 970178E8E003EB1481293830069624B9 220032 ------w- C:\WINDOWS\ServicePackFiles\i386\hsfbs2s2.sys
2014-10-26 11:47:23 67039D04A17CD772986821B23A48DA4F 28032 ------w- C:\WINDOWS\ServicePackFiles\i386\perm3.sys
2014-10-26 11:47:22 E919708DB44ED8543A7C017953148330 60032 ------w- C:\WINDOWS\ServicePackFiles\i386\usbaudio.sys
2014-10-26 11:47:22 76BB022C2FB6902FD5BDD4F78FC13A5D 73472 ------w- C:\WINDOWS\ServicePackFiles\i386\sr.sys
2014-10-26 11:47:22 352FA0E98BC461CE1CE5D41F64DB558D 22271 ------w- C:\WINDOWS\ServicePackFiles\i386\watv06nt.sys
2014-10-26 11:47:22 254C1B277248D74F3ECD2E468F0927A7 79104 ------w- C:\WINDOWS\ServicePackFiles\i386\rocket.sys
2014-10-26 11:47:21 D83BDD5C059667A2F647A6BE5703A4D2 29311 ------w- C:\WINDOWS\ServicePackFiles\i386\watv01nt.sys
2014-10-26 11:47:21 CCA207A8896D4C6A0C9CE29A4AE411A7 64512 ------w- C:\WINDOWS\ServicePackFiles\i386\serial.sys
2014-10-26 11:47:21 489703624DAC94ED943C2ABDA022A1CD 25344 ------w- C:\WINDOWS\ServicePackFiles\i386\sonydcam.sys
2014-10-26 11:47:21 23168BA9E0B079461B9F2A6CFE57A84C 6016 ------w- C:\WINDOWS\ServicePackFiles\i386\qic157.sys
2014-10-26 11:47:20 F10863BF1CCC290BABD1A09188AE49E0 18560 ------w- C:\WINDOWS\ServicePackFiles\i386\i2omp.sys
2014-10-26 11:47:20 B538DCD9816EA35FA4F637CFC261AAA8 12672 ------w- C:\WINDOWS\ServicePackFiles\i386\mutohpen.sys
2014-10-26 11:47:20 4FE09F868CE65B334B42862C372C69CC 33840 ------w- C:\WINDOWS\ServicePackFiles\i386\ntio.sys
2014-10-26 11:47:20 0DAECCE65366EA32B162F85F07C6753B 17152 ------w- C:\WINDOWS\ServicePackFiles\i386\usbohci.sys
2014-10-26 11:47:19 EDD66332608D27F4FD5069BCD0BC5164 73216 ------w- C:\WINDOWS\ServicePackFiles\i386\atintuxx.sys
2014-10-26 11:47:19 2A5815CA6FFF24B688C01F828B96819C 8192 ------w- C:\WINDOWS\ServicePackFiles\i386\changer.sys
2014-10-26 11:47:18 10B85171B90C449F8DA71C2640B797E9 273024 ------w- C:\WINDOWS\ServicePackFiles\i386\bthport.sys
2014-10-26 11:47:18 0FDD5E69C1FF3B58043D44F2CC743D45 35648 ------w- C:\WINDOWS\ServicePackFiles\i386\ntio411.sys
2014-10-26 11:47:17 D9D5E4CA72270E9F3ECA97DA0983AB87 149376 ------w- C:\WINDOWS\ServicePackFiles\i386\tffsport.sys
2014-10-26 11:47:17 A32426D9B14A089EAA1D922E0C5801A9 26368 ------w- C:\WINDOWS\ServicePackFiles\i386\usbstor.sys
2014-10-26 11:47:17 96ECCF28FDBF1B2CC12725818A63628D 24960 ------w- C:\WINDOWS\ServicePackFiles\i386\hidparse.sys
2014-10-26 11:47:17 74B2B2F5BEA5E9A3DC021D685551BD3D 162816 ------w- C:\WINDOWS\ServicePackFiles\i386\netbt.sys
2014-10-26 11:47:16 03CE989D846C1AA81145CB22FCB86D06 11775 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv05nt.sys
2014-10-26 11:47:15 CE97845D2E3F0D274B8BAC1ED07C6149 25728 ------w- C:\WINDOWS\ServicePackFiles\i386\usbcamd2.sys
2014-10-26 11:47:15 B5466A9250342A7AA0CD1FBA13420678 5504 ------w- C:\WINDOWS\ServicePackFiles\i386\intelide.sys
2014-10-26 11:47:15 5C3F9BDF4DB23B75306388FC26A0A8E5 49024 ------w- C:\WINDOWS\ServicePackFiles\i386\mstape.sys
2014-10-26 11:47:15 3FBB6EF8B5A71A2FA11F5F461BB73219 32768 ------w- C:\WINDOWS\ServicePackFiles\i386\sisnic.sys
2014-10-26 11:47:15 325BB26842FC7CCC1FCCE2C457317F3E 5376 ------w- C:\WINDOWS\ServicePackFiles\i386\mspclock.sys
2014-10-26 11:47:14 E9E47CFB2D461FA0FC75B7A74C6383EA 61824 ------w- C:\WINDOWS\ServicePackFiles\i386\nic1394.sys
2014-10-26 11:47:14 D85938F272D1BCF3DB3A31FC0A048928 44672 ------w- C:\WINDOWS\ServicePackFiles\i386\uagp35.sys
2014-10-26 11:47:14 8FD99680A539792A30E97944FDAECF17 187776 ------w- C:\WINDOWS\ServicePackFiles\i386\acpi.sys
2014-10-26 11:47:14 54886A652BF5685192141DF304E923FD 1309184 ------w- C:\WINDOWS\ServicePackFiles\i386\mtlstrm.sys
2014-10-26 11:47:13 F927A4434C5028758A842943EF1A3849 14592 ------w- C:\WINDOWS\ServicePackFiles\i386\ndisuio.sys
2014-10-26 11:47:13 6F73F50162DEF60C84B725C18CD9140F 34560 ------w- C:\WINDOWS\ServicePackFiles\i386\ntio404.sys
2014-10-26 11:47:13 3E7D485CBD0B0D9F6EA2AD9442411831 31744 ------w- C:\WINDOWS\ServicePackFiles\i386\atinxbxx.sys
2014-10-26 11:47:11 195741AEE20369980796B557358CD774 11868 ------w- C:\WINDOWS\ServicePackFiles\i386\mdmxsdk.sys
2014-10-26 11:47:10 CEDDEE2E0591894D19654D458FD3B9BE 28672 ------w- C:\WINDOWS\ServicePackFiles\i386\atinsnxx.sys
2014-10-26 11:47:10 ACED8C149B30F8496C237BCBA3727B48 14208 ------w- C:\WINDOWS\ServicePackFiles\i386\wacompen.sys
2014-10-26 11:47:10 9368670BD426EBEA5E8B18A62416EC28 8576 ------w- C:\WINDOWS\ServicePackFiles\i386\i2omgmt.sys
2014-10-26 11:47:10 406598827A1B5F77954DE11DDE115CED 34688 ------w- C:\WINDOWS\ServicePackFiles\i386\lbrtfdc.sys
2014-10-26 11:47:09 FD6093E3DECD925F1CFFC8A0DD539D72 14976 ------w- C:\WINDOWS\ServicePackFiles\i386\tape.sys
2014-10-26 11:47:09 D992FE1274BDE0F84AD826ACAE022A41 799744 ------w- C:\WINDOWS\ServicePackFiles\i386\dmboot.sys
2014-10-26 11:47:09 525849B4469DE021D5D61B4DB9BE3A9D 12063 ------w- C:\WINDOWS\ServicePackFiles\i386\wsiintxx.sys
2014-10-26 11:47:08 9A10AACBFDC4922715375FB4065EC930 17664 ------w- C:\WINDOWS\ServicePackFiles\i386\watchdog.sys
2014-10-26 11:47:08 1225EBEA76AAC3C84DF6C54FE5E5D8BE 685056 ------w- C:\WINDOWS\ServicePackFiles\i386\hsfcxts2.sys
2014-10-26 11:47:07 E28726B72C46821A28830E077D39A55B 81664 ------w- C:\WINDOWS\ServicePackFiles\i386\videoprt.sys
2014-10-26 11:47:07 CCF82C5EC8A7326C3066DE870C06DAF1 10368 ------w- C:\WINDOWS\ServicePackFiles\i386\hidusb.sys
2014-10-26 11:47:07 B6CC50279D6CD28E090A5D33244ADC9A 12800 ------w- C:\WINDOWS\ServicePackFiles\i386\usb8023x.sys
2014-10-26 11:47:07 3B3EFCDA263B8AC14FDF9CBDD0791B2E 5376 ------w- C:\WINDOWS\ServicePackFiles\i386\viaide.sys
2014-10-26 11:47:07 36E6C405B6143D09687F4056FD9A0D10 11935 ------w- C:\WINDOWS\ServicePackFiles\i386\wadv11nt.sys
2014-10-26 11:47:06 DFCBAD3CEC1C5F964962AE10E0BCC8E1 30080 ------w- C:\WINDOWS\ServicePackFiles\i386\modem.sys
2014-10-26 11:47:05 DB56BB2C55723815CF549D7FC50CFCEB 13240 ------w- C:\WINDOWS\ServicePackFiles\i386\slwdmsup.sys
2014-10-26 11:47:05 A7A01B907DB63898D40B0A14248FF9A2 104960 ------w- C:\WINDOWS\ServicePackFiles\i386\atinrvxx.sys
2014-10-26 11:47:05 851C30DF2807FCFA21E4C681A7D6440E 59136 ------w- C:\WINDOWS\ServicePackFiles\i386\rfcomm.sys
2014-10-26 11:47:05 6F714B4720DD80FFA9F8D2731594EA4C 36463 ------w- C:\WINDOWS\ServicePackFiles\i386\ati1tuxx.sys
2014-10-26 11:47:05 573C7D0A32852B48F3058CFD8026F511 144384 ------w- C:\WINDOWS\ServicePackFiles\i386\hdaudbus.sys
2014-10-26 11:47:05 2ADC0CA9945C65284B3D19BC18765974 28672 ------w- C:\WINDOWS\ServicePackFiles\i386\nscirda.sys
2014-10-26 11:47:05 09298EC810B07E5D582CB3A3F9255424 69120 ------w- C:\WINDOWS\ServicePackFiles\i386\psched.sys
2014-10-26 11:47:05 0753515F78DF7F271A5E61C20BCD36A1 141056 ------w- C:\WINDOWS\ServicePackFiles\i386\ks.sys
2014-10-26 11:45:08 F7706DAE7D101F1B19CE552D772EBFCE 21343 ------w- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2014-10-26 11:45:08 EDD66332608D27F4FD5069BCD0BC5164 73216 ------w- C:\WINDOWS\system32\drivers\atintuxx.sys
2014-10-26 11:45:08 ED4C2BF8403F4437987C0BA09CF48716 13824 ------w- C:\WINDOWS\system32\drivers\atinmdxx.sys
2014-10-26 11:45:08 E90AC2B14E98F1A4372E5891B4278784 14336 ------w- C:\WINDOWS\system32\drivers\atinpdxx.sys
2014-10-26 11:45:08 DAC7D785CF62F5BD41441E9D6F5A6EFE 26367 ------w- C:\WINDOWS\system32\drivers\ati1snxx.sys
2014-10-26 11:45:08 DA36687D701C833430605A298731410B 52224 ------w- C:\WINDOWS\system32\drivers\atinraxx.sys
2014-10-26 11:45:08 D80A8F6C0A717446496C3A06D33B0D9C 13824 ------w- C:\WINDOWS\system32\drivers\atinttxx.sys
2014-10-26 11:45:08 D649C57DA6FA762C64013747E5D7D2D6 56623 ------w- C:\WINDOWS\system32\drivers\ati1btxx.sys
2014-10-26 11:45:08 CEDDEE2E0591894D19654D458FD3B9BE 28672 ------w- C:\WINDOWS\system32\drivers\atinsnxx.sys
2014-10-26 11:45:08 CB08AED0DE2DD889A8A820CD8082D83C 42752 ------w- C:\WINDOWS\system32\drivers\alim1541.sys
2014-10-26 11:45:08 BCAF267B10620F8C93F6E87AB726E145 63663 ------w- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2014-10-26 11:45:08 A7A01B907DB63898D40B0A14248FF9A2 104960 ------w- C:\WINDOWS\system32\drivers\atinrvxx.sys
2014-10-26 11:45:08 9D318099BF3876A4AF4BC75966D27603 30671 ------w- C:\WINDOWS\system32\drivers\ati1raxx.sys
2014-10-26 11:45:08 993E7BD6438FE989E328C6B4BCA246A9 57856 ------w- C:\WINDOWS\system32\drivers\atinbtxx.sys
2014-10-26 11:45:08 95B4FB835E28AA1336CEEB07FD5B9398 43008 ------w- C:\WINDOWS\system32\drivers\amdagp.sys
2014-10-26 11:45:08 77B575D7AAB35D5908AE6CE681608D62 63488 ------w- C:\WINDOWS\system32\drivers\atinxsxx.sys
2014-10-26 11:45:08 6FDC61E8E8E17F6ECC2D9A10FA8DF347 12047 ------w- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2014-10-26 11:45:08 6F714B4720DD80FFA9F8D2731594EA4C 36463 ------w- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2014-10-26 11:45:08 67FFBC158DD4D27BA3FC92C6ACD87F73 29455 ------w- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2014-10-26 11:45:08 60B6AA2DC1521DA343F781B70EB7895A 11615 ------w- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2014-10-26 11:45:08 3E7D485CBD0B0D9F6EA2AD9442411831 31744 ------w- C:\WINDOWS\system32\drivers\atinxbxx.sys
2014-10-26 11:45:08 2D030C2F6B036CA0BC243E1B16D924D1 327040 ------w- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2014-10-26 11:45:08 0D8CAB1F08F7D3C4DE228B49E12E596A 34735 ------w- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2014-10-26 11:45:08 08FD04AA961BDC77FB983F328334E3D7 42368 ------w- C:\WINDOWS\system32\drivers\agp440.sys
2014-10-26 11:45:08 03A7E0922ACFE1B07D5DB2EEB0773063 44928 ------w- C:\WINDOWS\system32\drivers\agpcpq.sys
2014-10-26 11:45:07 FCA6F069597B62D42495191ACE3FC6C1 37888 ------w- C:\WINDOWS\system32\drivers\bthmodem.sys
2014-10-26 11:45:07 EBB354438A4C5A3327FB97306260714A 1041536 ------w- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2014-10-26 11:45:07 BB68CEBFFD181E18A26112D1B9F90F3D 36480 ------w- C:\WINDOWS\system32\drivers\bthprint.sys
2014-10-26 11:45:07 BB1A6FB7D35A91E599973FA74A619056 19200 ------w- C:\WINDOWS\system32\drivers\hidir.sys
2014-10-26 11:45:07 B279426E3C0C344893ED78A613A73BDE 17024 ------w- C:\WINDOWS\system32\drivers\bthenum.sys
2014-10-26 11:45:07 970178E8E003EB1481293830069624B9 220032 ------w- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2014-10-26 11:45:07 80602B8746D3738F5886CE3D67EF06B6 101120 ------w- C:\WINDOWS\system32\drivers\bthpan.sys
2014-10-26 11:45:07 7BD2DE4C85EB4241EED57672B16A7D8D 25600 ------w- C:\WINDOWS\system32\drivers\hidbth.sys
2014-10-26 11:45:07 61364CD71EF63B0F038B7E9DF00F1EFA 18944 ------w- C:\WINDOWS\system32\drivers\bthusb.sys
2014-10-26 11:45:07 573C7D0A32852B48F3058CFD8026F511 144384 ------w- C:\WINDOWS\system32\drivers\hdaudbus.sys
2014-10-26 11:45:07 3A74C423CF6BCCA6982715878F450A3B 46464 ------w- C:\WINDOWS\system32\drivers\gagp30kx.sys
2014-10-26 11:45:07 1225EBEA76AAC3C84DF6C54FE5E5D8BE 685056 ------w- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2014-10-26 11:45:07 10B85171B90C449F8DA71C2640B797E9 273024 ------w- C:\WINDOWS\system32\drivers\bthport.sys
2014-10-26 11:45:06 E9AAA0092D74A9D371659C4C38882E12 13776 ------w- C:\WINDOWS\system32\drivers\recagent.sys
2014-10-26 11:45:06 D66D22D76878BF3483A6BE30183FB648 10240 ------w- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2014-10-26 11:45:06 C53775780148884AC87C455489A0C070 126686 ------w- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2014-10-26 11:45:06 B538DCD9816EA35FA4F637CFC261AAA8 12672 ------w- C:\WINDOWS\system32\drivers\mutohpen.sys
2014-10-26 11:45:06 851C30DF2807FCFA21E4C681A7D6440E 59136 ------w- C:\WINDOWS\system32\drivers\rfcomm.sys
2014-10-26 11:45:06 726548542AFECA56257FF01EB13BB6D7 30592 ------w- C:\WINDOWS\system32\drivers\rndismpx.sys
2014-10-26 11:45:06 6DDA78A0BE692B61B668FAB860F276CF 452736 ------w- C:\WINDOWS\system32\drivers\mtxparhm.sys
2014-10-26 11:45:06 576B34CEAE5B7E5D9FD2775E93B3DB53 180360 ------w- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2014-10-26 11:45:06 54886A652BF5685192141DF304E923FD 1309184 ------w- C:\WINDOWS\system32\drivers\mtlstrm.sys
2014-10-26 11:45:06 2B298519EDBFCF451D43E0F1E8F1006D 1897408 ------w- C:\WINDOWS\system32\drivers\nv4_mini.sys
2014-10-26 11:45:06 195741AEE20369980796B557358CD774 11868 ------w- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2014-10-26 11:45:06 0DBCC071A268E0340A2BA6BDD98BACE4 166912 ------w- C:\WINDOWS\system32\drivers\s3gnbm.sys
2014-10-26 11:45:05 F9B8E30E82EE95CF3E1D3E495599B99C 95424 ------w- C:\WINDOWS\system32\drivers\slnthal.sys
2014-10-26 11:45:05 DB56BB2C55723815CF549D7FC50CFCEB 13240 ------w- C:\WINDOWS\system32\drivers\slwdmsup.sys
2014-10-26 11:45:05 D9673011648A71ED1E1F77B831BC85E6 129535 ------w- C:\WINDOWS\system32\drivers\slnt7554.sys
2014-10-26 11:45:05 D85938F272D1BCF3DB3A31FC0A048928 44672 ------w- C:\WINDOWS\system32\drivers\uagp35.sys
2014-10-26 11:45:05 B6CC50279D6CD28E090A5D33244ADC9A 12800 ------w- C:\WINDOWS\system32\drivers\usb8023x.sys
2014-10-26 11:45:05 ACED8C149B30F8496C237BCBA3727B48 14208 ------w- C:\WINDOWS\system32\drivers\wacompen.sys
2014-10-26 11:45:05 895BE38A993B9BD5ABBE570D63D88A2E 5888 ------w- C:\WINDOWS\system32\drivers\smbali.sys
2014-10-26 11:45:05 7BB3AA595E4507A788DE1CDC63F4C8C4 11871 ------w- C:\WINDOWS\system32\drivers\wadv09nt.sys
2014-10-26 11:45:05 791CC45DE6E50445BE72E8AD6401FF45 25471 ------w- C:\WINDOWS\system32\drivers\watv10nt.sys
2014-10-26 11:45:05 754292CE5848B3738281B4F3607EAEF4 42240 ------w- C:\WINDOWS\system32\drivers\viaagp.sys
2014-10-26 11:45:05 714038A8AA5DE08E12062202CD7EAEB5 11295 ------w- C:\WINDOWS\system32\drivers\wadv08nt.sys
2014-10-26 11:45:05 6B33D0EBD30DB32E27D1D78FE946A754 40960 ------w- C:\WINDOWS\system32\drivers\sisagp.sys
2014-10-26 11:45:05 36E6C405B6143D09687F4056FD9A0D10 11935 ------w- C:\WINDOWS\system32\drivers\wadv11nt.sys
2014-10-26 11:45:05 352FA0E98BC461CE1CE5D41F64DB558D 22271 ------w- C:\WINDOWS\system32\drivers\watv06nt.sys
2014-10-26 11:45:05 2C1779C0FEB1F4A6033600305EBA623A 404990 ------w- C:\WINDOWS\system32\drivers\slntamr.sys
2014-10-26 11:45:05 0308AEF61941E4AF478FA1A0F83812F5 11807 ------w- C:\WINDOWS\system32\drivers\wadv07nt.sys
2014-10-26 11:43:20 279FB78702454DFF2BB445F238C048D2 36096 ----a-w- C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\i386\intelppm.sys
2014-10-26 11:41:50 C19B522A9AE0BBC3293397F3055E80A1 263040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\http.sys
2014-10-26 11:41:50 87A0E9E18C10A9E454238E3330E2A26D 12416 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tunmp.sys
2014-10-26 11:41:50 680AD1C1BB16239E28D8F33A54A7A3C7 37376 -c----w- C:\WINDOWS\$NtServicePackUninstall$\amdk7.sys
2014-10-26 11:41:50 586499FD312FFD7F78553F408E71682E 10240 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sffp_sd.sys
2014-10-26 11:41:50 469541F8BFD2B32659D5D463A6714BCE 15488 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mssmbios.sys
2014-10-26 11:41:50 279FB78702454DFF2BB445F238C048D2 36096 -c----w- C:\WINDOWS\$NtServicePackUninstall$\intelppm.sys
2014-10-26 11:41:50 1D9F1BEC651815741F088A8FB88E17EE 11136 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sffdisk.sys
2014-10-26 11:41:50 02FC71B020EC8700EE8A46C58BC6F276 67584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sdbus.sys
2014-10-26 11:41:40 4448006B6BC60E6C027932CFC38D6855 29056 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ip6fw.sys
2014-10-26 11:41:39 8968FF3973A883C49E8B564200F565B9 78464 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbvideo.sys
2014-10-26 11:41:39 7F78371E0AF2609EA3A95D8843B076F8 20736 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ramdisk.sys
2014-10-26 11:41:38 157754F0DF355A9E0A6F54721914F9C6 124800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fltmgr.sys
2014-10-26 11:41:37 15E993BA2F6946B2BFBBFCD30398621E 26624 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbehci.sys
2014-10-26 11:41:35 DB07B0088CDFD20C2A22E675120EDE34 72960 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mqac.sys
2014-10-26 11:41:34 03373A79440473062C6F3AEDEC6A49C8 163584 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nwrdr.sys
2014-10-26 11:41:10 3998593E148DA03A4359FDE9FE2102E6 15872 -c----w- C:\WINDOWS\$NtServicePackUninstall$\more.com
2014-10-26 11:41:01 C9BF2F12C4E6C12F8A85FBA4B6BC6208 17664 -c----w- C:\WINDOWS\$NtServicePackUninstall$\watchdog.sys
2014-10-26 11:41:01 108F5B9CFAE8D11ADD7EFEE91D8112C3 11264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tree.com
2014-10-26 11:40:58 FF86422268DE771D571E123EB7092C6A 60288 -c----w- C:\WINDOWS\$NtServicePackUninstall$\drmk.sys
2014-10-26 11:40:58 F8AA320C6A0409C0380E5D8A99D76EC6 41856 -c----w- C:\WINDOWS\$NtServicePackUninstall$\imapi.sys
2014-10-26 11:40:58 F5E7B358A732D09F4BCF2824B88B9E28 153344 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dmio.sys
2014-10-26 11:40:58 F0D692B0BFFB46E30EB3CEA168BBC49F 60800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\arp1394.sys
2014-10-26 11:40:58 EC88DA854AB7D7752EC8BE11A741BB7F 59904 -c----w- C:\WINDOWS\$NtServicePackUninstall$\atmarpc.sys
2014-10-26 11:40:58 EBDEE8A2EE5393890A1ACEE971C4C246 24576 -c----w- C:\WINDOWS\$NtServicePackUninstall$\kbdclass.sys
2014-10-26 11:40:58 EB7FFE87FD367EA8FCA0506F74A87FBB 92032 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ksecdd.sys
2014-10-26 11:40:58 E504F706CCB699C2596E9A3DA1596E87 35840 -c----w- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
2014-10-26 11:40:58 E4E6A0922E3D983728C9AD4E8D466954 71552 -c----w- C:\WINDOWS\$NtServicePackUninstall$\bridge.sys
2014-10-26 11:40:58 E1EC7F5DA720B640CD8FB8424F1B14BB 20992 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ipinip.sys
2014-10-26 11:40:58 E182FA8E49E8EE41B4ADC53093F3C7E6 14848 -c----w- C:\WINDOWS\$NtServicePackUninstall$\kbdhid.sys
2014-10-26 11:40:58 E153AB8A11DE5452BCF5AC7652DBF3ED 34944 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fips.sys
2014-10-26 11:40:58 DAD16A9D5C873E7219E6B43802ED316A 36992 -c----w- C:\WINDOWS\$NtServicePackUninstall$\amdk6.sys
2014-10-26 11:40:58 D93CAD07C5683DB066B0B2D2D3790EAD 171776 -c----w- C:\WINDOWS\$NtServicePackUninstall$\kmixer.sys
2014-10-26 11:40:58 D86173B401470F06D9810F7962969DDF 49664 -c----w- C:\WINDOWS\$NtServicePackUninstall$\classpnp.sys
2014-10-26 11:40:58 D3DAC8432110AAD0B02A58B4459AB835 71040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dxg.sys
2014-10-26 11:40:58 D16C81677A9BE399C63CD2EA486472A5 14208 -c----w- C:\WINDOWS\$NtServicePackUninstall$\diskdump.sys
2014-10-26 11:40:58 CED2E8396A8838E59D8FD529C680E02C 27392 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fdc.sys
2014-10-26 11:40:58 CDFE4411A69C224BD1D11B2DA92DAC51 95360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
2014-10-26 11:40:58 CD7D5152DF32B47F4E36F710B35AAE02 63744 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cdfs.sys
2014-10-26 11:40:58 C0FBB516E06E243F0CF31F597E7EBF7D 799744 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dmboot.sys
2014-10-26 11:40:58 C0F1D4A21DE5A415DF8170616703DEBF 35072 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msgpc.sys
2014-10-26 11:40:58 BF13612142995096AB084F2DB7F40F77 5504 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mstee.sys
2014-10-26 11:40:58 B9540E258F952650DE8DEC68719A5C97 140928 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ks.sys
2014-10-26 11:40:58 B78BE402C3F63DD55521F73876951CDD 574592 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ntfs.sys
2014-10-26 11:40:58 B74C69A810949E7A54DC688CAE662206 1835904 -c----w- C:\WINDOWS\$NtServicePackUninstall$\win32k.sys
2014-10-26 11:40:58 B5A8E215AC29D24D60B4D1250EF05ACE 134912 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ipnat.sys
2014-10-26 11:40:58 AF9C19B3100FE010496B1A27181FBF72 49536 -c----w- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
2014-10-26 11:40:58 AE431A8DD3C1D0D0610CDBAC16057AD0 7552 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mskssrv.sys
2014-10-26 11:40:58 A6F881284AC1150E37D9AE47FF601267 52864 -c----w- C:\WINDOWS\$NtServicePackUninstall$\dmusic.sys
2014-10-26 11:40:58 A10C7534F7223F4A73A948967D00E69B 187776 -c----w- C:\WINDOWS\$NtServicePackUninstall$\acpi.sys
2014-10-26 11:40:58 841F385C6CFAF66B58FBD898722BB4F0 142464 -c----w- C:\WINDOWS\$NtServicePackUninstall$\aec.sys
2014-10-26 11:40:58 82035E0F41C2DD05AE41D27FE6CF7DE1 107904 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mup.sys
2014-10-26 11:40:58 79EA3FCDA7067977625B3363A2657C80 88448 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nwlnkipx.sys
2014-10-26 11:40:58 739A53AB0955D58B15B66F277F9CCBF8 25600 -c----w- C:\WINDOWS\$NtServicePackUninstall$\format.com
2014-10-26 11:40:58 729D83E56C29C510258A6E9E79FFDDC3 63744 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mf.sys
2014-10-26 11:40:58 6FC6F9D7ACC36DCA9B914565A3AEDA05 30080 -c----w- C:\WINDOWS\$NtServicePackUninstall$\modem.sys
2014-10-26 11:40:58 6AF1684CCAAC3F7EF4EE9BA65EB0677A 36480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\crusoe.sys
2014-10-26 11:40:58 65653F3B4477F3C63E68A9659F85EE2E 42240 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mountmgr.sys
2014-10-26 11:40:58 64537AA5C003A6AFEEE1DF819062D0D1 74752 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ipsec.sys
2014-10-26 11:40:58 6163ED60B684BAB19D3352AB22FC48B2 17024 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ccdecode.sys
2014-10-26 11:40:58 60CF8C7192B3614F240838DDBAA4A245 40320 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nmnt.sys
2014-10-26 11:40:58 5FFF41CD5108E9051D255C37825AF697 24960 -c----w- C:\WINDOWS\$NtServicePackUninstall$\hidparse.sys
2014-10-26 11:40:58 5C8DC6429C43DC6177C1FA5B76290D1A 85376 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nabtsfec.sys
2014-10-26 11:40:58 5C5C53DB4FEF16CF87B9911C7E8C6FBC 61824 -c----w- C:\WINDOWS\$NtServicePackUninstall$\nic1394.sys
2014-10-26 11:40:58 5AC495F4CB807B2B98AD2AD591E6D92E 138496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\afd.sys
2014-10-26 11:40:58 59FC3FB44D2669BC144FD87826BB571F 38016 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ndproxy.sys
2014-10-26 11:40:58 561B3A4333CA2DBDBA28B5B956822519 19072 -c----w- C:\WINDOWS\$NtServicePackUninstall$\msfs.sys
2014-10-26 11:40:58 558635D3AF1C7546D26067D5D9B6959E 182912 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys
2014-10-26 11:40:58 5502B58EEF7486EE6F93F3F164DCB808 52736 -c----w- C:\WINDOWS\$NtServicePackUninstall$\i8042prt.sys
2014-10-26 11:40:58 520CE427A8B298F54112857BCF6BDE15 10880 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ndisip.sys
2014-10-26 11:40:58 50708DAA1B1CBB7D6AC1CF8F56A24410 11264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\irenum.sys
2014-10-26 11:40:58 4F601BCB8F64EA3AC0994F98FED03F8E 30848 -c----w- C:\WINDOWS\$NtServicePackUninstall$\npfs.sys
2014-10-26 11:40:58 46EDCC8F2DB2F322C24F48785CB46366 181248 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mrxdav.sys
2014-10-26 11:40:58 3E16EFF2A6FED2D8D7F5A66DFE65D183 42496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\p3.sys
2014-10-26 11:40:58 3A2ACA8FC1D7786902CA434998D7CEB4 34560 -c----w- C:\WINDOWS\$NtServicePackUninstall$\netbios.sys
2014-10-26 11:40:58 378055AB8DDA86228683C697C4E11685 36224 -c----w- C:\WINDOWS\$NtServicePackUninstall$\hidclass.sys
2014-10-26 11:40:58 34E1F0031153E491910E12551400192C 23040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mouclass.sys
2014-10-26 11:40:58 34D6CD56409DA9A7ED573E1C90A308BF 12928 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ndisuio.sys
2014-10-26 11:40:58 3117F595E9615E04F05A54FC15A03B20 143360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\fastfat.sys
2014-10-26 11:40:58 29744EB4CE659DFE3B4122DEB45BC478 80128 -c----w- C:\WINDOWS\$NtServicePackUninstall$\parport.sys
2014-10-26 11:40:58 1FD607FC67F7F7C633C3DA65BFC53D18 451456 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mrxsmb.sys
2014-10-26 11:40:58 1ED4DBBAE9F5D558DBBA4CC450E3EB2E 2944 -c----w- C:\WINDOWS\$NtServicePackUninstall$\drmkaud.sys
2014-10-26 11:40:58 1DE6783B918F540149AA69943BDFEBA8 9600 -c----w- C:\WINDOWS\$NtServicePackUninstall$\hidusb.sys
2014-10-26 11:40:58 1988A33FF19242576C3D0EF9CE785DA7 4992 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mspqm.sys
2014-10-26 11:40:58 13E75FEF9DFEB08EEDED9D0246E1F448 5376 -c----w- C:\WINDOWS\$NtServicePackUninstall$\mspclock.sys
2014-10-26 11:40:58 0DD1DE43115B93F4D85E889D7A86F548 20480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\flpydisk.sys
2014-10-26 11:40:58 0C80E410CD2F47134407EE7DD19CC86B 162816 -c----w- C:\WINDOWS\$NtServicePackUninstall$\netbt.sys
2014-10-26 11:40:58 0B90E255A9490166AB368CD55A529893 91776 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ndiswan.sys
2014-10-26 11:40:58 08D43BBDACDF23F34D79E44ED35C1B4C 9600 -c----w- C:\WINDOWS\$NtServicePackUninstall$\ndistapi.sys
2014-10-26 11:40:58 02000ABF34AF4C218C35D257024807D6 14336 -c----w- C:\WINDOWS\$NtServicePackUninstall$\asyncmac.sys
2014-10-26 11:40:58 0128E78FE835F074E469F03DB681CA9E 55936 -c----w- C:\WINDOWS\$NtServicePackUninstall$\atmlane.sys
2014-10-26 11:40:58 00CA44E4534865F8A3B64F7C0984BFF0 36352 -c----w- C:\WINDOWS\$NtServicePackUninstall$\disk.sys
2014-10-26 11:40:57 D7FD0FF761E28AC0EA35AD71E0CD67E9 96256 -c----w- C:\WINDOWS\$NtServicePackUninstall$\scsiport.sys
2014-10-26 11:40:57 D4F5643D7714EF499AE9527FDCD50894 139400 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rdpwd.sys
2014-10-26 11:40:57 B31B4588E4086D8D84ADBF9845C2402B 57472 -c----w- C:\WINDOWS\$NtServicePackUninstall$\redbook.sys
2014-10-26 11:40:57 A2CAE2C60BC37E0751EF9DDA7CEAF4AD 196864 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rdpdr.sys
2014-10-26 11:40:57 98FAEB4A4DCF812BA1C6FCA4AA3E115C 51328 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rasl2tp.sys
2014-10-26 11:40:57 82A087207DECEC8456FBE8537947D579 119936 -c----w- C:\WINDOWS\$NtServicePackUninstall$\pcmcia.sys
2014-10-26 11:40:57 8086D9979234B603AD5BC2F5D890B234 68224 -c----w- C:\WINDOWS\$NtServicePackUninstall$\pci.sys
2014-10-26 11:40:57 7CE8B277F3207EA82D7D22AD348BEFC6 30080 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rndismp.sys
2014-10-26 11:40:57 7306EEED8895454CBED4669BE9F79FAA 41472 -c----w- C:\WINDOWS\$NtServicePackUninstall$\raspppoe.sys
2014-10-26 11:40:57 5B0F00E43A7094C0B7E433CB42C79164 145792 -c----w- C:\WINDOWS\$NtServicePackUninstall$\portcls.sys
2014-10-26 11:40:57 520B91AB011456B940D9B05FC91108FF 25088 -c----w- C:\WINDOWS\$NtServicePackUninstall$\pciidex.sys
2014-10-26 11:40:57 48671F327553DCF1D27F6197F622A668 69120 -c----w- C:\WINDOWS\$NtServicePackUninstall$\psched.sys
2014-10-26 11:40:57 35E81B908AE4E97FC7BDF4607C516FF4 200064 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rmcast.sys
2014-10-26 11:40:57 3334430C29DC338092F79C38EF7B4CD0 18688 -c----w- C:\WINDOWS\$NtServicePackUninstall$\partmgr.sys
2014-10-26 11:40:57 29D66245ADBA878FFF574CD66ABD2884 176512 -c----w- C:\WINDOWS\$NtServicePackUninstall$\rdbss.sys
2014-10-26 11:40:57 1C5CC65AAC0783C344F16353E60B72AC 48384 -c----w- C:\WINDOWS\$NtServicePackUninstall$\raspptp.sys
2014-10-26 11:40:57 0D97D88720A4087EC93AF7DBB303B30A 35328 -c----w- C:\WINDOWS\$NtServicePackUninstall$\processr.sys
2014-10-26 11:40:56 F8FD1400092E23C8F2F31406EF06167B 20480 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbuhci.sys
2014-10-26 11:40:56 EE4660083DEBA849FF6C485D944B379B 52352 -c----w- C:\WINDOWS\$NtServicePackUninstall$\volsnap.sys
2014-10-26 11:40:56 ED0580AF02502D00AD8C4C066B156BE9 21896 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tdtcp.sys
2014-10-26 11:40:56 E41B6D037D6CD08461470AF04500DC24 73472 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sr.sys
2014-10-26 11:40:56 D5A9D123F5ED7C9965A481BD20CF66D8 79744 -c----w- C:\WINDOWS\$NtServicePackUninstall$\videoprt.sys
2014-10-26 11:40:56 D5842484F05E12121C511AA93F6439EC 19328 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wstcodec.sys
2014-10-26 11:40:56 D26E26EA516450AF9D072635C60387F4 27440 -c----w- C:\WINDOWS\$NtServicePackUninstall$\secdrv.sys
2014-10-26 11:40:56 CD9404D115A00D249F70A371B46D5A26 64896 -c----w- C:\WINDOWS\$NtServicePackUninstall$\serial.sys
2014-10-26 11:40:56 C72F40947F92CEA56A8FB532EDF025F1 57600 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbhub.sys
2014-10-26 11:40:56 C43356072EB3E88CD62958DB10CEAD47 48640 -c----w- C:\WINDOWS\$NtServicePackUninstall$\stream.sys
2014-10-26 11:40:56 BFFD9F120CC63BCBAA3D840F3EEF9F79 31616 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbccgp.sys
2014-10-26 11:40:56 AFF2E5045961BBC0A602BB6F95EB1345 209408 -c----w- C:\WINDOWS\$NtServicePackUninstall$\update.sys
2014-10-26 11:40:56 AF090265EC388BAB320F1FF7E7A7D5EA 12672 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usb8023.sys
2014-10-26 11:40:56 ADDC9E4757A68AB60562AD3CB9C288D6 25472 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sonydcam.sys
2014-10-26 11:40:56 A6BC71402F4F7DD5B77FD7F4A8DDBA85 15104 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbscan.sys
2014-10-26 11:40:56 A540A99C281D933F3D69D55E48727F47 40840 -c----w- C:\WINDOWS\$NtServicePackUninstall$\termdd.sys
2014-10-26 11:40:56 A2D868AEEFF612E70E213C451A70CAFB 15488 -c----w- C:\WINDOWS\$NtServicePackUninstall$\serenum.sys
2014-10-26 11:40:56 A2A9CA0D1A9AC1FF54220AA0789FE5CF 14976 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tape.sys
2014-10-26 11:40:56 9F4B36614A0FC234525BA224957DE55C 359040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
2014-10-26 11:40:56 984EF0B9788ABF89974CFED4BFBAACBC 34560 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wanarp.sys
2014-10-26 11:40:56 94ABC808FC4B6D7D2BBF42B85E25BB4D 54272 -c----w- C:\WINDOWS\$NtServicePackUninstall$\swmidi.sys
2014-10-26 11:40:56 8E186B8F23295D1E42C573B82B80D548 6400 -c----w- C:\WINDOWS\$NtServicePackUninstall$\splitter.sys
2014-10-26 11:40:56 8A60EDD72B4EA5AEA8202DAF0E427925 20992 -c----w- C:\WINDOWS\$NtServicePackUninstall$\vga.sys
2014-10-26 11:40:56 6CD7B22193718F1D17A47A1CD6D37E75 26496 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys
2014-10-26 11:40:56 6891B74AB9A016064E82A419388D0601 18560 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tdi.sys
2014-10-26 11:40:56 650AD082D46BAC0E64C9C0E0928492FD 60800 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sysaudio.sys
2014-10-26 11:40:56 61018BA9DF6B63E51D9753C980E73EC2 23936 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbcamd2.sys
2014-10-26 11:40:56 5CAEED86821FA2C6139E32E9E05CCDC9 11136 -c----w- C:\WINDOWS\$NtServicePackUninstall$\slip.sys
2014-10-26 11:40:56 4D58BB1AE8841AAFD8790AD7E1E3B8EA 223616 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tcpip6.sys
2014-10-26 11:40:56 45A0D14B26C35497AD93BCE7E15C9941 59264 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbaudio.sys
2014-10-26 11:40:56 38D437CF2D98965F239B0ABCD66DCB0F 12040 -c----w- C:\WINDOWS\$NtServicePackUninstall$\tdpipe.sys
2014-10-26 11:40:56 2853FD4C4489E0F8BFCF78EFCDB7E998 16000 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbintel.sys
2014-10-26 11:40:56 284C57DF5DC7ABCA656BC2B96A667AFB 15360 -c----w- C:\WINDOWS\$NtServicePackUninstall$\streamip.sys
2014-10-26 11:40:56 2797F33EBF50466020C430EE4F037933 82944 -c----w- C:\WINDOWS\$NtServicePackUninstall$\wdmaud.sys
2014-10-26 11:40:56 2654EECC6FB13603EBDDCD5C8EA943D1 23808 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbcamd.sys
2014-10-26 11:40:56 20B7E396720353E4117D64D9DCB926CA 336256 -c----w- C:\WINDOWS\$NtServicePackUninstall$\srv.sys
2014-10-26 11:40:56 2034CA78F9C6E787B4B76D81AC888351 142976 -c----w- C:\WINDOWS\$NtServicePackUninstall$\usbport.sys
2014-10-26 11:40:56 12F70256F140CD7D52C58C7048FDE657 66176 -c----w- C:\WINDOWS\$NtServicePackUninstall$\udfs.sys
2014-10-26 11:40:56 0D13B6DF6E9E101013A7AFB0CE629FE0 11392 -c----w- C:\WINDOWS\$NtServicePackUninstall$\sfloppy.sys
2014-10-26 11:40:56 03C1BAE4766E2450219D20B993D6E046 4352 -c----w- C:\WINDOWS\$NtServicePackUninstall$\swenum.sys
2014-10-25 17:08:57 DBA34C0AB6049AB3557CDA1578125D70 129536 ----a-w- C:\WINDOWS\system32\drivers\twusbnet.sys
2014-10-25 17:08:57 DBA34C0AB6049AB3557CDA1578125D70 129536 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Drivers\Win32\twusbnet.sys
2014-10-25 17:08:57 8880FC9AE8BD03DAC35DD674DD324B90 105984 ----a-w- C:\WINDOWS\system32\drivers\WCDMA_Datacard_Usb_Ser.sys
2014-10-25 17:08:57 8880FC9AE8BD03DAC35DD674DD324B90 105984 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Drivers\Win32\twusbser.sys
2014-10-25 17:08:57 48DEB495EF2BFD33D76608F624A74A95 154112 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Drivers\Win64\twusbnet.sys
2014-10-25 17:08:57 25912655F207E46606D98B2EB8782CD9 121088 ----a-w- C:\Program Files\Sitecom 3G MiFi\Driver\Drivers\Win64\twusbser.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-21-2025429265-1336601894-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent"="C:\Documents and Settings\Ristic\Application Data\BitTorrent\BitTorrent.exe /MINIMIZED"
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe"
"ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe runtime"
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe"
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent"="C:\Documents and Settings\Ristic\Application Data\BitTorrent\BitTorrent.exe /MINIMIZED"
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"

==== Task Scheduler Jobs ======================

C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task]
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2025429265-1336601894-839522115-1003Core.job --a------ [Undetermined Task]
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2025429265-1336601894-839522115-1003UA.job --a------ [Undetermined Task]

==== Firefox Extensions ======================

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\Ristic\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default
DFC9460CC37E5C414DC4680B10C19E7A - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll - Shockwave Flash
3CD19649B2C3023D65E67C056457A2BC - C:\Documents and Settings\Ristic\Local Settings\Application Data\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
2855AB5CC40D03B1F708C088123D2776 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U55
8AD9933DE84627B4BF9CCD1191121240 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.550.13
4956E5429BB59E1994F15498E993B90B - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll - Foxit Reader Plugin for Mozilla
0E8B2D0D9E3415A91EF259CE1112C579 - C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll - Shockwave for Director / Shockwave for Director
0F445B821549F9FF471BBA56C69953D4 - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
28000D7EEB2FD95A36E1A7539F599C3B - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
5D41BCD19A3D90E4EBB58A6BFB79E4F7 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
8B6884E3E1E5F8ABA5FA0C6A2B13181D - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM


==== Chromium Look ======================

greatsaveeer - Administrator\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - Administrator\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - ASPNET\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - ASPNET\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - Guest\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - Guest\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - HelpAssistant\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - HelpAssistant\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - Ristic\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
Google Drive - Ristic\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Ristic\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
greatsaveeer - Ristic\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - SUPPORT_388945a0\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle
greatsaveeer - SUPPORT_388945a0\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle

==== Chromium Fix ======================

C:\Documents and Settings\Administrator\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\ASPNET\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\Guest\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\Guest\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\HelpAssistant\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\Ristic\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\Ristic\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully
C:\Documents and Settings\SUPPORT_388945a0\Local Settings\Application Data\Google\Chrome SxS\User Data\Default\Extensions\pmghppokanllfgicbobgbnajafhfjfle deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{50648D7A-DBEB-D98E-BD1D-E6130C4C599A} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EDA91FA2-D787-CC23-FBA8-4A699B1F8537} deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Ristic\Local Settings\Temporary Internet Files\Content.IE5\GP2ZCB0R will be deleted at reboot
C:\Documents and Settings\Ristic\Local Settings\Temporary Internet Files\Content.IE5\O54ZWBAB will be deleted at reboot
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\Ristic\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\Ristic\Local Settings\Application Data\Mozilla\Firefox\Profiles\ufbxj3up.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\Ristic\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=296 folders=90 257053023 bytes)

==== Empty Temp Folders ======================

C:\Documents and Settings\Default User\Local Settings\Temp emptied successfully
C:\Documents and Settings\LocalService\Local Settings\temp emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\temp emptied successfully
C:\Documents and Settings\Ristic\Local Settings\Temp will be emptied at reboot
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\Ristic\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Documents and Settings\Ristic\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\Ristic\Local Settings\Temporary Internet Files\Content.IE5\GP2ZCB0R" not found
"C:\Documents and Settings\Ristic\Local Settings\Temporary Internet Files\Content.IE5\O54ZWBAB" not found

==== EOF on 26.10.2014 at 14:06:05,76 ======================

Dopuna: 26 Okt 2014 14:14

mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pokreni ponovo Zoek sa ovom skriptim

autoclean;
emptyfolderscheck;delete
pmghppokanllfgicbobgbnajafhfjfle;chr
emptyclsid;

offline
  • Pridružio: 25 Okt 2014
  • Poruke: 17

mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Odlicno, kazi mi kakva je situacija sada, kako se ponasa racunar.

offline
  • Pridružio: 25 Okt 2014
  • Poruke: 17

Ne koči kao ranije, mreža ne puca.... Mnogo bolje Very Happy

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Odradicemo jos jedan scan, s tim da ovaj program mozes da zadrzis i povremeno skeniras racunar.



Arrow Preuzmi instalaciju za Malwarebytes Anti-Malware (MBAM) ver.2.0 i instaliraj aplikaciju.
Dvoklik na mbam-setup.exe i prati uputstva za instalaciju. Instalacija je klasicna, "Next > I Agree . . > Next > Install" princip. Po zavrsenoj instalaciji, klikni Finish.
Napomena: 14 dana besplatna trail verzija je pre-selektovana. Mozes decekirati ovu opciju ako zelis.


- Po prvom pokretanju, MBAM ce zapoceti "Update" u nameri da preuzme najsvezije definicije.
Ili ... klik na 'Update Now >>' link ili dugme radi preuzimanja svezih definicija.

• Konfigurisati skener; Na 'Settings' tabu, Detection and Protection podesiti sledece opcije:
1. pod-tab Detection Options, cekirati kucicu za 'Scan for rootkits';
2. pod-tab Non-Malware Protection, za 'PUP detections', prostarati se da je selektovana 'Threat detections as malware' opcija.




• Izvrsiti 'Threat Scan';
Klik na Scan tab, zatim na 'Scan Now >>' da bi izvrsio skeniranje.
Ukoliko MBAM prijavi da je 'update' dostupan, klik na 'Update Now' a potom nastaviti do skeniranja.
Obavestenje: kod nekih teskih infekcija, moguce je dobiti sledecu poruku "Could not load DDA driver". U tom slucaju, klik Yes na tu poruku, dopustiti ucitavanje drajvera po restartu racunara, dozvoliti restart.
Potom, nastaviti sa ostatkom instrukcija.


• Po zavrsenom skeniranju, klik na Apply Action dugme ukoliko je pretnja detektovana. Sacekati da program zatrazi restart!
- Klik na Yes na poruku koja govori da ce se sistem restartovati.



• Postaviti izvestaj (export-ovati logfile) na uvid;
Ponovo pokrenuti MBAM, klik na History tab > Application Logs. Dvoklik na 'Scan Log' koji pokazuje vreme i datum upravo izvrsenog skeniranja.
1. U novom prozoru klik na 'Export' dugme, pa izabrati 'Text file (*.txt)';
2. Kada se pojavi Save File dialog, izabrati da se log sacuva na Desktop.
U tom istom prozoru, dole pod File name: upisi 'mbam' kao naziv izvestaja i klikni dugme Save.

- Po dobijenoj poruci ("Your file has been successfully exported") izvestaj koji si nazvao kao 'mbam' bice sacuvan na Desktop.




Arrow Okaci mbam.txt uz poruku koristeci opciju Prikači fajl.

Ko je trenutno na forumu
 

Ukupno su 1255 korisnika na forumu :: 43 registrovanih, 7 sakrivenih i 1205 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, _Petar, AC-DC, ajo baba, aleksandarbl, Atomski čoban, Bobrock1, dekan.m, Dimitrise93, Djokislav, Djokkinen, doktor123, DonRumataEstorski, Dorcolac, FileFinder, flash12, frenki1986, Insan, kjkszpj, krkalon, Kubovac, kunktator, Lieutenant, ljubacv, Mercury, Mi lao shu, Milometer, nemkea71, novator, opt1, panzerwaffe, pein, pristinski korpus, procesor, savaskytec, slonic_tonic, Srle993, suton, Trpe Grozni, Tvrtko I, virked, VJ, voja64