Problem sa adware-om

1

Problem sa adware-om

offline
  • Programer
  • Pridružio: 23 Maj 2012
  • Poruke: 4533

Neko od ukućana (najverovatnije zbog neke app na Fejsbuku) je pokupio program pod imenom HD V1.9 koji sam viđao kod jednog mog ortaka na računaru i koji je imao iste probleme - iskakanje raznoraznih reklama u Chrome-u pri otvaranju linkova. Probao sam da ga deinstaliram međutim nisam uspeo, a kada pokušam da isključim proces u Task Manager-u (baš sam posmatrao) ponovo se pokrene posle par sekundi Shocked Program nije izlistan u listi instaliranih, a ni folder ne mogu da izbrišem jer ga neki proces koristi (nisam siguran koji tačno). Ima još par procesa koji su mi sumnjivi, IePluginService i Loader32. Evo izveštaja pa vi pogledajte, Avast je detektovao dve pretnje ali ih nisam sačuvao u kovčeg nego ih obrisao GUZ - Glavom U Zid Jedna je bila za adware 100% sam siguran. U brauzeru sam sve ekstenzije pobrisao.



Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-07-2014
Ran by Nikola (administrator) on NIKOLAPC on 26-07-2014 18:47:39
Running from C:\Users\Nikola\Desktop
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Fuyu LIMITED) C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-11.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Mega Limited) C:\ProgramData\MEGAsync\MEGAsync.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Alpha SoftTech) C:\Program Files\WindowsApps\41997alpha3114.Notepad8_2.0.0.1_x86__22de3xcvq7fg2\Notepad 8 Win8.exe
(Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(AVAST Software) D:\Programi\Avast\AvastSvc.exe
(AVAST Software) D:\Programi\Avast\AvastUI.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\FileManager\FileManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\FileManager\PhotosApp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
() C:\Program Files\SupTab\HpUI.exe
() C:\Program Files\SupTab\Loader32.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(InfoHD-V1.8) C:\Program Files\HD-V1.9\HD-V1.9-nova.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

Startup: C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk
ShortcutTarget: MEGAsync.lnk -> C:\ProgramData\MEGAsync\MEGAsync.exe (Mega Limited)
ShellIconOverlayIdentifiers: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: ###MegaShellExtPending -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX32.dll ()
ShellIconOverlayIdentifiers: ###MegaShellExtSynced -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX32.dll ()
ShellIconOverlayIdentifiers: ###MegaShellExtSyncing -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX32.dll ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Programi\Avast\ashShell.dll (AVAST Software)
BootExecute: autocheck autochk * aswBoot.exe /M:34e77d954c /dir:"D:\Programi\Avast"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xEF0C2A1BC6A5CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=140.....5198951989
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?type=ds&ts.....989&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=140.....5198951989
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp&ts=140.....5198951989
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?type=ds&ts.....989&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/?type=sc&ts=140.....5198951989
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts.....989&q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts.....989&q={searchTerms}
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts.....989&q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> D:\Programi\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> D:\Programi\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Programi\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.65.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/Lync,version=15.0 - C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - D:\Programi\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - D:\Programi\Avast\WebRep\FF
FF Extension: avast! Online Security - D:\Programi\Avast\WebRep\FF [2014-07-26]

Chrome:
=======
CHR HomePage: www.google.com
CHR StartupUrls: "https://www.google.rs/", "www.google.com"
CHR Extension: (Google документи) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-22]
CHR Extension: (Google диск) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-22]
CHR Extension: (UJAM - Make your music.) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2014-07-22]
CHR Extension: (YouTube) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-22]
CHR Extension: (GeoGebra) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee [2014-07-22]
CHR Extension: (Google претрага) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-22]
CHR Extension: (avast! Online Security) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-07-26]
CHR Extension: (SQLite Database Browser (Beta)) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpbdkmaomigeneadlamehkfchdmojgg [2014-07-26]
CHR Extension: (Google новчаник) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-22]
CHR Extension: (Gmail) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-22]
CHR Extension: (draw.io) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgmlhohecdddhbmmkncjdmlhcmaachm [2014-07-22]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - D:\Programi\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-26]
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; D:\Programi\Avast\AvastSvc.exe [50344 2014-07-26] (AVAST Software)
S3 fussvc; C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe [140800 2014-02-19] (Microsoft Corporation) [File not signed]
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-25] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-25] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [702344 2014-07-25] (Cherished Technololgy LIMITED)
R2 IpOverUsbSvc; C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [22768 2014-04-17] (Microsoft Corporation)
S3 ScDeviceEnum; C:\Windows\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [977088 2014-03-02] () [File not signed]
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 Te.Service; C:\Program Files\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [91136 2013-08-21] (Microsoft Corporation) [File not signed]
S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [71864 2014-05-01] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-03-24] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\Windows\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-03-24] (Microsoft Corporation)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [535936 2014-07-25] (Fuyu LIMITED)
S3 workfolderssvc; C:\Windows\system32\workfolderssvc.dll [1210368 2014-04-03] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-07-26] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-07-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-07-26] (AVAST Software)
S0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-07-26] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-07-26] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-07-26] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-07-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-07-26] ()
R1 BasicRender; C:\Windows\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation)
S3 bthav; C:\Windows\system32\drivers\bthav.sys [34816 2008-07-10] (CSR, plc)
S3 GPIO; C:\Windows\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [92504 2014-03-24] (Microsoft Corporation)
R0 Wof; C:\Windows\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
R3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-26 18:47 - 2014-07-26 18:48 - 00015568 _____ () C:\Users\Nikola\Desktop\FRST.txt
2014-07-26 18:47 - 2014-07-26 18:48 - 00000000 ____D () C:\FRST
2014-07-26 18:46 - 2014-07-26 18:46 - 01084416 _____ (Farbar) C:\Users\Nikola\Desktop\FRST.exe
2014-07-26 18:42 - 2014-07-26 18:42 - 00001374 _____ () C:\Users\Nikola\Desktop\Adobe Photoshop CS5.lnk
2014-07-26 18:06 - 2014-07-26 18:06 - 00000879 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5.lnk
2014-07-26 18:06 - 2014-07-26 18:06 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-07-26 18:05 - 2014-07-26 18:05 - 00000853 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2014-07-26 18:04 - 2014-07-26 18:04 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.lnk
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\Program Files\Adobe Media Player
2014-07-26 18:01 - 2014-07-26 18:01 - 00001497 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
2014-07-26 18:01 - 2014-07-26 18:01 - 00000973 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS5.lnk
2014-07-26 18:00 - 2014-07-26 18:01 - 00000000 ____D () C:\Program Files\Adobe
2014-07-26 18:00 - 2014-07-26 18:00 - 00000983 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR
2014-07-26 17:58 - 2014-07-26 18:06 - 00000000 ____D () C:\ProgramData\Adobe
2014-07-26 17:56 - 2014-07-26 18:04 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-07-26 17:54 - 2014-07-26 18:37 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Adobe
2014-07-26 17:35 - 2014-07-26 17:35 - 00000730 _____ () C:\Users\Nikola\Desktop\Revo Uninstaller.lnk
2014-07-26 17:34 - 2014-07-26 17:34 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Nikola\Downloads\revosetup.exe
2014-07-26 16:19 - 2014-07-26 18:00 - 00025509 _____ () C:\Windows\WindowsUpdate.log
2014-07-26 16:09 - 2014-07-26 16:09 - 00000830 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\AVAST Software
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-26 16:08 - 2014-07-26 16:09 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00414392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1406383740515
2014-07-26 16:08 - 2014-07-26 16:07 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-26 16:07 - 2014-07-26 16:07 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-26 16:07 - 2014-07-26 16:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-26 16:03 - 2014-07-26 16:05 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-25 19:37 - 2014-04-14 04:37 - 00865280 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-07-25 19:36 - 2014-07-25 19:36 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-07-25 18:28 - 2014-07-25 19:08 - 00000000 ____D () C:\Windows\AutoKMS
2014-07-25 18:11 - 2014-05-09 01:08 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2014-07-25 18:11 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll
2014-07-25 18:11 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll
2014-07-25 18:11 - 2014-03-13 08:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2014-07-25 17:56 - 2014-07-25 17:56 - 00000000 ___RD () C:\Users\Nikola\Documents\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:55 - 00000770 _____ () C:\Users\Public\Desktop\MEGAsync.lnk
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Mega Limited
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\MEGAsync
2014-07-25 17:54 - 2014-07-25 17:55 - 08144792 _____ () C:\Users\Nikola\Downloads\MEGAsyncSetup.exe
2014-07-25 17:04 - 2014-07-25 17:04 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-25 16:57 - 2014-07-26 11:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-07-25 16:55 - 2014-07-25 16:55 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-07-25 16:53 - 2014-07-25 16:53 - 00000000 ____D () C:\Windows\PCHEALTH
2014-07-25 16:49 - 2014-07-25 16:49 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-07-25 16:48 - 2014-07-26 11:54 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-25 16:48 - 2014-07-25 16:48 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Microsoft Help
2014-07-25 16:42 - 2014-07-25 19:08 - 00000000 ____D () C:\Users\Nikola\Desktop\Office 2013
2014-07-25 16:37 - 2014-07-25 18:43 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-07-25 16:19 - 2014-07-26 17:31 - 00001268 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-10.job
2014-07-25 16:19 - 2014-07-26 16:19 - 00001444 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user.job
2014-07-25 16:19 - 2014-07-26 16:19 - 00001428 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5.job
2014-07-25 16:19 - 2014-07-25 16:58 - 00000000 ____D () C:\Program Files\VideoLAN
2014-07-25 16:18 - 2014-07-26 18:18 - 00001486 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-7.job
2014-07-25 16:18 - 2014-07-26 16:18 - 00002216 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-4.job
2014-07-25 16:18 - 2014-07-26 16:18 - 00001356 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-2.job
2014-07-25 16:18 - 2014-07-26 16:18 - 00000606 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-11.job
2014-07-25 16:17 - 2014-07-26 16:22 - 00000946 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-25 16:17 - 2014-07-26 16:22 - 00000942 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-25 16:17 - 2014-07-26 16:11 - 00000000 ____D () C:\Program Files\HD-V1.9
2014-07-25 16:17 - 2014-07-25 16:17 - 00000000 ____D () C:\Users\Nikola\AppData\Local\globalUpdate
2014-07-25 16:17 - 2014-07-25 16:17 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-07-25 16:17 - 2014-07-25 16:17 - 00000000 ____D () C:\Program Files\globalUpdate
2014-07-25 16:16 - 2014-07-26 17:33 - 00000000 ____D () C:\Program Files\SupTab
2014-07-25 16:16 - 2014-07-25 16:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-07-25 15:47 - 2014-07-25 15:47 - 00014810 _____ () C:\Users\Nikola\Downloads\[kickass.to]microsoft.office.proplus.2013.vl.x86.x64.en.us.feb2014.torrent
2014-07-25 14:25 - 2014-07-25 14:25 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Oracle
2014-07-25 14:24 - 2014-07-25 14:24 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Sun
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-07-25 14:21 - 2014-07-25 14:20 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-25 14:21 - 2014-07-25 14:20 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-25 14:21 - 2014-07-25 14:20 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-25 14:21 - 2014-07-25 14:20 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-07-25 14:20 - 2014-07-25 14:20 - 00000000 ____D () C:\Program Files\Java
2014-07-25 13:49 - 2014-07-25 13:49 - 00000634 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-07-25 13:49 - 2014-07-25 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-07-25 13:45 - 2014-07-25 15:21 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\qBittorrent
2014-07-25 13:45 - 2014-07-25 13:45 - 00000693 _____ () C:\Users\Nikola\Desktop\qBittorrent.lnk
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\qBittorrent
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Local\qBittorrent
2014-07-25 13:36 - 2014-07-25 13:36 - 00000601 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-07-25 13:36 - 2014-07-25 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-07-24 14:41 - 2014-07-24 19:04 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS
2014-07-24 14:41 - 2014-07-24 19:04 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life
2014-07-24 14:41 - 2014-07-24 19:04 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
2014-07-23 18:58 - 2014-01-19 09:37 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-07-23 18:41 - 2014-07-23 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK
2014-07-23 18:40 - 2014-07-23 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Windows\symbols
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 11.0
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\Program Files\Windows Phone Silverlight Kits
2014-07-23 18:22 - 2014-07-23 18:38 - 00000000 ____D () C:\Program Files\Microsoft XDE
2014-07-23 18:17 - 2014-07-23 18:17 - 00000000 ____D () C:\Program Files\ShellDir
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\ProgramData\NuGet
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\Program Files\NuGet
2014-07-23 18:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-07-23 18:13 - 2014-07-23 18:36 - 00000000 ____D () C:\Program Files\Common Files\Merge Modules
2014-07-23 18:03 - 2014-07-23 18:20 - 00000000 ____D () C:\ProgramData\Windows App Certification Kit
2014-07-23 18:03 - 2014-07-23 18:03 - 00000000 ____D () C:\Program Files\Application Verifier
2014-07-23 18:02 - 2014-07-23 18:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2014-07-23 17:57 - 2014-07-23 17:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2014-07-23 17:55 - 2014-07-23 18:40 - 00000000 ____D () C:\Program Files\Windows Phone Kits
2014-07-23 17:51 - 2014-07-23 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2014-07-23 17:48 - 2014-07-23 18:42 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 12.0
2014-07-23 16:50 - 2014-07-25 16:44 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\PeaZip
2014-07-23 16:50 - 2014-07-23 16:50 - 00000649 _____ () C:\Users\Nikola\Desktop\PeaZip.lnk
2014-07-23 16:50 - 2014-07-23 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
2014-07-23 16:44 - 2014-07-23 16:45 - 18168108 _____ () C:\Users\Nikola\Downloads\Universal Windows app samples.zip
2014-07-23 16:37 - 2014-07-23 16:37 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\NuGet
2014-07-23 16:35 - 2014-07-23 17:17 - 00000000 ____D () C:\Users\Nikola\Documents\Visual Studio 2013
2014-07-23 16:24 - 2014-07-23 16:27 - 00000000 ____D () C:\Program Files\Windows Kits
2014-07-23 16:21 - 2014-07-23 18:41 - 00000000 ____D () C:\Program Files\Microsoft SDKs
2014-07-23 16:21 - 2014-07-23 16:21 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-07-23 16:20 - 2014-07-23 18:01 - 00000000 ____D () C:\Windows\system32\1033
2014-07-23 16:20 - 2014-07-23 16:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-07-23 16:18 - 2014-07-23 18:40 - 00000000 ____D () C:\Program Files\MSBuild
2014-07-23 16:18 - 2014-07-23 16:18 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-07-23 16:16 - 2014-07-23 18:34 - 00000000 ____D () C:\ProgramData\Package Cache
2014-07-23 16:16 - 2014-07-23 16:16 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-07-23 16:15 - 2014-07-23 17:40 - 00000000 ____D () C:\Program Files\Visual Studio 12.0
2014-07-23 11:46 - 2014-07-23 11:46 - 00000977 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 03:36 - 2014-07-23 11:47 - 00000000 ____D () C:\Windows\Panther
2014-07-23 02:37 - 2014-07-23 02:37 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-07-23 01:37 - 2014-06-26 22:55 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-23 01:37 - 2014-06-26 22:55 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-22 22:27 - 2014-07-22 22:29 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-22 22:27 - 2014-06-26 17:38 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-22 21:24 - 2014-03-20 03:31 - 01037504 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-07-22 21:24 - 2014-03-20 03:12 - 00863552 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-07-22 21:24 - 2014-03-20 03:09 - 01679704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-07-22 21:24 - 2014-03-20 03:09 - 00283992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2014-07-22 21:24 - 2014-03-20 01:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2014-07-22 21:24 - 2014-03-20 01:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2014-07-22 21:24 - 2014-03-19 07:25 - 00491008 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-07-22 21:24 - 2014-03-19 07:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2014-07-22 21:24 - 2014-03-19 07:08 - 01351168 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2014-07-22 21:24 - 2014-03-13 12:12 - 00138584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2014-07-22 21:24 - 2014-03-11 16:28 - 00887296 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2014-07-22 21:24 - 2014-03-11 14:35 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-07-22 21:24 - 2014-03-08 14:00 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2014-07-22 21:24 - 2014-03-08 13:49 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2014-07-22 21:24 - 2014-03-08 13:45 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2014-07-22 21:24 - 2014-03-08 13:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2014-07-22 21:24 - 2014-03-08 10:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2014-07-22 21:24 - 2014-03-08 09:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2014-07-22 21:24 - 2014-03-08 09:12 - 01816576 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2014-07-22 21:24 - 2014-03-08 08:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2014-07-22 21:24 - 2014-03-08 08:37 - 00755712 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-22 21:24 - 2014-03-08 08:37 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-07-22 21:24 - 2014-03-08 08:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2014-07-22 21:24 - 2014-03-08 08:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-07-22 21:24 - 2014-03-08 08:23 - 00731648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-07-22 21:24 - 2014-03-08 07:42 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2014-07-22 21:24 - 2014-03-08 07:16 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2014-07-22 21:24 - 2014-03-06 13:19 - 00390488 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2014-07-22 21:24 - 2014-03-06 13:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2014-07-22 21:24 - 2014-03-06 13:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-07-22 21:24 - 2014-03-06 13:13 - 00406912 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-07-22 21:24 - 2014-03-06 12:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-07-22 21:24 - 2014-03-06 12:43 - 01326936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-07-22 21:24 - 2014-03-06 12:43 - 00321880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-07-22 21:24 - 2014-03-06 12:34 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-07-22 21:24 - 2014-03-06 10:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-07-22 21:24 - 2014-03-06 10:24 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2014-07-22 21:24 - 2014-03-06 10:23 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2014-07-22 21:24 - 2014-03-06 10:22 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-07-22 21:24 - 2014-03-06 10:20 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2014-07-22 21:24 - 2014-03-06 09:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-07-22 21:24 - 2014-03-06 09:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2014-07-22 21:24 - 2014-03-06 08:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2014-07-22 21:24 - 2014-03-06 08:23 - 02270208 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2014-07-22 21:24 - 2014-03-06 08:11 - 02030080 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-07-22 21:24 - 2014-03-06 08:09 - 01764864 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2014-07-22 21:24 - 2014-03-06 08:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2014-07-22 21:24 - 2014-03-06 08:06 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2014-07-22 21:24 - 2014-03-06 08:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2014-07-22 21:24 - 2014-03-06 08:01 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2014-07-22 21:24 - 2014-03-06 07:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2014-07-22 21:24 - 2014-03-06 07:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2014-07-22 21:24 - 2014-03-04 13:16 - 02088160 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-07-22 21:24 - 2014-03-04 13:10 - 00355832 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2014-07-22 21:24 - 2014-03-04 09:26 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2014-07-22 21:24 - 2014-03-04 08:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-07-22 21:24 - 2014-03-04 08:42 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-07-22 21:24 - 2014-03-04 08:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2014-07-22 21:24 - 2014-03-04 08:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2014-07-22 21:24 - 2014-03-04 08:30 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2014-07-22 21:24 - 2014-03-04 08:26 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-07-22 21:24 - 2014-03-04 08:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2014-07-22 21:24 - 2014-03-04 07:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2014-07-22 21:24 - 2014-03-04 07:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2014-07-22 21:23 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-22 21:23 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-22 21:23 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-22 21:23 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-22 21:23 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-22 21:23 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-22 21:23 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-22 21:23 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-22 21:23 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-22 21:23 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-22 21:23 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-22 21:23 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-22 21:23 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-22 21:23 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-22 21:23 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-22 21:23 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-22 21:23 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-22 21:23 - 2014-05-19 07:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2014-07-22 21:23 - 2014-05-19 07:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2014-07-22 21:23 - 2014-05-05 06:02 - 02826240 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-07-22 21:23 - 2014-05-03 08:36 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-07-22 21:23 - 2014-04-30 12:10 - 01090296 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-07-22 21:23 - 2014-04-30 05:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-07-22 21:23 - 2014-04-30 05:43 - 01046016 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-07-22 21:23 - 2014-04-11 05:41 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2014-07-22 21:23 - 2014-04-11 05:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-07-22 21:23 - 2014-04-11 05:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-07-22 21:23 - 2014-04-11 05:02 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2014-07-22 21:23 - 2014-04-11 05:01 - 00307712 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-07-22 21:23 - 2014-04-11 04:47 - 01634304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-07-22 21:23 - 2014-03-12 15:45 - 00387210 _____ () C:\Windows\system32\ApnDatabase.xml
2014-07-22 21:23 - 2014-03-08 09:40 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2014-07-22 21:23 - 2014-03-08 07:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-07-22 21:23 - 2014-03-06 10:24 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2014-07-22 21:23 - 2014-03-06 10:20 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-07-22 21:23 - 2014-03-06 10:20 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-07-22 21:23 - 2014-03-06 10:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2014-07-22 21:23 - 2014-03-06 09:47 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2014-07-22 21:23 - 2014-02-06 12:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-22 21:23 - 2014-02-06 12:19 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-22 21:23 - 2014-02-06 12:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-22 21:23 - 2014-02-06 11:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-22 21:23 - 2014-02-06 11:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-22 21:23 - 2014-02-06 11:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-22 21:23 - 2014-02-06 11:47 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-22 21:23 - 2014-02-06 11:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-22 21:23 - 2013-12-24 01:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2014-07-22 21:22 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-22 21:22 - 2014-06-06 15:20 - 03497472 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-22 21:22 - 2014-05-30 05:05 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-22 21:22 - 2014-05-29 11:30 - 00481400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-07-22 21:22 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-07-22 21:22 - 2014-05-29 06:38 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-22 21:22 - 2014-05-01 13:00 - 02257608 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2014-07-22 21:22 - 2014-05-01 13:00 - 00046512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2014-07-22 21:22 - 2014-05-01 08:51 - 02344448 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-07-22 21:22 - 2014-05-01 08:42 - 02045440 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2014-07-22 21:22 - 2014-05-01 07:31 - 02366976 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2014-07-22 21:22 - 2014-04-18 15:43 - 00031064 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2014-07-22 21:22 - 2014-04-18 10:01 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-07-22 21:22 - 2014-04-18 09:51 - 00836608 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2014-07-22 21:22 - 2014-04-18 09:49 - 05833216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2014-07-22 21:22 - 2014-04-14 10:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2014-07-22 21:22 - 2014-04-11 07:29 - 01016320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-07-22 21:22 - 2014-04-11 06:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2014-07-22 21:22 - 2014-04-11 05:27 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2014-07-22 21:22 - 2014-04-09 12:47 - 00294744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2014-07-22 21:22 - 2014-04-09 07:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2014-07-22 21:22 - 2014-04-09 05:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2014-07-22 21:22 - 2014-04-08 01:47 - 00502104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-07-22 21:22 - 2014-04-06 17:27 - 00311128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-07-22 21:22 - 2014-04-06 17:27 - 00240472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-07-22 21:22 - 2014-04-06 17:23 - 00098584 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2014-07-22 21:22 - 2014-04-06 17:22 - 18755672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-07-22 21:22 - 2014-04-06 17:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 02144984 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 01159520 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00406504 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00305768 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-07-22 21:22 - 2014-04-06 13:54 - 12711424 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-07-22 21:22 - 2014-04-06 13:47 - 00264704 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2014-07-22 21:22 - 2014-04-06 12:44 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-07-22 21:22 - 2014-04-06 12:37 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-07-22 21:22 - 2014-04-06 12:36 - 00888320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2014-07-22 21:22 - 2014-04-06 11:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2014-07-22 21:22 - 2014-04-03 06:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2014-07-22 21:22 - 2014-04-03 05:53 - 01797896 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2014-07-22 21:22 - 2014-04-03 04:46 - 03563008 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-07-22 21:22 - 2014-04-03 04:45 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-07-22 21:22 - 2014-04-03 04:44 - 01210368 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2014-07-22 21:22 - 2014-04-03 04:24 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-07-22 21:22 - 2014-04-01 07:09 - 00333656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2014-07-22 21:22 - 2014-03-31 05:34 - 05786968 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-07-22 21:22 - 2014-03-31 01:13 - 00667136 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2014-07-22 21:22 - 2014-03-31 00:37 - 01167360 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2014-07-22 21:22 - 2014-03-28 11:04 - 00328984 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2014-07-22 21:22 - 2014-03-27 07:21 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-07-22 21:22 - 2014-03-27 05:22 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2014-07-22 21:22 - 2014-03-25 00:57 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-07-22 21:22 - 2014-03-24 03:34 - 00219992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-07-22 21:22 - 2014-03-24 03:34 - 00092504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2014-07-22 21:22 - 2014-03-24 03:33 - 00030224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-07-22 21:22 - 2014-03-20 03:20 - 00229344 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-07-22 21:22 - 2014-03-20 01:38 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2014-07-22 21:22 - 2014-03-20 01:33 - 05774848 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-07-22 21:22 - 2014-03-19 09:09 - 00375296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2014-07-22 21:22 - 2014-03-19 07:00 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2014-07-22 21:22 - 2014-03-19 06:51 - 00300544 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2014-07-22 21:22 - 2014-03-19 06:47 - 01309184 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2014-07-22 21:22 - 2014-03-19 06:14 - 02130432 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-07-22 21:22 - 2014-03-18 09:22 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2014-07-22 21:22 - 2014-03-18 06:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2014-07-22 21:22 - 2014-03-17 06:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-07-22 21:22 - 2014-03-17 04:45 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2014-07-22 21:22 - 2014-03-17 04:36 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-07-22 21:22 - 2014-03-14 08:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2014-07-22 21:22 - 2014-03-06 12:37 - 00264536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2014-07-22 21:21 - 2014-05-10 05:22 - 01312256 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-07-22 21:21 - 2014-04-18 15:29 - 01200288 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2014-07-22 21:21 - 2014-04-18 10:51 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2014-07-22 21:21 - 2014-04-06 17:18 - 00271192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2014-07-22 21:21 - 2014-04-06 17:16 - 00707048 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-07-22 21:21 - 2014-04-06 17:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-07-22 21:21 - 2014-04-06 17:16 - 00326024 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-07-22 21:21 - 2014-04-06 17:16 - 00194752 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-07-22 21:21 - 2014-04-06 14:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2014-07-22 21:21 - 2014-04-06 14:00 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-07-22 21:21 - 2014-04-06 13:40 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2014-07-22 21:21 - 2014-04-06 12:58 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2014-07-22 21:21 - 2014-04-06 12:55 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2014-07-22 21:21 - 2014-04-03 06:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-07-22 21:21 - 2014-04-03 05:46 - 01871704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-07-22 21:21 - 2014-04-03 05:46 - 00286040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-07-22 21:21 - 2014-04-03 04:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2014-07-22 21:21 - 2014-03-31 02:41 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2014-07-22 21:21 - 2014-03-31 01:26 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2014-07-22 21:21 - 2014-03-31 00:35 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2014-07-22 21:21 - 2014-03-31 00:09 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2014-07-22 21:21 - 2014-03-30 23:49 - 00672256 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2014-07-22 21:21 - 2014-03-27 06:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2014-07-22 21:21 - 2014-03-27 06:19 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2014-07-22 21:21 - 2014-03-27 05:03 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2014-07-22 21:21 - 2014-03-27 04:59 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2014-07-22 21:21 - 2014-03-21 05:46 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2014-07-22 21:21 - 2014-03-19 09:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2014-07-22 21:21 - 2014-03-19 07:56 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-07-22 21:21 - 2014-03-19 06:23 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-07-22 21:21 - 2014-03-08 13:53 - 00147800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-07-22 21:21 - 2014-03-06 10:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2014-07-22 21:21 - 2014-01-27 20:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-07-22 21:17 - 2014-05-31 10:38 - 00049552 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-07-22 21:17 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-07-22 21:17 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-22 21:17 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-07-22 21:17 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-07-22 21:17 - 2014-05-31 04:39 - 02818048 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-07-22 21:17 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2014-07-22 21:17 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-07-22 21:17 - 2014-04-11 10:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2014-07-22 21:17 - 2014-04-11 07:22 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-07-22 21:17 - 2014-04-11 07:13 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2014-07-22 21:17 - 2014-03-11 15:02 - 00629760 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-07-22 20:56 - 2014-07-25 17:05 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Kingsoft
2014-07-22 20:56 - 2014-07-25 17:05 - 00000000 ____D () C:\ProgramData\kingsoft
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Sublime Text 3
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Sublime Text 3
2014-07-22 18:38 - 2014-07-22 20:56 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Kingsoft
2014-07-22 18:26 - 2014-07-26 18:30 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-22 18:26 - 2014-07-22 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-22 18:25 - 2014-07-26 18:30 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-22 18:25 - 2014-07-26 18:30 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-22 18:24 - 2014-07-26 16:12 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Google
2014-07-22 18:24 - 2014-07-26 16:12 - 00000000 ____D () C:\Program Files\Google
2014-07-22 18:15 - 2014-07-22 18:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-07-22 18:01 - 2014-07-22 18:01 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Macromedia
2014-07-22 18:00 - 2014-07-26 11:42 - 00000000 __RDO () C:\Users\Nikola\OneDrive
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieUserList
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieSiteList
2014-07-22 17:57 - 2014-07-26 18:37 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Adobe
2014-07-22 17:57 - 2014-07-25 16:58 - 00001442 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-22 17:57 - 2014-07-22 17:57 - 00000000 ____D () C:\Users\Nikola\AppData\Local\VirtualStore
2014-07-22 17:53 - 2014-07-22 18:00 - 00000000 ____D () C:\Users\Nikola
2014-07-22 17:53 - 2014-07-22 17:53 - 00004096 _____ () C:\Windows\SECOH-QAD.exe
2014-07-22 17:53 - 2014-07-22 17:53 - 00003072 _____ () C:\Windows\SECOH-QAD.dll
2014-07-22 17:53 - 2014-07-22 17:53 - 00000020 ___SH () C:\Users\Nikola\ntuser.ini
2014-07-22 17:53 - 2014-07-22 17:53 - 00000000 ____D () C:\Program Files\KMSpico
2014-07-22 17:53 - 2014-03-18 10:14 - 00000000 ___RD () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 17:53 - 2014-03-18 10:14 - 00000000 ___RD () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 17:53 - 2014-03-18 10:03 - 00000369 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-07-22 17:53 - 2014-03-18 10:03 - 00000369 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-07-22 17:53 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-22 17:53 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-22 17:51 - 2014-07-22 17:51 - 00000000 ____D () C:\Windows\CSC
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\MSDOS.SYS
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\IO.SYS

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-26 18:48 - 2014-07-26 18:47 - 00015568 _____ () C:\Users\Nikola\Desktop\FRST.txt
2014-07-26 18:48 - 2014-07-26 18:47 - 00000000 ____D () C:\FRST
2014-07-26 18:46 - 2014-07-26 18:46 - 01084416 _____ (Farbar) C:\Users\Nikola\Desktop\FRST.exe
2014-07-26 18:42 - 2014-07-26 18:42 - 00001374 _____ () C:\Users\Nikola\Desktop\Adobe Photoshop CS5.lnk
2014-07-26 18:37 - 2014-07-26 17:54 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Adobe
2014-07-26 18:37 - 2014-07-22 17:57 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Adobe
2014-07-26 18:30 - 2014-07-22 18:26 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-26 18:30 - 2014-07-22 18:25 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-26 18:30 - 2014-07-22 18:25 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-26 18:18 - 2014-07-25 16:18 - 00001486 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-7.job
2014-07-26 18:06 - 2014-07-26 18:06 - 00000879 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5.lnk
2014-07-26 18:06 - 2014-07-26 18:06 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-07-26 18:06 - 2014-07-26 17:58 - 00000000 ____D () C:\ProgramData\Adobe
2014-07-26 18:05 - 2014-07-26 18:05 - 00000853 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2014-07-26 18:04 - 2014-07-26 18:04 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.lnk
2014-07-26 18:04 - 2014-07-26 17:56 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\Program Files\Adobe Media Player
2014-07-26 18:01 - 2014-07-26 18:01 - 00001497 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
2014-07-26 18:01 - 2014-07-26 18:01 - 00000973 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS5.lnk
2014-07-26 18:01 - 2014-07-26 18:00 - 00000000 ____D () C:\Program Files\Adobe
2014-07-26 18:00 - 2014-07-26 18:00 - 00000983 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR
2014-07-26 18:00 - 2014-07-26 16:19 - 00025509 _____ () C:\Windows\WindowsUpdate.log
2014-07-26 18:00 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\sru
2014-07-26 17:35 - 2014-07-26 17:35 - 00000730 _____ () C:\Users\Nikola\Desktop\Revo Uninstaller.lnk
2014-07-26 17:34 - 2014-07-26 17:34 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Nikola\Downloads\revosetup.exe
2014-07-26 17:33 - 2014-07-25 16:16 - 00000000 ____D () C:\Program Files\SupTab
2014-07-26 17:31 - 2014-07-25 16:19 - 00001268 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-10.job
2014-07-26 16:22 - 2014-07-25 16:17 - 00000946 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-26 16:22 - 2014-07-25 16:17 - 00000942 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-26 16:19 - 2014-07-25 16:19 - 00001444 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user.job
2014-07-26 16:19 - 2014-07-25 16:19 - 00001428 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5.job
2014-07-26 16:18 - 2014-07-25 16:18 - 00002216 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-4.job
2014-07-26 16:18 - 2014-07-25 16:18 - 00001356 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-2.job
2014-07-26 16:18 - 2014-07-25 16:18 - 00000606 _____ () C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-11.job
2014-07-26 16:12 - 2014-07-22 18:24 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Google
2014-07-26 16:12 - 2014-07-22 18:24 - 00000000 ____D () C:\Program Files\Google
2014-07-26 16:11 - 2014-07-25 16:17 - 00000000 ____D () C:\Program Files\HD-V1.9
2014-07-26 16:09 - 2014-07-26 16:09 - 00000830 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\AVAST Software
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-26 16:09 - 2014-07-26 16:08 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00414392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1406383740515
2014-07-26 16:07 - 2014-07-26 16:08 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-26 16:07 - 2014-07-26 16:07 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-26 16:07 - 2014-07-26 16:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-26 16:05 - 2014-07-26 16:03 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-26 14:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\AppReadiness
2014-07-26 11:56 - 2013-08-22 10:05 - 00000000 ____D () C:\Windows\CbsTemp
2014-07-26 11:55 - 2014-07-25 16:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-07-26 11:54 - 2014-07-25 16:48 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-26 11:42 - 2014-07-22 18:00 - 00000000 __RDO () C:\Users\Nikola\OneDrive
2014-07-26 00:18 - 2014-03-18 10:00 - 00818732 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-25 19:55 - 2013-08-22 09:23 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-25 19:55 - 2013-08-22 09:22 - 00494528 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-25 19:54 - 2013-08-22 08:13 - 00524288 ___SH () C:\Windows\system32\config\BBI
2014-07-25 19:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\System
2014-07-25 19:45 - 2013-08-22 08:13 - 00000167 _____ () C:\Windows\win.ini
2014-07-25 19:43 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-07-25 19:36 - 2014-07-25 19:36 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-07-25 19:08 - 2014-07-25 18:28 - 00000000 ____D () C:\Windows\AutoKMS
2014-07-25 19:08 - 2014-07-25 16:42 - 00000000 ____D () C:\Users\Nikola\Desktop\Office 2013
2014-07-25 18:43 - 2014-07-25 16:37 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-07-25 17:56 - 2014-07-25 17:56 - 00000000 ___RD () C:\Users\Nikola\Documents\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:55 - 00000770 _____ () C:\Users\Public\Desktop\MEGAsync.lnk
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Mega Limited
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:54 - 08144792 _____ () C:\Users\Nikola\Downloads\MEGAsyncSetup.exe
2014-07-25 17:29 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-07-25 17:17 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-07-25 17:05 - 2014-07-22 20:56 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Kingsoft
2014-07-25 17:05 - 2014-07-22 20:56 - 00000000 ____D () C:\ProgramData\kingsoft
2014-07-25 17:04 - 2014-07-25 17:04 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-25 16:58 - 2014-07-25 16:19 - 00000000 ____D () C:\Program Files\VideoLAN
2014-07-25 16:58 - 2014-07-22 17:57 - 00001442 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-25 16:56 - 2014-03-18 09:39 - 00000000 ____D () C:\Windows\ShellNew
2014-07-25 16:55 - 2014-07-25 16:55 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-07-25 16:53 - 2014-07-25 16:53 - 00000000 ____D () C:\Windows\PCHEALTH
2014-07-25 16:49 - 2014-07-25 16:49 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-07-25 16:48 - 2014-07-25 16:48 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Microsoft Help
2014-07-25 16:44 - 2014-07-23 16:50 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\PeaZip
2014-07-25 16:17 - 2014-07-25 16:17 - 00000000 ____D () C:\Users\Nikola\AppData\Local\globalUpdate
2014-07-25 16:17 - 2014-07-25 16:17 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-07-25 16:17 - 2014-07-25 16:17 - 00000000 ____D () C:\Program Files\globalUpdate
2014-07-25 16:16 - 2014-07-25 16:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-07-25 15:47 - 2014-07-25 15:47 - 00014810 _____ () C:\Users\Nikola\Downloads\[kickass.to]microsoft.office.proplus.2013.vl.x86.x64.en.us.feb2014.torrent
2014-07-25 15:21 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\qBittorrent
2014-07-25 14:25 - 2014-07-25 14:25 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Oracle
2014-07-25 14:24 - 2014-07-25 14:24 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Sun
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-07-25 14:20 - 2014-07-25 14:21 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-25 14:20 - 2014-07-25 14:21 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-25 14:20 - 2014-07-25 14:21 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-25 14:20 - 2014-07-25 14:21 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-07-25 14:20 - 2014-07-25 14:20 - 00000000 ____D () C:\Program Files\Java
2014-07-25 13:49 - 2014-07-25 13:49 - 00000634 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-07-25 13:49 - 2014-07-25 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-07-25 13:45 - 2014-07-25 13:45 - 00000693 _____ () C:\Users\Nikola\Desktop\qBittorrent.lnk
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\qBittorrent
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Local\qBittorrent
2014-07-25 13:36 - 2014-07-25 13:36 - 00000601 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-07-25 13:36 - 2014-07-25 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-07-24 19:04 - 2014-07-24 14:41 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS
2014-07-24 19:04 - 2014-07-24 14:41 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life
2014-07-24 19:04 - 2014-07-24 14:41 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
2014-07-23 19:01 - 2013-08-22 08:13 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-07-23 18:42 - 2014-07-23 17:48 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 12.0
2014-07-23 18:41 - 2014-07-23 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK
2014-07-23 18:41 - 2014-07-23 16:21 - 00000000 ____D () C:\Program Files\Microsoft SDKs
2014-07-23 18:40 - 2014-07-23 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2014-07-23 18:40 - 2014-07-23 17:55 - 00000000 ____D () C:\Program Files\Windows Phone Kits
2014-07-23 18:40 - 2014-07-23 16:18 - 00000000 ____D () C:\Program Files\MSBuild
2014-07-23 18:38 - 2014-07-23 18:22 - 00000000 ____D () C:\Program Files\Microsoft XDE
2014-07-23 18:36 - 2014-07-23 18:13 - 00000000 ____D () C:\Program Files\Common Files\Merge Modules
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Windows\symbols
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 11.0
2014-07-23 18:34 - 2014-07-23 16:16 - 00000000 ____D () C:\ProgramData\Package Cache
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\Program Files\Windows Phone Silverlight Kits
2014-07-23 18:20 - 2014-07-23 18:03 - 00000000 ____D () C:\ProgramData\Windows App Certification Kit
2014-07-23 18:17 - 2014-07-23 18:17 - 00000000 ____D () C:\Program Files\ShellDir
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\ProgramData\NuGet
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\Program Files\NuGet
2014-07-23 18:16 - 2014-07-23 17:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2014-07-23 18:03 - 2014-07-23 18:03 - 00000000 ____D () C:\Program Files\Application Verifier
2014-07-23 18:03 - 2014-07-23 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2014-07-23 18:01 - 2014-07-23 16:20 - 00000000 ____D () C:\Windows\system32\1033
2014-07-23 17:57 - 2014-07-23 17:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2014-07-23 17:40 - 2014-07-23 16:15 - 00000000 ____D () C:\Program Files\Visual Studio 12.0
2014-07-23 17:17 - 2014-07-23 16:35 - 00000000 ____D () C:\Users\Nikola\Documents\Visual Studio 2013
2014-07-23 16:50 - 2014-07-23 16:50 - 00000649 _____ () C:\Users\Nikola\Desktop\PeaZip.lnk
2014-07-23 16:50 - 2014-07-23 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
2014-07-23 16:45 - 2014-07-23 16:44 - 18168108 _____ () C:\Users\Nikola\Downloads\Universal Windows app samples.zip
2014-07-23 16:37 - 2014-07-23 16:37 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\NuGet
2014-07-23 16:33 - 2014-07-23 16:20 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-07-23 16:27 - 2014-07-23 16:24 - 00000000 ____D () C:\Program Files\Windows Kits
2014-07-23 16:21 - 2014-07-23 16:21 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-07-23 16:18 - 2014-07-23 16:18 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-07-23 16:16 - 2014-07-23 16:16 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-07-23 11:47 - 2014-07-23 03:36 - 00000000 ____D () C:\Windows\Panther
2014-07-23 11:46 - 2014-07-23 11:46 - 00000977 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 11:26 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public
2014-07-23 03:35 - 2014-06-15 11:43 - 00008192 __RSH () C:\BOOTSECT.BAK
2014-07-23 03:35 - 2013-08-22 10:17 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2014-07-23 02:48 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\rescache
2014-07-23 02:39 - 2014-06-15 01:49 - 00000000 __SHD () C:\Recovery
2014-07-23 02:39 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\Recovery
2014-07-23 02:37 - 2014-07-23 02:37 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-07-22 22:41 - 2014-03-18 09:39 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Windows\ToastData
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender
2014-07-22 22:40 - 2013-08-22 10:17 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-07-22 22:40 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\WinStore
2014-07-22 22:40 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2014-07-22 22:29 - 2014-07-22 22:27 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-22 21:25 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\restore
2014-07-22 20:56 - 2014-07-22 18:38 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Kingsoft
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Sublime Text 3
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Sublime Text 3
2014-07-22 18:26 - 2014-07-22 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-22 18:15 - 2014-07-22 18:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-07-22 18:01 - 2014-07-22 18:01 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Macromedia
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieUserList
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieSiteList
2014-07-22 18:00 - 2014-07-22 17:53 - 00000000 ____D () C:\Users\Nikola
2014-07-22 17:57 - 2014-07-22 17:57 - 00000000 ____D () C:\Users\Nikola\AppData\Local\VirtualStore
2014-07-22 17:53 - 2014-07-22 17:53 - 00004096 _____ () C:\Windows\SECOH-QAD.exe
2014-07-22 17:53 - 2014-07-22 17:53 - 00003072 _____ () C:\Windows\SECOH-QAD.dll
2014-07-22 17:53 - 2014-07-22 17:53 - 00000020 ___SH () C:\Users\Nikola\ntuser.ini
2014-07-22 17:53 - 2014-07-22 17:53 - 00000000 ____D () C:\Program Files\KMSpico
2014-07-22 17:51 - 2014-07-22 17:51 - 00000000 ____D () C:\Windows\CSC
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\MSDOS.SYS
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\IO.SYS
2014-06-26 22:55 - 2014-07-23 01:37 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-06-26 22:55 - 2014-07-23 01:37 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-06-26 17:38 - 2014-07-22 22:27 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

Some content of TEMP:
====================
C:\Users\Nikola\AppData\Local\Temp\PidGenX.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-23 02:36

==================== End Of Log ============================

https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Pozdrav,



Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:

createsrpoint;
process;
services-list;
systemspecs;
startupall;
skipfix-iedefaults;
firefoxlook;
chromelook;
filesrcm;
installedprogs


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Programer
  • Pridružio: 23 Maj 2012
  • Poruke: 4533

Zoek.exe v5.0.0.0 Updated 26-07-2014
Tool run by Nikola on Sat 07/26/2014 at 19:37:19.35.
Microsoft Windows 8.1 Pro 6.3.9600 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Nikola\Desktop\zoek\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

7/26/2014 7:38:29 PM Zoek.exe System Restore Point Created Succesfully.

==== Running Processes ======================

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsass.exe
C:\ProgramData\IePluginServices\PluginService.exe
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\rundll32.exe
C:\Windows\system32\taskhostex.exe
C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-11.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\skydrive.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\MEGAsync\MEGAsync.exe
C:\Windows\System32\SettingSyncHost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\WindowsApps\41997alpha3114.Notepad8_2.0.0.1_x86__22de3xcvq7fg2\Notepad 8 Win8.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Programi\Avast\AvastSvc.exe
D:\Programi\Avast\avastUi.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\ImmersiveControlPanel\SystemSettings.exe
C:\Windows\FileManager\FileManager.exe
C:\Windows\system32\DllHost.exe
C:\Windows\FileManager\PhotosApp.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Windows\System32\WWAHost.exe
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\SupTab\HpUI.exe
C:\Program Files\SupTab\Loader32.exe
C:\Windows\system32\wwahost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\HD-V1.9\HD-V1.9-nova.exe
D:\Programi\MCShield\MCShieldRTM.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\LiveComm.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Nikola\Desktop\zoek\zoek.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\vssvc.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k swprv

==== Services (whitelist) ======================
Powered by E Dev

R2 - [gupdate] - Google Update Service (gupdate) - "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc
R2 - [IePluginServices] - IePlugin Services - C:\ProgramData\IePluginServices\PluginService.exe -service
R2 - [IpOverUsbSvc] - Windows Phone IP over USB Transport (IpOverUsbSvc) - "C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe"
R2 - [SQLWriter] - SQL Server VSS Writer - "C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
R2 - [WindowsMangerProtect] - WindowsMangerProtect Service - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
R2 - [WSearch] - Windows Search - C:\Windows\system32\SearchIndexer.exe /Embedding
R3 - [VSS] - Volume Shadow Copy - C:\Windows\system32\vssvc.exe
S2 - [globalUpdate] - globalUpdate Update Service (globalUpdate) - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /svc
S2 - [Service KMSELDI] - Service KMSELDI - C:\Program Files\KMSpico\Service_KMS.exe
S2 - [sppsvc] - Software Protection - C:\Windows\system32\sppsvc.exe
S3 - [ALG] - Application Layer Gateway Service - C:\Windows\System32\alg.exe
S3 - [COMSysApp] - COM+ System Application - C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
S3 - [Fax] - Fax - C:\Windows\system32\fxssvc.exe
S3 - [fussvc] - Windows App Certification Kit Fast User Switching Utility Service - "C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe"
S3 - [globalUpdatem] - globalUpdate Update Service (globalUpdatem) - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /medsvc
S3 - [gupdatem] - Google Update Service (gupdatem) - "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc
S3 - [IEEtwCollectorService] - Internet Explorer ETW Collector Service - C:\Windows\system32\IEEtwCollector.exe /V
S3 - [MSDTC] - Distributed Transaction Coordinator - C:\Windows\System32\msdtc.exe
S3 - [msiserver] - Windows Installer - C:\Windows\system32\msiexec.exe /V
S3 - [ose] - Office Source Engine - "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
S3 - [RpcLocator] - Remote Procedure Call (RPC) Locator - C:\Windows\system32\locator.exe
S3 - [SNMPTRAP] - SNMP Trap - C:\Windows\System32\snmptrap.exe
S3 - [SwitchBoard] - SwitchBoard - "C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
S3 - [TrustedInstaller] - Windows Modules Installer - C:\Windows\servicing\TrustedInstaller.exe
S3 - [vds] - Virtual Disk - C:\Windows\System32\vds.exe
S3 - [VsEtwService120] - Visual Studio ETW Event Collection Service - "C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe"
S3 - [wbengine] - Block Level Backup Engine Service - "C:\Windows\system32\wbengine.exe"
S3 - [WdNisSvc] - Windows Defender Network Inspection Service - "C:\Program Files\Windows Defender\NisSrv.exe"
S3 - [WinDefend] - Windows Defender Service - "C:\Program Files\Windows Defender\MsMpEng.exe"
S3 - [wmiApSrv] - WMI Performance Adapter - C:\Windows\system32\wbem\WmiApSrv.exe
S3 - [WMPNetworkSvc] - Windows Media Player Network Sharing Service - "C:\Program Files\Windows Media Player\wmpnetwk.exe"

==== System Specs ======================

Windows: Windows Version 6.2 (Build 9200)
Memory (RAM): 2039 MB
CPU Info: Intel(R) Atom(TM) CPU D525 @ 1.80GHz
CPU Speed: 1805.0 MHz
Sound Card: Speakers (High Definition Audio |
Display Adapters: Intel(R) Graphics Media Accelerator 3150 (Microsoft Corporation - WDDM 1.0)
Monitors: 1x; Generic PnP Monitor |
Screen Resolution: 1366 X 768 - 32 bit
Network: Network Present
Network Adapters: Realtek PCIe FE Family Controller
CD / DVD Drives: 1x (E: | ) E: HL-DT-STDVDRAM GH22NS70
Ports: COM1 LPT1
Mouse: 3 Button Wheel Mouse Present
Hard Disks: C: 68.7GB | D: 195.2GB
Hard Disks - Free: C: 35.1GB | D: 181.6GB
Manufacturer *: American Megatrends Inc.
BIOS Info: AT/AT COMPATIBLE | 01/31/11 | 013111 - 20110131
Time Zone: Central Europe Standard Time
Motherboard *: ECS TIGD-CI3
Country: United States
Language: ENU

==== System Specs (Software) ======================

Anti-Virus: Windows Defender On-access scanning disabled (Outdated)
Anti-Virus: avast! Antivirus On-access scanning disabled (Outdated)
Anti-Spyware: Windows Defender disabled (Outdated)
Anti-Spyware: avast! Antivirus disabled (Outdated)
Default Browser: Google Chrome 36.0.1985.125
Internet Explorer Version: 11.0.9600.17207
Google Chrome version: 36.0.1985.125
Sun Java version: 1.7.0_65 (32-bit)

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2014-07-26 14:07:51 357CEBBCD99C8928A2D1A61A6CACC168 43152 ----a-w- C:\Windows\avastSS.scr
2014-07-22 19:24:35 119E091B5386379BC5AA598BE9440C75 2088160 ----a-w- C:\Windows\explorer.exe
2014-07-22 15:53:31 9030962915C1C5250D971E0A6C6A136B 4096 ----a-w- C:\Windows\SECOH-QAD.exe
2014-07-22 15:53:31 712A5388B2FE2B3D5590440673C92A45 3072 ----a-w- C:\Windows\SECOH-QAD.dll
====== C:\Users\Nikola\AppData\Local\Temp ====
2014-07-25 16:27:50 FDB53152230E3BEAFCCBC2AAF2A00165 739328 ----a-w- C:\Users\Nikola\AppData\Local\Temp\PidGenX.dll
2014-07-25 15:05:02 CFFC752132B0FA13EB03951ACB7A431A 639680 ----a-w- C:\Users\Nikola\AppData\Local\Temp\wps\~b83b8c2\Au_.exe
2014-07-25 14:17:51 FEFEF2F226FD6BE184BC4A3378B02AAF 155648 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\psmachine.dll
2014-07-25 14:17:51 8D90BB3A36521B50D0E512A781E36871 155648 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\psuser.dll
2014-07-25 14:17:50 151476B4FECA337968AFCB6B8CFA12A1 220672 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\npGoogleUpdate4.dll
2014-07-25 14:17:49 D261F0AA68DB44E1DED955A9D913D708 761856 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\goopdate.dll
2014-07-25 14:17:48 FC7A2F466F7A0F3E873077505719C1A1 143360 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\GoogleUpdateHelper.msi
2014-07-25 14:17:48 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\GoogleUpdateBroker.exe
2014-07-25 14:17:48 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\GoogleUpdate.exe
2014-07-25 14:17:48 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\GoogleUpdateOnDemand.exe
2014-07-25 14:17:47 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Users\Nikola\AppData\Local\Temp\comh.189828\GoogleCrashHandler.exe
====== Java Cache =====
2014-07-25 12:30:26 4FBF0C5E86456F725BC716719D9B2B37 435 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\2630db11-f798c7ce7fc61b1514fb9a53bcabf67092f458a9c08c98b5cb02b5ae1e9b4c09-6.0.lap
2014-07-25 12:25:10 338FF0BBCD96F62A21017FE78F474B4B 265357 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\45\7e60542d-48241f7e
2014-07-25 12:30:27 B655967AB8192B49DB5A45CE26E99C7C 19601 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\49\329df131-2e238295
2014-07-25 12:25:07 0719A8334BEBACBFCA55555E98B66AB2 932 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\58\31b19ba-65500f95
2014-07-25 12:25:09 0719A8334BEBACBFCA55555E98B66AB2 932 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-5dc44e3d
2014-07-25 12:25:09 83CDEAADE8299576DAF331E42350B1E9 445 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\7\2bbaaf87-e2e4c8970372d2fb4193a7ef29d16f6c3f08527947fcb9208b3a0e48820369fd-6.0.lap
2014-07-26 09:47:35 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\Nikola\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-48225a4e
====== C:\Windows\system32 =====
2014-07-26 14:07:58 588C2C48CB267E1C4B5A9EB5ACFF0116 276432 ----a-w- C:\Windows\System32\aswBoot.exe
2014-07-25 17:37:27 434B8A6C6FA9C38C3DC49EDDA3BF3EC8 865280 ----a-w- C:\Windows\System32\termsrv.dll
2014-07-25 16:11:54 1DEC681B79501A714F0D3FA2787183C3 305152 ----a-w- C:\Windows\System32\wusa.exe
2014-07-25 16:11:53 BA4FA107EF9A728C58A81B2EFCD6FE2B 26784 ----a-w- C:\Windows\System32\mrt100.dll
2014-07-25 16:11:53 6923D6FAB7CBA8D82BD792182B4F3DE4 80032 ----a-w- C:\Windows\System32\mrt_map.dll
2014-07-25 12:21:21 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\Windows\System32\javaws.exe
2014-07-25 12:21:12 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\Windows\System32\java.exe
2014-07-25 12:21:12 F98096A7E805CAE52BE582BF1318182F 96680 ----a-w- C:\Windows\System32\WindowsAccessBridge.dll
2014-07-25 12:21:12 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\Windows\System32\javaw.exe
2014-07-23 16:58:21 D815DD4262E4FCC211091F7BA7A01155 231584 ------w- C:\Windows\System32\MpSigStub.exe
2014-07-23 16:16:08 86E39E9161C3D930D93822F1563C280D 1998168 ----a-w- C:\Windows\System32\D3DX9_43.dll
2014-07-22 23:37:24 8C64829D720733298E5CAD99E5F82448 703968 ----a-w- C:\Windows\System32\FlashPlayerApp.exe
2014-07-22 23:37:24 06493306FF37328C0B8DC94F7A82DA85 105440 ----a-w- C:\Windows\System32\FlashPlayerCPLApp.cpl
2014-07-22 20:27:22 E307DEB9FEBDE43E77D7DC7ECFB4A122 93585272 ----a-w- C:\Windows\System32\MRT.exe
2014-07-22 19:24:44 E6B3EE334DD67D3DA1411292877C15CD 153600 ----a-w- C:\Windows\System32\dafWfdProvider.dll
2014-07-22 19:24:43 B918D220FCD67E5A4AF05018515E4C14 172544 ----a-w- C:\Windows\System32\ReInfo.dll
2014-07-22 19:24:43 15FBE33156A5F17280C549DBA993442C 406912 ----a-w- C:\Windows\System32\dxgi.dll
2014-07-22 19:24:41 92B27D3407728C48710C8C27E25B3932 241664 ----a-w- C:\Windows\System32\dcomp.dll
2014-07-22 19:24:41 1AFACFDB26C1B81586801AFF8BB0ABF1 222720 ----a-w- C:\Windows\System32\spp.dll
2014-07-22 19:24:40 C7A5FE0979482C422488D0B491232AA8 179200 ----a-w- C:\Windows\System32\cdd.dll
2014-07-22 19:24:40 057D0AABB078EBD9E276F86F893E5B87 863552 ----a-w- C:\Windows\System32\KernelBase.dll
2014-07-22 19:24:39 9264B57E8C0BCCA14F92EBA56B9B5106 800256 ----a-w- C:\Windows\System32\ReAgent.dll
2014-07-22 19:24:38 67D2296474FB0F3B858E1758FFA3AC79 1779800 ----a-w- C:\Windows\System32\d3d11.dll
2014-07-22 19:24:36 75DE8AED4FE16D07E7E22208BA88F0C5 887296 ----a-w- C:\Windows\System32\aclui.dll
2014-07-22 19:24:35 FB32EF390BCAC55E11E0C5D12F4C9A45 1816576 ----a-w- C:\Windows\System32\Display.dll
2014-07-22 19:24:32 B3F1B6A3CC07E967B60584E7454B0890 390488 ----a-w- C:\Windows\System32\netcfgx.dll
2014-07-22 19:24:31 2BDB085AA7ECA65D1793D150CEC960AF 1095488 ----a-w- C:\Windows\System32\ole32.dll
2014-07-22 19:24:30 CC70F4C7CA6F8B49F21D2D1DB765C1D0 1037504 ----a-w- C:\Windows\System32\kernel32.dll
2014-07-22 19:24:25 7C0E08F3F04ED8874E19DD23753DE2C6 356864 ----a-w- C:\Windows\System32\wlidprov.dll
2014-07-22 19:24:23 FE85E0B190DD141E4826FEC9F015FA18 139776 ----a-w- C:\Windows\System32\AppxAllUserStore.dll
2014-07-22 19:24:23 3CAE64347544C26C22D06CFFFADB78EB 491008 ----a-w- C:\Windows\System32\MDMAgent.exe
2014-07-22 19:24:23 0303523E283AB4D03590C9AE56A8386A 355832 ----a-w- C:\Windows\System32\mfreadwrite.dll
2014-07-22 19:24:21 D07789299DA4D79B123336534E960F62 1131520 ----a-w- C:\Windows\System32\AppXDeploymentServer.dll
2014-07-22 19:24:19 B8EC6C4BAF08AAB5B2C810BEA96F19AC 735232 ----a-w- C:\Windows\System32\AppXDeploymentExtensions.dll
2014-07-22 19:24:17 B4AAA9FD65FE6C83DCA2A230993CD893 2317824 ----a-w- C:\Windows\System32\authui.dll
2014-07-22 19:24:17 7298FC235A76EDC1D03272B24FD1B33E 184832 ----a-w- C:\Windows\System32\profsvc.dll
2014-07-22 19:24:15 21DDC5D6CFAC0A5FEE3B364A9B58A7CB 1764864 ----a-w- C:\Windows\System32\dwmcore.dll
2014-07-22 19:24:11 5AEFC877161F7A481DD7CC137F97E761 2270208 ----a-w- C:\Windows\System32\msftedit.dll
2014-07-22 19:24:08 83058B0F0CEC63A5A7438818B71C0935 1679128 ----a-w- C:\Windows\System32\msxml6.dll
2014-07-22 19:24:07 FF0EE1B87E5DD7A82F7BB124D5CA8BB6 494592 ----a-w- C:\Windows\System32\dnsapi.dll
2014-07-22 19:24:07 B4309F7821BDE5A31E1E4FB24ED97C5C 197632 ----a-w- C:\Windows\System32\AppXDeploymentClient.dll
2014-07-22 19:24:07 775C3D06C408F4F093254B39637A6F1E 755712 ----a-w- C:\Windows\System32\kerberos.dll
2014-07-22 19:24:06 C06B6C8E002EDB492D93F2494E32F9CA 605184 ----a-w- C:\Windows\System32\rasapi32.dll
2014-07-22 19:24:06 ADC071E4F65BAC3AEF4807B23438472A 280576 ----a-w- C:\Windows\System32\SessEnv.dll
2014-07-22 19:24:06 A6880BA9A4F02D3C742DF956EA9CC44D 1351168 ----a-w- C:\Windows\System32\GdiPlus.dll
2014-07-22 19:24:06 4F3AD1A7C0ED3CF5C4EBE49F61074E41 226304 ----a-w- C:\Windows\System32\Windows.Devices.Sensors.dll
2014-07-22 19:24:05 F871C1523C46C935FDC7B11CC737625B 551424 ----a-w- C:\Windows\System32\BFE.DLL
2014-07-22 19:24:05 EB40EFEBE9EB4ACA3DD950A1AFA0F51B 171008 ----a-w- C:\Windows\System32\SensorsApi.dll
2014-07-22 19:24:05 A47341D3C4D2FB3984BDCAF00AE4A6C7 186880 ----a-w- C:\Windows\System32\dnsrslvr.dll
2014-07-22 19:24:05 92557399ED26FBABC5D8446B3C21CF0F 731648 ----a-w- C:\Windows\System32\IKEEXT.DLL
2014-07-22 19:24:03 BD9306F715EA9B959EDB892614F6D581 94016 ----a-w- C:\Windows\System32\userenv.dll
2014-07-22 19:24:03 A82DF6AB70BF4558B58D0B2827B61C3C 33792 ----a-w- C:\Windows\System32\sxproxy.dll
2014-07-22 19:24:03 5B8D7F29CA815E6DB156DF9853F0472D 2030080 ----a-w- C:\Windows\System32\WsmSvc.dll
2014-07-22 19:24:02 AFFB4EB53FC1D04495C8A5EC80B1EBCD 264192 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2014-07-22 19:24:02 AF2A68F7890A680DAE0637EC49456A7B 85504 ----a-w- C:\Windows\System32\davclnt.dll
2014-07-22 19:24:02 6AF7619D14A76D76BA8793EA07535EDC 251392 ----a-w- C:\Windows\System32\WSDMon.dll
2014-07-22 19:24:02 411201FFB3882554D5B833E6EC2EC649 254976 ----a-w- C:\Windows\System32\pdh.dll
2014-07-22 19:24:01 91F6883B61C0E5BEAE9B734D8E46829B 386560 ----a-w- C:\Windows\System32\wlangpui.dll
2014-07-22 19:24:01 37725B5D560398E5BF4DAF85E4F89249 70656 ----a-w- C:\Windows\System32\w32tm.exe
2014-07-22 19:24:00 E43322FA6C7AFC44801CA33CE8B44DBD 444928 ----a-w- C:\Windows\System32\AdmTmpl.dll
2014-07-22 19:24:00 59BB015A6FEB79D7911005D3E5F8C770 402432 ----a-w- C:\Windows\System32\Windows.Graphics.Printing.dll
2014-07-22 19:24:00 503281E8561B81FC080887ECAF5F5E31 151040 ----a-w- C:\Windows\System32\Windows.Devices.Scanners.dll
2014-07-22 19:24:00 2856A2FD0363C38C33150B0026FD76B1 69120 ----a-w- C:\Windows\System32\RMapi.dll
2014-07-22 19:24:00 1FE14EDDEED70613E3A032182C7796FB 27136 ----a-w- C:\Windows\System32\CredentialMigrationHandler.dll
2014-07-22 19:23:59 FBA4497DEBB5C07F5FA230618857A329 58368 ----a-w- C:\Windows\System32\l2gpstore.dll
2014-07-22 19:23:59 B6E94D847C1606240DDF5969E7AF794D 35840 ----a-w- C:\Windows\System32\SetNetworkLocation.dll
2014-07-22 19:23:59 6F389E3C60FD27DA4322F78D2233E1FC 567296 ----a-w- C:\Windows\System32\nshwfp.dll
2014-07-22 19:23:59 4E69700BA6E05295F1BF5E067BFA59A4 95744 ----a-w- C:\Windows\System32\DevPropMgr.dll
2014-07-22 19:23:59 3D83889B6343386C918AB45F5C4C9355 262656 ----a-w- C:\Windows\System32\LocationApi.dll
2014-07-22 19:23:58 12B0701B1CEC1A7BB0E4C71D97661E23 387210 ----a-w- C:\Windows\System32\ApnDatabase.xml
2014-07-22 19:23:43 ECBA94F60E05E75243F8CD517EF315A9 119296 ----a-w- C:\Windows\System32\rdpudd.dll
2014-07-22 19:23:43 6A72A68EC2EAAA1D0CBDB7AF35B08788 2826240 ----a-w- C:\Windows\System32\rdpcorets.dll
2014-07-22 19:23:42 9385D7C5DF2566D01B1FB150F381D50B 367616 ----a-w- C:\Windows\System32\dxtmsft.dll
2014-07-22 19:23:41 6F2E12C6229558B5829FDD07603763C2 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2014-07-22 19:23:41 6A06EB11F1E5BDAA795DAE7838F9FE20 43008 ----a-w- C:\Windows\System32\jsproxy.dll
2014-07-22 19:23:41 573E522A27210701EB8A6C476D36FFF6 239616 ----a-w- C:\Windows\System32\dxtrans.dll
2014-07-22 19:23:41 260D6B421E5551E8BA75D16B5CA90D9A 51200 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2014-07-22 19:23:39 67EA1BB7F6428A10C64D5A732976F871 69632 ----a-w- C:\Windows\System32\mshtmled.dll
2014-07-22 19:23:38 29B66A7E3E1AA79C690D5D862AC76F64 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe
2014-07-22 19:23:37 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-07-22 19:23:35 6D8E6A9A524FFAAFA4D2F6C8EF38D0BB 592896 ----a-w- C:\Windows\System32\jscript9diag.dll
2014-07-22 19:23:34 98C7B1AFA0A99EE3BE99EAABEFB72CA0 4254720 ----a-w- C:\Windows\System32\jscript9.dll
2014-07-22 19:23:32 CCC198257901BEEA2FBF8EB1E7678356 1791488 ----a-w- C:\Windows\System32\wininet.dll
2014-07-22 19:23:31 084FB28A790685F32A6D7D003777696D 2179072 ----a-w- C:\Windows\System32\iertutil.dll
2014-07-22 19:23:30 DFA59840BB1220AFD261FDAE83543959 17276416 ----a-w- C:\Windows\System32\mshtml.dll
2014-07-22 19:23:27 4F7DA26AC4BD319080B6FCB4F87936CE 225280 ----a-w- C:\Windows\System32\iedkcs32.dll
2014-07-22 19:23:27 175A663547805367C10746FC416D4605 704512 ----a-w- C:\Windows\System32\ieapfltr.dll
2014-07-22 19:23:27 0E7B7C9F483300F9FF97C6A1E4BC4F57 32768 ----a-w- C:\Windows\System32\iernonce.dll
2014-07-22 19:23:26 E739AEDCA67F214F96C2520BA293B12B 526336 ----a-w- C:\Windows\System32\msfeeds.dll
2014-07-22 19:23:25 B5B3334F177CED627C2D7FE38235B6B1 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-07-22 19:23:23 D9F5B424C307B195E16A9B0A21E53BCC 61952 ----a-w- C:\Windows\System32\iesetup.dll
2014-07-22 19:23:23 3B840119F286743FCFE953C5DEF40136 595968 ----a-w- C:\Windows\System32\ie4uinit.exe
2014-07-22 19:23:22 B8F28AAC003060E3B125D2447CFC19E2 164864 ----a-w- C:\Windows\System32\msrating.dll
2014-07-22 19:23:21 FC733FD7721200D5136F6F8112E97B00 11742208 ----a-w- C:\Windows\System32\ieframe.dll
2014-07-22 19:23:19 7C44C697BA6D0B698B91AC6516A731C3 1139200 ----a-w- C:\Windows\System32\urlmon.dll
2014-07-22 19:23:19 4B774E842F268D51DB942EF9637828B9 1964544 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-07-22 19:23:17 476840923DF4C85F1CFB60204A956007 1090296 ----a-w- C:\Windows\System32\gdi32.dll
2014-07-22 19:23:17 0A9EB3956BCB7E5CDE15AF987BD81543 488960 ----a-w- C:\Windows\System32\qedit.dll
2014-07-22 19:23:13 65FCEABE3128592F84B60140F814BDDB 1509888 ----a-w- C:\Windows\System32\DWrite.dll
2014-07-22 19:23:12 ED4BA3B6CD98646F392858C8110307FF 1046016 ----a-w- C:\Windows\System32\FntCache.dll
2014-07-22 19:23:12 B160ACE0D239A13141D815E37698A4BB 51200 ----a-w- C:\Windows\System32\drvcfg.exe
2014-07-22 19:23:12 7F4B79568DD6BEC3ECC80C2AE93DC749 96256 ----a-w- C:\Windows\System32\umpnpmgr.dll
2014-07-22 19:23:12 61F5222289E052C40274ECD182A8AA99 98816 ----a-w- C:\Windows\System32\drvinst.exe
2014-07-22 19:23:05 1B3D8FADD954FA9161E65DA81F6F8E92 159744 ----a-w- C:\Windows\System32\ubpm.dll
2014-07-22 19:23:04 90F9A05844D80D5A190C07DA3025AC0F 1634304 ----a-w- C:\Windows\System32\wucltux.dll
2014-07-22 19:23:04 1360A7661E5CD03BEF83C38C553A840E 159232 ----a-w- C:\Windows\System32\storewuauth.dll
2014-07-22 19:23:03 DC72DC452793C9622E6F056B89F9302C 123904 ----a-w- C:\Windows\System32\wuwebv.dll
2014-07-22 19:23:03 D8C63F333D4A8D8433849A9ADC092BE9 31232 ----a-w- C:\Windows\System32\wuapp.exe
2014-07-22 19:23:03 5E5146E8C3B7E52B2D7A5CCBAF04B65B 307712 ----a-w- C:\Windows\System32\WUSettingsProvider.dll
2014-07-22 19:22:47 ED91A587C51E73CDB9245DD702869895 1089024 ----a-w- C:\Windows\System32\lsasrv.dll
2014-07-22 19:22:47 7DB59908D49605F2CD0CFB0CF9940E86 735232 ----a-w- C:\Windows\System32\adtschema.dll
2014-07-22 19:22:41 D4916255DE31B4D7C754615BF4B4FC56 2257608 ----a-w- C:\Windows\System32\WpcMon.exe
2014-07-22 19:22:40 3E75E32B170BBF58D6D9B793A7363DEE 2045440 ----a-w- C:\Windows\System32\WpcWebSync.dll
2014-07-22 19:22:40 260A56A8164CBDF9884BB9B2895F6AB2 2344448 ----a-w- C:\Windows\System32\Wpc.dll
2014-07-22 19:22:39 1A9397E47C64DE24CD2D8BFFB814B9AF 2366976 ----a-w- C:\Windows\System32\wpccpl.dll
2014-07-22 19:22:36 A2A45E379FEE330B1861CB6F835E7630 3497472 ----a-w- C:\Windows\System32\win32k.sys
2014-07-22 19:22:34 8A9CB0FE11800DBBDBA8FE4F54828892 779264 ----a-w- C:\Windows\System32\osk.exe
2014-07-22 19:22:28 0FDDBC46B0FE68B9516BED5CDC2A5296 5104640 ----a-w- C:\Windows\System32\Windows.Data.Pdf.dll
2014-07-22 19:22:27 A717D4AC0C44BCBE990DBF8B6EC979AA 12711424 ----a-w- C:\Windows\System32\Windows.UI.Xaml.dll
2014-07-22 19:22:19 1E48870B29C7D7328A7D484A61250AE5 5774848 ----a-w- C:\Windows\System32\mstscax.dll
2014-07-22 19:22:18 A5358F64D4EB5ABE2829981CD9734901 18755672 ----a-w- C:\Windows\System32\shell32.dll
2014-07-22 19:22:15 23D46413D3BEF8C3402323025A51844D 2130432 ----a-w- C:\Windows\System32\SettingsHandlers.dll
2014-07-22 19:22:14 8EAD5F0BC40579B106CDD9D2591CFEC5 1797896 ----a-w- C:\Windows\System32\d3d9.dll
2014-07-22 19:22:14 22306013C7C180699EAD991005AF2F93 1167360 ----a-w- C:\Windows\System32\gpsvc.dll
2014-07-22 19:22:13 69F326FAE43423A4EDC1FA975C15FEF3 1309184 ----a-w- C:\Windows\System32\wlansvc.dll
2014-07-22 19:22:13 4550DC04464B86C5EB2CC77D9D27C06C 5833216 ----a-w- C:\Windows\System32\Windows.UI.Search.dll
2014-07-22 19:22:10 87AB9959EC23455326C8C55E59DE0A88 669856 ----a-w- C:\Windows\System32\mfmpeg2srcsnk.dll
2014-07-22 19:22:10 5AE9C90A51256F72C541A2FD81EAB7C4 2144984 ----a-w- C:\Windows\System32\mfcore.dll
2014-07-22 19:22:09 F9243C39F7F2F289357C97791B522546 3563008 ----a-w- C:\Windows\System32\SyncEngine.dll
2014-07-22 19:22:08 EA7A99A15E809938A6D44E0C4CB00B57 1210368 ----a-w- C:\Windows\System32\workfolderssvc.dll
2014-07-22 19:22:08 BF701FF65226801895FF099A8B1E711D 834560 ----a-w- C:\Windows\System32\localspl.dll
2014-07-22 19:22:07 BE8FB66895B5475B09F5907D875CD47D 328984 ----a-w- C:\Windows\System32\services.exe
2014-07-22 19:22:07 A54EB398BC2D792A0C603A97F7975FD8 357376 ----a-w- C:\Windows\System32\GeofenceMonitorService.dll
2014-07-22 19:22:07 76892045ECB1D830185618DBD3467562 337408 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
2014-07-22 19:22:07 561945C42E36012B4799C342E6A96498 800768 ----a-w- C:\Windows\System32\MFMediaEngine.dll
2014-07-22 19:22:07 13CE2AA6D3ACAF0B485DBFE8AF2F5C48 305768 ----a-w- C:\Windows\System32\AUDIOKSE.dll
2014-07-22 19:22:06 EC4FA776548BF1A05DAE3B5EFB0FFE6F 1209616 ----a-w- C:\Windows\System32\winmde.dll
2014-07-22 19:22:06 E678126493997B951C6A6E91BC15C91C 836608 ----a-w- C:\Windows\System32\SearchFolder.dll
2014-07-22 19:22:06 8AEC7BA833DF2F6A21EA43BC10388E27 264704 ----a-w- C:\Windows\System32\MDEServer.exe
2014-07-22 19:22:06 5FAEA469BCE03F8FABAFB63D7603DC3C 982016 ----a-w- C:\Windows\System32\Windows.Media.Streaming.dll
2014-07-22 19:22:05 FF28231D41465C253E9F9EF164DD619C 230400 ----a-w- C:\Windows\System32\wlanapi.dll
2014-07-22 19:22:05 C97E772120135CD320CB217C92105B12 370176 ----a-w- C:\Windows\System32\winspool.drv
2014-07-22 19:22:05 9E51948344BC8C8EBBDCD197948940F4 244736 ----a-w- C:\Windows\System32\srvsvc.dll
2014-07-22 19:22:05 628B9923175FE0873D94DC3D3A990F14 1159520 ----a-w- C:\Windows\System32\wmpmde.dll
2014-07-22 19:22:04 B6803C8A600E3F029A3D688D9E590CA3 300544 ----a-w- C:\Windows\System32\wlanmsm.dll
2014-07-22 19:22:04 A4F3682781DD8B36E97FD04BA50845A2 209920 ----a-w- C:\Windows\System32\rdpencom.dll
2014-07-22 19:22:04 962753FCB305B7F5D017A21E4636FE26 553472 ----a-w- C:\Windows\System32\win32spl.dll
2014-07-22 19:22:03 F5DB09E62DD1F1864C8DCF596645B540 623104 ----a-w- C:\Windows\System32\audiosrv.dll
2014-07-22 19:22:03 E2AAB5EDC278D489C8EF87F277B5E3E6 888320 ----a-w- C:\Windows\System32\Windows.Media.dll
2014-07-22 19:22:03 C7305D66D279C4A9445C049ABD6CE8A1 31064 ----a-w- C:\Windows\System32\ploptin.dll
2014-07-22 19:22:03 956D8170AD470804405C0564E10ED6ED 406504 ----a-w- C:\Windows\System32\AudioEng.dll
2014-07-22 19:22:03 90C83CF02C884315E595FA07CA9C64EF 387896 ----a-w- C:\Windows\System32\mfsvr.dll
2014-07-22 19:22:03 095419EC9E2CC85998B1824AAF6887D6 590336 ----a-w- C:\Windows\System32\gpprefcl.dll
2014-07-22 19:22:03 008368626F3EFAEDB0C2CD4565BA6797 98584 ----a-w- C:\Windows\System32\dwmapi.dll
2014-07-22 19:22:02 8C25FBB338147754DA42DF990FB3AE4A 285144 ----a-w- C:\Windows\System32\MFCaptureEngine.dll
2014-07-22 19:22:02 0F2941E664595AD94A737EA9016FC5D2 229344 ----a-w- C:\Windows\System32\SystemSettingsAdminFlows.exe
2014-07-22 19:22:02 0586EBA2C2741193863CE0B07050E15D 358400 ----a-w- C:\Windows\System32\defragsvc.dll
2014-07-22 19:22:01 77E18A1B65F3362137BCA8DEDBA3754F 5786968 ----a-w- C:\Windows\System32\ntoskrnl.exe
2014-07-22 19:22:00 A624CA7CDFA7941EECD6F96F1A47CCA3 178184 ----a-w- C:\Windows\System32\MSVideoDSP.dll
2014-07-22 19:22:00 9A82354DF0DDC5F131461DE01404BABC 667136 ----a-w- C:\Windows\System32\WorkfoldersControl.dll
2014-07-22 19:22:00 7A0CFACFDF18C5A44D05F91656AB2C70 99328 ----a-w- C:\Windows\System32\wscsvc.dll
2014-07-22 19:22:00 4874EB05C1BE374B8A4AC15DF3DB07B0 111528 ----a-w- C:\Windows\System32\gpapi.dll
2014-07-22 19:22:00 15905E6B799C1446A37915ED23CD17E5 144384 ----a-w- C:\Windows\System32\rpchttp.dll
2014-07-22 19:21:59 A9A027378882FFA14000612AE6FDA7AB 1200288 ----a-w- C:\Windows\System32\propsys.dll
2014-07-22 19:21:59 A3ECC0F6960AA699895CB48BC69BEA3B 326024 ----a-w- C:\Windows\System32\AudioSes.dll
2014-07-22 19:21:59 88A821BC72CB1A935C92F453586233EF 518544 ----a-w- C:\Windows\System32\mf.dll
2014-07-22 19:21:59 6BAE2EB5EFCEAC999BB1A5BF267C711D 707048 ----a-w- C:\Windows\System32\mfplat.dll
2014-07-22 19:21:59 4659090401A38C95A70F7847B1D981B0 185344 ----a-w- C:\Windows\System32\tscfgwmi.dll
2014-07-22 19:21:59 38C86165505EB17F2317DD20963F3B02 194752 ----a-w- C:\Windows\System32\audiodg.exe
2014-07-22 19:21:58 CF3EA59E07BF906B43058C98B6750D16 855552 ----a-w- C:\Windows\System32\rdvidcrl.dll
2014-07-22 19:21:58 9B2871A78B9C21E8476361202F7D4D17 47616 ----a-w- C:\Windows\System32\energyprov.dll
2014-07-22 19:21:58 619C6E72B8433B3F67738F7E6C972A96 230808 ----a-w- C:\Windows\System32\wintrust.dll
2014-07-22 19:21:58 06AB75759A0B2D79680F52ACDAE702A1 313344 ----a-w- C:\Windows\System32\clusapi.dll
2014-07-22 19:21:58 044B27361CEE42AD0662B04D57CDB716 970240 ----a-w- C:\Windows\System32\VSSVC.exe
2014-07-22 19:21:57 E697F1E4E819EB12C40AE01F88626BAB 219136 ----a-w- C:\Windows\System32\resutils.dll
2014-07-22 19:21:57 756E1472CB3BE829A8555869469074DE 353280 ----a-w- C:\Windows\System32\swprv.dll
2014-07-22 19:21:57 681A8BD0F33530DDA4BD727547B97F59 389632 ----a-w- C:\Windows\System32\srcore.dll
2014-07-22 19:21:57 1FB00FDA0377C7DA27609507BE23A508 166400 ----a-w- C:\Windows\System32\WorkFoldersShell.dll
2014-07-22 19:21:55 D0E0E176F86C3B1048A67144DE0C5CD3 46592 ----a-w- C:\Windows\System32\tlscsp.dll
2014-07-22 19:21:55 8A382E0BB01F4DF83F3AEBE0B270DE61 117248 ----a-w- C:\Windows\System32\BootMenuUX.dll
2014-07-22 19:21:55 49F946F6350B2B395B23B648DD6BDCA1 1631232 ----a-w- C:\Windows\System32\SystemSettingsAdminFlowUI.dll
2014-07-22 19:21:55 495C3945889DD59993474F2434863835 11776 ----a-w- C:\Windows\System32\d3d8thk.dll
2014-07-22 19:21:54 D6BB129AB4F45174432D88C0B768E3A6 174080 ----a-w- C:\Windows\System32\AudioEndpointBuilder.dll
2014-07-22 19:21:54 CEC5BA16A982DF0EE73A76879D58E272 672256 ----a-w- C:\Windows\System32\SkyDrive.exe
2014-07-22 19:21:54 5C74AC34C1CAA9C232836C580272B0DD 1029120 ----a-w- C:\Windows\System32\mispace.dll
2014-07-22 19:21:54 1B40B955BF29EC3C9877E0D7FBA6B0BF 590336 ----a-w- C:\Windows\System32\SkyDriveTelemetry.dll
2014-07-22 19:21:53 9FB020D7E15FFC391A14C816B313B30F 245248 ----a-w- C:\Windows\System32\rstrui.exe
2014-07-22 19:21:53 68A23F58F6F16B81BCBFCAA07CDF0680 61440 ----a-w- C:\Windows\System32\srclient.dll
2014-07-22 19:21:53 3DA5CD1E3B9BDAF79731CB6CB1029CB3 53248 ----a-w- C:\Windows\System32\tsgqec.dll
2014-07-22 19:21:53 3CABBCB26C4E73F3440A8A064EB490FF 11264 ----a-w- C:\Windows\System32\wlanhlp.dll
2014-07-22 19:21:53 2169BB3BA0596881EE717A93EC60037D 35328 ----a-w- C:\Windows\System32\Windows.Shell.Search.UriHandler.dll
2014-07-22 19:21:44 55ADDA5B29D1151727470FA165460773 1312256 ----a-w- C:\Windows\System32\msxml3.dll
2014-07-22 19:17:50 C6DDB6EE4588231C229891426CE8FCCB 2818048 ----a-w- C:\Windows\System32\wuaueng.dll
2014-07-22 19:17:49 CF7953FFEFED26AC657067CD2C259BCD 11792384 ----a-w- C:\Windows\System32\twinui.dll
2014-07-22 19:17:49 67F3D0E0D8F009FF665A0E452C6F13E8 629760 ----a-w- C:\Windows\System32\MrmCoreR.dll
2014-07-22 19:17:48 4B7FA0A3D7B9D316BC6B2A409701E47D 828928 ----a-w- C:\Windows\System32\twinui.appcore.dll
2014-07-22 19:17:47 819E423A2914A67CD23D53997F7B4E8D 756224 ----a-w- C:\Windows\System32\WSShared.dll
2014-07-22 19:17:47 7F500AFD4A4A11914C934780CDEBC3D8 49552 ----a-w- C:\Windows\System32\wuauclt.exe
2014-07-22 19:17:47 77B0DF38B67C00EFB5B131D279FC12ED 666624 ----a-w- C:\Windows\System32\wuapi.dll
2014-07-22 19:17:47 0542A44401EA9451D82D3DF4BF3BD871 419928 ----a-w- C:\Windows\System32\twinapi.appcore.dll
2014-07-22 19:17:46 9E9182A652F5287DA05B3893A2E19FEC 80896 ----a-w- C:\Windows\System32\wudriver.dll
2014-07-22 19:17:46 8DA8026471B3470085B4AFB9C77BF45F 25088 ----a-w- C:\Windows\System32\wups.dll
2014-07-22 19:17:46 8D302072E127B6C201BAA7EC5DB99C6C 79360 ----a-w- C:\Windows\System32\WSReset.exe
====== C:\Windows\system32\drivers =====
2014-07-26 14:08:00 E8D396EBB6EB971C604D53569D8F0F4A 414392 ----a-w- C:\Windows\System32\drivers\aswsp.sys.1406383740515
2014-07-26 14:08:00 C3014C735F450FE822C97FFBB0627113 67824 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2014-07-26 14:08:00 B7750AF7EDFD95674EB7CA92BCDD3358 49944 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys
2014-07-26 14:08:00 A4614218584E41C31C7D1CBFF0432ED5 81768 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2014-07-26 14:08:00 90BEE0170D70D6744CEF2355EEAF8086 192352 ----a-w- C:\Windows\System32\drivers\aswVmm.sys
2014-07-26 14:08:00 83378AE48209388D0F9BD16A44D19EEC 71944 ----a-w- C:\Windows\System32\drivers\aswStm.sys
2014-07-26 14:08:00 51FDE588D860857A97E4C4B560E40C9B 779536 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2014-07-26 14:08:00 3BFBB5DAE801CB893B8B46345FED6437 24184 ----a-w- C:\Windows\System32\drivers\aswHwid.sys
2014-07-26 14:08:00 1AEB8CDB797666AF709A291B47AE81E0 414520 ----a-w- C:\Windows\System32\drivers\aswsp.sys
2014-07-25 16:11:42 EACFC40C45F683A0B2A21F92BBFF8C70 218112 ----a-w- C:\Windows\System32\drivers\ks.sys
2014-07-23 15:57:20 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2014-07-23 00:37:29 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-07-22 19:24:43 DB3F0877E5C225693A131AE82C262957 138584 ----a-w- C:\Windows\System32\drivers\wof.sys
2014-07-22 19:24:40 0A6E40913B804F21B28A731879443EE2 321880 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2014-07-22 19:24:39 BAFDB3519A9D1A6A0665A70696BA98D5 1679704 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-07-22 19:24:39 55758EBBC45E1628161121D7CFEAD4A1 102400 ----a-w- C:\Windows\System32\drivers\dfsc.sys
2014-07-22 19:24:11 38EC892387B603803C12C87D95C67AAB 1326936 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-07-22 19:24:09 3314871104ECDA48F467057F1EEE4976 376152 ----a-w- C:\Windows\System32\drivers\USBHUB3.SYS
2014-07-22 19:24:05 7559018F0024F00AC00198F18C6A0426 283992 ----a-w- C:\Windows\System32\drivers\clfs.sys
2014-07-22 19:24:04 5C67F297B65D7E3075C34154ADD06237 92160 ----a-w- C:\Windows\System32\drivers\hidclass.sys
2014-07-22 19:24:01 71E4AD300E86C0754D6070FB92475CF7 20992 ----a-w- C:\Windows\System32\drivers\hidusb.sys
2014-07-22 19:24:01 31D0E1BF76AA85F5A72F4FD488C3B508 38400 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys
2014-07-22 19:24:00 CBF73734B883C712BC07796708FCB0CD 69464 ----a-w- C:\Windows\System32\drivers\wfplwfs.sys
2014-07-22 19:24:00 53E370C8ED69C68DFD26BAE4588095F3 124416 ----a-w- C:\Windows\System32\drivers\mrxdav.sys
2014-07-22 19:23:59 F37F40422662235AB5768C303E829602 227840 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2014-07-22 19:23:59 D395D5C2900596DFA30478E79110D003 68608 ----a-w- C:\Windows\System32\drivers\IPMIDrv.sys
2014-07-22 19:22:54 BBD6DF3FC00CACBFA92A4C98CE5C0CCD 219992 ----a-w- C:\Windows\System32\drivers\WdFilter.sys
2014-07-22 19:22:52 D7B8475F59FD0C9C395151E5BB5DCC2E 92504 ----a-w- C:\Windows\System32\drivers\WdNisDrv.sys
2014-07-22 19:22:52 5B9AEA959D59C5F2DAEC2E6FD6DDFB0F 30224 ----a-w- C:\Windows\System32\drivers\WdBoot.sys
2014-07-22 19:22:47 7E7A3756C7F8490D7A507A2F488293BC 481400 ----a-w- C:\Windows\System32\drivers\cng.sys
2014-07-22 19:22:39 7E7207FF951BDAA10781D758628EC1B9 46512 ----a-w- C:\Windows\System32\drivers\wpcfltr.sys
2014-07-22 19:22:36 D75FB05E8DBF21FA0EF313C7503243F1 461312 ----a-w- C:\Windows\System32\drivers\afd.sys
2014-07-22 19:22:08 6391FC0B7855B53FFB5D5CEEA200EEA3 1016320 ----a-w- C:\Windows\System32\drivers\bthport.sys
2014-07-22 19:22:08 058C080523FA3D22B2C45F5C50E00375 560128 ----a-w- C:\Windows\System32\drivers\srv2.sys
2014-07-22 19:22:07 442E2B5A3B15DEA24AD89EDFBB7330CD 294744 ----a-w- C:\Windows\System32\drivers\Classpnp.sys
2014-07-22 19:22:06 F4138DC230FC3DFE9E31201561D0491B 264536 ----a-w- C:\Windows\System32\drivers\volsnap.sys
2014-07-22 19:22:05 F443E09D7076D93ACC69D751960AE744 375296 ----a-w- C:\Windows\System32\drivers\nwifi.sys
2014-07-22 19:22:05 20EA1075D820ECD58400A76B617DC384 156160 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2014-07-22 19:22:04 E64760EE4341393C3895AD3FC1C8581D 185856 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2014-07-22 19:22:04 5213858EAB957E8153D45B13FCF30082 333312 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2014-07-22 19:22:02 A58318CA9F98AAB207D4C84868490D1D 502104 ----a-w- C:\Windows\System32\drivers\fvevol.sys
2014-07-22 19:22:02 74F452379260EA77CC59905AEDBD5AE7 240472 ----a-w- C:\Windows\System32\drivers\msiscsi.sys
2014-07-22 19:22:01 3D06FB84CFFB1D959ACE7690A27A89E1 69632 ----a-w- C:\Windows\System32\drivers\hdaudbus.sys
2014-07-22 19:22:00 EAF47B59FDEA68BC21963E3F05C0B0FE 333656 ----a-w- C:\Windows\System32\drivers\spaceport.sys
2014-07-22 19:22:00 336CD3BC763E300F5755BDAF26B3F6C2 311128 ----a-w- C:\Windows\System32\drivers\storport.sys
2014-07-22 19:21:59 0E647295EA5573F06DDD42F0FDFF254A 271192 ----a-w- C:\Windows\System32\drivers\fltMgr.sys
2014-07-22 19:21:58 09C2C25E6199901B93716FE4A82E682C 147800 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2014-07-22 19:21:42 A85BA90456F0D6C56963B5D6AB0F6C37 1871704 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2014-07-22 19:21:42 7E3EB0A51B84B10557F474FC6B0B32E1 286040 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2014-07-22 16:15:17 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_LocationProvider_01_11_00.Wdf
====== C:\Windows\Tasks ======
2014-07-26 16:37:52 9EE4F436CFED7F70C13F00173123A1BD 3492 ----a-w- C:\Windows\system32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-nikola.stojakovic@hotmail.com
2014-07-26 14:08:57 9B99CC343F422C256EE1AB512F628238 4142 ----a-w- C:\Windows\system32\Tasks\avast! Emergency Update
2014-07-25 16:18:56 5188DEFFD70EFE4CDEF4FC0E972D9D89 4950 ----a-w- C:\Windows\system32\Tasks\Microsoft Office 15 Sync Maintenance for NIKOLAPC-Nikola NikolaPC
2014-07-25 14:19:15 C2E94B53AFEBBC06F16AB9B792F231FF 4432 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5
2014-07-25 14:19:15 B9BDDA3B61E94E3A59370E3E7A070BAD 1428 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5.job
2014-07-25 14:19:15 712D9EC862BCB2F89E1761A3B8C8A52B 4446 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user
2014-07-25 14:19:15 4BAAF15DD3C802D70EB04EB97CA60669 1444 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user.job
2014-07-25 14:19:12 F8BD3A0001906C30C5476C7DC2535856 1268 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-10.job
2014-07-25 14:19:12 5715E7D2F415F79AC1ABD6411375BBA5 4272 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-10
2014-07-25 14:18:58 FDE95CD96B5E57A60152E96FD5C66081 4360 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-2
2014-07-25 14:18:58 7E060E41420868AE0AB996889ECDDD5B 1356 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-2.job
2014-07-25 14:18:48 FC0F464B486F7DA56D5D37D33CAD4BED 2216 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-4.job
2014-07-25 14:18:48 18F7621EF5CCFE4ECAE3C1A719A0BE53 5220 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-4
2014-07-25 14:18:31 BECB86B1304CA900AE997CC94EC349CF 4490 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-7
2014-07-25 14:18:31 525A6CA66DB1ACE2A79046084B246FEF 1486 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-7.job
2014-07-25 14:18:17 BB4AEEB59577EE82600EA5BB24F07ECC 3608 ----a-w- C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-11
2014-07-25 14:18:17 352B56BFA68B6E313EFDEA4729F5D2BE 606 ----a-w- C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-11.job
2014-07-25 14:17:55 B3122F94859F421E49D102FD2B092887 3682 ----a-w- C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineCore
2014-07-25 14:17:55 889A51FCD27584DF89F393C123AAD803 3918 ----a-w- C:\Windows\system32\Tasks\globalUpdateUpdateTaskMachineUA
2014-07-25 14:17:55 7527DA6FDE554B75A58E0C4609B24EBB 946 ----a-w- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-07-25 14:17:55 4D661537B4BA715BD719E263EF5AEE9A 942 ----a-w- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-07-23 09:18:39 84BD58E1FAC8817AE345AFD3EE277630 3596 ----a-w- C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2761178562-3009788355-390650698-1002
2014-07-22 16:25:01 A09AB851B7D3B788495087E2A5155177 900 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-22 16:25:01 8BC95EC0664D14412D95E721DD14417E 904 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-22 16:25:01 50935C40B26C7A14CB128B1C66E93CF8 3640 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2014-07-22 16:25:01 297326EEBC0317BDE38460FEA2A9D14C 3876 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2014-07-22 16:03:26 CE6A17B9E1B2CC9A625DF6179613441E 3596 ----a-w- C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2761178562-3009788355-390650698-1001
2014-07-22 16:00:55 4E11DF93E7E197CDD122D58103965797 3930 ----a-w- C:\Windows\system32\Tasks\User_Feed_Synchronization-{6D15002D-571A-4D00-A9F5-CB826C4FE0AF}
2014-07-22 15:53:23 9C17D30661943D055D2A2B075ABA90E5 3706 ----a-w- C:\Windows\system32\Tasks\AutoPico Daily Restart
====== C:\Windows\Temp ======
======= C:\Program Files =====
2014-07-26 16:02:51 -------- d-----w- C:\Program Files\Adobe Media Player
2014-07-26 16:00:23 -------- d-----w- C:\Program Files\Common Files\Adobe AIR
2014-07-26 16:00:20 -------- d-----w- C:\Program Files\Adobe
2014-07-26 15:56:39 -------- d-----w- C:\Program Files\Common Files\Adobe
2014-07-25 17:36:10 -------- d-----w- C:\Program Files\Microsoft Office
2014-07-25 14:55:59 -------- d-----w- C:\Program Files\Common Files\DESIGNER
2014-07-25 14:49:00 -------- d-----w- C:\Program Files\Microsoft Analysis Services
2014-07-25 14:19:34 -------- d-----w- C:\Program Files\VideoLAN
2014-07-25 14:17:51 -------- d-----w- C:\Program Files\globalUpdate
2014-07-25 14:17:35 -------- d-----w- C:\Program Files\HD-V1.9
2014-07-25 14:16:40 -------- d-----w- C:\Program Files\SupTab
2014-07-25 12:21:23 -------- d-----w- C:\Program Files\Common Files\Java
2014-07-25 12:20:41 -------- d-----w- C:\Program Files\Java
2014-07-23 16:35:15 -------- d-----w- C:\Program Files\Microsoft Visual Studio 11.0
2014-07-23 16:24:50 -------- d-----w- C:\Program Files\Windows Phone Silverlight Kits
2014-07-23 16:22:30 -------- d-----w- C:\Program Files\Microsoft XDE
2014-07-23 16:17:40 -------- d-----w- C:\Program Files\ShellDir
2014-07-23 16:16:30 -------- d-----w- C:\Program Files\NuGet
2014-07-23 16:13:58 -------- d-----w- C:\Program Files\Common Files\Merge Modules
2014-07-23 16:03:58 -------- d-----w- C:\Program Files\Application Verifier
2014-07-23 16:02:28 -------- d-----w- C:\Program Files\Common Files\Microsoft
2014-07-23 15:55:41 -------- d-----w- C:\Program Files\Windows Phone Kits
2014-07-23 15:48:41 -------- d-----w- C:\Program Files\Microsoft Visual Studio 12.0
2014-07-23 14:24:33 -------- d-----w- C:\Program Files\Windows Kits
2014-07-23 14:21:41 -------- d-----w- C:\Program Files\Microsoft Help Viewer
2014-07-23 14:21:28 -------- d-----w- C:\Program Files\Microsoft SDKs
2014-07-23 14:20:06 -------- d-----w- C:\Program Files\Microsoft SQL Server
2014-07-23 14:18:55 -------- d-----w- C:\Program Files\MSBuild
2014-07-23 14:18:30 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2014-07-23 14:16:27 -------- d-----w- C:\Program Files\Reference Assemblies
2014-07-23 14:15:41 -------- d-----w- C:\Program Files\Visual Studio 12.0
2014-07-22 16:24:54 -------- d-----w- C:\Program Files\Google
2014-07-22 15:53:19 -------- d-----w- C:\Program Files\KMSpico
======= C: =====
2014-06-30 19:57:30 D41D8CD98F00B204E9800998ECF8427E 0 --sha-r- C:\MSDOS.SYS
2014-06-30 19:57:30 D41D8CD98F00B204E9800998ECF8427E 0 --sha-r- C:\IO.SYS
====== C:\Users\Nikola\AppData\Roaming ======
2014-07-26 15:54:55 -------- d-----w- C:\Users\Nikola\AppData\Local\Adobe
2014-07-26 15:35:58 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2014-07-25 17:28:28 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft Help
2014-07-25 17:28:28 -------- d-----w- C:\Users\Default User\AppData\Local\Microsoft Help
2014-07-25 16:53:02 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\PeerDistRepub
2014-07-25 16:53:02 -------- d-----w- C:\Windows\serviceprofiles\networkservice\AppData\Local\PeerDistPub
2014-07-25 15:55:59 -------- d-----w- C:\Users\Nikola\AppData\Local\Mega Limited
2014-07-25 14:48:48 -------- d-----w- C:\Users\Nikola\AppData\Local\Microsoft Help
2014-07-25 14:17:51 -------- d-----w- C:\Users\Nikola\AppData\Local\globalUpdate
2014-07-25 12:25:14 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Oracle
2014-07-25 12:19:06 -------- d-----w- C:\Users\Nikola\AppData\Locallow\Sun
2014-07-25 11:45:30 -------- d-----w- C:\Users\Nikola\AppData\Local\qBittorrent
2014-07-25 11:45:25 -------- d-----w- C:\Users\Nikola\AppData\Roaming\qBittorrent
2014-07-25 11:45:23 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\qBittorrent
2014-07-24 12:41:23 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS
2014-07-24 12:41:23 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life
2014-07-24 12:41:23 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
2014-07-23 14:50:26 -------- d-----w- C:\Users\Nikola\AppData\Roaming\PeaZip
2014-07-23 14:47:55 -------- d-----w- C:\Users\Nikola\AppData\Local\Programs
2014-07-23 14:37:37 -------- d-----w- C:\Users\Nikola\AppData\Roaming\NuGet
2014-07-22 18:56:28 -------- d-----w- C:\Users\Nikola\AppData\Local\Kingsoft
2014-07-22 16:39:26 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Sublime Text 3
2014-07-22 16:39:26 -------- d-----w- C:\Users\Nikola\AppData\Local\Sublime Text 3
2014-07-22 16:38:10 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Kingsoft
2014-07-22 16:24:45 -------- d-----w- C:\Users\Nikola\AppData\Local\Google
2014-07-22 16:15:19 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft
2014-07-22 16:00:56 -------- d-sh--w- C:\Users\Nikola\AppData\Locallow\EmieUserList
2014-07-22 16:00:50 -------- d-sh--w- C:\Users\Nikola\AppData\Local\EmieUserList
2014-07-22 16:00:50 -------- d-sh--w- C:\Users\Nikola\AppData\Local\EmieSiteList
2014-07-22 16:00:48 -------- d-sh--w- C:\Users\Nikola\AppData\Locallow\EmieSiteList
2014-07-22 15:58:44 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft
2014-07-22 15:57:49 -------- d-----r- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-07-22 15:57:49 -------- d-----r- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-07-22 15:57:44 -------- d-----w- C:\Users\Nikola\AppData\Local\VirtualStore
2014-07-22 15:57:41 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Adobe
2014-07-22 15:57:16 -------- d-----w- C:\Users\Nikola\AppData\Local\Packages
2014-07-22 15:53:19 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Programs
2014-07-22 15:53:11 -------- d-s---w- C:\Users\Nikola\AppData\Locallow\Microsoft
2014-07-22 15:53:09 -------- d-s---w- C:\Users\Nikola\AppData\Roaming\Microsoft
2014-07-22 15:53:09 -------- d-----w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-22 15:53:09 -------- d-----w- C:\Users\Nikola\AppData\Local\Temp
2014-07-22 15:53:09 -------- d-----w- C:\Users\Nikola\AppData\Local\Microsoft
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 15:52:21 -------- d-s---w- C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft
2014-07-22 15:51:57 -------- d-s---w- C:\Windows\system32\config\systemprofile\AppData\Locallow\Microsoft
====== C:\Users\Nikola ======
2014-07-26 17:09:34 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2014-07-26 17:09:31 -------- d-----w- C:\ProgramData\MCShield
2014-07-26 17:09:05 6E44C49039E696991D2DB54B5C81E2F5 2856736 ----a-w- C:\Users\Nikola\Desktop\MCShield-Setup.exe
2014-07-26 16:46:50 9ADBA634396BAFAF5500D89D2A8B5911 1084416 ----a-w- C:\Users\Nikola\Desktop\FRST.exe
2014-07-26 16:06:34 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe
2014-07-26 16:02:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2014-07-26 15:58:52 -------- d-----w- C:\ProgramData\Adobe
2014-07-26 15:34:39 4F99CAE27FFD46712E65C21444AACDFC 2623656 ----a-w- C:\Users\Nikola\Downloads\revosetup.exe
2014-07-26 14:09:23 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-25 17:55:13 -------- d-----w- C:\Windows\serviceprofiles\Localservice\winhttp
2014-07-25 15:55:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2014-07-25 15:55:18 -------- d-----w- C:\ProgramData\MEGAsync
2014-07-25 15:54:01 7897BEFB7A691FAE3A28209DE8E5097C 8144792 ----a-w- C:\Users\Nikola\Downloads\MEGAsyncSetup.exe
2014-07-25 14:57:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-07-25 14:48:25 -------- d-----w- C:\ProgramData\Microsoft Help
2014-07-25 14:37:35 -------- d-----w- C:\ProgramData\Microsoft Toolkit
2014-07-25 14:17:02 -------- d-----w- C:\ProgramData\IePluginServices
2014-07-25 14:16:22 -------- d-----w- C:\ProgramData\WindowsMangerProtect
2014-07-25 12:24:53 -------- d-----w- C:\ProgramData\Oracle
2014-07-25 12:21:26 -------- d-----w- C:\ProgramData\Sun
2014-07-25 12:21:12 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-25 11:49:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-07-25 11:36:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-07-23 16:41:41 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK
2014-07-23 16:40:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2014-07-23 16:35:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2014-07-23 16:24:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2014-07-23 16:16:30 -------- d-----w- C:\ProgramData\NuGet
2014-07-23 16:03:15 -------- d-----w- C:\ProgramData\Windows App Certification Kit
2014-07-23 16:02:51 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2014-07-23 15:51:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2014-07-23 14:50:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
2014-07-23 14:16:06 -------- d-----w- C:\ProgramData\Package Cache
2014-07-23 09:26:53 -------- d--h--r- C:\Users\Public\AccountPictures
2014-07-22 18:56:12 -------- d-----w- C:\ProgramData\kingsoft
2014-07-22 16:26:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-22 16:00:06 -------- d---a-r- C:\Users\Nikola\OneDrive
2014-07-22 15:57:49 -------- d-----r- C:\Users\Nikola\Searches
2014-07-22 15:57:48 -------- d-----r- C:\Users\Nikola\Contacts
2014-07-22 15:53:09 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Nikola\ntuser.ini
2014-07-22 15:53:09 -------- d--h--w- C:\Users\Nikola\AppData
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Videos
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Saved Games
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Pictures
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Music
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Links
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Favorites
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Downloads
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Documents
2014-07-22 15:53:09 -------- d-----r- C:\Users\Nikola\Desktop

====== C: exe-files ==
2014-07-26 16:02:50 475DF5742BC3151428DAFFF449910FFE 261632 ----a-w- C:\Program Files\Adobe Media Player\Adobe Media Player.exe
2014-07-26 16:00:20 47FAE63BEEEECCADDDC33C0CCC40DB08 95232 ----a-w- C:\Program Files\Adobe\Adobe Help\Adobe Help.exe
2014-07-26 16:00:09 DA8E72ECF9A2865717EC534FD95AF5E4 12288 ----a-w- C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\template.exe
2014-07-26 16:00:09 AE16F04463DAC39ABB970ECEA3CEE73A 38784 ----a-w- C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\airappinstaller.exe
2014-07-26 16:00:08 F7F200BE2D16CE2A0269856FC1A53090 41856 ----a-w- C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe
2014-07-26 16:00:08 C28D390F80B69BFEE2F0C8BD4434ED6F 67456 ----a-w- C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe
2014-07-26 15:57:09 2135A8C3EFD4F6A9FF3D64EBAE7ADA5E 681424 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe
2014-07-26 15:57:05 D9C5277138437BA0DDE94A66B3B18D07 85440 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\TokenResolverx64.exe
2014-07-26 15:57:05 D1C5A59C3F223D9368747523921C2C4F 347072 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\CustomHook_Helperx64.exe
2014-07-26 15:57:04 1FA0613EB9A3618535D1F532A6EEEDFB 243136 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\Adobe_Helperx32.exe
2014-07-26 15:57:04 1631C6E5318627C9DB1251020B014E02 292288 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\Adobe_Helperx64.exe
2014-07-26 15:57:00 BB8E0A88FBA0A7A31C129EFED1229C78 151504 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\DWA\TokenGenerator64.exe
2014-07-26 15:57:00 98EEB104A47A8EB688BFD190CD953D5C 2023872 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\DWA\Setup.exe
2014-07-26 15:56:48 3DBF18CA036C07D9F035B7E5763C1FBC 270288 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\LWA\AAM Registration Notifier.exe
2014-07-26 15:56:41 5447AF432CDA61159ADDE218C468FFD9 500208 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
2014-07-26 15:56:40 A9439C64E75F9528ED9D5354DF7E06A1 1859056 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\Adobe Application Manager (Updater).exe
2014-07-26 15:56:40 6D1FB48AA037AB9626D453CF8B1CD7F8 375792 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAMLauncher.exe
2014-07-26 15:56:40 639B783F5BC546D8D9662881730AFF9B 310224 ------w- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
2014-07-26 14:08:34 5A6381E0AFB4E0B9FD318C1C76EFE9DC 5030744 ----a-w- C:\Program Files\Google\Update\Download\{F69EABDD-A4BB-4555-BE7E-1EA5F59BBA24}\0.0.0.0\googletoolbarinstaller_en_signed.exe
2014-07-25 14:19:17 3D160CE8617DB093FA14545DA185BE6C 490856 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-5.exe
2014-07-25 14:19:11 E71E139D714AA0E4586AA7BBFA804542 365416 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-10.exe
2014-07-25 14:19:02 B2EE07181E17E6922B317239D0765CD9 605032 ----a-w- C:\Program Files\HD-V1.9\HD-V1.9-bg.exe
2014-07-25 14:18:57 36CAE495A6823E30D4CDFFB639D68CDE 386920 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-2.exe
2014-07-25 14:18:50 0E8E1981E03F9E64B724E81D9415431B 869224 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-4.exe
2014-07-25 14:18:34 C4FC03937939127EFDA0BD8715E097AE 623464 ----a-w- C:\Program Files\HD-V1.9\HD-V1.9-nova.exe
2014-07-25 14:18:24 FB68227BE9354F9E471CB57E30BC4233 31592 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-11.exe
2014-07-25 14:17:54 F98DE4108614E4BB81E95E58E36C7000 46080 ----a-w- C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe
2014-07-25 14:17:54 7E767B342E55EB1DFD74A65D24EA4B70 46080 ----a-w- C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe
2014-07-25 14:17:53 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
2014-07-25 14:17:52 03114DADBD9977FC823F95B21FB987E7 72872 ----a-w- C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe
2014-07-25 14:17:51 D858BA2EE718B1DB1CED20646E641D08 68608 ----a-w- C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe
2014-07-25 14:17:47 9676F3F49A8167991C309D3CD7AF6FA6 90472 ----a-w- C:\Program Files\HD-V1.9\Uninstall.exe
2014-07-25 14:17:35 ABF14009213F430965CB0996BBCF15C4 2201951 ----a-w- C:\Program Files\HD-V1.9\utils.exe
2014-07-25 12:20:53 91B7F0DA8B6C52096CFD8B738F3D3D24 16808 ----a-w- C:\Program Files\Java\jre7\bin\tnameserv.exe
2014-07-25 12:20:53 04390E59F4EA447B05B3B31DA4CB23FF 145832 ----a-w- C:\Program Files\Java\jre7\bin\unpack200.exe
2014-07-25 12:20:52 CBBC0857D6E677362AADD3C54FFD6E50 16296 ----a-w- C:\Program Files\Java\jre7\bin\rmid.exe
2014-07-25 12:20:52 992B9F82FE3364B1DE57DD1FA09DC590 16296 ----a-w- C:\Program Files\Java\jre7\bin\servertool.exe
2014-07-25 12:20:52 74F08806423063B1ABD3B79958DA8B22 16296 ----a-w- C:\Program Files\Java\jre7\bin\pack200.exe
2014-07-25 12:20:52 51CCA1D8C86EEDD01E962F54AD0A40A3 16296 ----a-w- C:\Program Files\Java\jre7\bin\rmiregistry.exe
2014-07-25 12:20:52 24A247CB63FE3A5DEC8E1070F9D49ECE 16296 ----a-w- C:\Program Files\Java\jre7\bin\policytool.exe
2014-07-25 12:20:52 131EE1B71F6F770AB6820FD383BC184E 50088 ----a-w- C:\Program Files\Java\jre7\bin\ssvagent.exe
2014-07-25 12:20:52 09AD1CE65816D427E12A564A24F3FE11 16808 ----a-w- C:\Program Files\Java\jre7\bin\orbd.exe
2014-07-25 12:20:51 9538F45F86C30E9AB73E9159BA55FE2B 16296 ----a-w- C:\Program Files\Java\jre7\bin\keytool.exe
2014-07-25 12:20:51 7EF928D407D281E66C248AC323995F6E 16296 ----a-w- C:\Program Files\Java\jre7\bin\klist.exe
2014-07-25 12:20:51 731F0F68BD4B24C96539E7041162F4B5 16296 ----a-w- C:\Program Files\Java\jre7\bin\kinit.exe
2014-07-25 12:20:51 550D282FDE001860D09544DCE6F3B218 16296 ----a-w- C:\Program Files\Java\jre7\bin\ktab.exe
2014-07-25 12:20:50 A980296E1EC9921356F0D8AD06A6EF9C 182696 ----a-w- C:\Program Files\Java\jre7\bin\jqs.exe
2014-07-25 12:20:49 4A9C9EB33EC6779E2B8A1CDAB6B22E75 75688 ----a-w- C:\Program Files\Java\jre7\bin\jp2launcher.exe
2014-07-25 12:20:48 F67B94393ADB74B6616CFEECD1171EFE 68008 ----a-w- C:\Program Files\Java\jre7\bin\javacpl.exe
2014-07-25 12:20:48 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\Program Files\Java\jre7\bin\javaws.exe
2014-07-25 12:20:48 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\Program Files\Java\jre7\bin\javaw.exe
2014-07-25 12:20:47 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\Program Files\Java\jre7\bin\java.exe
2014-07-25 12:20:47 C626BC51E0149090DDBA9A98C5E27689 16296 ----a-w- C:\Program Files\Java\jre7\bin\java-rmi.exe
2014-07-25 12:20:47 6A81137F68B0A8815B9BE3BE11F29CCE 48040 ----a-w- C:\Program Files\Java\jre7\bin\jabswitch.exe
2014-07-23 14:32:20 B6A45B3AF7F3E997FCA5FC439A139D57 81288 ----a-w- C:\Program Files\SupTab\uninstall.exe
2014-07-23 14:32:10 4A8B45597C8C9C30A7039FE5EA84BBA7 732040 ----a-w- C:\Program Files\SupTab\HpUI.exe
2014-07-22 19:23:24 50989AAF09CDCEBC0FD8EB0FE79C2A98 470016 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe
2014-07-22 19:23:22 A9EBEFD3FC125D31EB33A8BB1AB17BE8 812208 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe
2014-07-22 19:22:35 C640F23B2E64585D33ADC99C6591C924 292824 ----a-w- C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
2014-07-22 16:25:48 5CA3B9DB1F03E19C4EAD46A7322D1D3F 39749712 ----a-w- C:\Program Files\Google\Update\Download\{8A69D345-D564-463C-AFF1-A69D9E530F96}\36.0.1985.125\36.0.1985.125_chrome_installer.exe
2014-07-22 16:25:00 AC6998D92A311E7CF0B4DAEC3566F444 51080 ----atw- C:\Program Files\Google\Update\1.3.24.15\GoogleUpdateBroker.exe
2014-07-22 16:25:00 956672375AF066D958E4D07F5ABAFC1A 51080 ----atw- C:\Program Files\Google\Update\1.3.24.15\GoogleUpdateOnDemand.exe
2014-07-22 16:24:59 9D9BDDC5AD54CDDA0146D9D335496520 895120 ----a-w- C:\Program Files\Google\Update\1.3.24.15\GoogleUpdateSetup.exe
2014-07-22 16:24:58 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files\Google\Update\GoogleUpdate.exe
2014-07-22 16:24:54 AA0E4F73727BFC8BA404884B1C1DB719 285064 ----atw- C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
2014-07-22 16:24:54 80E350E0AA963B2125896B13E60A4D68 114568 ----atw- C:\Program Files\Google\Update\1.3.24.15\GoogleUpdateComRegisterShell64.exe
2014-07-22 16:24:54 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files\Google\Update\1.3.24.15\GoogleUpdate.exe
2014-07-22 16:24:54 397D14958D6C9C2B365469A857B2AC4E 230792 ----atw- C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
2014-07-22 15:53:20 77A7651C4077DC0E5EBAA6574D586749 977088 ----a-w- C:\Program Files\KMSpico\Service_KMS.exe
2014-07-22 15:53:20 6BBEDD3E5505AFA3C9CE2B81A0C1362D 1098432 ----a-w- C:\Program Files\KMSpico\KMSELDI.exe
2014-07-22 15:53:20 245824502AEFE21B01E42F61955AA7F4 30208 ----a-w- C:\Program Files\KMSpico\UninsHs.exe
2014-07-22 15:53:19 CB2A3134D2B385C7D1E36E027EBDB446 730273 ----a-w- C:\Program Files\KMSpico\unins000.exe
2014-07-22 15:53:19 AC9B2624EF366742C9AD32B86225A251 240536 ----a-w- C:\Program Files\KMSpico\driver\tap-windows-9.9.2_3.exe
2014-07-22 15:53:19 10B201CC8EBFC96C0F20BC2BF3BF2144 977600 ----a-w- C:\Program Files\KMSpico\AutoPico.exe
=== C: other files ==
2014-07-26 17:37:04 762763F1CF1D2C0ECB757C6EBEA0F4E8 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-2761178562-3009788355-390650698-1001\$IYJSTHF.zip
2014-07-26 17:35:44 7C468CD65736ECB112A0C37C6DB68C94 4102729 ----a-w- C:\$Recycle.Bin\S-1-5-21-2761178562-3009788355-390650698-1001\$RYJSTHF.zip
2014-07-26 15:34:19 8DBDB0AC91EDC0FC0555485F8673FFE5 66714 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeBridge4-mul\Assets2_1.zip
2014-07-26 15:22:42 F67A0B77E9228FC42E9EFE6D001A6D4C 2089307 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorJA_Recommended3-mul\Assets2_1.zip
2014-07-26 15:20:36 28B7170A616AEC93A5F5669E64A78596 12528 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorCommonSetRGB3-mul\Assets2_1.zip
2014-07-26 15:15:12 6C7358CB055AC75D070F67B4C027C47F 2089308 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorJA_ExtraSettings3-mul\Assets2_1.zip
2014-07-26 15:14:27 FE7D2B89F14552773792227FB827E54A 2365719 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeCMaps3-mul\Assets2_1.zip
2014-07-26 15:13:24 659F561937F0FCC379B487334CED4A2C 2395676 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorNA_ExtraSettings3-mul\Assets2_1.zip
2014-07-26 15:12:59 5828A14D4DB32F17DCF2BF451F7148AA 2365719 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeCMaps3_x64-mul\Assets2_1.zip
2014-07-26 15:11:52 210AFDC295BE4D1C7F09B71D5792B0B6 6308483 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeCameraRaw6.0All-x64\Assets2_1.zip
2014-07-26 15:10:29 04F222C1987E4BBBD9B0D2A7FDB99537 8896398 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeAPE3-mul\Assets1_1.zip
2014-07-26 15:09:58 F7EDAABD99D04DEDDB485AE6B16E44B9 47432307 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeAMP1.8-mul\AdobeAMP1.8-mul.zip
2014-07-26 15:07:53 16D43B032AA27FB6BCB020788BBE954B 11239316 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorCommonSetCMYK3-mul\Assets2_1.zip
2014-07-26 15:07:49 0369A99FC32B228700C2B219D8796F25 10039342 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeAPE3_x64-mul\Assets1_1.zip
2014-07-26 15:07:23 0DA74CAE92DFDB1A09682838E08D0947 5458150 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeCameraRaw6.0All\Assets2_1.zip
2014-07-26 15:06:51 1ECB118B037EAF81CE9D771404699DFB 2028967 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorEU_Recommended3-mul\Assets2_1.zip
2014-07-26 15:06:47 D75B0F30C2B8CA4DDD6F2D3C66036556 61721510 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeCameraRawProfile6.0All\Assets2_1.zip
2014-07-26 15:06:43 396FA0E0E55172BB5449E475CD47D5C0 2028972 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeColorEU_ExtraSettings3-mul\Assets2_1.zip
2014-07-26 15:05:50 FB1B05332F8B840B5078260309ACF373 73009441 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeBridge4-mul\Assets1_1.zip
2014-07-26 15:05:42 FF27D3A7FF8DEE456A65DBE8FE4C0E85 44971661 ----a-w- C:\Users\Nikola\Documents\Downloads\Adobe Photoshop CS5 Extended + (zabranjeno)\Adobe CS5\payloads\AdobeAIR1.5.3-mul\AdobeAIR1.5.3-mul.zip
2014-07-25 14:18:48 0A6476C45950A340CDFF58CC6F4A49A6 333161 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620.xpi
2014-07-25 14:18:22 BB71E1F2062D1DE96771DD2A8B78516D 292295 ----a-w- C:\Program Files\HD-V1.9\1356a096-d7c5-46b6-9d9c-1c6eb850c4b2.crx
2014-07-25 14:18:22 A060401DD4BD60C779B8EC17B25E5276 291101 ----a-w- C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620.crx
2014-07-25 14:17:54 A060401DD4BD60C779B8EC17B25E5276 291101 ----a-w- C:\Program Files\HD-V1.9\777b4cb6-5495-49cd-ba70-c16fb7880e9a.crx
2014-07-25 12:20:54 C17BF24D0FEB42E51B0C961030CB5F36 18650 ----a-w- C:\Program Files\Java\jre7\lib\deploy\ffjcext.zip
2014-07-22 15:53:42 AA03B0BF3D0A7DE8E19B00BD2043262F 30256 ----a-w- C:\Program Files\KMSpico\WinDivert.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-21-2761178562-3009788355-390650698-1001\Software\Microsoft\Windows\CurrentVersion\Run]
"MCShield Monitor"="D:\Programi\MCShield\mcshieldrtm.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"
"AvastUI.exe"="D:\Programi\Avast\AvastUI.exe /nogui"
"AdobeAAMUpdater-1.0"="C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
"SwitchBoard"="C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
"AdobeCS5ServiceManager"="C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe -launchedbylogin"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MCShield Monitor"="D:\Programi\MCShield\mcshieldrtm.exe"

==== Startup Folders ======================

2014-07-25 15:56:37 788 ----a-w- C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-10.job --a-------- [Undetermined Task]
C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-11.job --a-------- [Undetermined Task]
C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-2.job --a-------- [Undetermined Task]
C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-4.job --a-------- [Undetermined Task]
C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-5.job --a-------- [Undetermined Task]
C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user.job --a-------- [Undetermined Task]
C:\Windows\tasks\b237092c-44da-4d02-bc4b-e1762a890620-7.job --a-------- [Undetermined Task]
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job --a-------- [Undetermined Task]
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job --a-------- [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a-------- [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a-------- [Undetermined Task]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\AutoPico Daily Restart" ["C:\Program Files\KMSpico\AutoPico.exe"]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-10" [C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-10.exe]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-11" [C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-11.exe]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-2" [C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-2.exe]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-4" [C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-4.exe]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-5" [C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-5.exe]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user" [C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-5.exe]
"C:\Windows\system32\tasks\b237092c-44da-4d02-bc4b-e1762a890620-7" [C:\Program Files\HD-V1.9\HD-V1.9-nova.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\globalUpdateUpdateTaskMachineCore" [C:\Program Files\globalUpdate\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\globalUpdateUpdateTaskMachineUA" [C:\Program Files\globalUpdate\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\User_Feed_Synchronization-{6D15002D-571A-4D00-A9F5-CB826C4FE0AF}" [C:\Windows\system32\msfeedssync.exe]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="D:\Programi\Avast\WebRep\FF" [07/26/2014 04:07 PM]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - D:\Programi\Avast\WebRep\Chrome\aswWebRepChrome.crx[07/26/2014 04:07 PM]

Google Docs - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
UJAM - Make your music. - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci
YouTube - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
GeoGebra - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee
Google Search - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
avast Online Security - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
SQLite Database Browser (Beta) - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpbdkmaomigeneadlamehkfchdmojgg
Google Wallet - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
draw.io - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgmlhohecdddhbmmkncjdmlhcmaachm

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://msn.com/"
"Default_Page_URL"="http://istart.webssearches.com/?type=hp&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://istart.webssearches.com/web/?type=ds&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989&q={searchTerms}"
"Default_Page_URL"="http://istart.webssearches.com/?type=hp&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989"
"Start Page"="http://istart.webssearches.com/?type=hp&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989"
"Search Page"="http://istart.webssearches.com/web/?type=ds&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989&q={searchTerms}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{33BB0A4E-99AF-4226-BDF6-49120163DE86} webssearches Url="http://istart.webssearches.com/web/?type=ds&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989&q={searchTerms}"

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

==== EOF on Sat 07/26/2014 at 19:47:35.37 ======================

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Mozda ces cekati na odgovor malo duze, cisto da javim. Nadam se da nije problem?

offline
  • Programer
  • Pridružio: 23 Maj 2012
  • Poruke: 4533

Ma nema problema, nije mi toliko hitno Very Happy

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Pozdrav, ja preuzimam slučaj odavde. Smile



Arrow Ponovo pokreni zoek ;


zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;


U beli okvir prozora iskopiraj sledeći tekst:

IePluginServices;s
globalUpdate;s
globalUpdatem;s
C:\Program Files\HD-V1.9;fs
C:\Program Files\SupTab;fs
C:\ProgramData\IePluginServices;fs
C:\Program Files\globalUpdate;fs
C:\Users\Nikola\AppData\Local\globalUpdate;fs
autoclean;
emptyalltemp;
ffdefaults;




Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.




Arrow Ponovo pokreni FRST i postavi mi svež log, pri skeniranju zabeleži opciju Addition.txt

offline
  • Programer
  • Pridružio: 23 Maj 2012
  • Poruke: 4533

Zoek.exe v5.0.0.0 Updated 26-07-2014
Tool run by Nikola on Sun 07/27/2014 at 12:16:24.95.
Microsoft Windows 8.1 Pro 6.3.9600 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Nikola\Desktop\zoek\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-07-26-174735.log 74558 bytes

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2761178562-3009788355-390650698-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IePluginServices deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdate deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdatem deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
@="C:\\Program Files\\Internet Explorer\\iexplore.exe"

==== Deleting Files \ Folders ======================

C:\Program Files\SupTab deleted
C:\ProgramData\IePluginServices deleted
C:\Program Files\globalUpdate deleted
C:\Users\Nikola\AppData\Local\globalUpdate deleted
C:\extensions deleted
C:\PROGRA~2\Package Cache deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-10.job deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-11.job deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-2.job deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-4.job deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5.job deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user.job deleted
C:\Windows\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-7.job deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-10 deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-11 deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-2 deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-4 deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5 deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-5_user deleted
C:\Windows\system32\Tasks\b237092c-44da-4d02-bc4b-e1762a890620-7 deleted
C:\Users\Nikola\Searches deleted
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job deleted
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job deleted
C:\Windows\system32\tasks\globalUpdateUpdateTaskMachineCore deleted
C:\Windows\system32\tasks\globalUpdateUpdateTaskMachineUA deleted
C:\END deleted
"C:\Windows\Installer\aed2879.msi" deleted
"C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-10.exe" deleted
"C:\Program Files\HD-V1.9\b237092c-44da-4d02-bc4b-e1762a890620-11.exe" deleted
"C:\Program Files\HD-V1.9\Interop.IWshRuntimeLibrary.dll" deleted
"C:\Program Files\HD-V1.9\Newtonsoft.Json.dll" deleted
"C:\Program Files\HD-V1.9\SuperSocket.ClientEngine.Common.dll" deleted
"C:\Program Files\HD-V1.9\SuperSocket.ClientEngine.Core.dll" deleted
"C:\Program Files\HD-V1.9\SuperSocket.ClientEngine.Protocol.dll" deleted
"C:\Program Files\HD-V1.9\WebSocket4Net.dll" deleted
"C:\Program Files\HD-V1.9" not deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="D:\Programi\Avast\WebRep\FF" [07/26/2014 04:07 PM]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - D:\Programi\Avast\WebRep\Chrome\aswWebRepChrome.crx[07/26/2014 04:07 PM]

UJAM - Make your music. - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci
GeoGebra - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee
avast Online Security - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
SQLite Database Browser (Beta) - Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpbdkmaomigeneadlamehkfchdmojgg

==== Chrome Fix ======================

C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://msn.com/"
"Default_Page_URL"="http://istart.webssearches.com/?type=hp&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://istart.webssearches.com/web/?type=ds&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989&q={searchTerms}"
"Default_Page_URL"="http://istart.webssearches.com/?type=hp&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989"
"Start Page"="http://istart.webssearches.com/?type=hp&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989"
"Search Page"="http://istart.webssearches.com/web/?type=ds&ts=1406297726&from=amt&uid=WDCXWD5000AAKX-001CA0_WD-WMAYU335198951989&q={searchTerms}"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://msn.com/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully

==== Empty IE Cache ======================

C:\Users\Nikola\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Nikola\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=450 folders=520 1498428401 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Nikola\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Nikola\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Program Files\HD-V1.9" not found

==== EOF on Sun 07/27/2014 at 12:47:37.47 ======================

Arrow FRST

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-07-2014
Ran by Nikola (administrator) on NIKOLAPC on 27-07-2014 12:55:05
Running from C:\Users\Nikola\Desktop
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) D:\Programi\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) D:\Programi\Avast\AvastUI.exe
(MyCity) D:\Programi\MCShield\MCShieldRTM.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Mega Limited) C:\ProgramData\MEGAsync\MEGAsync.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe
(Microsoft Corporation) D:\Programi\Microsoft Office\Office15\MSOSYNC.EXE
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x86__8wekyb3d8bbwe\glcnd.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
() C:\Program Files\WindowsApps\Microsoft.BingMaps_2.1.2922.2139_x86__8wekyb3d8bbwe\Map.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-2761178562-3009788355-390650698-1001\...\Run: [MCShield Monitor] => D:\Programi\MCShield\mcshieldrtm.exe [650816 2014-04-11] (MyCity)
Startup: C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk
ShortcutTarget: MEGAsync.lnk -> C:\ProgramData\MEGAsync\MEGAsync.exe (Mega Limited)
ShellIconOverlayIdentifiers: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: ###MegaShellExtPending -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX32.dll ()
ShellIconOverlayIdentifiers: ###MegaShellExtSynced -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX32.dll ()
ShellIconOverlayIdentifiers: ###MegaShellExtSyncing -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX32.dll ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Programi\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xEF0C2A1BC6A5CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> D:\Programi\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> D:\Programi\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Programi\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Programi\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.65.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/Lync,version=15.0 - C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - D:\Programi\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - D:\Programi\Avast\WebRep\FF
FF Extension: avast! Online Security - D:\Programi\Avast\WebRep\FF [2014-07-26]

Chrome:
=======
CHR HomePage: www.google.com
CHR StartupUrls: "https://www.google.rs/", "www.google.com"
CHR Extension: (Google документи) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-22]
CHR Extension: (Google диск) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-22]
CHR Extension: (UJAM - Make your music.) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2014-07-22]
CHR Extension: (YouTube) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-22]
CHR Extension: (GeoGebra) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee [2014-07-22]
CHR Extension: (Google претрага) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-22]
CHR Extension: (avast! Online Security) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-07-26]
CHR Extension: (SQLite Database Browser (Beta)) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpbdkmaomigeneadlamehkfchdmojgg [2014-07-26]
CHR Extension: (Google новчаник) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-22]
CHR Extension: (Gmail) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-22]
CHR Extension: (draw.io) - C:\Users\Nikola\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgmlhohecdddhbmmkncjdmlhcmaachm [2014-07-22]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - D:\Programi\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-26]
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; D:\Programi\Avast\AvastSvc.exe [50344 2014-07-26] (AVAST Software)
S3 fussvc; C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe [140800 2014-02-19] (Microsoft Corporation) [File not signed]
R2 IpOverUsbSvc; C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [22768 2014-04-17] (Microsoft Corporation)
S3 ScDeviceEnum; C:\Windows\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [977088 2014-03-02] () [File not signed]
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 Te.Service; C:\Program Files\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [91136 2013-08-21] (Microsoft Corporation) [File not signed]
S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [71864 2014-05-01] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-03-24] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\Windows\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-03-24] (Microsoft Corporation)
S3 workfolderssvc; C:\Windows\system32\workfolderssvc.dll [1210368 2014-04-03] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-07-26] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-07-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-07-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-07-26] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-07-26] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-07-26] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-07-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-07-26] ()
R1 BasicRender; C:\Windows\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation)
S3 bthav; C:\Windows\system32\drivers\bthav.sys [34816 2008-07-10] (CSR, plc)
S3 GPIO; C:\Windows\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [92504 2014-03-24] (Microsoft Corporation)
R3 WinDivert1.1; C:\Program Files\KMSpico\WinDivert.sys [30256 2014-07-22] (Basil Projects)
R0 Wof; C:\Windows\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
R3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-27 12:53 - 2014-07-27 12:55 - 00012691 _____ () C:\Users\Nikola\Desktop\FRST.txt
2014-07-27 12:46 - 2014-07-27 12:16 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-27 12:17 - 2014-07-26 19:47 - 00074558 _____ () C:\zoek-results2014-07-26-174735.log
2014-07-27 00:45 - 2014-07-27 00:45 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-27 00:45 - 2014-07-27 00:45 - 00000000 _____ () C:\Windows\setupact.log
2014-07-27 00:41 - 2014-07-27 12:46 - 00002778 _____ () C:\Windows\PFRO.log
2014-07-26 20:33 - 2014-07-26 20:35 - 00000000 ___RD () C:\Users\Nikola\Documents\MEGA
2014-07-26 19:38 - 2014-07-27 12:47 - 00009412 _____ () C:\zoek-results.log
2014-07-26 19:37 - 2014-07-27 12:42 - 00000000 ____D () C:\zoek_backup
2014-07-26 19:36 - 2014-07-26 19:36 - 00000000 ____D () C:\Users\Nikola\Desktop\zoek
2014-07-26 19:09 - 2014-07-27 12:48 - 00000000 ____D () C:\ProgramData\MCShield
2014-07-26 19:09 - 2014-07-26 19:09 - 00000732 _____ () C:\Users\Public\Desktop\MCShield Real-Time Monitor.lnk
2014-07-26 19:09 - 2014-07-26 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2014-07-26 18:47 - 2014-07-27 12:55 - 00000000 ____D () C:\FRST
2014-07-26 18:46 - 2014-07-26 18:46 - 01084416 _____ (Farbar) C:\Users\Nikola\Desktop\FRST.exe
2014-07-26 18:42 - 2014-07-26 18:42 - 00001374 _____ () C:\Users\Nikola\Desktop\Adobe Photoshop CS5.lnk
2014-07-26 18:06 - 2014-07-26 18:06 - 00000879 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5.lnk
2014-07-26 18:06 - 2014-07-26 18:06 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-07-26 18:05 - 2014-07-26 18:05 - 00000853 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2014-07-26 18:04 - 2014-07-26 18:04 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.lnk
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\Program Files\Adobe Media Player
2014-07-26 18:01 - 2014-07-26 18:01 - 00001497 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
2014-07-26 18:01 - 2014-07-26 18:01 - 00000973 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS5.lnk
2014-07-26 18:00 - 2014-07-26 20:38 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR
2014-07-26 18:00 - 2014-07-26 20:38 - 00000000 ____D () C:\Program Files\Adobe
2014-07-26 18:00 - 2014-07-26 18:00 - 00000983 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-07-26 17:58 - 2014-07-27 02:00 - 00000000 ____D () C:\ProgramData\Adobe
2014-07-26 17:56 - 2014-07-26 18:04 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-07-26 17:54 - 2014-07-26 18:37 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Adobe
2014-07-26 17:34 - 2014-07-26 17:34 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Nikola\Downloads\revosetup.exe
2014-07-26 16:19 - 2014-07-27 12:50 - 00179567 _____ () C:\Windows\WindowsUpdate.log
2014-07-26 16:09 - 2014-07-26 16:09 - 00000830 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\AVAST Software
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-26 16:08 - 2014-07-26 16:09 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-26 16:08 - 2014-07-26 16:07 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-26 16:07 - 2014-07-26 16:07 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-26 16:07 - 2014-07-26 16:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-26 16:03 - 2014-07-26 16:05 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-25 19:37 - 2014-04-14 04:37 - 00865280 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-07-25 19:36 - 2014-07-25 19:36 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-07-25 18:28 - 2014-07-25 19:08 - 00000000 ____D () C:\Windows\AutoKMS
2014-07-25 18:11 - 2014-05-09 01:08 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2014-07-25 18:11 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll
2014-07-25 18:11 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll
2014-07-25 18:11 - 2014-03-13 08:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2014-07-25 17:55 - 2014-07-25 17:55 - 00000770 _____ () C:\Users\Public\Desktop\MEGAsync.lnk
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Mega Limited
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\MEGAsync
2014-07-25 17:54 - 2014-07-25 17:55 - 08144792 _____ () C:\Users\Nikola\Downloads\MEGAsyncSetup.exe
2014-07-25 17:04 - 2014-07-25 17:04 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-25 16:57 - 2014-07-26 11:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-07-25 16:55 - 2014-07-25 16:55 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-07-25 16:53 - 2014-07-25 16:53 - 00000000 ____D () C:\Windows\PCHEALTH
2014-07-25 16:49 - 2014-07-25 16:49 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-07-25 16:48 - 2014-07-26 11:54 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-25 16:48 - 2014-07-25 16:48 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Microsoft Help
2014-07-25 16:37 - 2014-07-25 18:43 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-07-25 16:19 - 2014-07-25 16:58 - 00000000 ____D () C:\Program Files\VideoLAN
2014-07-25 16:16 - 2014-07-25 16:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-07-25 15:47 - 2014-07-25 15:47 - 00014810 _____ () C:\Users\Nikola\Downloads\[kickass.to]microsoft.office.proplus.2013.vl.x86.x64.en.us.feb2014.torrent
2014-07-25 14:25 - 2014-07-25 14:25 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Oracle
2014-07-25 14:24 - 2014-07-25 14:24 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Sun
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-07-25 14:21 - 2014-07-25 14:20 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-25 14:21 - 2014-07-25 14:20 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-25 14:21 - 2014-07-25 14:20 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-25 14:21 - 2014-07-25 14:20 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-07-25 14:20 - 2014-07-25 14:20 - 00000000 ____D () C:\Program Files\Java
2014-07-25 13:49 - 2014-07-25 13:49 - 00000634 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-07-25 13:49 - 2014-07-25 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-07-25 13:45 - 2014-07-25 15:21 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\qBittorrent
2014-07-25 13:45 - 2014-07-25 13:45 - 00000693 _____ () C:\Users\Nikola\Desktop\qBittorrent.lnk
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\qBittorrent
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Local\qBittorrent
2014-07-25 13:36 - 2014-07-25 13:36 - 00000601 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-07-25 13:36 - 2014-07-25 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-07-24 14:41 - 2014-07-24 19:04 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS
2014-07-24 14:41 - 2014-07-24 19:04 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life
2014-07-24 14:41 - 2014-07-24 19:04 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
2014-07-23 18:58 - 2014-01-19 09:37 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-07-23 18:41 - 2014-07-23 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK
2014-07-23 18:40 - 2014-07-23 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Windows\symbols
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 11.0
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\Program Files\Windows Phone Silverlight Kits
2014-07-23 18:22 - 2014-07-23 18:38 - 00000000 ____D () C:\Program Files\Microsoft XDE
2014-07-23 18:17 - 2014-07-23 18:17 - 00000000 ____D () C:\Program Files\ShellDir
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\ProgramData\NuGet
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\Program Files\NuGet
2014-07-23 18:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-07-23 18:13 - 2014-07-23 18:36 - 00000000 ____D () C:\Program Files\Common Files\Merge Modules
2014-07-23 18:03 - 2014-07-23 18:20 - 00000000 ____D () C:\ProgramData\Windows App Certification Kit
2014-07-23 18:03 - 2014-07-23 18:03 - 00000000 ____D () C:\Program Files\Application Verifier
2014-07-23 18:02 - 2014-07-23 18:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2014-07-23 17:57 - 2014-07-23 17:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2014-07-23 17:55 - 2014-07-23 18:40 - 00000000 ____D () C:\Program Files\Windows Phone Kits
2014-07-23 17:51 - 2014-07-23 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2014-07-23 17:48 - 2014-07-23 18:42 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 12.0
2014-07-23 16:50 - 2014-07-25 16:44 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\PeaZip
2014-07-23 16:50 - 2014-07-23 16:50 - 00000649 _____ () C:\Users\Nikola\Desktop\PeaZip.lnk
2014-07-23 16:50 - 2014-07-23 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
2014-07-23 16:44 - 2014-07-23 16:45 - 18168108 _____ () C:\Users\Nikola\Downloads\Universal Windows app samples.zip
2014-07-23 16:37 - 2014-07-23 16:37 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\NuGet
2014-07-23 16:35 - 2014-07-23 17:17 - 00000000 ____D () C:\Users\Nikola\Documents\Visual Studio 2013
2014-07-23 16:24 - 2014-07-23 16:27 - 00000000 ____D () C:\Program Files\Windows Kits
2014-07-23 16:21 - 2014-07-23 18:41 - 00000000 ____D () C:\Program Files\Microsoft SDKs
2014-07-23 16:21 - 2014-07-23 16:21 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-07-23 16:20 - 2014-07-23 18:01 - 00000000 ____D () C:\Windows\system32\1033
2014-07-23 16:20 - 2014-07-23 16:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-07-23 16:18 - 2014-07-23 18:40 - 00000000 ____D () C:\Program Files\MSBuild
2014-07-23 16:18 - 2014-07-23 16:18 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-07-23 16:16 - 2014-07-23 16:16 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-07-23 16:15 - 2014-07-23 17:40 - 00000000 ____D () C:\Program Files\Visual Studio 12.0
2014-07-23 11:46 - 2014-07-23 11:46 - 00000977 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 03:36 - 2014-07-23 11:47 - 00000000 ____D () C:\Windows\Panther
2014-07-23 02:37 - 2014-07-23 02:37 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-07-23 01:37 - 2014-06-26 22:55 - 00703968 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-23 01:37 - 2014-06-26 22:55 - 00105440 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-22 22:27 - 2014-07-22 22:29 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-22 22:27 - 2014-06-26 17:38 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-22 21:24 - 2014-03-20 03:31 - 01037504 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-07-22 21:24 - 2014-03-20 03:12 - 00863552 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-07-22 21:24 - 2014-03-20 03:09 - 01679704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-07-22 21:24 - 2014-03-20 03:09 - 00283992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2014-07-22 21:24 - 2014-03-20 01:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2014-07-22 21:24 - 2014-03-20 01:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2014-07-22 21:24 - 2014-03-19 07:25 - 00491008 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-07-22 21:24 - 2014-03-19 07:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2014-07-22 21:24 - 2014-03-19 07:08 - 01351168 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2014-07-22 21:24 - 2014-03-13 12:12 - 00138584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2014-07-22 21:24 - 2014-03-11 16:28 - 00887296 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2014-07-22 21:24 - 2014-03-11 14:35 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-07-22 21:24 - 2014-03-08 14:00 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2014-07-22 21:24 - 2014-03-08 13:49 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2014-07-22 21:24 - 2014-03-08 13:45 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2014-07-22 21:24 - 2014-03-08 13:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2014-07-22 21:24 - 2014-03-08 10:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2014-07-22 21:24 - 2014-03-08 09:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2014-07-22 21:24 - 2014-03-08 09:12 - 01816576 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2014-07-22 21:24 - 2014-03-08 08:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2014-07-22 21:24 - 2014-03-08 08:37 - 00755712 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-22 21:24 - 2014-03-08 08:37 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-07-22 21:24 - 2014-03-08 08:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2014-07-22 21:24 - 2014-03-08 08:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-07-22 21:24 - 2014-03-08 08:23 - 00731648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-07-22 21:24 - 2014-03-08 07:42 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2014-07-22 21:24 - 2014-03-08 07:16 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2014-07-22 21:24 - 2014-03-06 13:19 - 00390488 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2014-07-22 21:24 - 2014-03-06 13:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2014-07-22 21:24 - 2014-03-06 13:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-07-22 21:24 - 2014-03-06 13:13 - 00406912 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-07-22 21:24 - 2014-03-06 12:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-07-22 21:24 - 2014-03-06 12:43 - 01326936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-07-22 21:24 - 2014-03-06 12:43 - 00321880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-07-22 21:24 - 2014-03-06 12:34 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-07-22 21:24 - 2014-03-06 10:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-07-22 21:24 - 2014-03-06 10:24 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2014-07-22 21:24 - 2014-03-06 10:23 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2014-07-22 21:24 - 2014-03-06 10:22 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-07-22 21:24 - 2014-03-06 10:20 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2014-07-22 21:24 - 2014-03-06 09:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-07-22 21:24 - 2014-03-06 09:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2014-07-22 21:24 - 2014-03-06 08:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2014-07-22 21:24 - 2014-03-06 08:23 - 02270208 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2014-07-22 21:24 - 2014-03-06 08:11 - 02030080 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-07-22 21:24 - 2014-03-06 08:09 - 01764864 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2014-07-22 21:24 - 2014-03-06 08:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2014-07-22 21:24 - 2014-03-06 08:06 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2014-07-22 21:24 - 2014-03-06 08:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2014-07-22 21:24 - 2014-03-06 08:01 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2014-07-22 21:24 - 2014-03-06 07:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2014-07-22 21:24 - 2014-03-06 07:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2014-07-22 21:24 - 2014-03-04 13:16 - 02088160 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-07-22 21:24 - 2014-03-04 13:10 - 00355832 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2014-07-22 21:24 - 2014-03-04 09:26 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2014-07-22 21:24 - 2014-03-04 08:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-07-22 21:24 - 2014-03-04 08:42 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-07-22 21:24 - 2014-03-04 08:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2014-07-22 21:24 - 2014-03-04 08:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2014-07-22 21:24 - 2014-03-04 08:30 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2014-07-22 21:24 - 2014-03-04 08:26 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-07-22 21:24 - 2014-03-04 08:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2014-07-22 21:24 - 2014-03-04 07:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2014-07-22 21:24 - 2014-03-04 07:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2014-07-22 21:23 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-22 21:23 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-22 21:23 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-22 21:23 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-22 21:23 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-22 21:23 - 2014-06-19 00:57 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-22 21:23 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-22 21:23 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-22 21:23 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-22 21:23 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-22 21:23 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-22 21:23 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-22 21:23 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-22 21:23 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-22 21:23 - 2014-06-06 14:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-22 21:23 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-22 21:23 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-22 21:23 - 2014-05-19 07:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2014-07-22 21:23 - 2014-05-19 07:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2014-07-22 21:23 - 2014-05-05 06:02 - 02826240 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-07-22 21:23 - 2014-05-03 08:36 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-07-22 21:23 - 2014-04-30 12:10 - 01090296 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-07-22 21:23 - 2014-04-30 05:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-07-22 21:23 - 2014-04-30 05:43 - 01046016 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-07-22 21:23 - 2014-04-11 05:41 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2014-07-22 21:23 - 2014-04-11 05:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-07-22 21:23 - 2014-04-11 05:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-07-22 21:23 - 2014-04-11 05:02 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2014-07-22 21:23 - 2014-04-11 05:01 - 00307712 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-07-22 21:23 - 2014-04-11 04:47 - 01634304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-07-22 21:23 - 2014-03-12 15:45 - 00387210 _____ () C:\Windows\system32\ApnDatabase.xml
2014-07-22 21:23 - 2014-03-08 09:40 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2014-07-22 21:23 - 2014-03-08 07:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-07-22 21:23 - 2014-03-06 10:24 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2014-07-22 21:23 - 2014-03-06 10:20 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-07-22 21:23 - 2014-03-06 10:20 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-07-22 21:23 - 2014-03-06 10:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2014-07-22 21:23 - 2014-03-06 09:47 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2014-07-22 21:23 - 2014-02-06 12:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-22 21:23 - 2014-02-06 12:19 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-22 21:23 - 2014-02-06 12:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-22 21:23 - 2014-02-06 11:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-22 21:23 - 2014-02-06 11:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-22 21:23 - 2014-02-06 11:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-22 21:23 - 2014-02-06 11:47 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-22 21:23 - 2014-02-06 11:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-22 21:23 - 2013-12-24 01:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2014-07-22 21:22 - 2014-06-17 00:26 - 00779264 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-22 21:22 - 2014-06-06 15:20 - 03497472 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-22 21:22 - 2014-05-30 05:05 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-22 21:22 - 2014-05-29 11:30 - 00481400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-07-22 21:22 - 2014-05-29 08:40 - 00735232 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-07-22 21:22 - 2014-05-29 06:38 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-22 21:22 - 2014-05-01 13:00 - 02257608 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2014-07-22 21:22 - 2014-05-01 13:00 - 00046512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2014-07-22 21:22 - 2014-05-01 08:51 - 02344448 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-07-22 21:22 - 2014-05-01 08:42 - 02045440 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2014-07-22 21:22 - 2014-05-01 07:31 - 02366976 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2014-07-22 21:22 - 2014-04-18 15:43 - 00031064 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2014-07-22 21:22 - 2014-04-18 10:01 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-07-22 21:22 - 2014-04-18 09:51 - 00836608 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2014-07-22 21:22 - 2014-04-18 09:49 - 05833216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2014-07-22 21:22 - 2014-04-14 10:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2014-07-22 21:22 - 2014-04-11 07:29 - 01016320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-07-22 21:22 - 2014-04-11 06:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2014-07-22 21:22 - 2014-04-11 05:27 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2014-07-22 21:22 - 2014-04-09 12:47 - 00294744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2014-07-22 21:22 - 2014-04-09 07:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2014-07-22 21:22 - 2014-04-09 05:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2014-07-22 21:22 - 2014-04-08 01:47 - 00502104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-07-22 21:22 - 2014-04-06 17:27 - 00311128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-07-22 21:22 - 2014-04-06 17:27 - 00240472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-07-22 21:22 - 2014-04-06 17:23 - 00098584 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2014-07-22 21:22 - 2014-04-06 17:22 - 18755672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-07-22 21:22 - 2014-04-06 17:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 02144984 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 01159520 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00406504 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2014-07-22 21:22 - 2014-04-06 17:16 - 00305768 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-07-22 21:22 - 2014-04-06 13:54 - 12711424 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-07-22 21:22 - 2014-04-06 13:47 - 00264704 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2014-07-22 21:22 - 2014-04-06 12:44 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-07-22 21:22 - 2014-04-06 12:37 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-07-22 21:22 - 2014-04-06 12:36 - 00888320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2014-07-22 21:22 - 2014-04-06 11:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2014-07-22 21:22 - 2014-04-03 06:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2014-07-22 21:22 - 2014-04-03 05:53 - 01797896 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2014-07-22 21:22 - 2014-04-03 04:46 - 03563008 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-07-22 21:22 - 2014-04-03 04:45 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-07-22 21:22 - 2014-04-03 04:44 - 01210368 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2014-07-22 21:22 - 2014-04-03 04:24 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-07-22 21:22 - 2014-04-01 07:09 - 00333656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2014-07-22 21:22 - 2014-03-31 05:34 - 05786968 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-07-22 21:22 - 2014-03-31 01:13 - 00667136 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2014-07-22 21:22 - 2014-03-31 00:37 - 01167360 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2014-07-22 21:22 - 2014-03-28 11:04 - 00328984 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2014-07-22 21:22 - 2014-03-27 07:21 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-07-22 21:22 - 2014-03-27 05:22 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2014-07-22 21:22 - 2014-03-25 00:57 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-07-22 21:22 - 2014-03-24 03:34 - 00219992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-07-22 21:22 - 2014-03-24 03:34 - 00092504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2014-07-22 21:22 - 2014-03-24 03:33 - 00030224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-07-22 21:22 - 2014-03-20 03:20 - 00229344 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-07-22 21:22 - 2014-03-20 01:38 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2014-07-22 21:22 - 2014-03-20 01:33 - 05774848 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-07-22 21:22 - 2014-03-19 09:09 - 00375296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2014-07-22 21:22 - 2014-03-19 07:00 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2014-07-22 21:22 - 2014-03-19 06:51 - 00300544 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2014-07-22 21:22 - 2014-03-19 06:47 - 01309184 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2014-07-22 21:22 - 2014-03-19 06:14 - 02130432 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-07-22 21:22 - 2014-03-18 09:22 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2014-07-22 21:22 - 2014-03-18 06:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2014-07-22 21:22 - 2014-03-17 06:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-07-22 21:22 - 2014-03-17 04:45 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2014-07-22 21:22 - 2014-03-17 04:36 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-07-22 21:22 - 2014-03-14 08:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2014-07-22 21:22 - 2014-03-06 12:37 - 00264536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2014-07-22 21:21 - 2014-05-10 05:22 - 01312256 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-07-22 21:21 - 2014-04-18 15:29 - 01200288 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2014-07-22 21:21 - 2014-04-18 10:51 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2014-07-22 21:21 - 2014-04-06 17:18 - 00271192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2014-07-22 21:21 - 2014-04-06 17:16 - 00707048 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-07-22 21:21 - 2014-04-06 17:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-07-22 21:21 - 2014-04-06 17:16 - 00326024 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-07-22 21:21 - 2014-04-06 17:16 - 00194752 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-07-22 21:21 - 2014-04-06 14:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2014-07-22 21:21 - 2014-04-06 14:00 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-07-22 21:21 - 2014-04-06 13:40 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2014-07-22 21:21 - 2014-04-06 12:58 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2014-07-22 21:21 - 2014-04-06 12:55 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2014-07-22 21:21 - 2014-04-03 06:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-07-22 21:21 - 2014-04-03 05:46 - 01871704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-07-22 21:21 - 2014-04-03 05:46 - 00286040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-07-22 21:21 - 2014-04-03 04:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2014-07-22 21:21 - 2014-03-31 02:41 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2014-07-22 21:21 - 2014-03-31 01:26 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2014-07-22 21:21 - 2014-03-31 00:35 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2014-07-22 21:21 - 2014-03-31 00:09 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2014-07-22 21:21 - 2014-03-30 23:49 - 00672256 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2014-07-22 21:21 - 2014-03-27 06:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2014-07-22 21:21 - 2014-03-27 06:19 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2014-07-22 21:21 - 2014-03-27 05:03 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2014-07-22 21:21 - 2014-03-27 04:59 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2014-07-22 21:21 - 2014-03-21 05:46 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2014-07-22 21:21 - 2014-03-19 09:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2014-07-22 21:21 - 2014-03-19 07:56 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-07-22 21:21 - 2014-03-19 06:23 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-07-22 21:21 - 2014-03-08 13:53 - 00147800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-07-22 21:21 - 2014-03-06 10:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2014-07-22 21:21 - 2014-01-27 20:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-07-22 21:17 - 2014-05-31 10:38 - 00049552 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-07-22 21:17 - 2014-05-31 05:30 - 11792384 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-07-22 21:17 - 2014-05-31 05:01 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-22 21:17 - 2014-05-31 04:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-07-22 21:17 - 2014-05-31 04:54 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-07-22 21:17 - 2014-05-31 04:39 - 02818048 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-07-22 21:17 - 2014-05-31 04:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2014-07-22 21:17 - 2014-05-31 04:32 - 00756224 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-07-22 21:17 - 2014-04-11 10:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2014-07-22 21:17 - 2014-04-11 07:22 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-07-22 21:17 - 2014-04-11 07:13 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2014-07-22 21:17 - 2014-03-11 15:02 - 00629760 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-07-22 20:56 - 2014-07-25 17:05 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Kingsoft
2014-07-22 20:56 - 2014-07-25 17:05 - 00000000 ____D () C:\ProgramData\kingsoft
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Sublime Text 3
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Sublime Text 3
2014-07-22 18:38 - 2014-07-22 20:56 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Kingsoft
2014-07-22 18:26 - 2014-07-27 12:49 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-22 18:26 - 2014-07-22 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-22 18:25 - 2014-07-27 12:48 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-22 18:25 - 2014-07-27 12:30 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-22 18:24 - 2014-07-27 00:41 - 00000000 ____D () C:\Program Files\Google
2014-07-22 18:24 - 2014-07-26 16:12 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Google
2014-07-22 18:15 - 2014-07-22 18:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-07-22 18:01 - 2014-07-22 18:01 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Macromedia
2014-07-22 18:00 - 2014-07-27 12:48 - 00000000 __RDO () C:\Users\Nikola\OneDrive
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieUserList
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieSiteList
2014-07-22 17:57 - 2014-07-26 18:37 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Adobe
2014-07-22 17:57 - 2014-07-25 16:58 - 00001442 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-22 17:57 - 2014-07-22 17:57 - 00000000 ____D () C:\Users\Nikola\AppData\Local\VirtualStore
2014-07-22 17:53 - 2014-07-27 12:47 - 00000000 ____D () C:\Users\Nikola
2014-07-22 17:53 - 2014-07-22 17:53 - 00004096 _____ () C:\Windows\SECOH-QAD.exe
2014-07-22 17:53 - 2014-07-22 17:53 - 00003072 _____ () C:\Windows\SECOH-QAD.dll
2014-07-22 17:53 - 2014-07-22 17:53 - 00000020 ___SH () C:\Users\Nikola\ntuser.ini
2014-07-22 17:53 - 2014-07-22 17:53 - 00000000 ____D () C:\Program Files\KMSpico
2014-07-22 17:53 - 2014-03-18 10:14 - 00000000 ___RD () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 17:53 - 2014-03-18 10:14 - 00000000 ___RD () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 17:53 - 2014-03-18 10:03 - 00000369 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-07-22 17:53 - 2014-03-18 10:03 - 00000369 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-07-22 17:53 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-22 17:53 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-22 17:51 - 2014-07-22 17:51 - 00000000 ____D () C:\Windows\CSC
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\MSDOS.SYS
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\IO.SYS

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-27 12:55 - 2014-07-27 12:53 - 00012691 _____ () C:\Users\Nikola\Desktop\FRST.txt
2014-07-27 12:55 - 2014-07-26 18:47 - 00000000 ____D () C:\FRST
2014-07-27 12:52 - 2014-03-18 10:00 - 00818732 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-27 12:50 - 2014-07-26 16:19 - 00179567 _____ () C:\Windows\WindowsUpdate.log
2014-07-27 12:49 - 2014-07-22 18:26 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-27 12:48 - 2014-07-26 19:09 - 00000000 ____D () C:\ProgramData\MCShield
2014-07-27 12:48 - 2014-07-22 18:25 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-27 12:48 - 2014-07-22 18:00 - 00000000 __RDO () C:\Users\Nikola\OneDrive
2014-07-27 12:47 - 2014-07-26 19:38 - 00009412 _____ () C:\zoek-results.log
2014-07-27 12:47 - 2014-07-22 17:53 - 00000000 ____D () C:\Users\Nikola
2014-07-27 12:47 - 2013-08-22 09:23 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-27 12:46 - 2014-07-27 00:41 - 00002778 _____ () C:\Windows\PFRO.log
2014-07-27 12:46 - 2013-08-22 08:13 - 00524288 ___SH () C:\Windows\system32\config\BBI
2014-07-27 12:42 - 2014-07-26 19:37 - 00000000 ____D () C:\zoek_backup
2014-07-27 12:30 - 2014-07-22 18:25 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-27 12:17 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\rescache
2014-07-27 12:16 - 2014-07-27 12:46 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-27 12:08 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-07-27 12:07 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\AppReadiness
2014-07-27 12:00 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\sru
2014-07-27 02:00 - 2014-07-26 17:58 - 00000000 ____D () C:\ProgramData\Adobe
2014-07-27 00:45 - 2014-07-27 00:45 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-27 00:45 - 2014-07-27 00:45 - 00000000 _____ () C:\Windows\setupact.log
2014-07-27 00:41 - 2014-07-22 18:24 - 00000000 ____D () C:\Program Files\Google
2014-07-27 00:41 - 2013-08-22 09:22 - 03851880 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-26 20:38 - 2014-07-26 18:00 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR
2014-07-26 20:38 - 2014-07-26 18:00 - 00000000 ____D () C:\Program Files\Adobe
2014-07-26 20:35 - 2014-07-26 20:33 - 00000000 ___RD () C:\Users\Nikola\Documents\MEGA
2014-07-26 19:47 - 2014-07-27 12:17 - 00074558 _____ () C:\zoek-results2014-07-26-174735.log
2014-07-26 19:36 - 2014-07-26 19:36 - 00000000 ____D () C:\Users\Nikola\Desktop\zoek
2014-07-26 19:09 - 2014-07-26 19:09 - 00000732 _____ () C:\Users\Public\Desktop\MCShield Real-Time Monitor.lnk
2014-07-26 19:09 - 2014-07-26 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2014-07-26 18:46 - 2014-07-26 18:46 - 01084416 _____ (Farbar) C:\Users\Nikola\Desktop\FRST.exe
2014-07-26 18:42 - 2014-07-26 18:42 - 00001374 _____ () C:\Users\Nikola\Desktop\Adobe Photoshop CS5.lnk
2014-07-26 18:37 - 2014-07-26 17:54 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Adobe
2014-07-26 18:37 - 2014-07-22 17:57 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Adobe
2014-07-26 18:06 - 2014-07-26 18:06 - 00000879 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS5.lnk
2014-07-26 18:06 - 2014-07-26 18:06 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-07-26 18:05 - 2014-07-26 18:05 - 00000853 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS5.lnk
2014-07-26 18:04 - 2014-07-26 18:04 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS5.lnk
2014-07-26 18:04 - 2014-07-26 17:56 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2014-07-26 18:02 - 2014-07-26 18:02 - 00000000 ____D () C:\Program Files\Adobe Media Player
2014-07-26 18:01 - 2014-07-26 18:01 - 00001497 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
2014-07-26 18:01 - 2014-07-26 18:01 - 00000973 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS5.lnk
2014-07-26 18:00 - 2014-07-26 18:00 - 00000983 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-07-26 18:00 - 2014-07-26 18:00 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-07-26 17:34 - 2014-07-26 17:34 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Nikola\Downloads\revosetup.exe
2014-07-26 16:12 - 2014-07-22 18:24 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Google
2014-07-26 16:09 - 2014-07-26 16:09 - 00000830 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\AVAST Software
2014-07-26 16:09 - 2014-07-26 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-26 16:09 - 2014-07-26 16:08 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-26 16:07 - 2014-07-26 16:08 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-26 16:07 - 2014-07-26 16:07 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-26 16:07 - 2014-07-26 16:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-26 16:05 - 2014-07-26 16:03 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-26 11:56 - 2013-08-22 10:05 - 00000000 ____D () C:\Windows\CbsTemp
2014-07-26 11:55 - 2014-07-25 16:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-07-26 11:54 - 2014-07-25 16:48 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-25 19:45 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\System
2014-07-25 19:45 - 2013-08-22 08:13 - 00000167 _____ () C:\Windows\win.ini
2014-07-25 19:43 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-07-25 19:36 - 2014-07-25 19:36 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-07-25 19:28 - 2014-07-25 19:28 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-07-25 19:08 - 2014-07-25 18:28 - 00000000 ____D () C:\Windows\AutoKMS
2014-07-25 18:43 - 2014-07-25 16:37 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-07-25 17:55 - 2014-07-25 17:55 - 00000770 _____ () C:\Users\Public\Desktop\MEGAsync.lnk
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Mega Limited
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:55 - 00000000 ____D () C:\ProgramData\MEGAsync
2014-07-25 17:55 - 2014-07-25 17:54 - 08144792 _____ () C:\Users\Nikola\Downloads\MEGAsyncSetup.exe
2014-07-25 17:17 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-07-25 17:05 - 2014-07-22 20:56 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Kingsoft
2014-07-25 17:05 - 2014-07-22 20:56 - 00000000 ____D () C:\ProgramData\kingsoft
2014-07-25 17:04 - 2014-07-25 17:04 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-25 16:58 - 2014-07-25 16:19 - 00000000 ____D () C:\Program Files\VideoLAN
2014-07-25 16:58 - 2014-07-22 17:57 - 00001442 _____ () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-25 16:56 - 2014-03-18 09:39 - 00000000 ____D () C:\Windows\ShellNew
2014-07-25 16:55 - 2014-07-25 16:55 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-07-25 16:53 - 2014-07-25 16:53 - 00000000 ____D () C:\Windows\PCHEALTH
2014-07-25 16:49 - 2014-07-25 16:49 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-07-25 16:48 - 2014-07-25 16:48 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Microsoft Help
2014-07-25 16:44 - 2014-07-23 16:50 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\PeaZip
2014-07-25 16:16 - 2014-07-25 16:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-07-25 15:47 - 2014-07-25 15:47 - 00014810 _____ () C:\Users\Nikola\Downloads\[kickass.to]microsoft.office.proplus.2013.vl.x86.x64.en.us.feb2014.torrent
2014-07-25 15:21 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\qBittorrent
2014-07-25 14:25 - 2014-07-25 14:25 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Oracle
2014-07-25 14:24 - 2014-07-25 14:24 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Sun
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-25 14:21 - 2014-07-25 14:21 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-07-25 14:20 - 2014-07-25 14:21 - 00272808 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-25 14:20 - 2014-07-25 14:21 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-25 14:20 - 2014-07-25 14:21 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-25 14:20 - 2014-07-25 14:21 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-07-25 14:20 - 2014-07-25 14:20 - 00000000 ____D () C:\Program Files\Java
2014-07-25 13:49 - 2014-07-25 13:49 - 00000634 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-07-25 13:49 - 2014-07-25 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-07-25 13:45 - 2014-07-25 13:45 - 00000693 _____ () C:\Users\Nikola\Desktop\qBittorrent.lnk
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\qBittorrent
2014-07-25 13:45 - 2014-07-25 13:45 - 00000000 ____D () C:\Users\Nikola\AppData\Local\qBittorrent
2014-07-25 13:36 - 2014-07-25 13:36 - 00000601 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-07-25 13:36 - 2014-07-25 13:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
2014-07-24 19:04 - 2014-07-24 14:41 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS
2014-07-24 19:04 - 2014-07-24 14:41 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life
2014-07-24 19:04 - 2014-07-24 14:41 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
2014-07-23 19:01 - 2013-08-22 08:13 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-07-23 18:42 - 2014-07-23 17:48 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 12.0
2014-07-23 18:41 - 2014-07-23 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK
2014-07-23 18:41 - 2014-07-23 16:21 - 00000000 ____D () C:\Program Files\Microsoft SDKs
2014-07-23 18:40 - 2014-07-23 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2014-07-23 18:40 - 2014-07-23 17:55 - 00000000 ____D () C:\Program Files\Windows Phone Kits
2014-07-23 18:40 - 2014-07-23 16:18 - 00000000 ____D () C:\Program Files\MSBuild
2014-07-23 18:38 - 2014-07-23 18:22 - 00000000 ____D () C:\Program Files\Microsoft XDE
2014-07-23 18:36 - 2014-07-23 18:13 - 00000000 ____D () C:\Program Files\Common Files\Merge Modules
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Windows\symbols
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2014-07-23 18:35 - 2014-07-23 18:35 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 11.0
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2014-07-23 18:24 - 2014-07-23 18:24 - 00000000 ____D () C:\Program Files\Windows Phone Silverlight Kits
2014-07-23 18:20 - 2014-07-23 18:03 - 00000000 ____D () C:\ProgramData\Windows App Certification Kit
2014-07-23 18:17 - 2014-07-23 18:17 - 00000000 ____D () C:\Program Files\ShellDir
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\ProgramData\NuGet
2014-07-23 18:16 - 2014-07-23 18:16 - 00000000 ____D () C:\Program Files\NuGet
2014-07-23 18:16 - 2014-07-23 17:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2014-07-23 18:03 - 2014-07-23 18:03 - 00000000 ____D () C:\Program Files\Application Verifier
2014-07-23 18:03 - 2014-07-23 18:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2014-07-23 18:01 - 2014-07-23 16:20 - 00000000 ____D () C:\Windows\system32\1033
2014-07-23 17:57 - 2014-07-23 17:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2014-07-23 17:40 - 2014-07-23 16:15 - 00000000 ____D () C:\Program Files\Visual Studio 12.0
2014-07-23 17:17 - 2014-07-23 16:35 - 00000000 ____D () C:\Users\Nikola\Documents\Visual Studio 2013
2014-07-23 16:50 - 2014-07-23 16:50 - 00000649 _____ () C:\Users\Nikola\Desktop\PeaZip.lnk
2014-07-23 16:50 - 2014-07-23 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
2014-07-23 16:45 - 2014-07-23 16:44 - 18168108 _____ () C:\Users\Nikola\Downloads\Universal Windows app samples.zip
2014-07-23 16:37 - 2014-07-23 16:37 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\NuGet
2014-07-23 16:33 - 2014-07-23 16:20 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-07-23 16:27 - 2014-07-23 16:24 - 00000000 ____D () C:\Program Files\Windows Kits
2014-07-23 16:21 - 2014-07-23 16:21 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-07-23 16:18 - 2014-07-23 16:18 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-07-23 16:16 - 2014-07-23 16:16 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-07-23 11:47 - 2014-07-23 03:36 - 00000000 ____D () C:\Windows\Panther
2014-07-23 11:46 - 2014-07-23 11:46 - 00000977 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-07-23 11:46 - 2014-07-23 11:46 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-23 11:26 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public
2014-07-23 03:35 - 2014-06-15 11:43 - 00008192 __RSH () C:\BOOTSECT.BAK
2014-07-23 03:35 - 2013-08-22 10:17 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2014-07-23 02:39 - 2014-06-15 01:49 - 00000000 __SHD () C:\Recovery
2014-07-23 02:39 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\Recovery
2014-07-23 02:37 - 2014-07-23 02:37 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-07-22 22:41 - 2014-03-18 09:39 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Windows\ToastData
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-22 22:41 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender
2014-07-22 22:40 - 2013-08-22 10:17 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-07-22 22:40 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\WinStore
2014-07-22 22:40 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2014-07-22 22:29 - 2014-07-22 22:27 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-22 21:25 - 2013-08-22 10:17 - 00000000 ____D () C:\Windows\system32\restore
2014-07-22 20:56 - 2014-07-22 18:38 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Kingsoft
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Sublime Text 3
2014-07-22 18:39 - 2014-07-22 18:39 - 00000000 ____D () C:\Users\Nikola\AppData\Local\Sublime Text 3
2014-07-22 18:26 - 2014-07-22 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-22 18:15 - 2014-07-22 18:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-07-22 18:01 - 2014-07-22 18:01 - 00000000 ____D () C:\Users\Nikola\AppData\Roaming\Macromedia
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieUserList
2014-07-22 18:00 - 2014-07-22 18:00 - 00000000 __SHD () C:\Users\Nikola\AppData\Local\EmieSiteList
2014-07-22 17:57 - 2014-07-22 17:57 - 00000000 ____D () C:\Users\Nikola\AppData\Local\VirtualStore
2014-07-22 17:53 - 2014-07-22 17:53 - 00004096 _____ () C:\Windows\SECOH-QAD.exe
2014-07-22 17:53 - 2014-07-22 17:53 - 00003072 _____ () C:\Windows\SECOH-QAD.dll
2014-07-22 17:53 - 2014-07-22 17:53 - 00000020 ___SH () C:\Users\Nikola\ntuser.ini
2014-07-22 17:53 - 2014-07-22 17:53 - 00000000 ____D () C:\Program Files\KMSpico
2014-07-22 17:51 - 2014-07-22 17:51 - 00000000 ____D () C:\Windows\CSC
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\MSDOS.SYS
2014-06-30 21:57 - 2014-06-30 21:57 - 00000000 __RSH () C:\IO.SYS

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-23 02:36

==================== End Of Log ============================

https://www.mycity.rs/must-login.png

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Kakvo je sada stanje? Da li još uvek dobijaš neka obaveštenja?

offline
  • Programer
  • Pridružio: 23 Maj 2012
  • Poruke: 4533

Napisano: 27 Jul 2014 23:22

Sada je sve u redu, procesi su nestali i nema reklami Very Happy

Dopuna: 27 Jul 2014 23:23

Zaboravih, hvala na pomoci Ziveli

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

To je to, još samo da uklonimo alate koje smo koristili.



Sledeća procedura će implementirati završno čišćenje.

Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.
Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;

Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.
Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)

Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
Alat briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.





Ivance95 (AMF Tim)

Ko je trenutno na forumu
 

Ukupno su 558 korisnika na forumu :: 32 registrovanih, 5 sakrivenih i 521 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: _commandos_, _Rade, A.R.Chafee.Jr., Boris90, Botovac, darkangel, darkstar101, djboj, Djole, Dorcolac, dragonserbia, dule10savic, FOX, Gama, Georgius, goxin, Ilija Cvorovic, Ilija Grubor, indja, Konda, kovinacc, mercedesamg, Miskohd, Mixelotti, moldway, mushroom, Nebo_M, nuke92, sabros, stug, Username1000, Vlada1389