Zarazena Mozila

1

Zarazena Mozila

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 731
  • Gde živiš: Cacak

Koristim Os Win7 32 bita i Telekomov adsl. Od pre dva dana kada pokusam da ucitam neku stranicu u mozili ,pocne da je trazi i onda prebaci na neku stranicu sa reklamama . Pokusam sa strelicom da vratim na trazenu stranicu on opet vraca na istu. Probao sam sa adwcleanerom , mbamalware i nista nepomaze. Imam instaliran Adblockplus ali ni on nije pomogao.Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:21-02-2016 01
Ran by miroslav (administrator) on MIROSLAV-PC (22-02-2016 00:55:41)
Running from C:\Users\miroslav\Desktop
Loaded Profiles: miroslav (Available Profiles: miroslav)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe
(Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9.exe
(Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(RaMMicHaeL) C:\Program Files\Unchecky\bin\unchecky_svc.exe
(RaMMicHaeL) C:\Program Files\Unchecky\bin\unchecky_bg.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Leadtek Research Inc.) C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Windows\Samsung\PanelMgr\SSMMgr.exe
(MyCity) C:\Program Files\MCShield\MCShieldRTM.exe
(Leadtek Research Inc.) C:\Program Files\WinFast\WFDTV\WFWIZ.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files\RocketDock\RocketDock.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(BitTorrent Inc.) C:\Users\miroslav\AppData\Roaming\uTorrent\uTorrent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(BitTorrent Inc.) C:\Users\miroslav\AppData\Roaming\uTorrent\updates\3.4.5_41712\utorrentie.exe
(BitTorrent Inc.) C:\Users\miroslav\AppData\Roaming\uTorrent\updates\3.4.5_41712\utorrentie.exe
(AIMP DevTeam) C:\Program Files\AIMP3\AIMP.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
() C:\ProgramData\Airtostrong\Airtostrong.exe
() C:\ProgramData\Airtostrong\Airtostrong.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [981688 2015-04-30] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10996368 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [WinFastDTV] => C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [101888 2012-04-05] (Leadtek Research Inc.)
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [Samsung PanelMgr] => C:\Windows\Samsung\PanelMgr\ssmmgr.exe [618496 2010-06-04] ()
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [50615936 2016-01-18] (Skype Technologies S.A.)
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [MCShield Monitor] => C:\Program Files\MCShield\mcshieldrtm.exe [650816 2014-04-11] (MyCity)
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [WinFast Schedule] => C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2920448 2012-03-02] (Leadtek Research Inc.)
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [RocketDock] => C:\Program Files\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [uTorrent] => C:\Users\miroslav\AppData\Roaming\uTorrent\uTorrent.exe [2065944 2016-02-10] (BitTorrent Inc.)
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [Picosmos] => "C:\Program Files\PicosmosTools\PicosmosTools.exe" /start
AppInit_DLLs: C:\ProgramData\Airtostrong\LatIs.dll => C:\ProgramData\Airtostrong\LatIs.dll [257536 2016-02-22] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\malwarebytes.lnk [2016-02-06]
ShortcutTarget: malwarebytes.lnk -> C:\Program Files\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{BA71F0F3-684F-4933-AC36-9D962FAA543E}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqF5-4NNpJLORdfD6XdobjBB37JrM08bj8z1yj8tGMQh5uY9rcp4ZlxPSfjuJzxl2jdgkaV2YtV71BEM3-Tr1zwjDR0X4z2c,
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
SearchScopes: HKLM -> DefaultScope {ielnksrch} URL =
SearchScopes: HKLM -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1981283564-2037280381-1702048796-1000 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1981283564-2037280381-1702048796-1000 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}

FireFox:
========
FF ProfilePath: C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764
FF Homepage: hxxp://www.google.com/
FF Session Restore: -> is enabled.
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin: @nitropdf.com/NitroPDF -> C:\Program Files\Nitro\Pro 9\npnitromozilla.dll [2013-10-07] (Nitro PDF)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-12-19] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-12-19] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin HKU\S-1-5-21-1981283564-2037280381-1702048796-1000: tpsee.com/ipcctrl -> C:\Windows\system32\IPCConfigV2\npipcctrl.dll [2014-09-10] (tpsee)
FF SearchPlugin: C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\searchplugins\findit.xml [2016-02-22]
FF Extension: FlashGot - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2016-02-05]
FF Extension: X-notifier - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\extensions\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi [2016-02-05]
FF Extension: WOT - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2016-02-05]
FF Extension: RightToClick - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\extensions\{cd617375-6743-4ee8-bac4-fbf10f35729e}.xpi [2016-02-05]
FF Extension: S3.Google Translator - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\extensions\s3google@translator.xpi [2016-02-12]
FF Extension: MEGA - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\Extensions\firefox@mega.co.nz.xpi [2016-02-18]
FF Extension: Google™ Translator Lite - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\Extensions\jid1-f3mYMbCpz2AZYl@jetpack.xpi [2016-02-05]
FF Extension: ProxMate - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\Extensions\jid1-QpHD8URtZWJC2A@jetpack.xpi [2016-02-05]
FF Extension: Adblock Plus - C:\Users\miroslav\AppData\Roaming\Mozilla\Firefox\Profiles\uvj4skin.default-1454676077764\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-05]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.claro-search.com/?affID=117452&tt=4812_7&babsrc=HP_ss&mntrId=9c787c4a000000000000001fd05f9e25","hxxp://isearch.avg.com/?cid={29BC7CDB-729D-4483-B773-73CA6F4BD511}&mid=c994f77a538f47d0bf44d145283988b0-b602d594afd2b0b327e07a06f36ca6a7e42546d0&lang=en&ds=AVG&pr=fr&d=2013-01-31 12:31:18&v=14.0.0.14&pid=avg&sg=&sap=hp","hxxp://websearch.webisgreat.info/?pid=1091&r=2014/02/17&hid=2250913263268509384&lg=EN&cc=RS&unqvl=48","hxxp://www.yessearches.com/?mode=nnnb&ptid=wak&uid=2D6018F6F4FA8F14A0A6FEC1F9FF1FAC&v=20160121&ts=AHEpB38kBX8rCE..","hxxp://www.yoursearching.com/?type=hp&ts=1455556444&z=a05017565e470d00cdf37e0g2zdw3wbw9w5q6z9z3z&from=exp1&uid=hitachixhdt725025vla380_vfl111r9cgjxpecgjxpex"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-01-31]
CHR Extension: (Google Docs) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-01-31]
CHR Extension: (Google disk) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-31]
CHR Extension: (WOT: Web of Trust, Website Reputation Ratings) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2016-01-31]
CHR Extension: (YouTube) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-31]
CHR Extension: (Google pretraživanje) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-31]
CHR Extension: (Izvanmrežni Gmail) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2016-01-31]
CHR Extension: (Video Downloader professional) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2016-02-20]
CHR Extension: (Google Sheets) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-01-31]
CHR Extension: (Google dokumenti izvanmrežno) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-01-31]
CHR Extension: (Onlive Clock) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\moddbcckaikhdnigidfcmaeelcobchpm [2016-01-31]
CHR Extension: (Plaćanja u web-trgovini Chrome) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-01-31]
CHR Extension: (Gmail) - C:\Users\miroslav\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-01-31]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 Airtostrong; C:\ProgramData\\Airtostrong\\Airtostrong.exe [528384 2016-02-21] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2015-04-30] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [284504 2015-04-30] (Microsoft Corporation)
R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9.exe [197128 2013-10-07] (Nitro PDF Software)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14658848 2013-12-10] (NVIDIA Corporation)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.) [File not signed]
R2 Unchecky; C:\Program Files\Unchecky\bin\Unchecky_svc.exe [160208 2016-01-31] (RaMMicHaeL) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [49152 2004-10-18] (DeviceGuys, Inc.) [File not signed]
S3 DSDrv4; C:\Program Files\DScaler\DSDrv4.sys [20128 2012-04-02] ()
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25752 2009-10-07] ()
R3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-07-26] (Logitech Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [245096 2015-03-04] (Microsoft Corporation)
R1 MpKslebdf4caf; C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{62630DFC-95B0-4298-A023-94E0D4EAC9D5}\MpKslebdf4caf.sys [39168 2016-02-21] (Microsoft Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2013-12-05] (NVIDIA Corporation)
R3 pepifilter; C:\Windows\System32\DRIVERS\lv302af.sys [13848 2008-07-26] (Logitech Inc.)
R3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2570520 2008-07-26] (Logitech Inc.)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [16744 2014-06-19] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12656 2014-06-19] ()
R3 ULCDRHlp; C:\Windows\System32\Drivers\ULCDRHlp.sys [27392 2004-12-23] (Ulead Systems, Inc.) [File not signed]
R3 USB28xxBGA; C:\Windows\System32\DRIVERS\emBDA.sys [561920 2008-11-19] (eMPIA Technology, Inc.)
R3 USB28xxOEM; C:\Windows\System32\DRIVERS\emOEM.sys [455168 2008-11-19] (eMPIA Technology, Inc.)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-22 00:55 - 2016-02-22 00:56 - 00018765 _____ C:\Users\miroslav\Desktop\FRST.txt
2016-02-22 00:55 - 2016-02-22 00:55 - 00000000 ____D C:\FRST
2016-02-22 00:44 - 2016-02-22 00:45 - 01722368 _____ (Farbar) C:\Users\miroslav\Desktop\FRST.exe
2016-02-22 00:41 - 2016-02-22 00:45 - 106265399 _____ C:\Users\miroslav\Desktop\5 Deda Mrazic.mkv
2016-02-22 00:22 - 2016-02-22 00:23 - 00000000 ____D C:\ProgramData\Airtostrong
2016-02-22 00:22 - 2016-02-22 00:22 - 03315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe
2016-02-22 00:22 - 2016-02-22 00:22 - 00002393 _____ C:\Windows\system32\findit.xml
2016-02-22 00:22 - 2016-02-22 00:22 - 00000000 ____D C:\ProgramData\Airtostrongs
2016-02-22 00:15 - 2016-02-22 00:17 - 96097400 _____ C:\Users\miroslav\Desktop\04. Crvenkapica.mkv
2016-02-21 11:54 - 2016-02-21 11:56 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\NCH Software
2016-02-21 11:54 - 2016-02-21 11:54 - 00001108 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Switch Sound File Converter.lnk
2016-02-21 11:54 - 2016-02-21 11:54 - 00000000 ____D C:\ProgramData\NCH Software
2016-02-21 11:54 - 2016-02-21 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Software Suite
2016-02-21 11:54 - 2016-02-21 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs
2016-02-21 11:54 - 2016-02-21 11:54 - 00000000 ____D C:\Program Files\NCH Software
2016-02-20 00:21 - 2016-02-20 00:21 - 03312147 _____ () C:\Program Files\Common Files\gdbo2rp3.exe
2016-02-20 00:19 - 2016-02-20 00:19 - 00000000 ____D C:\Program Files\Common Files\n4jvgsla
2016-02-19 23:36 - 2016-02-19 23:36 - 00001319 _____ C:\Users\miroslav\Desktop\HDSentinel - Shortcut.lnk
2016-02-19 23:19 - 2016-02-20 11:27 - 00000000 ____D C:\Program Files\BitTorrent
2016-02-19 23:19 - 2016-02-19 23:19 - 00222699 _____ C:\Users\miroslav\AppData\Roaming\DonCanlux.bin
2016-02-19 23:19 - 2016-02-19 23:19 - 00041472 _____ C:\Users\miroslav\AppData\Local\Lajoyla.dat
2016-02-19 23:19 - 2016-02-19 23:19 - 00000187 _____ C:\Users\miroslav\AppData\Local\Lajoyla.exe.config
2016-02-19 23:18 - 2016-02-19 23:18 - 07951360 _____ C:\Users\miroslav\AppData\Roaming\agent.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 01882569 _____ C:\Users\miroslav\AppData\Roaming\Indigokix.tst
2016-02-19 23:18 - 2016-02-19 23:18 - 00126464 _____ C:\Users\miroslav\AppData\Roaming\lobby.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 00072727 _____ C:\Users\miroslav\AppData\Roaming\TampSaostring.tst
2016-02-19 23:18 - 2016-02-19 23:18 - 00063696 _____ C:\Users\miroslav\AppData\Roaming\Config.xml
2016-02-19 23:18 - 2016-02-19 23:18 - 00018432 _____ C:\Users\miroslav\AppData\Roaming\Main.dat
2016-02-19 23:18 - 2016-02-19 23:17 - 00667136 _____ C:\Users\miroslav\AppData\Roaming\TampSaostring.exe
2016-02-19 23:18 - 2016-02-19 23:17 - 00667136 _____ C:\Users\miroslav\AppData\Roaming\Indigokix.exe
2016-02-19 23:17 - 2016-02-19 23:17 - 01785952 _____ C:\Users\miroslav\Downloads\wrar53b5.exe
2016-02-19 23:17 - 2016-02-19 23:17 - 00126976 _____ C:\Users\miroslav\AppData\Roaming\Installer.dat
2016-02-19 23:17 - 2016-02-19 23:17 - 00018672 _____ C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml
2016-02-19 18:10 - 2016-02-19 18:10 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools
2016-02-19 18:10 - 2016-02-19 18:10 - 00000000 ____D C:\Program Files\PicosmosTools
2016-02-19 10:38 - 2016-02-19 10:38 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Hard Disk Sentinel
2016-02-19 10:37 - 2016-02-19 23:32 - 00000000 ____D C:\Program Files\Hard Disk Sentinel
2016-02-19 09:50 - 2015-01-14 11:27 - 02894848 _____ C:\Windows\system32\pwNative.exe
2016-02-19 09:49 - 2014-06-19 14:34 - 00016744 ____N C:\Windows\system32\pwdrvio.sys
2016-02-19 09:49 - 2014-06-19 14:34 - 00012656 ____N C:\Windows\system32\pwdspio.sys
2016-02-19 09:48 - 2016-02-19 09:49 - 00000000 ____D C:\Program Files\MiniTool Partition Wizard Professional Edition 9.0
2016-02-19 09:48 - 2016-02-19 09:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Professional Edition 9.0
2016-02-13 12:09 - 2016-02-13 12:09 - 00001374 _____ C:\Users\miroslav\Desktop\PDFCompressorPortable - Shortcut.lnk
2016-02-13 11:57 - 2016-02-13 11:57 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Nitro
2016-02-13 11:54 - 2016-02-13 11:54 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nitro Pro 9.lnk
2016-02-13 11:54 - 2013-10-07 09:41 - 00027144 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalmon9.dll
2016-02-13 11:54 - 2013-10-07 09:41 - 00018440 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalui9.dll
2016-02-13 11:53 - 2016-02-13 11:53 - 00000000 ____D C:\ProgramData\Nitro
2016-02-13 11:53 - 2016-02-13 11:53 - 00000000 ____D C:\Program Files\Nitro
2016-02-13 11:53 - 2016-02-13 11:53 - 00000000 ____D C:\Program Files\Common Files\Nitro
2016-02-13 11:52 - 2016-02-13 11:52 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Downloaded Installations
2016-02-13 11:36 - 2016-02-13 11:36 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\PrimoPDF
2016-02-13 11:36 - 2011-02-28 23:37 - 00180624 _____ C:\Windows\system32\Primomonnt.dll
2016-02-13 11:24 - 2016-02-13 11:50 - 00000000 ____D C:\Program Files\PDF24
2016-02-12 15:35 - 2016-02-12 15:35 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2016-02-11 22:51 - 2016-02-11 22:51 - 00000000 ____D C:\Program Files\MSXML 4.0
2016-02-11 14:07 - 2016-02-11 14:07 - 00000000 ____D C:\ProgramData\Samsung
2016-02-11 14:05 - 2014-05-22 14:22 - 02738496 ____N C:\Windows\TotalUninstaller.exe
2016-02-11 14:03 - 2014-04-16 09:22 - 00025600 _____ () C:\Windows\system32\usp02l.dll
2016-02-11 14:03 - 2010-10-20 09:49 - 00065536 _____ (SS) C:\Windows\system32\usp02ci.dll
2016-02-11 14:02 - 2014-12-26 05:57 - 00000359 _____ C:\Windows\system32\usp02l.smt
2016-02-11 14:02 - 2013-05-10 10:48 - 00162136 _____ C:\Windows\system32\usp02ci.exe
2016-02-10 10:29 - 2016-02-21 10:07 - 00000000 ____D C:\Users\miroslav\AppData\LocalLow\uTorrent
2016-02-10 10:22 - 2016-02-16 17:55 - 00000000 ____D C:\Program Files\Scan Assistant
2016-02-10 10:22 - 2010-04-06 20:30 - 00138776 ____R (TWAIN Working Group) C:\Windows\system32\TWAINDSM.dll
2016-02-10 10:21 - 2016-02-10 10:21 - 00000000 ____D C:\Users\miroslav\AppData\Local\S2PC
2016-02-10 10:20 - 2016-02-16 17:54 - 00001897 _____ C:\Windows\Samsung SCX-3200 Series.txt
2016-02-10 10:19 - 2016-02-11 14:07 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-02-10 10:19 - 2016-02-10 10:19 - 00000000 ____D C:\Windows\Samsung
2016-02-10 10:19 - 2016-02-10 10:19 - 00000000 ____D C:\Program Files\SamsungPrinterLiveUpdate
2016-02-10 10:19 - 2010-04-20 01:28 - 00484656 _____ () C:\Windows\ssndii.exe
2016-02-10 10:19 - 2010-04-20 01:28 - 00116016 _____ C:\Windows\Wiainst.exe
2016-02-10 10:19 - 2009-10-28 16:20 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\msxml2.dll
2016-02-10 10:19 - 2009-10-28 16:20 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\msxml4r.dll
2016-02-10 10:19 - 2009-10-28 16:20 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\msxml4a.dll
2016-02-10 10:19 - 2009-10-28 16:20 - 00038160 _____ (Microsoft Corporation) C:\Windows\system32\msxml2r.dll
2016-02-10 10:19 - 2009-10-28 16:20 - 00021776 _____ (Microsoft Corporation) C:\Windows\system32\msxml2a.dll
2016-02-10 10:18 - 2009-11-19 10:17 - 00026624 _____ () C:\Windows\system32\ssb3ml3.dll
2016-02-10 10:17 - 2016-02-16 17:45 - 00000000 ____D C:\Program Files\Samsung
2016-02-10 10:16 - 2016-02-10 10:16 - 00000000 ____D C:\Windows\system32\Macromed
2016-02-10 10:16 - 2016-02-10 10:16 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Adobe
2016-02-10 10:04 - 2016-01-16 19:42 - 00022464 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-02-10 10:04 - 2016-01-16 19:34 - 00949760 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-02-10 10:04 - 2016-01-11 15:07 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-02-10 10:04 - 2016-01-11 15:07 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-02-10 10:04 - 2016-01-11 15:07 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-02-10 10:04 - 2016-01-11 15:07 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-02-10 10:04 - 2016-01-11 15:07 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-02-10 10:03 - 2016-01-22 07:13 - 03993536 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2016-02-10 10:03 - 2016-01-22 07:13 - 03938752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-02-10 10:03 - 2016-01-22 07:13 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-02-10 10:03 - 2016-01-22 07:13 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-02-10 10:03 - 2016-01-22 07:09 - 01310232 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-02-10 10:03 - 2016-01-22 07:06 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-02-10 10:03 - 2016-01-22 07:06 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-02-10 10:03 - 2016-01-22 07:06 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-02-10 10:03 - 2016-01-22 07:06 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-02-10 10:03 - 2016-01-22 07:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-02-10 10:03 - 2016-01-22 07:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-02-10 10:03 - 2016-01-22 07:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-02-10 10:03 - 2016-01-22 07:05 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-02-10 10:03 - 2016-01-22 07:05 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-02-10 10:03 - 2016-01-22 07:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-02-10 10:03 - 2016-01-22 07:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-02-10 10:03 - 2016-01-22 07:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2016-02-10 10:03 - 2016-01-22 07:02 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-02-10 10:03 - 2016-01-22 07:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 06:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-02-10 10:03 - 2016-01-22 06:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-02-10 10:03 - 2016-01-22 06:01 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-02-10 10:03 - 2016-01-22 06:00 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-02-10 10:03 - 2016-01-22 05:53 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-02-10 10:03 - 2016-01-22 05:53 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-02-10 10:03 - 2016-01-22 05:53 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-02-10 10:03 - 2016-01-22 05:51 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-02-10 10:03 - 2016-01-22 05:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-02-10 10:03 - 2016-01-22 05:51 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-02-10 10:03 - 2016-01-22 05:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-02-10 10:03 - 2016-01-22 05:51 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 05:51 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 05:51 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-02-10 10:03 - 2016-01-22 05:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-02-10 10:03 - 2016-01-16 19:36 - 01413632 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-02-10 10:03 - 2016-01-11 19:47 - 02956288 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-02-10 10:03 - 2016-01-11 19:47 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-02-10 10:03 - 2016-01-11 19:35 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2016-02-10 10:03 - 2016-01-11 19:17 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-02-10 10:03 - 2016-01-11 19:14 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-02-10 10:03 - 2016-01-11 19:14 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-02-10 10:03 - 2016-01-11 19:14 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-02-10 10:03 - 2016-01-11 19:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-02-10 10:03 - 2016-01-11 19:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-02-10 10:03 - 2016-01-11 19:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-02-10 10:03 - 2016-01-11 19:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2016-02-10 10:03 - 2016-01-07 18:47 - 02386944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-02-10 10:03 - 2016-01-07 18:35 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-02-10 10:03 - 2016-01-06 19:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2016-02-10 10:03 - 2016-01-06 18:56 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2016-02-10 00:00 - 2015-07-30 14:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2016-02-08 10:37 - 2011-03-11 06:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2016-02-08 10:37 - 2011-03-11 06:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2016-02-08 10:37 - 2011-03-11 06:38 - 00332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2016-02-08 10:37 - 2011-03-11 06:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2016-02-08 10:37 - 2011-03-11 06:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2016-02-08 10:37 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-02-08 10:37 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2016-02-08 10:37 - 2011-03-11 05:01 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-02-08 10:21 - 2016-02-11 10:04 - 00000000 ___SD C:\Windows\system32\CompatTel
2016-02-08 10:21 - 2016-02-11 10:04 - 00000000 ____D C:\Windows\system32\appraiser
2016-02-07 22:53 - 2015-01-09 00:44 - 00419936 _____ C:\Windows\system32\locale.nls
2016-02-07 20:39 - 2016-02-07 20:39 - 00000000 ____D C:\Users\miroslav\Documents\GomPlayer
2016-02-07 15:13 - 2015-06-03 21:17 - 01167520 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2016-02-07 15:13 - 2012-02-11 06:37 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-02-07 15:12 - 2015-11-16 21:12 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-02-07 15:12 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2016-02-07 15:12 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2016-02-07 15:12 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2016-02-07 15:12 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2016-02-07 15:12 - 2014-07-09 02:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2016-02-07 14:34 - 2016-02-07 14:34 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\FastStone
2016-02-07 10:04 - 2016-02-07 10:04 - 00156520 _____ C:\Windows\Minidump\020716-57361-01.dmp
2016-02-07 09:56 - 2016-02-07 10:01 - 00000000 ___SD C:\Windows\system32\GWX
2016-02-06 17:44 - 2016-02-06 17:45 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Audacity
2016-02-06 17:44 - 2016-02-06 17:44 - 00000000 ____D C:\Users\miroslav\AppData\Local\Audacity
2016-02-06 16:55 - 2015-12-08 22:54 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 01568768 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 01325056 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 01202688 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2016-02-06 16:55 - 2015-12-08 22:54 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 00815616 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 00740352 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-02-06 16:55 - 2015-12-08 22:54 - 00739328 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 00665088 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2016-02-06 16:55 - 2015-12-08 22:54 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00829952 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00415744 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-02-06 16:55 - 2015-12-08 22:53 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2016-02-06 16:55 - 2015-12-08 22:53 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2016-02-06 16:55 - 2015-12-08 22:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2016-02-06 16:55 - 2015-12-08 22:53 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2016-02-06 16:55 - 2015-12-08 22:53 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2016-02-06 16:55 - 2015-12-08 22:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2016-02-06 16:55 - 2015-12-08 22:43 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2016-02-06 16:55 - 2015-12-08 22:11 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2016-02-06 16:55 - 2015-12-08 22:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2016-02-06 16:55 - 2015-06-02 00:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2016-02-06 16:55 - 2011-02-23 05:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2016-02-06 16:54 - 2015-02-04 03:54 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-02-06 16:54 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2016-02-06 12:30 - 2016-02-06 12:30 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\mkvtoolnix
2016-02-06 10:34 - 2016-02-19 22:26 - 00000000 ____D C:\Users\miroslav\Documents\Picosmos
2016-02-06 10:17 - 2016-02-06 10:17 - 00001286 _____ C:\Users\miroslav\Desktop\Aura - Shortcut.lnk
2016-02-06 10:14 - 2012-07-26 04:39 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2016-02-06 10:14 - 2012-07-26 03:46 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2016-02-06 10:14 - 2012-06-02 15:34 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2016-02-06 10:10 - 2012-07-26 04:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2016-02-06 10:10 - 2012-07-26 04:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2016-02-06 10:10 - 2012-07-26 04:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-02-06 10:10 - 2012-07-26 04:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2016-02-06 10:10 - 2012-07-26 04:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2016-02-06 10:10 - 2012-07-26 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2016-02-06 10:10 - 2012-07-26 03:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2016-02-06 10:10 - 2012-06-02 15:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2016-02-06 10:07 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2016-02-06 10:07 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2016-02-06 10:06 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2016-02-06 10:06 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2016-02-06 10:04 - 2012-03-01 06:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2016-02-06 10:04 - 2012-03-01 06:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2016-02-05 22:34 - 2016-02-05 23:25 - 00000000 ____D C:\Users\miroslav\AppData\Local\My Family Tree
2016-02-05 22:34 - 2016-02-05 22:34 - 00000000 ____D C:\Users\miroslav\AppData\Local\Chronoplex_Software
2016-02-05 17:14 - 2015-01-09 03:48 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2016-02-05 17:14 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2016-02-05 17:14 - 2015-01-09 03:48 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2016-02-05 17:13 - 2015-11-10 19:39 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-02-05 17:13 - 2015-11-10 19:38 - 01081856 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-02-05 17:13 - 2015-11-10 19:38 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00901264 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-02-05 17:13 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-02-05 17:13 - 2015-07-10 18:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-02-05 17:13 - 2015-07-10 18:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2016-02-05 17:13 - 2015-07-10 18:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2016-02-05 17:13 - 2015-02-03 04:12 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-02-05 17:13 - 2015-01-29 04:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2016-02-05 17:13 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2016-02-05 17:13 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2016-02-05 17:13 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-02-05 17:13 - 2013-07-03 05:02 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2016-02-05 17:13 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-02-05 17:13 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2016-02-05 17:13 - 2013-02-12 04:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2016-02-05 17:13 - 2012-07-04 20:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2016-02-05 17:13 - 2012-05-14 05:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-02-05 17:13 - 2011-04-29 03:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-02-05 17:13 - 2011-04-29 03:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-02-05 17:13 - 2011-04-29 03:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-02-05 17:12 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2016-02-05 17:12 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2016-02-05 17:12 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-02-05 17:12 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-02-05 17:12 - 2015-07-09 18:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2016-02-05 17:12 - 2015-07-09 18:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2016-02-05 17:12 - 2015-07-01 21:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2016-02-05 17:12 - 2015-07-01 21:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2016-02-05 17:12 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2016-02-05 17:12 - 2012-11-02 06:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2016-02-05 17:12 - 2011-06-16 05:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2016-02-05 17:12 - 2011-02-18 06:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2016-02-05 17:11 - 2015-08-27 18:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-02-05 17:11 - 2015-08-27 18:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-02-05 17:11 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2016-02-05 17:11 - 2015-08-27 18:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2016-02-05 17:11 - 2015-08-05 18:41 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2016-02-05 17:11 - 2015-06-15 22:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-02-05 17:11 - 2015-06-15 22:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2016-02-05 17:11 - 2015-06-15 22:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-02-05 17:11 - 2015-06-15 22:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2016-02-05 17:11 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2016-02-05 17:11 - 2014-06-16 02:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-02-05 17:11 - 2014-06-16 02:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-02-05 17:11 - 2014-06-16 02:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-02-05 17:11 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2016-02-05 17:11 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2016-02-05 17:11 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2016-02-05 17:11 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2016-02-05 17:11 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2016-02-05 17:11 - 2013-01-24 05:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-02-05 17:11 - 2011-03-03 06:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-02-05 17:11 - 2011-03-03 06:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2016-02-05 17:11 - 2011-03-03 06:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2016-02-05 17:10 - 2015-11-05 20:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-02-05 17:10 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2016-02-05 17:10 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2016-02-05 17:10 - 2015-10-29 18:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2016-02-05 17:10 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2016-02-05 17:10 - 2015-07-15 18:59 - 00078784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2016-02-05 17:10 - 2015-07-15 18:55 - 01159168 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2016-02-05 17:10 - 2015-07-15 18:54 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2016-02-05 17:10 - 2015-06-11 18:57 - 00919552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2016-02-05 17:10 - 2015-06-11 18:15 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2016-02-05 17:10 - 2015-06-11 18:15 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2016-02-05 17:10 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2016-02-05 17:10 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2016-02-05 17:10 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2016-02-05 17:10 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2016-02-05 17:10 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2016-02-05 17:10 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2016-02-05 17:10 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2016-02-05 17:10 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2016-02-05 17:10 - 2012-08-21 21:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2016-02-05 17:10 - 2011-12-30 06:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-02-05 17:10 - 2011-08-17 05:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2016-02-05 17:10 - 2011-08-17 05:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2016-02-05 17:09 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2016-02-05 17:09 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-02-05 17:09 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2016-02-05 17:09 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-02-05 17:09 - 2015-09-02 03:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-02-05 17:09 - 2015-09-02 03:48 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-02-05 17:09 - 2015-09-02 03:48 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-02-05 17:09 - 2015-09-02 03:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-02-05 17:09 - 2015-09-02 02:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-02-05 17:09 - 2015-04-11 04:07 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2016-02-05 17:09 - 2015-03-04 05:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2016-02-05 17:09 - 2015-03-04 05:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2016-02-05 17:09 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-02-05 17:09 - 2014-01-28 03:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-02-05 17:09 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-02-05 17:09 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2016-02-05 17:09 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2016-02-05 17:09 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2016-02-05 17:09 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-02-05 17:09 - 2013-03-19 04:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-02-05 17:09 - 2011-08-27 05:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2016-02-05 17:09 - 2011-05-24 11:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2016-02-05 17:09 - 2011-05-03 05:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-02-05 17:08 - 2015-07-22 18:53 - 00937984 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-02-05 17:08 - 2015-07-22 18:53 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-02-05 17:08 - 2015-07-22 17:38 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2016-02-05 17:08 - 2015-01-17 03:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-02-05 17:08 - 2014-02-04 03:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2016-02-05 17:08 - 2014-02-04 03:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-02-05 17:08 - 2014-02-04 03:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2016-02-05 17:08 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2016-02-05 17:08 - 2012-10-03 17:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2016-02-05 17:08 - 2012-10-03 17:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2016-02-05 17:08 - 2012-10-03 17:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-02-05 17:08 - 2012-10-03 16:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2016-02-05 17:08 - 2011-05-04 05:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-02-05 17:07 - 2015-07-30 18:57 - 01171456 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-02-05 17:07 - 2015-07-09 18:42 - 01372160 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-02-05 17:07 - 2015-07-09 18:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2016-02-05 17:07 - 2015-05-25 19:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2016-02-05 17:07 - 2015-05-25 19:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2016-02-05 17:07 - 2015-05-25 19:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2016-02-05 17:07 - 2015-05-25 19:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2016-02-05 17:07 - 2015-05-25 19:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2016-02-05 17:07 - 2015-05-25 19:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2016-02-05 17:07 - 2015-04-18 03:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-02-05 17:07 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2016-02-05 17:07 - 2014-01-24 03:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-02-05 17:07 - 2012-07-04 22:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-02-05 17:07 - 2012-07-04 22:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-02-05 17:07 - 2012-07-04 22:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-02-05 17:07 - 2012-06-06 06:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2016-02-05 17:07 - 2011-05-04 05:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-02-05 17:07 - 2011-05-04 05:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2016-02-05 17:07 - 2011-05-04 05:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2016-02-05 17:07 - 2011-05-04 05:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2016-02-05 17:07 - 2011-05-04 05:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2016-02-05 17:07 - 2011-05-04 05:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-02-05 17:07 - 2011-05-04 05:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-02-05 17:07 - 2011-05-04 05:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2016-02-05 17:07 - 2011-02-12 06:35 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2016-02-05 17:06 - 2015-12-10 19:30 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 11033088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 06035968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 02088960 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 01267712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-02-05 17:06 - 2015-12-10 19:29 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2016-02-05 17:06 - 2015-12-10 19:29 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll
2016-02-05 17:06 - 2015-12-10 19:29 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-02-05 17:06 - 2015-12-10 19:28 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-02-05 17:06 - 2015-12-10 19:00 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-02-05 17:06 - 2015-12-10 18:45 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-02-05 17:06 - 2015-12-08 22:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-02-05 17:06 - 2015-12-08 22:53 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-02-05 17:06 - 2015-12-08 22:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-02-05 17:06 - 2015-11-03 19:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2016-02-05 17:06 - 2015-10-01 18:50 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2016-02-05 17:06 - 2015-10-01 18:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2016-02-05 17:06 - 2015-10-01 18:50 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-02-05 17:06 - 2015-10-01 18:50 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2016-02-05 17:06 - 2015-10-01 18:50 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2016-02-05 17:06 - 2015-10-01 17:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-02-05 17:06 - 2015-04-27 20:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-02-05 17:06 - 2015-04-27 20:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-02-05 17:06 - 2015-04-27 20:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-02-05 17:06 - 2015-04-27 20:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2016-02-05 17:06 - 2015-04-13 04:19 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2016-02-05 17:06 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-02-05 17:06 - 2014-04-05 03:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-02-05 17:06 - 2014-04-05 03:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-02-05 17:06 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-02-05 17:06 - 2010-12-23 06:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-02-05 17:06 - 2010-12-23 06:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2016-02-05 17:05 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2016-02-05 17:05 - 2015-11-05 10:48 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2016-02-05 17:05 - 2014-12-19 03:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-02-05 17:05 - 2014-12-11 18:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2016-02-05 17:05 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-02-05 17:05 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2016-02-05 17:05 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2016-02-05 17:05 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2016-02-05 17:05 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2016-02-05 17:05 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2016-02-05 17:05 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-02-05 17:05 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2016-02-05 17:05 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2016-02-05 17:05 - 2011-12-16 08:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2016-02-05 17:05 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-02-05 17:05 - 2011-06-15 09:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2016-02-05 17:05 - 2011-06-15 09:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2016-02-05 17:05 - 2011-06-15 09:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2016-02-05 17:05 - 2011-06-15 09:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2016-02-05 17:05 - 2011-06-15 09:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2016-02-05 17:04 - 2015-11-13 23:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2016-02-05 17:04 - 2015-11-13 23:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2016-02-05 17:04 - 2015-11-13 23:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2016-02-05 17:04 - 2015-06-25 10:48 - 00105408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-02-05 17:04 - 2015-06-25 10:44 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-02-05 17:04 - 2015-02-18 08:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2016-02-05 17:04 - 2015-02-03 04:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2016-02-05 17:04 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2016-02-05 17:04 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-02-05 17:04 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-02-05 17:04 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2016-02-05 17:04 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2016-02-05 17:04 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-02-05 17:04 - 2012-11-23 03:48 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-02-05 17:04 - 2012-09-25 23:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2016-02-05 17:04 - 2012-03-17 08:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-02-05 17:04 - 2012-01-04 09:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-02-05 17:03 - 2015-07-15 03:55 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2016-02-05 17:03 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2016-02-05 17:03 - 2014-07-17 02:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-02-05 17:03 - 2014-07-17 02:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-02-05 17:03 - 2014-07-17 02:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2016-02-05 17:03 - 2014-07-17 02:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2016-02-05 17:03 - 2014-07-17 02:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2016-02-05 17:03 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2016-02-05 17:03 - 2013-07-12 11:07 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2016-02-05 17:03 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-02-05 17:03 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2016-02-05 17:03 - 2012-04-26 05:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2016-02-05 17:03 - 2012-04-26 05:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2016-02-05 17:02 - 2015-04-29 19:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-02-05 17:02 - 2015-04-29 19:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-02-05 17:02 - 2015-04-29 19:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-02-05 17:02 - 2015-04-29 19:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-02-05 17:02 - 2015-04-29 19:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-02-05 17:02 - 2015-02-25 04:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-02-05 17:02 - 2015-02-03 04:12 - 02135040 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2016-02-05 17:02 - 2015-02-03 04:12 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2016-02-05 17:02 - 2015-02-03 04:11 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2016-02-05 17:02 - 2015-02-03 04:11 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2016-02-05 17:02 - 2015-02-03 04:11 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2016-02-05 17:02 - 2015-02-03 04:10 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2016-02-05 17:02 - 2015-02-03 04:00 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2016-02-05 17:02 - 2014-12-06 04:50 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-02-05 17:02 - 2014-10-31 23:22 - 00521384 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-02-05 17:02 - 2014-06-28 01:21 - 00455752 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-02-05 17:02 - 2014-06-28 01:21 - 00409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-02-05 17:02 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-02-05 17:02 - 2012-10-03 17:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-02-05 17:02 - 2012-10-03 17:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2016-02-05 17:02 - 2011-03-11 06:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2016-02-05 17:02 - 2011-03-11 06:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2016-02-05 16:34 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2016-02-05 16:34 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2016-02-05 16:34 - 2013-11-27 02:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2016-02-05 16:34 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2016-02-05 16:34 - 2013-11-27 02:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2016-02-05 16:34 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2016-02-05 16:34 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2016-02-05 16:33 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2016-02-05 16:33 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2016-02-05 16:33 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2016-02-05 16:33 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2016-02-05 16:33 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2016-02-05 16:33 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2016-02-05 16:33 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2016-02-05 16:33 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2016-02-05 16:33 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2016-02-05 16:30 - 2015-04-24 18:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2016-02-05 16:30 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2016-02-05 16:30 - 2014-10-14 02:50 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2016-02-05 16:30 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-02-05 16:30 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2016-02-05 16:30 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2016-02-05 16:30 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2016-02-05 16:30 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-02-05 16:25 - 2016-02-05 16:25 - 00344966 __RSH C:\CUBDL
2016-02-05 16:06 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-02-05 16:06 - 2012-02-17 05:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2016-02-05 15:36 - 2016-02-05 15:36 - 00001278 _____ C:\Users\miroslav\Desktop\ClamWinPortable - Shortcut.lnk
2016-02-05 15:34 - 2016-02-05 15:34 - 00001461 _____ C:\Users\miroslav\Desktop\TotalCommanderPortable - Shortcut.lnk
2016-02-05 15:01 - 2016-02-05 15:01 - 01788448 _____ C:\Users\miroslav\Downloads\IPCConfig.exe
2016-02-05 12:27 - 2016-02-05 12:27 - 01439447 _____ C:\Windows\wat.MSU
2016-02-05 12:27 - 2016-02-05 12:27 - 00000000 ___HT C:\Windows\wusa.lock
2016-02-05 12:27 - 2016-02-05 12:27 - 00000000 ____D C:\4c8abb06d4de9bd33d88395c21
2016-02-05 11:13 - 2016-02-05 11:14 - 00002090 _____ C:\Users\miroslav\Desktop\Clear Memort.lnk
2016-02-05 09:02 - 2016-02-07 10:04 - 320158697 _____ C:\Windows\MEMORY.DMP
2016-02-05 09:02 - 2016-02-07 10:04 - 00000000 ____D C:\Windows\Minidump
2016-02-05 09:02 - 2016-02-05 09:02 - 00152672 _____ C:\Windows\Minidump\020516-41745-01.dmp
2016-02-04 20:06 - 2016-02-04 20:06 - 00000000 ____D C:\Windows\system32\SPReview
2016-02-04 20:05 - 2016-02-04 20:05 - 00000000 ____D C:\Windows\system32\EventProviders
2016-02-04 20:01 - 2010-11-20 13:21 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-02-04 20:01 - 2010-11-20 13:19 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2016-02-04 20:01 - 2010-11-20 11:24 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2016-02-04 20:00 - 2010-11-20 13:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2016-02-04 20:00 - 2010-11-20 13:29 - 00520064 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2016-02-04 20:00 - 2010-11-20 13:29 - 00014208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2016-02-04 20:00 - 2010-11-20 13:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 01086976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-02-04 20:00 - 2010-11-20 13:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2016-02-04 20:00 - 2010-11-20 13:20 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-02-04 20:00 - 2010-11-20 13:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2016-02-04 20:00 - 2010-11-20 13:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2016-02-04 20:00 - 2010-11-20 13:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2016-02-04 20:00 - 2010-11-20 13:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\system32\mfc40.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\system32\mfc40u.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2016-02-04 20:00 - 2010-11-20 13:19 - 00566272 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00863744 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00739840 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-02-04 20:00 - 2010-11-20 13:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00252928 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-02-04 20:00 - 2010-11-20 13:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2016-02-04 20:00 - 2010-11-20 13:17 - 03367424 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00080896 _____ C:\Windows\system32\RDVGHelper.exe
2016-02-04 20:00 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe
2016-02-04 20:00 - 2010-11-20 11:22 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2016-02-04 20:00 - 2010-11-20 09:44 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2016-02-04 20:00 - 2010-11-05 03:20 - 00146852 _____ C:\Windows\system32\systemsf.ebd
2016-02-04 20:00 - 2010-11-05 02:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2016-02-04 20:00 - 2010-11-05 02:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2016-02-04 20:00 - 2010-11-05 02:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2016-02-04 20:00 - 2010-11-05 02:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2016-02-04 19:59 - 2010-11-20 13:36 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2016-02-04 19:59 - 2010-11-20 13:30 - 00245632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00175360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00173440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00160128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00153984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00140160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00130432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00116096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00085376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00040704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2016-02-04 19:59 - 2010-11-20 13:30 - 00028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2016-02-04 19:59 - 2010-11-20 13:29 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2016-02-04 19:59 - 2010-11-20 13:29 - 00274304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2016-02-04 19:59 - 2010-11-20 13:29 - 00194432 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2016-02-04 19:59 - 2010-11-20 13:29 - 00194432 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-02-04 19:59 - 2010-11-20 13:29 - 00043392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2016-02-04 19:59 - 2010-11-20 13:24 - 00271664 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-02-04 19:59 - 2010-11-20 13:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 01063936 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00907776 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00766464 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\scrptadm.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00463360 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2016-02-04 19:59 - 2010-11-20 13:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2016-02-04 19:59 - 2010-11-20 13:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2016-02-04 19:59 - 2010-11-20 13:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2016-02-04 19:59 - 2010-11-20 13:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2016-02-04 19:59 - 2010-11-20 13:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2016-02-04 19:59 - 2010-11-20 13:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-02-04 19:59 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2016-02-04 19:59 - 2010-11-20 13:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2016-02-04 19:59 - 2010-11-20 13:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2016-02-04 19:59 - 2010-11-20 13:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 01188864 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00508416 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2016-02-04 19:59 - 2010-11-20 13:18 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2016-02-04 19:59 - 2010-11-20 13:17 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 01131008 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00334336 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00098816 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2016-02-04 19:59 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2016-02-04 19:59 - 2010-11-20 13:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2016-02-04 19:59 - 2010-11-20 13:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2016-02-04 19:59 - 2010-11-20 13:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2016-02-04 19:59 - 2010-11-20 13:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2016-02-04 19:59 - 2010-11-20 13:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2016-02-04 19:59 - 2010-11-20 13:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-02-04 19:59 - 2010-11-20 13:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2016-02-04 19:59 - 2010-11-20 13:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2016-02-04 19:59 - 2010-11-20 13:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2016-02-04 19:59 - 2010-11-20 13:16 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2016-02-04 19:59 - 2010-11-20 11:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2016-02-04 19:59 - 2010-11-20 11:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2016-02-04 19:59 - 2010-11-20 10:59 - 00035968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winusb.sys
2016-02-04 19:59 - 2010-11-20 10:14 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2016-02-04 19:59 - 2010-11-20 09:44 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-02-04 19:59 - 2010-11-20 09:42 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2016-02-04 19:59 - 2010-11-20 09:39 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-02-04 19:58 - 2010-11-20 13:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2016-02-04 19:58 - 2010-11-20 13:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2016-02-04 19:58 - 2010-11-20 13:29 - 00137088 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00577024 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\sppinst.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2016-02-04 19:58 - 2010-11-20 13:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2016-02-04 19:58 - 2010-11-20 13:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2016-02-04 19:58 - 2010-11-20 13:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2016-02-04 19:58 - 2010-11-20 13:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2016-02-04 19:58 - 2010-11-20 13:20 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-02-04 19:58 - 2010-11-20 13:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2016-02-04 19:58 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00438272 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2016-02-04 19:58 - 2010-11-20 13:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2016-02-04 19:58 - 2010-11-20 13:17 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\rdpsign.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\qprocess.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe
2016-02-04 19:58 - 2010-11-20 13:17 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-02-04 19:58 - 2010-11-20 13:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2016-02-04 19:58 - 2010-11-20 13:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2016-02-04 19:58 - 2010-11-20 13:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-02-04 19:58 - 2010-11-20 13:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2016-02-04 19:58 - 2010-11-20 13:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-02-04 19:58 - 2010-11-20 13:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2016-02-04 19:58 - 2010-11-20 13:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2016-02-04 19:58 - 2010-11-20 13:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2016-02-04 19:58 - 2010-11-20 13:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2016-02-04 19:58 - 2010-11-20 13:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2016-02-04 19:58 - 2010-11-20 13:16 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2016-02-04 19:58 - 2010-11-20 13:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2016-02-04 19:58 - 2010-11-20 13:16 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe
2016-02-04 19:58 - 2010-11-20 13:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2016-02-04 19:58 - 2010-11-20 13:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2016-02-04 19:58 - 2010-11-20 13:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2016-02-04 19:58 - 2010-11-20 13:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2016-02-04 19:58 - 2010-11-20 13:16 - 00065024 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2016-02-04 19:58 - 2010-11-20 13:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\chglogon.exe
2016-02-04 19:58 - 2010-11-20 11:22 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2016-02-04 19:58 - 2010-11-20 11:07 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2016-02-04 19:58 - 2010-11-20 11:06 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2016-02-04 19:58 - 2010-11-20 10:50 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2016-02-04 19:58 - 2010-11-05 03:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\sppuinotify.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2016-02-04 19:57 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2016-02-04 19:57 - 2010-11-20 13:20 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00082944 _____ (Radius Inc.) C:\Windows\system32\iccvid.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2016-02-04 19:57 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2016-02-04 19:57 - 2010-11-20 13:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2016-02-04 19:57 - 2010-11-20 13:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2016-02-04 19:57 - 2010-11-20 13:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00066048 _____ C:\Windows\system32\PrintBrmUi.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\tskill.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\tsdiscon.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\tscon.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\qappsrv.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\logoff.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shadow.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\rwinsta.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\reset.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\query.exe
2016-02-04 19:57 - 2010-11-20 13:17 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2016-02-04 19:57 - 2010-11-20 13:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2016-02-04 19:57 - 2010-11-20 13:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2016-02-04 19:57 - 2010-11-20 13:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2016-02-04 19:57 - 2010-11-20 13:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2016-02-04 19:57 - 2010-11-20 13:16 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\chgport.exe
2016-02-04 19:57 - 2010-11-20 13:16 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\chgusr.exe
2016-02-04 19:57 - 2010-11-20 13:16 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\change.exe
2016-02-04 19:57 - 2010-11-20 13:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-02-04 19:57 - 2010-11-20 13:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2016-02-04 19:57 - 2010-11-20 13:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2016-02-04 19:57 - 2010-11-20 13:05 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2016-02-04 19:57 - 2010-11-20 13:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2016-02-04 19:57 - 2010-11-20 13:03 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2016-02-04 19:57 - 2010-11-20 13:03 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\vmbusres.dll
2016-02-04 19:57 - 2010-11-20 13:03 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\vmstorfltres.dll
2016-02-04 19:57 - 2010-11-20 13:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2016-02-04 19:57 - 2010-11-20 13:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2016-02-04 19:57 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2016-02-04 19:57 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2016-02-04 19:57 - 2010-11-20 13:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2016-02-04 19:57 - 2010-11-20 12:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2016-02-04 19:57 - 2010-11-20 12:56 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2016-02-04 19:57 - 2010-11-20 11:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2016-02-04 19:57 - 2010-11-20 11:22 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys
2016-02-04 19:57 - 2010-11-20 11:21 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\RDPREFDD.dll
2016-02-04 19:57 - 2010-11-20 11:21 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys
2016-02-04 19:57 - 2010-11-20 11:07 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2016-02-04 19:57 - 2010-11-20 11:07 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2016-02-04 19:57 - 2010-11-20 11:06 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2016-02-04 19:57 - 2010-11-20 11:00 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2016-02-04 19:57 - 2010-11-20 11:00 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2016-02-04 19:57 - 2010-11-20 11:00 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2016-02-04 19:57 - 2010-11-20 11:00 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD.sys
2016-02-04 19:57 - 2010-11-20 10:59 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2016-02-04 19:57 - 2010-11-20 10:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-02-04 19:57 - 2010-11-20 10:50 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2016-02-04 19:57 - 2010-11-20 10:50 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-02-04 19:57 - 2010-11-20 10:50 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2016-02-04 19:57 - 2010-11-20 10:24 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2016-02-04 19:57 - 2010-11-20 10:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2016-02-04 19:57 - 2010-11-20 10:14 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\VmbusCoinstaller.dll
2016-02-04 19:57 - 2010-11-20 10:14 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll
2016-02-04 19:57 - 2010-11-20 10:14 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2016-02-04 19:57 - 2010-11-20 10:14 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2016-02-04 19:57 - 2010-11-20 10:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys
2016-02-04 19:57 - 2010-11-20 10:14 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2016-02-04 19:57 - 2010-11-20 10:14 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys
2016-02-04 19:57 - 2010-11-20 09:47 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2016-02-04 19:57 - 2010-11-20 09:42 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-02-04 19:57 - 2010-11-20 09:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2016-02-04 19:57 - 2010-11-20 09:38 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2016-02-04 19:57 - 2010-11-20 06:23 - 00053600 _____ C:\Windows\system32\dosx.exe
2016-02-04 19:57 - 2010-11-10 02:45 - 00010429 _____ C:\Windows\system32\ScavengeSpace.xml
2016-02-04 19:57 - 2010-11-05 03:20 - 00105559 _____ C:\Windows\system32\RacRules.xml
2016-02-04 19:56 - 2010-11-20 13:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2016-02-04 18:44 - 2016-02-04 18:44 - 00000000 ____D C:\Windows\ERUNT
2016-02-04 13:53 - 2016-02-05 15:03 - 00000000 ____D C:\Windows\system32\IPCConfigV2
2016-02-04 10:24 - 2016-02-04 10:24 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Disabled Startup
2016-02-03 12:38 - 2016-02-03 12:40 - 00000000 ____D C:\Program Files\NSIS
2016-02-03 12:35 - 2016-02-03 12:38 - 00000000 ____D C:\Users\miroslav\AppData\Local\SpeedTest
2016-02-03 12:35 - 2016-02-03 12:35 - 00000000 ____D C:\Program Files\RaccoonWorks
2016-02-03 12:24 - 2016-02-03 12:27 - 00000000 ____D C:\Users\miroslav\Documents\Network Monitor 3
2016-02-03 12:10 - 2016-02-03 12:10 - 00000000 ____D C:\Program Files\CBS Software
2016-02-03 11:18 - 2016-02-03 11:18 - 00000796 _____ C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2016-02-03 11:17 - 2016-02-22 00:57 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\uTorrent
2016-02-01 20:05 - 2016-02-01 20:05 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\NVIDIA
2016-02-01 19:44 - 2016-02-01 19:44 - 00000000 ____D C:\Users\miroslav\AppData\Local\PDF24
2016-02-01 19:35 - 2016-02-01 19:48 - 00000000 ____D C:\ProgramData\Package Cache
2016-02-01 19:30 - 2016-02-01 19:43 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Foxit Software
2016-02-01 19:30 - 2016-02-01 19:42 - 00000000 ____D C:\Users\Public\Foxit Software
2016-02-01 19:29 - 2016-02-01 19:40 - 00000000 ____D C:\Program Files\Foxit Software
2016-02-01 19:29 - 2016-02-01 19:29 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Foxit AgentInformation
2016-02-01 19:02 - 2016-02-15 18:16 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2016-02-01 12:14 - 2016-02-01 12:14 - 00000000 ____D C:\Users\miroslav\AppData\Local\ArcSoft
2016-02-01 11:55 - 2016-02-01 11:57 - 00000000 ____D C:\Users\miroslav\Documents\Fax
2016-02-01 11:55 - 2016-02-01 11:55 - 00000000 ___RD C:\Users\miroslav\Documents\Scanned Documents
2016-02-01 11:46 - 2016-02-01 12:03 - 00000000 ____D C:\Users\miroslav\Documents\FinePrint files
2016-02-01 11:46 - 2016-02-01 11:46 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FinePrint
2016-02-01 11:46 - 2014-08-28 16:10 - 00492248 ____N (FinePrint Software, LLC) C:\Windows\system32\fpres832.dll
2016-02-01 11:46 - 2014-08-28 16:10 - 00453336 ____N (FinePrint Software, LLC) C:\Windows\system32\fpmon8.dll
2016-02-01 11:41 - 2016-02-01 11:41 - 01267506 ____N C:\Users\miroslav\Documents\Full page photo.tif
2016-02-01 10:43 - 2016-02-01 10:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-02-01 10:42 - 2016-02-01 11:18 - 00000000 ____D C:\Users\miroslav\AppData\Local\NVIDIA
2016-02-01 10:42 - 2016-02-01 10:42 - 00000000 ____D C:\Program Files\AGEIA Technologies
2016-02-01 10:40 - 2016-02-21 10:06 - 00000000 ____D C:\ProgramData\NVIDIA
2016-02-01 10:40 - 2013-12-19 19:37 - 04317984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-02-01 10:40 - 2013-12-19 19:37 - 03036960 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2016-02-01 10:40 - 2013-12-19 19:37 - 00664352 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-02-01 10:40 - 2013-12-19 19:37 - 00376096 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-02-01 10:40 - 2013-12-19 19:37 - 00062752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-02-01 10:39 - 2016-02-01 11:18 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-02-01 10:39 - 2013-12-19 21:26 - 00053024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-02-01 10:30 - 2013-12-05 09:42 - 00034080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys
2016-02-01 10:30 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2016-02-01 10:29 - 2016-02-01 10:43 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-02-01 10:29 - 2013-12-19 21:26 - 22960416 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 17560352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 10471712 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-02-01 10:29 - 2013-12-19 21:26 - 09700224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 09657464 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 02947872 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 02747680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 02698272 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233221.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 00893728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233221.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 00852768 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 00847648 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll
2016-02-01 10:29 - 2013-12-19 21:26 - 00018439 _____ C:\Windows\system32\nvinfo.pb
2016-02-01 10:28 - 2016-02-01 10:28 - 00000000 ____D C:\NVIDIA
2016-02-01 09:41 - 2016-02-10 23:31 - 00000000 ____D C:\Windows\system32\MRT
2016-02-01 09:41 - 2016-02-10 23:27 - 144254680 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-02-01 09:34 - 2016-02-16 11:54 - 00000000 ___RD C:\Users\miroslav\Desktop\Gluposti sa fejsa
2016-01-31 18:49 - 2016-01-31 18:49 - 00000000 ____D C:\Users\miroslav\Impostazioni locali
2016-01-31 17:55 - 2016-02-21 23:44 - 00000000 ___RD C:\Users\miroslav\Desktop\video
2016-01-31 17:40 - 2016-01-31 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock
2016-01-31 17:40 - 2016-01-31 17:40 - 00000000 ____D C:\Program Files\RocketDock
2016-01-31 17:01 - 2016-01-31 17:01 - 00000000 ____D C:\Users\miroslav\AppData\Local\Stardock
2016-01-31 16:52 - 2016-01-31 19:43 - 00000000 ____D C:\Users\miroslav\AppData\Local\HWiNFOMonitor
2016-01-31 16:51 - 2016-02-22 00:22 - 00001127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-01-31 16:51 - 2016-01-31 16:58 - 00000000 ____D C:\Users\miroslav\AppData\Local\Mozilla
2016-01-31 16:51 - 2016-01-31 16:52 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Mozilla
2016-01-31 16:50 - 2016-02-13 10:28 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-01-31 16:50 - 2016-02-13 10:28 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-01-31 14:33 - 2016-01-31 14:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
2016-01-31 14:30 - 2016-01-31 14:30 - 00000000 ____D C:\Users\miroslav\Documents\WFRCConfig
2016-01-31 14:30 - 2004-12-23 17:27 - 00027392 _____ (Ulead Systems, Inc.) C:\Windows\system32\Drivers\ULCDRHlp.sys
2016-01-31 14:29 - 2016-01-31 14:30 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinFast PVR2
2016-01-31 14:29 - 2016-01-31 14:29 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\InstallShield Installation Information
2016-01-31 13:25 - 2016-01-31 13:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7
2016-01-31 13:25 - 2016-01-31 13:25 - 00000000 ____D C:\Program Files\Your Uninstaller! 7
2016-01-31 13:21 - 2016-01-31 13:21 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2016-01-31 13:11 - 2016-02-16 17:46 - 00000000 ____D C:\ProgramData\TEMP
2016-01-31 13:11 - 2016-01-31 13:11 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\URSoft
2016-01-31 12:48 - 2016-01-31 12:48 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Opera Software
2016-01-31 12:48 - 2016-01-31 12:48 - 00000000 ____D C:\Users\miroslav\AppData\Local\Opera Software
2016-01-31 12:42 - 2016-01-31 12:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DScaler
2016-01-31 12:42 - 2016-01-31 12:42 - 00000000 ____D C:\Program Files\DScaler
2016-01-31 12:25 - 2016-02-02 18:45 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\DScaler4
2016-01-31 12:09 - 2016-02-01 12:14 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\ArcSoft
2016-01-31 12:08 - 2016-02-02 15:19 - 00000000 ____D C:\ProgramData\ArcSoft
2016-01-31 12:08 - 2016-01-31 12:08 - 00000000 ____D C:\Program Files\Common Files\Ulead Systems
2016-01-31 12:08 - 2016-01-31 12:08 - 00000000 ____D C:\Program Files\Common Files\ArcSoft
2016-01-31 12:08 - 2005-07-16 02:35 - 00245408 _____ (Microsoft Corporation) C:\Windows\system32\unicows.dll
2016-01-31 12:07 - 2016-01-31 14:30 - 00000000 ____D C:\Program Files\WinFast
2016-01-31 12:07 - 2016-01-31 12:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinFast PVR2
2016-01-31 12:06 - 2016-01-31 12:07 - 00000000 ____D C:\Windows\system32\WinFast
2016-01-31 12:06 - 2008-11-19 07:59 - 00561920 _____ (eMPIA Technology, Inc.) C:\Windows\system32\Drivers\emBDA.sys
2016-01-31 12:06 - 2008-11-19 07:59 - 00455168 _____ (eMPIA Technology, Inc.) C:\Windows\system32\Drivers\emOEM.sys
2016-01-31 12:06 - 2008-11-19 07:59 - 00126464 _____ (eMPIA Technology, Inc.) C:\Windows\system32\emPRP.ax
2016-01-31 12:06 - 2007-11-08 02:07 - 00065536 _____ (eMPIA Technology, Inc.) C:\Windows\emMON.exe
2016-01-31 12:06 - 2006-11-09 21:50 - 00016382 _____ C:\Windows\system32\Drivers\merlinC.rom
2016-01-31 12:04 - 2016-01-31 12:04 - 00000376 _____ C:\Windows\ODBC.INI
2016-01-31 12:03 - 2016-02-02 23:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-01-31 12:03 - 2007-04-09 13:23 - 00028040 _____ (Microsoft Corporation) C:\Windows\system32\mdimon.dll
2016-01-31 12:02 - 2016-02-04 20:05 - 00000000 ____D C:\Program Files\Microsoft Office
2016-01-31 12:02 - 2016-01-31 12:02 - 00000000 ____D C:\Windows\PCHEALTH
2016-01-31 12:02 - 2016-01-31 12:02 - 00000000 ____D C:\Program Files\Microsoft ActiveSync
2016-01-31 12:02 - 2016-01-31 12:02 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-01-31 11:29 - 2016-01-31 11:29 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\TeraCopy
2016-01-31 11:28 - 2016-01-31 11:28 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\WinRAR
2016-01-31 10:49 - 2016-01-31 10:49 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-01-31 10:49 - 2016-01-31 10:49 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-01-31 10:45 - 2016-01-31 12:48 - 00157184 ____H C:\Windows\system32\mlfcache.dat
2016-01-31 10:44 - 2016-01-31 01:57 - 00000000 ____D C:\Windows\Panther
2016-01-31 03:16 - 2016-02-20 11:06 - 00170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-01-31 03:16 - 2016-02-01 16:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-31 03:16 - 2016-01-31 03:13 - 00002136 _____ C:\Windows\system32\Drivers\etc\hp.bak
2016-01-31 03:15 - 2016-02-01 16:08 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-01-31 03:15 - 2016-01-31 03:15 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-01-31 03:15 - 2015-10-05 09:50 - 00094936 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-01-31 03:15 - 2015-10-05 09:50 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-01-31 03:15 - 2015-10-05 09:50 - 00023256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-01-31 03:14 - 2016-01-31 03:14 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SevenZip 9.20
2016-01-31 03:14 - 2016-01-31 03:14 - 00000000 ____D C:\Program Files\SevenZip
2016-01-31 03:11 - 2016-01-31 03:11 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-01-31 03:09 - 2016-01-31 03:09 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs
2016-01-31 03:09 - 2016-01-31 03:09 - 00000000 ____D C:\Users\miroslav\AppData\Local\VS Revo Group
2016-01-31 03:09 - 2016-01-31 03:09 - 00000000 ____D C:\Program Files\Portable
2016-01-31 03:08 - 2016-02-21 10:07 - 00000000 ____D C:\ProgramData\MCShield
2016-01-31 03:08 - 2016-01-31 03:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2016-01-31 03:08 - 2016-01-31 03:08 - 00000000 ____D C:\Program Files\MCShield
2016-01-31 03:06 - 2016-02-21 11:54 - 00000000 ____D C:\ProgramData\Unchecky
2016-01-31 03:06 - 2016-01-31 03:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky
2016-01-31 03:06 - 2016-01-31 03:06 - 00000000 ____D C:\Program Files\Unchecky
2016-01-31 03:02 - 2016-01-31 03:02 - 00000000 ____D C:\Program Files\Microsoft CAPICOM 2.1.0.2
2016-01-31 02:51 - 2016-01-31 02:52 - 00000000 ___HD C:\Program Files\Temp
2016-01-31 02:51 - 2016-01-31 02:51 - 00000000 ____D C:\Windows\system32\RTCOM
2016-01-31 02:51 - 2016-01-31 02:51 - 00000000 ____D C:\Program Files\Realtek
2016-01-31 02:51 - 2012-06-19 16:54 - 03240400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHDA.sys
2016-01-31 02:51 - 2012-06-19 13:30 - 00293889 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-01-31 02:51 - 2012-06-08 16:23 - 00071808 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp32.dll
2016-01-31 02:51 - 2012-06-08 16:21 - 00753280 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO32.dll
2016-01-31 02:51 - 2012-06-08 16:18 - 03173008 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO.dll
2016-01-31 02:51 - 2012-06-06 10:44 - 00645776 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApoApi.dll
2016-01-31 02:51 - 2012-06-01 09:37 - 02417808 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkPgExt.dll
2016-01-31 02:51 - 2012-05-31 18:08 - 00087696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoInstII.dll
2016-01-31 02:51 - 2012-05-25 18:06 - 01706640 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-01-31 02:51 - 2012-04-10 14:40 - 02193472 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO.dll
2016-01-31 02:51 - 2012-04-03 18:41 - 00709976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell.dll
2016-01-31 02:51 - 2012-03-08 11:47 - 00176736 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTACap.dll
2016-01-31 02:51 - 2012-03-08 11:47 - 00095840 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTARen.dll
2016-01-31 02:51 - 2011-12-18 17:57 - 01836376 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2016-01-31 02:51 - 2011-12-16 14:57 - 00054360 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld32.dll
2016-01-31 02:51 - 2011-12-13 16:58 - 01497704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSndMgr.cpl
2016-01-31 02:51 - 2011-11-22 16:28 - 00013416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR.dll
2016-01-31 02:51 - 2010-11-08 07:31 - 00359768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP32A.dll
2016-01-31 02:51 - 2010-11-08 07:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT32.dll
2016-01-31 02:51 - 2010-11-08 07:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA32.dll
2016-01-31 02:51 - 2010-11-08 07:31 - 00170840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED32A.dll
2016-01-31 02:51 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL32A.dll
2016-01-31 02:51 - 2010-11-08 07:31 - 00064856 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG32A.dll
2016-01-31 02:51 - 2010-09-27 09:34 - 00232792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-01-31 02:51 - 2009-12-04 15:43 - 00132368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO.dll
2016-01-31 02:51 - 2009-11-24 09:55 - 00345328 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSXT.dll
2016-01-31 02:51 - 2009-11-24 09:55 - 00185584 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSHD.dll
2016-01-31 02:51 - 2009-11-24 09:55 - 00173296 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP360.dll
2016-01-31 02:51 - 2009-11-24 09:55 - 00140528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW.dll
2016-01-31 02:51 - 2009-11-18 18:42 - 01783056 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesLib.dll
2016-01-31 02:51 - 2009-11-18 07:13 - 00050776 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn32.dll
2016-01-31 02:49 - 2016-02-17 11:47 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-01-31 02:49 - 2004-10-18 15:02 - 00049152 _____ (DeviceGuys, Inc.) C:\Windows\system32\Drivers\DgiVecp.sys
2016-01-31 02:36 - 2016-01-31 02:36 - 00000000 ____D C:\Users\miroslav\Tracing
2016-01-31 02:35 - 2016-02-21 22:41 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Skype
2016-01-31 02:33 - 2016-02-08 10:25 - 00087856 _____ C:\Users\miroslav\AppData\Local\GDIPFONTCACHEV1.DAT
2016-01-31 02:33 - 2016-01-31 02:33 - 00000000 ____D C:\ProgramData\GRETECH
2016-01-31 02:27 - 2016-01-31 02:27 - 00002154 _____ C:\Windows\epplauncher.mif
2016-01-31 02:26 - 2016-01-31 02:26 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2016-01-31 02:26 - 2016-01-31 02:26 - 00000000 ____D C:\Program Files\Microsoft Security Client
2016-01-31 02:25 - 2016-01-31 02:25 - 00001183 _____ C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ___RD C:\Program Files\Skype
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\GRETECH
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ____D C:\ProgramData\Skype
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ____D C:\Program Files\GRETECH
2016-01-31 02:25 - 2016-01-31 02:25 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-01-31 02:24 - 2016-02-21 12:45 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\AIMP
2016-01-31 02:24 - 2016-01-31 02:25 - 00000000 ____D C:\Program Files\TeamViewer
2016-01-31 02:24 - 2016-01-31 02:24 - 00001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Image Viewer
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\Program Files\WinRAR
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\Program Files\TeraCopy
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\Program Files\FastStone Image Viewer
2016-01-31 02:24 - 2016-01-31 02:24 - 00000000 ____D C:\Program Files\AIMP3
2016-01-31 02:19 - 2016-02-22 00:22 - 00002164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-01-31 02:18 - 2016-02-22 00:29 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-31 02:18 - 2016-02-21 11:29 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-31 02:18 - 2016-01-31 11:25 - 00000000 ____D C:\Users\miroslav\AppData\Local\Google
2016-01-31 02:18 - 2016-01-31 02:18 - 00000000 ____D C:\Program Files\Google
2016-01-31 02:11 - 2016-02-21 12:01 - 00000000 ____D C:\Users\miroslav\Desktop\Precice
2016-01-31 02:11 - 2016-02-01 10:52 - 00000000 ____D C:\ProgramData\LogiShrd
2016-01-31 02:11 - 2016-01-31 02:11 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Leadertech
2016-01-31 02:11 - 2016-01-31 02:11 - 00000000 ____D C:\Users\miroslav\AppData\Local\LogiShrd
2016-01-31 02:11 - 2016-01-31 02:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2016-01-31 02:11 - 2016-01-31 02:11 - 00000000 ____D C:\Program Files\Logitech
2016-01-31 02:10 - 2015-12-09 04:39 - 00247976 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-01-31 02:08 - 2016-01-31 02:11 - 00000000 ____D C:\Program Files\Common Files\logishrd
2016-01-31 02:00 - 2016-02-21 10:11 - 00778834 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-31 01:57 - 2016-02-22 00:22 - 00001405 _____ C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-01-31 01:57 - 2016-02-18 13:27 - 00000000 ____D C:\Users\miroslav\AppData\Local\VirtualStore
2016-01-31 01:57 - 2016-01-31 18:49 - 00000000 ____D C:\Users\miroslav
2016-01-31 01:57 - 2016-01-31 01:57 - 00000020 ___SH C:\Users\miroslav\ntuser.ini
2016-01-31 01:57 - 2016-01-31 01:57 - 00000000 _SHDL C:\Users\miroslav\My Documents
2016-01-31 01:57 - 2016-01-31 01:57 - 00000000 _SHDL C:\Users\miroslav\Documents\My Videos
2016-01-31 01:57 - 2016-01-31 01:57 - 00000000 _SHDL C:\Users\miroslav\Documents\My Pictures
2016-01-31 01:57 - 2016-01-31 01:57 - 00000000 _SHDL C:\Users\miroslav\Documents\My Music
2016-01-31 01:57 - 2009-07-14 08:48 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Media Center Programs

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-21 21:22 - 2009-07-14 05:34 - 00029440 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-02-21 21:22 - 2009-07-14 05:34 - 00029440 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-02-21 10:11 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2016-02-21 10:06 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-02-20 11:27 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-02-20 10:41 - 2014-11-27 16:24 - 00000000 ____D C:\AdwCleaner
2016-02-11 22:52 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-02-11 11:56 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\rescache
2016-02-11 10:06 - 2009-07-14 05:33 - 00357272 _____ C:\Windows\system32\FNTCACHE.DAT
2016-02-11 10:04 - 2009-07-14 08:50 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-09 11:05 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\AppCompat
2016-02-08 10:21 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\tracing
2016-02-08 10:21 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\System
2016-02-07 09:56 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Defender
2016-02-07 09:56 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\Dism
2016-02-07 09:56 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2016-02-04 23:25 - 2009-07-14 08:49 - 00000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2016-02-04 23:25 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Sidebar
2016-02-04 23:25 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-02-04 23:25 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-02-04 23:25 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\DVD Maker
2016-02-04 23:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\sysprep
2016-02-04 23:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\Setup
2016-02-04 23:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\oobe
2016-02-04 23:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\migwiz
2016-02-04 23:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\manifeststore
2016-02-04 23:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\servicing
2016-02-04 20:16 - 2009-07-14 03:05 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2016-02-04 18:45 - 2013-12-12 14:32 - 00001771 _____ C:\DelFix.txt
2016-02-02 23:52 - 2009-07-14 03:04 - 00000601 _____ C:\Windows\win.ini
2016-02-01 19:44 - 2009-07-14 05:52 - 00000000 ____D C:\Windows\system32\FxsTmp
2016-02-01 16:57 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\PLA
2016-02-01 10:40 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Help
2016-01-31 12:02 - 2009-07-14 08:49 - 00000000 ____D C:\Windows\ShellNew
2016-01-31 12:00 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system
2016-01-31 10:49 - 2009-07-14 05:52 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-01-31 10:46 - 2009-07-14 08:49 - 00000000 ____D C:\Windows\CSC
2016-01-31 10:44 - 2013-01-26 01:01 - 00008192 __RSH C:\BOOTSECT.BAK
2016-01-31 10:44 - 2009-07-14 05:52 - 00028672 _____ C:\Windows\system32\config\BCD-Template

==================== Files in the root of some directories =======

2016-02-22 00:22 - 2016-02-22 00:22 - 3315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe
2016-02-20 00:21 - 2016-02-20 00:21 - 3312147 _____ () C:\Program Files\Common Files\gdbo2rp3.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 7951360 _____ () C:\Users\miroslav\AppData\Roaming\agent.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0063696 _____ () C:\Users\miroslav\AppData\Roaming\Config.xml
2016-02-19 23:19 - 2016-02-19 23:19 - 0222699 _____ () C:\Users\miroslav\AppData\Roaming\DonCanlux.bin
2016-02-19 23:18 - 2016-02-19 23:17 - 0667136 _____ () C:\Users\miroslav\AppData\Roaming\Indigokix.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 1882569 _____ () C:\Users\miroslav\AppData\Roaming\Indigokix.tst
2016-02-19 23:17 - 2016-02-19 23:17 - 0018672 _____ () C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml
2016-02-19 23:17 - 2016-02-19 23:17 - 0126976 _____ () C:\Users\miroslav\AppData\Roaming\Installer.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0126464 _____ () C:\Users\miroslav\AppData\Roaming\lobby.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0018432 _____ () C:\Users\miroslav\AppData\Roaming\Main.dat
2016-02-19 23:18 - 2016-02-19 23:17 - 0667136 _____ () C:\Users\miroslav\AppData\Roaming\TampSaostring.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 0072727 _____ () C:\Users\miroslav\AppData\Roaming\TampSaostring.tst
2016-02-19 23:19 - 2016-02-19 23:19 - 0041472 _____ () C:\Users\miroslav\AppData\Local\Lajoyla.dat
2016-02-19 23:19 - 2016-02-19 23:19 - 0000187 _____ () C:\Users\miroslav\AppData\Local\Lajoyla.exe.config

Some files in TEMP:
====================
C:\Users\miroslav\AppData\Local\Temp\2.exe
C:\Users\miroslav\AppData\Local\Temp\Quarantine.exe
C:\Users\miroslav\AppData\Local\Temp\sqlite3.dll
C:\Users\miroslav\AppData\Local\Temp\_isE622.exe
C:\Users\miroslav\AppData\Local\Temp\_isF80D.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-02-18 14:25

==================== End of FRST.txt ============================
https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Pozdrav,



Preuzmi Zemana AntiMalware i sacuvaj ga na Deskop.


Arrow Kada preuzimanje bude zavrseno:

Dvoklikom pokreni instalaciju i prati uputstva. Instalacija je standardna bez ikakvih dodatnih opcija.
Nakon instalacije, program ce se automatski pokrenuti i sada je potrebno klikniti na Scan.
Kada se skeniranje zavrsi, klikni Next kako bi uklonio sve pronadjene stavke.
Ako ti zatrazi da restartujes racunar, klikni na Reboot.
Ukoliko je racunar ozbiljno inficiran, nakon restarta ce uslediti jos jedno skeniranje.


Arrow Nakon toga, potrebno je da dostavis izvestaj/e:

Na tastaturi pritisni + R u isto vreme.
Kopiraj sledecu komandu i potvrdi sa OK:
%USERPROFILE%\AppData\Local\Zemana\Zemana AntiMalware\reports
Najnovji izvestaj/e kopiraj na Deskop, a zatim ga prikaci u sledecoj poruci.

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 731
  • Gde živiš: Cacak

Uradio sam kao sto si rekao ali posle restarta vise nemoguda udjem ni na jednu stranicu,ni na mozili ni na googlechrome .Ovo pisem sa drugog racunara posto my city nemogu da otvorim na sedmici.

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Mozes li da prikacis izvestaj?

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 731
  • Gde živiš: Cacak

Evo izvestaja
https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Imao si shortcut hijacker, pa je svasta moguce. Hajde da skeniramo ponovo sa FRST-om.



Dostavi sva tri izvestaja.

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 731
  • Gde živiš: Cacak

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

createrestorepoint:
closeprocesses:
emptytemp:
Task: {DDCDFEEB-24F4-481C-A7A1-964870B2EBDF} - \csh0hjoy -> No File <==== ATTENTION
File: C:\ProgramData\Airtostrong\LatIs.dll
C:\ProgramData\Airtostrong
AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
FirewallRules: [{7DAADA9C-D0BA-4238-BC4A-546769A2FE43}] => (Allow) C:\Users\miroslav\AppData\Local\Temp\ctmpua\ctmpua.exe
FirewallRules: [{DBA91AE3-760C-4EA6-BCFB-1132E945B43B}] => (Allow) C:\Users\miroslav\AppData\Local\Temp\ctmpua\ctmpua.exe
FirewallRules: [{396C14A4-21D9-4820-B463-F092FCE69F7E}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCmgrInstallGuide.exe
FirewallRules: [{8C56FA88-4504-4F94-BBA0-F968BF8D2A8F}] => (Allow) C:\program files\common files\tencent\qqdownload\130\bugreport_xf.exe
FirewallRules: [{6FB095CF-E3CA-4F88-8FAA-19E74AF26CCD}] => (Allow) C:\program files\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{4396AF6C-07B5-49A0-A715-A9976FD7A67D}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCTray.exe
FirewallRules: [{03F26CEC-3B5D-4854-9A0C-9ECAEC623D67}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCMgr.exe
FirewallRules: [{CBD13BD3-F2F2-4482-9417-16479003DB38}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCRTP.exe
FirewallRules: [{1A111E50-D7AB-4ED4-A03B-D89328F3C177}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMDL.exe
FirewallRules: [{AE6C7826-D237-47DA-A25F-A98C880FF735}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\bugreport.exe
FirewallRules: [{E1FBFDE5-7897-4DA8-AAF7-E3D8F06961E8}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCFileOpen.exe
FirewallRules: [{B103FCB1-6E93-48BC-A84B-7DC4C43A8AAC}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCLeakScan.exe
FirewallRules: [{BC20FF8C-43E7-4BDB-BB6C-D79D68D871C7}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPConfig.exe
FirewallRules: [{427369C9-1178-4FF6-B9F7-2995B9BFF7CD}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCSoftMgr.exe
FirewallRules: [{225D4A9A-F0A3-4A10-9063-F68A9907E721}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\plugins\QMNetMon\QQPCNetFlow.exe
FirewallRules: [{9FB161BD-A558-476D-9AE5-2EDE39E934FF}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCBTU.exe
FirewallRules: [{7F46EAF5-08D1-45D5-B1FC-74AEBAD94F5C}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCClinic.exe
FirewallRules: [{31BC98E3-86A2-4E2E-A143-07E6374E82D1}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCLaunch.exe
FirewallRules: [{F4F4DCEC-5316-43E5-BF93-667080A1D83B}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMUpdate\QQPCMgrUpdate.exe
FirewallRules: [{F440D8F2-96D0-4D40-817F-3F75CD663013}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCSoftGame.exe
FirewallRules: [{CDFFF5CC-50F4-48B5-94AC-57EA2FCE4A68}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCSysOptimize.exe
FirewallRules: [{89FE6A2D-E628-4AE5-A49B-6D0B9E56DC01}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCUpdateAVLib.exe
FirewallRules: [{FE7A18BD-6E47-4569-BC3E-9D40DF0C2C01}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQRepair.exe
FirewallRules: [{DF785E5A-3312-4466-BCA8-500B96D63349}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\Uninst.exe
FirewallRules: [{E82BCA56-385C-44C8-A93E-D619392069E9}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCPatch.exe
FirewallRules: [{C7B7BB36-016A-46EA-AF8D-02723998CABE}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\TpkUpdate.exe
FirewallRules: [{541B615A-2A02-464C-971B-5F3EE1E6A451}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMRouterMgr.exe
FirewallRules: [{2873C2E6-07CB-423B-AF71-9A66DEAD7B27}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMAccountProtection.exe
FirewallRules: [{D1B267A3-3473-4620-A788-5CA40DC6A586}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMAdBlock.exe
C:\Program Files\Tencent
C:\program files\common files\tencent
C:\Users\miroslav\AppData\Local\Temp\ctmpua
AppInit_DLLs: C:\ProgramData\Airtostrong\LatIs.dll => C:\ProgramData\Airtostrong\LatIs.dll [257536 2016-02-22] ()
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [Picosmos] => "C:\Program Files\PicosmosTools\PicosmosTools.exe" /start
File: C:\Program Files\PicosmosTools\PicosmosTools.exe
C:\Program Files\PicosmosTools
File: C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\WinFast
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKLM -> ielnksrch URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1981283564-2037280381-1702048796-1000 -> {ielnksrch} URL =
FF DefaultSearchEngine: findit
CHR HomePage: Default -> hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLLWf1eky8t0ptfdfls21X5u-nLjszN-_fIJuKXn05p81_wMEGDGLEAdrM6LUcVzPK136c8t4vNO6nz-Sq5VmZaodoVyEM,
CHR DefaultSearchURL: Default -> hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLH4uA8mkARIO1Hjl99X9MfmOQwXcuRtAzMlKnvhIJniBceQ3iwi-66_JimVi1ARs1Da22BndKV8EJqKmtF6eKxEqdQlCg,&q={searchTerms}
CHR DefaultSearchKeyword: Default -> feed.sonic-search.com
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command={searchTerms}
S2 Airtostrong; C:\ProgramData\\Airtostrong\\Airtostrong.exe -f "C:\ProgramData\\Airtostrong\\Airtostrong.dat" -l -a
S1 MpKsl266fed54; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{62630DFC-95B0-4298-A023-94E0D4EAC9D5}\MpKsl266fed54.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2016-02-19 23:19 - 2016-02-20 11:27 - 00000000 ____D C:\Program Files\BitTorrent
2016-02-19 23:19 - 2016-02-19 23:19 - 00222699 _____ C:\Users\miroslav\AppData\Roaming\DonCanlux.bin
2016-02-19 23:19 - 2016-02-19 23:19 - 00041472 _____ C:\Users\miroslav\AppData\Local\Lajoyla.dat
2016-02-19 23:19 - 2016-02-19 23:19 - 00000187 _____ C:\Users\miroslav\AppData\Local\Lajoyla.exe.config
2016-02-19 23:18 - 2016-02-19 23:18 - 07951360 _____ C:\Users\miroslav\AppData\Roaming\agent.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 01882569 _____ C:\Users\miroslav\AppData\Roaming\Indigokix.tst
2016-02-19 23:18 - 2016-02-19 23:18 - 00126464 _____ C:\Users\miroslav\AppData\Roaming\lobby.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 00072727 _____ C:\Users\miroslav\AppData\Roaming\TampSaostring.tst
2016-02-19 23:18 - 2016-02-19 23:18 - 00063696 _____ C:\Users\miroslav\AppData\Roaming\Config.xml
2016-02-19 23:18 - 2016-02-19 23:18 - 00018432 _____ C:\Users\miroslav\AppData\Roaming\Main.dat
2016-02-19 23:18 - 2016-02-19 23:17 - 00667136 _____ C:\Users\miroslav\AppData\Roaming\TampSaostring.exe
2016-02-19 23:18 - 2016-02-19 23:17 - 00667136 _____ C:\Users\miroslav\AppData\Roaming\Indigokix.exe
2016-02-19 23:17 - 2016-02-19 23:17 - 01785952 _____ C:\Users\miroslav\Downloads\wrar53b5.exe
2016-02-19 23:17 - 2016-02-19 23:17 - 00126976 _____ C:\Users\miroslav\AppData\Roaming\Installer.dat
2016-02-19 23:17 - 2016-02-19 23:17 - 00018672 _____ C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml
2016-02-19 18:10 - 2016-02-22 10:12 - 00000000 ____D C:\Program Files\PicosmosTools
2016-02-19 18:10 - 2016-02-19 18:10 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools
2016-02-20 00:21 - 2016-02-20 00:21 - 03312147 _____ () C:\Program Files\Common Files\gdbo2rp3.exe
2016-02-20 00:19 - 2016-02-22 10:12 - 00000000 ____D C:\Program Files\Common Files\n4jvgsla
2016-02-22 00:22 - 2016-02-22 10:12 - 00000000 ____D C:\ProgramData\Airtostrong
2016-02-22 00:22 - 2016-02-22 00:22 - 03315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe
2016-02-22 00:22 - 2016-02-22 00:22 - 00002393 _____ C:\Windows\system32\findit.xml
2016-02-22 00:22 - 2016-02-22 00:22 - 00000000 ____D C:\ProgramData\Airtostrongs
016-02-22 00:22 - 2016-02-22 00:22 - 3315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe
2016-02-20 00:21 - 2016-02-20 00:21 - 3312147 _____ () C:\Program Files\Common Files\gdbo2rp3.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 7951360 _____ () C:\Users\miroslav\AppData\Roaming\agent.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0063696 _____ () C:\Users\miroslav\AppData\Roaming\Config.xml
2016-02-19 23:19 - 2016-02-19 23:19 - 0222699 _____ () C:\Users\miroslav\AppData\Roaming\DonCanlux.bin
2016-02-19 23:18 - 2016-02-19 23:17 - 0667136 _____ () C:\Users\miroslav\AppData\Roaming\Indigokix.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 1882569 _____ () C:\Users\miroslav\AppData\Roaming\Indigokix.tst
2016-02-19 23:17 - 2016-02-19 23:17 - 0018672 _____ () C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml
2016-02-19 23:17 - 2016-02-19 23:17 - 0126976 _____ () C:\Users\miroslav\AppData\Roaming\Installer.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0126464 _____ () C:\Users\miroslav\AppData\Roaming\lobby.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0018432 _____ () C:\Users\miroslav\AppData\Roaming\Main.dat
2016-02-19 23:18 - 2016-02-19 23:17 - 0667136 _____ () C:\Users\miroslav\AppData\Roaming\TampSaostring.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 0072727 _____ () C:\Users\miroslav\AppData\Roaming\TampSaostring.tst
2016-02-19 23:19 - 2016-02-19 23:19 - 0041472 _____ () C:\Users\miroslav\AppData\Local\Lajoyla.dat
2016-02-19 23:19 - 2016-02-19 23:19 - 0000187 _____ () C:\Users\miroslav\AppData\Local\Lajoyla.exe.config


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 731
  • Gde živiš: Cacak

Evo izvestaja ponovo sa sedmice:
Fix result of Farbar Recovery Scan Tool (x86) Version:21-02-2016 01
Ran by miroslav (2016-02-22 18:57:08) Run:1
Running from C:\Users\miroslav\Desktop
Loaded Profiles: miroslav (Available Profiles: miroslav)
Boot Mode: Normal

==============================================

fixlist content:
*****************
createrestorepoint:
closeprocesses:
emptytemp:
Task: {DDCDFEEB-24F4-481C-A7A1-964870B2EBDF} - \csh0hjoy -> No File <==== ATTENTION
File: C:\ProgramData\Airtostrong\LatIs.dll
C:\ProgramData\Airtostrong
AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
FirewallRules: [{7DAADA9C-D0BA-4238-BC4A-546769A2FE43}] => (Allow) C:\Users\miroslav\AppData\Local\Temp\ctmpua\ctmpua.exe
FirewallRules: [{DBA91AE3-760C-4EA6-BCFB-1132E945B43B}] => (Allow) C:\Users\miroslav\AppData\Local\Temp\ctmpua\ctmpua.exe
FirewallRules: [{396C14A4-21D9-4820-B463-F092FCE69F7E}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCmgrInstallGuide.exe
FirewallRules: [{8C56FA88-4504-4F94-BBA0-F968BF8D2A8F}] => (Allow) C:\program files\common files\tencent\qqdownload\130\bugreport_xf.exe
FirewallRules: [{6FB095CF-E3CA-4F88-8FAA-19E74AF26CCD}] => (Allow) C:\program files\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{4396AF6C-07B5-49A0-A715-A9976FD7A67D}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCTray.exe
FirewallRules: [{03F26CEC-3B5D-4854-9A0C-9ECAEC623D67}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCMgr.exe
FirewallRules: [{CBD13BD3-F2F2-4482-9417-16479003DB38}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCRTP.exe
FirewallRules: [{1A111E50-D7AB-4ED4-A03B-D89328F3C177}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMDL.exe
FirewallRules: [{AE6C7826-D237-47DA-A25F-A98C880FF735}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\bugreport.exe
FirewallRules: [{E1FBFDE5-7897-4DA8-AAF7-E3D8F06961E8}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCFileOpen.exe
FirewallRules: [{B103FCB1-6E93-48BC-A84B-7DC4C43A8AAC}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCLeakScan.exe
FirewallRules: [{BC20FF8C-43E7-4BDB-BB6C-D79D68D871C7}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPConfig.exe
FirewallRules: [{427369C9-1178-4FF6-B9F7-2995B9BFF7CD}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCSoftMgr.exe
FirewallRules: [{225D4A9A-F0A3-4A10-9063-F68A9907E721}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\plugins\QMNetMon\QQPCNetFlow.exe
FirewallRules: [{9FB161BD-A558-476D-9AE5-2EDE39E934FF}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCBTU.exe
FirewallRules: [{7F46EAF5-08D1-45D5-B1FC-74AEBAD94F5C}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCClinic.exe
FirewallRules: [{31BC98E3-86A2-4E2E-A143-07E6374E82D1}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCLaunch.exe
FirewallRules: [{F4F4DCEC-5316-43E5-BF93-667080A1D83B}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMUpdate\QQPCMgrUpdate.exe
FirewallRules: [{F440D8F2-96D0-4D40-817F-3F75CD663013}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCSoftGame.exe
FirewallRules: [{CDFFF5CC-50F4-48B5-94AC-57EA2FCE4A68}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCSysOptimize.exe
FirewallRules: [{89FE6A2D-E628-4AE5-A49B-6D0B9E56DC01}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCUpdateAVLib.exe
FirewallRules: [{FE7A18BD-6E47-4569-BC3E-9D40DF0C2C01}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQRepair.exe
FirewallRules: [{DF785E5A-3312-4466-BCA8-500B96D63349}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\Uninst.exe
FirewallRules: [{E82BCA56-385C-44C8-A93E-D619392069E9}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QQPCPatch.exe
FirewallRules: [{C7B7BB36-016A-46EA-AF8D-02723998CABE}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\TpkUpdate.exe
FirewallRules: [{541B615A-2A02-464C-971B-5F3EE1E6A451}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMRouterMgr.exe
FirewallRules: [{2873C2E6-07CB-423B-AF71-9A66DEAD7B27}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMAccountProtection.exe
FirewallRules: [{D1B267A3-3473-4620-A788-5CA40DC6A586}] => (Allow) C:\Program Files\Tencent\QQPCMgr\10.11.16588.235\QMAdBlock.exe
C:\Program Files\Tencent
C:\program files\common files\tencent
C:\Users\miroslav\AppData\Local\Temp\ctmpua
AppInit_DLLs: C:\ProgramData\Airtostrong\LatIs.dll => C:\ProgramData\Airtostrong\LatIs.dll [257536 2016-02-22] ()
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\...\Run: [Picosmos] => "C:\Program Files\PicosmosTools\PicosmosTools.exe" /start
File: C:\Program Files\PicosmosTools\PicosmosTools.exe
C:\Program Files\PicosmosTools
File: C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\WinFast
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLQsmlfWi2SNe3WHfvPCrEHnq0Nvd1E0VbbIfCnuGrPo5M1SCSDhN8gSP48pvKbQhQcbOKK_KnHOt2IZ-AQm9fHg0UCRpo,&q={searchTerms}
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKLM -> ielnksrch URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1981283564-2037280381-1702048796-1000 -> {ielnksrch} URL =
FF DefaultSearchEngine: findit
CHR HomePage: Default -> hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLLWf1eky8t0ptfdfls21X5u-nLjszN-_fIJuKXn05p81_wMEGDGLEAdrM6LUcVzPK136c8t4vNO6nz-Sq5VmZaodoVyEM,
CHR DefaultSearchURL: Default -> hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeMfJl2Z82-qMjzkCnR9i-oIJN37aGLpI1Hu2wY7nU9XBnf8cCCKKCfrRdYiF5vDqFLH4uA8mkARIO1Hjl99X9MfmOQwXcuRtAzMlKnvhIJniBceQ3iwi-66_JimVi1ARs1Da22BndKV8EJqKmtF6eKxEqdQlCg,&q={searchTerms}
CHR DefaultSearchKeyword: Default -> feed.sonic-search.com
CHR DefaultSuggestURL: Default -> hxxps://search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command={searchTerms}
S2 Airtostrong; C:\ProgramData\\Airtostrong\\Airtostrong.exe -f "C:\ProgramData\\Airtostrong\\Airtostrong.dat" -l -a
S1 MpKsl266fed54; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{62630DFC-95B0-4298-A023-94E0D4EAC9D5}\MpKsl266fed54.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2016-02-19 23:19 - 2016-02-20 11:27 - 00000000 ____D C:\Program Files\BitTorrent
2016-02-19 23:19 - 2016-02-19 23:19 - 00222699 _____ C:\Users\miroslav\AppData\Roaming\DonCanlux.bin
2016-02-19 23:19 - 2016-02-19 23:19 - 00041472 _____ C:\Users\miroslav\AppData\Local\Lajoyla.dat
2016-02-19 23:19 - 2016-02-19 23:19 - 00000187 _____ C:\Users\miroslav\AppData\Local\Lajoyla.exe.config
2016-02-19 23:18 - 2016-02-19 23:18 - 07951360 _____ C:\Users\miroslav\AppData\Roaming\agent.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 01882569 _____ C:\Users\miroslav\AppData\Roaming\Indigokix.tst
2016-02-19 23:18 - 2016-02-19 23:18 - 00126464 _____ C:\Users\miroslav\AppData\Roaming\lobby.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 00072727 _____ C:\Users\miroslav\AppData\Roaming\TampSaostring.tst
2016-02-19 23:18 - 2016-02-19 23:18 - 00063696 _____ C:\Users\miroslav\AppData\Roaming\Config.xml
2016-02-19 23:18 - 2016-02-19 23:18 - 00018432 _____ C:\Users\miroslav\AppData\Roaming\Main.dat
2016-02-19 23:18 - 2016-02-19 23:17 - 00667136 _____ C:\Users\miroslav\AppData\Roaming\TampSaostring.exe
2016-02-19 23:18 - 2016-02-19 23:17 - 00667136 _____ C:\Users\miroslav\AppData\Roaming\Indigokix.exe
2016-02-19 23:17 - 2016-02-19 23:17 - 01785952 _____ C:\Users\miroslav\Downloads\wrar53b5.exe
2016-02-19 23:17 - 2016-02-19 23:17 - 00126976 _____ C:\Users\miroslav\AppData\Roaming\Installer.dat
2016-02-19 23:17 - 2016-02-19 23:17 - 00018672 _____ C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml
2016-02-19 18:10 - 2016-02-22 10:12 - 00000000 ____D C:\Program Files\PicosmosTools
2016-02-19 18:10 - 2016-02-19 18:10 - 00000000 ____D C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools
2016-02-20 00:21 - 2016-02-20 00:21 - 03312147 _____ () C:\Program Files\Common Files\gdbo2rp3.exe
2016-02-20 00:19 - 2016-02-22 10:12 - 00000000 ____D C:\Program Files\Common Files\n4jvgsla
2016-02-22 00:22 - 2016-02-22 10:12 - 00000000 ____D C:\ProgramData\Airtostrong
2016-02-22 00:22 - 2016-02-22 00:22 - 03315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe
2016-02-22 00:22 - 2016-02-22 00:22 - 00002393 _____ C:\Windows\system32\findit.xml
2016-02-22 00:22 - 2016-02-22 00:22 - 00000000 ____D C:\ProgramData\Airtostrongs
016-02-22 00:22 - 2016-02-22 00:22 - 3315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe
2016-02-20 00:21 - 2016-02-20 00:21 - 3312147 _____ () C:\Program Files\Common Files\gdbo2rp3.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 7951360 _____ () C:\Users\miroslav\AppData\Roaming\agent.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0063696 _____ () C:\Users\miroslav\AppData\Roaming\Config.xml
2016-02-19 23:19 - 2016-02-19 23:19 - 0222699 _____ () C:\Users\miroslav\AppData\Roaming\DonCanlux.bin
2016-02-19 23:18 - 2016-02-19 23:17 - 0667136 _____ () C:\Users\miroslav\AppData\Roaming\Indigokix.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 1882569 _____ () C:\Users\miroslav\AppData\Roaming\Indigokix.tst
2016-02-19 23:17 - 2016-02-19 23:17 - 0018672 _____ () C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml
2016-02-19 23:17 - 2016-02-19 23:17 - 0126976 _____ () C:\Users\miroslav\AppData\Roaming\Installer.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0126464 _____ () C:\Users\miroslav\AppData\Roaming\lobby.dat
2016-02-19 23:18 - 2016-02-19 23:18 - 0018432 _____ () C:\Users\miroslav\AppData\Roaming\Main.dat
2016-02-19 23:18 - 2016-02-19 23:17 - 0667136 _____ () C:\Users\miroslav\AppData\Roaming\TampSaostring.exe
2016-02-19 23:18 - 2016-02-19 23:18 - 0072727 _____ () C:\Users\miroslav\AppData\Roaming\TampSaostring.tst
2016-02-19 23:19 - 2016-02-19 23:19 - 0041472 _____ () C:\Users\miroslav\AppData\Local\Lajoyla.dat
2016-02-19 23:19 - 2016-02-19 23:19 - 0000187 _____ () C:\Users\miroslav\AppData\Local\Lajoyla.exe.config
*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DDCDFEEB-24F4-481C-A7A1-964870B2EBDF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DDCDFEEB-24F4-481C-A7A1-964870B2EBDF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\csh0hjoy" => key removed successfully.

========================= File: C:\ProgramData\Airtostrong\LatIs.dll ========================

File not signed
MD5: 55759385A5BB68A27EFB8EA6EFA01F32
Creation and modification date: 2016-02-22 - 2016-02-22
Size: 0257536
Attributes: ----A
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version: 1.0.0.25923
Product Version: 1.0.0.1
Copyright:

====== End of File: ======

C:\ProgramData\Airtostrong => moved successfully
C:\Windows => ":nlsPreferences" ADS removed successfully..
C:\ProgramData\TEMP => ":1CE11B51" ADS removed successfully..
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7DAADA9C-D0BA-4238-BC4A-546769A2FE43} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DBA91AE3-760C-4EA6-BCFB-1132E945B43B} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{396C14A4-21D9-4820-B463-F092FCE69F7E} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8C56FA88-4504-4F94-BBA0-F968BF8D2A8F} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6FB095CF-E3CA-4F88-8FAA-19E74AF26CCD} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4396AF6C-07B5-49A0-A715-A9976FD7A67D} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{03F26CEC-3B5D-4854-9A0C-9ECAEC623D67} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CBD13BD3-F2F2-4482-9417-16479003DB38} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1A111E50-D7AB-4ED4-A03B-D89328F3C177} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AE6C7826-D237-47DA-A25F-A98C880FF735} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E1FBFDE5-7897-4DA8-AAF7-E3D8F06961E8} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B103FCB1-6E93-48BC-A84B-7DC4C43A8AAC} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC20FF8C-43E7-4BDB-BB6C-D79D68D871C7} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{427369C9-1178-4FF6-B9F7-2995B9BFF7CD} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{225D4A9A-F0A3-4A10-9063-F68A9907E721} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9FB161BD-A558-476D-9AE5-2EDE39E934FF} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7F46EAF5-08D1-45D5-B1FC-74AEBAD94F5C} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{31BC98E3-86A2-4E2E-A143-07E6374E82D1} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F4F4DCEC-5316-43E5-BF93-667080A1D83B} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F440D8F2-96D0-4D40-817F-3F75CD663013} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CDFFF5CC-50F4-48B5-94AC-57EA2FCE4A68} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{89FE6A2D-E628-4AE5-A49B-6D0B9E56DC01} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FE7A18BD-6E47-4569-BC3E-9D40DF0C2C01} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DF785E5A-3312-4466-BCA8-500B96D63349} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E82BCA56-385C-44C8-A93E-D619392069E9} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C7B7BB36-016A-46EA-AF8D-02723998CABE} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{541B615A-2A02-464C-971B-5F3EE1E6A451} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2873C2E6-07CB-423B-AF71-9A66DEAD7B27} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D1B267A3-3473-4620-A788-5CA40DC6A586} => value removed successfully.
"C:\Program Files\Tencent" => not found.
"C:\program files\common files\tencent" => not found.
"C:\Users\miroslav\AppData\Local\Temp\ctmpua" => not found.
"C:\ProgramData\Airtostrong\LatIs.dll" => Value data removed successfully..
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Picosmos => value removed successfully.

========================= File: C:\Program Files\PicosmosTools\PicosmosTools.exe ========================

"C:\Program Files\PicosmosTools\PicosmosTools.exe" => not found.
====== End of File: ======

C:\Program Files\PicosmosTools => moved successfully

========================= File: C:\Program Files\WinFast\WFDTV\WFWIZ.exe ========================

File not signed
MD5: A2490355FD4120F6B7B78B4969DE1330
Creation and modification date: 2016-01-31 - 2012-03-02
Size: 2920448
Attributes: ----A
Company Name: Leadtek Research Inc.
Internal Name: WinFast Wizard
Original Name: WFWIZ.EXE
Product: WinFast Wizard
Description: WinFast Wizard
File Version: 11, 0, 0, 1
Product Version: 11, 0, 0, 1
Copyright: Copyright (c) 2001-2010. Leadtek Research Inc.

====== End of File: ======

C:\Program Files\WinFast => moved successfully
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main\\Search Bar => value removed successfully.
HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\Software\Microsoft\Internet Explorer\Main\\SearchAssistant => value removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\ielnksrch" => key removed successfully.
HKCR\CLSID\ielnksrch => key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKU\S-1-5-21-1981283564-2037280381-1702048796-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}" => key removed successfully.
HKCR\CLSID\{ielnksrch} => key not found.
Firefox DefaultSearchEngine removed successfully.
Chrome HomePage => removed successfully.
Chrome DefaultSearchURL => removed successfully.
Chrome DefaultSearchKeyword => removed successfully.
Chrome DefaultSuggestURL => removed successfully.
Airtostrong => service removed successfully.
MpKsl266fed54 => service removed successfully.
Synth3dVsc => service removed successfully.
tsusbhub => service removed successfully.
VGPU => service removed successfully.
C:\Program Files\BitTorrent => moved successfully
C:\Users\miroslav\AppData\Roaming\DonCanlux.bin => moved successfully
C:\Users\miroslav\AppData\Local\Lajoyla.dat => moved successfully
C:\Users\miroslav\AppData\Local\Lajoyla.exe.config => moved successfully
C:\Users\miroslav\AppData\Roaming\agent.dat => moved successfully
C:\Users\miroslav\AppData\Roaming\Indigokix.tst => moved successfully
C:\Users\miroslav\AppData\Roaming\lobby.dat => moved successfully
C:\Users\miroslav\AppData\Roaming\TampSaostring.tst => moved successfully
C:\Users\miroslav\AppData\Roaming\Config.xml => moved successfully
C:\Users\miroslav\AppData\Roaming\Main.dat => moved successfully
C:\Users\miroslav\AppData\Roaming\TampSaostring.exe => moved successfully
C:\Users\miroslav\AppData\Roaming\Indigokix.exe => moved successfully
C:\Users\miroslav\Downloads\wrar53b5.exe => moved successfully
C:\Users\miroslav\AppData\Roaming\Installer.dat => moved successfully
C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml => moved successfully
"C:\Program Files\PicosmosTools" => not found.
C:\Users\miroslav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools => moved successfully
C:\Program Files\Common Files\gdbo2rp3.exe => moved successfully
C:\Program Files\Common Files\n4jvgsla => moved successfully
"C:\ProgramData\Airtostrong" => not found.
C:\Program Files\Common Files\e0iffsxg.exe => moved successfully
C:\Windows\system32\findit.xml => moved successfully
C:\ProgramData\Airtostrongs => moved successfully
016-02-22 00:22 - 2016-02-22 00:22 - 3315695 _____ () C:\Program Files\Common Files\e0iffsxg.exe => Error: No automatic fix found for this entry.
"C:\Program Files\Common Files\gdbo2rp3.exe" => not found.
"C:\Users\miroslav\AppData\Roaming\agent.dat" => not found.
"C:\Users\miroslav\AppData\Roaming\Config.xml" => not found.
"C:\Users\miroslav\AppData\Roaming\DonCanlux.bin" => not found.
"C:\Users\miroslav\AppData\Roaming\Indigokix.exe" => not found.
"C:\Users\miroslav\AppData\Roaming\Indigokix.tst" => not found.
"C:\Users\miroslav\AppData\Roaming\InstallationConfiguration.xml" => not found.
"C:\Users\miroslav\AppData\Roaming\Installer.dat" => not found.
"C:\Users\miroslav\AppData\Roaming\lobby.dat" => not found.
"C:\Users\miroslav\AppData\Roaming\Main.dat" => not found.
"C:\Users\miroslav\AppData\Roaming\TampSaostring.exe" => not found.
"C:\Users\miroslav\AppData\Roaming\TampSaostring.tst" => not found.
"C:\Users\miroslav\AppData\Local\Lajoyla.dat" => not found.
"C:\Users\miroslav\AppData\Local\Lajoyla.exe.config" => not found.
EmptyTemp: => 1.3 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 18:58:49 ====

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Kakva je situacija sada?

Ko je trenutno na forumu
 

Ukupno su 1174 korisnika na forumu :: 34 registrovanih, 5 sakrivenih i 1135 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 1798 - dana 19 Sep 2019 18:42

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., amaterSRB, Bane san, blake, Buzdovan, calvi, celik, cole77, darcaud, Dorcolac, Eyes Wide Shut, Futurama, Georgius, ILGromovnik, knell, Koca Popovic, Kubovac, ltcolonel, luka1978, Marko Marković, Mercury2, Milan A. Nikolic, Nebo_M, NenadG, radoznao2, SsssssNOVI, stug, suton2, Toni, versus2, VJ, Vlada78, xandar, YU-UKI