-
👋 Witaj na MPCForum!
Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎
- ✅ Pełny dostęp do działów i ukrytych treści
- ✅ Możliwość pisania i odpowiadania w tematach
- ✅ System prywatnych wiadomości
- ✅ Zbieranie reputacji i rozwijanie swojego profilu
- ✅ Członkostwo w jednej z największych społeczności graczy
👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!
Zarejestruj się teraz
- 0

Pytanie
masterokocim
masterokocim
Mam cholerny problem od dzisiaj. Dosłownie cały czas wyświetla, że mam dostep do internetu lecz strony nie chcą się ładować. Po jakimś czasie znowu się ładują, ale tylko chwilę po czym nie znaleziono serwera. Podejżewam jakieś ustrojstwo w systemie. Pomoże ktoś ?
Nie mogę załączyć nigdzie plików z logami więc wkleję ich treść,
ExtraS:
OTL Extras logfile created on: 2014-05-12 19:38:59 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\masterokocim\Downloads
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
4,00 Gb Total Physical Memory | 2,44 Gb Available Physical Memory | 61,08% Memory free
8,00 Gb Paging File | 6,20 Gb Available in Paging File | 77,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,83 Gb Total Space | 21,65 Gb Free Space | 44,34% Space Free | Partition Type: NTFS
Drive D: | 97,65 Gb Total Space | 13,96 Gb Free Space | 14,30% Space Free | Partition Type: NTFS
Drive E: | 97,65 Gb Total Space | 22,99 Gb Free Space | 23,54% Space Free | Partition Type: NTFS
Drive F: | 97,65 Gb Total Space | 4,11 Gb Free Space | 4,20% Space Free | Partition Type: NTFS
Drive G: | 123,96 Gb Total Space | 26,43 Gb Free Space | 21,32% Space Free | Partition Type: NTFS
Computer Name: MASTEROKOCIM16 | User Name: masterokocim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- Reg Error: Key error. File not found
[HKEY_USERS\S-1-5-21-2288688107-3263366903-2674066559-1001\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1"
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{010EDC2B-5A40-4156-B563-80B3B08BFB3C}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{02EC2CC5-6B58-40E4-AB97-8A4C0D24E650}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{175E8E9E-36D0-4235-8779-BA32F9A52E9A}" = rport=139 | protocol=6 | dir=out | app=system |
"{382D8778-873A-463B-8587-53F3E0407B20}" = lport=445 | protocol=6 | dir=in | app=system |
"{45902BCB-8771-4735-B46A-954C690A3591}" = lport=10243 | protocol=6 | dir=in | app=system |
"{50BBDFD9-9713-4A8A-BEAB-D412234F105A}" = rport=445 | protocol=6 | dir=out | app=system |
"{6D1DA190-EF57-492B-AAB0-99C1C6D2FBF9}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{76359A23-5D6D-4E49-9C92-0D5900DCE363}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{79E82F68-DA39-4C07-8E5C-419148B0E503}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{815ACB1D-B75E-46D3-9143-482E1CEBAD1E}" = lport=137 | protocol=17 | dir=in | app=system |
"{8908C978-09D7-4CD5-ABC2-7AF13FCC9F10}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{8E61B69C-CDD3-498E-BA80-20B4F564FD56}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{8FF4B373-1E72-44D6-AA11-F11F861AF2AF}" = lport=2869 | protocol=6 | dir=in | app=system |
"{AC479B7B-9B4F-42C5-B19D-043030FB26D6}" = lport=139 | protocol=6 | dir=in | app=system |
"{BEABD02E-F352-406C-ACB9-2F845B44D3D1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{C9439291-38CE-4CD3-A15B-B11AF8C1A010}" = rport=137 | protocol=17 | dir=out | app=system |
"{CAAB6DCF-D428-4EB0-98A3-F8CD6EFF4561}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{CEC0E44E-D288-45C5-B579-6D85CB3420F4}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{E3FF777D-4B9F-43AD-BDB9-825E1F8FD662}" = rport=10243 | protocol=6 | dir=out | app=system |
"{E55A3431-D49A-4B67-A453-F17FF8CE669B}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{E589BE09-54C4-4B25-9A20-7807102983B1}" = lport=138 | protocol=17 | dir=in | app=system |
"{E626BD4D-5D67-43A7-9C4D-FF1FAC844AE5}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{F061EEE8-76D6-4A22-B17A-5AE72069E22A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F27F4EEB-1458-41CC-BD7B-9A043CA79A16}" = rport=138 | protocol=17 | dir=out | app=system |
"{FC12D029-B4F2-45B5-BC0D-1282B2A0237F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{09CBB342-50E3-49B6-A8EE-55B7C0536E95}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{0A6B4300-1484-41B1-99A4-25F82520DA50}" = protocol=6 | dir=in | app=d:\steam\steam.exe |
"{0BBCB447-6C56-4121-AA66-854D9BA91DE6}" = protocol=6 | dir=out | app=system |
"{0C14BF65-60A1-417A-82B1-93FB1A889297}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeexp.exe |
"{1086A746-D0B8-4FCA-9204-4C3623AF2AD2}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{136AF58D-3632-4E82-A886-8D8F8D096843}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{26419E93-502B-4C71-8E05-50F3C0A6ABC7}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeenc2.exe |
"{31CC541C-4D03-4C72-B447-A23C695E9161}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{39E235F6-996F-442A-BDB4-B16280A07052}" = dir=in | name=blokadayt |
"{3B8D8788-AA87-45BE-9ADA-53F8A84303B6}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{522647F4-49E1-47B7-B64F-92291BA83FFE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{56BD3E84-21EA-46C5-9459-9D0A11FC77B8}" = protocol=6 | dir=in | app=d:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{6D9098B4-0740-451D-B1DB-4EB2F1867E67}" = protocol=58 | dir=in | [email protected],-28545 |
"{7293AB09-04F9-4876-BE89-3BE47988B294}" = protocol=1 | dir=out | [email protected],-28544 |
"{7DE725D9-6FFB-48DF-BF01-07AE9562AD04}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{8BF64C5C-40FE-43B5-9512-DCBA420B868F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{90F32F70-7D27-4725-8605-F41F2F14B0EF}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifetray.exe |
"{955303E4-4B47-4C89-BB06-9B191802A0E2}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeenc2.exe |
"{9CC993B1-C96F-46AB-BBCB-D2910FCFC0B2}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifecam.exe |
"{B4CF0193-6C1B-4D8A-AE8B-984EC0638686}" = protocol=1 | dir=in | [email protected],-28543 |
"{B8ECDD72-291C-4EC1-B70B-C7D94D0316C4}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifetray.exe |
"{C4C47B03-EEE4-4861-AB6D-058964CE9F6E}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{C5A3FB0C-5C37-41C4-8BD0-660A63CF2C36}" = protocol=17 | dir=in | app=d:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{C697DC5A-86AF-4972-BCC1-E42D7B52AF9F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CBA6E832-87A8-4D50-9893-40AE5C2107BB}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifeexp.exe |
"{CE1595D5-25D1-4A75-93F8-3C4DDFBBB24B}" = protocol=58 | dir=out | [email protected],-28546 |
"{CE24A1AA-1FDF-47C1-A829-3670687E577A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D350247A-34FF-47EA-A606-498198B11DF7}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{DD66990E-99C6-4F9B-9D0B-FA7E82EAE66E}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft lifecam\lifecam.exe |
"{E304B208-ECF5-4081-BB0B-1DBF8146199B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EE49E44E-4AFA-4512-AE5F-1E318B2222A0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F49000CE-0B7B-4EAA-A88E-5565F91ED4E6}" = protocol=17 | dir=in | app=d:\steam\steam.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1" = EXPERTool v8.9
"{7B5AA67E-FEA0-40BB-BAB5-CA56645A589C}" = NVIDIA PhysX
"{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}" = EA Sports FIFA World
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.06)
"{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"Adobe Flash Player ActiveX" = Adobe Flash Player 13 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin
"Afterburner" = MSI Afterburner 2.3.1
"AIMP3" = AIMP3
"F-Secure Anti-Virus" = F-Secure Client Security - Ochrona przed wirusami i szpiegami
"F-Secure Browsing Protection" = F-Secure Client Security - Ochrona przeglądania
"F-Secure Device Control" = F-Secure Client Security — kontrola urządzeń
"F-Secure E-mail Scanning" = F-Secure Client Security - Skanowanie poczty e-mail
"F-Secure HIPS" = F-Secure Client Security — DeepGuard
"F-Secure Internet Shield" = F-Secure Client Security - Osłona internetowa
"F-Secure Protocol Scanner" = F-Secure Client Security — Skanowanie ruchu w sieci Web
"HotspotShield" = Hotspot Shield 3.37
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.0.1.1004
"Mozilla Firefox 29.0.1 (x86 pl)" = Mozilla Firefox 29.0.1 (x86 pl)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Origin" = Origin
"Picasa 3" = Picasa 3
"TeamSpeak 3 Client" = TeamSpeak 3 Client
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 2014-05-12 06:45:07 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 09:11:55 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 09:11:55 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 10:45:09 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 10:45:09 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 11:23:56 | Computer Name = masterokocim16 | Source = Application Hang | ID = 1002
Description = Program Origin.exe w wersji 9.4.7.2799 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji. Identyfikator procesu: ad4 Godzina rozpoczęcia: 01cf6df15b4221e7 Godzina zakończenia:
12 Ścieżka aplikacji: D:\Origin\Origin.exe Identyfikator raportu: 69d7efa1-d9e9-11e3-8844-001fd08b89c9
Error - 2014-05-12 12:24:29 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 12:24:29 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 13:15:31 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
Error - 2014-05-12 13:15:31 | Computer Name = masterokocim16 | Source = NvStreamSvc | ID = 131073
Description =
[ System Events ]
Error - 2014-05-12 00:11:40 | Computer Name = masterokocim16 | Source = Microsoft-Windows-Service Pack Installer | ID = 8
Description = Service Pack installation failed with error code 0x800b0100.
Error - 2014-05-12 00:11:46 | Computer Name = masterokocim16 | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Windows 7 Service Pack 1 dla systemów opartych na procesorach
x64 (KB976932).
Error - 2014-05-12 00:44:13 | Computer Name = masterokocim16 | Source = Microsoft-Windows-Service Pack Installer | ID = 8
Description = Service Pack installation failed with error code 0x800b0100.
Error - 2014-05-12 00:44:14 | Computer Name = masterokocim16 | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Windows 7 Service Pack 1 dla systemów opartych na procesorach
x64 (KB976932).
Error - 2014-05-12 07:42:35 | Computer Name = masterokocim16 | Source = Microsoft-Windows-Service Pack Installer | ID = 8
Description = Service Pack installation failed with error code 0x800b0100.
Error - 2014-05-12 07:42:36 | Computer Name = masterokocim16 | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Windows 7 Service Pack 1 dla systemów opartych na procesorach
x64 (KB976932).
Error - 2014-05-12 12:28:21 | Computer Name = masterokocim16 | Source = Microsoft-Windows-Service Pack Installer | ID = 8
Description = Service Pack installation failed with error code 0x800b0100.
Error - 2014-05-12 12:28:29 | Computer Name = masterokocim16 | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Windows 7 Service Pack 1 dla systemów opartych na procesorach
x64 (KB976932).
Error - 2014-05-12 12:29:44 | Computer Name = masterokocim16 | Source = Service Control Manager | ID = 7031
Description = Usługa Util webget niespodziewanie zakończyła pracę. Wystąpiło to
razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna:
Uruchom usługę ponownie.
Error - 2014-05-12 12:29:51 | Computer Name = masterokocim16 | Source = Service Control Manager | ID = 7031
Description = Usługa Update webget niespodziewanie zakończyła pracę. Wystąpiło to
razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna:
Uruchom usługę ponownie.
< End of report >
-------------------------
OTL:
OTL logfile created on: 2014-05-12 19:38:59 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\masterokocim\Downloads
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
4,00 Gb Total Physical Memory | 2,44 Gb Available Physical Memory | 61,08% Memory free
8,00 Gb Paging File | 6,20 Gb Available in Paging File | 77,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,83 Gb Total Space | 21,65 Gb Free Space | 44,34% Space Free | Partition Type: NTFS
Drive D: | 97,65 Gb Total Space | 13,96 Gb Free Space | 14,30% Space Free | Partition Type: NTFS
Drive E: | 97,65 Gb Total Space | 22,99 Gb Free Space | 23,54% Space Free | Partition Type: NTFS
Drive F: | 97,65 Gb Total Space | 4,11 Gb Free Space | 4,20% Space Free | Partition Type: NTFS
Drive G: | 123,96 Gb Total Space | 26,43 Gb Free Space | 21,32% Space Free | Partition Type: NTFS
Computer Name: MASTEROKOCIM16 | User Name: masterokocim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014-05-12 19:35:23 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\masterokocim\Downloads\OTL.exe
PRC - [2014-05-10 10:40:24 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2014-05-02 13:40:37 | 001,864,368 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe
PRC - [2014-04-23 14:51:10 | 001,225,768 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Anti-Virus\fssm32.exe
PRC - [2014-04-23 14:51:09 | 000,679,464 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Anti-Virus\fsgk32.exe
PRC - [2014-04-16 14:45:28 | 000,564,776 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Anti-Virus\fsav32.exe
PRC - [2014-04-16 14:40:47 | 000,060,352 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\ORSP Client\fsorsp.exe
PRC - [2014-03-24 22:43:34 | 000,977,704 | ---- | M] (AnchorFree Inc.) -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe
PRC - [2014-03-24 22:41:38 | 000,555,304 | ---- | M] () -- C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
PRC - [2013-12-24 06:00:00 | 001,914,656 | R--- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2013-12-24 06:00:00 | 001,028,384 | R--- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
PRC - [2013-12-21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013-11-11 08:59:20 | 000,414,496 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013-11-08 12:05:08 | 002,173,224 | ---- | M] (Gainward Co. Ltd.) -- C:\Program Files (x86)\EXPERTool\TBPanel.exe
PRC - [2013-02-04 18:24:26 | 000,349,864 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Common\FSM32.EXE
PRC - [2013-02-04 18:24:26 | 000,188,584 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Common\FSMA32.EXE
PRC - [2013-02-04 18:24:26 | 000,107,176 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Common\FSHDLL32.EXE
PRC - [2013-02-04 18:23:42 | 000,225,448 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Anti-Virus\fsgk32st.exe
PRC - [2013-01-23 08:12:40 | 000,425,016 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
PRC - [2012-12-05 17:19:42 | 000,212,720 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Common\FNRB32.exe
PRC - [2012-12-05 17:19:42 | 000,154,352 | ---- | M] (F-Secure Corporation) -- D:\F-Secure\Common\FIH32.exe
PRC - [2010-05-20 15:26:28 | 000,762,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\vVX1000.exe
========== Modules (No Company Name) ==========
MOD - [2014-05-10 10:40:23 | 003,839,088 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2014-05-02 13:40:36 | 016,351,920 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll
MOD - [2013-02-04 18:23:56 | 000,118,784 | ---- | M] () -- D:\F-Secure\FSGUI\strres.eng
MOD - [2013-02-04 18:23:52 | 000,553,128 | ---- | M] () -- D:\F-Secure\FSGUI\gres.dll
MOD - [2013-02-04 18:23:50 | 000,143,360 | ---- | M] () -- D:\F-Secure\FSGUI\flyerres.eng
MOD - [2013-02-04 18:23:50 | 000,045,056 | ---- | M] () -- D:\F-Secure\FSGUI\fsavures.eng
MOD - [2013-02-04 18:23:48 | 000,643,240 | ---- | M] () -- D:\F-Secure\FSGUI\about.dll
MOD - [2013-02-04 18:23:48 | 000,090,280 | ---- | M] () -- D:\F-Secure\FSGUI\aboutres.dll
MOD - [2013-01-23 08:12:40 | 000,425,016 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
MOD - [2013-01-16 18:01:08 | 000,069,632 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
MOD - [2013-01-16 18:01:06 | 000,348,160 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
MOD - [2013-01-16 18:01:00 | 000,229,376 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\RTCore.dll
MOD - [2013-01-16 18:00:58 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\RTUI.dll
MOD - [2013-01-16 18:00:56 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\RTFC.dll
MOD - [2011-04-30 21:04:54 | 000,013,312 | ---- | M] () -- C:\Program Files (x86)\MSI Afterburner\RTTSH.dll
========== Services (SafeList) ==========
SRV - [2014-05-10 10:40:23 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014-05-02 13:40:37 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014-04-16 14:40:47 | 000,060,352 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- D:\F-Secure\ORSP Client\fsorsp.exe -- (FSORSPClient)
SRV - [2014-04-03 09:49:12 | 001,809,720 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2014-04-03 09:49:12 | 000,857,912 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2014-03-24 22:43:34 | 000,977,704 | ---- | M] (AnchorFree Inc.) [Auto | Running] -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe -- (hshld)
SRV - [2014-03-24 22:41:38 | 000,555,304 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe -- (HssWd)
SRV - [2014-03-24 22:13:44 | 000,078,512 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE -- (HssTrayService)
SRV - [2013-12-24 06:00:00 | 001,914,656 | R--- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013-12-21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013-11-11 08:59:20 | 000,414,496 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013-02-04 18:24:26 | 000,188,584 | ---- | M] (F-Secure Corporation) [Auto | Running] -- D:\F-Secure\Common\FSMA32.EXE -- (FSMA)
SRV - [2013-02-04 18:24:10 | 000,850,088 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- D:\F-Secure\FWES\program\fsdfwd.exe -- (FSDFWD)
SRV - [2013-02-04 18:24:02 | 000,516,776 | ---- | M] () [Auto | Running] -- D:\F-Secure\Device Control\\fsdevcon64.exe -- (fsdevcon)
SRV - [2013-02-04 18:23:42 | 000,225,448 | ---- | M] (F-Secure Corporation) [Auto | Running] -- D:\F-Secure\Anti-Virus\fsgk32st.exe -- (F-Secure Gatekeeper Handler Starter)
SRV - [2012-12-05 17:19:42 | 000,212,720 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- D:\F-Secure\Common\FNRB32.exe -- (F-Secure Network Request Broker)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV - [2014-04-23 14:52:23 | 000,203,304 | ---- | M] (F-Secure Corporation) [Kernel | On_Demand | Running] -- D:\F-Secure\Anti-Virus\minifilter\fsgk.sys -- (F-Secure Gatekeeper)
DRV - [2014-04-16 14:46:33 | 000,086,056 | ---- | M] (F-Secure Corporation) [Kernel | On_Demand | Running] -- D:\F-Secure\NIF\bin\fsni64.sys -- (fsni)
DRV - [2014-04-16 14:44:29 | 000,069,480 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- D:\F-Secure\HIPS\drivers\fshs.sys -- (F-Secure HIPS)
DRV - [2013-02-04 18:23:42 | 000,041,512 | ---- | M] () [Kernel | Disabled | Stopped] -- D:\F-Secure\Anti-Virus\win2k\fsfilter.sys -- (F-Secure Filter)
DRV - [2013-02-04 18:23:42 | 000,026,792 | ---- | M] () [Kernel | Disabled | Stopped] -- D:\F-Secure\Anti-Virus\win2k\fsrec.sys -- (F-Secure Recognizer)
DRV - [2013-02-04 18:23:42 | 000,014,504 | ---- | M] () [Kernel | System | Running] -- D:\F-Secure\Anti-Virus\minifilter\fsvista.sys -- (fsvista)
DRV - [2013-01-23 08:12:38 | 000,013,368 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\MSI Afterburner\RTCore64.sys -- (RTCore64)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1399638510&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9AQB07425&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>127.0.0.1;localhost;10.*;192.168.*;127.0.0.1:895;127.0.0.1:896
IE - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:8555;https=127.0.0.1:8555
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:29.0.1
FF - prefs.js..network.proxy.type: 4
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll ()
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 29.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 29.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 29.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 29.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2014-04-16 14:07:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\masterokocim\AppData\Roaming\mozilla\Extensions
[2014-05-12 18:29:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\masterokocim\AppData\Roaming\mozilla\Firefox\Profiles\jkh0c5x8.default\extensions
[2014-05-07 10:36:35 | 000,667,234 | ---- | M] () (No name found) -- C:\Users\masterokocim\AppData\Roaming\mozilla\firefox\profiles\jkh0c5x8.default\extensions\[email protected]
[2014-05-02 19:29:43 | 000,957,880 | ---- | M] () (No name found) -- C:\Users\masterokocim\AppData\Roaming\mozilla\firefox\profiles\jkh0c5x8.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2014-05-10 10:40:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2014-05-10 10:40:25 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O4 - HKLM..\Run: [F-Secure Manager] D:\F-Secure\Common\FSM32.EXE (F-Secure Corporation)
O4 - HKLM..\Run: [F-Secure TNB] D:\F-Secure\FSGUI\TNBUtil.exe (F-Secure Corporation)
O4 - HKLM..\Run: [LifeCam] C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001..\Run: [EADM] D:\Origin\Origin.exe (Electronic Arts)
O4 - HKU\S-1-5-21-2288688107-3263366903-2674066559-1001..\Run: [TBPanel] C:\Program Files (x86)\EXPERTool\TBPanel.exe (Gainward Co. Ltd.)
O4 - HKU\S-1-5-21-2288688107-3263366903-2674066559-1003..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-2288688107-3263366903-2674066559-1003..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.99.14.108 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6F29E26C-7479-49A0-AF19-2378ABFCFED9}: DhcpNameServer = 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BCC15F54-7A76-430C-BAF4-39CC88F84DD1}: DhcpNameServer = 192.99.14.108 8.8.8.8
O20 - AppInit_DLLs: (C:\PROGRA~2\SupTab\SEARCH~1.DLL) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{62037cd7-d354-11e3-a759-001fd08b89c9}\Shell - "" = AutoRun
O33 - MountPoints2\{62037cd7-d354-11e3-a759-001fd08b89c9}\Shell\AutoRun\command - "" = I:\Startme.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014-05-12 18:40:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2014-05-12 18:40:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2014-05-12 18:40:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014-05-10 16:58:05 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\TS3Client
[2014-05-10 16:57:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2014-05-10 16:57:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TeamSpeak 3 Client
[2014-05-10 10:40:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014-05-09 14:28:46 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM
[2014-05-09 14:28:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SupTab
[2014-05-09 14:28:46 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginServices
[2014-05-09 14:28:37 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\sweet-page
[2014-05-09 14:28:09 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
[2014-05-09 14:26:34 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\JDownloader v2.0
[2014-05-09 11:43:52 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\BoL
[2014-05-09 11:33:15 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Curse Advertising
[2014-05-09 11:32:07 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Deployment
[2014-05-09 11:32:07 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Apps
[2014-05-05 15:30:13 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\Documents\My Cheat Tables
[2014-05-05 15:29:55 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Opera Software
[2014-05-05 15:29:54 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Opera Software
[2014-05-05 15:29:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2014-05-05 15:26:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield
[2014-05-05 15:26:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Hotspot Shield
[2014-05-05 15:25:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hotspot Shield
[2014-05-05 15:25:35 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Hotspot Shield
[2014-05-04 16:48:55 | 000,000,000 | -H-D | C] -- C:\Users\masterokocim\Desktop\.picasaoriginals
[2014-05-04 16:37:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
[2014-05-04 16:37:30 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Google
[2014-05-04 16:37:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2014-05-02 09:40:26 | 017,931,952 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014-04-27 15:24:23 | 000,000,000 | ---D | C] -- C:\bc88ce9440d67e6fd88424b5fa
[2014-04-27 11:49:03 | 000,000,000 | ---D | C] -- C:\5ce25d428c819072fedda5d6a2
[2014-04-24 17:38:33 | 000,000,000 | ---D | C] -- C:\6f9716b53351b90decff99ba11db9764
[2014-04-23 22:39:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
[2014-04-21 15:04:58 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\F-Secure
[2014-04-21 15:04:34 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\WinRAR
[2014-04-21 15:04:26 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014-04-21 15:04:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014-04-21 14:00:32 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Adobe
[2014-04-21 13:59:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2014-04-21 13:58:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2014-04-21 13:56:50 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\rmi
[2014-04-20 00:42:00 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\NVIDIA
[2014-04-19 22:22:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam
[2014-04-19 22:21:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft LifeCam
[2014-04-17 15:57:12 | 003,695,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014-04-17 15:57:12 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014-04-17 15:57:12 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014-04-17 15:57:12 | 000,434,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014-04-17 15:57:12 | 000,367,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014-04-17 15:57:12 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014-04-17 15:57:12 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieaksie.dll
[2014-04-17 15:57:12 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014-04-17 15:57:12 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieakui.dll
[2014-04-17 15:57:12 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014-04-17 15:57:12 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014-04-17 15:57:12 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014-04-17 15:57:12 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014-04-17 15:57:12 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieakeng.dll
[2014-04-17 15:57:12 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014-04-17 15:57:12 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014-04-17 15:57:12 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014-04-17 15:57:12 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\admparse.dll
[2014-04-17 15:57:12 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014-04-17 15:57:12 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014-04-17 15:57:12 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014-04-17 15:57:12 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014-04-17 15:57:12 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014-04-17 15:57:12 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2014-04-17 15:57:12 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014-04-17 15:57:12 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014-04-17 15:57:12 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014-04-17 15:57:12 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014-04-17 15:57:12 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014-04-17 15:57:12 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014-04-17 15:57:12 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014-04-17 15:57:12 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014-04-17 15:21:50 | 001,686,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2014-04-17 15:21:50 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fsutil.exe
[2014-04-17 15:08:11 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat
[2014-04-17 07:49:12 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2014-04-17 07:49:12 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2014-04-17 07:49:12 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2014-04-17 07:44:17 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2014-04-17 07:44:07 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2014-04-17 07:44:07 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2014-04-17 07:44:07 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll
[2014-04-17 07:44:06 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2014-04-17 07:44:06 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll
[2014-04-17 07:43:30 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe
[2014-04-17 07:43:20 | 002,691,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014-04-17 07:43:20 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2014-04-17 07:43:19 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2014-04-17 07:42:37 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2014-04-17 07:42:35 | 000,850,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll
[2014-04-17 07:42:35 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
[2014-04-17 07:42:31 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2014-04-17 07:41:05 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2014-04-17 07:41:04 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2014-04-17 07:40:51 | 000,496,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2014-04-17 07:40:51 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2014-04-17 07:40:51 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2014-04-17 07:40:41 | 001,401,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2014-04-17 07:40:40 | 001,553,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2014-04-17 07:40:39 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2014-04-17 07:40:39 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
[2014-04-17 07:40:38 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
[2014-04-17 07:40:21 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2014-04-17 07:40:11 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2014-04-17 07:40:05 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2014-04-17 07:40:05 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2014-04-17 07:40:04 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2014-04-17 07:40:04 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2014-04-17 07:40:04 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2014-04-17 07:40:04 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2014-04-17 07:40:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2014-04-17 07:40:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2014-04-17 07:39:17 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2014-04-17 07:39:16 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2014-04-17 07:38:58 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2014-04-17 07:38:57 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2014-04-17 07:38:57 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2014-04-17 07:38:53 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2014-04-17 07:38:51 | 002,870,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014-04-17 07:38:51 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2014-04-17 07:38:48 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll
[2014-04-17 07:38:47 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll
[2014-04-17 07:38:11 | 003,181,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2014-04-17 07:38:09 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2014-04-17 07:38:09 | 001,495,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2014-04-17 07:38:09 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2014-04-17 07:38:09 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2014-04-17 07:38:00 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2014-04-17 07:37:56 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscacheugc.exe
[2014-04-17 07:37:16 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnet.dll
[2014-04-17 07:37:13 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2014-04-17 07:37:10 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2014-04-17 07:37:10 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2014-04-17 07:36:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2014-04-17 07:36:50 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014-04-17 07:36:50 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014-04-17 07:36:50 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014-04-17 07:36:50 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014-04-17 07:36:47 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2014-04-17 07:36:47 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2014-04-17 07:36:47 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2014-04-17 07:36:47 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2014-04-17 07:36:47 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2014-04-17 07:36:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2014-04-17 07:36:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014-04-17 07:36:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2014-04-17 07:36:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2014-04-17 07:36:46 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2014-04-17 07:36:46 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2014-04-17 07:36:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2014-04-17 07:36:45 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2014-04-17 07:36:45 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2014-04-17 07:36:45 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2014-04-17 07:36:45 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2014-04-17 07:36:45 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2014-04-17 07:36:45 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2014-04-17 07:36:45 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014-04-17 07:36:24 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs
[2014-04-17 07:36:24 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs
[2014-04-17 07:36:24 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs
[2014-04-17 07:36:24 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs
[2014-04-17 07:36:24 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs
[2014-04-17 07:36:24 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs
[2014-04-17 07:36:24 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs
[2014-04-17 07:36:24 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs
[2014-04-17 07:36:24 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs
[2014-04-17 07:36:23 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs
[2014-04-17 07:36:22 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2014-04-17 07:36:22 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
[2014-04-17 07:36:21 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs
[2014-04-17 07:36:21 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs
[2014-04-17 07:36:21 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs
[2014-04-17 07:36:21 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs
[2014-04-17 07:36:08 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2014-04-17 07:36:08 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2014-04-17 07:36:08 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2014-04-17 07:36:07 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2014-04-17 07:36:07 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2014-04-17 07:34:53 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\synceng.dll
[2014-04-17 07:34:49 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2014-04-17 07:34:49 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2014-04-17 07:33:53 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2014-04-17 07:33:53 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2014-04-17 07:33:50 | 001,034,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2014-04-17 07:33:48 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2014-04-17 07:33:41 | 011,406,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2014-04-17 07:33:40 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2014-04-17 07:33:35 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2014-04-17 07:33:17 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2014-04-17 07:33:04 | 003,958,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2014-04-17 07:33:04 | 003,902,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2014-04-17 07:33:03 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2014-04-17 07:32:50 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2014-04-17 07:27:57 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2014-04-17 07:21:00 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2014-04-16 22:58:52 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2014-04-16 22:58:39 | 000,000,000 | -HSD | C] -- C:\Boot
[2014-04-16 15:32:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Sports FIFA World
[2014-04-16 15:32:31 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Common Files\EAInstaller
[2014-04-16 15:25:08 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\Documents\FIFA World
[2014-04-16 14:52:06 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\LolClient
[2014-04-16 14:45:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
[2014-04-16 14:45:07 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\AIMP3
[2014-04-16 14:40:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\F-Secure Client Security
[2014-04-16 14:39:44 | 000,574,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp50.dll
[2014-04-16 14:39:08 | 000,000,000 | ---D | C] -- C:\ProgramData\fssg
[2014-04-16 14:38:46 | 000,000,000 | ---D | C] -- C:\ProgramData\F-Secure
[2014-04-16 14:37:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\F-Secure
[2014-04-16 14:31:07 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Macromedia
[2014-04-16 14:31:07 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Macromedia
[2014-04-16 14:20:52 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Origin
[2014-04-16 14:20:50 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Origin
[2014-04-16 14:19:09 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
[2014-04-16 14:18:52 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
[2014-04-16 14:18:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSI Afterburner
[2014-04-16 14:18:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Origin
[2014-04-16 14:18:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
[2014-04-16 14:18:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2014-04-16 14:11:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2014-04-16 14:11:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2014-04-16 14:11:48 | 000,028,960 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvaudcap32v.dll
[2014-04-16 14:11:13 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2014-04-16 14:10:35 | 000,053,024 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2014-04-16 14:10:31 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2014-04-16 14:10:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation
[2014-04-16 14:08:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2014-04-16 14:08:34 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2014-04-16 14:08:26 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2014-04-16 14:08:26 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2014-04-16 14:08:26 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2014-04-16 14:08:26 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2014-04-16 14:07:15 | 015,862,272 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
[2014-04-16 14:07:15 | 001,242,400 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll
[2014-04-16 14:07:14 | 009,619,872 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
[2014-04-16 14:07:12 | 022,951,200 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
[2014-04-16 14:07:12 | 000,266,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
[2014-04-16 14:07:11 | 000,609,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
[2014-04-16 14:07:11 | 000,562,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
[2014-04-16 14:07:11 | 000,405,280 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvEncodeAPI.dll
[2014-04-16 14:07:11 | 000,141,336 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll
[2014-04-16 14:07:10 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Mozilla
[2014-04-16 14:07:10 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Mozilla
[2014-04-16 14:07:09 | 015,218,504 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
[2014-04-16 14:07:09 | 002,947,872 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
[2014-04-16 14:07:08 | 009,691,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
[2014-04-16 14:07:08 | 002,747,680 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvenc.dll
[2014-04-16 14:07:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014-04-16 14:07:00 | 017,560,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
[2014-04-16 14:07:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014-04-16 14:06:58 | 002,697,248 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
[2014-04-16 14:05:58 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Adobe
[2014-04-16 14:05:42 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2014-04-16 14:05:41 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2014-04-16 14:05:34 | 000,692,400 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014-04-16 14:05:34 | 000,070,832 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014-04-16 14:05:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2014-04-16 14:04:08 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2014-04-16 14:04:08 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2014-04-16 14:04:08 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2014-04-16 14:04:08 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll
[2014-04-16 14:04:08 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2014-04-16 14:04:08 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2014-04-16 14:04:08 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2014-04-16 14:04:08 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2014-04-16 14:04:08 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll
[2014-04-16 14:04:08 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2014-04-16 14:04:08 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll
[2014-04-16 14:04:08 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll
[2014-04-16 14:04:07 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll
[2014-04-16 14:04:07 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll
[2014-04-16 14:04:07 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2014-04-16 14:04:07 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
[2014-04-16 14:04:07 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2014-04-16 14:04:07 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll
[2014-04-16 14:04:07 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll
[2014-04-16 14:04:06 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2014-04-16 14:04:06 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
[2014-04-16 14:04:06 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2014-04-16 14:04:06 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
[2014-04-16 14:04:06 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
[2014-04-16 14:04:06 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
[2014-04-16 14:04:06 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2014-04-16 14:04:06 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
[2014-04-16 14:04:06 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2014-04-16 14:04:06 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
[2014-04-16 14:04:05 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
[2014-04-16 14:04:05 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
[2014-04-16 14:04:05 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
[2014-04-16 14:04:05 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
[2014-04-16 14:04:05 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
[2014-04-16 14:04:05 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
[2014-04-16 14:04:05 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
[2014-04-16 14:04:04 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll
[2014-04-16 14:04:04 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
[2014-04-16 14:04:04 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll
[2014-04-16 14:04:04 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
[2014-04-16 14:04:04 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
[2014-04-16 14:04:04 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
[2014-04-16 14:04:04 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll
[2014-04-16 14:04:04 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
[2014-04-16 14:04:04 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
[2014-04-16 14:04:04 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
[2014-04-16 14:04:04 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
[2014-04-16 14:04:03 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
[2014-04-16 14:04:03 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
[2014-04-16 14:04:03 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
[2014-04-16 14:04:03 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
[2014-04-16 14:04:03 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
[2014-04-16 14:04:03 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
[2014-04-16 14:04:02 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
[2014-04-16 14:04:02 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
[2014-04-16 14:04:02 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
[2014-04-16 14:04:02 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
[2014-04-16 14:04:02 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
[2014-04-16 14:04:02 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll
[2014-04-16 14:04:02 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
[2014-04-16 14:04:02 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
[2014-04-16 14:04:02 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
[2014-04-16 14:04:02 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
[2014-04-16 14:04:02 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
[2014-04-16 14:04:01 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
[2014-04-16 14:04:01 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
[2014-04-16 14:04:01 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
[2014-04-16 14:04:01 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
[2014-04-16 14:04:01 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
[2014-04-16 14:04:01 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
[2014-04-16 14:04:01 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll
[2014-04-16 14:04:00 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2014-04-16 14:04:00 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2014-04-16 14:04:00 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
[2014-04-16 14:04:00 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
[2014-04-16 14:04:00 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
[2014-04-16 14:04:00 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2014-04-16 14:04:00 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2014-04-16 14:04:00 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
[2014-04-16 14:03:59 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2014-04-16 14:03:59 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2014-04-16 14:03:59 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2014-04-16 14:03:58 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2014-04-16 14:03:57 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2014-04-16 14:03:57 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2014-04-16 14:03:57 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2014-04-16 14:03:57 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2014-04-16 14:03:56 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2014-04-16 14:03:56 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2014-04-16 14:03:56 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2014-04-16 14:03:56 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2014-04-16 14:03:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EXPERTool
[2014-04-16 14:03:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EXPERTool
[2014-04-16 14:03:01 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Programs
[2014-04-16 13:58:18 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014-04-16 13:58:18 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Searches
[2014-04-16 13:58:18 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014-04-16 13:58:06 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Identities
[2014-04-16 13:58:04 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Contacts
[2014-04-16 13:58:03 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\VirtualStore
[2014-04-16 13:57:59 | 000,000,000 | --SD | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Videos
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Saved Games
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Pictures
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Music
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Links
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Favorites
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Downloads
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Documents
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\Desktop
[2014-04-16 13:57:59 | 000,000,000 | R--D | C] -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Ustawienia lokalne
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\AppData\Local\Temporary Internet Files
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Szablony
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\SendTo
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Recent
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\PrintHood
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\NetHood
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Documents\Moje wideo
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Documents\Moje obrazy
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Moje dokumenty
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Documents\Moja muzyka
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Menu Start
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\AppData\Local\Historia
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Dane aplikacji
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\AppData\Local\Dane aplikacji
[2014-04-16 13:57:59 | 000,000,000 | -HSD | C] -- C:\Users\masterokocim\Cookies
[2014-04-16 13:57:59 | 000,000,000 | -H-D | C] -- C:\Users\masterokocim\AppData
[2014-04-16 13:57:59 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Temp
[2014-04-16 13:57:59 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Local\Microsoft
[2014-04-16 13:57:59 | 000,000,000 | ---D | C] -- C:\Users\masterokocim\AppData\Roaming\Media Center Programs
[2014-04-16 13:57:49 | 000,000,000 | -HSD | C] -- C:\Recovery
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2014-04-16 13:57:48 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji
[2014-04-16 13:02:29 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2014-04-16 12:59:54 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2014-04-16 12:59:38 | 000,000,000 | -HSD | C] -- C:\System Volume Information
========== Files - Modified Within 30 Days ==========
[2014-05-12 19:40:14 | 001,048,576 | -HS- | M] () -- C:\Users\masterokocim\ntuser.dat
[2014-05-12 19:40:02 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014-05-12 19:15:01 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2014-05-12 19:14:56 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014-05-12 19:14:51 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys
[2014-05-12 19:13:58 | 004,178,055 | -H-- | M] () -- C:\Users\masterokocim\AppData\Local\IconCache.db
[2014-05-12 18:40:58 | 000,001,106 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014-05-10 16:57:56 | 000,001,166 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2014-05-09 14:28:09 | 000,002,199 | ---- | M] () -- C:\Users\masterokocim\Desktop\JDownloader 2.lnk
[2014-05-05 15:28:24 | 000,001,124 | ---- | M] () -- C:\Users\Public\Desktop\Hotspot Shield.lnk
[2014-05-04 17:01:26 | 003,137,083 | ---- | M] () -- C:\Users\masterokocim\Desktop\IMG_20140504_165155.JPG
[2014-05-04 16:37:38 | 000,001,110 | ---- | M] () -- C:\Users\Public\Desktop\Picasa 3.lnk
[2014-05-02 13:40:37 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014-05-02 13:40:37 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014-05-02 13:40:26 | 017,931,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014-04-21 14:00:16 | 000,001,644 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2014-04-20 19:48:50 | 000,230,424 | ---- | M] () -- C:\img2-001.raw
[2014-04-19 22:22:35 | 000,002,029 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2014-04-18 21:44:15 | 000,000,782 | ---- | M] () -- C:\Users\masterokocim\Desktop\lol.launcher — skrót.lnk
[2014-04-17 19:40:27 | 000,058,016 | ---- | M] () -- C:\Users\masterokocim\AppData\Local\GDIPFONTCACHEV1.DAT
[2014-04-17 16:11:56 | 001,658,826 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014-04-17 15:57:12 | 003,695,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014-04-17 15:57:12 | 001,427,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014-04-17 15:57:12 | 000,717,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014-04-17 15:57:12 | 000,434,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014-04-17 15:57:12 | 000,367,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014-04-17 15:57:12 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014-04-17 15:57:12 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieaksie.dll
[2014-04-17 15:57:12 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014-04-17 15:57:12 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieakui.dll
[2014-04-17 15:57:12 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014-04-17 15:57:12 | 000,152,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014-04-17 15:57:12 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014-04-17 15:57:12 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014-04-17 15:57:12 | 000,130,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieakeng.dll
[2014-04-17 15:57:12 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014-04-17 15:57:12 | 000,118,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014-04-17 15:57:12 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014-04-17 15:57:12 | 000,101,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\admparse.dll
[2014-04-17 15:57:12 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014-04-17 15:57:12 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014-04-17 15:57:12 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014-04-17 15:57:12 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014-04-17 15:57:12 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014-04-17 15:57:12 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2014-04-17 15:57:12 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014-04-17 15:57:12 | 000,072,822 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2014-04-17 15:57:12 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014-04-17 15:57:12 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014-04-17 15:57:12 | 000,054,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014-04-17 15:57:12 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014-04-17 15:57:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014-04-17 15:57:12 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014-04-17 15:57:12 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014-04-16 22:58:40 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2014-04-16 15:32:35 | 000,000,866 | ---- | M] () -- C:\Users\Public\Desktop\EA Sports FIFA World.lnk
[2014-04-16 14:45:13 | 000,000,502 | ---- | M] () -- C:\Users\Public\Desktop\AIMP3.lnk
[2014-04-16 14:18:52 | 000,001,090 | ---- | M] () -- C:\Users\masterokocim\Desktop\MSI Afterburner.lnk
[2014-04-16 14:18:32 | 000,000,532 | ---- | M] () -- C:\Users\Public\Desktop\Origin.lnk
[2014-04-16 14:13:33 | 000,001,351 | ---- | M] () -- C:\Users\Public\Desktop\GeForce Experience.lnk
[2014-04-16 14:07:02 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014-04-16 14:00:29 | 000,524,288 | -HS- | M] () -- C:\Users\masterokocim\NTUSER.DAT{96b276d6-7502-11de-ad17-001bfc7be5e2}.TMContainer00000000000000000002.regtrans-ms
[2014-04-16 14:00:29 | 000,524,288 | -HS- | M] () -- C:\Users\masterokocim\NTUSER.DAT{96b276d6-7502-11de-ad17-001bfc7be5e2}.TMContainer00000000000000000001.regtrans-ms
[2014-04-16 14:00:29 | 000,065,536 | -HS- | M] () -- C:\Users\masterokocim\NTUSER.DAT{96b276d6-7502-11de-ad17-001bfc7be5e2}.TM.blf
[2014-04-16 14:00:11 | 000,236,778 | RHS- | M] () -- C:\UGTKR
[2014-04-16 14:00:11 | 000,000,020 | RHS- | M] () -- C:\win7.ld
[2014-04-16 13:57:59 | 000,000,020 | -HS- | M] () -- C:\Users\masterokocim\ntuser.ini
[2014-04-16 13:03:03 | 000,067,908 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
========== Files Created - No Company Name ==========
[2014-05-12 18:40:58 | 000,001,106 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014-05-10 16:57:56 | 000,001,166 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2014-05-09 14:28:09 | 000,002,199 | ---- | C] () -- C:\Users\masterokocim\Desktop\JDownloader 2.lnk
[2014-05-05 15:28:24 | 000,001,124 | ---- | C] () -- C:\Users\Public\Desktop\Hotspot Shield.lnk
[2014-05-04 17:01:26 | 003,137,083 | ---- | C] () -- C:\Users\masterokocim\Desktop\IMG_20140504_165155.JPG
[2014-05-04 16:37:38 | 000,001,110 | ---- | C] () -- C:\Users\Public\Desktop\Picasa 3.lnk
[2014-04-21 14:00:16 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2014-04-21 14:00:16 | 000,001,644 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2014-04-20 19:48:50 | 000,230,424 | ---- | C] () -- C:\img2-001.raw
[2014-04-19 22:22:35 | 000,002,029 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2014-04-18 21:44:15 | 000,000,782 | ---- | C] () -- C:\Users\masterokocim\Desktop\lol.launcher — skrót.lnk
[2014-04-17 19:40:27 | 000,058,016 | ---- | C] () -- C:\Users\masterokocim\AppData\Local\GDIPFONTCACHEV1.DAT
[2014-04-17 15:57:12 | 000,072,822 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2014-04-17 07:35:23 | 000,420,032 | ---- | C] () -- C:\Windows\SysWow64\locale.nls
[2014-04-16 22:58:40 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK
[2014-04-16 22:58:39 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2014-04-16 15:32:35 | 000,000,866 | ---- | C] () -- C:\Users\Public\Desktop\EA Sports FIFA World.lnk
[2014-04-16 14:45:13 | 000,000,502 | ---- | C] () -- C:\Users\Public\Desktop\AIMP3.lnk
[2014-04-16 14:18:52 | 000,001,090 | ---- | C] () -- C:\Users\masterokocim\Desktop\MSI Afterburner.lnk
[2014-04-16 14:18:32 | 000,000,532 | ---- | C] () -- C:\Users\Public\Desktop\Origin.lnk
[2014-04-16 14:13:33 | 000,001,351 | ---- | C] () -- C:\Users\Public\Desktop\GeForce Experience.lnk
[2014-04-16 14:09:51 | 001,658,826 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014-04-16 14:07:11 | 000,314,656 | ---- | C] () -- C:\Windows\SysWow64\NvIFROpenGL.dll
[2014-04-16 14:07:02 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014-04-16 14:07:02 | 000,001,151 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014-04-16 14:05:35 | 000,000,930 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014-04-16 14:00:27 | 004,178,055 | -H-- | C] () -- C:\Users\masterokocim\AppData\Local\IconCache.db
[2014-04-16 14:00:11 | 000,236,778 | RHS- | C] () -- C:\UGTKR
[2014-04-16 14:00:11 | 000,000,020 | RHS- | C] () -- C:\win7.ld
[2014-04-16 13:58:23 | 000,001,421 | ---- | C] () -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2014-04-16 13:58:19 | 000,001,455 | ---- | C] () -- C:\Users\masterokocim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014-04-16 13:57:59 | 001,048,576 | -HS- | C] () -- C:\Users\masterokocim\ntuser.dat
[2014-04-16 13:57:59 | 000,524,288 | -HS- | C] () -- C:\Users\masterokocim\NTUSER.DAT{96b276d6-7502-11de-ad17-001bfc7be5e2}.TMContainer00000000000000000002.regtrans-ms
[2014-04-16 13:57:59 | 000,524,288 | -HS- | C] () -- C:\Users\masterokocim\NTUSER.DAT{96b276d6-7502-11de-ad17-001bfc7be5e2}.TMContainer00000000000000000001.regtrans-ms
[2014-04-16 13:57:59 | 000,065,536 | -HS- | C] () -- C:\Users\masterokocim\NTUSER.DAT{96b276d6-7502-11de-ad17-001bfc7be5e2}.TM.blf
[2014-04-16 13:57:59 | 000,000,020 | -HS- | C] () -- C:\Users\masterokocim\ntuser.ini
[2014-04-16 13:02:55 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2014-04-16 13:02:48 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2014-04-16 12:59:39 | 3220,037,632 | -HS- | C] () -- C:\hiberfil.sys
[2013-12-24 06:00:00 | 000,007,302 | ---- | C] () -- C:\Windows\cadx2.ini
[2012-09-28 21:45:06 | 000,247,296 | ---- | C] () -- C:\Windows\SysWow64\rtvcvfw32.dll
========== ZeroAccess Check ==========
[2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012-06-09 07:30:56 | 014,165,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012-06-09 06:46:56 | 012,868,608 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2014-05-10 18:45:12 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\AIMP3
[2014-05-12 18:08:13 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\BoL
[2014-05-09 11:36:08 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\Curse Advertising
[2014-04-21 15:04:58 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\F-Secure
[2014-05-05 15:25:35 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\Hotspot Shield
[2014-04-16 14:52:06 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\LolClient
[2014-05-12 18:29:32 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\Opera Software
[2014-04-16 20:31:44 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\Origin
[2014-04-21 13:57:33 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\rmi
[2014-05-09 14:40:28 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\sweet-page
[2014-05-10 18:07:09 | 000,000,000 | ---D | M] -- C:\Users\masterokocim\AppData\Roaming\TS3Client
========== Purity Check ==========
< End of report >
4 odpowiedzi na to pytanie
Rekomendowane odpowiedzi
Zarchiwizowany
Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.