Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz
  • 0

ads by albireo


Dawidziuk

Pytanie

Opublikowano

Witajcie mam problem z reklamami by albireo Nic nie pomaga uzywalem wielu programow juz, ktos polecil mi uzyc FRST lecz nie wiem co z nim zrobic, ponizej znajduje sie skan, pomoze ktos z tym?

 

 

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01

Ran by Maciej (administrator) on MACIEK (03-04-2016 00:51:17)

Running from C:\Users\Maciej\Downloads

Loaded Profiles: Maciej (Available Profiles: Maciej)

Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: Edge)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

 

==================== Processes (Whitelisted) =================

 

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

 

() C:\ProgramData\DatacardService\HWDeviceService64.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe

(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe

(Visicom Media Inc.) C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe

(Chris Pietschmann (hxxp://pietschsoft.com)) C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe

() C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp

(TFuns LIMITED) C:\ProgramData\BWdMB\WdMan.exe

() C:\ProgramData\Orange Connection\OnlineUpdate\ouc.exe

(Microsoft Corporation) C:\Windows\System32\alg.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe

(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe

(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe

(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe

(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe

(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe

(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe

() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe

(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

 

 

==================== Registry (Whitelisted) ===========================

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

HKLM-x32\...\Run: [win_en_77] => [X]

HKLM-x32\...\Run: [mpck_en_005030279] => [X]

HKLM-x32\...\Run: [rec_pl_236] => [X]

HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [107520 2016-03-18] (Panda Security, S.L.)

HKLM\...\Winlogon: [userinit] C:\WINDOWS\SysWOW64\userinit.exe,

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [ALLUpdate] => C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [ALLPlayer WiFi Remote] => C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe [5182896 2014-07-23] (ALLPlayer Group Ltd.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [Napisy24Update] => C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3709896 2015-11-04] (Napisy24.pl)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50670720 2016-03-01] (Skype Technologies S.A.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [bitTorrent] => C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe [1930760 2016-03-05] (BitTorrent Inc.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\RunOnce: [ALLPlayer Remote Update] => C:\Users\Maciej\AppData\Local\Temp\ALLRemote.exe [2152872 2016-04-03] (ALLPlayer                                                   ) <===== ATTENTION

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Virtual Router Manager.lnk [2016-03-14]

ShortcutTarget: Virtual Router Manager.lnk -> C:\Windows\Installer\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}\_118D1A4EFFA6998C3492EB.exe ()

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

Tcpip\Parameters: [DhcpNameServer] 192.178.1.1

Tcpip\..\Interfaces\{138c8c5a-2e2a-4f36-9233-4738134a8276}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{41ef520c-d253-11e5-9d89-806e6f6e6963}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{857d6415-da12-49ba-b9f2-b76193aa1c2f}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{8718928d-cbeb-45ea-a621-800a9249001d}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{8b62420b-f370-11e5-9d8c-806e6f6e6963}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{8ce2e15c-ff02-4bb1-9aa4-83cd8657e6e1}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{af6c8ed2-d532-41b7-8172-16fea9cfb55f}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{bbed3e08-0b41-11e3-8249-806e6f6e6963}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{cbd48f7b-05d1-4a79-8298-ea266339d554}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{cd3daecf-48fd-4202-aa63-740a9e086eee}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{e773fd15-1f5a-4833-9cee-25a469437fcc}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{e773fd15-1f5a-4833-9cee-25a469437fcc}: [DhcpNameServer] 192.178.1.1

Tcpip\..\Interfaces\{f58cf125-9a00-4679-944b-1b0ab5a5bcab}: [NameServer] 104.197.191.4

 

Internet Explorer:

==================

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xLytfxBQin99eRm67Ntgtac_Sd87O_FLxltzrgsHvBNBvTtlWU9uZrGHEzo4bztE6IYeR_hKhJjgCKfWNjTkuX5ZxLc_GM,

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL = 

SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

SearchScopes: HKU\S-1-5-21-302128576-430233443-2040676304-1001 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

SearchScopes: HKU\S-1-5-21-302128576-430233443-2040676304-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

BHO: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-11-23] ()

BHO-x32: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-11-23] ()

Toolbar: HKLM - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-11-23] ()

Toolbar: HKLM-x32 - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-11-23] ()

 

FireFox:

========

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-29] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-29] (Google Inc.)

 

Chrome: 

=======

CHR Profile: C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default

CHR Extension: (Prezentacje Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-29]

CHR Extension: (Dokumenty Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-29]

CHR Extension: (Dysk Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-29]

CHR Extension: (YouTube) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-29]

CHR Extension: (Arkusze Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-29]

CHR Extension: (Avira Browser Safety) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-04-03]

CHR Extension: (Dokumenty Google offline) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-29]

CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]

CHR Extension: (Gmail) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-29]

 

==================== Services (Whitelisted) ========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1394360 2015-08-13] (Intel Corporation)

R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] ()

S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)

R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [150528 2016-03-18] (Panda Security, S.L.)

S2 Orange Connection. RunOuc; C:\Program Files (x86)\Orange Connection\UpdateDog\ouc.exe [651856 2013-10-26] ()

R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [73176 2016-02-22] (Panda Security, S.L.)

R2 panda_url_filtering; C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe [287752 2015-11-06] (Visicom Media Inc.)

R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136 2016-03-17] (Panda Security, S.L.)

R2 Virtual Router; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [12288 2013-02-10] (Chris Pietschmann (hxxp://pietschsoft.com)) [File not signed]

R2 WdMan; C:\ProgramData\BWdMB\WdMan.exe [274600 2016-03-26] (TFuns LIMITED)

S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

S2 Winsere; C:\Program Files (x86)\Winsere\Winsere\Winsere.exe [316984 2016-03-24] ()

R2 zigipyro; C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp [158720 2015-12-26] () [File not signed]

S2 ggbugreport; "C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe" {154DFF63-3402-4815-941A-AAD63AE8B428} [X]

S2 Hixtocb; "C:\Users\Maciej\AppData\Roaming\MymseAde\Poirdor.exe" -cms [X]

S2 ktip; "C:\Program Files\ktip\ktip.exe" /s iid=5875258 did=APSFTuto4PC sid=11 ref=dce13765-6bd9-4ba1-60f7-1daf9b048c3a-PolicyMac id=bae988fbe41847dc568341825e90041ae4a67350bb32e7a7950b87d61b2d29ba [X]

S2 sivuzuwizbt; C:\Program Files (x86)\00000011-1458942664-0000-0000-08606E906414\knsa1E8C.tmp [X]

 

===================== Drivers (Whitelisted) ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R3 athr; C:\Windows\System32\drivers\athw10x.sys [4325544 2015-06-26] (Qualcomm Atheros Communications, Inc.)

R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [100776 2015-08-23] (ASUS Corporation)

R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-26] ()

R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [65856 2016-03-26] (Windows ® Win 7 DDK provider)

R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [55816 2015-08-13] (Intel Corporation)

R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [53752 2015-08-13] (Intel Corporation)

R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [261624 2015-08-13] (Intel Corporation)

R1 NNSALPC; C:\Windows\system32\DRIVERS\NNSALPC.sys [103856 2015-12-10] (Panda Security, S.L.)

R1 NNSHTTP; C:\Windows\system32\DRIVERS\NNSHTTP.sys [210864 2015-12-10] (Panda Security, S.L.)

R1 NNSHTTPS; C:\Windows\system32\DRIVERS\NNSHTTPS.sys [120240 2015-12-10] (Panda Security, S.L.)

R1 NNSIDS; C:\Windows\system32\DRIVERS\NNSIDS.sys [120240 2015-12-10] (Panda Security, S.L.)

R1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [58616 2015-06-19] (Panda Security, S.L.)

R1 NNSPICC; C:\Windows\system32\DRIVERS\NNSPICC.sys [112560 2015-12-10] (Panda Security, S.L.)

R1 NNSPIHSW; C:\Windows\system32\DRIVERS\NNSPIHSW.sys [82864 2016-03-17] (Panda Security, S.L.)

R1 NNSPOP3; C:\Windows\system32\DRIVERS\NNSPOP3.sys [133552 2015-12-10] (Panda Security, S.L.)

R1 NNSPROT; C:\Windows\system32\DRIVERS\NNSPROT.sys [309680 2015-12-10] (Panda Security, S.L.)

R1 NNSPRV; C:\Windows\system32\DRIVERS\NNSPRV.sys [179632 2016-02-18] (Panda Security, S.L.)

R1 NNSSMTP; C:\Windows\system32\DRIVERS\NNSSMTP.sys [122800 2015-12-10] (Panda Security, S.L.)

R1 NNSSTRM; C:\Windows\system32\DRIVERS\NNSSTRM.sys [267184 2016-02-18] (Panda Security, S.L.)

R1 NNSTLSC; C:\Windows\system32\DRIVERS\NNSTLSC.sys [115632 2015-12-10] (Panda Security, S.L.)

R3 panda_url_filteringd; C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys [51288 2014-03-19] (Visicom Media Inc.)

R0 PsBoot; C:\Windows\System32\Drivers\PsBoot.sys [42624 2015-06-16] (Panda Security, S.L.)

R2 PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [174000 2016-02-18] (Panda Security, S.L.)

R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [129456 2016-02-18] (Panda Security, S.L.)

R1 PSINKNC; C:\Windows\system32\DRIVERS\PSINKNC.sys [207280 2016-02-18] (Panda Security, S.L.)

R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [133552 2016-02-18] (Panda Security, S.L.)

R2 PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [146864 2016-02-24] (Panda Security, S.L.)

R2 PSINReg; C:\Windows\system32\DRIVERS\PSINReg.sys [117168 2016-02-18] (Panda Security, S.L.)

R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [62080 2015-06-16] (Panda Security, S.L.)

S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)

S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)

S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

S1 MPCKpt; system32\DRIVERS\MPCKpt.sys [X]

 

==================== NetSvcs (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

==================== One Month Created files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-04-03 00:43 - 2016-04-03 00:51 - 00034744 _____ C:\Users\Maciej\Downloads\Addition.txt

2016-04-03 00:40 - 2016-04-03 00:51 - 00017423 _____ C:\Users\Maciej\Downloads\FRST.txt

2016-04-03 00:40 - 2016-04-03 00:51 - 00000000 ____D C:\FRST

2016-04-03 00:40 - 2016-04-03 00:40 - 02374144 _____ (Farbar) C:\Users\Maciej\Downloads\FRST64.exe

2016-04-03 00:37 - 2016-04-03 00:38 - 07001616 _____ (Trend Micro Inc.) C:\Users\Maciej\Downloads\BGSetup3.0.1009.exe

2016-04-03 00:20 - 2016-04-03 00:22 - 00000000 ____D C:\Program Files\Life Is Strange

2016-04-03 00:16 - 2016-04-03 00:16 - 00000000 ___HD C:\OneDriveTemp

2016-04-03 00:13 - 2016-04-03 00:13 - 00000000 ____D C:\Users\Maciej\AppData\Local\EMU

2016-04-03 00:12 - 2016-04-03 00:13 - 13939370 _____ C:\Users\Maciej\Downloads\LIS_PL.exe

2016-04-03 00:01 - 2016-04-03 00:01 - 00000000 ____D C:\ProgramData\Package Cache

2016-04-02 23:58 - 2016-04-03 00:22 - 00002044 _____ C:\Users\Public\Desktop\Life Is Strange.lnk

2016-04-02 23:58 - 2016-04-03 00:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Life Is Strange

2016-04-02 23:56 - 2016-04-03 00:28 - 00000000 ____D C:\Program Files (x86)\Life Is Strange

2016-04-02 23:52 - 2016-04-02 23:55 - 00000000 ____D C:\Users\Maciej\Desktop\FLT

2016-04-02 16:26 - 2015-06-16 16:41 - 00042624 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PsBoot.sys

2016-03-29 01:43 - 2016-04-02 23:52 - 00000000 ____D C:\Users\Maciej\Downloads\Life_Is_Strange_Episode_1-FLT

2016-03-29 01:42 - 2016-03-29 01:42 - 00041830 _____ C:\Users\Maciej\Downloads\Life_Is_Strange_Episode_1-FLT-[rarbg.com].torrent

2016-03-29 00:55 - 2016-03-29 00:56 - 04504169 _____ C:\Users\Maciej\Downloads\Civilization V Brave New World DX11-DX9 V1.0.3.279 Trainer +8 MrAntiFun.zip

2016-03-29 00:38 - 2016-03-29 00:40 - 03986022 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 Gods And Kings V 1.0.3.144 Trainer +8 MrAntiFun.zip

2016-03-29 00:37 - 2016-04-02 19:07 - 00000022 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 Brave New World V 1.0.3.144 Trainer +8 MrAntiFun.zip

2016-03-29 00:32 - 2016-03-29 00:32 - 00002350 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

2016-03-29 00:32 - 2016-03-29 00:32 - 00002338 _____ C:\Users\Public\Desktop\Google Chrome.lnk

2016-03-29 00:24 - 2016-04-03 00:29 - 00001062 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job

2016-03-29 00:24 - 2016-04-03 00:29 - 00001058 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job

2016-03-29 00:24 - 2016-03-29 00:24 - 00987728 _____ (Google Inc.) C:\Users\Maciej\Downloads\ChromeSetup.exe

2016-03-29 00:24 - 2016-03-29 00:24 - 00004120 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA

2016-03-29 00:24 - 2016-03-29 00:24 - 00003888 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore

2016-03-29 00:12 - 2016-04-02 18:00 - 00000416 ____H C:\WINDOWS\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}.job

2016-03-29 00:12 - 2016-03-29 00:12 - 00003368 _____ C:\WINDOWS\System32\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}

2016-03-29 00:01 - 2016-04-03 00:49 - 00004148 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{EDAAFE84-DA65-4593-AF6B-ED5C53754BDE}

2016-03-28 23:54 - 2016-03-28 23:54 - 00002048 _____ C:\WINDOWS\system32\Drivers\etc\hosts.bak

2016-03-28 23:46 - 2016-04-02 14:39 - 00000000 ____D C:\ProgramData\panda_url_filtering

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Panda Security

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\pandasecuritytb

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Program Files\Panda Security URL Filtering

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Program Files (x86)\pandasecuritytb

2016-03-28 23:46 - 2016-02-24 14:26 - 00146864 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProt.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00207280 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINKNC.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00174000 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00133552 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProc.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00129456 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINFile.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00117168 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINReg.sys

2016-03-28 23:46 - 2015-06-16 16:41 - 00062080 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys

2016-03-28 23:45 - 2016-03-28 23:47 - 00002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Internet Security 2016.lnk

2016-03-28 23:45 - 2016-03-28 23:47 - 00002266 _____ C:\Users\Public\Desktop\Panda Internet Security 2016.lnk

2016-03-28 23:45 - 2016-03-28 23:46 - 00000000 ____D C:\Program Files (x86)\Panda Security

2016-03-28 23:45 - 2016-03-28 23:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Internet Security 2016

2016-03-28 23:31 - 2016-03-28 23:46 - 00000000 ____D C:\ProgramData\Panda Security

2016-03-28 23:31 - 2016-03-28 23:32 - 01882896 _____ (Panda Security, S.L.) C:\Users\Maciej\Downloads\PANDAIS16 (1).exe

2016-03-28 23:31 - 2016-03-28 23:31 - 01882896 _____ (Panda Security, S.L.) C:\Users\Maciej\Downloads\PANDAIS16.exe

2016-03-28 21:40 - 2016-03-29 00:21 - 00000000 ____D C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414

2016-03-28 21:38 - 2016-03-28 21:38 - 00000000 ____D C:\Users\Maciej\Documents\My Cheat Tables

2016-03-28 21:33 - 2016-03-28 21:36 - 03982027 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 DX 11 V 1.0.3.144 Trainer +8 MrAntiFun.zip

2016-03-28 20:37 - 2016-03-28 20:37 - 00690629 _____ C:\Users\Maciej\Downloads\sidmeierscivilizationv17trainer.zip

2016-03-28 19:12 - 2016-04-03 00:13 - 00000000 ____D C:\Users\Maciej\Documents\My Games

2016-03-28 19:12 - 2016-03-28 19:12 - 00000000 ____D C:\Users\Maciej\AppData\Local\My Games

2016-03-28 19:11 - 2016-04-03 00:28 - 00000000 ____D C:\Users\Maciej\Desktop\PROPHET

2016-03-28 19:11 - 2016-03-28 19:11 - 00000000 ____D C:\ProgramData\Steam

2016-03-28 19:00 - 2016-03-28 19:00 - 00001337 _____ C:\Users\Public\Desktop\Sid Meier's Civilization V - Complete Edition.lnk

2016-03-28 19:00 - 2016-03-28 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games

2016-03-28 18:47 - 2016-03-28 18:47 - 00000000 _____ C:\Users\Maciej\Desktop\New Text Document.txt

2016-03-28 18:43 - 2016-03-28 18:43 - 00000000 ____D C:\Program Files (x86)\2K Games

2016-03-28 17:27 - 2016-03-28 18:08 - 00000000 ____D C:\Users\Maciej\Downloads\Sid.Meiers.Civilization.V.Complete.Edition-PROPHET

2016-03-28 17:27 - 2016-03-28 17:27 - 00030109 _____ C:\Users\Maciej\Downloads\Sid.Meiers.Civilization.V.Complete.Edition-PROPHET.torrent

2016-03-27 20:26 - 2016-03-27 20:26 - 00000000 ____D C:\WINDOWS\system32\SleepStudy

2016-03-27 12:30 - 2016-03-27 12:30 - 08820166 _____ C:\Users\Maciej\Downloads\Ultraparallel_Blue.7z

2016-03-27 12:27 - 2016-03-27 12:27 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\W10LogonChanger

2016-03-27 12:26 - 2016-03-27 12:26 - 02681221 _____ C:\Users\Maciej\Downloads\Win10BGChanger1.2.0.0.zip

2016-03-27 03:30 - 2016-03-26 19:00 - 00000000 ___DC C:\WINDOWS\Panther

2016-03-27 03:27 - 2016-03-27 03:27 - 00000000 ____D C:\Windows.old

2016-03-27 03:26 - 2016-03-27 03:26 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi

2016-03-27 03:26 - 2016-03-27 03:26 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv

2016-03-27 03:26 - 2016-03-27 03:26 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe

2016-03-27 03:26 - 2016-03-27 03:26 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe

2016-03-27 03:26 - 2016-03-27 03:26 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys

2016-03-27 03:26 - 2016-03-27 03:26 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi

2016-03-27 03:25 - 2016-03-27 03:25 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi

2016-03-27 03:25 - 2016-03-27 03:25 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS

2016-03-27 03:25 - 2016-03-27 03:25 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv

2016-03-27 03:25 - 2016-03-27 03:25 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS

2016-03-27 03:25 - 2016-03-27 03:25 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS

2016-03-27 03:25 - 2016-03-27 03:25 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll

2016-03-27 03:20 - 2016-03-27 03:20 - 00008192 _____ C:\WINDOWS\system32\config\userdiff

2016-03-27 03:20 - 2015-10-30 05:43 - 07851008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0015.dll

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files\Reference Assemblies

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files\MSBuild

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files (x86)\MSBuild

2016-03-27 03:17 - 2015-10-24 03:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll

2016-03-27 03:17 - 2015-10-24 03:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2016-03-27 03:17 - 2015-10-24 03:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe

2016-03-27 03:17 - 2015-10-24 03:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll

2016-03-27 03:17 - 2015-10-24 03:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe

2016-03-27 03:17 - 2015-10-24 03:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll

2016-03-27 03:16 - 2016-03-27 03:16 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll

2016-03-27 03:16 - 2016-03-27 03:16 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe

2016-03-27 03:16 - 2016-03-27 03:16 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys

2016-03-27 03:16 - 2016-03-27 03:16 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys

2016-03-26 20:42 - 2016-03-26 20:42 - 00000000 ____D C:\Users\Maciej\AppData\Local\NetworkTiles

2016-03-26 19:35 - 2016-04-03 00:16 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture

2016-03-26 19:35 - 2016-03-26 19:35 - 00000000 ____D C:\Program Files (x86)\SearchesToYesbnd

2016-03-26 19:28 - 2016-03-26 19:28 - 00000000 ____D C:\WINDOWS\system32\finh

2016-03-26 19:20 - 2016-04-02 19:05 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Abesju

2016-03-26 19:20 - 2016-03-26 19:23 - 00000000 ____D C:\Users\Maciej\AppData\Local\MicrosoftEdge

2016-03-26 19:19 - 2016-03-28 23:56 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\TijusOiath

2016-03-26 19:19 - 2016-03-26 19:19 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys

2016-03-26 19:19 - 2016-03-26 19:19 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Jolkamri

2016-03-26 19:16 - 2016-03-26 19:16 - 00001047 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk

2016-03-26 19:10 - 2016-03-26 19:10 - 03319245 _____ C:\Users\Maciej\Downloads\GameKiller 3.11.zip

2016-03-26 19:09 - 2016-03-26 19:10 - 00002402 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

2016-03-26 19:09 - 2016-03-26 19:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf

2016-03-26 19:05 - 2016-03-26 19:05 - 00003628 _____ C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher

2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\MCorp

2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\ProgramData\SetupTPDriver

2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\Program Files (x86)\ASUS

2016-03-26 19:02 - 2016-03-26 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\Publishers

2016-03-26 19:02 - 2016-03-26 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\ActiveSync

2016-03-26 19:01 - 2016-03-26 19:01 - 00000000 __SHD C:\Users\Maciej\IntelGraphicsProfiles

2016-03-26 19:01 - 2016-03-26 19:01 - 00000000 ____D C:\Users\Maciej\AppData\Local\Comms

2016-03-26 19:00 - 2016-03-26 19:00 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat

2016-03-26 19:00 - 2016-03-26 19:00 - 00000258 __RSH C:\Users\Maciej\ntuser.pol

2016-03-26 19:00 - 2016-03-26 19:00 - 00000020 ___SH C:\Users\Maciej\ntuser.ini

2016-03-26 19:00 - 2016-03-26 19:00 - 00000000 ____D C:\Users\Maciej\AppData\Local\TileDataLayer

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\My Documents

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Videos

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Music

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Music

2016-03-26 18:54 - 2016-04-02 01:11 - 00879220 _____ C:\WINDOWS\system32\PerfStringBackup.INI

2016-03-26 18:53 - 2016-03-26 18:53 - 00022744 _____ C:\WINDOWS\system32\emptyregdb.dat

2016-03-26 18:43 - 2016-03-26 18:43 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

2016-03-26 18:41 - 2016-03-26 18:41 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate

2016-03-26 18:40 - 2016-04-03 00:19 - 00000000 ____D C:\Users\Maciej

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\My Documents

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Videos

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Pictures

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Music

2016-03-26 18:37 - 2016-03-26 18:37 - 00000000 ____D C:\Program Files\Intel

2016-03-26 18:37 - 2016-03-26 18:37 - 00000000 ____D C:\Program Files\Common Files\Atheros

2016-03-26 18:37 - 2015-08-27 19:20 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL

2016-03-26 18:37 - 2015-08-27 19:20 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL

2016-03-26 18:36 - 2016-03-26 18:36 - 00000000 ____D C:\WINDOWS\SysWOW64\sda

2016-03-26 17:15 - 2016-03-26 18:41 - 00000000 ____D C:\WINDOWS\system32\bihk

2016-03-26 17:08 - 2016-03-26 18:54 - 00009528 _____ C:\WINDOWS\diagwrn.xml

2016-03-26 17:08 - 2016-03-26 18:54 - 00009528 _____ C:\WINDOWS\diagerr.xml

2016-03-26 16:27 - 2016-03-26 16:27 - 00000000 ____D C:\Users\Maciej\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Users\Public\Documents\dmp

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Program Files (x86)\WinTaske

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Program Files (x86)\Winsere

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\extensions

2016-03-26 16:11 - 2016-03-26 16:11 - 00000000 ____D C:\ProgramData\BWdMB

2016-03-26 16:10 - 2016-03-26 16:10 - 00000000 ____D C:\Users\Maciej\AppData\Local\tuto_monetize_220160325

2016-03-26 16:10 - 2016-03-26 16:10 - 00000000 ____D C:\ProgramData\eWdMe

2016-03-26 16:09 - 2016-03-29 00:56 - 00000000 ____D C:\Program Files (x86)\Hostify

2016-03-26 16:09 - 2016-03-26 16:28 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\mysites123

2016-03-26 16:06 - 2016-03-26 16:06 - 06493696 _____ C:\Users\Maciej\AppData\Roaming\agent.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 01621131 _____ C:\Users\Maciej\AppData\Roaming\Geotom.tst

2016-03-26 16:06 - 2016-03-26 16:06 - 00126464 _____ C:\Users\Maciej\AppData\Roaming\noah.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 00065424 _____ C:\Users\Maciej\AppData\Roaming\Config.xml

2016-03-26 16:06 - 2016-03-26 16:06 - 00018432 _____ C:\Users\Maciej\AppData\Roaming\Main.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 00002397 _____ C:\WINDOWS\SysWOW64\findit.xml

2016-03-26 16:06 - 2016-03-26 16:06 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Mozilla

2016-03-26 16:05 - 2016-03-26 16:05 - 00000000 ____D C:\Users\Maciej\AppData\Local\tuto_monetize_120160325

2016-03-26 16:04 - 2016-03-29 00:40 - 00000000 ____D C:\Program Files\Windows Screen Manager

2016-03-26 16:04 - 2016-03-26 19:30 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner

2016-03-26 16:04 - 2016-03-26 16:05 - 00017760 _____ C:\Users\Maciej\AppData\Roaming\InstallationConfiguration.xml

2016-03-26 16:04 - 2016-03-26 16:04 - 00268024 _____ C:\Users\Maciej\AppData\Roaming\inst.lat

2016-03-26 16:04 - 2016-03-26 16:04 - 00127488 _____ C:\Users\Maciej\AppData\Roaming\Installer.dat

2016-03-26 16:04 - 2016-03-26 16:04 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Company

2016-03-26 16:04 - 2016-03-26 16:04 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}

2016-03-26 16:03 - 2016-04-02 19:06 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Udiwufuo

2016-03-26 16:03 - 2016-03-26 19:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\Tempfolder

2016-03-26 16:03 - 2016-03-26 16:03 - 00000000 ____D C:\uninst

2016-03-26 16:03 - 2016-03-26 16:03 - 00000000 _____ C:\WINDOWS\SysWOW64\Number of results

2016-03-26 15:56 - 2014-03-23 02:43 - 00000068 _____ C:\Users\Maciej\Desktop\Klick.txt

2016-03-26 15:56 - 2014-02-19 11:36 - 00000000 ____D C:\Users\Maciej\Desktop\Aktywacja

2016-03-26 15:55 - 2016-03-26 15:56 - 02906577 _____ C:\Users\Maciej\Downloads\Aktywacja.rar

2016-03-26 13:58 - 2016-03-26 16:03 - 00065856 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys

2016-03-25 23:56 - 2016-03-25 23:56 - 00038520 _____ (Tencent) C:\WINDOWS\SysWOW64\Drivers\TS888x64.sys

2016-03-25 23:51 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage

2016-03-25 23:49 - 2016-03-26 16:33 - 00000000 ____D C:\Users\Maciej\AppData\Local\app

2016-03-25 23:49 - 2016-03-25 23:59 - 00000000 ____D C:\ProgramData\TXQMPC

2016-03-25 23:49 - 2016-03-25 23:49 - 00005120 _____ C:\Users\Maciej\AppData\Roaming\GiftBag.db

2016-03-25 23:49 - 2016-03-25 23:49 - 00000000 ____D C:\Program Files\Common Files\Tencent

2016-03-25 23:49 - 2016-03-25 23:48 - 00132344 _____ (Tencent Technology(Shenzhen) Company Limited) C:\WINDOWS\system32\Drivers\TAOKernelEx64.sys

2016-03-25 23:48 - 2016-03-26 00:18 - 00000346 _____ C:\WINDOWS\Tasks\Update Service for Torrent Search2.job

2016-03-25 23:48 - 2016-03-26 00:18 - 00000346 _____ C:\WINDOWS\Tasks\Update Service for Torrent Search.job

2016-03-25 23:48 - 2016-03-26 00:00 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件

2016-03-25 23:48 - 2016-03-25 23:57 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Tencent

2016-03-25 23:48 - 2016-03-25 23:48 - 00087800 _____ (电脑管家) C:\WINDOWS\system32\Drivers\TFsFltX64.sys

2016-03-25 23:47 - 2016-03-26 19:09 - 00000258 __RSH C:\ProgramData\ntuser.pol

2016-03-25 23:46 - 2016-03-29 01:02 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\yoursearching

2016-03-25 23:46 - 2016-03-25 23:46 - 00000000 ____D C:\Users\Maciej\Downloads\Torrentex

2016-03-25 23:45 - 2016-03-25 23:45 - 06125507 _____ C:\Users\Maciej\Downloads\Windows 8_ 8.rar

2016-03-25 19:23 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proxy Finder Enterprise

2016-03-25 19:23 - 2016-03-25 19:23 - 00707288 _____ C:\Users\Maciej\Downloads\ProxyFinderEnt-v2.5.rar

2016-03-25 19:23 - 2016-03-25 19:23 - 00002035 _____ C:\Users\Maciej\Desktop\Proxy Finder Enterprise.lnk

2016-03-25 19:23 - 2016-03-25 19:23 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Proxy Finder Enterprise

2016-03-25 19:23 - 2016-03-25 19:23 - 00000000 ____D C:\Program Files (x86)\ProxyFinderEnterprise

2016-03-25 19:23 - 2012-10-22 16:58 - 00000000 ____D C:\Users\Maciej\Desktop\ProxyFinderEnt-v2.5

2016-03-25 19:09 - 2016-03-31 14:16 - 00000000 ____D C:\Users\Maciej\Desktop\New folder

2016-03-25 19:08 - 2016-03-25 19:08 - 02550749 _____ C:\Users\Maciej\Downloads\Proxyliste06.txt

2016-03-25 01:53 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GS Auto Clicker

2016-03-25 01:53 - 2016-03-25 01:53 - 00893672 _____ (goldensoft.org ) C:\Users\Maciej\Downloads\GSAutoClicker-Setup.exe

2016-03-25 01:53 - 2016-03-25 01:53 - 00001118 _____ C:\Users\Public\Desktop\GS Auto Clicker.lnk

2016-03-25 01:53 - 2016-03-25 01:53 - 00000000 ____D C:\Users\Maciej\Documents\AutomaticSolution Software

2016-03-25 01:53 - 2016-03-25 01:53 - 00000000 ____D C:\Program Files (x86)\GSAutoClicker3

2016-03-24 22:44 - 2016-03-24 22:44 - 00406016 _____ (SatyCreations) C:\Users\Maciej\Downloads\ModInstaller.v.0.0.8.exe

2016-03-24 22:44 - 2016-03-24 22:44 - 00000000 ____D C:\Users\Maciej\AppData\Local\SatyCreations

2016-03-24 17:00 - 2016-03-24 17:00 - 00000000 ____D C:\Users\Maciej\Tracing

2016-03-24 16:59 - 2016-04-03 00:51 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Skype

2016-03-24 16:59 - 2016-03-26 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype

2016-03-24 16:59 - 2016-03-24 16:59 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk

2016-03-24 16:59 - 2016-03-24 16:59 - 00000000 ___RD C:\Program Files (x86)\Skype

2016-03-24 16:59 - 2016-03-24 16:59 - 00000000 ____D C:\ProgramData\Skype

2016-03-24 16:58 - 2016-03-24 16:58 - 01503872 _____ (Skype Technologies S.A.) C:\Users\Maciej\Downloads\SkypeSetup.exe

2016-03-17 20:38 - 2016-03-26 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Runxia Electronics

2016-03-17 20:38 - 2016-03-17 20:38 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualRouterPlus

2016-03-17 20:38 - 2016-03-17 20:38 - 00000000 ____D C:\Program Files (x86)\Runxia Electronics

2016-03-17 20:37 - 2016-03-17 20:37 - 01857456 _____ (Runxia Electronics) C:\Users\Maciej\Downloads\virtualrouterplussetup.exe

2016-03-17 20:37 - 2016-03-17 20:37 - 00000000 ____D C:\Users\Maciej\AppData\Local\Downloaded Installations

2016-03-17 15:08 - 2016-03-17 15:08 - 00000000 ____D C:\ProgramData\OnlineUpdate

2016-03-17 15:08 - 2016-03-17 15:08 - 00000000 ____D C:\ProgramData\log

2016-03-17 12:31 - 2016-03-17 12:31 - 00082864 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspihsw.sys

2016-03-16 19:19 - 2016-03-16 19:19 - 00000000 ____D C:\ProgramData\.mono

2016-03-16 19:15 - 2016-03-16 19:15 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\.mono

2016-03-16 19:13 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokémon Trading Card Game Online

2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Pokémon Trading Card Game Online

2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Unity

2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\The Pok__mon Company International

2016-03-16 19:10 - 2016-03-16 19:12 - 256476672 _____ C:\Users\Maciej\Downloads\PokemonInstaller.msi

2016-03-15 22:43 - 2016-03-15 22:44 - 106170482 _____ C:\Users\Maciej\Downloads\Avernus 1.8.6.rar

2016-03-15 10:47 - 2016-03-15 10:55 - 143259215 _____ C:\Users\Maciej\Downloads\Minecraft 1.8.rar

2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy24

2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Remote Control

2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\Napisy24

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\ALLPlayerRemote

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\Napisy24

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\ALLPlayer Remote

2016-03-14 19:30 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\ALLPlayer

2016-03-14 19:30 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\ALLPlayer

2016-03-14 19:30 - 2013-04-05 21:26 - 02106368 _____ C:\WINDOWS\SysWOW64\ac3filter.ax

2016-03-14 19:30 - 2013-04-05 21:26 - 00276992 _____ (IntelleSoft) C:\WINDOWS\SysWOW64\BugTrap.dll

2016-03-14 19:30 - 2011-06-02 02:10 - 00644608 _____ C:\WINDOWS\SysWOW64\xvidcore.dll

2016-03-14 19:30 - 2007-10-07 15:36 - 00258048 _____ C:\WINDOWS\SysWOW64\libFLAC.dll

2016-03-14 19:27 - 2016-03-14 19:29 - 30620568 _____ (ALLPlayer ) C:\Users\Maciej\Downloads\ALLPlayerPL.exe

2016-03-14 19:10 - 2016-03-14 19:27 - 00000000 ____D C:\Users\Maciej\Downloads\Grimm.S05E12.WEB-DL.XviD-FUM[ettv]

2016-03-14 01:17 - 2016-03-14 01:17 - 00000000 ____D C:\Users\Maciej\AppData\Local\Chris_Pietschmann_(http__

2016-03-14 01:15 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Router

2016-03-14 01:15 - 2016-03-14 01:15 - 00000000 ____D C:\Program Files (x86)\Virtual Router

2016-03-14 01:14 - 2016-03-14 01:14 - 01373696 _____ C:\Users\Maciej\Downloads\VirtualRouterInstaller.msi

2016-03-14 01:06 - 2016-03-18 07:49 - 00000781 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics

2016-03-14 00:18 - 2016-03-14 00:18 - 03878112 _____ (Husdawg, LLC) C:\Users\Maciej\Downloads\Detection.exe

2016-03-13 23:14 - 2016-03-13 23:14 - 00000000 ____D C:\Users\Maciej\Documents\CheatHappens

2016-03-13 23:13 - 2016-03-13 23:13 - 00708966 _____ C:\Users\Maciej\Downloads\d591b2e1a16870d0e24d.zipx

2016-03-13 22:59 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange Connection

2016-03-13 22:59 - 2016-03-13 22:59 - 00001127 _____ C:\Users\Public\Desktop\Orange Connection.lnk

2016-03-13 22:59 - 2016-03-13 22:59 - 00000000 ____D C:\ProgramData\Orange Connection

2016-03-13 22:57 - 2016-03-13 22:59 - 00000000 ____D C:\Program Files (x86)\Orange Connection

2016-03-13 22:57 - 2014-09-11 12:06 - 00457728 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbwwan.sys

2016-03-13 22:57 - 2014-08-21 10:10 - 00248320 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_juwwanecm.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00110592 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jucdcacm.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00091648 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jubusenum.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00077312 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jucdcecm.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00030720 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_juextctrl.sys

2016-03-13 22:57 - 2013-11-30 13:25 - 00226176 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbmdm.sys

2016-03-13 22:57 - 2012-08-20 05:07 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdfcoinstaller01007.dll

2016-03-13 22:57 - 2012-08-20 05:07 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01007.dll

2016-03-13 22:57 - 2010-10-08 13:29 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\WINDOWS\system32\Drivers\ewdcsc.sys

2016-03-13 22:57 - 2010-09-26 14:39 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_hwupgrade.sys

2016-03-13 22:55 - 2016-03-13 23:13 - 00000000 ____D C:\ProgramData\DatacardService

2016-03-13 21:19 - 2016-03-24 22:44 - 00000000 ____D C:\Users\Maciej\Desktop\IGG-Slime.Ranche.v0.2.6

2016-03-13 21:19 - 2016-03-13 21:19 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Steam

2016-03-13 21:19 - 2016-03-13 21:19 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Monomi Park

2016-03-13 21:11 - 2016-03-13 21:18 - 132480394 _____ C:\Users\Maciej\Downloads\IGG-Slime.Ranche.v0.2.6.rar

2016-03-13 21:10 - 2016-03-13 21:14 - 142296418 ____R C:\Users\Maciej\Downloads\IGG-Slime.Rancher.v0.2.4b.zip

2016-03-12 23:21 - 2016-03-12 23:21 - 00000000 ____D C:\Users\Maciej\Documents\Firefall

2016-03-12 23:21 - 2016-03-12 23:21 - 00000000 ____D C:\Users\Maciej\AppData\Local\Red 5 Studios

2016-03-12 22:18 - 2016-03-12 22:18 - 00000000 ___HD C:\WINDOWS\msdownld.tmp

2016-03-12 22:10 - 2016-03-12 22:11 - 05382416 _____ C:\Users\Maciej\Downloads\FirefallInstaller.exe

2016-03-12 18:43 - 2016-03-12 18:43 - 00000000 ____D C:\Users\Maciej\AppData\Local\IsolatedStorage

2016-03-12 18:42 - 2016-03-12 18:42 - 05673133 _____ C:\Users\Maciej\Downloads\Roibot13950Free.zip

2016-03-12 18:35 - 2016-03-12 18:35 - 02287162 _____ C:\Users\Maciej\Downloads\AionSpot-QuickStart.rar

2016-03-12 18:35 - 2016-03-12 18:35 - 01005568 _____ (Microsoft Corporation) C:\Users\Maciej\Downloads\dotNetFx45_Full_setup.exe

2016-03-12 18:31 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

2016-03-12 18:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

2016-03-12 18:31 - 2016-03-12 18:31 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\WinRAR

2016-03-12 18:31 - 2016-03-12 18:31 - 00000000 ____D C:\Program Files\WinRAR

2016-03-12 18:30 - 2016-03-12 18:30 - 02162896 _____ C:\Users\Maciej\Downloads\winrar-x64-531pl.exe

2016-03-12 18:29 - 2016-03-12 18:29 - 01356520 _____ C:\Users\Maciej\Downloads\AionSpot.rar

2016-03-12 14:20 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live

2016-03-12 14:20 - 2016-03-15 22:47 - 00000000 ____D C:\Users\Maciej\Downloads\Gameforge Live

2016-03-12 14:20 - 2016-03-12 14:20 - 00000600 _____ C:\Users\Public\Desktop\Gameforge Live.lnk

2016-03-12 14:20 - 2016-03-12 14:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\Gameforge4d

2016-03-12 14:18 - 2016-03-12 14:19 - 20248088 _____ (Gameforge ) C:\Users\Maciej\Downloads\AION_GameforgeLiveSetup.exe

2016-03-09 01:27 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll

2016-03-09 01:27 - 2008-07-31 11:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll

2016-03-09 01:27 - 2008-07-31 11:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll

2016-03-09 01:27 - 2008-07-10 12:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll

2016-03-09 01:27 - 2008-05-30 15:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll

2016-03-09 01:27 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll

2016-03-09 01:27 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll

2016-03-09 01:27 - 2008-05-30 15:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll

2016-03-09 01:27 - 2008-05-30 15:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll

2016-03-09 01:27 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll

2016-03-09 01:27 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll

2016-03-09 01:27 - 2008-05-30 15:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll

2016-03-09 01:27 - 2008-03-05 17:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll

2016-03-09 01:27 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll

2016-03-09 01:27 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll

2016-03-09 01:27 - 2008-03-05 17:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll

2016-03-09 01:27 - 2008-03-05 17:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll

2016-03-09 01:27 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll

2016-03-09 01:27 - 2008-02-06 00:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll

2016-03-09 01:27 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll

2016-03-09 01:27 - 2007-10-22 04:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll

2016-03-09 01:27 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll

2016-03-09 01:27 - 2007-10-22 04:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll

2016-03-09 01:27 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll

2016-03-09 01:27 - 2007-10-02 10:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll

2016-03-09 01:27 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll

2016-03-09 01:27 - 2007-07-20 01:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll

2016-03-09 01:27 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll

2016-03-09 01:27 - 2007-06-20 21:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll

2016-03-09 01:27 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll

2016-03-09 01:27 - 2007-04-04 19:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll

2016-03-09 01:26 - 2007-04-04 19:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll

2016-03-09 01:26 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll

2016-03-09 01:26 - 2007-03-15 17:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll

2016-03-09 01:26 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll

2016-03-09 01:26 - 2007-03-12 17:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll

2016-03-09 01:26 - 2007-03-12 17:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll

2016-03-09 01:26 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll

2016-03-09 01:26 - 2007-03-05 13:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll

2016-03-09 01:26 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll

2016-03-09 01:26 - 2007-01-24 16:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll

2016-03-09 01:26 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll

2016-03-09 01:26 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll

2016-03-09 01:26 - 2006-12-08 13:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll

2016-03-09 01:26 - 2006-09-28 17:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll

2016-03-09 01:26 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll

2016-03-09 01:26 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll

2016-03-09 01:26 - 2006-09-28 17:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll

2016-03-09 01:26 - 2006-07-28 10:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll

2016-03-09 01:26 - 2006-07-28 10:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll

2016-03-09 01:26 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll

2016-03-09 01:26 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll

2016-03-09 01:26 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll

2016-03-09 01:26 - 2006-05-31 08:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll

2016-03-09 01:26 - 2006-03-31 13:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll

2016-03-09 01:26 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll

2016-03-09 01:26 - 2006-03-31 13:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll

2016-03-09 01:26 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll

2016-03-09 01:26 - 2006-03-31 13:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll

2016-03-09 01:26 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll

2016-03-09 01:26 - 2006-02-03 09:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll

2016-03-09 01:26 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll

2016-03-09 01:26 - 2006-02-03 09:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll

2016-03-09 01:26 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll

2016-03-09 01:26 - 2006-02-03 09:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll

2016-03-09 01:26 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll

2016-03-09 01:26 - 2005-12-05 19:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll

2016-03-09 01:26 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll

2016-03-09 01:26 - 2005-07-22 20:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll

2016-03-09 01:26 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll

2016-03-09 01:26 - 2005-05-26 16:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll

2016-03-09 01:26 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll

2016-03-09 01:26 - 2005-03-18 18:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll

2016-03-09 01:26 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll

2016-03-09 01:26 - 2005-02-05 20:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll

2016-03-09 01:26 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll

2016-03-09 01:16 - 2016-03-09 01:24 - 100271992 _____ (Microsoft Corporation) C:\Users\Maciej\Downloads\directx_Jun2010_redist.exe

2016-03-09 01:16 - 2016-03-09 01:16 - 00000000 ____D C:\Users\Maciej\Documents\League of Legends

2016-03-09 00:57 - 2016-03-09 01:25 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\LolClient

2016-03-09 00:56 - 2016-03-09 00:56 - 00000000 ____D C:\ProgramData\Riot Games

2016-03-09 00:35 - 2016-03-18 18:39 - 00000000 ____D C:\Users\Maciej\Desktop\Accel World

2016-03-07 22:16 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Keysticks

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Users\Maciej\Documents\Keysticks

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Users\Maciej\AppData\Local\Keysticks.net

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\ProgramData\Keysticks.net

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Program Files (x86)\Keysticks.net

2016-03-07 22:16 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll

2016-03-07 22:16 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll

2016-03-07 22:16 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll

2016-03-07 22:16 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll

2016-03-07 22:16 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll

2016-03-07 22:15 - 2016-03-07 22:15 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA

2016-03-07 22:15 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll

2016-03-07 22:15 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll

2016-03-07 22:10 - 2016-03-07 22:12 - 06264728 _____ (T C Brogden Limited) C:\Users\Maciej\Downloads\KeysticksSetup-1.8.1.0.exe

2016-03-07 19:23 - 2016-03-07 19:23 - 00785319 _____ C:\Users\Maciej\Downloads\CreeHack v1.6 Apk by OnHax.apk

2016-03-06 15:29 - 2016-03-07 22:20 - 00000000 ____D C:\Users\Maciej\Downloads\World of Warcraft 3.3.5a

2016-03-05 16:37 - 2016-03-05 16:37 - 00000253 _____ C:\Users\Maciej\Downloads\WoW.mfil

2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\WTF

2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\Errors

2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\Data

2016-03-05 16:36 - 2016-03-05 16:36 - 10474064 _____ (Blizzard Entertainment) C:\Users\Maciej\Downloads\wow_434.exe

2016-03-05 16:35 - 2016-03-05 16:35 - 00000000 ____D C:\Users\Maciej\Downloads\New folder

2016-03-05 16:34 - 2016-04-03 00:18 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\BitTorrent

2016-03-05 16:34 - 2016-03-05 16:34 - 06682129 _____ C:\Users\Maciej\Downloads\434_mini.7z

2016-03-05 16:33 - 2016-03-05 16:34 - 01930760 _____ (BitTorrent Inc.) C:\Users\Maciej\Downloads\BitTorrent.exe

2016-03-04 01:49 - 2016-03-04 01:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf

 

==================== One Month Modified files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-04-03 00:46 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF

2016-04-03 00:38 - 2016-03-02 23:37 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job

2016-04-03 00:20 - 2016-03-02 23:37 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job

2016-04-03 00:16 - 2016-01-04 09:09 - 00000000 __RDO C:\Users\Maciej\OneDrive

2016-04-03 00:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared

2016-04-02 21:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness

2016-04-02 17:57 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp

2016-04-02 01:05 - 2016-02-13 15:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT

2016-04-01 18:01 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps

2016-03-29 02:48 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI

2016-03-29 00:32 - 2016-03-02 23:38 - 00000000 ____D C:\Users\Maciej\AppData\Local\Google

2016-03-29 00:32 - 2016-03-02 23:37 - 00000000 ____D C:\Program Files (x86)\Google

2016-03-29 00:29 - 2016-03-02 22:13 - 00000000 ____D C:\Users\Maciej\AppData\Local\Opera Software

2016-03-29 00:29 - 2016-03-02 22:12 - 00000000 ____D C:\Program Files (x86)\Opera

2016-03-29 00:03 - 2016-02-13 15:11 - 00251272 _____ C:\WINDOWS\system32\FNTCACHE.DAT

2016-03-27 09:53 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat

2016-03-27 03:30 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template

2016-03-27 03:27 - 2016-02-13 15:03 - 00000000 ____D C:\Program Files\Windows Journal

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform

2016-03-27 03:27 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism

2016-03-27 03:27 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism

2016-03-26 19:39 - 2016-01-04 09:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\Packages

2016-03-26 19:28 - 2015-10-30 09:18 - 00686984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll

2016-03-26 19:28 - 2015-10-30 09:18 - 00535088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll

2016-03-26 19:16 - 2016-02-13 14:55 - 00000000 ____D C:\WINDOWS\OCR

2016-03-26 19:09 - 2016-03-02 21:26 - 00000000 ____D C:\Program Files (x86)\Intel

2016-03-26 19:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy

2016-03-26 19:00 - 2016-02-13 15:20 - 00000000 __RHD C:\Users\Public\AccountPictures

2016-03-26 18:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache

2016-03-26 18:55 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase

2016-03-26 18:54 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration

2016-03-26 18:52 - 2016-03-02 23:37 - 00003186 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier

2016-03-26 18:52 - 2016-03-02 23:37 - 00002898 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater

2016-03-26 18:49 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries

2016-03-26 18:44 - 2016-02-04 03:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tibia

2016-03-26 18:44 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM

2016-03-26 18:44 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lv-LV

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lt-LT

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\et-EE

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\en-GB

2016-03-26 18:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared

2016-03-26 18:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared

2016-03-26 18:41 - 2015-10-30 09:26 - 00000000 ____D C:\WINDOWS\Setup

2016-03-26 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports

2016-03-26 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\InputMethod

2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy

2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer

2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS

2016-03-26 18:39 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep

2016-03-26 17:09 - 2016-02-13 16:21 - 00000000 ___HD C:\$WINDOWS.~BT

2016-03-25 23:49 - 2016-01-04 09:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualStore

2016-03-25 22:37 - 2016-03-03 19:33 - 00127488 ___SH C:\Users\Maciej\Desktop\Thumbs.db

2016-03-10 16:20 - 2016-03-02 21:21 - 00000000 ____D C:\WINDOWS\system32\MRT

2016-03-10 16:15 - 2016-03-02 21:21 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

2016-03-08 09:12 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe

2016-03-08 09:12 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

 

==================== Files in the root of some directories =======

 

2016-03-26 16:06 - 2016-03-26 16:06 - 6493696 _____ () C:\Users\Maciej\AppData\Roaming\agent.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0065424 _____ () C:\Users\Maciej\AppData\Roaming\Config.xml

2016-03-26 16:06 - 2016-03-26 16:06 - 1621131 _____ () C:\Users\Maciej\AppData\Roaming\Geotom.tst

2016-03-25 23:49 - 2016-03-25 23:49 - 0005120 _____ () C:\Users\Maciej\AppData\Roaming\GiftBag.db

2016-03-26 16:04 - 2016-03-26 16:04 - 0268024 _____ () C:\Users\Maciej\AppData\Roaming\inst.lat

2016-03-26 16:04 - 2016-03-26 16:05 - 0017760 _____ () C:\Users\Maciej\AppData\Roaming\InstallationConfiguration.xml

2016-03-26 16:04 - 2016-03-26 16:04 - 0127488 _____ () C:\Users\Maciej\AppData\Roaming\Installer.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0018432 _____ () C:\Users\Maciej\AppData\Roaming\Main.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0126464 _____ () C:\Users\Maciej\AppData\Roaming\noah.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0032038 _____ () C:\Users\Maciej\AppData\Roaming\uninstall_temp.ico

 

Files to move or delete:

====================

C:\Users\Maciej\AppData\Local\Temp\ALLRemote.exe

C:\Windows\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}.job

 

 

Some files in TEMP:

====================

C:\Users\Maciej\AppData\Local\Temp\ALLRemote.exe

C:\Users\Maciej\AppData\Local\Temp\Napisy24.exe

C:\Users\Maciej\AppData\Local\Temp\{2883D6C1-46DC-4BB8-AC7D-B4F6FAD7AC12}.exe

 

 

==================== Bamital & volsnap =================

 

(There is no automatic fix for files that do not pass verification.)

 

C:\WINDOWS\system32\winlogon.exe => File is digitally signed

C:\WINDOWS\system32\wininit.exe => File is digitally signed

C:\WINDOWS\explorer.exe => File is digitally signed

C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed

C:\WINDOWS\system32\svchost.exe => File is digitally signed

C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed

C:\WINDOWS\system32\services.exe => File is digitally signed

C:\WINDOWS\system32\User32.dll => File is digitally signed

C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed

C:\WINDOWS\system32\userinit.exe => File is digitally signed

C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed

C:\WINDOWS\system32\rpcss.dll => File is digitally signed

C:\WINDOWS\system32\dnsapi.dll

[2015-10-30 09:18] - [2016-03-26 19:28] - 0686984 ____A (Microsoft Corporation) 310C74442B7C4A9C0878F190F4E6AA3D

 

C:\WINDOWS\SysWOW64\dnsapi.dll

[2015-10-30 09:18] - [2016-03-26 19:28] - 0535088 ____A (Microsoft Corporation) 57844EB677C4C3B54C62E5A917DB8772

 

C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

 

 

LastRegBack: 2016-03-26 18:34

 

==================== End of FRST.txt ============================Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01

Ran by Maciej (administrator) on MACIEK (03-04-2016 00:51:17)

Running from C:\Users\Maciej\Downloads

Loaded Profiles: Maciej (Available Profiles: Maciej)

Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)

Internet Explorer Version 11 (Default browser: Edge)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

 

==================== Processes (Whitelisted) =================

 

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

 

() C:\ProgramData\DatacardService\HWDeviceService64.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe

(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe

(Visicom Media Inc.) C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe

(Chris Pietschmann (hxxp://pietschsoft.com)) C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe

() C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp

(TFuns LIMITED) C:\ProgramData\BWdMB\WdMan.exe

() C:\ProgramData\Orange Connection\OnlineUpdate\ouc.exe

(Microsoft Corporation) C:\Windows\System32\alg.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe

(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe

(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe

(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe

(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe

(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe

(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe

() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe

(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

 

 

==================== Registry (Whitelisted) ===========================

 

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

 

HKLM-x32\...\Run: [win_en_77] => [X]

HKLM-x32\...\Run: [mpck_en_005030279] => [X]

HKLM-x32\...\Run: [rec_pl_236] => [X]

HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [107520 2016-03-18] (Panda Security, S.L.)

HKLM\...\Winlogon: [userinit] C:\WINDOWS\SysWOW64\userinit.exe,

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [ALLUpdate] => C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [ALLPlayer WiFi Remote] => C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe [5182896 2014-07-23] (ALLPlayer Group Ltd.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [Napisy24Update] => C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3709896 2015-11-04] (Napisy24.pl)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50670720 2016-03-01] (Skype Technologies S.A.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [bitTorrent] => C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe [1930760 2016-03-05] (BitTorrent Inc.)

HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\RunOnce: [ALLPlayer Remote Update] => C:\Users\Maciej\AppData\Local\Temp\ALLRemote.exe [2152872 2016-04-03] (ALLPlayer                                                   ) <===== ATTENTION

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Virtual Router Manager.lnk [2016-03-14]

ShortcutTarget: Virtual Router Manager.lnk -> C:\Windows\Installer\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}\_118D1A4EFFA6998C3492EB.exe ()

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

Tcpip\Parameters: [DhcpNameServer] 192.178.1.1

Tcpip\..\Interfaces\{138c8c5a-2e2a-4f36-9233-4738134a8276}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{41ef520c-d253-11e5-9d89-806e6f6e6963}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{857d6415-da12-49ba-b9f2-b76193aa1c2f}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{8718928d-cbeb-45ea-a621-800a9249001d}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{8b62420b-f370-11e5-9d8c-806e6f6e6963}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{8ce2e15c-ff02-4bb1-9aa4-83cd8657e6e1}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{af6c8ed2-d532-41b7-8172-16fea9cfb55f}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{bbed3e08-0b41-11e3-8249-806e6f6e6963}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{cbd48f7b-05d1-4a79-8298-ea266339d554}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{cd3daecf-48fd-4202-aa63-740a9e086eee}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{e773fd15-1f5a-4833-9cee-25a469437fcc}: [NameServer] 104.197.191.4

Tcpip\..\Interfaces\{e773fd15-1f5a-4833-9cee-25a469437fcc}: [DhcpNameServer] 192.178.1.1

Tcpip\..\Interfaces\{f58cf125-9a00-4679-944b-1b0ab5a5bcab}: [NameServer] 104.197.191.4

 

Internet Explorer:

==================

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xLytfxBQin99eRm67Ntgtac_Sd87O_FLxltzrgsHvBNBvTtlWU9uZrGHEzo4bztE6IYeR_hKhJjgCKfWNjTkuX5ZxLc_GM,

HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL = 

SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

SearchScopes: HKU\S-1-5-21-302128576-430233443-2040676304-1001 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

SearchScopes: HKU\S-1-5-21-302128576-430233443-2040676304-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}

BHO: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-11-23] ()

BHO-x32: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-11-23] ()

Toolbar: HKLM - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-11-23] ()

Toolbar: HKLM-x32 - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-11-23] ()

 

FireFox:

========

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-29] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-29] (Google Inc.)

 

Chrome: 

=======

CHR Profile: C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default

CHR Extension: (Prezentacje Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-29]

CHR Extension: (Dokumenty Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-29]

CHR Extension: (Dysk Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-29]

CHR Extension: (YouTube) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-29]

CHR Extension: (Arkusze Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-29]

CHR Extension: (Avira Browser Safety) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-04-03]

CHR Extension: (Dokumenty Google offline) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-29]

CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]

CHR Extension: (Gmail) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-29]

 

==================== Services (Whitelisted) ========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1394360 2015-08-13] (Intel Corporation)

R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] ()

S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)

R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [150528 2016-03-18] (Panda Security, S.L.)

S2 Orange Connection. RunOuc; C:\Program Files (x86)\Orange Connection\UpdateDog\ouc.exe [651856 2013-10-26] ()

R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [73176 2016-02-22] (Panda Security, S.L.)

R2 panda_url_filtering; C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe [287752 2015-11-06] (Visicom Media Inc.)

R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136 2016-03-17] (Panda Security, S.L.)

R2 Virtual Router; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [12288 2013-02-10] (Chris Pietschmann (hxxp://pietschsoft.com)) [File not signed]

R2 WdMan; C:\ProgramData\BWdMB\WdMan.exe [274600 2016-03-26] (TFuns LIMITED)

S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

S2 Winsere; C:\Program Files (x86)\Winsere\Winsere\Winsere.exe [316984 2016-03-24] ()

R2 zigipyro; C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp [158720 2015-12-26] () [File not signed]

S2 ggbugreport; "C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe" {154DFF63-3402-4815-941A-AAD63AE8B428} [X]

S2 Hixtocb; "C:\Users\Maciej\AppData\Roaming\MymseAde\Poirdor.exe" -cms [X]

S2 ktip; "C:\Program Files\ktip\ktip.exe" /s iid=5875258 did=APSFTuto4PC sid=11 ref=dce13765-6bd9-4ba1-60f7-1daf9b048c3a-PolicyMac id=bae988fbe41847dc568341825e90041ae4a67350bb32e7a7950b87d61b2d29ba [X]

S2 sivuzuwizbt; C:\Program Files (x86)\00000011-1458942664-0000-0000-08606E906414\knsa1E8C.tmp [X]

 

===================== Drivers (Whitelisted) ==========================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

R3 athr; C:\Windows\System32\drivers\athw10x.sys [4325544 2015-06-26] (Qualcomm Atheros Communications, Inc.)

R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [100776 2015-08-23] (ASUS Corporation)

R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-26] ()

R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [65856 2016-03-26] (Windows ® Win 7 DDK provider)

R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [55816 2015-08-13] (Intel Corporation)

R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [53752 2015-08-13] (Intel Corporation)

R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [261624 2015-08-13] (Intel Corporation)

R1 NNSALPC; C:\Windows\system32\DRIVERS\NNSALPC.sys [103856 2015-12-10] (Panda Security, S.L.)

R1 NNSHTTP; C:\Windows\system32\DRIVERS\NNSHTTP.sys [210864 2015-12-10] (Panda Security, S.L.)

R1 NNSHTTPS; C:\Windows\system32\DRIVERS\NNSHTTPS.sys [120240 2015-12-10] (Panda Security, S.L.)

R1 NNSIDS; C:\Windows\system32\DRIVERS\NNSIDS.sys [120240 2015-12-10] (Panda Security, S.L.)

R1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [58616 2015-06-19] (Panda Security, S.L.)

R1 NNSPICC; C:\Windows\system32\DRIVERS\NNSPICC.sys [112560 2015-12-10] (Panda Security, S.L.)

R1 NNSPIHSW; C:\Windows\system32\DRIVERS\NNSPIHSW.sys [82864 2016-03-17] (Panda Security, S.L.)

R1 NNSPOP3; C:\Windows\system32\DRIVERS\NNSPOP3.sys [133552 2015-12-10] (Panda Security, S.L.)

R1 NNSPROT; C:\Windows\system32\DRIVERS\NNSPROT.sys [309680 2015-12-10] (Panda Security, S.L.)

R1 NNSPRV; C:\Windows\system32\DRIVERS\NNSPRV.sys [179632 2016-02-18] (Panda Security, S.L.)

R1 NNSSMTP; C:\Windows\system32\DRIVERS\NNSSMTP.sys [122800 2015-12-10] (Panda Security, S.L.)

R1 NNSSTRM; C:\Windows\system32\DRIVERS\NNSSTRM.sys [267184 2016-02-18] (Panda Security, S.L.)

R1 NNSTLSC; C:\Windows\system32\DRIVERS\NNSTLSC.sys [115632 2015-12-10] (Panda Security, S.L.)

R3 panda_url_filteringd; C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys [51288 2014-03-19] (Visicom Media Inc.)

R0 PsBoot; C:\Windows\System32\Drivers\PsBoot.sys [42624 2015-06-16] (Panda Security, S.L.)

R2 PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [174000 2016-02-18] (Panda Security, S.L.)

R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [129456 2016-02-18] (Panda Security, S.L.)

R1 PSINKNC; C:\Windows\system32\DRIVERS\PSINKNC.sys [207280 2016-02-18] (Panda Security, S.L.)

R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [133552 2016-02-18] (Panda Security, S.L.)

R2 PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [146864 2016-02-24] (Panda Security, S.L.)

R2 PSINReg; C:\Windows\system32\DRIVERS\PSINReg.sys [117168 2016-02-18] (Panda Security, S.L.)

R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [62080 2015-06-16] (Panda Security, S.L.)

S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)

S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)

S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

S1 MPCKpt; system32\DRIVERS\MPCKpt.sys [X]

 

==================== NetSvcs (Whitelisted) ===================

 

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

 

 

==================== One Month Created files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-04-03 00:43 - 2016-04-03 00:51 - 00034744 _____ C:\Users\Maciej\Downloads\Addition.txt

2016-04-03 00:40 - 2016-04-03 00:51 - 00017423 _____ C:\Users\Maciej\Downloads\FRST.txt

2016-04-03 00:40 - 2016-04-03 00:51 - 00000000 ____D C:\FRST

2016-04-03 00:40 - 2016-04-03 00:40 - 02374144 _____ (Farbar) C:\Users\Maciej\Downloads\FRST64.exe

2016-04-03 00:37 - 2016-04-03 00:38 - 07001616 _____ (Trend Micro Inc.) C:\Users\Maciej\Downloads\BGSetup3.0.1009.exe

2016-04-03 00:20 - 2016-04-03 00:22 - 00000000 ____D C:\Program Files\Life Is Strange

2016-04-03 00:16 - 2016-04-03 00:16 - 00000000 ___HD C:\OneDriveTemp

2016-04-03 00:13 - 2016-04-03 00:13 - 00000000 ____D C:\Users\Maciej\AppData\Local\EMU

2016-04-03 00:12 - 2016-04-03 00:13 - 13939370 _____ C:\Users\Maciej\Downloads\LIS_PL.exe

2016-04-03 00:01 - 2016-04-03 00:01 - 00000000 ____D C:\ProgramData\Package Cache

2016-04-02 23:58 - 2016-04-03 00:22 - 00002044 _____ C:\Users\Public\Desktop\Life Is Strange.lnk

2016-04-02 23:58 - 2016-04-03 00:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Life Is Strange

2016-04-02 23:56 - 2016-04-03 00:28 - 00000000 ____D C:\Program Files (x86)\Life Is Strange

2016-04-02 23:52 - 2016-04-02 23:55 - 00000000 ____D C:\Users\Maciej\Desktop\FLT

2016-04-02 16:26 - 2015-06-16 16:41 - 00042624 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PsBoot.sys

2016-03-29 01:43 - 2016-04-02 23:52 - 00000000 ____D C:\Users\Maciej\Downloads\Life_Is_Strange_Episode_1-FLT

2016-03-29 01:42 - 2016-03-29 01:42 - 00041830 _____ C:\Users\Maciej\Downloads\Life_Is_Strange_Episode_1-FLT-[rarbg.com].torrent

2016-03-29 00:55 - 2016-03-29 00:56 - 04504169 _____ C:\Users\Maciej\Downloads\Civilization V Brave New World DX11-DX9 V1.0.3.279 Trainer +8 MrAntiFun.zip

2016-03-29 00:38 - 2016-03-29 00:40 - 03986022 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 Gods And Kings V 1.0.3.144 Trainer +8 MrAntiFun.zip

2016-03-29 00:37 - 2016-04-02 19:07 - 00000022 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 Brave New World V 1.0.3.144 Trainer +8 MrAntiFun.zip

2016-03-29 00:32 - 2016-03-29 00:32 - 00002350 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

2016-03-29 00:32 - 2016-03-29 00:32 - 00002338 _____ C:\Users\Public\Desktop\Google Chrome.lnk

2016-03-29 00:24 - 2016-04-03 00:29 - 00001062 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job

2016-03-29 00:24 - 2016-04-03 00:29 - 00001058 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job

2016-03-29 00:24 - 2016-03-29 00:24 - 00987728 _____ (Google Inc.) C:\Users\Maciej\Downloads\ChromeSetup.exe

2016-03-29 00:24 - 2016-03-29 00:24 - 00004120 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA

2016-03-29 00:24 - 2016-03-29 00:24 - 00003888 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore

2016-03-29 00:12 - 2016-04-02 18:00 - 00000416 ____H C:\WINDOWS\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}.job

2016-03-29 00:12 - 2016-03-29 00:12 - 00003368 _____ C:\WINDOWS\System32\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}

2016-03-29 00:01 - 2016-04-03 00:49 - 00004148 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{EDAAFE84-DA65-4593-AF6B-ED5C53754BDE}

2016-03-28 23:54 - 2016-03-28 23:54 - 00002048 _____ C:\WINDOWS\system32\Drivers\etc\hosts.bak

2016-03-28 23:46 - 2016-04-02 14:39 - 00000000 ____D C:\ProgramData\panda_url_filtering

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Panda Security

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\pandasecuritytb

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Program Files\Panda Security URL Filtering

2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Program Files (x86)\pandasecuritytb

2016-03-28 23:46 - 2016-02-24 14:26 - 00146864 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProt.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00207280 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINKNC.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00174000 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00133552 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProc.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00129456 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINFile.sys

2016-03-28 23:46 - 2016-02-18 18:37 - 00117168 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINReg.sys

2016-03-28 23:46 - 2015-06-16 16:41 - 00062080 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys

2016-03-28 23:45 - 2016-03-28 23:47 - 00002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Internet Security 2016.lnk

2016-03-28 23:45 - 2016-03-28 23:47 - 00002266 _____ C:\Users\Public\Desktop\Panda Internet Security 2016.lnk

2016-03-28 23:45 - 2016-03-28 23:46 - 00000000 ____D C:\Program Files (x86)\Panda Security

2016-03-28 23:45 - 2016-03-28 23:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Internet Security 2016

2016-03-28 23:31 - 2016-03-28 23:46 - 00000000 ____D C:\ProgramData\Panda Security

2016-03-28 23:31 - 2016-03-28 23:32 - 01882896 _____ (Panda Security, S.L.) C:\Users\Maciej\Downloads\PANDAIS16 (1).exe

2016-03-28 23:31 - 2016-03-28 23:31 - 01882896 _____ (Panda Security, S.L.) C:\Users\Maciej\Downloads\PANDAIS16.exe

2016-03-28 21:40 - 2016-03-29 00:21 - 00000000 ____D C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414

2016-03-28 21:38 - 2016-03-28 21:38 - 00000000 ____D C:\Users\Maciej\Documents\My Cheat Tables

2016-03-28 21:33 - 2016-03-28 21:36 - 03982027 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 DX 11 V 1.0.3.144 Trainer +8 MrAntiFun.zip

2016-03-28 20:37 - 2016-03-28 20:37 - 00690629 _____ C:\Users\Maciej\Downloads\sidmeierscivilizationv17trainer.zip

2016-03-28 19:12 - 2016-04-03 00:13 - 00000000 ____D C:\Users\Maciej\Documents\My Games

2016-03-28 19:12 - 2016-03-28 19:12 - 00000000 ____D C:\Users\Maciej\AppData\Local\My Games

2016-03-28 19:11 - 2016-04-03 00:28 - 00000000 ____D C:\Users\Maciej\Desktop\PROPHET

2016-03-28 19:11 - 2016-03-28 19:11 - 00000000 ____D C:\ProgramData\Steam

2016-03-28 19:00 - 2016-03-28 19:00 - 00001337 _____ C:\Users\Public\Desktop\Sid Meier's Civilization V - Complete Edition.lnk

2016-03-28 19:00 - 2016-03-28 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games

2016-03-28 18:47 - 2016-03-28 18:47 - 00000000 _____ C:\Users\Maciej\Desktop\New Text Document.txt

2016-03-28 18:43 - 2016-03-28 18:43 - 00000000 ____D C:\Program Files (x86)\2K Games

2016-03-28 17:27 - 2016-03-28 18:08 - 00000000 ____D C:\Users\Maciej\Downloads\Sid.Meiers.Civilization.V.Complete.Edition-PROPHET

2016-03-28 17:27 - 2016-03-28 17:27 - 00030109 _____ C:\Users\Maciej\Downloads\Sid.Meiers.Civilization.V.Complete.Edition-PROPHET.torrent

2016-03-27 20:26 - 2016-03-27 20:26 - 00000000 ____D C:\WINDOWS\system32\SleepStudy

2016-03-27 12:30 - 2016-03-27 12:30 - 08820166 _____ C:\Users\Maciej\Downloads\Ultraparallel_Blue.7z

2016-03-27 12:27 - 2016-03-27 12:27 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\W10LogonChanger

2016-03-27 12:26 - 2016-03-27 12:26 - 02681221 _____ C:\Users\Maciej\Downloads\Win10BGChanger1.2.0.0.zip

2016-03-27 03:30 - 2016-03-26 19:00 - 00000000 ___DC C:\WINDOWS\Panther

2016-03-27 03:27 - 2016-03-27 03:27 - 00000000 ____D C:\Windows.old

2016-03-27 03:26 - 2016-03-27 03:26 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi

2016-03-27 03:26 - 2016-03-27 03:26 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv

2016-03-27 03:26 - 2016-03-27 03:26 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe

2016-03-27 03:26 - 2016-03-27 03:26 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe

2016-03-27 03:26 - 2016-03-27 03:26 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys

2016-03-27 03:26 - 2016-03-27 03:26 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll

2016-03-27 03:26 - 2016-03-27 03:26 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi

2016-03-27 03:25 - 2016-03-27 03:25 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi

2016-03-27 03:25 - 2016-03-27 03:25 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS

2016-03-27 03:25 - 2016-03-27 03:25 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv

2016-03-27 03:25 - 2016-03-27 03:25 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS

2016-03-27 03:25 - 2016-03-27 03:25 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS

2016-03-27 03:25 - 2016-03-27 03:25 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe

2016-03-27 03:25 - 2016-03-27 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys

2016-03-27 03:25 - 2016-03-27 03:25 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll

2016-03-27 03:25 - 2016-03-27 03:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll

2016-03-27 03:20 - 2016-03-27 03:20 - 00008192 _____ C:\WINDOWS\system32\config\userdiff

2016-03-27 03:20 - 2015-10-30 05:43 - 07851008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0015.dll

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files\Reference Assemblies

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files\MSBuild

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies

2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files (x86)\MSBuild

2016-03-27 03:17 - 2015-10-24 03:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll

2016-03-27 03:17 - 2015-10-24 03:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2016-03-27 03:17 - 2015-10-24 03:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe

2016-03-27 03:17 - 2015-10-24 03:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll

2016-03-27 03:17 - 2015-10-24 03:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe

2016-03-27 03:17 - 2015-10-24 03:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll

2016-03-27 03:16 - 2016-03-27 03:16 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll

2016-03-27 03:16 - 2016-03-27 03:16 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe

2016-03-27 03:16 - 2016-03-27 03:16 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys

2016-03-27 03:16 - 2016-03-27 03:16 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys

2016-03-26 20:42 - 2016-03-26 20:42 - 00000000 ____D C:\Users\Maciej\AppData\Local\NetworkTiles

2016-03-26 19:35 - 2016-04-03 00:16 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture

2016-03-26 19:35 - 2016-03-26 19:35 - 00000000 ____D C:\Program Files (x86)\SearchesToYesbnd

2016-03-26 19:28 - 2016-03-26 19:28 - 00000000 ____D C:\WINDOWS\system32\finh

2016-03-26 19:20 - 2016-04-02 19:05 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Abesju

2016-03-26 19:20 - 2016-03-26 19:23 - 00000000 ____D C:\Users\Maciej\AppData\Local\MicrosoftEdge

2016-03-26 19:19 - 2016-03-28 23:56 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\TijusOiath

2016-03-26 19:19 - 2016-03-26 19:19 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys

2016-03-26 19:19 - 2016-03-26 19:19 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Jolkamri

2016-03-26 19:16 - 2016-03-26 19:16 - 00001047 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk

2016-03-26 19:10 - 2016-03-26 19:10 - 03319245 _____ C:\Users\Maciej\Downloads\GameKiller 3.11.zip

2016-03-26 19:09 - 2016-03-26 19:10 - 00002402 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

2016-03-26 19:09 - 2016-03-26 19:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf

2016-03-26 19:05 - 2016-03-26 19:05 - 00003628 _____ C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher

2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\MCorp

2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\ProgramData\SetupTPDriver

2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\Program Files (x86)\ASUS

2016-03-26 19:02 - 2016-03-26 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\Publishers

2016-03-26 19:02 - 2016-03-26 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\ActiveSync

2016-03-26 19:01 - 2016-03-26 19:01 - 00000000 __SHD C:\Users\Maciej\IntelGraphicsProfiles

2016-03-26 19:01 - 2016-03-26 19:01 - 00000000 ____D C:\Users\Maciej\AppData\Local\Comms

2016-03-26 19:00 - 2016-03-26 19:00 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat

2016-03-26 19:00 - 2016-03-26 19:00 - 00000258 __RSH C:\Users\Maciej\ntuser.pol

2016-03-26 19:00 - 2016-03-26 19:00 - 00000020 ___SH C:\Users\Maciej\ntuser.ini

2016-03-26 19:00 - 2016-03-26 19:00 - 00000000 ____D C:\Users\Maciej\AppData\Local\TileDataLayer

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\My Documents

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Videos

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Music

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures

2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Music

2016-03-26 18:54 - 2016-04-02 01:11 - 00879220 _____ C:\WINDOWS\system32\PerfStringBackup.INI

2016-03-26 18:53 - 2016-03-26 18:53 - 00022744 _____ C:\WINDOWS\system32\emptyregdb.dat

2016-03-26 18:43 - 2016-03-26 18:43 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

2016-03-26 18:41 - 2016-03-26 18:41 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate

2016-03-26 18:40 - 2016-04-03 00:19 - 00000000 ____D C:\Users\Maciej

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\My Documents

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Videos

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Pictures

2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Music

2016-03-26 18:37 - 2016-03-26 18:37 - 00000000 ____D C:\Program Files\Intel

2016-03-26 18:37 - 2016-03-26 18:37 - 00000000 ____D C:\Program Files\Common Files\Atheros

2016-03-26 18:37 - 2015-08-27 19:20 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL

2016-03-26 18:37 - 2015-08-27 19:20 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL

2016-03-26 18:36 - 2016-03-26 18:36 - 00000000 ____D C:\WINDOWS\SysWOW64\sda

2016-03-26 17:15 - 2016-03-26 18:41 - 00000000 ____D C:\WINDOWS\system32\bihk

2016-03-26 17:08 - 2016-03-26 18:54 - 00009528 _____ C:\WINDOWS\diagwrn.xml

2016-03-26 17:08 - 2016-03-26 18:54 - 00009528 _____ C:\WINDOWS\diagerr.xml

2016-03-26 16:27 - 2016-03-26 16:27 - 00000000 ____D C:\Users\Maciej\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Users\Public\Documents\dmp

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Program Files (x86)\WinTaske

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Program Files (x86)\Winsere

2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\extensions

2016-03-26 16:11 - 2016-03-26 16:11 - 00000000 ____D C:\ProgramData\BWdMB

2016-03-26 16:10 - 2016-03-26 16:10 - 00000000 ____D C:\Users\Maciej\AppData\Local\tuto_monetize_220160325

2016-03-26 16:10 - 2016-03-26 16:10 - 00000000 ____D C:\ProgramData\eWdMe

2016-03-26 16:09 - 2016-03-29 00:56 - 00000000 ____D C:\Program Files (x86)\Hostify

2016-03-26 16:09 - 2016-03-26 16:28 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\mysites123

2016-03-26 16:06 - 2016-03-26 16:06 - 06493696 _____ C:\Users\Maciej\AppData\Roaming\agent.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 01621131 _____ C:\Users\Maciej\AppData\Roaming\Geotom.tst

2016-03-26 16:06 - 2016-03-26 16:06 - 00126464 _____ C:\Users\Maciej\AppData\Roaming\noah.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 00065424 _____ C:\Users\Maciej\AppData\Roaming\Config.xml

2016-03-26 16:06 - 2016-03-26 16:06 - 00018432 _____ C:\Users\Maciej\AppData\Roaming\Main.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 00002397 _____ C:\WINDOWS\SysWOW64\findit.xml

2016-03-26 16:06 - 2016-03-26 16:06 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Mozilla

2016-03-26 16:05 - 2016-03-26 16:05 - 00000000 ____D C:\Users\Maciej\AppData\Local\tuto_monetize_120160325

2016-03-26 16:04 - 2016-03-29 00:40 - 00000000 ____D C:\Program Files\Windows Screen Manager

2016-03-26 16:04 - 2016-03-26 19:30 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner

2016-03-26 16:04 - 2016-03-26 16:05 - 00017760 _____ C:\Users\Maciej\AppData\Roaming\InstallationConfiguration.xml

2016-03-26 16:04 - 2016-03-26 16:04 - 00268024 _____ C:\Users\Maciej\AppData\Roaming\inst.lat

2016-03-26 16:04 - 2016-03-26 16:04 - 00127488 _____ C:\Users\Maciej\AppData\Roaming\Installer.dat

2016-03-26 16:04 - 2016-03-26 16:04 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Company

2016-03-26 16:04 - 2016-03-26 16:04 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}

2016-03-26 16:03 - 2016-04-02 19:06 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Udiwufuo

2016-03-26 16:03 - 2016-03-26 19:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\Tempfolder

2016-03-26 16:03 - 2016-03-26 16:03 - 00000000 ____D C:\uninst

2016-03-26 16:03 - 2016-03-26 16:03 - 00000000 _____ C:\WINDOWS\SysWOW64\Number of results

2016-03-26 15:56 - 2014-03-23 02:43 - 00000068 _____ C:\Users\Maciej\Desktop\Klick.txt

2016-03-26 15:56 - 2014-02-19 11:36 - 00000000 ____D C:\Users\Maciej\Desktop\Aktywacja

2016-03-26 15:55 - 2016-03-26 15:56 - 02906577 _____ C:\Users\Maciej\Downloads\Aktywacja.rar

2016-03-26 13:58 - 2016-03-26 16:03 - 00065856 _____ (Windows ® Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys

2016-03-25 23:56 - 2016-03-25 23:56 - 00038520 _____ (Tencent) C:\WINDOWS\SysWOW64\Drivers\TS888x64.sys

2016-03-25 23:51 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage

2016-03-25 23:49 - 2016-03-26 16:33 - 00000000 ____D C:\Users\Maciej\AppData\Local\app

2016-03-25 23:49 - 2016-03-25 23:59 - 00000000 ____D C:\ProgramData\TXQMPC

2016-03-25 23:49 - 2016-03-25 23:49 - 00005120 _____ C:\Users\Maciej\AppData\Roaming\GiftBag.db

2016-03-25 23:49 - 2016-03-25 23:49 - 00000000 ____D C:\Program Files\Common Files\Tencent

2016-03-25 23:49 - 2016-03-25 23:48 - 00132344 _____ (Tencent Technology(Shenzhen) Company Limited) C:\WINDOWS\system32\Drivers\TAOKernelEx64.sys

2016-03-25 23:48 - 2016-03-26 00:18 - 00000346 _____ C:\WINDOWS\Tasks\Update Service for Torrent Search2.job

2016-03-25 23:48 - 2016-03-26 00:18 - 00000346 _____ C:\WINDOWS\Tasks\Update Service for Torrent Search.job

2016-03-25 23:48 - 2016-03-26 00:00 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件

2016-03-25 23:48 - 2016-03-25 23:57 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Tencent

2016-03-25 23:48 - 2016-03-25 23:48 - 00087800 _____ (电脑管家) C:\WINDOWS\system32\Drivers\TFsFltX64.sys

2016-03-25 23:47 - 2016-03-26 19:09 - 00000258 __RSH C:\ProgramData\ntuser.pol

2016-03-25 23:46 - 2016-03-29 01:02 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\yoursearching

2016-03-25 23:46 - 2016-03-25 23:46 - 00000000 ____D C:\Users\Maciej\Downloads\Torrentex

2016-03-25 23:45 - 2016-03-25 23:45 - 06125507 _____ C:\Users\Maciej\Downloads\Windows 8_ 8.rar

2016-03-25 19:23 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proxy Finder Enterprise

2016-03-25 19:23 - 2016-03-25 19:23 - 00707288 _____ C:\Users\Maciej\Downloads\ProxyFinderEnt-v2.5.rar

2016-03-25 19:23 - 2016-03-25 19:23 - 00002035 _____ C:\Users\Maciej\Desktop\Proxy Finder Enterprise.lnk

2016-03-25 19:23 - 2016-03-25 19:23 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Proxy Finder Enterprise

2016-03-25 19:23 - 2016-03-25 19:23 - 00000000 ____D C:\Program Files (x86)\ProxyFinderEnterprise

2016-03-25 19:23 - 2012-10-22 16:58 - 00000000 ____D C:\Users\Maciej\Desktop\ProxyFinderEnt-v2.5

2016-03-25 19:09 - 2016-03-31 14:16 - 00000000 ____D C:\Users\Maciej\Desktop\New folder

2016-03-25 19:08 - 2016-03-25 19:08 - 02550749 _____ C:\Users\Maciej\Downloads\Proxyliste06.txt

2016-03-25 01:53 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GS Auto Clicker

2016-03-25 01:53 - 2016-03-25 01:53 - 00893672 _____ (goldensoft.org ) C:\Users\Maciej\Downloads\GSAutoClicker-Setup.exe

2016-03-25 01:53 - 2016-03-25 01:53 - 00001118 _____ C:\Users\Public\Desktop\GS Auto Clicker.lnk

2016-03-25 01:53 - 2016-03-25 01:53 - 00000000 ____D C:\Users\Maciej\Documents\AutomaticSolution Software

2016-03-25 01:53 - 2016-03-25 01:53 - 00000000 ____D C:\Program Files (x86)\GSAutoClicker3

2016-03-24 22:44 - 2016-03-24 22:44 - 00406016 _____ (SatyCreations) C:\Users\Maciej\Downloads\ModInstaller.v.0.0.8.exe

2016-03-24 22:44 - 2016-03-24 22:44 - 00000000 ____D C:\Users\Maciej\AppData\Local\SatyCreations

2016-03-24 17:00 - 2016-03-24 17:00 - 00000000 ____D C:\Users\Maciej\Tracing

2016-03-24 16:59 - 2016-04-03 00:51 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Skype

2016-03-24 16:59 - 2016-03-26 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype

2016-03-24 16:59 - 2016-03-24 16:59 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk

2016-03-24 16:59 - 2016-03-24 16:59 - 00000000 ___RD C:\Program Files (x86)\Skype

2016-03-24 16:59 - 2016-03-24 16:59 - 00000000 ____D C:\ProgramData\Skype

2016-03-24 16:58 - 2016-03-24 16:58 - 01503872 _____ (Skype Technologies S.A.) C:\Users\Maciej\Downloads\SkypeSetup.exe

2016-03-17 20:38 - 2016-03-26 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Runxia Electronics

2016-03-17 20:38 - 2016-03-17 20:38 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualRouterPlus

2016-03-17 20:38 - 2016-03-17 20:38 - 00000000 ____D C:\Program Files (x86)\Runxia Electronics

2016-03-17 20:37 - 2016-03-17 20:37 - 01857456 _____ (Runxia Electronics) C:\Users\Maciej\Downloads\virtualrouterplussetup.exe

2016-03-17 20:37 - 2016-03-17 20:37 - 00000000 ____D C:\Users\Maciej\AppData\Local\Downloaded Installations

2016-03-17 15:08 - 2016-03-17 15:08 - 00000000 ____D C:\ProgramData\OnlineUpdate

2016-03-17 15:08 - 2016-03-17 15:08 - 00000000 ____D C:\ProgramData\log

2016-03-17 12:31 - 2016-03-17 12:31 - 00082864 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspihsw.sys

2016-03-16 19:19 - 2016-03-16 19:19 - 00000000 ____D C:\ProgramData\.mono

2016-03-16 19:15 - 2016-03-16 19:15 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\.mono

2016-03-16 19:13 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokémon Trading Card Game Online

2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Pokémon Trading Card Game Online

2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Unity

2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\The Pok__mon Company International

2016-03-16 19:10 - 2016-03-16 19:12 - 256476672 _____ C:\Users\Maciej\Downloads\PokemonInstaller.msi

2016-03-15 22:43 - 2016-03-15 22:44 - 106170482 _____ C:\Users\Maciej\Downloads\Avernus 1.8.6.rar

2016-03-15 10:47 - 2016-03-15 10:55 - 143259215 _____ C:\Users\Maciej\Downloads\Minecraft 1.8.rar

2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy24

2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Remote Control

2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\Napisy24

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\ALLPlayerRemote

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\Napisy24

2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\ALLPlayer Remote

2016-03-14 19:30 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\ALLPlayer

2016-03-14 19:30 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\ALLPlayer

2016-03-14 19:30 - 2013-04-05 21:26 - 02106368 _____ C:\WINDOWS\SysWOW64\ac3filter.ax

2016-03-14 19:30 - 2013-04-05 21:26 - 00276992 _____ (IntelleSoft) C:\WINDOWS\SysWOW64\BugTrap.dll

2016-03-14 19:30 - 2011-06-02 02:10 - 00644608 _____ C:\WINDOWS\SysWOW64\xvidcore.dll

2016-03-14 19:30 - 2007-10-07 15:36 - 00258048 _____ C:\WINDOWS\SysWOW64\libFLAC.dll

2016-03-14 19:27 - 2016-03-14 19:29 - 30620568 _____ (ALLPlayer ) C:\Users\Maciej\Downloads\ALLPlayerPL.exe

2016-03-14 19:10 - 2016-03-14 19:27 - 00000000 ____D C:\Users\Maciej\Downloads\Grimm.S05E12.WEB-DL.XviD-FUM[ettv]

2016-03-14 01:17 - 2016-03-14 01:17 - 00000000 ____D C:\Users\Maciej\AppData\Local\Chris_Pietschmann_(http__

2016-03-14 01:15 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Router

2016-03-14 01:15 - 2016-03-14 01:15 - 00000000 ____D C:\Program Files (x86)\Virtual Router

2016-03-14 01:14 - 2016-03-14 01:14 - 01373696 _____ C:\Users\Maciej\Downloads\VirtualRouterInstaller.msi

2016-03-14 01:06 - 2016-03-18 07:49 - 00000781 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics

2016-03-14 00:18 - 2016-03-14 00:18 - 03878112 _____ (Husdawg, LLC) C:\Users\Maciej\Downloads\Detection.exe

2016-03-13 23:14 - 2016-03-13 23:14 - 00000000 ____D C:\Users\Maciej\Documents\CheatHappens

2016-03-13 23:13 - 2016-03-13 23:13 - 00708966 _____ C:\Users\Maciej\Downloads\d591b2e1a16870d0e24d.zipx

2016-03-13 22:59 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange Connection

2016-03-13 22:59 - 2016-03-13 22:59 - 00001127 _____ C:\Users\Public\Desktop\Orange Connection.lnk

2016-03-13 22:59 - 2016-03-13 22:59 - 00000000 ____D C:\ProgramData\Orange Connection

2016-03-13 22:57 - 2016-03-13 22:59 - 00000000 ____D C:\Program Files (x86)\Orange Connection

2016-03-13 22:57 - 2014-09-11 12:06 - 00457728 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbwwan.sys

2016-03-13 22:57 - 2014-08-21 10:10 - 00248320 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_juwwanecm.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00110592 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jucdcacm.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00091648 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jubusenum.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00077312 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jucdcecm.sys

2016-03-13 22:57 - 2013-11-30 13:40 - 00030720 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_juextctrl.sys

2016-03-13 22:57 - 2013-11-30 13:25 - 00226176 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbmdm.sys

2016-03-13 22:57 - 2012-08-20 05:07 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdfcoinstaller01007.dll

2016-03-13 22:57 - 2012-08-20 05:07 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01007.dll

2016-03-13 22:57 - 2010-10-08 13:29 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\WINDOWS\system32\Drivers\ewdcsc.sys

2016-03-13 22:57 - 2010-09-26 14:39 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_hwupgrade.sys

2016-03-13 22:55 - 2016-03-13 23:13 - 00000000 ____D C:\ProgramData\DatacardService

2016-03-13 21:19 - 2016-03-24 22:44 - 00000000 ____D C:\Users\Maciej\Desktop\IGG-Slime.Ranche.v0.2.6

2016-03-13 21:19 - 2016-03-13 21:19 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Steam

2016-03-13 21:19 - 2016-03-13 21:19 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Monomi Park

2016-03-13 21:11 - 2016-03-13 21:18 - 132480394 _____ C:\Users\Maciej\Downloads\IGG-Slime.Ranche.v0.2.6.rar

2016-03-13 21:10 - 2016-03-13 21:14 - 142296418 ____R C:\Users\Maciej\Downloads\IGG-Slime.Rancher.v0.2.4b.zip

2016-03-12 23:21 - 2016-03-12 23:21 - 00000000 ____D C:\Users\Maciej\Documents\Firefall

2016-03-12 23:21 - 2016-03-12 23:21 - 00000000 ____D C:\Users\Maciej\AppData\Local\Red 5 Studios

2016-03-12 22:18 - 2016-03-12 22:18 - 00000000 ___HD C:\WINDOWS\msdownld.tmp

2016-03-12 22:10 - 2016-03-12 22:11 - 05382416 _____ C:\Users\Maciej\Downloads\FirefallInstaller.exe

2016-03-12 18:43 - 2016-03-12 18:43 - 00000000 ____D C:\Users\Maciej\AppData\Local\IsolatedStorage

2016-03-12 18:42 - 2016-03-12 18:42 - 05673133 _____ C:\Users\Maciej\Downloads\Roibot13950Free.zip

2016-03-12 18:35 - 2016-03-12 18:35 - 02287162 _____ C:\Users\Maciej\Downloads\AionSpot-QuickStart.rar

2016-03-12 18:35 - 2016-03-12 18:35 - 01005568 _____ (Microsoft Corporation) C:\Users\Maciej\Downloads\dotNetFx45_Full_setup.exe

2016-03-12 18:31 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

2016-03-12 18:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

2016-03-12 18:31 - 2016-03-12 18:31 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\WinRAR

2016-03-12 18:31 - 2016-03-12 18:31 - 00000000 ____D C:\Program Files\WinRAR

2016-03-12 18:30 - 2016-03-12 18:30 - 02162896 _____ C:\Users\Maciej\Downloads\winrar-x64-531pl.exe

2016-03-12 18:29 - 2016-03-12 18:29 - 01356520 _____ C:\Users\Maciej\Downloads\AionSpot.rar

2016-03-12 14:20 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live

2016-03-12 14:20 - 2016-03-15 22:47 - 00000000 ____D C:\Users\Maciej\Downloads\Gameforge Live

2016-03-12 14:20 - 2016-03-12 14:20 - 00000600 _____ C:\Users\Public\Desktop\Gameforge Live.lnk

2016-03-12 14:20 - 2016-03-12 14:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\Gameforge4d

2016-03-12 14:18 - 2016-03-12 14:19 - 20248088 _____ (Gameforge ) C:\Users\Maciej\Downloads\AION_GameforgeLiveSetup.exe

2016-03-09 01:27 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll

2016-03-09 01:27 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll

2016-03-09 01:27 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll

2016-03-09 01:27 - 2010-02-04 11:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll

2016-03-09 01:27 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll

2016-03-09 01:27 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll

2016-03-09 01:27 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll

2016-03-09 01:27 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll

2016-03-09 01:27 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll

2016-03-09 01:27 - 2008-10-15 07:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll

2016-03-09 01:27 - 2008-07-31 11:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll

2016-03-09 01:27 - 2008-07-31 11:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll

2016-03-09 01:27 - 2008-07-31 11:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll

2016-03-09 01:27 - 2008-07-10 12:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll

2016-03-09 01:27 - 2008-07-10 12:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll

2016-03-09 01:27 - 2008-05-30 15:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll

2016-03-09 01:27 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll

2016-03-09 01:27 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll

2016-03-09 01:27 - 2008-05-30 15:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll

2016-03-09 01:27 - 2008-05-30 15:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll

2016-03-09 01:27 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll

2016-03-09 01:27 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll

2016-03-09 01:27 - 2008-05-30 15:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll

2016-03-09 01:27 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll

2016-03-09 01:27 - 2008-03-05 17:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll

2016-03-09 01:27 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll

2016-03-09 01:27 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll

2016-03-09 01:27 - 2008-03-05 17:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll

2016-03-09 01:27 - 2008-03-05 17:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll

2016-03-09 01:27 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll

2016-03-09 01:27 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll

2016-03-09 01:27 - 2008-02-06 00:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll

2016-03-09 01:27 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll

2016-03-09 01:27 - 2007-10-22 04:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll

2016-03-09 01:27 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll

2016-03-09 01:27 - 2007-10-22 04:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll

2016-03-09 01:27 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll

2016-03-09 01:27 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll

2016-03-09 01:27 - 2007-10-02 10:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll

2016-03-09 01:27 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll

2016-03-09 01:27 - 2007-07-20 01:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll

2016-03-09 01:27 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll

2016-03-09 01:27 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll

2016-03-09 01:27 - 2007-06-20 21:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll

2016-03-09 01:27 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll

2016-03-09 01:27 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll

2016-03-09 01:27 - 2007-04-04 19:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll

2016-03-09 01:26 - 2007-04-04 19:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll

2016-03-09 01:26 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll

2016-03-09 01:26 - 2007-03-15 17:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll

2016-03-09 01:26 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll

2016-03-09 01:26 - 2007-03-12 17:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll

2016-03-09 01:26 - 2007-03-12 17:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll

2016-03-09 01:26 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll

2016-03-09 01:26 - 2007-03-05 13:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll

2016-03-09 01:26 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll

2016-03-09 01:26 - 2007-01-24 16:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll

2016-03-09 01:26 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll

2016-03-09 01:26 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll

2016-03-09 01:26 - 2006-12-08 13:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll

2016-03-09 01:26 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll

2016-03-09 01:26 - 2006-09-28 17:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll

2016-03-09 01:26 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll

2016-03-09 01:26 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll

2016-03-09 01:26 - 2006-09-28 17:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll

2016-03-09 01:26 - 2006-07-28 10:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll

2016-03-09 01:26 - 2006-07-28 10:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll

2016-03-09 01:26 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll

2016-03-09 01:26 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll

2016-03-09 01:26 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll

2016-03-09 01:26 - 2006-05-31 08:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll

2016-03-09 01:26 - 2006-03-31 13:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll

2016-03-09 01:26 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll

2016-03-09 01:26 - 2006-03-31 13:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll

2016-03-09 01:26 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll

2016-03-09 01:26 - 2006-03-31 13:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll

2016-03-09 01:26 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll

2016-03-09 01:26 - 2006-02-03 09:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll

2016-03-09 01:26 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll

2016-03-09 01:26 - 2006-02-03 09:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll

2016-03-09 01:26 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll

2016-03-09 01:26 - 2006-02-03 09:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll

2016-03-09 01:26 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll

2016-03-09 01:26 - 2005-12-05 19:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll

2016-03-09 01:26 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll

2016-03-09 01:26 - 2005-07-22 20:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll

2016-03-09 01:26 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll

2016-03-09 01:26 - 2005-05-26 16:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll

2016-03-09 01:26 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll

2016-03-09 01:26 - 2005-03-18 18:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll

2016-03-09 01:26 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll

2016-03-09 01:26 - 2005-02-05 20:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll

2016-03-09 01:26 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll

2016-03-09 01:16 - 2016-03-09 01:24 - 100271992 _____ (Microsoft Corporation) C:\Users\Maciej\Downloads\directx_Jun2010_redist.exe

2016-03-09 01:16 - 2016-03-09 01:16 - 00000000 ____D C:\Users\Maciej\Documents\League of Legends

2016-03-09 00:57 - 2016-03-09 01:25 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\LolClient

2016-03-09 00:56 - 2016-03-09 00:56 - 00000000 ____D C:\ProgramData\Riot Games

2016-03-09 00:35 - 2016-03-18 18:39 - 00000000 ____D C:\Users\Maciej\Desktop\Accel World

2016-03-07 22:16 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Keysticks

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Users\Maciej\Documents\Keysticks

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Users\Maciej\AppData\Local\Keysticks.net

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\ProgramData\Keysticks.net

2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Program Files (x86)\Keysticks.net

2016-03-07 22:16 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll

2016-03-07 22:16 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll

2016-03-07 22:16 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll

2016-03-07 22:16 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll

2016-03-07 22:16 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll

2016-03-07 22:15 - 2016-03-07 22:15 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA

2016-03-07 22:15 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll

2016-03-07 22:15 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll

2016-03-07 22:10 - 2016-03-07 22:12 - 06264728 _____ (T C Brogden Limited) C:\Users\Maciej\Downloads\KeysticksSetup-1.8.1.0.exe

2016-03-07 19:23 - 2016-03-07 19:23 - 00785319 _____ C:\Users\Maciej\Downloads\CreeHack v1.6 Apk by OnHax.apk

2016-03-06 15:29 - 2016-03-07 22:20 - 00000000 ____D C:\Users\Maciej\Downloads\World of Warcraft 3.3.5a

2016-03-05 16:37 - 2016-03-05 16:37 - 00000253 _____ C:\Users\Maciej\Downloads\WoW.mfil

2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\WTF

2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\Errors

2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\Data

2016-03-05 16:36 - 2016-03-05 16:36 - 10474064 _____ (Blizzard Entertainment) C:\Users\Maciej\Downloads\wow_434.exe

2016-03-05 16:35 - 2016-03-05 16:35 - 00000000 ____D C:\Users\Maciej\Downloads\New folder

2016-03-05 16:34 - 2016-04-03 00:18 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\BitTorrent

2016-03-05 16:34 - 2016-03-05 16:34 - 06682129 _____ C:\Users\Maciej\Downloads\434_mini.7z

2016-03-05 16:33 - 2016-03-05 16:34 - 01930760 _____ (BitTorrent Inc.) C:\Users\Maciej\Downloads\BitTorrent.exe

2016-03-04 01:49 - 2016-03-04 01:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf

 

==================== One Month Modified files and folders ========

 

(If an entry is included in the fixlist, the file/folder will be moved.)

 

2016-04-03 00:46 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF

2016-04-03 00:38 - 2016-03-02 23:37 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job

2016-04-03 00:20 - 2016-03-02 23:37 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job

2016-04-03 00:16 - 2016-01-04 09:09 - 00000000 __RDO C:\Users\Maciej\OneDrive

2016-04-03 00:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared

2016-04-02 21:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness

2016-04-02 17:57 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp

2016-04-02 01:05 - 2016-02-13 15:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT

2016-04-01 18:01 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps

2016-03-29 02:48 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI

2016-03-29 00:32 - 2016-03-02 23:38 - 00000000 ____D C:\Users\Maciej\AppData\Local\Google

2016-03-29 00:32 - 2016-03-02 23:37 - 00000000 ____D C:\Program Files (x86)\Google

2016-03-29 00:29 - 2016-03-02 22:13 - 00000000 ____D C:\Users\Maciej\AppData\Local\Opera Software

2016-03-29 00:29 - 2016-03-02 22:12 - 00000000 ____D C:\Program Files (x86)\Opera

2016-03-29 00:03 - 2016-02-13 15:11 - 00251272 _____ C:\WINDOWS\system32\FNTCACHE.DAT

2016-03-27 09:53 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat

2016-03-27 03:30 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template

2016-03-27 03:27 - 2016-02-13 15:03 - 00000000 ____D C:\Program Files\Windows Journal

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices

2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform

2016-03-27 03:27 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism

2016-03-27 03:27 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism

2016-03-26 19:39 - 2016-01-04 09:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\Packages

2016-03-26 19:28 - 2015-10-30 09:18 - 00686984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll

2016-03-26 19:28 - 2015-10-30 09:18 - 00535088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll

2016-03-26 19:16 - 2016-02-13 14:55 - 00000000 ____D C:\WINDOWS\OCR

2016-03-26 19:09 - 2016-03-02 21:26 - 00000000 ____D C:\Program Files (x86)\Intel

2016-03-26 19:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy

2016-03-26 19:00 - 2016-02-13 15:20 - 00000000 __RHD C:\Users\Public\AccountPictures

2016-03-26 18:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache

2016-03-26 18:55 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase

2016-03-26 18:54 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration

2016-03-26 18:52 - 2016-03-02 23:37 - 00003186 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier

2016-03-26 18:52 - 2016-03-02 23:37 - 00002898 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater

2016-03-26 18:49 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries

2016-03-26 18:44 - 2016-02-04 03:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tibia

2016-03-26 18:44 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM

2016-03-26 18:44 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lv-LV

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lt-LT

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\et-EE

2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\en-GB

2016-03-26 18:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared

2016-03-26 18:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared

2016-03-26 18:41 - 2015-10-30 09:26 - 00000000 ____D C:\WINDOWS\Setup

2016-03-26 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports

2016-03-26 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\InputMethod

2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy

2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer

2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS

2016-03-26 18:39 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep

2016-03-26 17:09 - 2016-02-13 16:21 - 00000000 ___HD C:\$WINDOWS.~BT

2016-03-25 23:49 - 2016-01-04 09:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualStore

2016-03-25 22:37 - 2016-03-03 19:33 - 00127488 ___SH C:\Users\Maciej\Desktop\Thumbs.db

2016-03-10 16:20 - 2016-03-02 21:21 - 00000000 ____D C:\WINDOWS\system32\MRT

2016-03-10 16:15 - 2016-03-02 21:21 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

2016-03-08 09:12 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe

2016-03-08 09:12 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

 

==================== Files in the root of some directories =======

 

2016-03-26 16:06 - 2016-03-26 16:06 - 6493696 _____ () C:\Users\Maciej\AppData\Roaming\agent.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0065424 _____ () C:\Users\Maciej\AppData\Roaming\Config.xml

2016-03-26 16:06 - 2016-03-26 16:06 - 1621131 _____ () C:\Users\Maciej\AppData\Roaming\Geotom.tst

2016-03-25 23:49 - 2016-03-25 23:49 - 0005120 _____ () C:\Users\Maciej\AppData\Roaming\GiftBag.db

2016-03-26 16:04 - 2016-03-26 16:04 - 0268024 _____ () C:\Users\Maciej\AppData\Roaming\inst.lat

2016-03-26 16:04 - 2016-03-26 16:05 - 0017760 _____ () C:\Users\Maciej\AppData\Roaming\InstallationConfiguration.xml

2016-03-26 16:04 - 2016-03-26 16:04 - 0127488 _____ () C:\Users\Maciej\AppData\Roaming\Installer.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0018432 _____ () C:\Users\Maciej\AppData\Roaming\Main.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0126464 _____ () C:\Users\Maciej\AppData\Roaming\noah.dat

2016-03-26 16:06 - 2016-03-26 16:06 - 0032038 _____ () C:\Users\Maciej\AppData\Roaming\uninstall_temp.ico

 

Files to move or delete:

====================

C:\Users\Maciej\AppData\Local\Temp\ALLRemote.exe

C:\Windows\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}.job

 

 

Some files in TEMP:

====================

C:\Users\Maciej\AppData\Local\Temp\ALLRemote.exe

C:\Users\Maciej\AppData\Local\Temp\Napisy24.exe

C:\Users\Maciej\AppData\Local\Temp\{2883D6C1-46DC-4BB8-AC7D-B4F6FAD7AC12}.exe

 

 

==================== Bamital & volsnap =================

 

(There is no automatic fix for files that do not pass verification.)

 

C:\WINDOWS\system32\winlogon.exe => File is digitally signed

C:\WINDOWS\system32\wininit.exe => File is digitally signed

C:\WINDOWS\explorer.exe => File is digitally signed

C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed

C:\WINDOWS\system32\svchost.exe => File is digitally signed

C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed

C:\WINDOWS\system32\services.exe => File is digitally signed

C:\WINDOWS\system32\User32.dll => File is digitally signed

C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed

C:\WINDOWS\system32\userinit.exe => File is digitally signed

C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed

C:\WINDOWS\system32\rpcss.dll => File is digitally signed

C:\WINDOWS\system32\dnsapi.dll

[2015-10-30 09:18] - [2016-03-26 19:28] - 0686984 ____A (Microsoft Corporation) 310C74442B7C4A9C0878F190F4E6AA3D

 

C:\WINDOWS\SysWOW64\dnsapi.dll

[2015-10-30 09:18] - [2016-03-26 19:28] - 0535088 ____A (Microsoft Corporation) 57844EB677C4C3B54C62E5A917DB8772

 

C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

 

 

LastRegBack: 2016-03-26 18:34

 

==================== End of FRST.txt ============================

 

 

15 odpowiedzi na to pytanie

Rekomendowane odpowiedzi

Opublikowano

Jak znikną reklamy to dam znać. I dzięki za pomoc :)

Fixlog.txt

 

Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01

Ran by Maciej (2016-04-03 19:59:12) Run:3
Running from C:\Users\Maciej\Desktop\FRST
Loaded Profiles: Maciej (Available Profiles: Maciej)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Closeprocesses:
C:\Users\Maciej\appdata\Roaming\mysites123
C:\Users\Maciej\appdata\Roaming\Tencent
C:\Program Files (x86)\SearchesToYesbnd
C:\program files (x86)\common files\Tencet
 
CMD: dir /a "C:\Users\Maciej\appdata\Local"
CMD: dir /a "C:\Users\Maciej\appdata\Roaming"
CMD: dir /a "C:\Users\Maciej\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
CMD: dir /a "C:\program files (x86)\common files"
*****************
 
Processes closed successfully.
C:\Users\Maciej\appdata\Roaming\mysites123 => moved successfully
C:\Users\Maciej\appdata\Roaming\Tencent => moved successfully
C:\Program Files (x86)\SearchesToYesbnd => moved successfully
"C:\program files (x86)\common files\Tencet" => not found.
 
=========  dir /a "C:\Users\Maciej\appdata\Local" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Users\Maciej\appdata\Local
 
04/03/2016  00:29    <DIR>          .
04/03/2016  00:29    <DIR>          ..
04/03/2016  14:50    <DIR>          00000011-1459201237-0000-0000-08606E906414
03/26/2016  16:27    <DIR>          3810282D-6C19-47B0-8283-5C6C29A7E108
03/26/2016  19:02    <DIR>          ActiveSync
03/03/2016  03:01    <DIR>          Adobe
03/26/2016  16:33    <DIR>          app
03/26/2016  18:40    <JUNCTION>     Application Data [C:\Users\Maciej\AppData\Local]
03/14/2016  01:17    <DIR>          Chris_Pietschmann_(http__
03/26/2016  19:01    <DIR>          Comms
03/16/2016  23:14    <DIR>          Diagnostics
03/17/2016  20:37    <DIR>          Downloaded Installations
04/03/2016  00:13    <DIR>          EMU
03/12/2016  14:20    <DIR>          Gameforge4d
03/29/2016  00:32    <DIR>          Google
01/04/2016  09:09    <DIR>          GWX
03/26/2016  18:40    <JUNCTION>     History [C:\Users\Maciej\AppData\Local\Microsoft\Windows\History]
04/03/2016  19:27           137,478 IconCache.db
03/12/2016  18:43    <DIR>          IsolatedStorage
03/07/2016  22:16    <DIR>          Keysticks.net
03/27/2016  15:40    <DIR>          Microsoft
03/26/2016  19:23    <DIR>          MicrosoftEdge
04/03/2016  18:02    <DIR>          My Games
03/26/2016  20:42    <DIR>          NetworkTiles
03/29/2016  00:29    <DIR>          Opera Software
03/26/2016  19:39    <DIR>          Packages
02/04/2016  03:40    <DIR>          Programs
03/26/2016  19:02    <DIR>          Publishers
03/12/2016  23:21    <DIR>          Red 5 Studios
03/24/2016  22:44    <DIR>          SatyCreations
04/03/2016  19:59    <DIR>          Temp
03/26/2016  19:20    <DIR>          Tempfolder
03/26/2016  18:40    <JUNCTION>     Temporary Internet Files [C:\Users\Maciej\AppData\Local\Microsoft\Windows\INetCache]
03/26/2016  19:00    <DIR>          TileDataLayer
03/26/2016  16:05    <DIR>          tuto_monetize_120160325
03/26/2016  16:10    <DIR>          tuto_monetize_220160325
03/17/2016  20:38    <DIR>          VirtualRouterPlus
03/25/2016  23:49    <DIR>          VirtualStore
               1 File(s)        137,478 bytes
              37 Dir(s)  222,350,188,544 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Users\Maciej\appdata\Roaming" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Users\Maciej\appdata\Roaming
 
04/03/2016  19:59    <DIR>          .
04/03/2016  19:59    <DIR>          ..
03/16/2016  19:15    <DIR>          .mono
04/02/2016  19:05    <DIR>          Abesju
01/04/2016  09:07    <DIR>          Adobe
03/26/2016  16:06         6,493,696 agent.dat
04/03/2016  19:58    <DIR>          BitTorrent
03/26/2016  16:06            65,424 Config.xml
03/26/2016  16:06         1,621,131 Geotom.tst
03/25/2016  23:49             5,120 GiftBag.db
03/26/2016  16:04           268,024 inst.lat
03/26/2016  16:05            17,760 InstallationConfiguration.xml
03/26/2016  16:04           127,488 Installer.dat
03/26/2016  19:19    <DIR>          Jolkamri
03/09/2016  01:25    <DIR>          LolClient
01/05/2016  01:22    <DIR>          Macromedia
03/26/2016  16:06            18,432 Main.dat
03/26/2016  19:05    <DIR>          MCorp
04/03/2016  01:25    <DIR>          Microsoft
03/26/2016  16:06    <DIR>          Mozilla
03/26/2016  16:06           126,464 noah.dat
03/02/2016  22:13    <DIR>          Opera Software
04/03/2016  14:44    <DIR>          Panda Security
03/16/2016  19:13    <DIR>          Pok�mon Trading Card Game Online
04/03/2016  19:34    <DIR>          Skype
03/13/2016  21:19    <DIR>          Steam
03/28/2016  23:56    <DIR>          TijusOiath
04/02/2016  19:06    <DIR>          Udiwufuo
03/26/2016  16:06            32,038 uninstall_temp.ico
03/27/2016  12:27    <DIR>          W10LogonChanger
03/12/2016  18:31    <DIR>          WinRAR
03/29/2016  01:02    <DIR>          yoursearching
              10 File(s)      8,775,577 bytes
              22 Dir(s)  222,350,184,448 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Users\Maciej\appdata\Locallow" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Users\Maciej\appdata\Locallow
 
04/03/2016  14:53    <DIR>          .
04/03/2016  14:53    <DIR>          ..
04/03/2016  14:53    <DIR>          BitTorrent
03/26/2016  16:04    <DIR>          Company
01/04/2016  09:10    <DIR>          Microsoft
03/13/2016  21:19    <DIR>          Monomi Park
03/16/2016  19:13    <DIR>          The Pok__mon Company International
03/16/2016  19:13    <DIR>          Unity
03/26/2016  16:04    <DIR>          {D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
               0 File(s)              0 bytes
               9 Dir(s)  222,350,184,448 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Program Files (x86)" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Program Files (x86)
 
04/03/2016  19:59    <DIR>          .
04/03/2016  19:59    <DIR>          ..
03/28/2016  18:43    <DIR>          2K Games
03/14/2016  19:31    <DIR>          ALLPlayer
03/14/2016  19:31    <DIR>          ALLPlayer Remote
03/26/2016  19:05    <DIR>          ASUS
03/26/2016  18:41    <DIR>          Common Files
10/30/2015  09:21               174 desktop.ini
03/29/2016  00:32    <DIR>          Google
03/25/2016  01:53    <DIR>          GSAutoClicker3
03/29/2016  00:56    <DIR>          Hostify
03/26/2016  19:09    <DIR>          Intel
03/27/2016  03:27    <DIR>          Internet Explorer
03/07/2016  22:16    <DIR>          Keysticks.net
04/03/2016  00:28    <DIR>          Life Is Strange
03/07/2016  22:15    <DIR>          Microsoft XNA
10/30/2015  09:24    <DIR>          Microsoft.NET
03/27/2016  03:17    <DIR>          MSBuild
03/14/2016  19:31    <DIR>          Napisy24
03/29/2016  00:29    <DIR>          Opera
03/13/2016  22:59    <DIR>          Orange Connection
04/03/2016  14:45    <DIR>          Panda Security
03/25/2016  19:23    <DIR>          ProxyFinderEnterprise
03/27/2016  03:17    <DIR>          Reference Assemblies
04/03/2016  18:02    <DIR>          Sid Meiers Civilization Beyond Earth
03/24/2016  16:59    <DIR>          Skype
02/04/2016  03:40    <DIR>          Tibia
04/03/2016  14:48    <DIR>          Virtual Router
02/13/2016  14:51    <DIR>          Windows Defender
02/13/2016  14:51    <DIR>          Windows Mail
02/13/2016  14:51    <DIR>          Windows Media Player
03/27/2016  03:27    <DIR>          Windows Multimedia Platform
10/30/2015  09:24    <DIR>          Windows NT
02/13/2016  14:51    <DIR>          Windows Photo Viewer
03/27/2016  03:27    <DIR>          Windows Portable Devices
10/30/2015  09:24    <DIR>          Windows Sidebar
10/30/2015  09:24    <DIR>          WindowsPowerShell
03/26/2016  16:26    <DIR>          Winsere
03/26/2016  16:26    <DIR>          WinTaske
               1 File(s)            174 bytes
              38 Dir(s)  222,350,180,352 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Program Files" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Program Files
 
04/03/2016  14:47    <DIR>          .
04/03/2016  14:47    <DIR>          ..
04/03/2016  01:19    <DIR>          CCleaner
03/26/2016  18:41    <DIR>          Common Files
10/30/2015  09:21               174 desktop.ini
03/26/2016  18:37    <DIR>          Intel
03/27/2016  03:27    <DIR>          Internet Explorer
04/03/2016  00:22    <DIR>          Life Is Strange
03/27/2016  03:17    <DIR>          MSBuild
03/27/2016  03:17    <DIR>          Reference Assemblies
02/13/2016  15:15    <DIR>          Uninstall Information
02/13/2016  14:51    <DIR>          Windows Defender
03/27/2016  03:27    <DIR>          Windows Journal
02/13/2016  14:51    <DIR>          Windows Mail
03/27/2016  03:27    <DIR>          Windows Media Player
03/27/2016  03:27    <DIR>          Windows Multimedia Platform
10/30/2015  09:24    <DIR>          Windows NT
02/13/2016  14:51    <DIR>          Windows Photo Viewer
03/27/2016  03:27    <DIR>          Windows Portable Devices
03/29/2016  00:40    <DIR>          Windows Screen Manager
10/30/2015  09:24    <DIR>          Windows Sidebar
04/01/2016  18:01    <DIR>          WindowsApps
10/30/2015  09:24    <DIR>          WindowsPowerShell
03/12/2016  18:31    <DIR>          WinRAR
               1 File(s)            174 bytes
              23 Dir(s)  222,350,180,352 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\ProgramData" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\ProgramData
 
04/03/2016  00:01    <DIR>          .
04/03/2016  00:01    <DIR>          ..
03/16/2016  19:19    <DIR>          .mono
03/14/2016  19:31    <DIR>          ALLPlayer
03/14/2016  19:31    <DIR>          ALLPlayerRemote
03/26/2016  18:55    <JUNCTION>     Application Data [C:\ProgramData]
04/03/2016  19:36    <DIR>          ASUS Smart Gesture
03/26/2016  16:11    <DIR>          BWdMB
10/30/2015  09:24    <DIR>          Comms
03/13/2016  23:13    <DIR>          DatacardService
03/26/2016  18:55    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
03/26/2016  18:55    <JUNCTION>     Documents [C:\Users\Public\Documents]
03/26/2016  16:10    <DIR>          eWdMe
03/07/2016  22:16    <DIR>          Keysticks.net
03/17/2016  15:08    <DIR>          log
03/26/2016  18:59    <DIR>          Microsoft
02/13/2016  15:20    <DIR>          Microsoft OneDrive
03/14/2016  19:31    <DIR>          Napisy24
03/26/2016  19:09               258 ntuser.pol
03/17/2016  15:08    <DIR>          OnlineUpdate
03/13/2016  22:59    <DIR>          Orange Connection
04/03/2016  00:01    <DIR>          Package Cache
04/03/2016  14:45    <DIR>          Panda Security
04/03/2016  14:39    <DIR>          panda_url_filtering
02/13/2016  15:03    <DIR>          regid.1991-06.com.microsoft
03/09/2016  00:56    <DIR>          Riot Games
03/26/2016  19:05    <DIR>          SetupTPDriver
03/24/2016  16:59    <DIR>          Skype
10/30/2015  09:24    <DIR>          SoftwareDistribution
03/26/2016  18:55    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
03/28/2016  19:11    <DIR>          Steam
03/26/2016  18:55    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
03/25/2016  23:59    <DIR>          TXQMPC
02/13/2016  15:15    <DIR>          USOPrivate
02/13/2016  15:15    <DIR>          USOShared
               1 File(s)            258 bytes
              34 Dir(s)  222,349,848,576 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\program files (x86)\common files" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\program files (x86)\common files
 
03/26/2016  18:41    <DIR>          .
03/26/2016  18:41    <DIR>          ..
03/26/2016  18:36    <DIR>          Intel
03/26/2016  18:41    <DIR>          Microsoft Shared
10/30/2015  09:24    <DIR>          Services
03/24/2016  16:59    <DIR>          Skype
02/13/2016  14:51    <DIR>          System
03/25/2016  23:48    <DIR>          Tencent
               0 File(s)              0 bytes
               8 Dir(s)  222,349,844,480 bytes free
 
========= End of CMD: =========
 
 
 
The system needed a reboot.
 
==== End of Fixlog 19:59:14 ====

Opublikowano

Dzieki za pomoc

 

 

Ten drugi plik:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Maciej (2016-04-03 00:53:23)
Running from C:\Users\Maciej\Downloads
Windows 10 Home Version 1511 (X64) (2016-03-26 16:59:44)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-302128576-430233443-2040676304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-302128576-430233443-2040676304-503 - Limited - Disabled)
Guest (S-1-5-21-302128576-430233443-2040676304-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-302128576-430233443-2040676304-1003 - Limited - Enabled)
Maciej (S-1-5-21-302128576-430233443-2040676304-1001 - Administrator - Enabled) => C:\Users\Maciej
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Panda Internet Security 2016 (Enabled - Up to date) {AAF74A68-8713-CDF1-004F-30003398BE9E}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Panda Internet Security 2016 (Enabled - Up to date) {1196AB8C-A129-C27F-3AFF-0B72481FF423}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Panda Firewall (Enabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated)
AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version:  - Gameforge)
ALLPlayer Remote Control (HKLM-x32\...\{146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1) (Version: 1.2 - ALLPlayer Group, Ltd.)
ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version:  - ALLPlayer Group, Ltd.)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 4.0.5 - ASUS)
BitTorrent (HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\BitTorrent) (Version: 7.9.5.41866 - BitTorrent Inc.)
Gameforge Live 2.0.9 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.9 - Gameforge)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.110 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
GS Auto Clicker (HKLM-x32\...\GS Auto Clicker_is1) (Version: V3.1.3 - goldensoft.org)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Keysticks (HKLM-x32\...\{017E32B0-23A9-40F0-952B-6B12F0702A15}) (Version: 1.8.1 - Keysticks.net)
Life Is Strange (HKLM-x32\...\Life Is Strange_is1) (Version:  - SQUARE ENIX)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Napisy24 (HKLM-x32\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.3 - Napisy24.pl)
Orange Connection (HKLM-x32\...\Orange Connection) (Version: 23.015.05.01.159 - Huawei Technologies Co.,Ltd)
Panda Devices Agent (x32 Version: 1.03.07 - Panda Security) Hidden
Panda Devices Agent (x32 Version: 1.06.00 - Panda Security) Hidden
Panda Internet Security 2016 (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 16.01.02.0000 - Panda Security)
Panda Internet Security 2016 (Version: 8.21.00 - Panda Security) Hidden
Panda Security Toolbar (HKLM-x32\...\pandasecuritytb) (Version: 4.3.1.15 - Panda Security and Visicom Media Inc.)
Pokémon Trading Card Game Online (HKLM-x32\...\{AC229317-036F-45B9-84CE-08625DCAC217}) (Version: 2.34.1 - The Pokémon Company International)
Proxy Finder Enterprise Edition (HKLM-x32\...\Proxy Finder Enterprise Edition) (Version:  - )
S.K.I.L.L. - Special Force 2 (HKLM-x32\...\Special Force 2 Beta_is1) (Version:  - )
Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version:  - ) <==== ATTENTION
Sid Meier's Civilization V (HKLM-x32\...\Sid Meier's Civilization V_is1) (Version:  - )
Skype™ 7.21 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.21.100 - Skype Technologies S.A.)
Tibia (HKLM-x32\...\Tibia_is1) (Version: 10.90 - CipSoft GmbH)
Virtual Router Plus (HKLM-x32\...\{0AEE4D51-3657-4F40-A689-533429CAEE0C}) (Version: 2.5.0 - Runxia Electronics)
Virtual Router v1.0 (HKLM-x32\...\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}) (Version: 1.0 - Chris Pietschmann)
Windows Driver Package - ASUS (ATP) Mouse  (06/17/2015 1.0.0.262) (HKLM\...\14588A15B66655338DBCC021FFA81E31DC281859) (Version: 06/17/2015 1.0.0.262 - ASUS)
WinRAR 5.31 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-302128576-430233443-2040676304-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Maciej\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-302128576-430233443-2040676304-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {09DAFE95-690C-497C-9E65-A470024E431F} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {10F4C7EF-FA24-42EB-AFAA-3CC3B33F742A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {118EE774-0946-460D-99EE-F128FBEEAE5C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {15C17BA8-DACD-42AC-A897-EB0A044B6DE5} - System32\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F} => C:\Program Files (x86)\Panda Security\Panda Security Protection\JobLauncher.exe [2016-02-05] (Panda Security, S.L.)
Task: {2C6719D5-0152-4EDF-A098-A16CE9258595} - \Circhmig -> No File <==== ATTENTION
Task: {382ABC8A-2E7E-4AE8-9AA4-7467E790DE17} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2015-08-23] (AsusTek)
Task: {405D2336-56CF-4A54-9B99-7DD592926DA9} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_197_pepper.exe [2016-03-23] (Adobe Systems Incorporated)
Task: {446B5C4E-D73C-41D7-ACE9-A267292894CD} - \Runbhno -> No File <==== ATTENTION
Task: {44F48FAB-E167-4A61-A302-24D5BCC096AC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {47B6C1FF-42FC-41EC-BA8B-45AE5D581BE5} - \WinTaske -> No File <==== ATTENTION
Task: {5EFF3456-2B61-46B5-84BC-D1E83198CBFC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-29] (Google Inc.)
Task: {643BDC80-246E-46A3-92EE-03C25D48334E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {6D7C8DE5-878B-4B28-8CE7-B8B25FC15E25} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {6F7EA868-9C71-4EC7-990C-7BA9ADD107B7} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {7BF2E301-4949-4F3E-B45B-DE42D8BE2904} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-03-10] (Microsoft Corporation)
Task: {8A2D0C1C-06B0-461C-ACC3-5CCE790E732B} - \Guifkij -> No File <==== ATTENTION
Task: {96CEFBC3-2EB6-4CB0-92D5-14F0DB18A9CA} - \{648FB928-38CC-4531-9CE9-60BB514C7E86} -> No File <==== ATTENTION
Task: {98C55274-82F4-4874-A796-280035AFEFA6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-23] (Adobe Systems Incorporated)
Task: {CA93058E-2965-44C3-B6A3-9D2D42F63FB5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D052BA52-92E2-4E0D-8889-33A7E0062672} - \{B55EE4E3-DAD4-4537-96B2-EFE6B399BA52} -> No File <==== ATTENTION
Task: {D5961A17-A2C3-49D5-A22F-A52A16AB9B8F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {D8C1927D-6843-49EA-B79B-EA9A0E6C3822} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {D9DAD760-068C-4938-90FD-F4C8457C0782} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {E1D5D680-7A15-4B16-823E-0604FF7DFE1C} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {E4F5056E-67A7-473E-8912-70A012526781} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {F7E13F66-B384-447C-A827-9E9E2C1742EA} - \Optimize Start Menu Cache Files-S-1-5-21-302128576-430233443-2040676304-1001 -> No File <==== ATTENTION
Task: {FFB6DBBE-ECDF-460E-AB49-1DB8DED7AFF1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-29] (Google Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_197_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Update Service for Torrent Search.job => C:\Program Files (x86)\Torrent Search\Xre_G4d.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Update Service for Torrent Search2.job => C:\Program Files (x86)\Torrent Search\Xre_G4d.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\{943603C6-C12F-4ED1-B3F8-81BFD18E383F}.job => C:\Program Files (x86)\Panda Security\Panda Security Protection\JobLauncher.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2014-01-15 05:42 - 2014-01-15 05:42 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2015-12-26 10:59 - 2015-12-26 10:59 - 00158720 _____ () C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp
2016-03-13 22:59 - 2013-10-26 11:45 - 00651856 _____ () C:\ProgramData\Orange Connection\OnlineUpdate\ouc.exe
2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-02-13 14:54 - 2016-02-13 14:54 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-02-13 14:54 - 2016-02-13 14:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-02-13 14:54 - 2016-02-13 14:54 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-02-13 14:54 - 2016-02-13 14:54 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-02-13 14:54 - 2016-02-13 14:54 - 00936960 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-02-13 14:54 - 2016-02-13 14:54 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-03-26 20:03 - 2016-03-26 20:04 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-12-15 19:17 - 2015-12-15 19:17 - 00618544 _____ () C:\Program Files (x86)\Panda Security\Panda Security Protection\SQLite3.dll
2016-03-13 22:59 - 2013-08-31 07:44 - 02417152 _____ () C:\ProgramData\Orange Connection\OnlineUpdate\QtCore4.dll
2016-03-13 22:59 - 2009-01-10 20:32 - 00011362 _____ () C:\ProgramData\Orange Connection\OnlineUpdate\mingwm10.dll
2016-03-13 22:59 - 2013-08-31 07:46 - 01148416 _____ () C:\ProgramData\Orange Connection\OnlineUpdate\QtNetwork4.dll
2016-03-13 22:59 - 2009-06-23 04:42 - 00043008 _____ () C:\ProgramData\Orange Connection\OnlineUpdate\libgcc_s_dw2-1.dll
2016-03-26 20:03 - 2016-03-26 20:04 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-03-26 20:03 - 2016-03-26 20:04 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-03-29 00:32 - 2016-03-27 09:58 - 01675928 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.110\libglesv2.dll
2016-03-29 00:32 - 2016-03-27 09:58 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.110\libegl.dll
2016-03-29 00:32 - 2016-03-27 09:58 - 17545880 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.110\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2013-08-22 15:25 - 2016-03-28 23:54 - 00000000 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 104.197.191.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{8209D062-2801-4E0E-9E71-6A2DEBB1BAD6}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{2CC04C47-489E-4ABA-AF61-C4846273BA13}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe
FirewallRules: [{24084683-C568-4B5A-B62F-2BA556246263}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{D4F16237-A7CE-437D-9C2D-73AF5DD17E8D}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe
FirewallRules: [{39ACEF93-9944-42EB-B729-FA0940B022B0}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{944490FE-7E1B-4B38-BFA8-A1A8F6D3AB33}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe
FirewallRules: [{AE246E05-DC58-48DE-A384-92F52A5DF04F}] => (Allow) %systemroot%\system32\alg.exe
FirewallRules: [{D0CA90D0-8363-48B0-9D08-368DD4A8293F}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{8718B2E4-0680-4517-A07B-AE01322B4437}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe
FirewallRules: [{6699E670-B20B-4707-9195-B122C0E8F487}] => (Allow) C:\Torrentex\Torrentex.exe
FirewallRules: [{92BFE072-EF71-48C7-B833-46AB9D1BE299}] => (Allow) C:\Torrentex\Torrentex.exe
FirewallRules: [uDP Query User{B3F7940C-7514-466B-9205-E8FAAA42DF19}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{A3184A67-F940-40D3-A6A1-22A6DC6DA014}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{41296831-E3CE-4F7F-8B5E-733811D413FD}] => (Allow) E:\GameforgeLive\Games\POL_pol\S.K.I.L.L\Binaries\Win32\sf2.exe
FirewallRules: [{7D76D0DD-D3CD-455B-952B-F203F2840176}] => (Allow) E:\GameforgeLive\Games\POL_pol\S.K.I.L.L\Binaries\Win32\sf2.exe
FirewallRules: [{FF78A0B9-02A6-4213-81E5-F2EC2A3772B6}] => (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [{81074FC7-12E5-45C1-952F-FB3D17A88C9F}] => (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [uDP Query User{B1BFA5AE-D94E-4605-9235-A960A5755932}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [TCP Query User{189A36B6-3D00-495F-A307-C0DC63B93C1B}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [uDP Query User{FCE9D7B4-6E58-4B8B-A49F-9CE810A57EAB}E:\gameforgelive\games\pol_pol\aion\nclauncher.exe] => (Allow) E:\gameforgelive\games\pol_pol\aion\nclauncher.exe
FirewallRules: [TCP Query User{0EC2AF1D-E1D6-400F-98EB-7F0C37BFBCA2}E:\gameforgelive\games\pol_pol\aion\nclauncher.exe] => (Allow) E:\gameforgelive\games\pol_pol\aion\nclauncher.exe
FirewallRules: [{EC054AB0-018D-4605-A965-18905B20BE4B}] => (Allow) E:\GameforgeLive\gfl_client.exe
FirewallRules: [{EDBF31E4-E165-4E03-8F50-E6F51D9A1470}] => (Allow) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{353AC25B-64C6-48A0-8A1B-AB9EF444F53B}] => (Allow) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{7B2A3D42-530A-4D47-A424-405A5CCBD8FD}] => (Allow) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{8986AA2B-F7AC-48C4-B711-E5944BAA1200}] => (Allow) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{908DD828-D665-4B78-8200-62C2C5967A25}] => (Allow) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{2FFAAAB0-81EC-40EB-9CFE-29B77BB1636C}] => (Allow) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{ADC0D4E4-0F07-4261-9076-3D8CAE461823}] => (Allow) C:\Program Files (x86)\pandasecuritytb\cleanupie.exe
FirewallRules: [{292F6E29-80EA-4794-8882-B2921E39BA29}] => (Allow) C:\Program Files (x86)\pandasecuritytb\cleanupie.exe
FirewallRules: [{E66EBE68-10AB-4BF4-9A48-B86EA5C9077E}] => (Allow) C:\Program Files (x86)\pandasecuritytb\ToolbarCleaner.exe
FirewallRules: [{FE6CB918-1243-42D1-8655-2320934DAEC0}] => (Allow) C:\Program Files (x86)\pandasecuritytb\ToolbarCleaner.exe
FirewallRules: [{1FD7F17A-FEAB-4959-A15E-A6190F8A2EC4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Restore Points =========================
 
28-03-2016 19:00:31 Installed DirectX
02-04-2016 17:55:45 Windows Modules Installer
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (04/03/2016 12:36:19 AM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.1.10603.192) TYPE: ERROR
 
DPTF Build Version:  8.1.10603.192
DPTF Build Date:  Aug  7 2015 10:44:44
Source File:  ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183
Executing Function:  ConfigTdpPolicy::onDomainPowerControlCapabilityChanged
Message:  dataLength is invalid.
Participant:  TCPU [7]
Domain:  PKG [0]
Policy:  ConfigTDP Policy [0]
 
Error: (04/03/2016 12:30:40 AM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.1.10603.192) TYPE: ERROR
 
DPTF Build Version:  8.1.10603.192
DPTF Build Date:  Aug  7 2015 10:44:44
Source File:  ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183
Executing Function:  ConfigTdpPolicy::onDomainPowerControlCapabilityChanged
Message:  dataLength is invalid.
Participant:  TCPU [7]
Domain:  PKG [0]
Policy:  ConfigTDP Policy [0]
 
Error: (04/03/2016 12:28:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Faulting module name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Exception code: 0xc0000005
Fault offset: 0x009264ce
Faulting process id: 0x1f74
Faulting application start time: 0xLifeIsStrange.exe0
Faulting application path: LifeIsStrange.exe1
Faulting module path: LifeIsStrange.exe2
Report Id: LifeIsStrange.exe3
Faulting package full name: LifeIsStrange.exe4
Faulting package-relative application ID: LifeIsStrange.exe5
 
Error: (04/03/2016 12:20:16 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Faulting module name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Exception code: 0xc0000005
Fault offset: 0x009264ce
Faulting process id: 0xcfc
Faulting application start time: 0xLifeIsStrange.exe0
Faulting application path: LifeIsStrange.exe1
Faulting module path: LifeIsStrange.exe2
Report Id: LifeIsStrange.exe3
Faulting package full name: LifeIsStrange.exe4
Faulting package-relative application ID: LifeIsStrange.exe5
 
Error: (04/03/2016 12:20:04 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Faulting module name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Exception code: 0xc0000005
Fault offset: 0x009264ce
Faulting process id: 0x22c8
Faulting application start time: 0xLifeIsStrange.exe0
Faulting application path: LifeIsStrange.exe1
Faulting module path: LifeIsStrange.exe2
Report Id: LifeIsStrange.exe3
Faulting package full name: LifeIsStrange.exe4
Faulting package-relative application ID: LifeIsStrange.exe5
 
Error: (04/03/2016 12:19:56 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program VirtualRouterClient.exe version 1.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: cdc
 
Start Time: 01d18d2d3c47d348
 
Termination Time: 16
 
Application Path: C:\Program Files (x86)\Virtual Router\VirtualRouterClient.exe
 
Report Id: b5d94653-f920-11e5-8266-08606e906414
 
Faulting package full name: 
 
Faulting package-relative application ID:
 
Error: (04/03/2016 12:19:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Faulting module name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Exception code: 0xc0000005
Fault offset: 0x009264ce
Faulting process id: 0xc78
Faulting application start time: 0xLifeIsStrange.exe0
Faulting application path: LifeIsStrange.exe1
Faulting module path: LifeIsStrange.exe2
Report Id: LifeIsStrange.exe3
Faulting package full name: LifeIsStrange.exe4
Faulting package-relative application ID: LifeIsStrange.exe5
 
Error: (04/03/2016 12:18:16 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Faulting module name: LifeIsStrange.exe, version: 1.0.8623.0, time stamp: 0x54c90700
Exception code: 0xc0000005
Fault offset: 0x009264ce
Faulting process id: 0x1ad0
Faulting application start time: 0xLifeIsStrange.exe0
Faulting application path: LifeIsStrange.exe1
Faulting module path: LifeIsStrange.exe2
Report Id: LifeIsStrange.exe3
Faulting package full name: LifeIsStrange.exe4
Faulting package-relative application ID: LifeIsStrange.exe5
 
Error: (04/02/2016 09:22:06 PM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.1.10603.192) TYPE: ERROR
 
DPTF Build Version:  8.1.10603.192
DPTF Build Date:  Aug  7 2015 10:44:44
Source File:  ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183
Executing Function:  ConfigTdpPolicy::onDomainPowerControlCapabilityChanged
Message:  dataLength is invalid.
Participant:  TCPU [7]
Domain:  PKG [0]
Policy:  ConfigTDP Policy [0]
 
Error: (04/02/2016 07:18:44 PM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.1.10603.192) TYPE: ERROR
 
DPTF Build Version:  8.1.10603.192
DPTF Build Date:  Aug  7 2015 10:44:44
Source File:  ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183
Executing Function:  ConfigTdpPolicy::onDomainPowerControlCapabilityChanged
Message:  dataLength is invalid.
Participant:  TCPU [7]
Domain:  PKG [0]
Policy:  ConfigTDP Policy [0]
 
 
System errors:
=============
Error: (04/03/2016 12:15:22 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Sync Host_3a2d6 service to connect.
 
Error: (04/03/2016 12:15:22 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the User Data Storage_3a2d6 service to connect.
 
Error: (04/03/2016 12:15:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_3a2d6 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (04/03/2016 12:15:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_3a2d6 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (04/03/2016 12:15:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_3a2d6 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (04/03/2016 12:15:11 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_3a2d6 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.
 
Error: (04/03/2016 12:15:07 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
 
Error: (04/03/2016 12:14:34 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
 
Error: (04/02/2016 07:24:23 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
 
Error: (04/02/2016 06:54:22 PM) (Source: DCOM) (EventID: 10016) (User: MACIEK)
Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}MaciekMaciejS-1-5-21-302128576-430233443-2040676304-1001LocalHost (Using LRPC)Microsoft.Windows.FeatureOnDemand.InsiderHub_10.0.10586.0_neutral_neutral_cw5n1h2txyewyS-1-15-2-4016783169-893401051-2237370320-274899566-412088533-2398988950-2155762795
 
 
CodeIntegrity:
===================================
  Date: 2016-04-03 00:26:59.068
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-02 17:57:46.997
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2016-04-01 23:34:50.905
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:50.813
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:50.751
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:50.663
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:50.154
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:50.079
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:50.018
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
  Date: 2016-04-01 23:34:49.849
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\dnsapi.dll that did not meet the Store signing level requirements.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core i3-3217U CPU @ 1.80GHz
Percentage of memory in use: 47%
Total physical RAM: 5005.54 MB
Available physical RAM: 2639.96 MB
Total Virtual: 5837.54 MB
Available Virtual: 3274.71 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:345.11 GB) (Free:220.17 GB) NTFS
Drive e: () (Fixed) (Total:119.87 GB) (Free:84.32 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: BA1E1F53)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=345.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=450 MB) - (Type=27)
 
========================================================
Disk: 1 (Size: 22.4 GB) (Disk ID: 480E71C2)
 
Partition: GPT.
 
==================== End of Addition.txt ============================

Opublikowano

Wykonaj instrukcję z mojego powyższego posta, następnie odinstaluj z panelu sterowania program o nazwie "Setup", oraz antywirusa Panda, Windows Defender w zupełności Ci wystarczy. Nie jest to obowiązkowe, ale nalegam abyś to zrobił.

 

http://wklej.org/id/2211236/

Skopiuj zawartość powyższego linku, wklej go do notatnika i zapisz jako fixlist.txt, umieść obok FRST i kliknij FIX. Po restarcie pokaże Ci się fixlog, zamieść go na forum, oraz wykonaj nowe logi FRST. 

Opublikowano

Eh, mój błąd. Podczas wykonywania fixu zapomniałem podmienić nazwę użytkownika, przez co nie pokazało mi zawartości kilku folderów. 

 

Tcpip\..\Interfaces\{138c8c5a-2e2a-4f36-9233-4738134a8276}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{857d6415-da12-49ba-b9f2-b76193aa1c2f}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{8718928d-cbeb-45ea-a621-800a9249001d}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{8ce2e15c-ff02-4bb1-9aa4-83cd8657e6e1}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{af6c8ed2-d532-41b7-8172-16fea9cfb55f}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{cbd48f7b-05d1-4a79-8298-ea266339d554}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{cd3daecf-48fd-4202-aa63-740a9e086eee}: [NameServer] 104.197.191.4
 
DNS nie zmienione, zobacz czy poprawnie zmieniłeś ustawienia ipv4/6 i zobacz również czy w routerze są ustawione poprawnie. 
 
Poprawiony fix. Zapisz jako fixlist.txt, umieść obok FRST i kliknij FIX. Po restarcie zamieść fixlog na forum. 
Opublikowano

Zrobiłem tak jak napisaleś i nadal są reklamy ;/ 

 

Fixlog.txt

 

 

Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Maciej (2016-04-03 14:50:40) Run:1
Running from C:\Users\Maciej\Downloads
Loaded Profiles: Maciej (Available Profiles: Maciej)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Closeprocesses:
C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp

HKLM-x32\...\Run: [win_en_77] => [X]
HKLM-x32\...\Run: [mpck_en_005030279] => [X]
HKLM-x32\...\Run: [rec_pl_236] => [X]
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xLytfxBQin99eRm67Ntgtac_Sd87O_FLxltzrgsHvBNBvTtlWU9uZrGHEzo4bztE6IYeR_hKhJjgCKfWNjTkuX5ZxLc_GM,
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL = 
SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-302128576-430233443-2040676304-1001 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-302128576-430233443-2040676304-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBSiA1rEAocN4PQUDpRKkKqLhA2_PeE3dN6XUt2NIv4pFzuNbysdEve0atD2M7LyhlUt_WJWP08e8-3p8vjuV6teukc4xL-tDvNlIg5sRDa2CT-D777loNOpID77QZcBiPO_JBBnoljVbUVlBUNdDM6-HyLF3b8pdBHJVkdrPlx1aWtSg88Y030aNY,&q={searchTerms}
BHO: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-11-23] ()
BHO-x32: Panda Security Toolbar -> {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} -> C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-11-23] ()
Toolbar: HKLM - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx64.dll [2015-11-23] ()
Toolbar: HKLM-x32 - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll [2015-11-23] ()
R2 zigipyro; C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp [158720 2015-12-26] () [File not signed]
S2 ggbugreport; "C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe" {154DFF63-3402-4815-941A-AAD63AE8B428} [X]
S2 Hixtocb; "C:\Users\Maciej\AppData\Roaming\MymseAde\Poirdor.exe" -cms [X]
S2 ktip; "C:\Program Files\ktip\ktip.exe" /s iid=5875258 did=APSFTuto4PC sid=11 ref=dce13765-6bd9-4ba1-60f7-1daf9b048c3a-PolicyMac id=bae988fbe41847dc568341825e90041ae4a67350bb32e7a7950b87d61b2d29ba [X]
S2 sivuzuwizbt; C:\Program Files (x86)\00000011-1458942664-0000-0000-08606E906414\knsa1E8C.tmp [X]
S1 MPCKpt; system32\DRIVERS\MPCKpt.sys [X]
C:\Program Files (x86)\MPC Cleaner
Task: {CA93058E-2965-44C3-B6A3-9D2D42F63FB5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D052BA52-92E2-4E0D-8889-33A7E0062672} - \{B55EE4E3-DAD4-4537-96B2-EFE6B399BA52} -> No File <==== ATTENTION
Task: {D5961A17-A2C3-49D5-A22F-A52A16AB9B8F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {D8C1927D-6843-49EA-B79B-EA9A0E6C3822} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {D9DAD760-068C-4938-90FD-F4C8457C0782} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {E1D5D680-7A15-4B16-823E-0604FF7DFE1C} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {E4F5056E-67A7-473E-8912-70A012526781} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {F7E13F66-B384-447C-A827-9E9E2C1742EA} - \Optimize Start Menu Cache Files-S-1-5-21-302128576-430233443-2040676304-1001 -> No File <==== ATTENTION
Task: {8A2D0C1C-06B0-461C-ACC3-5CCE790E732B} - \Guifkij -> No File <==== ATTENTION
Task: {96CEFBC3-2EB6-4CB0-92D5-14F0DB18A9CA} - \{648FB928-38CC-4531-9CE9-60BB514C7E86} -> No File <==== ATTENTION
Task: {643BDC80-246E-46A3-92EE-03C25D48334E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {6D7C8DE5-878B-4B28-8CE7-B8B25FC15E25} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {6F7EA868-9C71-4EC7-990C-7BA9ADD107B7} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {446B5C4E-D73C-41D7-ACE9-A267292894CD} - \Runbhno -> No File <==== ATTENTION
Task: {44F48FAB-E167-4A61-A302-24D5BCC096AC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {47B6C1FF-42FC-41EC-BA8B-45AE5D581BE5} - \WinTaske -> No File <==== ATTENTION
Task: {2C6719D5-0152-4EDF-A098-A16CE9258595} - \Circhmig -> No File <==== ATTENTION
Task: {09DAFE95-690C-497C-9E65-A470024E431F} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {10F4C7EF-FA24-42EB-AFAA-3CC3B33F742A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {118EE774-0946-460D-99EE-F128FBEEAE5C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\Update Service for Torrent Search.job => C:\Program Files (x86)\Torrent Search\Xre_G4d.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Update Service for Torrent Search2.job => C:\Program Files (x86)\Torrent Search\Xre_G4d.exe <==== ATTENTION



CMD: dir /a "C:\Users\jerzy\appdata\Local"
CMD: dir /a "C:\Users\jerzy\appdata\Roaming"
CMD: dir /a "C:\Users\jerzy\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
CMD: dir /a "C:\program files (x86)\common files"
RemoveProxy:
EmptyTemp:
*****************

Processes closed successfully.
C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414\qnsp200F.tmp => moved successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mpck_en_005030279 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\rec_pl_236 => value removed successfully
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main\\Search Bar => value removed successfully
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Internet Explorer\Main\\SearchAssistant => value removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\ielnksrch" => key removed successfully
HKCR\Wow6432Node\CLSID\ielnksrch => key not found. 
HKU\S-1-5-21-302128576-430233443-2040676304-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-302128576-430233443-2040676304-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}" => key removed successfully
HKCR\CLSID\{ielnksrch} => key not found. 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => key not found. 
"HKCR\CLSID\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}" => key removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => key not found. 
HKCR\Wow6432Node\CLSID\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => key not found. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => value not found.
HKCR\CLSID\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => key not found. 
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => value not found.
HKCR\Wow6432Node\CLSID\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} => key not found. 
zigipyro => service removed successfully
ggbugreport => service removed successfully
Hixtocb => service removed successfully
ktip => service removed successfully
sivuzuwizbt => service removed successfully
MPCKpt => service removed successfully
C:\Program Files (x86)\MPC Cleaner => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CA93058E-2965-44C3-B6A3-9D2D42F63FB5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA93058E-2965-44C3-B6A3-9D2D42F63FB5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D052BA52-92E2-4E0D-8889-33A7E0062672}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D052BA52-92E2-4E0D-8889-33A7E0062672}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B55EE4E3-DAD4-4537-96B2-EFE6B399BA52}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D5961A17-A2C3-49D5-A22F-A52A16AB9B8F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D5961A17-A2C3-49D5-A22F-A52A16AB9B8F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D8C1927D-6843-49EA-B79B-EA9A0E6C3822}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D8C1927D-6843-49EA-B79B-EA9A0E6C3822}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D9DAD760-068C-4938-90FD-F4C8457C0782}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D9DAD760-068C-4938-90FD-F4C8457C0782}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E1D5D680-7A15-4B16-823E-0604FF7DFE1C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1D5D680-7A15-4B16-823E-0604FF7DFE1C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E4F5056E-67A7-473E-8912-70A012526781}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4F5056E-67A7-473E-8912-70A012526781}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F7E13F66-B384-447C-A827-9E9E2C1742EA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F7E13F66-B384-447C-A827-9E9E2C1742EA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimize Start Menu Cache Files-S-1-5-21-302128576-430233443-2040676304-1001" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8A2D0C1C-06B0-461C-ACC3-5CCE790E732B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A2D0C1C-06B0-461C-ACC3-5CCE790E732B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Guifkij" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96CEFBC3-2EB6-4CB0-92D5-14F0DB18A9CA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96CEFBC3-2EB6-4CB0-92D5-14F0DB18A9CA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{648FB928-38CC-4531-9CE9-60BB514C7E86}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{643BDC80-246E-46A3-92EE-03C25D48334E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{643BDC80-246E-46A3-92EE-03C25D48334E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6D7C8DE5-878B-4B28-8CE7-B8B25FC15E25}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6D7C8DE5-878B-4B28-8CE7-B8B25FC15E25}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6F7EA868-9C71-4EC7-990C-7BA9ADD107B7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F7EA868-9C71-4EC7-990C-7BA9ADD107B7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{446B5C4E-D73C-41D7-ACE9-A267292894CD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{446B5C4E-D73C-41D7-ACE9-A267292894CD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Runbhno" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{44F48FAB-E167-4A61-A302-24D5BCC096AC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{44F48FAB-E167-4A61-A302-24D5BCC096AC}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{47B6C1FF-42FC-41EC-BA8B-45AE5D581BE5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{47B6C1FF-42FC-41EC-BA8B-45AE5D581BE5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinTaske" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2C6719D5-0152-4EDF-A098-A16CE9258595}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C6719D5-0152-4EDF-A098-A16CE9258595}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Circhmig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09DAFE95-690C-497C-9E65-A470024E431F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09DAFE95-690C-497C-9E65-A470024E431F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{10F4C7EF-FA24-42EB-AFAA-3CC3B33F742A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{10F4C7EF-FA24-42EB-AFAA-3CC3B33F742A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{118EE774-0946-460D-99EE-F128FBEEAE5C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{118EE774-0946-460D-99EE-F128FBEEAE5C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => key removed successfully
C:\WINDOWS\Tasks\Update Service for Torrent Search.job => moved successfully
C:\WINDOWS\Tasks\Update Service for Torrent Search2.job => moved successfully

=========  dir /a "C:\Users\jerzy\appdata\Local" =========

The system cannot find the path specified.

========= End of CMD: =========


=========  dir /a "C:\Users\jerzy\appdata\Roaming" =========

The system cannot find the path specified.

========= End of CMD: =========


=========  dir /a "C:\Users\jerzy\appdata\Locallow" =========

The system cannot find the path specified.

========= End of CMD: =========


=========  dir /a "C:\Program Files (x86)" =========

 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE

 Directory of C:\Program Files (x86)

04/03/2016  14:50    <DIR>          .
04/03/2016  14:50    <DIR>          ..
03/28/2016  18:43    <DIR>          2K Games
03/14/2016  19:31    <DIR>          ALLPlayer
03/14/2016  19:31    <DIR>          ALLPlayer Remote
03/26/2016  19:05    <DIR>          ASUS
03/26/2016  18:41    <DIR>          Common Files
10/30/2015  09:21               174 desktop.ini
03/29/2016  00:32    <DIR>          Google
03/25/2016  01:53    <DIR>          GSAutoClicker3
03/29/2016  00:56    <DIR>          Hostify
03/26/2016  19:09    <DIR>          Intel
03/27/2016  03:27    <DIR>          Internet Explorer
03/07/2016  22:16    <DIR>          Keysticks.net
04/03/2016  00:28    <DIR>          Life Is Strange
03/07/2016  22:15    <DIR>          Microsoft XNA
10/30/2015  09:24    <DIR>          Microsoft.NET
03/27/2016  03:17    <DIR>          MSBuild
03/14/2016  19:31    <DIR>          Napisy24
03/29/2016  00:29    <DIR>          Opera
03/13/2016  22:59    <DIR>          Orange Connection
04/03/2016  14:45    <DIR>          Panda Security
03/25/2016  19:23    <DIR>          ProxyFinderEnterprise
03/27/2016  03:17    <DIR>          Reference Assemblies
03/26/2016  19:35    <DIR>          SearchesToYesbnd
03/24/2016  16:59    <DIR>          Skype
02/04/2016  03:40    <DIR>          Tibia
04/03/2016  14:48    <DIR>          Virtual Router
02/13/2016  14:51    <DIR>          Windows Defender
02/13/2016  14:51    <DIR>          Windows Mail
02/13/2016  14:51    <DIR>          Windows Media Player
03/27/2016  03:27    <DIR>          Windows Multimedia Platform
10/30/2015  09:24    <DIR>          Windows NT
02/13/2016  14:51    <DIR>          Windows Photo Viewer
03/27/2016  03:27    <DIR>          Windows Portable Devices
10/30/2015  09:24    <DIR>          Windows Sidebar
10/30/2015  09:24    <DIR>          WindowsPowerShell
03/26/2016  16:26    <DIR>          Winsere
03/26/2016  16:26    <DIR>          WinTaske
               1 File(s)            174 bytes
              38 Dir(s)  235,068,231,680 bytes free

========= End of CMD: =========


=========  dir /a "C:\Program Files" =========

 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE

 Directory of C:\Program Files

04/03/2016  14:47    <DIR>          .
04/03/2016  14:47    <DIR>          ..
04/03/2016  01:19    <DIR>          CCleaner
03/26/2016  18:41    <DIR>          Common Files
10/30/2015  09:21               174 desktop.ini
03/26/2016  18:37    <DIR>          Intel
03/27/2016  03:27    <DIR>          Internet Explorer
04/03/2016  00:22    <DIR>          Life Is Strange
03/27/2016  03:17    <DIR>          MSBuild
03/27/2016  03:17    <DIR>          Reference Assemblies
02/13/2016  15:15    <DIR>          Uninstall Information
02/13/2016  14:51    <DIR>          Windows Defender
03/27/2016  03:27    <DIR>          Windows Journal
02/13/2016  14:51    <DIR>          Windows Mail
03/27/2016  03:27    <DIR>          Windows Media Player
03/27/2016  03:27    <DIR>          Windows Multimedia Platform
10/30/2015  09:24    <DIR>          Windows NT
02/13/2016  14:51    <DIR>          Windows Photo Viewer
03/27/2016  03:27    <DIR>          Windows Portable Devices
03/29/2016  00:40    <DIR>          Windows Screen Manager
10/30/2015  09:24    <DIR>          Windows Sidebar
04/01/2016  18:01    <DIR>          WindowsApps
10/30/2015  09:24    <DIR>          WindowsPowerShell
03/12/2016  18:31    <DIR>          WinRAR
               1 File(s)            174 bytes
              23 Dir(s)  235,068,231,680 bytes free

========= End of CMD: =========


=========  dir /a "C:\ProgramData" =========

 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE

 Directory of C:\ProgramData

04/03/2016  00:01    <DIR>          .
04/03/2016  00:01    <DIR>          ..
03/16/2016  19:19    <DIR>          .mono
03/14/2016  19:31    <DIR>          ALLPlayer
03/14/2016  19:31    <DIR>          ALLPlayerRemote
03/26/2016  18:55    <JUNCTION>     Application Data [C:\ProgramData]
04/03/2016  00:16    <DIR>          ASUS Smart Gesture
03/26/2016  16:11    <DIR>          BWdMB
10/30/2015  09:24    <DIR>          Comms
03/13/2016  23:13    <DIR>          DatacardService
03/26/2016  18:55    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
03/26/2016  18:55    <JUNCTION>     Documents [C:\Users\Public\Documents]
03/26/2016  16:10    <DIR>          eWdMe
03/07/2016  22:16    <DIR>          Keysticks.net
03/17/2016  15:08    <DIR>          log
03/26/2016  18:59    <DIR>          Microsoft
02/13/2016  15:20    <DIR>          Microsoft OneDrive
03/14/2016  19:31    <DIR>          Napisy24
03/26/2016  19:09               258 ntuser.pol
03/17/2016  15:08    <DIR>          OnlineUpdate
03/13/2016  22:59    <DIR>          Orange Connection
04/03/2016  00:01    <DIR>          Package Cache
04/03/2016  14:45    <DIR>          Panda Security
04/03/2016  14:39    <DIR>          panda_url_filtering
02/13/2016  15:03    <DIR>          regid.1991-06.com.microsoft
03/09/2016  00:56    <DIR>          Riot Games
03/26/2016  19:05    <DIR>          SetupTPDriver
03/24/2016  16:59    <DIR>          Skype
10/30/2015  09:24    <DIR>          SoftwareDistribution
03/26/2016  18:55    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
03/28/2016  19:11    <DIR>          Steam
03/26/2016  18:55    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
03/25/2016  23:59    <DIR>          TXQMPC
02/13/2016  15:15    <DIR>          USOPrivate
02/13/2016  15:15    <DIR>          USOShared
               1 File(s)            258 bytes
              34 Dir(s)  235,068,227,584 bytes free

========= End of CMD: =========


=========  dir /a "C:\program files (x86)\common files" =========

 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE

 Directory of C:\program files (x86)\common files

03/26/2016  18:41    <DIR>          .
03/26/2016  18:41    <DIR>          ..
03/26/2016  18:36    <DIR>          Intel
03/26/2016  18:41    <DIR>          Microsoft Shared
10/30/2015  09:24    <DIR>          Services
03/24/2016  16:59    <DIR>          Skype
02/13/2016  14:51    <DIR>          System
03/25/2016  23:48    <DIR>          Tencent
               0 File(s)              0 bytes
               8 Dir(s)  235,068,227,584 bytes free

========= End of CMD: =========


========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-302128576-430233443-2040676304-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-302128576-430233443-2040676304-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully


========= End of RemoveProxy: =========

EmptyTemp: => 372.8 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 14:50:55 ==== 
FRST.txt (Tego drugiego pliku nie dostaje zn nie tworzy sie, nie moglem rowniez znalezc pliku "setup")

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by Maciej (administrator) on MACIEK (03-04-2016 14:59:36)
Running from C:\Users\Maciej\Downloads
Loaded Profiles: Maciej (Available Profiles: Maciej)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(TFuns LIMITED) C:\ProgramData\BWdMB\WdMan.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
() C:\ProgramData\Orange Connection\OnlineUpdate\ouc.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(ALLPlayer Group Ltd.) C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(BitTorrent Inc.) C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent Inc.) C:\Users\Maciej\AppData\Roaming\BitTorrent\updates\7.9.5_41866\utorrentie.exe
(BitTorrent Inc.) C:\Users\Maciej\AppData\Roaming\BitTorrent\updates\7.9.5_41866\utorrentie.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
() C:\ProgramData\Orange Connection\OnlineUpdate\LiveUpd.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Winlogon: [Userinit] C:\WINDOWS\SysWOW64\userinit.exe,
HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [ALLUpdate] => C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.)
HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [ALLPlayer WiFi Remote] => C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe [5182896 2014-07-23] (ALLPlayer Group Ltd.)
HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [Napisy24Update] => C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3709896 2015-11-04] (Napisy24.pl)
HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50670720 2016-03-01] (Skype Technologies S.A.)
HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [BitTorrent] => C:\Users\Maciej\AppData\Roaming\BitTorrent\BitTorrent.exe [1930760 2016-03-05] (BitTorrent Inc.)
HKU\S-1-5-21-302128576-430233443-2040676304-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.178.1.1
Tcpip\..\Interfaces\{138c8c5a-2e2a-4f36-9233-4738134a8276}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{857d6415-da12-49ba-b9f2-b76193aa1c2f}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{8718928d-cbeb-45ea-a621-800a9249001d}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{8ce2e15c-ff02-4bb1-9aa4-83cd8657e6e1}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{af6c8ed2-d532-41b7-8172-16fea9cfb55f}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{cbd48f7b-05d1-4a79-8298-ea266339d554}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{cd3daecf-48fd-4202-aa63-740a9e086eee}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{e773fd15-1f5a-4833-9cee-25a469437fcc}: [DhcpNameServer] 192.178.1.1

Internet Explorer:
==================

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-29] (Google Inc.)

Chrome: 
=======
CHR Profile: C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-29]
CHR Extension: (Dokumenty Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-29]
CHR Extension: (Dysk Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-29]
CHR Extension: (YouTube) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-29]
CHR Extension: (Adblock Plus) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-04-03]
CHR Extension: (Arkusze Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-29]
CHR Extension: (Avira Browser Safety) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-04-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-29]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-29]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1394360 2015-08-13] (Intel Corporation)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] ()
S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)
S2 Orange Connection. RunOuc; C:\Program Files (x86)\Orange Connection\UpdateDog\ouc.exe [651856 2013-10-26] ()
R2 WdMan; C:\ProgramData\BWdMB\WdMan.exe [274600 2016-03-26] (TFuns LIMITED)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S2 Winsere; C:\Program Files (x86)\Winsere\Winsere\Winsere.exe [316984 2016-03-24] ()

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\System32\drivers\athw10x.sys [4325544 2015-06-26] (Qualcomm Atheros Communications, Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [100776 2015-08-23] (ASUS Corporation)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-26] ()
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [65856 2016-03-26] (Windows (R) Win 7 DDK provider)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [55816 2015-08-13] (Intel Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [53752 2015-08-13] (Intel Corporation)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [261624 2015-08-13] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R4 PsBoot; system32\Drivers\PsBoot.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-03 14:53 - 2016-04-03 14:53 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\BitTorrent
2016-04-03 14:50 - 2016-04-03 14:50 - 00027142 _____ C:\Users\Maciej\Downloads\Fixlog.txt
2016-04-03 14:49 - 2016-04-03 14:49 - 00007228 _____ C:\Users\Maciej\Downloads\2211236.perl
2016-04-03 14:48 - 2016-04-03 14:48 - 00003240 _____ C:\WINDOWS\System32\Tasks\{8CB937E0-8720-40DA-AF90-9D633DD0908E}
2016-04-03 10:38 - 2016-04-03 10:41 - 00000000 ____D C:\Users\Maciej\Downloads\[FileTracker.pl]Gwiezdne wojny Przebudzenie Mocy[wilu75]
2016-04-03 10:37 - 2016-04-03 10:37 - 00113600 _____ C:\Users\Maciej\Downloads\[torrenty.pl] Gwiezdne wojny- Przebudzenie Mocy - Star Wars The Force Awakens -2015- [BRRip] [XviD-KiT] [Napisy PL].torrent
2016-04-03 01:19 - 2016-04-03 01:19 - 00002854 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-04-03 01:19 - 2016-04-03 01:19 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-04-03 01:19 - 2016-04-03 01:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-04-03 01:19 - 2016-04-03 01:19 - 00000000 ____D C:\Program Files\CCleaner
2016-04-03 01:18 - 2016-04-03 01:18 - 06868672 _____ (Piriform Ltd) C:\Users\Maciej\Downloads\ccsetup516.exe
2016-04-03 01:18 - 2016-04-03 01:18 - 01023280 _____ (Hesudemo ) C:\Users\Maciej\Downloads\CCleaner-13061-dp.exe
2016-04-03 00:43 - 2016-04-03 00:55 - 00034744 _____ C:\Users\Maciej\Downloads\Addition.txt
2016-04-03 00:40 - 2016-04-03 14:59 - 00009833 _____ C:\Users\Maciej\Downloads\FRST.txt
2016-04-03 00:40 - 2016-04-03 14:59 - 00000000 ____D C:\FRST
2016-04-03 00:40 - 2016-04-03 00:40 - 02374144 _____ (Farbar) C:\Users\Maciej\Downloads\FRST64.exe
2016-04-03 00:37 - 2016-04-03 00:38 - 07001616 _____ (Trend Micro Inc.) C:\Users\Maciej\Downloads\BGSetup3.0.1009.exe
2016-04-03 00:20 - 2016-04-03 00:22 - 00000000 ____D C:\Program Files\Life Is Strange
2016-04-03 00:16 - 2016-04-03 00:16 - 00000000 ___HD C:\OneDriveTemp
2016-04-03 00:13 - 2016-04-03 00:13 - 00000000 ____D C:\Users\Maciej\AppData\Local\EMU
2016-04-03 00:12 - 2016-04-03 00:13 - 13939370 _____ C:\Users\Maciej\Downloads\LIS_PL.exe
2016-04-03 00:01 - 2016-04-03 00:01 - 00000000 ____D C:\ProgramData\Package Cache
2016-04-02 23:58 - 2016-04-03 00:22 - 00002044 _____ C:\Users\Public\Desktop\Life Is Strange.lnk
2016-04-02 23:58 - 2016-04-03 00:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Life Is Strange
2016-04-02 23:56 - 2016-04-03 00:28 - 00000000 ____D C:\Program Files (x86)\Life Is Strange
2016-04-02 23:52 - 2016-04-02 23:55 - 00000000 ____D C:\Users\Maciej\Desktop\FLT
2016-03-29 01:43 - 2016-04-02 23:52 - 00000000 ____D C:\Users\Maciej\Downloads\Life_Is_Strange_Episode_1-FLT
2016-03-29 01:42 - 2016-03-29 01:42 - 00041830 _____ C:\Users\Maciej\Downloads\Life_Is_Strange_Episode_1-FLT-[rarbg.com].torrent
2016-03-29 00:55 - 2016-03-29 00:56 - 04504169 _____ C:\Users\Maciej\Downloads\Civilization V Brave New World DX11-DX9 V1.0.3.279 Trainer +8 MrAntiFun.zip
2016-03-29 00:38 - 2016-03-29 00:40 - 03986022 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 Gods And Kings V 1.0.3.144 Trainer +8 MrAntiFun.zip
2016-03-29 00:37 - 2016-04-02 19:07 - 00000022 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 Brave New World V 1.0.3.144 Trainer +8 MrAntiFun.zip
2016-03-29 00:32 - 2016-03-29 00:32 - 00002350 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-29 00:32 - 2016-03-29 00:32 - 00002338 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-03-29 00:24 - 2016-04-03 14:53 - 00001058 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-29 00:24 - 2016-04-03 14:29 - 00001062 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-29 00:24 - 2016-03-29 00:24 - 00987728 ____N (Google Inc.) C:\Users\Maciej\Downloads\ChromeSetup.exe
2016-03-29 00:24 - 2016-03-29 00:24 - 00004120 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-03-29 00:24 - 2016-03-29 00:24 - 00003888 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-03-29 00:01 - 2016-04-03 14:45 - 00004148 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{EDAAFE84-DA65-4593-AF6B-ED5C53754BDE}
2016-03-28 23:54 - 2016-03-28 23:54 - 00002048 _____ C:\WINDOWS\system32\Drivers\etc\hosts.bak
2016-03-28 23:46 - 2016-04-03 14:39 - 00000000 ____D C:\ProgramData\panda_url_filtering
2016-03-28 23:46 - 2016-03-28 23:46 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Panda Security
2016-03-28 23:45 - 2016-04-03 14:45 - 00000000 ____D C:\Program Files (x86)\Panda Security
2016-03-28 23:31 - 2016-04-03 14:45 - 00000000 ____D C:\ProgramData\Panda Security
2016-03-28 23:31 - 2016-03-28 23:32 - 01882896 _____ (Panda Security, S.L.) C:\Users\Maciej\Downloads\PANDAIS16 (1).exe
2016-03-28 23:31 - 2016-03-28 23:31 - 01882896 _____ (Panda Security, S.L.) C:\Users\Maciej\Downloads\PANDAIS16.exe
2016-03-28 21:40 - 2016-04-03 14:50 - 00000000 ____D C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414
2016-03-28 21:38 - 2016-03-28 21:38 - 00000000 ____D C:\Users\Maciej\Documents\My Cheat Tables
2016-03-28 21:33 - 2016-03-28 21:36 - 03982027 _____ C:\Users\Maciej\Downloads\Sid Civilization 5 DX 11 V 1.0.3.144 Trainer +8 MrAntiFun.zip
2016-03-28 20:37 - 2016-03-28 20:37 - 00690629 _____ C:\Users\Maciej\Downloads\sidmeierscivilizationv17trainer.zip
2016-03-28 19:12 - 2016-04-03 00:13 - 00000000 ____D C:\Users\Maciej\Documents\My Games
2016-03-28 19:12 - 2016-03-28 19:12 - 00000000 ____D C:\Users\Maciej\AppData\Local\My Games
2016-03-28 19:11 - 2016-03-28 19:11 - 00000000 ____D C:\ProgramData\Steam
2016-03-28 19:00 - 2016-03-28 19:00 - 00001337 _____ C:\Users\Public\Desktop\Sid Meier's Civilization V - Complete Edition.lnk
2016-03-28 19:00 - 2016-03-28 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games
2016-03-28 18:43 - 2016-03-28 18:43 - 00000000 ____D C:\Program Files (x86)\2K Games
2016-03-28 17:27 - 2016-03-28 18:08 - 00000000 ____D C:\Users\Maciej\Downloads\Sid.Meiers.Civilization.V.Complete.Edition-PROPHET
2016-03-28 17:27 - 2016-03-28 17:27 - 00030109 _____ C:\Users\Maciej\Downloads\Sid.Meiers.Civilization.V.Complete.Edition-PROPHET.torrent
2016-03-27 20:26 - 2016-03-27 20:26 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-03-27 12:30 - 2016-03-27 12:30 - 08820166 _____ C:\Users\Maciej\Downloads\Ultraparallel_Blue.7z
2016-03-27 12:27 - 2016-03-27 12:27 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\W10LogonChanger
2016-03-27 12:26 - 2016-03-27 12:26 - 02681221 _____ C:\Users\Maciej\Downloads\Win10BGChanger1.2.0.0.zip
2016-03-27 03:30 - 2016-04-03 01:22 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-27 03:27 - 2016-03-27 03:27 - 00000000 ____D C:\Windows.old
2016-03-27 03:26 - 2016-03-27 03:26 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-27 03:26 - 2016-03-27 03:26 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-27 03:26 - 2016-03-27 03:26 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-27 03:26 - 2016-03-27 03:26 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-27 03:26 - 2016-03-27 03:26 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-27 03:26 - 2016-03-27 03:26 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-27 03:26 - 2016-03-27 03:26 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-27 03:25 - 2016-03-27 03:25 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-27 03:25 - 2016-03-27 03:25 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-27 03:25 - 2016-03-27 03:25 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-27 03:25 - 2016-03-27 03:25 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-27 03:25 - 2016-03-27 03:25 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-03-27 03:25 - 2016-03-27 03:25 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-27 03:25 - 2016-03-27 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-27 03:25 - 2016-03-27 03:25 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-27 03:25 - 2016-03-27 03:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-27 03:20 - 2016-03-27 03:20 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-27 03:20 - 2015-10-30 05:43 - 07851008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0015.dll
2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files\MSBuild
2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-03-27 03:17 - 2016-03-27 03:17 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-03-27 03:17 - 2015-10-24 03:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-03-27 03:17 - 2015-10-24 03:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-27 03:17 - 2015-10-24 03:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-03-27 03:17 - 2015-10-24 03:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-27 03:17 - 2015-10-24 03:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-27 03:17 - 2015-10-24 03:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-27 03:16 - 2016-03-27 03:16 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-03-27 03:16 - 2016-03-27 03:16 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-03-27 03:16 - 2016-03-27 03:16 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-27 03:16 - 2016-03-27 03:16 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-26 20:42 - 2016-03-26 20:42 - 00000000 ____D C:\Users\Maciej\AppData\Local\NetworkTiles
2016-03-26 19:35 - 2016-04-03 14:56 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture
2016-03-26 19:35 - 2016-03-26 19:35 - 00000000 ____D C:\Program Files (x86)\SearchesToYesbnd
2016-03-26 19:28 - 2016-03-26 19:28 - 00000000 ____D C:\WINDOWS\system32\finh
2016-03-26 19:20 - 2016-04-02 19:05 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Abesju
2016-03-26 19:20 - 2016-03-26 19:23 - 00000000 ____D C:\Users\Maciej\AppData\Local\MicrosoftEdge
2016-03-26 19:19 - 2016-03-28 23:56 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\TijusOiath
2016-03-26 19:19 - 2016-03-26 19:19 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-26 19:19 - 2016-03-26 19:19 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Jolkamri
2016-03-26 19:16 - 2016-03-26 19:16 - 00001047 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk
2016-03-26 19:10 - 2016-03-26 19:10 - 03319245 _____ C:\Users\Maciej\Downloads\GameKiller 3.11.zip
2016-03-26 19:09 - 2016-03-26 19:10 - 00002402 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-26 19:09 - 2016-03-26 19:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf
2016-03-26 19:05 - 2016-03-26 19:05 - 00003628 _____ C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher
2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\MCorp
2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\ProgramData\SetupTPDriver
2016-03-26 19:05 - 2016-03-26 19:05 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-03-26 19:02 - 2016-03-26 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\Publishers
2016-03-26 19:02 - 2016-03-26 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\ActiveSync
2016-03-26 19:01 - 2016-03-26 19:01 - 00000000 __SHD C:\Users\Maciej\IntelGraphicsProfiles
2016-03-26 19:01 - 2016-03-26 19:01 - 00000000 ____D C:\Users\Maciej\AppData\Local\Comms
2016-03-26 19:00 - 2016-03-26 19:00 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-03-26 19:00 - 2016-03-26 19:00 - 00000258 __RSH C:\Users\Maciej\ntuser.pol
2016-03-26 19:00 - 2016-03-26 19:00 - 00000020 ___SH C:\Users\Maciej\ntuser.ini
2016-03-26 19:00 - 2016-03-26 19:00 - 00000000 ____D C:\Users\Maciej\AppData\Local\TileDataLayer
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\My Documents
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2016-03-26 18:55 - 2016-03-26 18:55 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2016-03-26 18:54 - 2016-04-03 14:59 - 00879220 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-26 18:53 - 2016-03-26 18:53 - 00022744 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-03-26 18:43 - 2016-03-26 18:43 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-03-26 18:41 - 2016-03-26 18:41 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-03-26 18:40 - 2016-04-03 14:52 - 00000000 ____D C:\Users\Maciej
2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\My Documents
2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Videos
2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Pictures
2016-03-26 18:40 - 2016-03-26 18:40 - 00000000 _SHDL C:\Users\Maciej\Documents\My Music
2016-03-26 18:37 - 2016-03-26 18:37 - 00000000 ____D C:\Program Files\Intel
2016-03-26 18:37 - 2016-03-26 18:37 - 00000000 ____D C:\Program Files\Common Files\Atheros
2016-03-26 18:37 - 2015-08-27 19:20 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-03-26 18:37 - 2015-08-27 19:20 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2016-03-26 18:36 - 2016-03-26 18:36 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-03-26 17:15 - 2016-03-26 18:41 - 00000000 ____D C:\WINDOWS\system32\bihk
2016-03-26 17:08 - 2016-03-26 18:54 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2016-03-26 17:08 - 2016-03-26 18:54 - 00009528 _____ C:\WINDOWS\diagerr.xml
2016-03-26 16:27 - 2016-03-26 16:27 - 00000000 ____D C:\Users\Maciej\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Program Files (x86)\WinTaske
2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\Program Files (x86)\Winsere
2016-03-26 16:26 - 2016-03-26 16:26 - 00000000 ____D C:\extensions
2016-03-26 16:11 - 2016-03-26 16:11 - 00000000 ____D C:\ProgramData\BWdMB
2016-03-26 16:10 - 2016-03-26 16:10 - 00000000 ____D C:\Users\Maciej\AppData\Local\tuto_monetize_220160325
2016-03-26 16:10 - 2016-03-26 16:10 - 00000000 ____D C:\ProgramData\eWdMe
2016-03-26 16:09 - 2016-03-29 00:56 - 00000000 ____D C:\Program Files (x86)\Hostify
2016-03-26 16:09 - 2016-03-26 16:28 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\mysites123
2016-03-26 16:06 - 2016-03-26 16:06 - 06493696 _____ C:\Users\Maciej\AppData\Roaming\agent.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 01621131 _____ C:\Users\Maciej\AppData\Roaming\Geotom.tst
2016-03-26 16:06 - 2016-03-26 16:06 - 00126464 _____ C:\Users\Maciej\AppData\Roaming\noah.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 00065424 _____ C:\Users\Maciej\AppData\Roaming\Config.xml
2016-03-26 16:06 - 2016-03-26 16:06 - 00018432 _____ C:\Users\Maciej\AppData\Roaming\Main.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 00002397 _____ C:\WINDOWS\SysWOW64\findit.xml
2016-03-26 16:06 - 2016-03-26 16:06 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Mozilla
2016-03-26 16:05 - 2016-03-26 16:05 - 00000000 ____D C:\Users\Maciej\AppData\Local\tuto_monetize_120160325
2016-03-26 16:04 - 2016-03-29 00:40 - 00000000 ____D C:\Program Files\Windows Screen Manager
2016-03-26 16:04 - 2016-03-26 16:05 - 00017760 _____ C:\Users\Maciej\AppData\Roaming\InstallationConfiguration.xml
2016-03-26 16:04 - 2016-03-26 16:04 - 00268024 _____ C:\Users\Maciej\AppData\Roaming\inst.lat
2016-03-26 16:04 - 2016-03-26 16:04 - 00127488 _____ C:\Users\Maciej\AppData\Roaming\Installer.dat
2016-03-26 16:04 - 2016-03-26 16:04 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Company
2016-03-26 16:04 - 2016-03-26 16:04 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
2016-03-26 16:03 - 2016-04-02 19:06 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Udiwufuo
2016-03-26 16:03 - 2016-03-26 19:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\Tempfolder
2016-03-26 16:03 - 2016-03-26 16:03 - 00000000 ____D C:\uninst
2016-03-26 16:03 - 2016-03-26 16:03 - 00000000 _____ C:\WINDOWS\SysWOW64\Number of results
2016-03-26 15:55 - 2016-03-26 15:56 - 02906577 _____ C:\Users\Maciej\Downloads\Aktywacja.rar
2016-03-26 13:58 - 2016-03-26 16:03 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-25 23:56 - 2016-03-25 23:56 - 00038520 _____ (Tencent) C:\WINDOWS\SysWOW64\Drivers\TS888x64.sys
2016-03-25 23:51 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage
2016-03-25 23:49 - 2016-03-26 16:33 - 00000000 ____D C:\Users\Maciej\AppData\Local\app
2016-03-25 23:49 - 2016-03-25 23:59 - 00000000 ____D C:\ProgramData\TXQMPC
2016-03-25 23:49 - 2016-03-25 23:49 - 00005120 _____ C:\Users\Maciej\AppData\Roaming\GiftBag.db
2016-03-25 23:49 - 2016-03-25 23:49 - 00000000 ____D C:\Program Files\Common Files\Tencent
2016-03-25 23:49 - 2016-03-25 23:48 - 00132344 _____ (Tencent Technology(Shenzhen) Company Limited) C:\WINDOWS\system32\Drivers\TAOKernelEx64.sys
2016-03-25 23:48 - 2016-03-26 00:00 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
2016-03-25 23:48 - 2016-03-25 23:57 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Tencent
2016-03-25 23:48 - 2016-03-25 23:48 - 00087800 _____ (电脑管家) C:\WINDOWS\system32\Drivers\TFsFltX64.sys
2016-03-25 23:47 - 2016-03-26 19:09 - 00000258 __RSH C:\ProgramData\ntuser.pol
2016-03-25 23:46 - 2016-03-29 01:02 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\yoursearching
2016-03-25 23:46 - 2016-03-25 23:46 - 00000000 ____D C:\Users\Maciej\Downloads\Torrentex
2016-03-25 23:45 - 2016-03-25 23:45 - 06125507 _____ C:\Users\Maciej\Downloads\Windows 8_ 8.rar
2016-03-25 19:23 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proxy Finder Enterprise
2016-03-25 19:23 - 2016-03-25 19:23 - 00707288 _____ C:\Users\Maciej\Downloads\ProxyFinderEnt-v2.5.rar
2016-03-25 19:23 - 2016-03-25 19:23 - 00002035 _____ C:\Users\Maciej\Desktop\Proxy Finder Enterprise.lnk
2016-03-25 19:23 - 2016-03-25 19:23 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Proxy Finder Enterprise
2016-03-25 19:23 - 2016-03-25 19:23 - 00000000 ____D C:\Program Files (x86)\ProxyFinderEnterprise
2016-03-25 19:23 - 2012-10-22 16:58 - 00000000 ____D C:\Users\Maciej\Desktop\ProxyFinderEnt-v2.5
2016-03-25 19:09 - 2016-03-31 14:16 - 00000000 ____D C:\Users\Maciej\Desktop\New folder
2016-03-25 19:08 - 2016-03-25 19:08 - 02550749 _____ C:\Users\Maciej\Downloads\Proxyliste06.txt
2016-03-25 01:53 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GS Auto Clicker
2016-03-25 01:53 - 2016-03-25 01:53 - 00893672 _____ (goldensoft.org ) C:\Users\Maciej\Downloads\GSAutoClicker-Setup.exe
2016-03-25 01:53 - 2016-03-25 01:53 - 00001118 _____ C:\Users\Public\Desktop\GS Auto Clicker.lnk
2016-03-25 01:53 - 2016-03-25 01:53 - 00000000 ____D C:\Users\Maciej\Documents\AutomaticSolution Software
2016-03-25 01:53 - 2016-03-25 01:53 - 00000000 ____D C:\Program Files (x86)\GSAutoClicker3
2016-03-24 22:44 - 2016-03-24 22:44 - 00406016 _____ (SatyCreations) C:\Users\Maciej\Downloads\ModInstaller.v.0.0.8.exe
2016-03-24 22:44 - 2016-03-24 22:44 - 00000000 ____D C:\Users\Maciej\AppData\Local\SatyCreations
2016-03-24 17:00 - 2016-03-24 17:00 - 00000000 ____D C:\Users\Maciej\Tracing
2016-03-24 16:59 - 2016-04-03 14:55 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Skype
2016-03-24 16:59 - 2016-03-26 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-03-24 16:59 - 2016-03-24 16:59 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk
2016-03-24 16:59 - 2016-03-24 16:59 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-03-24 16:59 - 2016-03-24 16:59 - 00000000 ____D C:\ProgramData\Skype
2016-03-24 16:58 - 2016-03-24 16:58 - 01503872 _____ (Skype Technologies S.A.) C:\Users\Maciej\Downloads\SkypeSetup.exe
2016-03-17 20:38 - 2016-03-17 20:38 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualRouterPlus
2016-03-17 20:37 - 2016-03-17 20:37 - 01857456 _____ (Runxia Electronics) C:\Users\Maciej\Downloads\virtualrouterplussetup.exe
2016-03-17 20:37 - 2016-03-17 20:37 - 00000000 ____D C:\Users\Maciej\AppData\Local\Downloaded Installations
2016-03-17 15:08 - 2016-03-17 15:08 - 00000000 ____D C:\ProgramData\OnlineUpdate
2016-03-17 15:08 - 2016-03-17 15:08 - 00000000 ____D C:\ProgramData\log
2016-03-16 19:19 - 2016-03-16 19:19 - 00000000 ____D C:\ProgramData\.mono
2016-03-16 19:15 - 2016-03-16 19:15 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\.mono
2016-03-16 19:13 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokémon Trading Card Game Online
2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Pokémon Trading Card Game Online
2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Unity
2016-03-16 19:13 - 2016-03-16 19:13 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\The Pok__mon Company International
2016-03-16 19:10 - 2016-03-16 19:12 - 256476672 _____ C:\Users\Maciej\Downloads\PokemonInstaller.msi
2016-03-15 22:43 - 2016-03-15 22:44 - 106170482 _____ C:\Users\Maciej\Downloads\Avernus 1.8.6.rar
2016-03-15 10:47 - 2016-03-15 10:55 - 143259215 _____ C:\Users\Maciej\Downloads\Minecraft 1.8.rar
2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy24
2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Remote Control
2016-03-14 19:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer
2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\Napisy24
2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\ALLPlayerRemote
2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\Napisy24
2016-03-14 19:31 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\ALLPlayer Remote
2016-03-14 19:30 - 2016-03-14 19:31 - 00000000 ____D C:\ProgramData\ALLPlayer
2016-03-14 19:30 - 2016-03-14 19:31 - 00000000 ____D C:\Program Files (x86)\ALLPlayer
2016-03-14 19:30 - 2013-04-05 21:26 - 02106368 _____ C:\WINDOWS\SysWOW64\ac3filter.ax
2016-03-14 19:30 - 2013-04-05 21:26 - 00276992 _____ (IntelleSoft) C:\WINDOWS\SysWOW64\BugTrap.dll
2016-03-14 19:30 - 2011-06-02 02:10 - 00644608 _____ C:\WINDOWS\SysWOW64\xvidcore.dll
2016-03-14 19:30 - 2007-10-07 15:36 - 00258048 _____ C:\WINDOWS\SysWOW64\libFLAC.dll
2016-03-14 19:27 - 2016-03-14 19:29 - 30620568 _____ (ALLPlayer ) C:\Users\Maciej\Downloads\ALLPlayerPL.exe
2016-03-14 19:10 - 2016-03-14 19:27 - 00000000 ____D C:\Users\Maciej\Downloads\Grimm.S05E12.WEB-DL.XviD-FUM[ettv]
2016-03-14 01:17 - 2016-03-14 01:17 - 00000000 ____D C:\Users\Maciej\AppData\Local\Chris_Pietschmann_(http__
2016-03-14 01:15 - 2016-04-03 14:48 - 00000000 ____D C:\Program Files (x86)\Virtual Router
2016-03-14 01:14 - 2016-03-14 01:14 - 01373696 _____ C:\Users\Maciej\Downloads\VirtualRouterInstaller.msi
2016-03-14 01:06 - 2016-03-18 07:49 - 00000781 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2016-03-14 00:18 - 2016-03-14 00:18 - 03878112 _____ (Husdawg, LLC) C:\Users\Maciej\Downloads\Detection.exe
2016-03-13 23:14 - 2016-03-13 23:14 - 00000000 ____D C:\Users\Maciej\Documents\CheatHappens
2016-03-13 23:13 - 2016-03-13 23:13 - 00708966 _____ C:\Users\Maciej\Downloads\d591b2e1a16870d0e24d.zipx
2016-03-13 22:59 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orange Connection
2016-03-13 22:59 - 2016-03-13 22:59 - 00001127 _____ C:\Users\Public\Desktop\Orange Connection.lnk
2016-03-13 22:59 - 2016-03-13 22:59 - 00000000 ____D C:\ProgramData\Orange Connection
2016-03-13 22:57 - 2016-03-13 22:59 - 00000000 ____D C:\Program Files (x86)\Orange Connection
2016-03-13 22:57 - 2014-09-11 12:06 - 00457728 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbwwan.sys
2016-03-13 22:57 - 2014-08-21 10:10 - 00248320 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_juwwanecm.sys
2016-03-13 22:57 - 2013-11-30 13:40 - 00110592 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jucdcacm.sys
2016-03-13 22:57 - 2013-11-30 13:40 - 00091648 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jubusenum.sys
2016-03-13 22:57 - 2013-11-30 13:40 - 00077312 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_jucdcecm.sys
2016-03-13 22:57 - 2013-11-30 13:40 - 00030720 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_juextctrl.sys
2016-03-13 22:57 - 2013-11-30 13:25 - 00226176 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbmdm.sys
2016-03-13 22:57 - 2012-08-20 05:07 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdfcoinstaller01007.dll
2016-03-13 22:57 - 2012-08-20 05:07 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01007.dll
2016-03-13 22:57 - 2010-10-08 13:29 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\WINDOWS\system32\Drivers\ewdcsc.sys
2016-03-13 22:57 - 2010-09-26 14:39 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_hwupgrade.sys
2016-03-13 22:55 - 2016-03-13 23:13 - 00000000 ____D C:\ProgramData\DatacardService
2016-03-13 21:19 - 2016-03-24 22:44 - 00000000 ____D C:\Users\Maciej\Desktop\IGG-Slime.Ranche.v0.2.6
2016-03-13 21:19 - 2016-03-13 21:19 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Steam
2016-03-13 21:19 - 2016-03-13 21:19 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Monomi Park
2016-03-13 21:11 - 2016-03-13 21:18 - 132480394 _____ C:\Users\Maciej\Downloads\IGG-Slime.Ranche.v0.2.6.rar
2016-03-13 21:10 - 2016-03-13 21:14 - 142296418 ____R C:\Users\Maciej\Downloads\IGG-Slime.Rancher.v0.2.4b.zip
2016-03-12 23:21 - 2016-03-12 23:21 - 00000000 ____D C:\Users\Maciej\Documents\Firefall
2016-03-12 23:21 - 2016-03-12 23:21 - 00000000 ____D C:\Users\Maciej\AppData\Local\Red 5 Studios
2016-03-12 22:18 - 2016-03-12 22:18 - 00000000 ___HD C:\WINDOWS\msdownld.tmp
2016-03-12 22:10 - 2016-03-12 22:11 - 05382416 _____ C:\Users\Maciej\Downloads\FirefallInstaller.exe
2016-03-12 18:43 - 2016-03-12 18:43 - 00000000 ____D C:\Users\Maciej\AppData\Local\IsolatedStorage
2016-03-12 18:42 - 2016-03-12 18:42 - 05673133 _____ C:\Users\Maciej\Downloads\Roibot13950Free.zip
2016-03-12 18:35 - 2016-03-12 18:35 - 02287162 _____ C:\Users\Maciej\Downloads\AionSpot-QuickStart.rar
2016-03-12 18:35 - 2016-03-12 18:35 - 01005568 _____ (Microsoft Corporation) C:\Users\Maciej\Downloads\dotNetFx45_Full_setup.exe
2016-03-12 18:31 - 2016-03-26 18:44 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-12 18:31 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-12 18:31 - 2016-03-12 18:31 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\WinRAR
2016-03-12 18:31 - 2016-03-12 18:31 - 00000000 ____D C:\Program Files\WinRAR
2016-03-12 18:30 - 2016-03-12 18:30 - 02162896 _____ C:\Users\Maciej\Downloads\winrar-x64-531pl.exe
2016-03-12 18:29 - 2016-03-12 18:29 - 01356520 _____ C:\Users\Maciej\Downloads\AionSpot.rar
2016-03-12 14:20 - 2016-04-03 14:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2016-03-12 14:20 - 2016-03-15 22:47 - 00000000 ____D C:\Users\Maciej\Downloads\Gameforge Live
2016-03-12 14:20 - 2016-03-12 14:20 - 00000600 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2016-03-12 14:20 - 2016-03-12 14:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\Gameforge4d
2016-03-12 14:18 - 2016-03-12 14:19 - 20248088 _____ (Gameforge ) C:\Users\Maciej\Downloads\AION_GameforgeLiveSetup.exe
2016-03-09 01:27 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2016-03-09 01:27 - 2010-06-02 05:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2016-03-09 01:27 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2016-03-09 01:27 - 2010-06-02 05:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2016-03-09 01:27 - 2010-06-02 05:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2016-03-09 01:27 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2016-03-09 01:27 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2016-03-09 01:27 - 2010-02-04 11:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2016-03-09 01:27 - 2010-02-04 11:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2016-03-09 01:27 - 2010-02-04 11:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2016-03-09 01:27 - 2010-02-04 11:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2016-03-09 01:27 - 2009-09-04 18:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2016-03-09 01:27 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2016-03-09 01:27 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2016-03-09 01:27 - 2009-09-04 18:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2016-03-09 01:27 - 2009-09-04 18:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2016-03-09 01:27 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2016-03-09 01:27 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2016-03-09 01:27 - 2009-03-16 15:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2016-03-09 01:27 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2016-03-09 01:27 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2016-03-09 01:27 - 2009-03-16 15:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2016-03-09 01:27 - 2009-03-16 15:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2016-03-09 01:27 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2016-03-09 01:27 - 2009-03-09 16:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2016-03-09 01:27 - 2009-03-09 16:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2016-03-09 01:27 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2016-03-09 01:27 - 2009-03-09 16:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2016-03-09 01:27 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2016-03-09 01:27 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2016-03-09 01:27 - 2008-10-15 07:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2016-03-09 01:27 - 2008-10-15 07:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2016-03-09 01:27 - 2008-10-15 07:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2016-03-09 01:27 - 2008-10-15 07:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2016-03-09 01:27 - 2008-10-15 07:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2016-03-09 01:27 - 2008-10-15 07:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2016-03-09 01:27 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2016-03-09 01:27 - 2008-07-31 11:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2016-03-09 01:27 - 2008-07-31 11:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2016-03-09 01:27 - 2008-07-31 11:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2016-03-09 01:27 - 2008-07-31 11:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2016-03-09 01:27 - 2008-07-31 11:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2016-03-09 01:27 - 2008-07-10 12:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2016-03-09 01:27 - 2008-07-10 12:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2016-03-09 01:27 - 2008-07-10 12:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2016-03-09 01:27 - 2008-07-10 12:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2016-03-09 01:27 - 2008-07-10 12:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2016-03-09 01:27 - 2008-07-10 12:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2016-03-09 01:27 - 2008-05-30 15:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2016-03-09 01:27 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2016-03-09 01:27 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2016-03-09 01:27 - 2008-05-30 15:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2016-03-09 01:27 - 2008-05-30 15:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2016-03-09 01:27 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2016-03-09 01:27 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2016-03-09 01:27 - 2008-05-30 15:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2016-03-09 01:27 - 2008-05-30 15:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2016-03-09 01:27 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2016-03-09 01:27 - 2008-05-30 15:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2016-03-09 01:27 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2016-03-09 01:27 - 2008-05-30 15:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2016-03-09 01:27 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2016-03-09 01:27 - 2008-03-05 17:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2016-03-09 01:27 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2016-03-09 01:27 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2016-03-09 01:27 - 2008-03-05 17:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2016-03-09 01:27 - 2008-03-05 17:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2016-03-09 01:27 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2016-03-09 01:27 - 2008-03-05 16:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2016-03-09 01:27 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2016-03-09 01:27 - 2008-03-05 16:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2016-03-09 01:27 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2016-03-09 01:27 - 2008-02-06 00:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2016-03-09 01:27 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2016-03-09 01:27 - 2007-10-22 04:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2016-03-09 01:27 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2016-03-09 01:27 - 2007-10-22 04:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2016-03-09 01:27 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2016-03-09 01:27 - 2007-10-12 16:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2016-03-09 01:27 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2016-03-09 01:27 - 2007-10-12 16:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2016-03-09 01:27 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2016-03-09 01:27 - 2007-10-02 10:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2016-03-09 01:27 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2016-03-09 01:27 - 2007-07-20 01:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2016-03-09 01:27 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2016-03-09 01:27 - 2007-07-19 19:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2016-03-09 01:27 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2016-03-09 01:27 - 2007-07-19 19:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2016-03-09 01:27 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2016-03-09 01:27 - 2007-07-19 19:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2016-03-09 01:27 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2016-03-09 01:27 - 2007-06-20 21:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2016-03-09 01:27 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2016-03-09 01:27 - 2007-05-16 17:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2016-03-09 01:27 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2016-03-09 01:27 - 2007-05-16 17:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2016-03-09 01:27 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2016-03-09 01:27 - 2007-05-16 17:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2016-03-09 01:27 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2016-03-09 01:27 - 2007-04-04 19:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2016-03-09 01:26 - 2007-04-04 19:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2016-03-09 01:26 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2016-03-09 01:26 - 2007-03-15 17:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2016-03-09 01:26 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2016-03-09 01:26 - 2007-03-12 17:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2016-03-09 01:26 - 2007-03-12 17:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2016-03-09 01:26 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2016-03-09 01:26 - 2007-03-05 13:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2016-03-09 01:26 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2016-03-09 01:26 - 2007-01-24 16:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2016-03-09 01:26 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2016-03-09 01:26 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2016-03-09 01:26 - 2006-12-08 13:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2016-03-09 01:26 - 2006-11-29 14:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2016-03-09 01:26 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2016-03-09 01:26 - 2006-11-29 14:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2016-03-09 01:26 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2016-03-09 01:26 - 2006-09-28 17:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2016-03-09 01:26 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2016-03-09 01:26 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2016-03-09 01:26 - 2006-09-28 17:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2016-03-09 01:26 - 2006-07-28 10:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2016-03-09 01:26 - 2006-07-28 10:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2016-03-09 01:26 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2016-03-09 01:26 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2016-03-09 01:26 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2016-03-09 01:26 - 2006-05-31 08:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2016-03-09 01:26 - 2006-03-31 13:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2016-03-09 01:26 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2016-03-09 01:26 - 2006-03-31 13:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2016-03-09 01:26 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2016-03-09 01:26 - 2006-03-31 13:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2016-03-09 01:26 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2016-03-09 01:26 - 2006-02-03 09:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2016-03-09 01:26 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2016-03-09 01:26 - 2006-02-03 09:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2016-03-09 01:26 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2016-03-09 01:26 - 2006-02-03 09:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2016-03-09 01:26 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2016-03-09 01:26 - 2005-12-05 19:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2016-03-09 01:26 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2016-03-09 01:26 - 2005-07-22 20:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2016-03-09 01:26 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2016-03-09 01:26 - 2005-05-26 16:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2016-03-09 01:26 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2016-03-09 01:26 - 2005-03-18 18:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2016-03-09 01:26 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2016-03-09 01:26 - 2005-02-05 20:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2016-03-09 01:26 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2016-03-09 01:16 - 2016-03-09 01:24 - 100271992 _____ (Microsoft Corporation) C:\Users\Maciej\Downloads\directx_Jun2010_redist.exe
2016-03-09 01:16 - 2016-03-09 01:16 - 00000000 ____D C:\Users\Maciej\Documents\League of Legends
2016-03-09 00:57 - 2016-03-09 01:25 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\LolClient
2016-03-09 00:56 - 2016-03-09 00:56 - 00000000 ____D C:\ProgramData\Riot Games
2016-03-09 00:35 - 2016-03-18 18:39 - 00000000 ____D C:\Users\Maciej\Desktop\Accel World
2016-03-07 22:16 - 2016-03-26 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Keysticks
2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Users\Maciej\Documents\Keysticks
2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Users\Maciej\AppData\Local\Keysticks.net
2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\ProgramData\Keysticks.net
2016-03-07 22:16 - 2016-03-07 22:16 - 00000000 ____D C:\Program Files (x86)\Keysticks.net
2016-03-07 22:16 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2016-03-07 22:16 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2016-03-07 22:16 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2016-03-07 22:16 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2016-03-07 22:16 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2016-03-07 22:15 - 2016-03-07 22:15 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2016-03-07 22:15 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2016-03-07 22:15 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2016-03-07 22:10 - 2016-03-07 22:12 - 06264728 _____ (T C Brogden Limited) C:\Users\Maciej\Downloads\KeysticksSetup-1.8.1.0.exe
2016-03-07 19:23 - 2016-03-07 19:23 - 00785319 _____ C:\Users\Maciej\Downloads\CreeHack v1.6 Apk by OnHax.apk
2016-03-06 15:29 - 2016-03-07 22:20 - 00000000 ____D C:\Users\Maciej\Downloads\World of Warcraft 3.3.5a
2016-03-05 16:37 - 2016-03-05 16:37 - 00000253 _____ C:\Users\Maciej\Downloads\WoW.mfil
2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\WTF
2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\Errors
2016-03-05 16:37 - 2016-03-05 16:37 - 00000000 ____D C:\Users\Maciej\Downloads\Data
2016-03-05 16:36 - 2016-03-05 16:36 - 10474064 _____ (Blizzard Entertainment) C:\Users\Maciej\Downloads\wow_434.exe
2016-03-05 16:35 - 2016-03-05 16:35 - 00000000 ____D C:\Users\Maciej\Downloads\New folder
2016-03-05 16:34 - 2016-04-03 15:00 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\BitTorrent
2016-03-05 16:34 - 2016-03-05 16:34 - 06682129 _____ C:\Users\Maciej\Downloads\434_mini.7z
2016-03-05 16:33 - 2016-03-05 16:34 - 01930760 _____ (BitTorrent Inc.) C:\Users\Maciej\Downloads\BitTorrent.exe
2016-03-04 01:49 - 2016-03-04 01:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-03 14:59 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-03 14:54 - 2016-01-04 09:09 - 00000000 __RDO C:\Users\Maciej\OneDrive
2016-04-03 14:52 - 2016-02-13 15:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-03 14:52 - 2016-02-13 15:11 - 00206592 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-03 14:51 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-04-03 14:20 - 2016-03-02 23:37 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-04-03 01:38 - 2016-03-02 23:37 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-04-03 00:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-04-02 21:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-02 17:57 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-01 18:01 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-29 00:32 - 2016-03-02 23:38 - 00000000 ____D C:\Users\Maciej\AppData\Local\Google
2016-03-29 00:32 - 2016-03-02 23:37 - 00000000 ____D C:\Program Files (x86)\Google
2016-03-29 00:29 - 2016-03-02 22:13 - 00000000 ____D C:\Users\Maciej\AppData\Local\Opera Software
2016-03-29 00:29 - 2016-03-02 22:12 - 00000000 ____D C:\Program Files (x86)\Opera
2016-03-27 09:53 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-03-27 03:30 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-27 03:27 - 2016-02-13 15:03 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-27 03:27 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-27 03:27 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-27 03:27 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-26 19:39 - 2016-01-04 09:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\Packages
2016-03-26 19:28 - 2015-10-30 09:18 - 00686984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-03-26 19:28 - 2015-10-30 09:18 - 00535088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-03-26 19:16 - 2016-02-13 14:55 - 00000000 ____D C:\WINDOWS\OCR
2016-03-26 19:09 - 2016-03-02 21:26 - 00000000 ____D C:\Program Files (x86)\Intel
2016-03-26 19:09 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-26 19:00 - 2016-02-13 15:20 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-26 18:57 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-26 18:55 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-26 18:54 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration
2016-03-26 18:52 - 2016-03-02 23:37 - 00003186 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-03-26 18:52 - 2016-03-02 23:37 - 00002898 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-03-26 18:49 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-26 18:44 - 2016-02-04 03:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tibia
2016-03-26 18:44 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-26 18:44 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-03-26 18:43 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-03-26 18:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-03-26 18:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-03-26 18:41 - 2015-10-30 09:26 - 00000000 ____D C:\WINDOWS\Setup
2016-03-26 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-26 18:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2016-03-26 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS
2016-03-26 18:39 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-26 17:09 - 2016-02-13 16:21 - 00000000 ___HD C:\$WINDOWS.~BT
2016-03-25 23:49 - 2016-01-04 09:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualStore
2016-03-25 22:37 - 2016-03-03 19:33 - 00127488 ___SH C:\Users\Maciej\Desktop\Thumbs.db
2016-03-10 16:20 - 2016-03-02 21:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-10 16:15 - 2016-03-02 21:21 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-08 09:12 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-08 09:12 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2016-03-26 16:06 - 2016-03-26 16:06 - 6493696 _____ () C:\Users\Maciej\AppData\Roaming\agent.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 0065424 _____ () C:\Users\Maciej\AppData\Roaming\Config.xml
2016-03-26 16:06 - 2016-03-26 16:06 - 1621131 _____ () C:\Users\Maciej\AppData\Roaming\Geotom.tst
2016-03-25 23:49 - 2016-03-25 23:49 - 0005120 _____ () C:\Users\Maciej\AppData\Roaming\GiftBag.db
2016-03-26 16:04 - 2016-03-26 16:04 - 0268024 _____ () C:\Users\Maciej\AppData\Roaming\inst.lat
2016-03-26 16:04 - 2016-03-26 16:05 - 0017760 _____ () C:\Users\Maciej\AppData\Roaming\InstallationConfiguration.xml
2016-03-26 16:04 - 2016-03-26 16:04 - 0127488 _____ () C:\Users\Maciej\AppData\Roaming\Installer.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 0018432 _____ () C:\Users\Maciej\AppData\Roaming\Main.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 0126464 _____ () C:\Users\Maciej\AppData\Roaming\noah.dat
2016-03-26 16:06 - 2016-03-26 16:06 - 0032038 _____ () C:\Users\Maciej\AppData\Roaming\uninstall_temp.ico

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll
[2015-10-30 09:18] - [2016-03-26 19:28] - 0686984 ____A (Microsoft Corporation) 310C74442B7C4A9C0878F190F4E6AA3D

C:\WINDOWS\SysWOW64\dnsapi.dll
[2015-10-30 09:18] - [2016-03-26 19:28] - 0535088 ____A (Microsoft Corporation) 57844EB677C4C3B54C62E5A917DB8772

C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-03-26 18:34

==================== End of FRST.txt ============================

 

Opublikowano

.txt z ADW ktore pojawilo sie po restarcie

 

 

# AdwCleaner v5.109 - Logfile created 09/04/2016 at 16:48:41
# Updated 04/04/2016 by Xplode
# Database : 2016-04-07.1 [server]
# Operating system : Windows 10 Home  (x64)
# Username : Maciej - MACIEK
# Running from : C:\Users\Maciej\Downloads\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
[-] Service Deleted : bsdriver
[-] Service Deleted : cherimoya
[-] Service Deleted : Winsere
 
***** [ Folders ] *****
 
[-] Folder Deleted : C:\Program Files\Windows Screen Manager
[-] Folder Deleted : C:\Program Files (x86)\SearchesToYesbnd
[-] Folder Deleted : C:\Program Files (x86)\Winsere
[-] Folder Deleted : C:\Program Files (x86)\WinTaske
[-] Folder Deleted : C:\Program Files (x86)\Hostify
[-] Folder Deleted : C:\Program Files (x86)\Common Files\tencent
[-] Folder Deleted : C:\Program Files\Common Files\tencent
[-] Folder Deleted : C:\ProgramData\TXQMPC
[#] Folder Deleted : C:\ProgramData\Application Data\TXQMPC
[-] Folder Deleted : C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414
[-] Folder Deleted : C:\Users\Maciej\AppData\Local\VirtualStore\Program Files (x86)\tencent
[-] Folder Deleted : C:\Users\Maciej\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
[-] Folder Deleted : C:\Users\Maciej\AppData\Roaming\yoursearching
[-] Folder Deleted : C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
 
***** [ Files ] *****
 
[#] File Deleted : C:\WINDOWS\SysNative\drivers\bsdriver.sys
[#] File Deleted : C:\WINDOWS\SysNative\drivers\cherimoya.sys
[-] File Deleted : C:\WINDOWS\SysNative\drivers\TFsFltX64.sys
[-] File Deleted : C:\WINDOWS\SysWOW64\findit.xml
[-] File Deleted : C:\WINDOWS\SysWOW64\drivers\TS888x64.sys
 
***** [ DLLs ] *****
 
[-] File Disinfected : C:\WINDOWS\Sysnative\dnsapi.dll
[-] File Disinfected : C:\WINDOWS\SysWOW64\dnsapi.dll
 
***** [ Shortcuts ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Registry ] *****
 
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Value Deleted : HKCU\Environment [sNF]
[-] Value Deleted : HKCU\Environment [sNP]
[-] Key Deleted : HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Key Deleted : HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\metnsd
[-] Key Deleted : HKLM\SOFTWARE\Classes\qmgcfiles
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{425F4ABF-B8E4-402D-9E49-06E494EB8DBF}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7D8DAE88-BC05-4578-8C29-E541FFBA5757}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8FF10FED-2F0A-4F7F-BE87-B04F1DCD4319}
[-] Key Deleted : HKLM\SOFTWARE\Classes\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{14EF423E-3EE8-44AE-9337-07AC3F27B744}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{29B6CFD5-0064-411A-8C42-9890C83F9921}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
[-] Key Deleted : HKCU\Software\DAILYPCCLEAN
[-] Key Deleted : HKCU\Software\dobreprogramy
[-] Key Deleted : HKCU\Software\IM
[-] Key Deleted : HKCU\Software\Microsoft\Tinstalls
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\MICROSOFT\OTUT
[-] Key Deleted : HKLM\SOFTWARE\mysites123Software
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\yessearchesSoftware
[-] Key Deleted : HKLM\SOFTWARE\yoursearchingSoftware
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
[-] Key Deleted : [x64] HKLM\SOFTWARE\SpaceSoundPro
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{D0CA90D0-8363-48B0-9D08-368DD4A8293F}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{8718B2E4-0680-4517-A07B-AE01322B4437}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{ADC0D4E4-0F07-4261-9076-3D8CAE461823}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{292F6E29-80EA-4794-8882-B2921E39BA29}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{E66EBE68-10AB-4BF4-9A48-B86EA5C9077E}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{FE6CB918-1243-42D1-8655-2320934DAEC0}]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{138c8c5a-2e2a-4f36-9233-4738134a8276} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{857d6415-da12-49ba-b9f2-b76193aa1c2f} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8718928d-cbeb-45ea-a621-800a9249001d} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8ce2e15c-ff02-4bb1-9aa4-83cd8657e6e1} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{af6c8ed2-d532-41b7-8172-16fea9cfb55f} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{cbd48f7b-05d1-4a79-8298-ea266339d554} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{cd3daecf-48fd-4202-aa63-740a9e086eee} [NameServer]
 
***** [ Web browsers ] *****
 
 
*************************
 
:: "Tracing" keys deleted
:: Winsock settings cleared
 
*************************
 
C:\AdwCleaner\AdwCleaner[C1].txt - [7079 bytes] - [09/04/2016 16:48:41]
C:\AdwCleaner\AdwCleaner[s1].txt - [7311 bytes] - [09/04/2016 16:00:48]
 
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7225 bytes] ##########

 
A tutaj przykladowa strona, by pokazac jak wygladaja te reklamy
Opublikowano

Zmienilem DNS, lecz wydaje mi sie ze nadal bedzie to samo, poniewaz nie wiem co mam wpisac w ta druga linike pod tym 8.8.8.8 i 8.8.4.4

 

FixLog.txt

Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01

Ran by Maciej (2016-04-03 19:27:21) Run:2
Running from C:\Users\Maciej\Downloads
Loaded Profiles: Maciej (Available Profiles: Maciej)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Closeprocesses:
C:\program files (x86)\common files\Tencet
R4 PsBoot; system32\Drivers\PsBoot.sys [X]
 
 
 
CMD: dir /a "C:\Users\Maciej\appdata\Local"
CMD: dir /a "C:\Users\Maciej\appdata\Roaming"
CMD: dir /a "C:\Users\Maciej\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
CMD: dir /a "C:\program files (x86)\common files"
*****************
 
Processes closed successfully.
"C:\program files (x86)\common files\Tencet" => not found.
PsBoot => Unable to stop service.
PsBoot => service removed successfully
 
=========  dir /a "C:\Users\Maciej\appdata\Local" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Users\Maciej\appdata\Local
 
04/03/2016  00:29    <DIR>          .
04/03/2016  00:29    <DIR>          ..
04/03/2016  14:50    <DIR>          00000011-1459201237-0000-0000-08606E906414
03/26/2016  16:27    <DIR>          3810282D-6C19-47B0-8283-5C6C29A7E108
03/26/2016  19:02    <DIR>          ActiveSync
03/03/2016  03:01    <DIR>          Adobe
03/26/2016  16:33    <DIR>          app
03/26/2016  18:40    <JUNCTION>     Application Data [C:\Users\Maciej\AppData\Local]
03/14/2016  01:17    <DIR>          Chris_Pietschmann_(http__
03/26/2016  19:01    <DIR>          Comms
03/16/2016  23:14    <DIR>          Diagnostics
03/17/2016  20:37    <DIR>          Downloaded Installations
04/03/2016  00:13    <DIR>          EMU
03/12/2016  14:20    <DIR>          Gameforge4d
03/29/2016  00:32    <DIR>          Google
01/04/2016  09:09    <DIR>          GWX
03/26/2016  18:40    <JUNCTION>     History [C:\Users\Maciej\AppData\Local\Microsoft\Windows\History]
04/03/2016  14:51           129,132 IconCache.db
03/12/2016  18:43    <DIR>          IsolatedStorage
03/07/2016  22:16    <DIR>          Keysticks.net
03/27/2016  15:40    <DIR>          Microsoft
03/26/2016  19:23    <DIR>          MicrosoftEdge
03/28/2016  19:12    <DIR>          My Games
03/26/2016  20:42    <DIR>          NetworkTiles
03/29/2016  00:29    <DIR>          Opera Software
03/26/2016  19:39    <DIR>          Packages
02/04/2016  03:40    <DIR>          Programs
03/26/2016  19:02    <DIR>          Publishers
03/12/2016  23:21    <DIR>          Red 5 Studios
03/24/2016  22:44    <DIR>          SatyCreations
04/03/2016  19:27    <DIR>          Temp
03/26/2016  19:20    <DIR>          Tempfolder
03/26/2016  18:40    <JUNCTION>     Temporary Internet Files [C:\Users\Maciej\AppData\Local\Microsoft\Windows\INetCache]
03/26/2016  19:00    <DIR>          TileDataLayer
03/26/2016  16:05    <DIR>          tuto_monetize_120160325
03/26/2016  16:10    <DIR>          tuto_monetize_220160325
03/17/2016  20:38    <DIR>          VirtualRouterPlus
03/25/2016  23:49    <DIR>          VirtualStore
               1 File(s)        129,132 bytes
              37 Dir(s)  222,304,088,064 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Users\Maciej\appdata\Roaming" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Users\Maciej\appdata\Roaming
 
03/29/2016  01:01    <DIR>          .
03/29/2016  01:01    <DIR>          ..
03/16/2016  19:15    <DIR>          .mono
04/02/2016  19:05    <DIR>          Abesju
01/04/2016  09:07    <DIR>          Adobe
03/26/2016  16:06         6,493,696 agent.dat
04/03/2016  19:26    <DIR>          BitTorrent
03/26/2016  16:06            65,424 Config.xml
03/26/2016  16:06         1,621,131 Geotom.tst
03/25/2016  23:49             5,120 GiftBag.db
03/26/2016  16:04           268,024 inst.lat
03/26/2016  16:05            17,760 InstallationConfiguration.xml
03/26/2016  16:04           127,488 Installer.dat
03/26/2016  19:19    <DIR>          Jolkamri
03/09/2016  01:25    <DIR>          LolClient
01/05/2016  01:22    <DIR>          Macromedia
03/26/2016  16:06            18,432 Main.dat
03/26/2016  19:05    <DIR>          MCorp
04/03/2016  01:25    <DIR>          Microsoft
03/26/2016  16:06    <DIR>          Mozilla
03/26/2016  16:28    <DIR>          mysites123
03/26/2016  16:06           126,464 noah.dat
03/02/2016  22:13    <DIR>          Opera Software
04/03/2016  14:44    <DIR>          Panda Security
03/16/2016  19:13    <DIR>          Pok�mon Trading Card Game Online
04/03/2016  18:55    <DIR>          Skype
03/13/2016  21:19    <DIR>          Steam
03/25/2016  23:57    <DIR>          Tencent
03/28/2016  23:56    <DIR>          TijusOiath
04/02/2016  19:06    <DIR>          Udiwufuo
03/26/2016  16:06            32,038 uninstall_temp.ico
03/27/2016  12:27    <DIR>          W10LogonChanger
03/12/2016  18:31    <DIR>          WinRAR
03/29/2016  01:02    <DIR>          yoursearching
              10 File(s)      8,775,577 bytes
              24 Dir(s)  222,304,083,968 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Users\Maciej\appdata\Locallow" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Users\Maciej\appdata\Locallow
 
04/03/2016  14:53    <DIR>          .
04/03/2016  14:53    <DIR>          ..
04/03/2016  14:53    <DIR>          BitTorrent
03/26/2016  16:04    <DIR>          Company
01/04/2016  09:10    <DIR>          Microsoft
03/13/2016  21:19    <DIR>          Monomi Park
03/16/2016  19:13    <DIR>          The Pok__mon Company International
03/16/2016  19:13    <DIR>          Unity
03/26/2016  16:04    <DIR>          {D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
               0 File(s)              0 bytes
               9 Dir(s)  222,304,083,968 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Program Files (x86)" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Program Files (x86)
 
04/03/2016  17:57    <DIR>          .
04/03/2016  17:57    <DIR>          ..
03/28/2016  18:43    <DIR>          2K Games
03/14/2016  19:31    <DIR>          ALLPlayer
03/14/2016  19:31    <DIR>          ALLPlayer Remote
03/26/2016  19:05    <DIR>          ASUS
03/26/2016  18:41    <DIR>          Common Files
10/30/2015  09:21               174 desktop.ini
03/29/2016  00:32    <DIR>          Google
03/25/2016  01:53    <DIR>          GSAutoClicker3
03/29/2016  00:56    <DIR>          Hostify
03/26/2016  19:09    <DIR>          Intel
03/27/2016  03:27    <DIR>          Internet Explorer
03/07/2016  22:16    <DIR>          Keysticks.net
04/03/2016  00:28    <DIR>          Life Is Strange
03/07/2016  22:15    <DIR>          Microsoft XNA
10/30/2015  09:24    <DIR>          Microsoft.NET
03/27/2016  03:17    <DIR>          MSBuild
03/14/2016  19:31    <DIR>          Napisy24
03/29/2016  00:29    <DIR>          Opera
03/13/2016  22:59    <DIR>          Orange Connection
04/03/2016  14:45    <DIR>          Panda Security
03/25/2016  19:23    <DIR>          ProxyFinderEnterprise
03/27/2016  03:17    <DIR>          Reference Assemblies
03/26/2016  19:35    <DIR>          SearchesToYesbnd
04/03/2016  18:02    <DIR>          Sid Meiers Civilization Beyond Earth
03/24/2016  16:59    <DIR>          Skype
02/04/2016  03:40    <DIR>          Tibia
04/03/2016  14:48    <DIR>          Virtual Router
02/13/2016  14:51    <DIR>          Windows Defender
02/13/2016  14:51    <DIR>          Windows Mail
02/13/2016  14:51    <DIR>          Windows Media Player
03/27/2016  03:27    <DIR>          Windows Multimedia Platform
10/30/2015  09:24    <DIR>          Windows NT
02/13/2016  14:51    <DIR>          Windows Photo Viewer
03/27/2016  03:27    <DIR>          Windows Portable Devices
10/30/2015  09:24    <DIR>          Windows Sidebar
10/30/2015  09:24    <DIR>          WindowsPowerShell
03/26/2016  16:26    <DIR>          Winsere
03/26/2016  16:26    <DIR>          WinTaske
               1 File(s)            174 bytes
              39 Dir(s)  222,304,079,872 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\Program Files" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\Program Files
 
04/03/2016  14:47    <DIR>          .
04/03/2016  14:47    <DIR>          ..
04/03/2016  01:19    <DIR>          CCleaner
03/26/2016  18:41    <DIR>          Common Files
10/30/2015  09:21               174 desktop.ini
03/26/2016  18:37    <DIR>          Intel
03/27/2016  03:27    <DIR>          Internet Explorer
04/03/2016  00:22    <DIR>          Life Is Strange
03/27/2016  03:17    <DIR>          MSBuild
03/27/2016  03:17    <DIR>          Reference Assemblies
02/13/2016  15:15    <DIR>          Uninstall Information
02/13/2016  14:51    <DIR>          Windows Defender
03/27/2016  03:27    <DIR>          Windows Journal
02/13/2016  14:51    <DIR>          Windows Mail
03/27/2016  03:27    <DIR>          Windows Media Player
03/27/2016  03:27    <DIR>          Windows Multimedia Platform
10/30/2015  09:24    <DIR>          Windows NT
02/13/2016  14:51    <DIR>          Windows Photo Viewer
03/27/2016  03:27    <DIR>          Windows Portable Devices
03/29/2016  00:40    <DIR>          Windows Screen Manager
10/30/2015  09:24    <DIR>          Windows Sidebar
04/01/2016  18:01    <DIR>          WindowsApps
10/30/2015  09:24    <DIR>          WindowsPowerShell
03/12/2016  18:31    <DIR>          WinRAR
               1 File(s)            174 bytes
              23 Dir(s)  222,304,079,872 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\ProgramData" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\ProgramData
 
04/03/2016  00:01    <DIR>          .
04/03/2016  00:01    <DIR>          ..
03/16/2016  19:19    <DIR>          .mono
03/14/2016  19:31    <DIR>          ALLPlayer
03/14/2016  19:31    <DIR>          ALLPlayerRemote
03/26/2016  18:55    <JUNCTION>     Application Data [C:\ProgramData]
04/03/2016  14:56    <DIR>          ASUS Smart Gesture
03/26/2016  16:11    <DIR>          BWdMB
10/30/2015  09:24    <DIR>          Comms
03/13/2016  23:13    <DIR>          DatacardService
03/26/2016  18:55    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
03/26/2016  18:55    <JUNCTION>     Documents [C:\Users\Public\Documents]
03/26/2016  16:10    <DIR>          eWdMe
03/07/2016  22:16    <DIR>          Keysticks.net
03/17/2016  15:08    <DIR>          log
03/26/2016  18:59    <DIR>          Microsoft
02/13/2016  15:20    <DIR>          Microsoft OneDrive
03/14/2016  19:31    <DIR>          Napisy24
03/26/2016  19:09               258 ntuser.pol
03/17/2016  15:08    <DIR>          OnlineUpdate
03/13/2016  22:59    <DIR>          Orange Connection
04/03/2016  00:01    <DIR>          Package Cache
04/03/2016  14:45    <DIR>          Panda Security
04/03/2016  14:39    <DIR>          panda_url_filtering
02/13/2016  15:03    <DIR>          regid.1991-06.com.microsoft
03/09/2016  00:56    <DIR>          Riot Games
03/26/2016  19:05    <DIR>          SetupTPDriver
03/24/2016  16:59    <DIR>          Skype
10/30/2015  09:24    <DIR>          SoftwareDistribution
03/26/2016  18:55    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
03/28/2016  19:11    <DIR>          Steam
03/26/2016  18:55    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
03/25/2016  23:59    <DIR>          TXQMPC
02/13/2016  15:15    <DIR>          USOPrivate
02/13/2016  15:15    <DIR>          USOShared
               1 File(s)            258 bytes
              34 Dir(s)  222,304,079,872 bytes free
 
========= End of CMD: =========
 
 
=========  dir /a "C:\program files (x86)\common files" =========
 
 Volume in drive C has no label.
 Volume Serial Number is 68FF-2BEE
 
 Directory of C:\program files (x86)\common files
 
03/26/2016  18:41    <DIR>          .
03/26/2016  18:41    <DIR>          ..
03/26/2016  18:36    <DIR>          Intel
03/26/2016  18:41    <DIR>          Microsoft Shared
10/30/2015  09:24    <DIR>          Services
03/24/2016  16:59    <DIR>          Skype
02/13/2016  14:51    <DIR>          System
03/25/2016  23:48    <DIR>          Tencent
               0 File(s)              0 bytes
               8 Dir(s)  222,304,075,776 bytes free
 
========= End of CMD: =========
 
 
 
The system needed a reboot.
 
==== End of Fixlog 19:27:29 ====

Opublikowano

Jeszcze nie, z tymi podziękowaniami chodziło mi o to ze dziękuje Ci za to ze poświęcasz czas Mojej osobie :P

 

 

 

# AdwCleaner v5.109 - Logfile created 09/04/2016 at 16:00:48
# Updated 04/04/2016 by Xplode
# Database : 2016-04-07.1 [server]
# Operating system : Windows 10 Home  (x64)
# Username : Maciej - MACIEK
# Running from : C:\Users\Maciej\Downloads\AdwCleaner.exe
# Option : Scan
 
***** [ Services ] *****
 
Service Found : bsdriver
Service Found : cherimoya
Service Found : Winsere
 
***** [ Folders ] *****
 
Folder Found : C:\Program Files\Windows Screen Manager
Folder Found : C:\Program Files (x86)\SearchesToYesbnd
Folder Found : C:\Program Files (x86)\Winsere
Folder Found : C:\Program Files (x86)\WinTaske
Folder Found : C:\Program Files (x86)\Hostify
Folder Found : C:\Program Files (x86)\Common Files\tencent
Folder Found : C:\Program Files\Common Files\tencent
Folder Found : C:\ProgramData\TXQMPC
Folder Found : C:\ProgramData\Application Data\TXQMPC
Folder Found : C:\Users\Maciej\AppData\Local\00000011-1459201237-0000-0000-08606E906414
Folder Found : C:\Users\Maciej\AppData\Local\VirtualStore\Program Files (x86)\tencent
Folder Found : C:\Users\Maciej\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
Folder Found : C:\Users\Maciej\AppData\Roaming\yoursearching
Folder Found : C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
 
***** [ Files ] *****
 
File Found : C:\WINDOWS\SysNative\drivers\bsdriver.sys
File Found : C:\WINDOWS\SysNative\drivers\cherimoya.sys
File Found : C:\WINDOWS\SysNative\drivers\TFsFltX64.sys
File Found : C:\WINDOWS\SysWOW64\findit.xml
File Found : C:\WINDOWS\SysWOW64\drivers\TS888x64.sys
 
***** [ DLL ] *****
 
File Infected : C:\WINDOWS\Sysnative\dnsapi.dll
File Infected : C:\WINDOWS\SysWOW64\dnsapi.dll
 
***** [ Shortcuts ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Registry ] *****
 
Key Found : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
Value Found : HKCU\Environment [sNF]
Value Found : HKCU\Environment [sNP]
Key Found : HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
Key Found : HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
Key Found : HKLM\SOFTWARE\Classes\metnsd
Key Found : HKLM\SOFTWARE\Classes\qmgcfiles
Key Found : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
Key Found : HKLM\SOFTWARE\Classes\AppID\{425F4ABF-B8E4-402D-9E49-06E494EB8DBF}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{7D8DAE88-BC05-4578-8C29-E541FFBA5757}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{8FF10FED-2F0A-4F7F-BE87-B04F1DCD4319}
Key Found : HKLM\SOFTWARE\Classes\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Key Found : HKLM\SOFTWARE\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{14EF423E-3EE8-44AE-9337-07AC3F27B744}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{29B6CFD5-0064-411A-8C42-9890C83F9921}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Found : HKCU\Software\DAILYPCCLEAN
Key Found : HKCU\Software\dobreprogramy
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\Microsoft\Tinstalls
Key Found : HKCU\Software\TutoTag
Key Found : HKCU\Software\MICROSOFT\OTUT
Key Found : HKLM\SOFTWARE\mysites123Software
Key Found : HKLM\SOFTWARE\Tutorials
Key Found : HKLM\SOFTWARE\yessearchesSoftware
Key Found : HKLM\SOFTWARE\yoursearchingSoftware
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Key Found : [x64] HKLM\SOFTWARE\SpaceSoundPro
Key Found : HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\DAILYPCCLEAN
Key Found : HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\dobreprogramy
Key Found : HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\IM
Key Found : HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\Microsoft\Tinstalls
Key Found : HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\TutoTag
Key Found : HKU\S-1-5-21-302128576-430233443-2040676304-1001\Software\MICROSOFT\OTUT
Value Found : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{D0CA90D0-8363-48B0-9D08-368DD4A8293F}]
Value Found : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{8718B2E4-0680-4517-A07B-AE01322B4437}]
Value Found : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{ADC0D4E4-0F07-4261-9076-3D8CAE461823}]
Value Found : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{292F6E29-80EA-4794-8882-B2921E39BA29}]
Value Found : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{E66EBE68-10AB-4BF4-9A48-B86EA5C9077E}]
Value Found : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{FE6CB918-1243-42D1-8655-2320934DAEC0}]
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{138c8c5a-2e2a-4f36-9233-4738134a8276} [NameServer] - 104.197.191.4
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{857d6415-da12-49ba-b9f2-b76193aa1c2f} [NameServer] - 104.197.191.4
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8718928d-cbeb-45ea-a621-800a9249001d} [NameServer] - 104.197.191.4
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{8ce2e15c-ff02-4bb1-9aa4-83cd8657e6e1} [NameServer] - 104.197.191.4
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{af6c8ed2-d532-41b7-8172-16fea9cfb55f} [NameServer] - 104.197.191.4
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{cbd48f7b-05d1-4a79-8298-ea266339d554} [NameServer] - 104.197.191.4
Data Found : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{cd3daecf-48fd-4202-aa63-740a9e086eee} [NameServer] - 104.197.191.4
 
***** [ Web browsers ] *****
 
 
*************************
 
C:\AdwCleaner\AdwCleaner[s1].txt - [7136 bytes] - [09/04/2016 16:00:48]
 
########## EOF - C:\AdwCleaner\AdwCleaner[s1].txt - [7209 bytes] ##########

Opublikowano

Na spokojnie. system jest zarażony kilkoma wirusami Adware, niektóre są ciężkie do usunięcia.

Closeprocesses:
C:\Users\Maciej\appdata\Roaming\mysites123
C:\Users\Maciej\appdata\Roaming\Tencent
C:\Program Files (x86)\SearchesToYesbnd
C:\program files (x86)\common files\Tencet

CMD: dir /a "C:\Users\Maciej\appdata\Local"
CMD: dir /a "C:\Users\Maciej\appdata\Roaming"
CMD: dir /a "C:\Users\Maciej\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
CMD: dir /a "C:\program files (x86)\common files"
zapisz jako fixlist.txt umieść obok FRST i kliknij FIX/Napraw. Po restarcie zamieść fixlog na forum

Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...