SkinPack

1

SkinPack

offline
  • Pridružio: 26 Maj 2016
  • Poruke: 5

Pre nekoliko sati sam preuzeo Ubuntu SkinPack sa myskinpack.com/download-ubuntu-skinpack/ .
Samo je uspeo da instalira doker sa leve strane i start panel je pomerio gore. Sem toga, počeo je sâm automatski da preuzima neke programe pa mi se na ekranu pojavile neke dve kocke sa nekim sadržajem, zatim neki kineski program i tada sam ukapirao da to nije u redu. Samo su iskakali neki prozori u kojima se nešto novo instalira, sve više se preuzimalo sa interneta i tada sam izvukao kabal za internet.
Jedva sam uspeo da pogasim sve to i da obrišem preko kontrol panela. Jedino primetno što je ostalo su početne stranice na Fajerfoksu koje se ne mogu izmeniti. To su hohosearch.com/?ts=AHEqB38rB3MpBU..&.....mode=nnnbe i yeabests.cc/ .
Zatim, u C:\Program Files (x86)\ se nalazi folder "Tencent" koji ne mogu da obrišem, kaže da nemam dozvole. Ima još čudnih foldera u program fajlsu.
Sistem je Vindouz 10, a antivirus nemam. Sistem sam prekjuče instalirao.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:25-05-2016 01
Ran by Niki (administrator) on MASCHINCHE (26-05-2016 18:16:40)
Running from C:\Users\Niki\Desktop
Loaded Profiles: Niki (Available Profiles: Niki)
Platform: Windows 10 Pro Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
() C:\Program Files (x86)\23DEEA6C-1464279961-F368-16C0-F832E48C4B0C\znsp2E54.tmp
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
() C:\Users\Niki\AppData\Local\23DEEA6C-1464281818-F368-16C0-F832E48C4B0C\qnsx862D.tmp
(Skype Technologies) C:\ProgramData\tasklist.exe
(深圳市迅雷网络技术有限公司) C:\ProgramData\download\MiniThunderPlatform.exe
() C:\Users\Niki\AppData\Local\Temp\is-ELM2J.tmp\AutoTime.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
(Tencent) C:\Program Files (x86)\Common Files\Tencent\QQDownload\130\Tencentdl.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
() C:\ProgramData\RandomDelJiheReg.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [tasklist.exe -start] => C:\ProgramData\tasklist.exe [5714944 2016-05-16] (Skype Technologies)
HKLM-x32\...\Run: [apphide] => C:\Program Files (x86)\badu\uc.exe
HKLM-x32\...\Run: [ QQPCTray] => C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe [362304 2016-05-26] (Tencent)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-2005897479-4078680267-747680915-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-2005897479-4078680267-747680915-1001\...\Run: [QGuan00] => c:\programdata\setup_qg00.exe [1920512 2016-05-22] ()
ShellExecuteHooks: - {7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} - C:\Users\Niki\AppData\Local\Microsoft\Windows\INetCookies\x64explibss.dll [416440 2016-05-26] ()
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMGCShellExt64.dll [2016-05-26] (Tencent)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{70308af1-a8d0-4a04-81b8-d30f8822a8a1}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSWebMon64.dat [2016-05-26] (Tencent)

FireFox:
========
FF ProfilePath: C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default
FF NewTab: hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqB38rB3MpBU..&v=20160526&uid=CA2EE92E204344B9B25807EB14593F56&ptid=clc&mode=loadm
FF DefaultSearchEngine: cloudfront
FF DefaultSearchEngine.US: data:text/plain,browser.search.defaultenginename.US=cloudfront
FF SelectedSearchEngine: hohosearch
FF Homepage: google.rs
FF Keyword.URL: hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?uid=CA2EE92E204344B9B25807EB14593F56&ptid=clc&ts=AHEqB38rB3MpBU..&v=20160526&mode=ffexttoolbar&q=
FF SearchPlugin: C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\searchplugins\hhckdr3x.xml [2016-05-26]
FF Extension: MEGA - C:\Users\Niki\AppData\Roaming\Mozilla\Firefox\Profiles\k8tjf7lw.default\Extensions\firefox@mega.co.nz.xpi [2016-05-24]
FF Extension: GsearchFinder - C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\Extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi [2016-05-26]
FF Extension: MEGA - C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\Extensions\firefox@mega.co.nz.xpi [2016-05-24]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 Anqhstservice; C:\Program Files (x86)\Anaqatoch\Anqhstservice.exe [993432 2016-05-26] ()
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-07-04] ()
S2 GoogleChromeUpService; C:\ProgramData\service.exe [1755136 2016-05-26] () [File not signed]
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation)
R2 jiwizuqe; C:\Program Files (x86)\23DEEA6C-1464279961-F368-16C0-F832E48C4B0C\znsp2E54.tmp [188928 2016-05-01] () [File not signed]
R2 QQPCRTP; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe [313936 2016-05-26] (Tencent)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
R2 zigipyro; C:\Users\Niki\AppData\Local\23DEEA6C-1464281818-F368-16C0-F832E48C4B0C\qnsx862D.tmp [158720 2015-12-26] () [File not signed]
U2 QQRepaira61; "C:\Program Files (x86)\Tencent\QQPCMGR\QQRepaira61" [X]
S2 QQRepairFixSVC; C:\Program Files (x86)\Tencent\QQPCMGR\QQRepairFixSVC [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2013-07-04] ()
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [202032 2016-01-19] (Intel Corporation)
R1 QMUdisk; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMUdisk64.sys [184952 2016-05-18] (Tencent)
R2 QQSysMonX64; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQSysMonX64.sys [154744 2016-05-26] (电脑管家)
R2 RtNdPt630; C:\Windows\system32\DRIVERS\RtNdPt630.sys [28888 2013-09-26] (Realtek Semiconductor Corp.)
S3 RTTEAMPT; C:\Windows\system32\DRIVERS\RtTeam620.sys [58512 2012-07-03] (Realtek Corporation)
R1 softaal; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\softaal64.sys [44664 2016-05-26] (Tencent)
R1 SRepairDrv; \??\C:\Program Files (x86)\Tencent\QQPCMGR\SRepairDrv [168568 2016-05-26] ()
R3 TAOAccelerator; C:\WINDOWS\system32\Drivers\TAOAccelerator64.sys [99480 2016-05-26] (Tencent)
R2 TAOKernelDriver; C:\WINDOWS\system32\Drivers\TAOKernelEx64.sys [143992 2016-05-26] (Tencent Technology(Shenzhen) Company Limited)
R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [97400 2016-05-26] (电脑管家)
S1 TSDefenseBt; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSDefenseBT64.sys [28984 2016-05-26] (Tencent)
R2 tsnethlpx64; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TsNetHlpX64.sys [57976 2016-05-26] ()
R4 TSSysKit; C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSSysKit64.sys [96888 2016-05-26] (电脑管家)
U1 UCGuard; C:\Windows\System32\DRIVERS\ucguard.sys [80768 2016-04-25] (Huorong Borui (Beijing) Technology Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-05-26 18:16 - 2016-05-26 18:17 - 00008884 _____ C:\Users\Niki\Desktop\FRST.txt
2016-05-26 18:16 - 2016-05-26 18:16 - 00000000 ____D C:\FRST
2016-05-26 18:14 - 2016-05-26 18:14 - 02383360 _____ (Farbar) C:\Users\Niki\Desktop\FRST64.exe
2016-05-26 18:14 - 2016-05-26 18:14 - 00000000 _____ C:\Users\Niki\Desktop\izveštaj.txt
2016-05-26 17:03 - 2016-05-26 17:03 - 00003250 _____ C:\WINDOWS\System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34}
2016-05-26 17:00 - 2016-05-26 17:00 - 00000000 ____D C:\Users\Niki\AppData\Local\UCBrowser
2016-05-26 17:00 - 2016-05-26 11:30 - 00339968 _____ C:\ProgramData\RandomDelJiheReg.exe
2016-05-26 17:00 - 2016-04-25 20:55 - 00080768 _____ (Huorong Borui (Beijing) Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\ucguard.sys
2016-05-26 16:59 - 2016-05-26 16:59 - 00143992 _____ (Tencent Technology(Shenzhen) Company Limited) C:\WINDOWS\system32\Drivers\TAOKernelEx64.sys
2016-05-26 16:59 - 2016-05-26 16:59 - 00099480 _____ (Tencent) C:\WINDOWS\system32\Drivers\TAOAccelerator64.sys
2016-05-26 16:59 - 2016-05-26 16:59 - 00097400 _____ (电脑管家) C:\WINDOWS\system32\Drivers\TFsFltX64.sys
2016-05-26 16:59 - 2016-05-26 16:59 - 00003076 _____ C:\WINDOWS\System32\Tasks\tasklist
2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 ____D C:\ProgramData\TXQMPC
2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 ____D C:\Program Files\Common Files\Tencent
2016-05-26 16:59 - 2016-05-22 15:03 - 01920512 _____ C:\ProgramData\setup_qg00.exe
2016-05-26 16:58 - 2016-05-26 17:04 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Tencent
2016-05-26 16:58 - 2016-05-26 17:01 - 00000000 ____D C:\ProgramData\Tencent
2016-05-26 16:58 - 2016-05-26 17:00 - 00000000 ____D C:\Program Files (x86)\badu
2016-05-26 16:58 - 2016-05-26 16:58 - 00008892 _____ C:\WINDOWS\System32\Tasks\Anaqatoch Host
2016-05-26 16:58 - 2016-05-26 16:58 - 00000000 ____D C:\Program Files (x86)\Tencent
2016-05-26 16:58 - 2016-05-24 03:43 - 01609216 _____ C:\ProgramData\RiliDlr.exe
2016-05-26 16:57 - 2016-05-26 17:03 - 00000000 ____D C:\Program Files (x86)\Phubish
2016-05-26 16:57 - 2016-05-26 17:02 - 00000000 ____D C:\Users\Niki\AppData\Local\app
2016-05-26 16:57 - 2016-05-26 17:02 - 00000000 ____D C:\Program Files (x86)\CleanBrowser
2016-05-26 16:57 - 2016-05-26 16:58 - 00000000 ____D C:\Program Files (x86)\Cknather
2016-05-26 16:57 - 2016-05-26 16:58 - 00000000 ____D C:\Program Files (x86)\Anaqatoch
2016-05-26 16:57 - 2016-05-26 16:57 - 01755136 _____ C:\ProgramData\service.exe
2016-05-26 16:57 - 2016-05-26 16:57 - 00293320 _____ (深圳市迅雷网络技术有限公司) C:\ProgramData\xldl.dll
2016-05-26 16:57 - 2016-05-26 16:57 - 00001165 _____ C:\Users\Niki\Desktop\AutoTime.lnk
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\Users\Public\Thunder Network
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\Users\Niki\AppData\Roaming\UPUpdata
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\ProgramData\Thunder Network
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\ProgramData\download
2016-05-26 16:57 - 2016-05-17 08:15 - 00114176 _____ C:\ProgramData\hp.exe
2016-05-26 16:57 - 2016-05-16 17:09 - 05714944 _____ (Skype Technologies) C:\ProgramData\tasklist.exe
2016-05-26 16:56 - 2016-05-26 17:02 - 00000000 ____D C:\Users\Niki\AppData\Local\23DEEA6C-1464281818-F368-16C0-F832E48C4B0C
2016-05-26 16:26 - 2016-05-26 17:49 - 00000000 ____D C:\Program Files (x86)\23DEEA6C-1464279961-F368-16C0-F832E48C4B0C
2016-05-26 16:24 - 2016-05-26 17:01 - 00003644 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2016-05-26 16:23 - 2016-05-26 17:01 - 00000000 ____D C:\SkinPack
2016-05-26 16:22 - 2016-05-26 16:22 - 27464958 _____ C:\Users\Niki\Downloads\SkinPack Ubuntu 3.0.sfx.exe
2016-05-26 16:22 - 2016-03-11 18:18 - 27466616 _____ C:\Users\Niki\Downloads\SkinPack Ubuntu 3.0.exe
2016-05-26 02:30 - 2016-05-26 02:30 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-05-25 21:13 - 2016-05-25 21:13 - 00001801 _____ C:\Users\Public\Desktop\Subnautica.lnk
2016-05-25 21:13 - 2016-05-25 21:13 - 00000124 _____ C:\Users\Public\Desktop\Subnautica on the Web.url
2016-05-25 21:13 - 2016-05-25 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subnautica
2016-05-25 21:06 - 2016-05-26 15:47 - 00000000 ____D C:\Program Files\Subnautica
2016-05-25 21:05 - 2016-05-25 21:10 - 55202117 _____ C:\Users\Niki\Downloads\ShadowOfMordor.exe
2016-05-25 20:20 - 2016-05-25 20:25 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-25 20:20 - 2016-05-25 20:20 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-25 19:55 - 2016-05-26 13:27 - 00000000 ____D C:\Users\Niki\AppData\LocalLow\uTorrent
2016-05-25 19:51 - 2016-05-25 19:51 - 00002679 _____ C:\Users\Niki\Desktop\µTorrent.lnk
2016-05-25 19:50 - 2016-05-26 14:09 - 00000000 ____D C:\Users\Niki\AppData\Roaming\uTorrent
2016-05-25 19:50 - 2016-05-25 19:50 - 02530304 _____ (BitTorrent Inc.) C:\Users\Niki\Downloads\uTorrent.exe
2016-05-25 19:49 - 2016-05-25 19:49 - 00031144 _____ C:\Users\Niki\Downloads\Subnautica.b498.r32677.torrent
2016-05-25 06:06 - 2016-05-25 00:00 - 00000000 ___DC C:\WINDOWS\Panther
2016-05-25 06:05 - 2016-05-25 06:05 - 00000000 ____D C:\Windows.old
2016-05-25 06:04 - 2016-05-25 06:04 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-05-25 06:04 - 2016-05-25 06:04 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-05-25 06:04 - 2016-05-25 06:04 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-05-25 01:38 - 2016-05-24 19:54 - 00008192 __RSH C:\BOOTSECT.BAK
2016-05-24 23:02 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-24 23:02 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-24 23:02 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-24 23:02 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-24 23:02 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-24 23:02 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-05-24 23:02 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-24 23:02 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-05-24 23:02 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-24 23:02 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-05-24 23:02 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-24 23:02 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-24 23:02 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-24 23:02 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-24 23:02 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-24 23:02 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-24 23:02 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-05-24 23:02 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-24 23:02 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-05-24 23:02 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-24 23:02 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-24 23:02 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-24 23:02 - 2016-04-22 09:57 - 00453288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-05-24 23:02 - 2016-03-29 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-05-24 23:02 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-05-24 23:02 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-05-24 23:02 - 2016-03-29 08:26 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-05-24 23:02 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-05-24 23:02 - 2016-02-23 12:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-05-24 23:02 - 2016-02-23 11:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-05-24 23:02 - 2016-02-23 09:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-05-24 23:01 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-24 23:01 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-24 23:01 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-24 23:01 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-24 23:01 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-24 23:01 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-24 23:01 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-24 23:01 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-24 23:01 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-24 23:01 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-05-24 23:01 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-24 23:01 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-24 23:01 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-24 23:01 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-24 23:01 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-05-24 23:01 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-05-24 23:01 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-05-24 23:01 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-24 23:01 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-24 23:01 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-24 23:01 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-05-24 23:01 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-24 23:01 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-24 23:01 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-24 23:01 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-05-24 23:01 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-24 23:01 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-24 23:01 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-24 23:01 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-24 23:01 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-24 23:01 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-24 23:01 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-24 23:01 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-05-24 23:01 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-24 23:01 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-24 23:01 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-05-24 23:01 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-05-24 23:01 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-05-24 23:01 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-24 23:01 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-24 23:01 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-24 23:01 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-24 23:01 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-24 23:01 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-05-24 23:01 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-05-24 23:01 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-24 23:01 - 2016-04-02 06:13 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-05-24 23:01 - 2016-04-02 05:19 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-05-24 23:01 - 2016-04-02 05:14 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-05-24 23:01 - 2016-04-02 05:07 - 03575296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-05-24 23:01 - 2016-03-29 12:20 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-05-24 23:01 - 2016-03-29 12:18 - 02152280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-05-24 23:01 - 2016-03-29 11:56 - 01297752 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-05-24 23:01 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-05-24 23:01 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-05-24 23:01 - 2016-03-29 11:11 - 00605440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-05-24 23:01 - 2016-03-29 10:26 - 02403680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-05-24 23:01 - 2016-03-29 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-05-24 23:01 - 2016-03-29 09:34 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-05-24 23:01 - 2016-03-29 09:20 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-05-24 23:01 - 2016-03-29 09:15 - 01714688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-05-24 23:01 - 2016-03-29 09:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-05-24 23:01 - 2016-03-29 09:14 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-05-24 23:01 - 2016-03-29 09:07 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-05-24 23:01 - 2016-03-29 09:06 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-05-24 23:01 - 2016-03-29 09:02 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-05-24 23:01 - 2016-03-29 09:02 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-05-24 23:01 - 2016-03-29 09:00 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-05-24 23:01 - 2016-03-29 08:42 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-05-24 23:01 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-05-24 23:01 - 2016-03-29 08:36 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-05-24 23:01 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-05-24 23:01 - 2016-03-29 08:32 - 01098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-05-24 23:01 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-05-24 23:01 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-05-24 23:01 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-05-24 23:01 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-05-24 23:01 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-05-24 23:01 - 2016-03-29 08:19 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-05-24 23:01 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-05-24 23:01 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-05-24 23:01 - 2016-03-29 08:05 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-05-24 23:01 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-05-24 23:01 - 2016-03-29 07:45 - 03078144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-05-24 23:01 - 2016-03-29 07:43 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-05-24 23:01 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-05-24 23:01 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-05-24 23:01 - 2016-03-29 07:26 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-05-24 23:01 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-05-24 23:01 - 2016-03-01 07:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-05-24 23:01 - 2016-03-01 07:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-05-24 23:01 - 2016-02-24 11:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-05-24 23:01 - 2016-02-24 11:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-05-24 23:01 - 2016-02-24 08:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-05-24 23:01 - 2016-02-24 07:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-05-24 23:01 - 2016-02-24 07:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-05-24 23:01 - 2016-02-24 07:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-05-24 23:01 - 2016-02-24 07:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-05-24 23:01 - 2016-02-23 12:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-05-24 23:01 - 2016-02-23 12:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-05-24 23:01 - 2016-02-23 12:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-05-24 23:01 - 2016-02-23 12:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-05-24 23:01 - 2016-02-23 12:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-05-24 23:01 - 2016-02-23 12:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-05-24 23:01 - 2016-02-23 11:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-05-24 23:01 - 2016-02-23 11:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-05-24 23:01 - 2016-02-23 11:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-05-24 23:01 - 2016-02-23 11:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-05-24 23:01 - 2016-02-23 11:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-05-24 23:01 - 2016-02-23 11:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-05-24 23:01 - 2016-02-23 11:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-05-24 23:01 - 2016-02-23 10:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-05-24 23:01 - 2016-02-23 10:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-05-24 23:01 - 2016-02-23 10:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-05-24 23:01 - 2016-02-23 10:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-05-24 23:01 - 2016-02-23 10:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-05-24 23:01 - 2016-02-23 10:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-05-24 23:01 - 2016-02-23 10:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-05-24 23:01 - 2016-02-23 09:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-05-24 23:01 - 2016-02-23 09:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-05-24 23:01 - 2016-02-23 09:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-05-24 23:01 - 2016-02-23 08:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-05-24 23:01 - 2016-02-23 08:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-05-24 23:01 - 2016-02-23 08:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-05-24 23:01 - 2016-02-23 08:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-05-24 23:01 - 2016-02-23 08:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-05-24 23:00 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-24 23:00 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-24 23:00 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-24 23:00 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-24 23:00 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-24 23:00 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-24 23:00 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-24 23:00 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-24 23:00 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-24 23:00 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-05-24 23:00 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-05-24 23:00 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-05-24 23:00 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-24 23:00 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-24 23:00 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-24 23:00 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-24 23:00 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-24 23:00 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-24 23:00 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-05-24 23:00 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-24 23:00 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-05-24 23:00 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-24 23:00 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-24 23:00 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-05-24 23:00 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-24 23:00 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-05-24 23:00 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-24 23:00 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-24 23:00 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-05-24 23:00 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-24 23:00 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-05-24 23:00 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-24 23:00 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-24 23:00 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-24 23:00 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-24 23:00 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-24 23:00 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-24 23:00 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-24 23:00 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-24 23:00 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-24 23:00 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-24 23:00 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-24 23:00 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-24 23:00 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-24 23:00 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-24 23:00 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-24 23:00 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-24 23:00 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-24 23:00 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-24 23:00 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-24 23:00 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-24 23:00 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-24 23:00 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-05-24 23:00 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-24 23:00 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-24 23:00 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-24 23:00 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-05-24 23:00 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-24 23:00 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-24 23:00 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-05-24 23:00 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-24 23:00 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-24 23:00 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-05-24 23:00 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-24 23:00 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-24 23:00 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-05-24 23:00 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-05-24 23:00 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-05-24 23:00 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-05-24 23:00 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-24 23:00 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-05-24 23:00 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-24 23:00 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-24 23:00 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-24 23:00 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-24 23:00 - 2016-04-02 06:10 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-05-24 23:00 - 2016-03-29 12:23 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-05-24 23:00 - 2016-03-29 12:22 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-05-24 23:00 - 2016-03-29 12:22 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-05-24 23:00 - 2016-03-29 12:20 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-05-24 23:00 - 2016-03-29 12:20 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-05-24 23:00 - 2016-03-29 12:11 - 00686976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-05-24 23:00 - 2016-03-29 12:05 - 01152864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-05-24 23:00 - 2016-03-29 12:02 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-05-24 23:00 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-05-24 23:00 - 2016-03-29 11:25 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-05-24 23:00 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-05-24 23:00 - 2016-03-29 11:08 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-05-24 23:00 - 2016-03-29 11:08 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-05-24 23:00 - 2016-03-29 10:41 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-05-24 23:00 - 2016-03-29 10:26 - 01089888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-05-24 23:00 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-05-24 23:00 - 2016-03-29 10:21 - 00378208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-05-24 23:00 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-05-24 23:00 - 2016-03-29 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-05-24 23:00 - 2016-03-29 09:51 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-05-24 23:00 - 2016-03-29 09:48 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-05-24 23:00 - 2016-03-29 09:46 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-05-24 23:00 - 2016-03-29 09:44 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-05-24 23:00 - 2016-03-29 09:39 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-05-24 23:00 - 2016-03-29 09:36 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-05-24 23:00 - 2016-03-29 09:36 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-05-24 23:00 - 2016-03-29 09:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-05-24 23:00 - 2016-03-29 09:35 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-05-24 23:00 - 2016-03-29 09:34 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-05-24 23:00 - 2016-03-29 09:30 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-05-24 23:00 - 2016-03-29 09:27 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-05-24 23:00 - 2016-03-29 09:26 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-05-24 23:00 - 2016-03-29 09:23 - 00694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-05-24 23:00 - 2016-03-29 09:23 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-05-24 23:00 - 2016-03-29 09:22 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-05-24 23:00 - 2016-03-29 09:20 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-05-24 23:00 - 2016-03-29 09:19 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-05-24 23:00 - 2016-03-29 09:17 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-05-24 23:00 - 2016-03-29 09:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-05-24 23:00 - 2016-03-29 09:11 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-05-24 23:00 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-05-24 23:00 - 2016-03-29 09:09 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-05-24 23:00 - 2016-03-29 09:08 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-05-24 23:00 - 2016-03-29 09:08 - 00841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-05-24 23:00 - 2016-03-29 09:05 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-05-24 23:00 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-05-24 23:00 - 2016-03-29 09:03 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-05-24 23:00 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-05-24 23:00 - 2016-03-29 09:00 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-05-24 23:00 - 2016-03-29 08:59 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-05-24 23:00 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-05-24 23:00 - 2016-03-29 08:55 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-05-24 23:00 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-05-24 23:00 - 2016-03-29 08:49 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-05-24 23:00 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-05-24 23:00 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2016-05-24 23:00 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-05-24 23:00 - 2016-03-29 08:40 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-05-24 23:00 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-05-24 23:00 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-05-24 23:00 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-05-24 23:00 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-05-24 23:00 - 2016-03-29 08:34 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-05-24 23:00 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-05-24 23:00 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-05-24 23:00 - 2016-03-29 08:32 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-05-24 23:00 - 2016-03-29 08:32 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-05-24 23:00 - 2016-03-29 08:29 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-05-24 23:00 - 2016-03-29 08:29 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-05-24 23:00 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-05-24 23:00 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-05-24 23:00 - 2016-03-29 08:17 - 00765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-05-24 23:00 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-05-24 23:00 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-05-24 23:00 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-05-24 23:00 - 2016-03-29 08:05 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-05-24 23:00 - 2016-03-29 08:04 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-05-24 23:00 - 2016-03-29 08:01 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-05-24 23:00 - 2016-03-29 07:45 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-05-24 23:00 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-05-24 23:00 - 2016-02-24 10:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-05-24 23:00 - 2016-02-24 10:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-05-24 23:00 - 2016-02-24 10:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-05-24 23:00 - 2016-02-24 10:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-05-24 23:00 - 2016-02-24 10:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-05-24 23:00 - 2016-02-24 10:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-05-24 23:00 - 2016-02-24 10:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-05-24 23:00 - 2016-02-24 10:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-05-24 23:00 - 2016-02-24 09:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-05-24 23:00 - 2016-02-24 09:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-05-24 23:00 - 2016-02-24 09:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-05-24 23:00 - 2016-02-24 08:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-05-24 23:00 - 2016-02-24 08:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-05-24 23:00 - 2016-02-24 08:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-05-24 23:00 - 2016-02-24 08:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-05-24 23:00 - 2016-02-24 08:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-05-24 23:00 - 2016-02-24 08:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-05-24 23:00 - 2016-02-24 08:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-05-24 23:00 - 2016-02-24 08:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-05-24 23:00 - 2016-02-24 08:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-05-24 23:00 - 2016-02-24 08:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-05-24 23:00 - 2016-02-24 08:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-05-24 23:00 - 2016-02-24 08:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-05-24 23:00 - 2016-02-24 08:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-05-24 23:00 - 2016-02-24 08:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-05-24 23:00 - 2016-02-24 08:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-05-24 23:00 - 2016-02-24 08:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-05-24 23:00 - 2016-02-24 08:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-05-24 23:00 - 2016-02-24 08:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-05-24 23:00 - 2016-02-24 08:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-05-24 23:00 - 2016-02-24 08:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-05-24 23:00 - 2016-02-24 08:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-05-24 23:00 - 2016-02-24 08:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-05-24 23:00 - 2016-02-24 08:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-05-24 23:00 - 2016-02-23 13:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-05-24 23:00 - 2016-02-23 13:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-05-24 23:00 - 2016-02-23 12:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-05-24 23:00 - 2016-02-23 12:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-05-24 23:00 - 2016-02-23 12:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-05-24 23:00 - 2016-02-23 11:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-05-24 23:00 - 2016-02-23 11:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-05-24 23:00 - 2016-02-23 11:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-05-24 23:00 - 2016-02-23 11:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-05-24 23:00 - 2016-02-23 11:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-05-24 23:00 - 2016-02-23 10:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-05-24 23:00 - 2016-02-23 10:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-05-24 23:00 - 2016-02-23 10:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-05-24 23:00 - 2016-02-23 10:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-05-24 23:00 - 2016-02-23 10:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-05-24 23:00 - 2016-02-23 10:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-05-24 23:00 - 2016-02-23 10:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-05-24 23:00 - 2016-02-23 10:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-05-24 23:00 - 2016-02-23 10:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-05-24 23:00 - 2016-02-23 10:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-05-24 23:00 - 2016-02-23 10:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-05-24 23:00 - 2016-02-23 10:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-05-24 23:00 - 2016-02-23 10:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-05-24 23:00 - 2016-02-23 10:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-05-24 23:00 - 2016-02-23 10:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-05-24 23:00 - 2016-02-23 10:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-05-24 23:00 - 2016-02-23 10:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-05-24 23:00 - 2016-02-23 10:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-05-24 23:00 - 2016-02-23 10:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-05-24 23:00 - 2016-02-23 09:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-05-24 23:00 - 2016-02-23 09:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-05-24 23:00 - 2016-02-23 09:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-05-24 23:00 - 2016-02-23 09:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-05-24 23:00 - 2016-02-23 09:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-05-24 23:00 - 2016-02-23 09:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-05-24 23:00 - 2016-02-23 09:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-05-24 23:00 - 2016-02-23 09:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-05-24 23:00 - 2016-02-23 09:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-05-24 23:00 - 2016-02-23 09:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-05-24 23:00 - 2016-02-23 09:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-05-24 23:00 - 2016-02-09 05:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-05-24 23:00 - 2016-02-09 05:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-05-24 23:00 - 2016-02-09 05:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-05-24 22:59 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-05-24 22:59 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-24 22:59 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-24 22:59 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-24 22:59 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-24 22:59 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-24 22:59 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-24 22:59 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-05-24 22:59 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-05-24 22:59 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-24 22:59 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-24 22:59 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-24 22:59 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-05-24 22:59 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-24 22:59 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-05-24 22:59 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-24 22:59 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-05-24 22:59 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-24 22:59 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-24 22:59 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-24 22:59 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-24 22:59 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-24 22:59 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-24 22:59 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-24 22:59 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-24 22:59 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-24 22:59 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-24 22:59 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-24 22:59 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-24 22:59 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-24 22:59 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-24 22:59 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-24 22:59 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-05-24 22:59 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-05-24 22:59 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-24 22:59 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-24 22:59 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-24 22:59 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-05-24 22:59 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-05-24 22:59 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-05-24 22:59 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-24 22:59 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-24 22:59 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-24 22:59 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-24 22:59 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-05-24 22:59 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-24 22:59 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-05-24 22:59 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-24 22:59 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-05-24 22:59 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-05-24 22:59 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-05-24 22:59 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-24 22:59 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-24 22:59 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-24 22:59 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-05-24 22:59 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-24 22:59 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-24 22:59 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-05-24 22:59 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-05-24 22:59 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-05-24 22:59 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-24 22:59 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-05-24 22:59 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-05-24 22:59 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-05-24 22:59 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-24 22:59 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-05-24 22:59 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-05-24 22:59 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-24 22:59 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-24 22:59 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-05-24 22:59 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-05-24 22:59 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-05-24 22:59 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-05-24 22:59 - 2016-04-02 06:10 - 00770640 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-05-24 22:59 - 2016-04-02 06:10 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-05-24 22:59 - 2016-04-02 05:25 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-05-24 22:59 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-05-24 22:59 - 2016-03-29 12:15 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-05-24 22:59 - 2016-03-29 12:02 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-05-24 22:59 - 2016-03-29 11:25 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-05-24 22:59 - 2016-03-29 11:18 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-05-24 22:59 - 2016-03-29 11:11 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-05-24 22:59 - 2016-03-29 11:10 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-05-24 22:59 - 2016-03-29 11:09 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-05-24 22:59 - 2016-03-29 11:07 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-05-24 22:59 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-05-24 22:59 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-05-24 22:59 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-05-24 22:59 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-05-24 22:59 - 2016-03-29 10:16 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-05-24 22:59 - 2016-03-29 10:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-05-24 22:59 - 2016-03-29 10:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-05-24 22:59 - 2016-03-29 10:07 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-05-24 22:59 - 2016-03-29 10:07 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-05-24 22:59 - 2016-03-29 10:06 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-05-24 22:59 - 2016-03-29 10:02 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-05-24 22:59 - 2016-03-29 10:00 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-05-24 22:59 - 2016-03-29 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-05-24 22:59 - 2016-03-29 09:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-05-24 22:59 - 2016-03-29 09:57 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-05-24 22:59 - 2016-03-29 09:57 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-05-24 22:59 - 2016-03-29 09:55 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-05-24 22:59 - 2016-03-29 09:55 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-05-24 22:59 - 2016-03-29 09:54 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-05-24 22:59 - 2016-03-29 09:53 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-05-24 22:59 - 2016-03-29 09:52 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-05-24 22:59 - 2016-03-29 09:51 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-05-24 22:59 - 2016-03-29 09:50 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-05-24 22:59 - 2016-03-29 09:50 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-05-24 22:59 - 2016-03-29 09:50 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-05-24 22:59 - 2016-03-29 09:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-05-24 22:59 - 2016-03-29 09:49 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-05-24 22:59 - 2016-03-29 09:46 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-05-24 22:59 - 2016-03-29 09:34 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-05-24 22:59 - 2016-03-29 09:33 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-05-24 22:59 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-05-24 22:59 - 2016-03-29 09:21 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-05-24 22:59 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-05-24 22:59 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-05-24 22:59 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-05-24 22:59 - 2016-03-29 09:18 - 00676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-05-24 22:59 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-05-24 22:59 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-05-24 22:59 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-05-24 22:59 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-05-24 22:59 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-05-24 22:59 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-05-24 22:59 - 2016-03-29 09:00 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-05-24 22:59 - 2016-03-29 08:59 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-05-24 22:59 - 2016-03-29 08:59 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-05-24 22:59 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-05-24 22:59 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-05-24 22:59 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-05-24 22:59 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-05-24 22:59 - 2016-03-29 08:32 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-05-24 22:59 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-05-24 22:59 - 2016-03-29 07:35 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-05-24 22:59 - 2016-03-29 07:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-05-24 22:59 - 2016-03-29 07:27 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-05-24 22:59 - 2016-03-29 07:26 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-05-24 22:59 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-05-24 22:59 - 2016-03-29 07:21 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-05-24 22:59 - 2016-02-24 10:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-05-24 22:59 - 2016-02-24 10:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-05-24 22:59 - 2016-02-24 10:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-05-24 22:59 - 2016-02-24 10:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-05-24 22:59 - 2016-02-24 09:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-05-24 22:59 - 2016-02-24 09:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-05-24 22:59 - 2016-02-24 09:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-05-24 22:59 - 2016-02-24 09:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-05-24 22:59 - 2016-02-24 09:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-05-24 22:59 - 2016-02-24 09:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-05-24 22:59 - 2016-02-24 09:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-05-24 22:59 - 2016-02-24 09:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-05-24 22:59 - 2016-02-24 09:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-05-24 22:59 - 2016-02-24 09:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-05-24 22:59 - 2016-02-24 09:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-05-24 22:59 - 2016-02-24 09:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-05-24 22:59 - 2016-02-24 09:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-05-24 22:59 - 2016-02-24 09:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-05-24 22:59 - 2016-02-24 09:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-05-24 22:59 - 2016-02-24 09:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-05-24 22:59 - 2016-02-24 09:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-05-24 22:59 - 2016-02-24 09:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-05-24 22:59 - 2016-02-24 09:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-05-24 22:59 - 2016-02-24 09:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-05-24 22:59 - 2016-02-24 09:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-05-24 22:59 - 2016-02-24 09:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-05-24 22:59 - 2016-02-24 09:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-05-24 22:59 - 2016-02-24 09:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-05-24 22:59 - 2016-02-24 09:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-05-24 22:59 - 2016-02-24 09:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-05-24 22:59 - 2016-02-24 08:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-05-24 22:59 - 2016-02-24 08:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-05-24 22:59 - 2016-02-24 08:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-05-24 22:59 - 2016-02-24 08:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-05-24 22:59 - 2016-02-24 08:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-05-24 22:59 - 2016-02-24 08:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-05-24 22:59 - 2016-02-24 08:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-05-24 22:59 - 2016-02-24 08:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-05-24 22:59 - 2016-02-24 08:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-05-24 22:59 - 2016-02-24 08:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-05-24 22:59 - 2016-02-24 08:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-05-24 22:59 - 2016-02-24 08:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-05-24 22:59 - 2016-02-24 08:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-05-24 22:59 - 2016-02-24 08:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-05-24 22:59 - 2016-02-24 08:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-05-24 22:59 - 2016-02-24 08:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-05-24 22:59 - 2016-02-24 08:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-05-24 22:59 - 2016-02-24 08:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-05-24 22:59 - 2016-02-24 08:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-05-24 22:59 - 2016-02-24 08:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-05-24 22:59 - 2016-02-24 08:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-05-24 22:59 - 2016-02-24 08:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-05-24 22:59 - 2016-02-24 08:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-05-24 22:59 - 2016-02-24 08:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-05-24 22:59 - 2016-02-24 08:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-05-24 22:59 - 2016-02-24 08:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-05-24 22:59 - 2016-02-24 08:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-05-24 22:59 - 2016-02-24 08:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-05-24 22:59 - 2016-02-24 07:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-05-24 22:59 - 2016-02-24 07:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-05-24 22:59 - 2016-02-23 12:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-05-24 22:59 - 2016-02-23 11:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-05-24 22:59 - 2016-02-23 11:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-05-24 22:59 - 2016-02-23 11:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-05-24 22:59 - 2016-02-23 11:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-05-24 22:59 - 2016-02-23 11:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-05-24 22:59 - 2016-02-23 11:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-05-24 22:59 - 2016-02-23 10:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-05-24 22:59 - 2016-02-23 10:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-05-24 22:59 - 2016-02-23 10:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-05-24 22:59 - 2016-02-23 10:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-05-24 22:59 - 2016-02-23 10:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-05-24 22:59 - 2016-02-23 10:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-05-24 22:59 - 2016-02-23 09:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-05-24 22:58 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-24 22:58 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-05-24 22:58 - 2016-03-29 10:06 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-05-24 22:58 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-05-24 22:58 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-05-24 22:58 - 2016-03-29 09:00 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-05-24 22:58 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-05-24 22:37 - 2016-05-24 22:37 - 00000000 ____D C:\boot-sav
2016-05-24 21:49 - 2016-05-24 21:49 - 00000000 ____D C:\Users\Niki\Documents\My Games
2016-05-24 21:49 - 2016-05-24 21:49 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Steam
2016-05-24 21:44 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2016-05-24 21:44 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2016-05-24 21:44 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2016-05-24 21:44 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2016-05-24 21:44 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2016-05-24 21:44 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2016-05-24 21:44 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2016-05-24 21:44 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2016-05-24 21:44 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2016-05-24 21:44 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2016-05-24 21:44 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2016-05-24 21:44 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2016-05-24 21:44 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2016-05-24 21:44 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2016-05-24 21:44 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2016-05-24 21:44 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2016-05-24 21:44 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2016-05-24 21:44 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2016-05-24 21:44 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2016-05-24 21:44 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2016-05-24 21:44 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2016-05-24 21:44 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2016-05-24 21:44 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2016-05-24 21:44 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2016-05-24 21:44 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2016-05-24 21:44 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2016-05-24 21:44 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2016-05-24 21:44 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2016-05-24 21:44 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2016-05-24 21:44 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2016-05-24 21:44 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2016-05-24 21:44 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2016-05-24 21:44 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2016-05-24 21:44 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2016-05-24 21:44 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2016-05-24 21:44 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2016-05-24 21:44 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2016-05-24 21:44 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2016-05-24 21:44 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2016-05-24 21:44 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2016-05-24 21:44 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2016-05-24 21:44 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2016-05-24 21:44 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2016-05-24 21:44 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2016-05-24 21:44 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2016-05-24 21:44 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2016-05-24 21:44 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2016-05-24 21:44 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2016-05-24 21:44 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2016-05-24 21:44 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2016-05-24 21:44 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2016-05-24 21:44 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2016-05-24 21:44 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2016-05-24 21:44 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2016-05-24 21:44 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2016-05-24 21:44 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2016-05-24 21:44 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2016-05-24 21:44 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2016-05-24 21:44 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2016-05-24 21:44 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2016-05-24 21:44 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2016-05-24 21:44 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2016-05-24 21:44 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2016-05-24 21:44 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2016-05-24 21:44 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2016-05-24 21:44 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2016-05-24 21:44 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2016-05-24 21:44 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2016-05-24 21:44 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2016-05-24 21:44 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2016-05-24 21:44 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2016-05-24 21:44 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2016-05-24 21:44 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2016-05-24 21:44 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2016-05-24 21:44 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2016-05-24 21:44 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2016-05-24 21:44 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2016-05-24 21:44 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2016-05-24 21:44 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2016-05-24 21:44 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2016-05-24 21:44 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2016-05-24 21:44 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2016-05-24 21:44 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2016-05-24 21:44 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2016-05-24 21:44 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2016-05-24 21:44 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2016-05-24 21:43 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2016-05-24 21:43 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2016-05-24 21:43 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2016-05-24 21:43 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2016-05-24 21:43 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2016-05-24 21:43 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2016-05-24 21:43 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2016-05-24 21:43 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2016-05-24 21:43 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2016-05-24 21:43 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2016-05-24 21:43 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2016-05-24 21:43 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2016-05-24 21:43 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2016-05-24 21:43 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2016-05-24 21:43 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2016-05-24 21:43 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2016-05-24 21:43 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2016-05-24 21:43 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2016-05-24 21:43 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2016-05-24 21:43 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2016-05-24 21:43 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2016-05-24 21:43 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2016-05-24 21:43 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2016-05-24 21:43 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2016-05-24 21:43 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2016-05-24 21:43 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2016-05-24 21:43 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2016-05-24 21:43 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2016-05-24 21:43 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2016-05-24 21:43 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2016-05-24 21:43 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2016-05-24 21:43 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2016-05-24 21:43 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2016-05-24 21:43 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2016-05-24 21:43 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2016-05-24 21:43 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2016-05-24 21:43 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2016-05-24 21:43 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2016-05-24 21:43 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2016-05-24 21:43 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2016-05-24 21:43 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2016-05-24 21:43 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2016-05-24 21:43 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2016-05-24 21:43 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2016-05-24 21:43 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2016-05-24 21:43 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2016-05-24 21:43 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2016-05-24 21:43 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2016-05-24 21:43 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2016-05-24 21:43 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2016-05-24 21:43 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2016-05-24 21:43 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2016-05-24 21:43 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2016-05-24 21:43 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2016-05-24 21:43 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2016-05-24 21:43 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2016-05-24 21:43 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2016-05-24 21:43 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2016-05-24 21:43 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2016-05-24 21:43 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2016-05-24 21:43 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2016-05-24 21:43 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2016-05-24 21:43 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2016-05-24 21:43 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2016-05-24 21:03 - 2016-05-24 21:03 - 00000000 ____D C:\Users\Niki\AppData\Local\PeerDistRepub
2016-05-24 20:37 - 2016-05-24 20:37 - 00000000 ____D C:\Users\Niki\AppData\LocalLow\Unknown Worlds
2016-05-24 20:36 - 2016-05-24 20:36 - 00001047 _____ C:\Users\Niki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk
2016-05-24 20:36 - 2015-10-29 19:43 - 07043584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons081a.dll
2016-05-24 20:36 - 2015-10-29 19:41 - 07043584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons081a.dll
2016-05-24 20:36 - 2015-10-29 19:38 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData081a.dll
2016-05-24 20:36 - 2015-10-29 19:36 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData081a.dll
2016-05-24 20:36 - 2015-10-29 19:29 - 01909760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MLS2.dll
2016-05-24 20:36 - 2015-10-29 19:27 - 01870848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MLS2.dll
2016-05-24 20:32 - 2016-05-26 13:28 - 00000000 ____D C:\Games
2016-05-24 20:31 - 2016-05-24 20:31 - 00000000 ____D C:\Users\Niki\AppData\Roaming\WinRAR
2016-05-24 20:31 - 2016-05-24 20:31 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-05-24 20:31 - 2016-05-24 20:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-05-24 20:31 - 2016-05-24 20:31 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-05-24 20:27 - 2016-05-26 16:11 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-05-24 20:27 - 2016-05-24 20:27 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-05-24 20:22 - 2016-05-25 20:24 - 00002360 _____ C:\Users\Niki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-05-24 20:22 - 2016-05-25 20:24 - 00000000 ___RD C:\Users\Niki\OneDrive
2016-05-24 20:21 - 2016-05-24 20:21 - 00000000 ____D C:\Users\Niki\AppData\Local\ActiveSync
2016-05-24 20:20 - 2016-05-24 20:20 - 00000000 ____D C:\Users\Niki\AppData\Local\Publishers
2016-05-24 20:19 - 2016-05-24 20:19 - 00000020 ___SH C:\Users\Niki\ntuser.ini
2016-05-24 20:19 - 2016-05-24 20:19 - 00000000 ____D C:\Users\Niki\AppData\Local\TileDataLayer
2016-05-24 20:19 - 2016-05-24 20:19 - 00000000 ____D C:\Users\Niki\AppData\Local\Comms
2016-05-24 20:17 - 2016-05-26 16:17 - 00834360 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default\My Documents
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2016-05-24 20:16 - 2016-05-24 20:16 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2016-05-24 20:15 - 2016-05-24 20:15 - 00022744 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-05-24 20:11 - 2016-05-24 20:11 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-05-24 20:11 - 2016-05-24 20:11 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-05-24 20:10 - 2016-05-26 16:05 - 00000000 ____D C:\Users\Niki
2016-05-24 20:10 - 2016-05-24 20:10 - 00000000 _SHDL C:\Users\Niki\My Documents
2016-05-24 20:10 - 2016-05-24 20:10 - 00000000 _SHDL C:\Users\Niki\Documents\My Videos
2016-05-24 20:10 - 2016-05-24 20:10 - 00000000 _SHDL C:\Users\Niki\Documents\My Pictures
2016-05-24 20:10 - 2016-05-24 20:10 - 00000000 _SHDL C:\Users\Niki\Documents\My Music
2016-05-24 20:08 - 2016-05-24 20:08 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-05-24 20:08 - 2016-05-24 20:08 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf
2016-05-24 20:08 - 2016-05-24 20:08 - 00000000 ____D C:\Program Files\ASUS
2016-05-24 20:08 - 2016-05-24 20:08 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-05-24 20:08 - 2013-07-04 03:32 - 00028672 _____ (ASUSTek Computer Inc.) C:\WINDOWS\SysWOW64\AsIO.dll
2016-05-24 20:08 - 2013-07-04 03:32 - 00015232 _____ C:\WINDOWS\SysWOW64\Drivers\AsIO.sys
2016-05-24 19:34 - 2016-05-26 16:11 - 00000000 __SHD C:\Users\Niki\IntelGraphicsProfiles
2016-05-24 19:33 - 2016-05-24 20:28 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-05-24 19:33 - 2016-05-24 19:33 - 00000219 _____ C:\Users\Niki\Desktop\Dota 2.url
2016-05-24 17:29 - 2016-05-24 20:27 - 00000000 ____D C:\Intel
2016-05-24 17:29 - 2016-05-24 17:29 - 00000000 ____D C:\Program Files (x86)\Intel
2016-05-24 17:29 - 2015-12-19 01:08 - 00099848 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-05-24 17:28 - 2016-05-24 20:16 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2016-05-24 17:28 - 2016-05-24 20:16 - 00009528 _____ C:\WINDOWS\diagerr.xml
2016-05-24 17:28 - 2016-05-24 20:11 - 00000000 ____D C:\Program Files\Intel
2016-05-24 17:28 - 2016-05-24 19:52 - 00000000 ___HD C:\$WINDOWS.~BT
2016-05-24 17:25 - 2016-05-24 17:25 - 00000000 ____D C:\ESD
2016-05-24 17:21 - 2016-05-24 17:21 - 00000000 ____D C:\Users\Niki\AppData\Local\Steam
2016-05-24 17:21 - 2016-05-24 17:21 - 00000000 ____D C:\Users\Niki\AppData\Local\CEF
2016-05-24 17:14 - 2016-05-26 16:26 - 00000000 ____D C:\Program Files (x86)\Steam
2016-05-24 17:14 - 2016-05-24 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-05-24 17:14 - 2016-05-24 17:14 - 00000975 _____ C:\Users\Public\Desktop\Steam.lnk
2016-05-24 17:13 - 2016-05-24 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinCDEmu
2016-05-24 17:13 - 2016-05-24 17:13 - 01380712 _____ C:\Users\Niki\Downloads\SteamSetup.exe
2016-05-24 17:13 - 2016-05-24 17:13 - 00000000 ____D C:\Program Files (x86)\WinCDEmu
2016-05-24 17:11 - 2016-05-24 17:11 - 01697808 _____ (Sysprogs OU) C:\Users\Niki\Downloads\WinCDEmu-4.1.exe
2016-05-24 17:07 - 2016-05-26 17:57 - 00001209 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-05-24 17:07 - 2016-05-26 17:57 - 00001197 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-05-24 17:07 - 2016-05-24 17:14 - 00000000 ____D C:\Users\Niki\AppData\Local\Mozilla
2016-05-24 17:07 - 2016-05-24 17:08 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Mozilla
2016-05-24 17:07 - 2016-05-24 17:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-05-24 17:07 - 2016-05-24 17:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-05-24 17:02 - 2016-05-24 17:02 - 00000000 ___HD C:\$Windows.~WS
2016-05-24 17:01 - 2016-05-24 17:01 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Macromedia
2016-05-24 17:00 - 2013-07-26 09:07 - 00827096 _____ (Realtek ) C:\WINDOWS\system32\Drivers\Rt630x64.sys
2016-05-24 17:00 - 2013-07-26 09:07 - 00074456 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2016-05-24 16:59 - 2016-05-24 16:59 - 00032907 _____ C:\WINDOWS\Ascd_tmp.ini
2016-05-24 16:59 - 2009-04-02 14:30 - 00010296 _____ C:\WINDOWS\SysWOW64\Drivers\ASUSHWIO.SYS
2016-05-24 16:20 - 2016-05-24 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2016-05-24 16:20 - 2016-05-24 20:11 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-05-24 16:20 - 2016-05-24 17:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-05-24 16:20 - 2016-05-24 16:20 - 00001769 _____ C:\WINDOWS\Language_trs.ini
2016-05-24 16:20 - 2013-09-26 12:01 - 00028888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtNdPt630.sys
2016-05-24 16:20 - 2012-09-01 01:00 - 00032400 _____ (Realtek Corporation) C:\WINDOWS\system32\Drivers\RtVlan620.sys
2016-05-24 16:20 - 2012-07-03 14:32 - 00058512 _____ (Realtek Corporation) C:\WINDOWS\system32\Drivers\RtTeam620.sys
2016-05-24 16:19 - 2016-05-24 20:15 - 00002180 _____ C:\WINDOWS\System32\Tasks\{578B63EE-824E-46CA-91DA-24F85FA84D1A}
2016-05-24 15:58 - 2016-05-24 20:15 - 00002750 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2005897479-4078680267-747680915-1001
2016-05-24 15:48 - 2016-05-26 16:59 - 00000000 ____D C:\Users\Niki\AppData\Local\VirtualStore
2016-05-24 15:48 - 2016-05-24 15:48 - 00000000 ____D C:\Users\Niki\AppData\Roaming\Adobe
2016-05-24 15:47 - 2016-05-24 22:04 - 00000000 ____D C:\Users\Niki\AppData\Local\Packages
2016-05-24 15:44 - 2016-05-26 17:03 - 00000000 ____D C:\Program Files\KMSpico
2016-05-24 15:43 - 2016-05-24 15:43 - 00000000 ____D C:\WINDOWS\CSC

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-05-26 17:01 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Cursors
2016-05-26 16:18 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-05-26 16:18 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-05-26 16:17 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-05-26 16:10 - 2016-02-13 15:16 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-26 11:26 - 2016-02-13 15:22 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-26 09:24 - 2016-02-13 15:12 - 00206568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-26 03:34 - 2015-10-30 08:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-05-26 03:32 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-05-26 03:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-05-26 03:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-05-26 03:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-26 03:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-26 03:31 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-05-26 03:30 - 2016-02-13 15:04 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-05-26 03:30 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-05-25 20:28 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-25 20:28 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-25 19:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-05-25 06:06 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-05-25 01:19 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-05-24 22:26 - 2016-02-13 14:55 - 00000000 ____D C:\WINDOWS\OCR
2016-05-24 21:43 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-05-24 20:16 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-05-24 20:16 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration
2016-05-24 20:14 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-05-24 20:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-05-24 20:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-05-24 20:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\InputMethod
2016-05-24 20:11 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-05-24 20:11 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-05-24 20:11 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-05-24 20:11 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2016-05-24 20:11 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS
2016-05-24 20:11 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2016-05-24 20:10 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2016-05-26 16:57 - 2016-05-17 08:15 - 0114176 _____ () C:\ProgramData\hp.exe
2016-05-26 17:00 - 2016-05-26 11:30 - 0339968 _____ () C:\ProgramData\RandomDelJiheReg.exe
2016-05-26 16:58 - 2016-05-24 03:43 - 1609216 _____ () C:\ProgramData\RiliDlr.exe
2016-05-26 16:57 - 2016-05-26 16:57 - 1755136 _____ () C:\ProgramData\service.exe
2016-05-26 16:59 - 2016-05-22 15:03 - 1920512 _____ () C:\ProgramData\setup_qg00.exe
2016-05-26 16:57 - 2016-05-16 17:09 - 5714944 _____ (Skype Technologies) C:\ProgramData\tasklist.exe
2016-05-26 16:57 - 2016-05-26 16:57 - 0293320 _____ (深圳市迅雷网络技术有限公司) C:\ProgramData\xldl.dll

Files to move or delete:
====================
C:\ProgramData\hp.exe
C:\ProgramData\RandomDelJiheReg.exe
C:\ProgramData\RiliDlr.exe
C:\ProgramData\service.exe
C:\ProgramData\setup_qg00.exe
C:\ProgramData\tasklist.exe
C:\ProgramData\xldl.dll


Some files in TEMP:
====================
C:\Users\Niki\AppData\Local\Temp\23333.exe
C:\Users\Niki\AppData\Local\Temp\24BD.tmp.exe
C:\Users\Niki\AppData\Local\Temp\2630.tmp.exe
C:\Users\Niki\AppData\Local\Temp\6628.tmp.exe
C:\Users\Niki\AppData\Local\Temp\Browser_V5.6.12150.8_f_4730_(Build1604251144).exe
C:\Users\Niki\AppData\Local\Temp\qqpcmgr_v11.5.17490.219_45532_Silence.exe
C:\Users\Niki\AppData\Local\Temp\qqpcmgr_v11.5.17490.219_72623_Silence.exe
C:\Users\Niki\AppData\Local\Temp\ui.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-05-24 20:55

==================== End of FRST.txt ============================

mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Pozdrav,


Preuzmi Zemana AntiMalware i sacuvaj ga na Deskop.


Arrow Kada preuzimanje bude zavrseno:

Dvoklikom pokreni instalaciju i prati uputstva. Instalacija je standardna bez ikakvih dodatnih opcija.
Nakon instalacije, program ce se automatski pokrenuti i sada je potrebno klikniti na Scan.
Kada se skeniranje zavrsi, klikni Next kako bi uklonio sve pronadjene stavke.
Ako ti zatrazi da restartujes racunar, klikni na Reboot.
Ukoliko je racunar ozbiljno inficiran, nakon restarta ce uslediti jos jedno skeniranje.


Arrow Nakon toga, potrebno je da dostavis izvestaj/e:

Na tastaturi pritisni + R u isto vreme.
Kopiraj sledecu komandu i potvrdi sa OK:
%USERPROFILE%\AppData\Local\Zemana\Zemana AntiMalware\reports
Najnovji izvestaj/e kopiraj na Deskop, a zatim ga prikaci u sledecoj poruci.

offline
  • Pridružio: 26 Maj 2016
  • Poruke: 5

Nakon restarta se ponovo pokrenuo taj Zemana antimalver.

Zemana AntiMalware 2.20.2.905 (instalirano)

-------------------------------------------------------
Rezultat skeniranja : Završeno
Datum skeniranja : 2016.5.26
Operativni sistem : Windows 10 64-bit
Procesor : 4X Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz
BIOS mode : Legacy
CUID : 12C137E60EA13654B525C4
Vrsta skeniranja : Brzo skeniranje
Trajanje : 0m 44s
Skenirani objekti : 4794
Otkriveni objekti : 194
Izuzeti objekti : 0
Nivo učitavanja : Normal
Automatsko slanje podataka : Uključeno
Uključi sve ekstenzije : Isključeno
Skeniranje dokumenata : Isključeno
Info domene : WORKGROUP,0,2

Otkriveni objekti
-------------------------------------------------------

Internet Explorer Shortcut
Stanje : Skenirano
Objekat : yeabests.cc
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Internet Explorer Shortcut

Internet Explorer Homepage
Stanje : Skenirano
Objekat : hao.qq.com/?unc=o400493_1&s=o400493_1
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Internet Explorer Homepage

Firefox Shortcut
Stanje : Skenirano
Objekat : yeabests.cc
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Shortcut

Firefox Shortcut
Stanje : Skenirano
Objekat : yeabests.cc
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Shortcut

Firefox Search
Stanje : Skenirano
Objekat : cloudfront - d2ucfwpxlh3zh3.cloudfront.net
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Search

Firefox Search
Stanje : Skenirano
Objekat : hohosearch - d2ucfwpxlh3zh3.cloudfront.net
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Search

Firefox Search
Stanje : Skenirano
Objekat : Погодак - pogodak.rs
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Search

Firefox Search
Stanje : Skenirano
Objekat : hohosearch - d2ucfwpxlh3zh3.cloudfront.net
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Search

Firefox Newtab
Stanje : Skenirano
Objekat : d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqB38rB.....mode=loadm
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Newtab

Firefox Search
Stanje : Skenirano
Objekat : Погодак - pogodak.rs
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Sumnjiva postavka pretraživača
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačke postavke - Firefox Search

GsearchFinder
Stanje : Skenirano
Objekat : %appdata%\profiles\2rhf9zzp.default\extensions\@e9438230-a7df-4d1f-8f2d-ca1d0f0f7924.xpi
MD5 : 9449289F7F6F28BDEEDF927C22E42C9A
Izdavač : -
Veličina : 331500
Verzija : -
Otkrivanje : PUA.FirefoxExt!Gr
Mjera čišćenja : Popravi
Povezani objekti :
Pretraživačka ekstenzija - GsearchFinder
Zapis - %appdata%\profiles\2rhf9zzp.default\extensions\@e9438230-a7df-4d1f-8f2d-ca1d0f0f7924.xpi

WMIMalware
Stanje : Skenirano
Objekat : ASEC
MD5 : -
Izdavač : -
Veličina : -
Verzija : -
Otkrivanje : Trojan:Win32/WMIGhost
Mjera čišćenja : Popravi
Povezani objekti :
Bazzapisna infekcija - WMIMalware : WMI::Root\Subscription\ASEC.mof

AutoTime.exe
Stanje : Skenirano
Objekat : %temp%\is-elm2j.tmp\autotime.exe
MD5 : CBF845BCA8BC51304ECE21186FCF9E6B
Izdavač : -
Veličina : 3420672
Verzija : 1.0.0.1
Otkrivanje : Adware:Win32/Bailoat.A!Erem
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %temp%\is-elm2j.tmp\autotime.exe
Referenca - C:\Users\Niki\Desktop\AutoTime.lnk
Proces - 4076 - C:\Users\Niki\AppData\Local\Temp\is-ELM2J.tmp\AutoTime.exe

QMBDScanner.dat
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmbdscanner.dat
MD5 : 09D9885DC0FA7300AD41C1BE39BA41A6
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 35520
Verzija : 10.6.15942.218
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmbdscanner.dat
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMAVProxy.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmavproxy.dll
MD5 : DC7349DA2508E09DAFD221EF1B556302
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 91328
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmavproxy.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMHIPSPolicyEng.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipspolicyeng.dll
MD5 : 27A43E10421DCE390835BE38820084E4
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 763072
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipspolicyeng.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

TAVUpload.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavupload.dll
MD5 : 9A5B3725CB75DBE95AC0209DEEC7A364
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 521408
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavupload.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMEmMat.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmemmat.dll
MD5 : 7D58FB8F84FEB29C7D7C93A1EC07E7A1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 165056
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmemmat.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMHIPSService.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipsservice.dll
MD5 : 3A5D10556EB042A3FDFB420D64560ACA
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 386240
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipsservice.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMHIPSHeart.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipsheart.dll
MD5 : 736F3B6C636D8D4F81D32C8D2F301863
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 214208
Verzija : 11.6.56406.501
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipsheart.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

znsp2E54.tmp
Stanje : Skenirano
Objekat : %programfiles%\23deea6c-1464279961-f368-16c0-f832e48c4b0c\znsp2e54.tmp
MD5 : C1FB277710895C73CAAF82B2FFE03C31
Izdavač : -
Veličina : 188928
Verzija : -
Otkrivanje : Malware:Win32/Vorniac.A!Rtai
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\23deea6c-1464279961-f368-16c0-f832e48c4b0c\znsp2e54.tmp
Proces - 5180 - C:\Program Files (x86)\23DEEA6C-1464279961-F368-16C0-F832E48C4B0C\znsp2E54.tmp
Unos u registar - HKLM\System\CurrentControlSet\Services\jiwizuqe\ImagePath = C:\Program Files (x86)\23DEEA6C-1464279961-F368-16C0-F832E48C4B0C\znsp2E54.tmp

qnsx862D.tmp
Stanje : Skenirano
Objekat : %localappdata%\23deea6c-1464281818-f368-16c0-f832e48c4b0c\qnsx862d.tmp
MD5 : 542199EC8FAA7CB170B8F663D62ADA99
Izdavač : -
Veličina : 158720
Verzija : -
Otkrivanje : Adware:Win32/BrowserHijack.Gen
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %localappdata%\23deea6c-1464281818-f368-16c0-f832e48c4b0c\qnsx862d.tmp
Proces - 5096 - C:\Users\Niki\AppData\Local\23DEEA6C-1464281818-F368-16C0-F832E48C4B0C\qnsx862D.tmp
Unos u registar - HKLM\System\CurrentControlSet\Services\zigipyro\ImagePath = C:\Users\Niki\AppData\Local\23DEEA6C-1464281818-F368-16C0-F832E48C4B0C\qnsx862D.tmp

tasklist.exe
Stanje : Skenirano
Objekat : %programdata%\tasklist.exe
MD5 : B5EAE051296AE35BA4446228DC77D79E
Izdavač : -
Veličina : 5714944
Verzija : 6.13.0.182
Otkrivanje : Adware:Win32/Vorniac.A!Eiae
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\tasklist.exe
Proces - 3256 - C:\ProgramData\tasklist.exe
Unos u registar - HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\tasklist.exe -start = C:\ProgramData\tasklist.exe -start

xldl.dll
Stanje : Skenirano
Objekat : %programdata%\xldl.dll
MD5 : 208662418974BCA6FAAB5C0CA6F7DEBF
Izdavač : ShenZhen Thunder Networking Technologies Ltd.
Veličina : 293320
Verzija : 3.2.1.42
Otkrivanje : Adware:Win32/OutBrowse!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\xldl.dll
DLL - 3256 - C:\ProgramData\tasklist.exe

MiniThunderPlatform.exe
Stanje : Skenirano
Objekat : %programdata%\download\minithunderplatform.exe
MD5 : E2E9483568DC53F68BE0B80C34FE27FB
Izdavač : ShenZhen Thunder Networking Technologies Ltd.
Veličina : 268744
Verzija : 3.2.1.42
Otkrivanje : Adware:Win32/OutBrowse!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\download\minithunderplatform.exe
Proces - 5712 - C:\ProgramData\download\MiniThunderPlatform.exe

dl_peer_id.dll
Stanje : Skenirano
Objekat : %programdata%\download\dl_peer_id.dll
MD5 : DBA9A19752B52943A0850A7E19AC600A
Izdavač : ShenZhen Thunder Networking Technologies Ltd.
Veličina : 92080
Verzija : 3.2.2.16
Otkrivanje : Adware:Win32/OutBrowse!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\download\dl_peer_id.dll
DLL - 5712 - C:\ProgramData\download\MiniThunderPlatform.exe

download_engine.dll
Stanje : Skenirano
Objekat : %programdata%\download\download_engine.dll
MD5 : 1A87FF238DF9EA26E76B56F34E18402C
Izdavač : ShenZhen Thunder Networking Technologies Ltd.
Veličina : 3512776
Verzija : 5.0.2.288
Otkrivanje : Adware:Win32/OutBrowse!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\download\download_engine.dll
DLL - 5712 - C:\ProgramData\download\MiniThunderPlatform.exe

QQPCRtp.exe
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcrtp.exe
MD5 : 53EDF42FA3247E50EF9DE0AFA3492575
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 313936
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcrtp.exe
Proces - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
Unos u registar - HKLM\System\CurrentControlSet\Services\QQPCRTP\ImagePath = "C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe" -r

QMDlder.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmdlder.dll
MD5 : 423D9D2C36C85B7525DE706C73A8FFC2
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 140480
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmdlder.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMInfoEng.DLL
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qminfoeng.dll
MD5 : 9A44464720ABFE05E7AFBB9A058B9B89
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 261736
Verzija : 403.2016.403.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qminfoeng.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

qmhipslogpolicy.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipslogpolicy.dll
MD5 : 3408F7CB335AD45499B3E92E8E48D2EE
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 169152
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmhipslogpolicy.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

TavPedc.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavpedc.dll
MD5 : 8BBB9BD012FF72320D7E73D8203EDF82
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 115904
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavpedc.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

TAVInterface.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavinterface.dll
MD5 : B5C5CC5F965FB129455128C908789A4E
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 210112
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavinterface.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMDns.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmdns.dll
MD5 : 8FF356B549694A61AF7FB3B0728970D1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 62656
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmdns.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMRepairPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmrepairplugin.dll
MD5 : 91228538514E063E3965B134CF27CD43
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 99648
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmrepairplugin.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMUl.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmul.dll
MD5 : 85DB9F1200B6E964728ADF236F2E6D0D
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 324800
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmul.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

tpkreport.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpkreport.dll
MD5 : D52C012DCCF850D60F5BD7A432015260
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 241208
Verzija : 2.0.9984.1483
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpkreport.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

tpktt.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpktt.dll
MD5 : 3F2D54E2677E7A08BEB88C6C8F59DB56
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 3132984
Verzija : 2.0.9984.1483
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpktt.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

tpkcom.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpkcom.dll
MD5 : 857881E618A7D1BA42B2569DD56DF950
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 106040
Verzija : 2.0.9984.1483
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpkcom.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

tpkproxy.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpkproxy.dll
MD5 : 285C99B2AC9F41F80974D1B35DC74CED
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 216632
Verzija : 2.0.9984.1483
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tpk\1.0.0.1\tpkproxy.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

tave.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tave.dll
MD5 : 6ADA22669C3086EB0137ECA462EF7695
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 181440
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tave.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMFileMon.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmfilemon.dll
MD5 : FA3C9BDCEF68558106098A3F79165783
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 722112
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmfilemon.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QQPCHardware.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpchardware.dll
MD5 : 343E1F14DEFC81D8603D657F918434B3
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 354656
Verzija : 11.1.49147.301
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpchardware.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

processlogdll.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\softmgr\processlogdll.dll
MD5 : 73237E7E9F2ED1E029EE92B793A5AA67
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 79040
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\softmgr\processlogdll.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

communic.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\communic.dll
MD5 : 1C315B9CC1E3E1C245E18404A626274E
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 55488
Verzija : 1.0.10.51
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\communic.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMSafeBoxHelperDll.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsafeboxhelperdll.dll
MD5 : EC5323F8244BDEE119CEBC516CF334E4
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 91328
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsafeboxhelperdll.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

qmrtpcontroller.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmrtpcontroller.dll
MD5 : 0B39E99D41688BE89B75DDD09D50DA2A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 128192
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmrtpcontroller.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMRtpDLL.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmrtpdll.dll
MD5 : 2AD650B8CD2507BBE825A4405922B096
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 87232
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmrtpdll.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

oDayProtect.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\odayprotect.dll
MD5 : 71ADA0F844521825E585F6DB43B598DB
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 36128
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\odayprotect.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

TAVCache.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavcache.dll
MD5 : BF0F1BDC9B4A86C4FBDCC23262EC542E
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 488640
Verzija : 11.6.17598.209
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tavcache.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

qmiemalrtpplugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmiemalrtpplugin\qmiemalrtpplugin.dll
MD5 : FA0495FFDF4769C6292F2BBFEB9B668D
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 70848
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmiemalrtpplugin\qmiemalrtpplugin.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

SysSpeedupRtpPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\sysspeeduprtpplugin\sysspeeduprtpplugin.dll
MD5 : 392FEF399DFDFFD6E89443281A8770CB
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 46784
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\sysspeeduprtpplugin\sysspeeduprtpplugin.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMCloudInter.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmcloudinter\qmcloudinter.dll
MD5 : 408CEC9C680C94F983E2806549F565A2
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 591040
Verzija : 11.6.17578.201
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmcloudinter\qmcloudinter.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

QMAssocScan.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmassocscan.dll
MD5 : 9DC3635E91AA21C9C953AF67B2357C79
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 349376
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmassocscan.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QQPCFIXATDLL.DLL
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcfixatdll.dll
MD5 : 379C6C7987C3EF07802D1D00F2B95ED7
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 851560
Verzija : 503.2016.503.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcfixatdll.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMRtpCheck.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmrtpcheck.dll
MD5 : 56D26B0CBC3BBA876A7AE5BF3D84F706
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 577128
Verzija : 11.7.17744.210
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmrtpcheck.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMExt.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmext.dll
MD5 : 6C98476D2992A3DF4FE8DFEEC391CB0A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 128192
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmext.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

tinyxml.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tinyxml.dll
MD5 : 989F284C2C9C9E0EECC2486FD35CAC69
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 100704
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tinyxml.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

TSSysKitProxy.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tssyskitproxy.dll
MD5 : 2EB2D3AF94214EE32A15755B6C07BA4F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 107712
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tssyskitproxy.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

QMNetworkMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmnetworkmgr.dll
MD5 : 35CD0039457DF1A48F46FACC09E8404E
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 271552
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmnetworkmgr.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMPerf.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmperfctrl\qmperf.dll
MD5 : 41045A9B9825C4BE9EC76699D3529BBD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 210112
Verzija : 1.2.0.5
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmperfctrl\qmperf.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMIpc.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmipc.dll
MD5 : E34D44998934BDA71DF0A458A6F46F3C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 181440
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmipc.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

qmsysrepprov.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsysrepprov.dll
MD5 : 1A2A301BC5775416E6C45B724CA8E26C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1979584
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsysrepprov.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

scc.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\scc.dll
MD5 : 0B1063C06B69B9D060E66071076431E8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 619712
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\scc.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

sqlite.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\sqlite.dll
MD5 : 269E34F0CC34682A716C6E58FBE357F0
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 488640
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\sqlite.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

ptrate.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\ptrate.dll
MD5 : 3139B8A1AA67A3F73020B6F229FBB9A1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 91328
Verzija : 2012.12.18.2
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\ptrate.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

zlib.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\zlib.dll
MD5 : BD6C48BA68DAEB86833AA6B850541F2C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 88416
Verzija : 1.2.5.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\zlib.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMAntiInject.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmantiinject.dll
MD5 : 48FD92607487BF1B3BA39D3504EE8A01
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 115904
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmantiinject.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

dr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\dr.dll
MD5 : 90775FEE9C438FEDD7BDC7BE0FB813FD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 431296
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\dr.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

RefuseInject.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\refuseinject.dll
MD5 : 6C65D95588094E66688EC5D2105B2027
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 181440
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\refuseinject.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMCommon.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmcommon.dll
MD5 : E63CAD9F9F2414E4A7EB83DC8E7E7B4A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 722112
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmcommon.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QQPCTray.exe
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpctray.exe
MD5 : CBA43E68BD3398C0FB994BA44E4C234A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 362304
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpctray.exe
Proces - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
Proces - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
Unos u registar - HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\ QQPCTray = "C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe" /regrun

QMHipsEngine.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmhipsengine.dll
MD5 : EC932677E57CA03EA6360559A68F83F1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 54464
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmhipsengine.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe

TAVEng.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\taveng.dll
MD5 : 6CDFC9220F3A296C4931E7DE4D2FB78F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 672960
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\taveng.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

qmscripthost.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmscripthost.dll
MD5 : 103F81DFDDDC4152C94337306456605D
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 206016
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmscripthost.dll
DLL - 5676 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRTP.exe
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMKCheck.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmkcheck\qmkcheck.dll
MD5 : 7F8D04F752DE5E098B92386A0919E03A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 181440
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmkcheck\qmkcheck.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMUpdateModule.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmupdatemodule\qmupdatemodule.dll
MD5 : E83DD67F66F7B822B44223E06BE5DAA8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 226496
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmupdatemodule\qmupdatemodule.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMSoftPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmsoftplugin\qmsoftplugin.dll
MD5 : B33246130454031D969B6759ADA28C4F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 296128
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmsoftplugin\qmsoftplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMHwFloatWnd.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmhwfloatwnd\qmhwfloatwnd.dll
MD5 : 94D02EE99BA76CABCE0881BA84BE8D56
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 255168
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmhwfloatwnd\qmhwfloatwnd.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMWlanMacDll.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmwlanmacdll.dll
MD5 : 7FBFD1A740E824981C94B8B9E64CE1B5
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 251072
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmwlanmacdll.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

Win10ToastNotification.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\win10toastnotification.dll
MD5 : 15D7B4332E3B3BF9038314C70161E948
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 264896
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\win10toastnotification.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMNewsTips.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmnewstips\qmnewstips.dll
MD5 : 0598AE00E76004579764473AE31F83D0
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 595136
Verzija : 11.6.57378.301
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmnewstips\qmnewstips.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMBJTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmbjtrayplugin\qmbjtrayplugin.dll
MD5 : 977AAE8BE34C9935180224726B31A86B
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 283840
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmbjtrayplugin\qmbjtrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMVulPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmvulplugin\qmvulplugin.dll
MD5 : E31975236D84AA15BEB7102B8D6C84A7
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 421480
Verzija : 11.6.58107.501
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmvulplugin\qmvulplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

AndroidAssistHelper.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidassisthelper.dll
MD5 : 0C30969E7222C4A9AFF2087A1DE88B90
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 528440
Verzija : 1.0.0.510
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidassisthelper.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMMobileTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmmobiletrayplugin\qmmobiletrayplugin.dll
MD5 : 8C2DF0C9542256B2F340725C9FA520DA
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 545472
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmmobiletrayplugin\qmmobiletrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

DlForQd.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\dlforqd.dll
MD5 : 318E7496611A7A809F23385A8572285F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 379232
Verzija : 2.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\dlforqd.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMForbiddenWinKey.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmforbiddenwinkey.dll
MD5 : B12FE302507ED15ADC5C7B30101CCA2C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 21696
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmforbiddenwinkey.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

TAOClient.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\taoclient.dll
MD5 : 9A595410D6D516E6F980144D74CFC4C1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 369856
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\taoclient.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

TAOWorkFlowMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\taoworkflowmgr.dll
MD5 : 898AEBF8AEECAF778015C9C38C5FA0A5
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 406720
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\taoworkflowmgr.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMSpecTips.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmspectips\qmspectips.dll
MD5 : 878648D2F3246613A039723CDF7D331E
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 431296
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmspectips\qmspectips.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

CheckSysHung.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\checksyshung.dll
MD5 : 08C0E197BEE6C6CC66870415DD526F50
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 160960
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\checksyshung.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

ProcessManager.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\processmanager.dll
MD5 : 1F427CF31E3E5F73286551324EFA875F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 386240
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\processmanager.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

SpeedupMsg.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\subplugins\speedupmsg.dll
MD5 : 6F95552C393EB3C640EDEB8D34CE0748
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 406720
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\subplugins\speedupmsg.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

OperationFileCloudMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\subplugins\operationfilecloudmgr.dll
MD5 : A37BC309F8CD71EF59B5C5F9550552A1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 337088
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\subplugins\operationfilecloudmgr.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GameSpeedupExposure.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\subplugins\gamespeedupexposure.dll
MD5 : 55533ABD05F211483ECE64C5CC9726B0
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 283840
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\subplugins\gamespeedupexposure.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMNetMonPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmonplugin.dll
MD5 : 2FE1049D0C20E346B9370F0C7A3370E1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 148672
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmonplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMCmcTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmcmctrayplugin\qmcmctrayplugin.dll
MD5 : 74F18A74506E9D1BE089F4F2353656C6
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 337088
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmcmctrayplugin\qmcmctrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMTrayDetector.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtraydetector\qmtraydetector.dll
MD5 : 3D52737DC75DE8C786B5137612B3DAE1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 125280
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtraydetector\qmtraydetector.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMTpkTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtpktrayplugin\qmtpktrayplugin.dll
MD5 : 909F89BAC6EA4EC3EDC7FDA3555ABC97
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 275648
Verzija : 1.0.0.3
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtpktrayplugin\qmtpktrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMDnsMonitor.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmdnsmonitor\qmdnsmonitor.dll
MD5 : DA302A6B3B21D4755363552C23A88A0F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 214208
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmdnsmonitor\qmdnsmonitor.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMClinicTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmclinictrayplugin\qmclinictrayplugin.dll
MD5 : CB407C96AC9BEAF6C805E693D18D7FF2
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 459968
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmclinictrayplugin\qmclinictrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

SXCombase.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\sxcombase.dll
MD5 : F465F8B5FB87D018313C4BAC451F0A2B
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 124096
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\sxcombase.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMSXTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmsxtrayplugin\qmsxtrayplugin.dll
MD5 : F26F6553B7A71324A3CE3CC4F1BB52B4
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 369856
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmsxtrayplugin\qmsxtrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMUDiskMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmudiskmgr\qmudiskmgr.dll
MD5 : BD6FABDAC16E0D835A936082EAECEB52
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 984256
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmudiskmgr\qmudiskmgr.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

MemDefrag.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\memdefrag.dll
MD5 : 97A11A859F2B2A0983EF66E594418C81
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 83136
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\memdefrag.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

StartupMgrDll.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\startupmgrdll.dll
MD5 : D745A3FEDCDD96F819293C4A60F1E0A1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 562368
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\startupmgrdll.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMSccTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmscctrayplugin\qmscctrayplugin.dll
MD5 : 114044B7EA895E9B4FFF5001789D6EF0
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 545984
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmscctrayplugin\qmscctrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

TSZip.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tszip.dll
MD5 : D1A1EE27BBEAA17F575EE6CEBEE6AE5D
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 83136
Verzija : 7.2.3658.205
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tszip.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GameUpgrade.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\gameupgrade.dll
MD5 : 2131F78CC7127F8E9791BD88735146DD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 525504
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\gameupgrade.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GameUpgradeTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\gameupgradetrayplugin\gameupgradetrayplugin.dll
MD5 : 5A8253495D787016B443ACEAF167021F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 353472
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\gameupgradetrayplugin\gameupgradetrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

SSOPlatform.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsso\bin\ssoplatform.dll
MD5 : C13380EC92CC964DFCC7C91DA5D72B4B
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1756216
Verzija : 1.2.4.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsso\bin\ssoplatform.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QmTtInterface.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmttinterface.dll
MD5 : 60368E87D934AAD05381747C8E90DEA2
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 417384
Verzija : 11.7.17738.208
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmttinterface.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMInjectUtils.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qminjectutils.dll
MD5 : 543DB3F52FDE742E27FAEC5A91F63D4E
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 130664
Verzija : 11.7.17749.212
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qminjectutils.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMTPIEStartPage.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtpiestartpage\qmtpiestartpage.dll
MD5 : DDDF71607AE215FEF490E011BC4B85AA
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 730304
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtpiestartpage\qmtpiestartpage.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMWebFWCtrl.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmwebfwctrl\qmwebfwctrl.dll
MD5 : 28350A7822A25CB57FCCC037BFA80B96
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 2311360
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmwebfwctrl\qmwebfwctrl.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMStartupMonitorNotify.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmstartupmonitornotify\qmstartupmonitornotify.dll
MD5 : F36FC8F98FCEBEEB7D127494FB2F61A2
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 451776
Verzija : 10.6.15920.208
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmstartupmonitornotify\qmstartupmonitornotify.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

NetflowMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\netflowmgr.dll
MD5 : 29C59B7DFBB0915978DFA8269CEA8AF7
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 156864
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\netflowmgr.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

TAOKernelControl.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\taokernelcontrol.dll
MD5 : 573AB4DB62DB8F563C35CB2A547D7E50
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 148672
Verzija : 1.2.0.3
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\taokernelcontrol.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

TAOBase.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\taobase.dll
MD5 : E356CA5FD001445D648F3040096ACD68
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 259264
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\taobase.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GarbageCleaner.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\garbagecleaner.dll
MD5 : D865AFA86760BB2889A4357AEB9337A2
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1287360
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\garbagecleaner.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMAutoTaskPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\qmautotaskplugin.dll
MD5 : 2ADE2F0D755D1736E055F70C56DF4182
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1066176
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmautotaskplugin\qmautotaskplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

7z.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\7z.dll
MD5 : 8BBCB1FD03ACFDD9AE1F70195F7627C7
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 900800
Verzija : 9.20.0.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\7z.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

SSOCommon.DLL
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsso\bin\ssocommon.dll
MD5 : 1B7A138585237A62A7B36EE34814DA49
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1509944
Verzija : 1.2.4.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsso\bin\ssocommon.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

SSOLUIControl.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsso\bin\ssoluicontrol.dll
MD5 : 158E2F9E55EA572B0E42C225F33D638C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 466488
Verzija : 1.0.1.16
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmsso\bin\ssoluicontrol.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMTrojanPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtrojanplugin\qmtrojanplugin.dll
MD5 : DA98FDF0DD2E032BED0D80F7C215EF97
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1338984
Verzija : 11.7.57741.501
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmtrojanplugin\qmtrojanplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMPreDownload.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmpredownload\qmpredownload.dll
MD5 : F0CE8C711A6A08060C08908963751044
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 286312
Verzija : 11.6.17612.214
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmpredownload\qmpredownload.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMQQLoginPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmqqloginplugin\qmqqloginplugin.dll
MD5 : EA35E0413D6A15EE5914C2803AA1F978
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 648384
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmqqloginplugin\qmqqloginplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMAVTrayPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmavtrayplugin\qmavtrayplugin.dll
MD5 : F91066486CF15A728AB75B447D084280
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 816320
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmavtrayplugin\qmavtrayplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMRtpPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmrtpplugin\qmrtpplugin.dll
MD5 : 6AAF656D69147D20135FA899DF2825C8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 279744
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmrtpplugin\qmrtpplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMPerfCtrl.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmperfctrl\qmperfctrl.dll
MD5 : 245357A7DE4F6A3C3EDAE55E0F75A084
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 197824
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmperfctrl\qmperfctrl.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMLogCtrl.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmlogctrl\qmlogctrl.dll
MD5 : 56130CD3A528184031DCFB55D6A7B180
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 459968
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmlogctrl\qmlogctrl.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMSwitchesMgrPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmswitchesmgrplugin\qmswitchesmgrplugin.dll
MD5 : 665AF7A27E67924B6885B90C1F2107F0
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 181440
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmtrayplugin\qmswitchesmgrplugin\qmswitchesmgrplugin.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMSkinMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmskinmgr.dll
MD5 : 93B15301C5C111066E2514CEDE8AF645
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 304320
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmskinmgr.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

libjpegturbo.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\libjpegturbo.dll
MD5 : D4A6B70E64E19884A80B8F0B205C1045
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 285024
Verzija : 1.2.0.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\libjpegturbo.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

libpng.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\libpng.dll
MD5 : 772BC1ECC5F7E5655145DD61E6ECE349
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 158048
Verzija : 1.4.9.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\libpng.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMMain.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmmain.dll
MD5 : F6FE6F110E1EEAFDEA6C6E1BBDF43B31
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 2147648
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmmain.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

tinyxml.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\tinyxml.dll
MD5 : 989F284C2C9C9E0EECC2486FD35CAC69
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 100704
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\tinyxml.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

jgIOStub.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\jgiostub.dll
MD5 : 81078CE3A928D63F9611A132E9DEB6BD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 14176
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\jgiostub.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

libexpatw.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\libexpatw.dll
MD5 : 015C6F01B16A55CB24BEBCC3C8D94F1A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 137568
Verzija : 2.0.1.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\libexpatw.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

jgImage.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\jgimage.dll
MD5 : 46E22EA434F8181894233D29201C51F8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 45408
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\jgimage.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

xGraphic32.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\xgraphic32.dll
MD5 : 8CCB026C3939C1E003DF4DAB099B7169
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 92512
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\xgraphic32.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GF.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\gf.dll
MD5 : 98537ED2B637EE9FE613D356D6A2315B
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 2156896
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\gf.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GF.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\gf.dll
MD5 : 98537ED2B637EE9FE613D356D6A2315B
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 2156896
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\gf.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

xGraphic32.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\xgraphic32.dll
MD5 : 8CCB026C3939C1E003DF4DAB099B7169
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 92512
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\xgraphic32.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

jgImage.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\jgimage.dll
MD5 : 46E22EA434F8181894233D29201C51F8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 45408
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\jgimage.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

jgIOStub.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\jgiostub.dll
MD5 : 81078CE3A928D63F9611A132E9DEB6BD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 14176
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\jgiostub.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

libexpatw.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\libexpatw.dll
MD5 : 015C6F01B16A55CB24BEBCC3C8D94F1A
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 137568
Verzija : 2.0.1.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\libexpatw.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

Common.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\common.dll
MD5 : 9F97986DB2DC0B1984C5B86D6E6CB277
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1931616
Verzija : 1.86.6.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\common.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

arkGraphic.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\arkgraphic.dll
MD5 : 6E67CC17373DF5C4F0D4C911B8ABD190
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 342368
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\arkgraphic.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

xImage.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\ximage.dll
MD5 : 80F265806D0E0E89D6E4D32F8D612EA5
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 194912
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\ximage.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

GFCustom.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\gfcustom.dll
MD5 : BA8FF146C89CD60BA78273883E8C8FA4
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 570560
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\gfcustom.dll
DLL - 2832 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

Common.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\common.dll
MD5 : 9F97986DB2DC0B1984C5B86D6E6CB277
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1931616
Verzija : 1.86.6.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\common.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

arkGraphic.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\arkgraphic.dll
MD5 : 6E67CC17373DF5C4F0D4C911B8ABD190
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 342368
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\arkgraphic.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

tencentdl.exe
Stanje : Skenirano
Objekat : %commonprogramfiles%\tencent\qqdownload\130\tencentdl.exe
MD5 : 16E27465FC02E6974704FD2187E92144
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1097272
Verzija : 1.0.130.4
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %commonprogramfiles%\tencent\qqdownload\130\tencentdl.exe
Proces - 6216 - C:\Program Files (x86)\Common Files\Tencent\QQDownload\130\Tencentdl.exe

dlcore.dll
Stanje : Skenirano
Objekat : %commonprogramfiles%\tencent\qqdownload\130\dlcore.dll
MD5 : 1123CC85FF12A2A9C44395E5362220CF
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 2211384
Verzija : 1.9.652.405
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %commonprogramfiles%\tencent\qqdownload\130\dlcore.dll
DLL - 6216 - C:\Program Files (x86)\Common Files\Tencent\QQDownload\130\Tencentdl.exe

QQPCNetFlow.exe
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\qqpcnetflow.exe
MD5 : 4450D4DAB3CC194FCA8B4F0453DCFCDD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 984256
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\qqpcnetflow.exe
Proces - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

libpng.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\libpng.dll
MD5 : 772BC1ECC5F7E5655145DD61E6ECE349
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 158048
Verzija : 1.4.9.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\libpng.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

zlib.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\zlib.dll
MD5 : BD6C48BA68DAEB86833AA6B850541F2C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 88416
Verzija : 1.2.5.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\zlib.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

libjpegturbo.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\libjpegturbo.dll
MD5 : D4A6B70E64E19884A80B8F0B205C1045
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 285024
Verzija : 1.2.0.0
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\qmnetmon\libjpegturbo.dll
DLL - 3224 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\plugins\QMNetMon\QQPCNetFlow.exe

QQPCRealTimeSpeedup.exe
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcrealtimespeedup.exe
MD5 : 144D89F0B47D5B28FEE97FFB43A256FE
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 644416
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcrealtimespeedup.exe
Proces - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

GFFtsysCustom.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\gfftsyscustom.dll
MD5 : 1294D5668DDE588902F9E39C5B473AF7
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 144576
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\gfftsyscustom.dll
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

SpeedupRocket.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmspeedupplugin\speeduprocket\speeduprocket.dll
MD5 : B2346D0CC06D9C62865C64F4237AF08B
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1148096
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmspeedupplugin\speeduprocket\speeduprocket.dll
DLL - 6412 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCRealTimeSpeedup.exe

x64explibss.dll
Stanje : Skenirano
Objekat : %localappdata%\microsoft\windows\inetcookies\x64explibss.dll
MD5 : 6ADC34B6F5C027414D9D7EB4C7CE5671
Izdavač : Ding Ruan
Veličina : 416440
Verzija : -
Otkrivanje : Adware:Win32/HohoSearch-DJ!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %localappdata%\microsoft\windows\inetcookies\x64explibss.dll
DLL - 7616 - C:\Windows\explorer.exe
Unos u registar - HKLM\SOFTWARE\Classes\CLSID\{7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F}\InprocServer32\@ = C:\Users\Niki\AppData\Local\Microsoft\Windows\INetCookies\x64explibss.dll

exnscan64.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\exnscan64.dll
MD5 : 6BF0FDDDCD963E05DAC99072BC99E16C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 679016
Verzija : 0.2016.501.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\exnscan64.dll
DLL - 7616 - C:\Windows\explorer.exe

QMGCShellExt64.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmgcshellext64.dll
MD5 : DD1A820562E64E4E7E3EBAFB279B741C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 471744
Verzija : 10.7.16045.206
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmgcshellext64.dll
DLL - 7616 - C:\Windows\explorer.exe
Unos u registar - HKLM\SOFTWARE\Classes\CLSID\{B7667919-3765-4815-A66D-98A09BE662D6}\InprocServer32\@ = C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMGCShellExt64.dll

DownloadMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\downloadmgr.dll
MD5 : DFCE71F965B65E584670495C15B4BF45
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 174648
Verzija : 1.0.0.510
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\downloadmgr.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

AndroidDevice.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\androiddevice.dll
MD5 : 5D13F4F045EEBD79C10CC7D8C5BF02B1
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 267832
Verzija : 1.0.0.510
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\androiddevice.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

NetworkMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\networkmgr.dll
MD5 : 041B0F9EE6625B9DE47BA99D35757689
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 204344
Verzija : 1.0.0.510
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\networkmgr.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QQPMIpc.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\qqpmipc.dll
MD5 : 3807FF1AD5EFF084080030D40A9C18E8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 81464
Verzija : 1.0.0.510
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\qqpmipc.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

Sdkclient.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\sdkclient.dll
MD5 : 62FF0A4F9FD0DBF6166AF4891D52D6B8
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 683576
Verzija : 1.0.0.510
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\androidserver\1.0.0.510\sdkclient.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

MobileSoftMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\mobilesoftmgr.dll
MD5 : E0E86A5AD334A236894B49965D694015
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 103616
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\mobilesoftmgr.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

PCSoftMgrToolsDll.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\softmgr\pcsoftmgrtoolsdll.dll
MD5 : 555FE23B8ED5A3224E747419B2E35067
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 160960
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\softmgr\pcsoftmgrtoolsdll.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

QMPluginMgr.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmpluginmgr.dll
MD5 : D7E5B5A13F52323AE5D09D14DC5E6B21
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 1279168
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmpluginmgr.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

HPScanUIPlugin.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\hpscanuiplugin\hpscanuiplugin.dll
MD5 : 32994525E4790F5FB1FF16BD98ABB255
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 773736
Verzija : 9.0.9874.201
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\plugins\hpscanuiplugin\hpscanuiplugin.dll
DLL - 7232 - C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe

TFsFltX64.sys
Stanje : Skenirano
Objekat : %systemroot%\system32\drivers\tfsfltx64.sys
MD5 : 4A583A4EDA7247D40044098B6EF2E0CA
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 97400
Verzija : 1.0.10.52
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %systemroot%\system32\drivers\tfsfltx64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\TFsFlt\ImagePath = system32\Drivers\TFsFltX64.sys

TAOKernelEx64.sys
Stanje : Skenirano
Objekat : %systemroot%\system32\drivers\taokernelex64.sys
MD5 : 43E1729F60D582D1DC484DF85127A096
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 143992
Verzija : 1.2.0.3
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %systemroot%\system32\drivers\taokernelex64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\TAOKernelDriver\ImagePath = \??\C:\WINDOWS\system32\Drivers\TAOKernelEx64.sys

TAOAccelerator64.sys
Stanje : Skenirano
Objekat : %systemroot%\system32\drivers\taoaccelerator64.sys
MD5 : 0767518A856B7A4DE413D8085B5FC337
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 99480
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %systemroot%\system32\drivers\taoaccelerator64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\TAOAccelerator\ImagePath = \??\C:\WINDOWS\system32\Drivers\TAOAccelerator64.sys

SRepairDrv
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\srepairdrv
MD5 : 32503C6C5902F7A5E3F824FE04083B1C
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 168568
Verzija : 2015.12.11.257
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\srepairdrv
Unos u registar - HKLM\System\CurrentControlSet\Services\SRepairDrv\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMGR\SRepairDrv

softaal64.sys
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\softaal64.sys
MD5 : 769B29B894EFA907A11046CABB99B36F
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 44664
Verzija : 1.0.0.1
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\softaal64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\softaal\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\softaal64.sys

QQSysMonX64.sys
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqsysmonx64.sys
MD5 : 57E64150EA46BDD213237D1A613FCAAD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 154744
Verzija : 2012.11.26.74
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqsysmonx64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\QQSysMonX64\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQSysMonX64.sys

service.exe
Stanje : Skenirano
Objekat : %programdata%\service.exe
MD5 : 43237652BFB768B63435DF9918939F25
Izdavač : -
Veličina : 1755136
Verzija : 1.0.0.11
Otkrivanje : Adware:Win32/Fooster.A!Citi
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\service.exe
Unos u registar - HKLM\System\CurrentControlSet\Services\GoogleChromeUpService\ImagePath = C:\ProgramData\service.exe /s GoogleChromeUpService /uid:51477 /local:br

QMUdisk64.sys
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmudisk64.sys
MD5 : 39A4A39FDC7CF7E9CE6D4220D838B3D3
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 184952
Verzija : 2015.11.16.18
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmudisk64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\QMUdisk\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMUdisk64.sys

QQPCFileOpen.exe
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcfileopen.exe
MD5 : B44B44E5FA065D638114905822C5D1D9
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 758976
Verzija : 10.0.41491.201
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qqpcfileopen.exe
Unos u registar - HKLM\SOFTWARE\Classes\Unknown\shell\openas\command\@ = "C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCFileOpen.exe" "%1"

Anqhstservice.exe
Stanje : Skenirano
Objekat : %programfiles%\anaqatoch\anqhstservice.exe
MD5 : F8C994C3E567C2A91FE1CCE343AFD5AC
Izdavač : Ding Ruan
Veličina : 993432
Verzija : -
Otkrivanje : Adware:Win32/HohoSearch-DJ!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\anaqatoch\anqhstservice.exe
Unos u registar - HKLM\System\CurrentControlSet\Services\Anqhstservice\ImagePath = "C:\Program Files (x86)\Anaqatoch\Anqhstservice.exe" {79740E79-A383-47A7-B513-3DF6563D007F} {A16B1AF7-982D-40C3-B5C1-633E1A6A6678}

UCGuard.sys
Stanje : Skenirano
Objekat : %systemroot%\system32\drivers\ucguard.sys
MD5 : 8B084B611D6DC8A0882DD162793DECC3
Izdavač : TAOBAO (CHINA) SOFTWARE CO.,LTD.
Veličina : 80768
Verzija : 0.1.0.84
Otkrivanje : Adware:Win32/UCBrowser-DJ!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %systemroot%\system32\drivers\ucguard.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\UCGuard\@ = C:\WINDOWS\System32\drivers\UCGuard.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\UCGuard\ImagePath = system32\DRIVERS\ucguard.sys

TSSysKit64.sys
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tssyskit64.sys
MD5 : A3727DC0D3E04B83124896B1498A31CD
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 96888
Verzija : 2011.12.7.2
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tssyskit64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\TSSysKit\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSSysKit64.sys

TsNetHlpX64.sys
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tsnethlpx64.sys
MD5 : 065C0E17B3257C15AE4244594B705A89
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 57976
Verzija : -
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tsnethlpx64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\tsnethlpx64\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TsNetHlpX64.sys

TSDefenseBT64.sys
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tsdefensebt64.sys
MD5 : 9D7C94C16A83F8F4574EECD590969266
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 28984
Verzija : 2015.7.7.1299
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tsdefensebt64.sys
Unos u registar - HKLM\System\CurrentControlSet\Services\TSDefenseBt\ImagePath = \??\C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSDefenseBT64.sys

TSWebMon64.dat
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\tswebmon64.dat
MD5 : 1BBF13E3EC008A2AB504648B6F913797
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 423104
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\tswebmon64.dat
Unos u registar - HKLM\SOFTWARE\Classes\CLSID\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}\InprocServer32\@ = C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSWebMon64.dat
Unos u registar - HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}\@ = C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\TSWebMon64.dat

QMContextScan64.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmcontextscan64.dll
MD5 : ED3DBEC3942E96D9177A3AAB8A3AA2DE
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 100544
Verzija : 11.5.17490.219
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\qmcontextscan64.dll
Unos u registar - HKLM\SOFTWARE\Classes\CLSID\{E52EB753-1F56-4DF7-BE53-2C314AC5F8A1}\InprocServer32\@ = C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QMContextScan64.dll

setup_qg00.exe
Stanje : Skenirano
Objekat : %programdata%\setup_qg00.exe
MD5 : AAECE05CCABCE56362BACED098FD3D69
Izdavač : -
Veličina : 1920512
Verzija : -
Otkrivanje : Adware:Win32/Fooster.A!Retr
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programdata%\setup_qg00.exe
Unos u registar - HKCU\Software\Microsoft\Windows\CurrentVersion\Run\QGuan00 = c:\programdata\setup_qg00.exe /autorun
Planirane stavke - C:\WINDOWS\System32\Tasks\tasklist

npQMExtensionsIE.dll
Stanje : Skenirano
Objekat : %programfiles%\tencent\qqpcmgr\11.5.17490.219\npqmextensionsie.dll
MD5 : 6F6F5B854AF0A6728E51120D5853AA80
Izdavač : Tencent Technology(Shenzhen) Company Limited
Veličina : 88416
Verzija : 3.0.0.2
Otkrivanje : PUA:Win32/BrowserHijacker!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\tencent\qqpcmgr\11.5.17490.219\npqmextensionsie.dll
Unos u registar - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}\@ = C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\npQMExtensionsIE.dll

Anqhsttask.exe
Stanje : Skenirano
Objekat : %programfiles%\anaqatoch\anqhsttask.exe
MD5 : 50A9A4053601CC28B8868AE20A931F6B
Izdavač : Ding Ruan
Veličina : 334488
Verzija : -
Otkrivanje : Adware:Win32/HohoSearch-DJ!Ep
Mjera čišćenja : Karantina
Povezani objekti :
Zapis - %programfiles%\anaqatoch\anqhsttask.exe
Planirane stavke - C:\WINDOWS\System32\Tasks\Anaqatoch Host


Rezultati čišćenja
-------------------------------------------------------
Očišćeno : 194
Prijavi kao bezbjedno : 0
Neuspješno : 0

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Odlicno. Da vidimo sta je jos preostalo.



Skeniranje sa AdwCleaner

Preuzmi AdwCleaner i sacuvaj ga na Desktop.

Pokreni alat i sacekaj da se izvrši ažuriranje.
Prihvati Terms of use tako što ceš kliknuti na I Agree.
Klikni Scan i sacekaj da se skeniranje završi.
Kada je gotovo, klikni Clean.
Pojavice se poruka da ce svi programi biti zaustavljeni nakon što klikneš OK, tako da ako imaš nešto da sacuvaš, sada je vreme da to uradiš.
Pojaviše se još dve poruke gde je potrebno kliknuti OK. Racunar ce se restartovati.
Nakon restarta, otvorice se izveštaj, ciji sadržaj možeš kopirati u sledecu poruku.

Napomena: Izveštaji ce biti sacuvani na tvoju sistemsku particiju, obicno je to folder C:\AdwCleaner



Ponovo pokreni FRST, obelezi Addition.txt, klikni na Scan i prikaci oba izvestaja.

offline
  • Pridružio: 26 Maj 2016
  • Poruke: 5

# AdwCleaner v5.118 - Logfile created 27/05/2016 at 00:32:43
# Updated 23/05/2016 by Xplode
# Database : 2016-05-26.2 [Server]
# Operating system : Windows 10 Pro (X64)
# Username : Niki - MASCHINCHE
# Running from : C:\Users\Niki\Downloads\AdwCleaner.exe
# Option : Clean
# Support : toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : QQRepaira61
[-] Service Deleted : QQRepairFixSVC

***** [ Folders ] *****

[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\ProgramData\TXQMPC
[#] Folder Deleted : C:\ProgramData\Application Data\tencent
[#] Folder Deleted : C:\ProgramData\Application Data\TXQMPC
[-] Folder Deleted : C:\Program Files (x86)\tencent
[-] Folder Deleted : C:\Program Files (x86)\Common Files\tencent
[-] Folder Deleted : C:\Users\Niki\AppData\Local\Temp\tencent
[-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\Niki\AppData\Local\23DEEA6C-1464289069-F368-16C0-F832E48C4B0C
[-] Folder Deleted : C:\Users\Niki\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\Niki\AppData\Roaming\UPUpdata
[-] Folder Deleted : C:\Users\Niki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\YourGSearchFinder_br
[-] Folder Deleted : C:\Program Files\Common Files\tencent
[-] Folder Deleted : C:\Users\Niki\AppData\Local\VirtualStore\Program Files (x86)\tencent
[-] Folder Deleted : C:\Users\Niki\AppData\Local\app

***** [ Files ] *****

[-] File Deleted : C:\ProgramData\hp.exe
[#] File Deleted : C:\ProgramData\Application Data\hp.exe

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
[-] Key Deleted : HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Key Deleted : HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\QMContextScan
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\QMContextScan.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\QMContextUninstall.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\QMContextScan
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [AndroidServer.exe]
[-] Key Deleted : HKLM\SOFTWARE\Classes\metnsd
[-] Key Deleted : HKLM\SOFTWARE\Classes\qmbfile
[-] Key Deleted : HKLM\SOFTWARE\Classes\QMContextScan.QMContextScanMenu
[-] Key Deleted : HKLM\SOFTWARE\Classes\QMContextScan.QMContextScanMenu.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\qmgcfiles
[-] Key Deleted : HKLM\SOFTWARE\Classes\qpakfile
[-] Key Deleted : HKLM\SOFTWARE\Classes\QQPCMgr.qbox
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1E9BD312-7C8C-4422-906D-897F6D7714F2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7A30415C-ABEE-4674-B64B-4CA145EEB0CA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{63332668-8CE1-445D-A5EE-25929176714E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E52EB753-1F56-4DF7-BE53-2C314AC5F8A1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{593BE60A-1C6A-44F9-946D-A5EAB2D53511}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{63332668-8CE1-445D-A5EE-25929176714E}]
[-] Key Deleted : HKCU\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
[-] Key Deleted : HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] Key Deleted : HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PopupProduct
[-] Key Deleted : [x64] HKLM\SOFTWARE\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] Key Deleted : HKU\.DEFAULT\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hao.qq.com
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\qq.com
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [apphide]
[-] Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [apphide]
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\GoogleChromeUpService

***** [ Web browsers ] *****

[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("browser.search.searchengine.hp", "hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqB38rB3MpBU..&v=20160526&uid=CA2EE92E204344B9B25807EB14593F56&ptid=clc&mode=loadm");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("browser.search.searchengine.sp", "hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?mode=ffsengext&ptid=clc&q={searchTerms}&ts=AHEqB38rB3MpBU..&uid=CA2EE92E204344B9B25807EB14593F56&v=20160526[...]
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("browser.search.searchengine.uid", "CA2EE92E204344B9B25807EB14593F56");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("browser.search.searchengine.url", "hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?mode=ffsengext&ptid=clc&q={searchTerms}&ts=AHEqB38rB3MpBU..&uid=CA2EE92E204344B9B25807EB14593F56&v=2016052[...]
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("browser.search.selectedEngine", "hohosearch");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "46.0");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a8588");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016052616");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1464274728122");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"sr\",\"sr-RS\",\"sr-CS\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"pt\",\"ja\",\"en\"],\"defaultLo[...]
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?uid=CA2EE92E204344B9B25807EB14593F56&ptid=clc&ts=AHEqB38rB3MpBU..&v=20160526&mode=ffex[...]
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", false);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"filesToDelete\":[\"C:\\\\Users\\\\Niki\\\\AppData\\\\R[...]
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", true);
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\Niki\AppData\Roaming\Profiles\2rhf9zzp.default\prefs.js] Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");

*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [10895 bytes] - [27/05/2016 00:32:43]
C:\AdwCleaner\AdwCleaner[S1].txt - [10665 bytes] - [27/05/2016 00:31:19]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [11043 bytes] ##########

mycity.rs/must-login.png

mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

createrestorepoint:
closeprocesses:
emptytemp:
C:\Program Files\KMSpico
HKLM-x32\...\Run: [ QQPCTray] => "C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe"  /regrun
ShellExecuteHooks:  - {7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} -  No File [ ]
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} =>  No File
FF NewTab: about:newtab
FF DefaultSearchEngine: cloudfront
2016-05-26 17:00 - 2016-05-26 17:00 - 00000000 ____D C:\Users\Niki\AppData\Local\UCBrowser
C:\Program Files\KMSpico
Task: {02495773-50F0-4223-9483-01E6D1A73503} - \Anaqatoch Host -> No File <==== ATTENTION
Task: {E73A36E8-0938-4166-8FEE-BAB380BE43CF} - \tasklist -> No File <==== ATTENTION
Task: {5A360043-15CF-40B0-8CF4-CA168BA9852C} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK
Task: {AAF2E302-AD26-47D5-BE76-750C3C68D229} - System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34} => pcalua.exe -a "C:\Program Files\KMSpico\UninsHs.exe" -c /m0=AppId
2016-05-26 17:03 - 2016-05-26 17:03 - 00003250 _____ C:\WINDOWS\System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34}
2016-05-26 17:00 - 2016-05-26 17:00 - 00000000 ____D C:\Users\Niki\AppData\Local\UCBrowser
2016-05-26 17:00 - 2016-05-26 11:30 - 00339968 _____ C:\ProgramData\RandomDelJiheReg.exe
2016-05-26 16:57 - 2016-05-26 21:24 - 00000000 ____D C:\ProgramData\download
2016-05-26 16:57 - 2016-05-26 21:08 - 00000000 ____D C:\Program Files (x86)\Anaqatoch
2016-05-26 16:57 - 2016-05-26 16:58 - 00000000 ____D C:\Program Files (x86)\Cknather
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\Users\Public\Thunder Network
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\ProgramData\Thunder Network
C:\ProgramData\RandomDelJiheReg.exe


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.







Kakvo je sada stanje?

offline
  • Pridružio: 26 Maj 2016
  • Poruke: 5

Fix result of Farbar Recovery Scan Tool (x64) Version:25-05-2016 01
Ran by Niki (2016-05-27 00:51:56) Run:1
Running from C:\Users\Niki\Desktop
Loaded Profiles: Niki (Available Profiles: Niki)
Boot Mode: Normal
==============================================

fixlist content:
*****************
createrestorepoint:
closeprocesses:
emptytemp:
C:\Program Files\KMSpico
HKLM-x32\...\Run: [ QQPCTray] => "C:\Program Files (x86)\Tencent\QQPCMgr\11.5.17490.219\QQPCTray.exe" /regrun
ShellExecuteHooks: - {7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} - No File [ ]
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => No File
FF NewTab: about:newtab
FF DefaultSearchEngine: cloudfront
2016-05-26 17:00 - 2016-05-26 17:00 - 00000000 ____D C:\Users\Niki\AppData\Local\UCBrowser
C:\Program Files\KMSpico
Task: {02495773-50F0-4223-9483-01E6D1A73503} - \Anaqatoch Host -> No File <==== ATTENTION
Task: {E73A36E8-0938-4166-8FEE-BAB380BE43CF} - \tasklist -> No File <==== ATTENTION
Task: {5A360043-15CF-40B0-8CF4-CA168BA9852C} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK
Task: {AAF2E302-AD26-47D5-BE76-750C3C68D229} - System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34} => pcalua.exe -a "C:\Program Files\KMSpico\UninsHs.exe" -c /m0=AppId
2016-05-26 17:03 - 2016-05-26 17:03 - 00003250 _____ C:\WINDOWS\System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34}
2016-05-26 17:00 - 2016-05-26 17:00 - 00000000 ____D C:\Users\Niki\AppData\Local\UCBrowser
2016-05-26 17:00 - 2016-05-26 11:30 - 00339968 _____ C:\ProgramData\RandomDelJiheReg.exe
2016-05-26 16:57 - 2016-05-26 21:24 - 00000000 ____D C:\ProgramData\download
2016-05-26 16:57 - 2016-05-26 21:08 - 00000000 ____D C:\Program Files (x86)\Anaqatoch
2016-05-26 16:57 - 2016-05-26 16:58 - 00000000 ____D C:\Program Files (x86)\Cknather
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\Users\Public\Thunder Network
2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 ____D C:\ProgramData\Thunder Network
C:\ProgramData\RandomDelJiheReg.exe
*****************

Error: (0) Failed to create a restore point.
Processes closed successfully.
C:\Program Files\KMSpico => moved successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ QQPCTray => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} => value removed successfully
HKCR\CLSID\{7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\.QMDeskTopGCIcon" => key removed successfully
HKCR\CLSID\{B7667919-3765-4815-A66D-98A09BE662D6} => key not found.
Firefox "newtab" removed successfully
Firefox DefaultSearchEngine removed successfully
C:\Users\Niki\AppData\Local\UCBrowser => moved successfully
"C:\Program Files\KMSpico" => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{02495773-50F0-4223-9483-01E6D1A73503}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02495773-50F0-4223-9483-01E6D1A73503}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Anaqatoch Host" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E73A36E8-0938-4166-8FEE-BAB380BE43CF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E73A36E8-0938-4166-8FEE-BAB380BE43CF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\tasklist" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5A360043-15CF-40B0-8CF4-CA168BA9852C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A360043-15CF-40B0-8CF4-CA168BA9852C}" => key removed successfully
C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateExplorerShellUnelevatedTask" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AAF2E302-AD26-47D5-BE76-750C3C68D229}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AAF2E302-AD26-47D5-BE76-750C3C68D229}" => key removed successfully
C:\WINDOWS\System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34}" => key removed successfully
"C:\WINDOWS\System32\Tasks\{5980B686-8C49-49F8-AB7D-D0ED81CF8B34}" => not found.
"C:\Users\Niki\AppData\Local\UCBrowser" => not found.
C:\ProgramData\RandomDelJiheReg.exe => moved successfully
C:\ProgramData\download => moved successfully
C:\Program Files (x86)\Anaqatoch => moved successfully
C:\Program Files (x86)\Cknather => moved successfully
C:\Users\Public\Thunder Network => moved successfully
C:\ProgramData\Thunder Network => moved successfully
"C:\ProgramData\RandomDelJiheReg.exe" => not found.
EmptyTemp: => 489.5 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 00:52:04 ====

Stanje je dobro. Ne primećujem ništa. I Fajerfoks je očišćen od onih forsiranih matičnih stranica.

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Odlicno, to bi bilo to Smile

Instaliraj antivirus, nemoj se igrati.


Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Alat ce ukloniti sve koriscene alate u ovoj temi...
Kada alat završi, otvoriće izvestaj u notepadu.
Napomena: Izvestaj ce takodje biti sacuvan na C:\DelFix.txt

Nije potrebno dostavljati izvestaj.

offline
  • Pridružio: 26 Maj 2016
  • Poruke: 5

Hvala na pomoći!
Moje rizično ponašanje je dovelo do tog problema. Već duže vreme koristim linuks i sve instaliram iz proverenih riznica, pa nikad u ovakve situacije ne dospem.
Znam da na ovom forumu ti i tvoje kolege radite volonterski da pomognete nama, nemarnim korisnicima.
Kako vam se jedan korisnik može odužiti?

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Nikako, lepe reci su sasvim dovoljne Smile

Ko je trenutno na forumu
 

Ukupno su 591 korisnika na forumu :: 17 registrovanih, 3 sakrivenih i 571 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., babaroga, Battlehammer, goxin, Insan, Jovan Nenad, laze2, miodrag, nuke92, Oscar2, pavlo, S-lash, sakota79, Taso, Trpe Grozni, vathra, W123