Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz
  • 0

Wirusy win 8.1 pro


MrotekGaming

Pytanie

Opublikowano

Cześć, wkradły mi się jakieś wirusy instalujące dziwne programy, oraz wywalające reklamy.

 

FRST:

 

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:27-04-2016
Uruchomiony przez Maciej (administrator) MACIEK (28-04-2016 21:21:45)
Uruchomiony z C:\Users\Maciej\Downloads
Załadowane profile: Maciej (Dostępne profile: Maciej)
Platform: Windows 8.1 Pro (Update 1) (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files\Rasdytw\Runboa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
() C:\Program Files (x86)\34323030-1461867215-3741-4643-3135FFFFFFFF\knsk4600.tmpfs
() C:\Program Files\Rasdytw\DijpeKahk.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
() C:\Program Files\Rasdytw\Piandarc64.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
() C:\Users\Maciej\AppData\Local\Temp\22.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) C:\Program Files (x86)\Steam\GameOverlayUI.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TeamSpeak Systems GmbH) C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe
() C:\Users\Maciej\Downloads\v4hs7nip.exe


==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161728 2015-11-12] (IvoSoft)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-04-14] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3930384 2016-04-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [22] => C:\Users\Maciej\AppData\Local\Temp\22.exe [3680768 2016-04-28] () <===== UWAGA
HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [51656320 2016-04-08] (Skype Technologies S.A.)
HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\...\Run: [steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-03-31] (Valve Corporation)
HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\...\Run: [uTorrent] => C:\Users\Maciej\AppData\Roaming\uTorrent\uTorrent.exe [1959424 2016-04-24] (BitTorrent Inc.)
ShellIconOverlayIdentifiers: [shareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [shareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (IvoSoft)

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{47AC0AB0-A67B-43C0-811B-341C4CBE71DD}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{47AC0AB0-A67B-43C0-811B-341C4CBE71DD}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{8718928D-CBEB-45EA-A621-800A9249001D}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{bbed3e08-0b41-11e3-8249-806e6f6e6963}: [NameServer] 104.197.191.4

Internet Explorer:
==================
HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=93018773_hao_pg
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (IvoSoft)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-11-12] (IvoSoft)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (IvoSoft)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-11-12] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (IvoSoft)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-24] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-24] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBP-OqRkK_4g5H3zXx0q1D1XXsHhKKzkrGfutJ42VIE43jdby06grJ4kewieME2p8GGmMsrWbEXC_WBLZtGHtCutbRz1fawiY4ygNCEzBl-oAM5jLvrUtUIGfNm8ra0LtEaerJwKjB0eGoP6dolfFriLa6Dx8scao0sEjMDjjTOr4c,
CHR StartupUrls: Default -> "hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=F837001E8C877314&affID=119294&tsp=4960","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380220599","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380288108","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380295139","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380306791","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380309931","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380358344","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380365654","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380376767","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380443910","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380447521","hxxp://mysearch.avg.com?cid={A4ACEF1D-D83F-432B-8205-8775AF3993B9}&mid=e619d3b7808647d2a1ead157ca639ae7-14f59128680cac54cfb6b722ab1aa7fce97a516d〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-02-06 18:07:50&v=17.3.1.91&pid=safeguard&sg=&sap=hp","hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRa0T-NJ1bNV5iGB7j76kR7EOZGkeQkbUBtqSnxyncrRE33KckNPn0Vx9PzkWmR57FbPcBE43N0GJMD-7CmEopXJUZZO7-8ug_3cjZdmZczlZ9IRNxDCCksnHN2ZHk7r421m5CLmvylEmdZjS_QeQJJid556R3M5LRNDONs-X23CZc3mQJGM,","hxxp://www.sweet-page.com/?type=hp&ts=1399910256&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400240706&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400616588&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400693095&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400762138&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400778667&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://start.qone8.com/?type=hp&ts=1400740707&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400789659&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400824872&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400848639&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400868406&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400872346&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400910940&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400943761&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400962881&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401002033&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401041430&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401052942&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401136353&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401208133&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401286591&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401292532&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401373531&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401460752&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401475359&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401481414&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401526558&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401531465&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401572028&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401612697&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401632438&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401642507&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401717736&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401736544&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401743684&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401806649&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401811305&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401901997&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401912926&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401976015&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401979502&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402003254&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402060626&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402088835&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402125875&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402128084&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402161721&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402171121&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402227416&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402257686&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402294544&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402328809&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402330263&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402347466&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402413746&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402417808&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402432512&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402433398&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402507243&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402515442&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402600652&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402606854&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://www.delta-homes.com/?type=hp&ts=1402607114&from=wpm0612&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://www.mystartsearch.com/?type=hp&ts=1418068828&from=smt&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.istartsurf.com/?type=hp&ts=1429474365&from=smt&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.istartsurf.com/?type=hppp&ts=1429474396&from=smt&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.hohosearch.com/?mode=nnnb&ptid=clc&uid=EFF498F67F22E488C6CDF6FEA50F02E1&v=20160415&ts=AHEqAHIlAH4qBU..","hxxp://www.hohosearch.com/?mode=nnnb&ptid=amz&uid=EFF498F67F22E488C6CDF6FEA50F02E1&v=20160421&ts=AHEqAHIlAH8kC0..","hxxp://www.hohosearch.com/?mode=nnnb&ptid=amz&uid=EFF498F67F22E488C6CDF6FEA50F02E1&v=20160425&ts=AHEqAHUqBn8sA0.."
CHR Profile: C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-24]
CHR Extension: (Dysk Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-24]
CHR Extension: (YouTube) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-24]
CHR Extension: (Slither.io Skins, Mods, Hack & Guide) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\dggomkijbihggjgcgdbnleolpleddaid [2016-04-28]
CHR Extension: (Lounge Assistant) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\enjonnlehciedbcidabdglnnihcncbml [2016-04-24]
CHR Extension: (Arkusze Google) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-24]
CHR Extension: (LoungeDestroyer) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghahcnmfjfckcedfajbhekgknjdplfcl [2016-04-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-24]
CHR Extension: (AdBlock) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-04-24]
CHR Extension: (Video download helper) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\mngdadkapbemiekajhhalpakdpleogfn [2016-04-24]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-24]
CHR Extension: (Gmail) - C:\Users\Maciej\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-04-24]

==================== Usługi (filtrowane) ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 9292BEFE-D830-4F5B-8A3D-C004968A1B4D; C:\Program Files\Rasdytw\Runboa.exe [278384 2016-04-28] ()
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [638456 2016-04-06] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3993088 2016-04-06] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1074448 2016-04-14] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [593880 2016-04-06] (AVG Technologies CZ, s.r.o.)
R2 DijpeKahk; C:\Program Files\Rasdytw\DijpeKahk.exe [539504 2016-04-28] ()
S2 Drvcoresrv; C:\Program Files (x86)\Dravsynlether\Drvcoresrv.exe [302232 2016-04-27] ()
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120712 2016-04-28] (Electronic Arts)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
R2 cenysusyzbt; C:\Program Files (x86)\34323030-1461867215-3741-4643-3135FFFFFFFF\knsk4600.tmpfs [X]
S2 Rasdytw Updater; C:\Program Files\Rasdytw\Ipelpi.exe [X]

===================== Sterowniki (filtrowane) ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162592 2016-02-16] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [306976 2016-03-08] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-26] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [246560 2016-03-07] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-12-04] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [71456 2016-03-08] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [315840 2015-12-16] (AVG Technologies CZ, s.r.o.)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
S1 cherimoya; system32\drivers\cherimoya.sys [X]
U3 ufldypod; \??\C:\Users\Maciej\AppData\Local\Temp\ufldypod.sys [X]

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-04-28 21:21 - 2016-04-28 21:22 - 00022536 _____ C:\Users\Maciej\Downloads\FRST.txt
2016-04-28 21:21 - 2016-04-28 21:21 - 02376704 _____ (Farbar) C:\Users\Maciej\Downloads\FRST64.exe
2016-04-28 21:20 - 2016-04-28 21:20 - 00380928 _____ C:\Users\Maciej\Downloads\v4hs7nip.exe
2016-04-28 21:10 - 2016-04-28 21:10 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow0000002263345228
2016-04-28 21:10 - 2016-04-28 21:10 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow0000002263345158
2016-04-28 21:10 - 2016-04-28 21:10 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow0000002263344C78
2016-04-28 20:26 - 2016-04-28 21:07 - 00000000 ____D C:\Users\Maciej\Doctor Web
2016-04-28 20:23 - 2016-04-28 20:26 - 189822704 _____ C:\Users\Maciej\Downloads\fxm2pf33.exe
2016-04-28 20:23 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow01499BB0
2016-04-28 20:23 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow01496518
2016-04-28 20:23 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow0146F230
2016-04-28 20:23 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow000000D5BD935228
2016-04-28 20:23 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow000000D5BD935158
2016-04-28 20:23 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow000000D5BD9345F8
2016-04-28 20:22 - 2016-04-28 20:22 - 00000000 __SHD C:\Users\Maciej\AppData\LocalLow\EmieSiteList
2016-04-28 20:18 - 2016-04-28 20:18 - 00008714 _____ C:\WINDOWS\System32\Tasks\Atagary Verfier
2016-04-28 20:17 - 2016-04-28 21:09 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Jeqgohci
2016-04-28 20:17 - 2016-04-28 21:09 - 00000000 ____D C:\Program Files\Rasdytw
2016-04-28 20:17 - 2016-04-28 20:23 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\UvucvSelwiup
2016-04-28 20:17 - 2016-04-28 20:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-04-28 20:17 - 2016-04-28 20:19 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-04-28 20:17 - 2016-04-28 20:17 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\Company
2016-04-28 20:17 - 2016-04-28 20:17 - 00000000 ____D C:\Users\Maciej\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
2016-04-28 20:17 - 2016-04-28 20:17 - 00000000 ____D C:\Users\Maciej\AppData\Local\Tempfolder
2016-04-28 20:17 - 2016-04-28 20:17 - 00000000 ____D C:\Program Files\RasdytwUn
2016-04-28 20:16 - 2016-04-28 21:07 - 00000000 ____D C:\Program Files (x86)\hohobnd
2016-04-28 20:16 - 2016-04-28 20:22 - 00000000 ____D C:\Users\Maciej\AppData\Local\34323030-1461874614-3741-4643-3135FFFFFFFF
2016-04-28 20:16 - 2016-04-28 20:19 - 00000000 ____D C:\Program Files (x86)\Atagary
2016-04-28 20:16 - 2016-04-28 20:18 - 00000000 ____D C:\Program Files (x86)\CleanBrowser
2016-04-28 20:16 - 2016-04-28 20:16 - 00406872 _____ C:\Users\Maciej\Downloads\RldOrigin.rar
2016-04-28 20:16 - 2016-04-28 20:16 - 00008882 _____ C:\WINDOWS\System32\Tasks\Dravsynlether Core
2016-04-28 20:16 - 2016-04-28 20:16 - 00000000 ____D C:\Program Files (x86)\Dravsynlether
2016-04-28 20:15 - 2016-04-28 20:16 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-04-28 20:13 - 2016-04-28 21:12 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\ASPackage
2016-04-28 20:13 - 2016-04-28 20:43 - 00000000 ____D C:\Program Files (x86)\34323030-1461867215-3741-4643-3135FFFFFFFF
2016-04-28 20:13 - 2016-04-28 20:13 - 00001188 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-04-28 20:13 - 2016-04-28 20:13 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage
2016-04-28 20:10 - 2016-04-28 20:10 - 21434586 _____ ( ) C:\Users\Maciej\AppData\Roaming\Windows.exe
2016-04-28 20:10 - 2016-04-28 20:10 - 00003450 _____ C:\WINDOWS\System32\Tasks\{97B89B9A-5C8B-4C79-A692-08B7538B3CA8}
2016-04-28 20:08 - 2016-04-28 20:11 - 00000000 ____D C:\Program Files\Windows KMS Activator Ultimate 2016 v2.7
2016-04-28 20:01 - 2016-04-28 20:01 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-04-28 20:01 - 2016-04-28 20:01 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-04-28 20:01 - 2016-04-28 20:01 - 00000000 ____D C:\Program Files\MSBuild
2016-04-28 20:01 - 2016-04-28 20:01 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-04-28 20:01 - 2016-04-28 20:01 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-04-28 19:53 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-04-28 19:53 - 2013-08-03 06:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-04-28 19:53 - 2013-08-03 06:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-04-28 19:53 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-04-28 19:53 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-04-28 19:53 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-04-28 10:19 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2016-04-28 10:19 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2016-04-26 21:53 - 2016-04-26 21:56 - 134170563 _____ C:\Users\Maciej\Downloads\Funniest Animal Fails Compilation 2015 - FailArmy.mp4
2016-04-26 21:53 - 2016-04-26 21:55 - 86416890 _____ C:\Users\Maciej\Downloads\Funniest Animal Fails Compilation -- FailArmy.mp4
2016-04-26 21:34 - 2016-04-26 21:37 - 115625178 _____ C:\Users\Maciej\Downloads\Best Animal Fails 2016 - Funny Fail Compilation.mp4
2016-04-26 21:34 - 2016-04-26 21:36 - 30834418 _____ C:\Users\Maciej\Downloads\Letni, Chamski Podryw- -POMIDOROWA-(Sarsa -Naucz mnie- PARODIA).mp4
2016-04-26 21:01 - 2016-04-26 21:01 - 00000000 ____D C:\Program Files (x86)\Origin Games
2016-04-26 20:58 - 2016-04-26 21:01 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Origin
2016-04-26 20:58 - 2016-04-26 21:01 - 00000000 ____D C:\Users\Maciej\AppData\Local\Origin
2016-04-26 20:55 - 2016-04-28 20:24 - 00000000 ____D C:\ProgramData\Origin
2016-04-26 20:55 - 2016-04-28 20:16 - 00000000 ____D C:\Program Files (x86)\Origin
2016-04-26 20:55 - 2016-04-26 20:55 - 00000000 ____D C:\ProgramData\Electronic Arts
2016-04-26 20:51 - 2016-04-28 20:20 - 00000000 ____D C:\Users\Maciej\AppData\Local\CrashDumps
2016-04-26 20:50 - 2016-04-26 20:51 - 31334856 _____ (Electronic Arts, Inc.) C:\Users\Maciej\Downloads\OriginThinSetup.exe
2016-04-26 20:32 - 2014-03-20 06:19 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2016-04-26 20:32 - 2014-03-20 05:48 - 21232792 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-04-26 20:32 - 2014-03-20 05:41 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-26 20:32 - 2014-03-20 05:41 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-04-26 20:32 - 2014-03-20 05:40 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-04-26 20:32 - 2014-03-20 03:29 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2016-04-26 20:32 - 2014-03-20 03:20 - 18679216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-04-26 20:32 - 2014-03-20 02:53 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2016-04-26 20:32 - 2014-03-20 02:48 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2016-04-26 20:32 - 2014-03-20 01:55 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2016-04-26 20:32 - 2014-03-20 01:39 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2016-04-26 20:32 - 2014-03-20 01:36 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2016-04-26 20:32 - 2014-03-19 09:13 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-04-26 20:32 - 2014-03-19 07:57 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2016-04-26 20:32 - 2014-03-19 07:50 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2016-04-26 20:32 - 2014-03-19 07:31 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-04-26 20:32 - 2014-03-19 07:20 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2016-04-26 20:32 - 2014-03-19 07:08 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-04-26 20:32 - 2014-03-19 06:41 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-04-26 20:32 - 2014-03-19 06:17 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2016-04-26 20:32 - 2014-03-15 06:56 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2016-04-26 20:32 - 2014-03-15 06:44 - 01705984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2016-04-26 20:32 - 2014-03-13 14:35 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2016-04-26 20:32 - 2014-03-12 15:45 - 00387210 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-04-26 20:32 - 2014-03-11 18:04 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfg.exe
2016-04-26 20:32 - 2014-03-11 17:45 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-26 20:32 - 2014-03-11 17:18 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-04-26 20:32 - 2014-03-11 17:02 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-26 20:32 - 2014-03-11 16:28 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2016-04-26 20:32 - 2014-03-11 16:25 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-26 20:32 - 2014-03-11 16:05 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-26 20:32 - 2014-03-11 16:03 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-26 20:32 - 2014-03-11 16:00 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-26 20:32 - 2014-03-11 15:21 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-04-26 20:32 - 2014-03-11 15:02 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-04-26 20:32 - 2014-03-11 14:42 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-04-26 20:32 - 2014-03-11 14:35 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-04-26 20:32 - 2014-03-08 22:47 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-04-26 20:32 - 2014-03-08 22:47 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-04-26 20:32 - 2014-03-08 22:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2016-04-26 20:32 - 2014-03-08 22:38 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-04-26 20:32 - 2014-03-08 22:35 - 00467800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-04-26 20:32 - 2014-03-08 22:35 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-04-26 20:32 - 2014-03-08 17:29 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-04-26 20:32 - 2014-03-08 17:29 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-04-26 20:32 - 2014-03-08 13:34 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-04-26 20:32 - 2014-03-08 11:34 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2016-04-26 20:32 - 2014-03-08 11:02 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
2016-04-26 20:32 - 2014-03-08 10:44 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2016-04-26 20:32 - 2014-03-08 10:33 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2016-04-26 20:32 - 2014-03-08 10:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
2016-04-26 20:32 - 2014-03-08 10:12 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll
2016-04-26 20:32 - 2014-03-08 09:53 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-04-26 20:32 - 2014-03-08 09:51 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-04-26 20:32 - 2014-03-08 09:47 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll
2016-04-26 20:32 - 2014-03-08 09:12 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2016-04-26 20:32 - 2014-03-08 09:09 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-26 20:32 - 2014-03-08 09:04 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-04-26 20:32 - 2014-03-08 09:03 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-26 20:32 - 2014-03-08 09:01 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-26 20:32 - 2014-03-08 08:50 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-04-26 20:32 - 2014-03-08 08:48 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-04-26 20:32 - 2014-03-08 08:46 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-26 20:32 - 2014-03-08 08:41 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-26 20:32 - 2014-03-08 08:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-04-26 20:32 - 2014-03-08 08:37 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-04-26 20:32 - 2014-03-08 08:31 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-04-26 20:32 - 2014-03-08 08:30 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-04-26 20:32 - 2014-03-08 08:25 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-04-26 20:32 - 2014-03-08 08:09 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-04-26 20:32 - 2014-03-08 08:04 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-04-26 20:32 - 2014-03-08 08:02 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-04-26 20:32 - 2014-03-08 07:58 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-04-26 20:32 - 2014-03-08 07:41 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-26 20:32 - 2014-03-08 07:11 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-26 20:32 - 2014-03-06 16:35 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-04-26 20:32 - 2014-03-06 16:34 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-04-26 20:32 - 2014-03-06 16:34 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2016-04-26 20:32 - 2014-03-06 14:53 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-04-26 20:32 - 2014-03-06 14:53 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-04-26 20:32 - 2014-03-06 14:51 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-04-26 20:32 - 2014-03-06 14:51 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2016-04-26 20:32 - 2014-03-06 14:51 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-04-26 20:32 - 2014-03-06 14:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-26 20:32 - 2014-03-06 14:40 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-04-26 20:32 - 2014-03-06 14:40 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-04-26 20:32 - 2014-03-06 14:40 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-04-26 20:32 - 2014-03-06 14:40 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-04-26 20:32 - 2014-03-06 14:40 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-26 20:32 - 2014-03-06 14:39 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-04-26 20:32 - 2014-03-06 13:20 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2016-04-26 20:32 - 2014-03-06 13:19 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2016-04-26 20:32 - 2014-03-06 13:19 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2016-04-26 20:32 - 2014-03-06 13:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-04-26 20:32 - 2014-03-06 13:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-04-26 20:32 - 2014-03-06 12:46 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-04-26 20:32 - 2014-03-06 12:35 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-04-26 20:32 - 2014-03-06 12:35 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-04-26 20:32 - 2014-03-06 12:35 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-04-26 20:32 - 2014-03-06 12:35 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-04-26 20:32 - 2014-03-06 11:29 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-04-26 20:32 - 2014-03-06 11:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-04-26 20:32 - 2014-03-06 11:24 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2016-04-26 20:32 - 2014-03-06 11:24 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-04-26 20:32 - 2014-03-06 11:22 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-04-26 20:32 - 2014-03-06 11:22 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-04-26 20:32 - 2014-03-06 11:22 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-26 20:32 - 2014-03-06 11:20 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-26 20:32 - 2014-03-06 11:20 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-04-26 20:32 - 2014-03-06 11:20 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-04-26 20:32 - 2014-03-06 11:19 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-04-26 20:32 - 2014-03-06 11:19 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2016-04-26 20:32 - 2014-03-06 11:19 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2016-04-26 20:32 - 2014-03-06 11:19 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
2016-04-26 20:32 - 2014-03-06 11:19 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-04-26 20:32 - 2014-03-06 11:08 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2016-04-26 20:32 - 2014-03-06 11:08 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2016-04-26 20:32 - 2014-03-06 10:41 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll
2016-04-26 20:32 - 2014-03-06 10:38 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2016-04-26 20:32 - 2014-03-06 10:37 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2016-04-26 20:32 - 2014-03-06 10:28 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2016-04-26 20:32 - 2014-03-06 10:20 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-04-26 20:32 - 2014-03-06 10:10 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll
2016-04-26 20:32 - 2014-03-06 10:09 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2016-04-26 20:32 - 2014-03-06 10:00 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-04-26 20:32 - 2014-03-06 09:47 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2016-04-26 20:32 - 2014-03-06 09:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2016-04-26 20:32 - 2014-03-06 09:44 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2016-04-26 20:32 - 2014-03-06 09:22 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-26 20:32 - 2014-03-06 09:16 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-04-26 20:32 - 2014-03-06 09:15 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2016-04-26 20:32 - 2014-03-06 09:08 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2016-04-26 20:32 - 2014-03-06 09:02 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-04-26 20:32 - 2014-03-06 08:59 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-04-26 20:32 - 2014-03-06 08:57 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-04-26 20:32 - 2014-03-06 08:51 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-04-26 20:32 - 2014-03-06 08:42 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2016-04-26 20:32 - 2014-03-06 08:39 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-26 20:32 - 2014-03-06 08:34 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-04-26 20:32 - 2014-03-06 08:33 - 13286400 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-26 20:32 - 2014-03-06 08:32 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-04-26 20:32 - 2014-03-06 08:31 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-04-26 20:32 - 2014-03-06 08:29 - 11791360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-04-26 20:32 - 2014-03-06 08:29 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-04-26 20:32 - 2014-03-06 08:27 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2016-04-26 20:32 - 2014-03-06 08:24 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2016-04-26 20:32 - 2014-03-06 08:23 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-04-26 20:32 - 2014-03-06 08:23 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2016-04-26 20:32 - 2014-03-06 08:21 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-04-26 20:32 - 2014-03-06 08:21 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-04-26 20:32 - 2014-03-06 08:16 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-04-26 20:32 - 2014-03-06 08:16 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-26 20:32 - 2014-03-06 08:13 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2016-04-26 20:32 - 2014-03-06 08:13 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-04-26 20:32 - 2014-03-06 08:11 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-04-26 20:32 - 2014-03-06 08:09 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-04-26 20:32 - 2014-03-06 08:06 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2016-04-26 20:32 - 2014-03-06 08:05 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-26 20:32 - 2014-03-06 08:04 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-04-26 20:32 - 2014-03-06 08:04 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-04-26 20:32 - 2014-03-06 08:01 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-04-26 20:32 - 2014-03-06 07:54 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-04-26 20:32 - 2014-03-06 07:54 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-04-26 20:32 - 2014-03-06 07:51 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-04-26 20:32 - 2014-03-06 07:47 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2016-04-26 20:32 - 2014-03-06 07:42 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-04-26 20:32 - 2014-03-06 07:42 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2016-04-26 20:32 - 2014-03-06 07:35 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-04-26 20:32 - 2014-03-06 07:33 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-04-26 20:32 - 2014-03-06 07:32 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-04-26 20:32 - 2014-03-06 07:28 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-04-26 20:32 - 2014-03-06 07:27 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-04-26 20:32 - 2014-03-06 07:21 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-04-26 20:32 - 2014-03-06 07:20 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-04-26 20:32 - 2014-03-04 14:25 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-04-26 20:32 - 2014-03-04 14:15 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-26 20:32 - 2014-03-04 14:15 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-04-26 20:32 - 2014-03-04 14:14 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-04-26 20:32 - 2014-03-04 13:16 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-04-26 20:32 - 2014-03-04 13:10 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-04-26 20:32 - 2014-03-04 10:11 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll
2016-04-26 20:32 - 2014-03-04 09:26 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AdmTmpl.dll
2016-04-26 20:32 - 2014-03-04 09:16 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-26 20:32 - 2014-03-04 09:13 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-26 20:32 - 2014-03-04 09:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2016-04-26 20:32 - 2014-03-04 09:00 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2016-04-26 20:32 - 2014-03-04 08:56 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2016-04-26 20:32 - 2014-03-04 08:50 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-26 20:32 - 2014-03-04 08:42 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-04-26 20:32 - 2014-03-04 08:39 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2016-04-26 20:32 - 2014-03-04 08:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2016-04-26 20:32 - 2014-03-04 08:15 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-04-26 20:32 - 2014-03-04 08:05 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2016-04-26 20:32 - 2014-03-04 08:03 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-04-26 20:32 - 2014-03-04 08:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2016-04-26 20:32 - 2014-03-04 07:54 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2016-04-26 20:32 - 2014-03-04 07:52 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-04-26 20:32 - 2014-02-07 00:59 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-04-26 20:32 - 2014-02-06 23:26 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-04-26 20:32 - 2013-12-24 01:28 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2016-04-26 20:32 - 2013-12-24 01:26 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2016-04-26 20:30 - 2014-03-02 12:20 - 23549952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-26 20:30 - 2014-03-02 11:33 - 17387008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-04-26 20:30 - 2014-02-26 08:29 - 02678784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2016-04-26 20:28 - 2014-02-08 03:08 - 00139600 _____ C:\WINDOWS\system32\systemsf.ebd
2016-04-26 20:27 - 2014-02-22 17:55 - 01435304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-04-26 20:27 - 2014-02-22 17:53 - 03394384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-04-26 20:27 - 2014-02-22 17:50 - 02588168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-04-26 20:27 - 2014-02-22 17:48 - 02574240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2016-04-26 20:27 - 2014-02-22 17:46 - 01927600 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-04-26 20:27 - 2014-02-22 17:46 - 01445616 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2016-04-26 20:27 - 2014-02-22 17:41 - 02142976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-04-26 20:27 - 2014-02-22 14:15 - 04192768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-04-26 20:27 - 2014-02-22 14:08 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\OobeFldr.dll
2016-04-26 20:27 - 2014-02-22 13:44 - 02767360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-04-26 20:27 - 2014-02-22 13:17 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OobeFldr.dll
2016-04-26 20:27 - 2014-02-22 13:00 - 05784064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-04-26 20:27 - 2014-02-22 12:44 - 02178048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-04-26 20:27 - 2014-02-22 12:36 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-04-26 20:27 - 2014-02-22 12:34 - 11742720 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2016-04-26 20:27 - 2014-02-22 12:06 - 02943488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-04-26 20:27 - 2014-02-22 12:02 - 08946688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2016-04-26 20:27 - 2014-02-22 11:47 - 01192448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2016-04-26 20:27 - 2014-02-22 11:39 - 13551104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-26 20:27 - 2014-02-22 11:33 - 11745792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-04-26 20:27 - 2014-02-22 11:28 - 02643456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-04-26 20:27 - 2014-02-22 11:23 - 03494912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-04-26 20:27 - 2014-02-22 11:23 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-26 20:27 - 2014-02-22 11:23 - 01576960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-04-26 20:27 - 2014-02-22 11:23 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2016-04-26 20:27 - 2014-02-22 11:16 - 11776000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-04-26 20:27 - 2014-02-22 11:13 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-04-26 20:27 - 2014-02-22 11:11 - 02262016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-26 20:27 - 2014-02-22 11:01 - 13933568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-04-26 20:27 - 2014-02-22 10:53 - 12027904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-04-26 20:27 - 2014-02-22 10:42 - 03408384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-26 20:27 - 2014-02-22 10:40 - 02368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-04-26 20:27 - 2014-02-22 10:37 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-04-26 20:27 - 2014-02-22 10:34 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2016-04-26 20:27 - 2014-02-22 10:32 - 01789440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-04-26 20:26 - 2014-02-22 18:59 - 01519520 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-04-26 20:26 - 2014-02-22 18:59 - 01290688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-04-26 20:26 - 2014-02-22 18:59 - 00526304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-04-26 20:26 - 2014-02-22 18:15 - 01929608 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-04-26 20:26 - 2014-02-22 18:15 - 01206000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-04-26 20:26 - 2014-02-22 18:00 - 00590168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-04-26 20:26 - 2014-02-22 18:00 - 00249688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2016-04-26 20:26 - 2014-02-22 17:55 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-04-26 20:26 - 2014-02-22 17:55 - 00244848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-04-26 20:26 - 2014-02-22 17:50 - 00761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-26 20:26 - 2014-02-22 17:50 - 00645104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-04-26 20:26 - 2014-02-22 17:50 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-04-26 20:26 - 2014-02-22 17:49 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-04-26 20:26 - 2014-02-22 17:49 - 00280920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-04-26 20:26 - 2014-02-22 17:49 - 00148824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-04-26 20:26 - 2014-02-22 17:48 - 01791752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-04-26 20:26 - 2014-02-22 17:46 - 01000424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-04-26 20:26 - 2014-02-22 17:46 - 00669896 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-04-26 20:26 - 2014-02-22 17:44 - 00539992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-04-26 20:26 - 2014-02-22 17:44 - 00424280 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-04-26 20:26 - 2014-02-22 17:44 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2016-04-26 20:26 - 2014-02-22 17:44 - 00311640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2016-04-26 20:26 - 2014-02-22 17:43 - 01727760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-04-26 20:26 - 2014-02-22 17:43 - 01659056 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-26 20:26 - 2014-02-22 17:43 - 01519592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-26 20:26 - 2014-02-22 17:43 - 01487520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-26 20:26 - 2014-02-22 17:43 - 01356360 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-26 20:26 - 2014-02-22 17:41 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 01215832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 00800552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 00609456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 00391008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 00372360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-04-26 20:26 - 2014-02-22 17:41 - 00324896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-04-26 20:26 - 2014-02-22 17:40 - 01118552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-26 20:26 - 2014-02-22 16:52 - 01767440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2016-04-26 20:26 - 2014-02-22 16:51 - 01063976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2016-04-26 20:26 - 2014-02-22 16:42 - 01017936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-04-26 20:26 - 2014-02-22 16:42 - 00422968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-04-26 20:26 - 2014-02-22 16:38 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-04-26 20:26 - 2014-02-22 16:38 - 01077944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2016-04-26 20:26 - 2014-02-22 16:38 - 00336232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-04-26 20:26 - 2014-02-22 16:25 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2016-04-26 20:26 - 2014-02-22 16:18 - 00477744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-04-26 20:26 - 2014-02-22 16:18 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-04-26 20:26 - 2014-02-22 16:11 - 00490136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-04-26 20:26 - 2014-02-22 16:08 - 01474104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 01206000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 01011280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 00650736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-04-26 20:26 - 2014-02-22 16:04 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2016-04-26 20:26 - 2014-02-22 14:24 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-04-26 20:26 - 2014-02-22 14:22 - 01163264 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2016-04-26 20:26 - 2014-02-22 14:14 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2016-04-26 20:26 - 2014-02-22 14:07 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2016-04-26 20:26 - 2014-02-22 14:07 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll
2016-04-26 20:26 - 2014-02-22 14:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\aelupsvc.dll
2016-04-26 20:26 - 2014-02-22 13:57 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2016-04-26 20:26 - 2014-02-22 13:28 - 02428928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-04-26 20:26 - 2014-02-22 13:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\recimg.exe
2016-04-26 20:26 - 2014-02-22 13:17 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2016-04-26 20:26 - 2014-02-22 13:16 - 00617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2016-04-26 20:26 - 2014-02-22 13:06 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2016-04-26 20:26 - 2014-02-22 12:54 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-04-26 20:26 - 2014-02-22 12:47 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe
2016-04-26 20:26 - 2014-02-22 12:41 - 00878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2016-04-26 20:26 - 2014-02-22 12:41 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-04-26 20:26 - 2014-02-22 12:39 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2016-04-26 20:26 - 2014-02-22 12:38 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2016-04-26 20:26 - 2014-02-22 12:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-04-26 20:26 - 2014-02-22 12:36 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2016-04-26 20:26 - 2014-02-22 12:33 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-04-26 20:26 - 2014-02-22 12:25 - 01428480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-04-26 20:26 - 2014-02-22 12:22 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-04-26 20:26 - 2014-02-22 12:18 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2016-04-26 20:26 - 2014-02-22 12:09 - 01224192 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-04-26 20:26 - 2014-02-22 12:08 - 00997888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-04-26 20:26 - 2014-02-22 12:05 - 01757184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-04-26 20:26 - 2014-02-22 12:01 - 02648064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-04-26 20:26 - 2014-02-22 12:01 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2016-04-26 20:26 - 2014-02-22 12:01 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2016-04-26 20:26 - 2014-02-22 12:00 - 02043904 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-04-26 20:26 - 2014-02-22 11:57 - 00710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-04-26 20:26 - 2014-02-22 11:54 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2016-04-26 20:26 - 2014-02-22 11:53 - 00825344 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-26 20:26 - 2014-02-22 11:52 - 01132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-04-26 20:26 - 2014-02-22 11:48 - 00427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-04-26 20:26 - 2014-02-22 11:48 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-04-26 20:26 - 2014-02-22 11:46 - 00528896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-04-26 20:26 - 2014-02-22 11:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-04-26 20:26 - 2014-02-22 11:44 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2016-04-26 20:26 - 2014-02-22 11:38 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-04-26 20:26 - 2014-02-22 11:37 - 02220032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-04-26 20:26 - 2014-02-22 11:36 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2016-04-26 20:26 - 2014-02-22 11:35 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-04-26 20:26 - 2014-02-22 11:35 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofTasks.dll
2016-04-26 20:26 - 2014-02-22 11:34 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2016-04-26 20:26 - 2014-02-22 11:34 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2016-04-26 20:26 - 2014-02-22 11:33 - 01967104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-04-26 20:26 - 2014-02-22 11:33 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2016-04-26 20:26 - 2014-02-22 11:26 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-04-26 20:26 - 2014-02-22 11:26 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-04-26 20:26 - 2014-02-22 11:25 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-04-26 20:26 - 2014-02-22 11:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-26 20:26 - 2014-02-22 11:24 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-04-26 20:26 - 2014-02-22 11:23 - 00344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-04-26 20:26 - 2014-02-22 11:21 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-04-26 20:26 - 2014-02-22 11:14 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-04-26 20:26 - 2014-02-22 11:14 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-04-26 20:26 - 2014-02-22 11:11 - 02395136 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-04-26 20:26 - 2014-02-22 11:11 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-04-26 20:26 - 2014-02-22 11:10 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-04-26 20:26 - 2014-02-22 11:10 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-04-26 20:26 - 2014-02-22 11:07 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-04-26 20:26 - 2014-02-22 11:06 - 01035264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-04-26 20:26 - 2014-02-22 11:04 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll
2016-04-26 20:26 - 2014-02-22 11:04 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-04-26 20:26 - 2014-02-22 11:00 - 01341440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2016-04-26 20:26 - 2014-02-22 11:00 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2016-04-26 20:26 - 2014-02-22 10:59 - 01621504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
2016-04-26 20:26 - 2014-02-22 10:59 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-04-26 20:26 - 2014-02-22 10:59 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-04-26 20:26 - 2014-02-22 10:59 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-04-26 20:26 - 2014-02-22 10:54 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-04-26 20:26 - 2014-02-22 10:53 - 00876544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2016-04-26 20:26 - 2014-02-22 10:51 - 01258496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll
2016-04-26 20:26 - 2014-02-22 10:51 - 00716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-04-26 20:26 - 2014-02-22 10:51 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-04-26 20:26 - 2014-02-22 10:50 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-26 20:26 - 2014-02-22 10:49 - 08874496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-04-26 20:26 - 2014-02-22 10:49 - 01400832 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-26 20:26 - 2014-02-22 10:47 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2016-04-26 20:26 - 2014-02-22 10:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-04-26 20:26 - 2014-02-22 10:47 - 00505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2016-04-26 20:26 - 2014-02-22 10:46 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-26 20:26 - 2014-02-22 10:45 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-04-26 20:26 - 2014-02-22 10:44 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-04-26 20:26 - 2014-02-22 10:43 - 00644608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-04-26 20:26 - 2014-02-22 10:43 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2016-04-26 20:26 - 2014-02-22 10:41 - 00662528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-04-26 20:26 - 2014-02-22 10:40 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-04-26 20:26 - 2014-02-22 10:39 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-04-26 20:26 - 2014-02-22 10:38 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-04-26 20:26 - 2014-02-22 10:38 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2016-04-26 20:26 - 2014-02-22 10:37 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-04-26 20:26 - 2014-02-22 10:36 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2016-04-26 20:26 - 2014-02-22 10:35 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-04-26 20:26 - 2014-02-22 10:34 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-04-26 20:26 - 2014-02-22 10:33 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-04-26 20:26 - 2014-02-22 10:27 - 01143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-04-26 20:26 - 2014-02-22 10:24 - 02760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2016-04-26 20:26 - 2014-02-22 10:24 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2016-04-26 20:26 - 2014-02-22 10:22 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-04-26 20:26 - 2014-02-22 10:21 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-04-26 20:26 - 2014-02-22 10:21 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-04-26 20:26 - 2014-02-22 10:19 - 00698880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-04-26 20:26 - 2014-02-22 10:18 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-04-26 20:26 - 2014-02-22 10:06 - 01640960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-04-26 20:26 - 2014-02-22 10:04 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-04-26 20:26 - 2014-02-22 10:03 - 01496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-04-26 20:26 - 2014-02-22 10:01 - 00978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-04-26 20:26 - 2014-02-22 10:01 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-04-26 20:26 - 2014-02-22 10:00 - 00514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-04-26 20:26 - 2014-02-22 06:33 - 00262335 _____ C:\WINDOWS\system32\dfpinc.dat
2016-04-26 20:26 - 2014-02-02 16:48 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-04-26 20:26 - 2014-02-02 15:33 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2016-04-26 20:26 - 2014-01-29 10:53 - 01653352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-04-26 20:26 - 2014-01-29 09:44 - 01369736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-04-26 20:26 - 2014-01-27 19:04 - 01311744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-04-26 20:26 - 2014-01-27 17:38 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-04-26 20:26 - 2014-01-17 19:24 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2016-04-26 20:26 - 2013-12-10 09:35 - 00530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-04-26 20:26 - 2013-12-04 17:16 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-04-26 20:25 - 2014-02-22 18:59 - 00461176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2016-04-26 20:25 - 2014-02-22 18:59 - 00407536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2016-04-26 20:25 - 2014-02-22 18:59 - 00289752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-04-26 20:25 - 2014-02-22 18:59 - 00209160 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2016-04-26 20:25 - 2014-02-22 18:59 - 00139464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-04-26 20:25 - 2014-02-22 18:59 - 00123448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2016-04-26 20:25 - 2014-02-22 18:58 - 00036200 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2016-04-26 20:25 - 2014-02-22 18:15 - 00531128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2016-04-26 20:25 - 2014-02-22 18:15 - 00275312 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2016-04-26 20:25 - 2014-02-22 18:15 - 00188464 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-04-26 20:25 - 2014-02-22 18:15 - 00071888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2016-04-26 20:25 - 2014-02-22 18:02 - 00170952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-04-26 20:25 - 2014-02-22 18:02 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhost.exe
2016-04-26 20:25 - 2014-02-22 18:02 - 00080048 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostex.exe
2016-04-26 20:25 - 2014-02-22 18:00 - 00236888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-26 20:25 - 2014-02-22 18:00 - 00151384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-26 20:25 - 2014-02-22 18:00 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys
2016-04-26 20:25 - 2014-02-22 17:59 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2016-04-26 20:25 - 2014-02-22 17:59 - 00027480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2016-04-26 20:25 - 2014-02-22 17:55 - 00162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-04-26 20:25 - 2014-02-22 17:55 - 00152848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2016-04-26 20:25 - 2014-02-22 17:55 - 00131168 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-26 20:25 - 2014-02-22 17:55 - 00105864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-04-26 20:25 - 2014-02-22 17:53 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-04-26 20:25 - 2014-02-22 17:50 - 00258784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-26 20:25 - 2014-02-22 17:50 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
2016-04-26 20:25 - 2014-02-22 17:50 - 00054816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2016-04-26 20:25 - 2014-02-22 17:50 - 00043408 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2016-04-26 20:25 - 2014-02-22 17:50 - 00032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2016-04-26 20:25 - 2014-02-22 17:49 - 00384856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-04-26 20:25 - 2014-02-22 17:49 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-26 20:25 - 2014-02-22 17:49 - 00189784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS
2016-04-26 20:25 - 2014-02-22 17:49 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2016-04-26 20:25 - 2014-02-22 17:49 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-04-26 20:25 - 2014-02-22 17:48 - 00210736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2016-04-26 20:25 - 2014-02-22 17:44 - 00924504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2016-04-26 20:25 - 2014-02-22 17:43 - 00142576 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2016-04-26 20:25 - 2014-02-22 17:43 - 00094560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2016-04-26 20:25 - 2014-02-22 17:41 - 00028416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-04-26 20:25 - 2014-02-22 16:52 - 00251504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2016-04-26 20:25 - 2014-02-22 16:51 - 00140456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2016-04-26 20:25 - 2014-02-22 16:42 - 00410568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2016-04-26 20:25 - 2014-02-22 16:42 - 00369288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2016-04-26 20:25 - 2014-02-22 16:42 - 00232896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-04-26 20:25 - 2014-02-22 16:42 - 00137344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-04-26 20:25 - 2014-02-22 16:42 - 00098072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2016-04-26 20:25 - 2014-02-22 16:41 - 00033056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2016-04-26 20:25 - 2014-02-22 16:38 - 00506120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-04-26 20:25 - 2014-02-22 16:38 - 00089848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-04-26 20:25 - 2014-02-22 16:25 - 00180240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
2016-04-26 20:25 - 2014-02-22 16:18 - 00089848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe
2016-04-26 20:25 - 2014-02-22 16:18 - 00041320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2016-04-26 20:25 - 2014-02-22 16:18 - 00029912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2016-04-26 20:25 - 2014-02-22 16:08 - 00079496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2016-04-26 20:25 - 2014-02-22 16:04 - 00317584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-04-26 20:25 - 2014-02-22 16:04 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-04-26 20:25 - 2014-02-22 14:20 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-04-26 20:25 - 2014-02-22 14:20 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-power-events.dll
2016-04-26 20:25 - 2014-02-22 14:17 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2016-04-26 20:25 - 2014-02-22 14:17 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2016-04-26 20:25 - 2014-02-22 14:17 - 00874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe
2016-04-26 20:25 - 2014-02-22 14:14 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2016-04-26 20:25 - 2014-02-22 14:14 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2016-04-26 20:25 - 2014-02-22 14:11 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-26 20:25 - 2014-02-22 14:09 - 00663040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2016-04-26 20:25 - 2014-02-22 14:07 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\clrhost.dll
2016-04-26 20:25 - 2014-02-22 14:06 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2016-04-26 20:25 - 2014-02-22 14:03 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-04-26 20:25 - 2014-02-22 13:54 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2016-04-26 20:25 - 2014-02-22 13:50 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
2016-04-26 20:25 - 2014-02-22 13:47 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2016-04-26 20:25 - 2014-02-22 13:47 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2016-04-26 20:25 - 2014-02-22 13:46 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-04-26 20:25 - 2014-02-22 13:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2016-04-26 20:25 - 2014-02-22 13:45 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2016-04-26 20:25 - 2014-02-22 13:42 - 00038680 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2016-04-26 20:25 - 2014-02-22 13:41 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
2016-04-26 20:25 - 2014-02-22 13:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskmgr.dll
2016-04-26 20:25 - 2014-02-22 13:30 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-26 20:25 - 2014-02-22 13:27 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll
2016-04-26 20:25 - 2014-02-22 13:25 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2016-04-26 20:25 - 2014-02-22 13:25 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2016-04-26 20:25 - 2014-02-22 13:25 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2016-04-26 20:25 - 2014-02-22 13:22 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-26 20:25 - 2014-02-22 13:22 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-04-26 20:25 - 2014-02-22 13:17 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll
2016-04-26 20:25 - 2014-02-22 13:16 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-04-26 20:25 - 2014-02-22 13:16 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clrhost.dll
2016-04-26 20:25 - 2014-02-22 13:15 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2016-04-26 20:25 - 2014-02-22 13:14 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cleanmgr.exe
2016-04-26 20:25 - 2014-02-22 13:05 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RASMM.dll
2016-04-26 20:25 - 2014-02-22 13:05 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2016-04-26 20:25 - 2014-02-22 13:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2016-04-26 20:25 - 2014-02-22 13:02 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContent.dll
2016-04-26 20:25 - 2014-02-22 13:02 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2016-04-26 20:25 - 2014-02-22 13:01 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fsutil.exe
2016-04-26 20:25 - 2014-02-22 13:00 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2016-04-26 20:25 - 2014-02-22 12:59 - 01283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2016-04-26 20:25 - 2014-02-22 12:58 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-04-26 20:25 - 2014-02-22 12:58 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-04-26 20:25 - 2014-02-22 12:57 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2016-04-26 20:25 - 2014-02-22 12:57 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2016-04-26 20:25 - 2014-02-22 12:56 - 02862592 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2016-04-26 20:25 - 2014-02-22 12:56 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-04-26 20:25 - 2014-02-22 12:56 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\srchadmin.dll
2016-04-26 20:25 - 2014-02-22 12:56 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2016-04-26 20:25 - 2014-02-22 12:52 - 02288640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-04-26 20:25 - 2014-02-22 12:52 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2016-04-26 20:25 - 2014-02-22 12:51 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2016-04-26 20:25 - 2014-02-22 12:50 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2016-04-26 20:25 - 2014-02-22 12:47 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmdskmgr.dll
2016-04-26 20:25 - 2014-02-22 12:47 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2016-04-26 20:25 - 2014-02-22 12:46 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2016-04-26 20:25 - 2014-02-22 12:41 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\netid.dll
2016-04-26 20:25 - 2014-02-22 12:33 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-04-26 20:25 - 2014-02-22 12:31 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-04-26 20:25 - 2014-02-22 12:30 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cleanmgr.exe
2016-04-26 20:25 - 2014-02-22 12:28 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-04-26 20:25 - 2014-02-22 12:27 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-04-26 20:25 - 2014-02-22 12:21 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2016-04-26 20:25 - 2014-02-22 12:21 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2016-04-26 20:25 - 2014-02-22 12:20 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2016-04-26 20:25 - 2014-02-22 12:18 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2016-04-26 20:25 - 2014-02-22 12:17 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-04-26 20:25 - 2014-02-22 12:17 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2016-04-26 20:25 - 2014-02-22 12:16 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srchadmin.dll
2016-04-26 20:25 - 2014-02-22 12:16 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2016-04-26 20:25 - 2014-02-22 12:15 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2016-04-26 20:25 - 2014-02-22 12:14 - 02811392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2016-04-26 20:25 - 2014-02-22 12:14 - 02165760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
2016-04-26 20:25 - 2014-02-22 12:14 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-04-26 20:25 - 2014-02-22 12:13 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2016-04-26 20:25 - 2014-02-22 12:13 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2016-04-26 20:25 - 2014-02-22 12:13 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2016-04-26 20:25 - 2014-02-22 12:12 - 00797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2016-04-26 20:25 - 2014-02-22 12:09 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-04-26 20:25 - 2014-02-22 12:09 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-04-26 20:25 - 2014-02-22 12:04 - 00935424 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-04-26 20:25 - 2014-02-22 12:04 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-04-26 20:25 - 2014-02-22 12:04 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netid.dll
2016-04-26 20:25 - 2014-02-22 12:03 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2016-04-26 20:25 - 2014-02-22 12:02 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-04-26 20:25 - 2014-02-22 12:01 - 01227776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-04-26 20:25 - 2014-02-22 12:00 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
2016-04-26 20:25 - 2014-02-22 11:59 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-26 20:25 - 2014-02-22 11:56 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-26 20:25 - 2014-02-22 11:55 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2016-04-26 20:25 - 2014-02-22 11:54 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-04-26 20:25 - 2014-02-22 11:53 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2016-04-26 20:25 - 2014-02-22 11:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2016-04-26 20:25 - 2014-02-22 11:49 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2016-04-26 20:25 - 2014-02-22 11:45 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-04-26 20:25 - 2014-02-22 11:45 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-04-26 20:25 - 2014-02-22 11:45 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-04-26 20:25 - 2014-02-22 11:45 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-04-26 20:25 - 2014-02-22 11:44 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2016-04-26 20:25 - 2014-02-22 11:44 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\korwbrkr.dll
2016-04-26 20:25 - 2014-02-22 11:43 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2016-04-26 20:25 - 2014-02-22 11:43 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2016-04-26 20:25 - 2014-02-22 11:40 - 02537472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-04-26 20:25 - 2014-02-22 11:40 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-04-26 20:25 - 2014-02-22 11:36 - 01392640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-04-26 20:25 - 2014-02-22 11:36 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2016-04-26 20:25 - 2014-02-22 11:36 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2016-04-26 20:25 - 2014-02-22 11:32 - 01162752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-04-26 20:25 - 2014-02-22 11:31 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-04-26 20:25 - 2014-02-22 11:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2016-04-26 20:25 - 2014-02-22 11:29 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-04-26 20:25 - 2014-02-22 11:29 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-04-26 20:25 - 2014-02-22 11:28 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2016-04-26 20:25 - 2014-02-22 11:25 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2016-04-26 20:25 - 2014-02-22 11:25 - 00399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-04-26 20:25 - 2014-02-22 11:25 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-04-26 20:25 - 2014-02-22 11:25 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2016-04-26 20:25 - 2014-02-22 11:23 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2016-04-26 20:25 - 2014-02-22 11:22 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-04-26 20:25 - 2014-02-22 11:19 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-04-26 20:25 - 2014-02-22 11:18 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-04-26 20:25 - 2014-02-22 11:15 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2016-04-26 20:25 - 2014-02-22 11:12 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2016-04-26 20:25 - 2014-02-22 11:09 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2016-04-26 20:25 - 2014-02-22 11:08 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-04-26 20:25 - 2014-02-22 11:07 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2016-04-26 20:25 - 2014-02-22 11:07 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2016-04-26 20:25 - 2014-02-22 11:06 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-04-26 20:25 - 2014-02-22 11:04 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\slpts.dll
2016-04-26 20:25 - 2014-02-22 11:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-04-26 20:25 - 2014-02-22 11:02 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-26 20:25 - 2014-02-22 10:59 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2016-04-26 20:25 - 2014-02-22 10:55 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2016-04-26 20:25 - 2014-02-22 10:55 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-04-26 20:25 - 2014-02-22 10:54 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2016-04-26 20:25 - 2014-02-22 10:54 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2016-04-26 20:25 - 2014-02-22 10:54 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2016-04-26 20:25 - 2014-02-22 10:54 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-04-26 20:25 - 2014-02-22 10:52 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2016-04-26 20:25 - 2014-02-22 10:52 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-04-26 20:25 - 2014-02-22 10:51 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-04-26 20:25 - 2014-02-22 10:49 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2016-04-26 20:25 - 2014-02-22 10:49 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2016-04-26 20:25 - 2014-02-22 10:48 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-04-26 20:25 - 2014-02-22 10:48 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll
2016-04-26 20:25 - 2014-02-22 10:47 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
2016-04-26 20:25 - 2014-02-22 10:47 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AltTab.dll
2016-04-26 20:25 - 2014-02-22 10:46 - 03312128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2016-04-26 20:25 - 2014-02-22 10:45 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2016-04-26 20:25 - 2014-02-22 10:45 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2016-04-26 20:25 - 2014-02-22 10:44 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2016-04-26 20:25 - 2014-02-22 10:44 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2016-04-26 20:25 - 2014-02-22 10:44 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-04-26 20:25 - 2014-02-22 10:44 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2016-04-26 20:25 - 2014-02-22 10:43 - 00469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2016-04-26 20:25 - 2014-02-22 10:43 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll
2016-04-26 20:25 - 2014-02-22 10:43 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-04-26 20:25 - 2014-02-22 10:43 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Renewal.dll
2016-04-26 20:25 - 2014-02-22 10:42 - 00943104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2016-04-26 20:25 - 2014-02-22 10:42 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2016-04-26 20:25 - 2014-02-22 10:42 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2016-04-26 20:25 - 2014-02-22 10:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2016-04-26 20:25 - 2014-02-22 10:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2016-04-26 20:25 - 2014-02-22 10:39 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2016-04-26 20:25 - 2014-02-22 10:38 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2016-04-26 20:25 - 2014-02-22 10:31 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-04-26 20:25 - 2014-02-22 10:30 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-04-26 20:25 - 2014-02-22 10:29 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2016-04-26 20:25 - 2014-02-22 10:22 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2016-04-26 20:25 - 2014-02-22 10:21 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2016-04-26 20:25 - 2014-02-22 10:20 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-04-26 20:25 - 2014-02-22 10:17 - 00459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-04-26 20:25 - 2014-02-22 10:17 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2016-04-26 20:25 - 2014-02-22 09:54 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2016-04-26 20:25 - 2014-01-31 13:59 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2016-04-26 20:25 - 2014-01-31 13:11 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2016-04-26 20:25 - 2014-01-31 11:55 - 03596800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-04-26 20:25 - 2014-01-31 11:35 - 03085824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-04-26 20:25 - 2014-01-31 11:15 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-26 20:25 - 2014-01-31 11:10 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-26 20:25 - 2014-01-31 11:08 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-04-26 20:25 - 2014-01-31 11:04 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-04-26 20:25 - 2014-01-31 10:24 - 01057792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
2016-04-26 20:25 - 2014-01-31 10:18 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2016-04-26 20:25 - 2014-01-29 10:52 - 00551256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-04-26 20:25 - 2014-01-29 10:40 - 00994136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-26 20:25 - 2014-01-29 02:36 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-04-26 20:25 - 2014-01-29 02:18 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-04-26 20:25 - 2014-01-29 02:17 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-04-26 20:25 - 2014-01-27 21:53 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2016-04-26 20:25 - 2014-01-22 08:21 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-04-26 20:25 - 2014-01-22 07:50 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-04-26 20:25 - 2014-01-17 19:04 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2016-04-26 20:25 - 2014-01-08 03:30 - 00745328 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-04-26 20:25 - 2014-01-08 02:33 - 00552632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-04-26 20:25 - 2013-12-04 17:54 - 00660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-26 20:25 - 2013-12-04 15:53 - 00473600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-04-26 20:25 - 2013-11-27 11:10 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
2016-04-26 20:25 - 2013-11-27 10:56 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiohlp.dll
2016-04-26 20:25 - 2013-11-11 01:41 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2016-04-26 20:25 - 2013-11-08 06:04 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-04-26 20:24 - 2014-02-22 14:17 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\f3ahvoas.dll
2016-04-26 20:24 - 2014-02-22 14:17 - 00008192 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-1.dll
2016-04-26 20:24 - 2014-02-22 14:17 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-session-winsta-l1-1-0.dll
2016-04-26 20:24 - 2014-02-22 14:17 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-0.dll
2016-04-26 20:24 - 2014-02-22 14:17 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-kernel32-package-l1-1-1.dll
2016-04-26 20:24 - 2014-02-22 14:14 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\watchdog.sys
2016-04-26 20:24 - 2014-02-22 14:08 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncui.dll
2016-04-26 20:24 - 2014-02-22 14:08 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2016-04-26 20:24 - 2014-02-22 14:08 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2016-04-26 20:24 - 2014-02-22 14:08 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-04-26 20:24 - 2014-02-22 14:08 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-04-26 20:24 - 2014-02-22 14:07 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2016-04-26 20:24 - 2014-02-22 14:04 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-04-26 20:24 - 2014-02-22 14:03 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2016-04-26 20:24 - 2014-02-22 14:01 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
2016-04-26 20:24 - 2014-02-22 14:00 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-04-26 20:24 - 2014-02-22 14:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2016-04-26 20:24 - 2014-02-22 14:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2016-04-26 20:24 - 2014-02-22 13:59 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgrade.exe
2016-04-26 20:24 - 2014-02-22 13:57 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2016-04-26 20:24 - 2014-02-22 13:50 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2016-04-26 20:24 - 2014-02-22 13:48 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ocsetapi.dll
2016-04-26 20:24 - 2014-02-22 13:47 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsdyn.dll
2016-04-26 20:24 - 2014-02-22 13:45 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhevents.dll
2016-04-26 20:24 - 2014-02-22 13:39 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll
2016-04-26 20:24 - 2014-02-22 13:37 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskpart.exe
2016-04-26 20:24 - 2014-02-22 13:32 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2016-04-26 20:24 - 2014-02-22 13:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2016-04-26 20:24 - 2014-02-22 13:25 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\f3ahvoas.dll
2016-04-26 20:24 - 2014-02-22 13:25 - 00008192 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-private-l1-1-1.dll
2016-04-26 20:24 - 2014-02-22 13:25 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-private-l1-1-0.dll
2016-04-26 20:24 - 2014-02-22 13:24 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2016-04-26 20:24 - 2014-02-22 13:24 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
2016-04-26 20:24 - 2014-02-22 13:24 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe
2016-04-26 20:24 - 2014-02-22 13:24 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SSShim.dll
2016-04-26 20:24 - 2014-02-22 13:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-session-winsta-l1-1-0.dll
2016-04-26 20:24 - 2014-02-22 13:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll
2016-04-26 20:24 - 2014-02-22 13:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-kernel32-package-l1-1-1.dll
2016-04-26 20:24 - 2014-02-22 13:17 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2016-04-26 20:24 - 2014-02-22 13:16 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-04-26 20:24 - 2014-02-22 13:16 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2016-04-26 20:24 - 2014-02-22 13:16 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-04-26 20:24 - 2014-02-22 13:13 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-04-26 20:24 - 2014-02-22 13:11 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2016-04-26 20:24 - 2014-02-22 13:09 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-04-26 20:24 - 2014-02-22 13:09 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2016-04-26 20:24 - 2014-02-22 13:08 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-04-26 20:24 - 2014-02-22 13:08 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2016-04-26 20:24 - 2014-02-22 13:07 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\scavengeui.dll
2016-04-26 20:24 - 2014-02-22 13:07 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2016-04-26 20:24 - 2014-02-22 13:07 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2016-04-26 20:24 - 2014-02-22 13:05 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2016-04-26 20:24 - 2014-02-22 13:05 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentHost.dll
2016-04-26 20:24 - 2014-02-22 13:04 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
2016-04-26 20:24 - 2014-02-22 13:01 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-04-26 20:24 - 2014-02-22 12:59 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-04-26 20:24 - 2014-02-22 12:59 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ocsetapi.dll
2016-04-26 20:24 - 2014-02-22 12:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2016-04-26 20:24 - 2014-02-22 12:58 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAConn.dll
2016-04-26 20:24 - 2014-02-22 12:55 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2016-04-26 20:24 - 2014-02-22 12:55 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
2016-04-26 20:24 - 2014-02-22 12:53 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PkgMgr.exe
2016-04-26 20:24 - 2014-02-22 12:50 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskpart.exe
2016-04-26 20:24 - 2014-02-22 12:47 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2016-04-26 20:24 - 2014-02-22 12:47 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-04-26 20:24 - 2014-02-22 12:41 - 02566656 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-04-26 20:24 - 2014-02-22 12:40 - 00304640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2016-04-26 20:24 - 2014-02-22 12:40 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2016-04-26 20:24 - 2014-02-22 12:38 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-04-26 20:24 - 2014-02-22 12:36 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-04-26 20:24 - 2014-02-22 12:36 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-04-26 20:24 - 2014-02-22 12:35 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-04-26 20:24 - 2014-02-22 12:35 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitagent.exe
2016-04-26 20:24 - 2014-02-22 12:34 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgradeResults.exe
2016-04-26 20:24 - 2014-02-22 12:32 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2016-04-26 20:24 - 2014-02-22 12:29 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2016-04-26 20:24 - 2014-02-22 12:27 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2016-04-26 20:24 - 2014-02-22 12:25 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2016-04-26 20:24 - 2014-02-22 12:21 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe
2016-04-26 20:24 - 2014-02-22 12:18 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-04-26 20:24 - 2014-02-22 12:17 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-04-26 20:24 - 2014-02-22 12:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2016-04-26 20:24 - 2014-02-22 12:12 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2016-04-26 20:24 - 2014-02-22 12:09 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2016-04-26 20:24 - 2014-02-22 12:09 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2016-04-26 20:24 - 2014-02-22 12:03 - 02544128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-04-26 20:24 - 2014-02-22 11:59 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-04-26 20:24 - 2014-02-22 11:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2016-04-26 20:24 - 2014-02-22 11:54 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-04-26 20:24 - 2014-02-22 11:54 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-04-26 20:24 - 2014-02-22 11:53 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2016-04-26 20:24 - 2014-02-22 11:52 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2016-04-26 20:24 - 2014-02-22 11:51 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-26 20:24 - 2014-02-22 11:48 - 01136128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2016-04-26 20:24 - 2014-02-22 11:48 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-04-26 20:24 - 2014-02-22 11:46 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2016-04-26 20:24 - 2014-02-22 11:41 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2016-04-26 20:24 - 2014-02-22 11:39 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2016-04-26 20:24 - 2014-02-22 11:37 - 00183808 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2016-04-26 20:24 - 2014-02-22 11:28 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-04-26 20:24 - 2014-02-22 11:27 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2016-04-26 20:24 - 2014-02-22 11:27 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2016-04-26 20:24 - 2014-02-22 11:26 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-26 20:24 - 2014-02-22 11:26 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.exe
2016-04-26 20:24 - 2014-02-22 11:25 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2016-04-26 20:24 - 2014-02-22 11:23 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-04-26 20:24 - 2014-02-22 11:22 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2016-04-26 20:24 - 2014-02-22 11:19 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\korwbrkr.dll
2016-04-26 20:24 - 2014-02-22 11:19 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2016-04-26 20:24 - 2014-02-22 11:16 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxshared.dll
2016-04-26 20:24 - 2014-02-22 11:09 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-04-26 20:24 - 2014-02-22 11:02 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2016-04-26 20:24 - 2014-02-22 10:58 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-04-26 20:24 - 2014-02-22 10:57 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2016-04-26 20:24 - 2014-02-22 10:57 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2016-04-26 20:24 - 2014-02-22 10:55 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-26 20:24 - 2014-02-22 10:55 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2016-04-26 20:24 - 2014-02-22 10:55 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2016-04-26 20:24 - 2014-02-22 10:55 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll
2016-04-26 20:24 - 2014-02-22 10:55 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slpts.dll
2016-04-26 20:24 - 2014-02-22 10:55 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msshooks.dll
2016-04-26 20:24 - 2014-02-22 10:54 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AepRoam.dll
2016-04-26 20:24 - 2014-02-22 10:49 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-04-26 20:24 - 2014-02-22 10:49 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2016-04-26 20:24 - 2014-02-22 10:48 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-26 20:24 - 2014-02-22 10:48 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2016-04-26 20:24 - 2014-02-22 10:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2016-04-26 20:24 - 2014-02-22 10:48 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2016-04-26 20:24 - 2014-02-22 10:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2016-04-26 20:24 - 2014-02-22 10:48 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msshooks.dll
2016-04-26 20:24 - 2014-02-22 10:45 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-04-26 20:24 - 2014-02-22 10:43 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2016-04-26 20:24 - 2014-02-22 10:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-04-26 20:24 - 2014-02-22 10:39 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2016-04-26 20:24 - 2014-02-22 10:35 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2016-04-26 20:24 - 2014-02-22 10:33 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingMonitor.dll
2016-04-26 20:24 - 2014-02-22 10:31 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-04-26 20:24 - 2014-02-22 10:24 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-04-26 20:24 - 2014-02-22 10:22 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-04-26 20:24 - 2014-02-22 10:20 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2016-04-26 20:24 - 2014-02-22 10:19 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2016-04-26 20:24 - 2014-02-22 10:17 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2016-04-26 20:24 - 2014-02-22 06:43 - 00002440 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk
2016-04-26 20:24 - 2014-02-22 06:37 - 00000369 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2016-04-26 20:24 - 2014-02-22 06:37 - 00000369 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2016-04-26 20:24 - 2014-02-22 06:37 - 00000369 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2016-04-26 20:24 - 2014-02-22 06:37 - 00000369 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2016-04-26 20:24 - 2014-02-08 03:08 - 00100197 _____ C:\WINDOWS\SysWOW64\RacRules.xml
2016-04-26 20:24 - 2014-02-08 03:08 - 00100197 _____ C:\WINDOWS\system32\RacRules.xml
2016-04-26 20:24 - 2014-02-01 08:00 - 00011109 _____ C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms
2016-04-26 20:24 - 2014-02-01 08:00 - 00011109 _____ C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms
2016-04-26 20:24 - 2014-02-01 08:00 - 00007762 _____ C:\WINDOWS\SysWOW64\connectedsearch-suggestions.searchconnector-ms
2016-04-26 20:24 - 2014-02-01 08:00 - 00007762 _____ C:\WINDOWS\system32\connectedsearch-suggestions.searchconnector-ms
2016-04-26 20:24 - 2014-02-01 08:00 - 00007130 _____ C:\WINDOWS\SysWOW64\connectedsearch-zeroinput.searchconnector-ms
2016-04-26 20:24 - 2014-02-01 08:00 - 00007130 _____ C:\WINDOWS\system32\connectedsearch-zeroinput.searchconnector-ms
2016-04-26 20:24 - 2014-02-01 08:00 - 00002255 _____ C:\WINDOWS\SysWOW64\WimBootCompress.ini
2016-04-26 20:24 - 2014-02-01 08:00 - 00002255 _____ C:\WINDOWS\system32\WimBootCompress.ini
2016-04-26 20:24 - 2014-01-31 11:19 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-26 20:24 - 2014-01-27 19:54 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2016-04-26 20:24 - 2014-01-27 13:45 - 00050053 _____ C:\WINDOWS\system32\srms.dat
2016-04-26 20:24 - 2013-12-04 16:19 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-04-26 20:24 - 2013-11-27 11:47 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe
2016-04-26 20:24 - 2013-11-27 11:20 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\finger.exe
2016-04-26 20:24 - 2013-11-08 05:47 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-04-26 20:03 - 2016-04-28 20:16 - 00002308 _____ C:\Users\Maciej\Desktop\Google Chrome.lnk
2016-04-26 20:00 - 2014-10-19 23:54 - 00447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2016-04-26 19:58 - 2016-04-26 19:59 - 00000000 ____D C:\ProgramData\Package Cache
2016-04-26 18:17 - 2016-04-26 18:59 - 00000600 _____ C:\Users\Maciej\AppData\Local\PUTTY.RND
2016-04-26 18:12 - 2016-04-26 18:12 - 06628966 _____ C:\Users\Maciej\Downloads\teamspeak3-server_linux_amd64-3.0.12.3.tar.bz2
2016-04-26 18:05 - 2016-04-26 18:05 - 00531368 _____ (Simon Tatham) C:\Users\Maciej\Downloads\putty.exe
2016-04-26 18:05 - 2016-04-26 18:05 - 00531368 _____ (Simon Tatham) C:\Users\Maciej\Desktop\putty.exe
2016-04-26 18:03 - 2016-04-26 18:59 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\FileZilla
2016-04-26 18:03 - 2016-04-26 18:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2016-04-26 18:02 - 2016-04-26 18:03 - 00000000 ____D C:\Program Files\FileZilla FTP Client
2016-04-26 18:02 - 2016-04-26 18:02 - 06522120 _____ (Tim Kosse) C:\Users\Maciej\Downloads\FileZilla_3.17.0_win64-setup.exe
2016-04-26 17:58 - 2016-04-26 17:58 - 250597362 _____ C:\Users\Maciej\Downloads\Sims 4 - CRACK V8 (NO ORIGIN) & UPDATE 4 by Camalion19.rar
2016-04-26 17:53 - 2016-04-26 17:53 - 00000000 ____D C:\Users\Maciej\Documents\Electronic Arts
2016-04-26 12:42 - 2016-04-26 12:45 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-04-26 12:42 - 2016-04-26 12:42 - 135176864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-26 12:37 - 2014-04-16 01:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2016-04-26 12:37 - 2014-04-16 01:34 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2016-04-26 12:28 - 2013-10-23 13:13 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll
2016-04-26 12:28 - 2013-10-08 07:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-26 12:28 - 2013-10-05 16:21 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-04-26 12:28 - 2013-10-05 14:05 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-04-26 12:28 - 2013-10-05 11:18 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-04-26 12:28 - 2013-10-05 10:56 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-26 12:28 - 2013-10-05 10:21 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-04-26 12:28 - 2013-10-05 09:43 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-04-26 12:28 - 2013-10-05 09:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-04-26 12:28 - 2013-09-17 11:06 - 01067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-04-26 12:28 - 2013-09-17 08:31 - 00883184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-04-26 12:28 - 2013-09-14 16:07 - 02134120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-04-26 12:28 - 2013-09-14 14:39 - 01799944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-04-26 12:28 - 2013-09-12 09:44 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-04-26 12:27 - 2013-10-23 13:29 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-04-26 12:27 - 2013-10-23 13:21 - 00155480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2016-04-26 12:27 - 2013-10-22 10:18 - 00096088 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedapplauncher.exe
2016-04-26 12:27 - 2013-10-22 05:56 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2016-04-26 12:27 - 2013-10-19 07:37 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2016-04-26 12:27 - 2013-10-08 07:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2016-04-26 12:27 - 2013-10-08 06:50 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-04-26 12:27 - 2013-10-08 06:50 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-04-26 12:27 - 2013-10-05 17:25 - 00057176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-04-26 12:27 - 2013-10-05 13:01 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-04-26 12:27 - 2013-10-05 11:36 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2016-04-26 12:27 - 2013-10-05 10:55 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2016-04-26 12:27 - 2013-10-05 10:40 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2016-04-26 12:27 - 2013-10-05 10:24 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2016-04-26 12:27 - 2013-10-05 10:15 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2016-04-26 12:27 - 2013-09-14 16:00 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2016-04-26 12:27 - 2013-09-14 14:33 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2016-04-26 12:27 - 2013-09-14 12:05 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2016-04-26 12:27 - 2013-09-13 10:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe
2016-04-26 12:27 - 2013-09-13 09:47 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe
2016-04-26 12:27 - 2013-09-12 10:45 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-04-26 12:27 - 2013-09-12 10:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-04-26 12:27 - 2013-09-12 10:02 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2016-04-26 12:27 - 2013-09-12 09:37 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2016-04-26 12:27 - 2013-09-12 09:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2016-04-26 12:27 - 2013-09-12 09:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-04-26 12:27 - 2013-09-12 09:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-04-26 12:27 - 2013-09-10 06:52 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll
2016-04-26 12:25 - 2013-11-27 17:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-04-26 12:25 - 2013-11-27 17:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-04-26 12:25 - 2013-11-27 16:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-04-26 12:25 - 2013-11-27 15:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-04-26 12:25 - 2013-11-27 14:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys
2016-04-26 12:25 - 2013-11-27 12:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2016-04-26 12:25 - 2013-11-27 11:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2016-04-26 12:25 - 2013-11-27 11:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2016-04-26 12:25 - 2013-11-27 10:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2016-04-26 12:25 - 2013-11-25 01:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-04-26 12:25 - 2013-11-25 01:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-04-26 12:25 - 2013-11-23 09:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll
2016-04-26 12:25 - 2013-11-23 09:13 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
2016-04-26 12:25 - 2013-11-23 06:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-04-26 12:25 - 2013-11-21 08:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll
2016-04-26 12:25 - 2013-11-15 16:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-04-26 12:25 - 2013-11-15 16:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-04-26 12:25 - 2013-11-15 16:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2016-04-26 12:25 - 2013-09-14 11:11 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-04-26 12:22 - 2014-01-04 17:54 - 00138240 _____ C:\WINDOWS\system32\OEMLicense.dll
2016-04-26 12:22 - 2014-01-04 17:08 - 00103936 _____ C:\WINDOWS\SysWOW64\OEMLicense.dll
2016-04-26 12:22 - 2014-01-03 01:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2016-04-26 12:22 - 2014-01-03 01:48 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2016-04-26 12:22 - 2014-01-01 01:57 - 01214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-04-26 12:22 - 2013-12-31 01:34 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2016-04-26 12:22 - 2013-12-31 01:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2016-04-26 12:22 - 2013-12-27 10:57 - 00842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-26 12:22 - 2013-12-27 09:03 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-04-26 12:22 - 2013-12-21 09:21 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2016-04-26 12:22 - 2013-12-17 09:21 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-04-26 12:22 - 2013-12-13 09:24 - 00121088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2016-04-26 12:20 - 2013-09-25 09:32 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-04-26 12:20 - 2013-09-25 07:40 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2016-04-26 12:20 - 2013-09-24 08:55 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2016-04-26 12:20 - 2013-09-24 07:59 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2016-04-26 12:20 - 2013-09-24 07:54 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-26 12:20 - 2013-09-24 07:10 - 01741824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-04-26 12:20 - 2013-09-24 05:56 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2016-04-26 12:20 - 2013-09-21 12:56 - 00101208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-04-26 12:20 - 2013-09-21 12:53 - 00934856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-04-26 12:20 - 2013-09-21 12:53 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-04-26 12:20 - 2013-09-21 12:45 - 00171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-04-26 12:20 - 2013-09-21 11:09 - 00796928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-04-26 12:20 - 2013-09-21 09:57 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-04-26 12:20 - 2013-09-21 09:55 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2016-04-26 12:20 - 2013-09-21 09:50 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2016-04-26 12:20 - 2013-09-21 08:55 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2016-04-26 12:20 - 2013-09-21 07:57 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\livessp.dll
2016-04-26 12:20 - 2013-09-21 07:43 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2016-04-26 12:20 - 2013-09-21 07:37 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-04-26 12:20 - 2013-09-21 07:26 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-04-26 12:20 - 2013-09-21 06:38 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-04-26 12:20 - 2013-09-21 06:37 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-04-26 12:20 - 2013-09-19 09:19 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersRes.dll
2016-04-26 12:20 - 2013-09-19 08:39 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2016-04-26 12:20 - 2013-09-19 08:27 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2016-04-26 12:20 - 2013-09-19 08:23 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WorkFoldersRes.dll
2016-04-26 12:20 - 2013-09-19 08:17 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx
2016-04-26 12:20 - 2013-09-19 07:47 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll
2016-04-26 12:20 - 2013-09-19 07:29 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx
2016-04-26 12:20 - 2013-09-19 06:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-04-26 12:20 - 2013-09-17 08:58 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-26 12:20 - 2013-09-17 07:26 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-04-26 12:20 - 2013-09-14 16:06 - 00175960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VerifierExt.sys
2016-04-26 12:20 - 2013-09-14 16:06 - 00066904 _____ (Microsoft Corporation) C:\WINDOWS\system32\PSHED.DLL
2016-04-26 12:20 - 2013-09-14 13:39 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-04-26 12:20 - 2013-09-13 11:52 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsClassExtension.dll
2016-04-26 12:20 - 2013-09-13 10:54 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-04-26 12:20 - 2013-09-13 10:10 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2016-04-26 12:20 - 2013-09-12 09:37 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2016-04-26 12:20 - 2013-09-11 09:41 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2016-04-26 12:20 - 2013-09-11 09:09 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2016-04-26 12:20 - 2013-09-07 14:44 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdprint.dll
2016-04-26 12:20 - 2013-09-07 14:29 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2016-04-26 12:20 - 2013-09-07 14:00 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdprint.dll
2016-04-26 12:20 - 2013-09-07 13:50 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll
2016-04-26 12:20 - 2013-09-07 13:45 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-04-26 12:20 - 2013-09-07 13:22 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2016-04-26 12:20 - 2013-09-07 13:07 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2016-04-26 12:20 - 2013-09-05 08:42 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2016-04-26 12:20 - 2013-09-05 07:40 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2016-04-26 12:20 - 2013-09-04 09:01 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll
2016-04-26 12:20 - 2013-09-04 07:47 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2016-04-26 12:20 - 2013-09-04 07:12 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCoreConfProv.dll
2016-04-26 12:20 - 2013-09-04 06:57 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-04-26 12:20 - 2013-08-31 16:18 - 00205024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-04-26 12:20 - 2013-08-31 14:15 - 00180232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-04-26 12:20 - 2013-08-31 14:04 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll
2016-04-26 12:20 - 2013-08-31 12:46 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched20.dll
2016-04-26 12:20 - 2013-08-31 12:00 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2016-04-26 12:20 - 2013-08-31 11:25 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2016-04-26 12:20 - 2013-08-30 09:31 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2016-04-26 12:20 - 2013-08-28 09:49 - 00597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2016-04-26 12:20 - 2013-08-28 09:09 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2016-04-26 12:20 - 2013-08-27 08:09 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-04-26 12:20 - 2013-08-27 07:24 - 00813568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-04-26 12:15 - 2013-11-11 04:48 - 00039768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2016-04-26 12:15 - 2013-11-08 07:23 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgr.dll
2016-04-26 12:15 - 2013-11-08 06:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appmgr.dll
2016-04-26 12:15 - 2013-11-01 13:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-04-26 12:15 - 2013-10-26 03:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2016-04-26 12:07 - 2014-10-31 00:37 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2016-04-26 12:07 - 2014-10-31 00:34 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2016-04-26 12:07 - 2013-12-09 02:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2016-04-26 12:07 - 2013-12-09 01:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2016-04-26 12:07 - 2013-10-19 10:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2016-04-26 12:07 - 2013-10-19 09:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2016-04-26 12:06 - 2014-01-29 08:41 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2016-04-26 12:06 - 2014-01-29 02:36 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2016-04-26 12:06 - 2014-01-27 21:07 - 04175360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-04-26 12:06 - 2014-01-27 20:23 - 02873344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-04-26 12:06 - 2014-01-27 19:18 - 01486848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2016-04-26 12:06 - 2014-01-27 19:00 - 01238016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2016-04-26 12:06 - 2014-01-18 01:04 - 00764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-04-26 12:06 - 2014-01-17 23:54 - 00669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-04-26 12:06 - 2014-01-07 09:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-04-26 12:06 - 2014-01-07 07:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-04-26 12:06 - 2014-01-07 07:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-04-26 12:06 - 2014-01-07 06:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-04-26 12:06 - 2013-12-21 16:51 - 06353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-04-26 12:06 - 2013-12-21 10:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2016-04-26 12:06 - 2013-12-09 02:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-26 12:06 - 2013-12-09 01:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-04-26 12:06 - 2013-11-27 13:41 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
2016-04-26 12:06 - 2013-11-23 06:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-04-26 12:06 - 2013-11-23 06:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2016-04-26 12:06 - 2013-11-21 08:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-04-26 12:06 - 2013-11-21 07:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-04-26 12:06 - 2013-10-16 17:58 - 01943536 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-04-26 12:06 - 2013-10-16 15:54 - 01581968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-04-25 22:37 - 2016-04-28 21:19 - 00145920 ___SH C:\Users\Maciej\Downloads\Thumbs.db
2016-04-25 22:17 - 2016-04-25 22:31 - 856609080 _____ C:\Users\Maciej\Downloads\Need for Speed 2014 Lektor Pl (Dj Nowy) - video w cdapl.mp4
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Testy.2014.PJ
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Macromedia
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\Users\Maciej\AppData\Local\Adobe
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\ProgramData\Adobe
2016-04-25 20:34 - 2016-04-25 20:34 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-04-25 20:33 - 2016-04-25 20:33 - 18672512 _____ (Adobe Systems Inc.) C:\Users\Maciej\Downloads\AdobeAIRInstaller.exe
2016-04-25 20:31 - 2016-04-25 20:31 - 00002109 _____ C:\Users\Public\Desktop\OFICJALNE TESTY EGZAMINACYJNE PJ.lnk
2016-04-25 20:31 - 2016-04-25 20:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ekierowca
2016-04-25 20:28 - 2016-04-25 20:28 - 00000000 ____D C:\Program Files (x86)\Ekierowca
2016-04-25 17:23 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2016-04-25 17:23 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2016-04-25 17:23 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2016-04-25 17:23 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2016-04-25 17:23 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2016-04-25 17:23 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2016-04-25 17:23 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2016-04-25 17:23 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2016-04-25 17:23 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2016-04-25 17:23 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2016-04-25 17:23 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2016-04-25 17:23 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2016-04-25 17:23 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2016-04-25 17:23 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2016-04-25 17:23 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2016-04-25 17:23 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2016-04-25 17:23 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2016-04-25 17:23 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2016-04-25 17:23 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2016-04-25 17:23 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2016-04-25 17:23 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2016-04-25 17:23 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2016-04-25 17:23 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2016-04-25 17:23 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2016-04-25 17:23 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2016-04-25 17:23 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2016-04-25 17:23 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2016-04-25 17:23 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2016-04-25 17:23 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2016-04-25 17:23 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2016-04-25 17:23 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2016-04-25 17:23 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2016-04-25 17:23 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2016-04-25 17:23 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2016-04-25 17:23 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2016-04-25 17:23 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2016-04-25 17:23 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2016-04-25 17:23 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2016-04-25 17:23 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2016-04-25 17:23 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2016-04-25 17:23 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2016-04-25 17:23 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2016-04-25 17:23 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2016-04-25 17:23 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2016-04-25 17:23 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2016-04-25 17:23 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2016-04-25 17:23 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2016-04-25 17:23 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2016-04-25 17:23 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2016-04-25 17:23 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2016-04-25 17:23 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2016-04-25 17:23 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2016-04-25 17:23 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2016-04-25 17:23 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2016-04-25 17:23 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2016-04-25 17:23 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2016-04-25 17:23 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2016-04-25 17:23 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2016-04-25 17:23 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2016-04-25 17:23 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2016-04-25 17:23 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2016-04-25 17:23 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2016-04-25 17:23 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2016-04-25 17:23 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2016-04-25 17:23 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2016-04-25 17:23 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2016-04-25 17:23 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2016-04-25 17:23 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2016-04-25 17:23 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2016-04-25 17:23 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2016-04-25 17:23 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2016-04-25 17:23 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2016-04-25 17:23 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2016-04-25 17:23 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2016-04-25 17:23 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2016-04-25 17:23 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2016-04-25 17:23 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2016-04-25 17:23 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2016-04-25 17:23 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2016-04-25 17:23 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2016-04-25 17:23 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2016-04-25 17:23 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2016-04-25 17:23 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2016-04-25 17:23 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2016-04-25 17:23 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2016-04-25 17:23 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2016-04-25 17:23 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2016-04-25 17:23 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2016-04-25 17:23 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2016-04-25 17:23 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2016-04-25 17:23 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2016-04-25 17:23 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2016-04-25 17:23 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2016-04-25 17:23 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2016-04-25 17:23 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2016-04-25 17:23 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2016-04-25 17:23 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2016-04-25 17:23 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2016-04-25 17:23 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2016-04-25 17:23 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2016-04-25 17:23 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2016-04-25 17:23 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2016-04-25 17:23 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2016-04-25 17:23 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2016-04-25 17:23 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2016-04-25 17:23 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2016-04-25 17:23 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2016-04-25 17:23 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2016-04-25 17:23 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2016-04-25 17:23 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2016-04-25 17:23 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2016-04-25 17:23 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2016-04-25 17:23 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2016-04-25 17:23 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2016-04-25 17:23 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2016-04-25 17:23 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2016-04-25 17:23 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2016-04-25 17:23 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2016-04-25 17:23 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2016-04-25 17:23 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2016-04-25 17:23 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2016-04-25 17:23 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2016-04-25 17:23 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2016-04-25 17:23 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2016-04-25 17:23 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2016-04-25 17:23 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2016-04-25 17:23 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2016-04-25 17:23 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2016-04-25 17:23 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2016-04-25 17:23 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2016-04-25 17:23 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2016-04-25 17:23 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2016-04-25 17:23 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2016-04-25 17:23 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2016-04-25 17:23 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2016-04-25 17:23 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2016-04-25 17:23 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2016-04-25 17:23 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2016-04-25 17:23 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2016-04-25 17:23 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2016-04-25 17:23 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2016-04-25 17:23 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2016-04-25 17:23 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2016-04-25 17:23 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2016-04-25 17:23 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2016-04-25 17:23 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2016-04-25 17:23 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2016-04-25 17:23 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2016-04-25 17:22 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2016-04-25 17:22 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2016-04-25 15:15 - 2016-04-25 15:15 - 00000000 ____D C:\Program Files (x86)\Windows 8.1 KMS Activator Ultimate v1.4.1
2016-04-24 22:03 - 2016-04-25 19:36 - 00049152 ___SH C:\Users\Maciej\Desktop\Thumbs.db
2016-04-24 22:02 - 2016-04-24 22:13 - 294356415 _____ C:\Users\Maciej\Downloads\Rabusie fistaszkow Get Squirrely (2015) - Zalukajcom.flv
2016-04-24 20:41 - 2016-04-28 21:20 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\TS3Client
2016-04-24 20:41 - 2016-04-26 18:37 - 00000000 ____D C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client
2016-04-24 20:41 - 2016-04-24 20:41 - 00001258 _____ C:\Users\Maciej\Desktop\TeamSpeak 3 Client.lnk
2016-04-24 20:41 - 2016-04-24 20:41 - 00001216 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-04-24 20:40 - 2016-04-24 20:40 - 31414688 _____ (TeamSpeak Systems GmbH) C:\Users\Maciej\Downloads\TeamSpeak3-Client-win64-3.0.19.exe
2016-04-24 19:25 - 2016-04-26 20:34 - 00000000 ____D C:\Users\Maciej\Downloads\The.Sims.4.Deluxe.Edition.v1.13.104.1010.Incl.All.DLC-ALI213
2016-04-24 19:24 - 2016-04-24 19:24 - 00076356 _____ C:\Users\Maciej\Downloads\[kat.cr]the.sims.4.deluxe.edition.v1.13.104.1010.incl.all.dlc.ali213.torrent
2016-04-24 19:19 - 2016-04-24 19:19 - 00000219 _____ C:\Users\Maciej\Desktop\Counter-Strike Global Offensive.url
2016-04-24 19:13 - 2016-04-24 19:14 - 00000000 ____D C:\WINDOWS\AutoKMS
2016-04-24 19:12 - 2016-04-24 19:12 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2016-04-24 19:02 - 2016-04-24 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\AVG
2016-04-24 19:02 - 2016-04-24 19:02 - 00000000 ____D C:\Program Files\Common Files\AV
2016-04-24 19:01 - 2016-04-24 19:01 - 00000000 ___HD C:\$AVG
2016-04-24 19:01 - 2016-04-24 19:01 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\TuneUp Software
2016-04-24 19:01 - 2016-04-24 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-04-24 19:00 - 2016-04-28 17:15 - 00000000 ____D C:\ProgramData\MFAData
2016-04-24 19:00 - 2016-04-24 19:00 - 00000000 ____D C:\Users\Maciej\AppData\Local\MFAData
2016-04-24 18:59 - 2016-04-24 18:59 - 00000882 _____ C:\Users\Public\Desktop\AVG.lnk
2016-04-24 18:59 - 2016-04-24 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-04-24 18:53 - 2016-04-24 18:08 - 00000000 ___DC C:\WINDOWS\Panther
2016-04-24 18:50 - 2016-04-24 19:01 - 00000000 ____D C:\ProgramData\Avg
2016-04-24 18:50 - 2016-04-24 19:01 - 00000000 ____D C:\Program Files (x86)\AVG
2016-04-24 18:50 - 2016-04-24 18:50 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Publish Providers
2016-04-24 18:50 - 2016-04-24 18:50 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\NVIDIA
2016-04-24 18:49 - 2016-04-27 18:36 - 00000000 ____D C:\Windows.old
2016-04-24 18:48 - 2016-04-24 19:02 - 00000000 ____D C:\Users\Maciej\AppData\Local\Avg
2016-04-24 18:48 - 2016-04-24 18:59 - 00000000 ____D C:\Users\Maciej\AppData\Local\AvgSetupLog
2016-04-24 18:48 - 2016-04-24 18:50 - 00000000 ____D C:\Users\Maciej\AppData\Local\Sony
2016-04-24 18:48 - 2016-04-24 18:49 - 00006382 _____ C:\WINDOWS\system32\--traceoff
2016-04-24 18:48 - 2016-04-24 18:48 - 00012420 _____ C:\Users\Maciej\Downloads\[kat.cr]microsoft.toolkit.2.5.official.torrent.007.torrent
2016-04-24 18:48 - 2016-04-24 18:48 - 00001054 _____ C:\Users\Public\Desktop\Vegas Pro 13.0 (64-bit).lnk
2016-04-24 18:48 - 2016-04-24 18:48 - 00000000 ____D C:\ProgramData\Sony
2016-04-24 18:48 - 2016-04-24 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2016-04-24 18:48 - 2016-04-24 18:48 - 00000000 ____D C:\Program Files\Sony
2016-04-24 18:48 - 2016-04-24 18:48 - 00000000 ____D C:\Program Files (x86)\Sony
2016-04-24 18:48 - 2016-04-24 18:48 - 00000000 _____ C:\WINDOWS\system32\--debugoff
2016-04-24 18:47 - 2016-04-24 18:50 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Sony
2016-04-24 18:45 - 2016-04-24 18:45 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2016-04-24 18:44 - 2016-04-24 18:44 - 00000000 ____D C:\Users\Maciej\Documents\GTA San Andreas User Files
2016-04-24 18:42 - 2016-04-24 18:42 - 00018728 _____ C:\Users\Maciej\Downloads\[kat.cr]adobe.audition.cs6.v5.0.708.multilang.cracked.ind.torrent
2016-04-24 18:41 - 2016-04-24 18:41 - 02946424 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Maciej\Downloads\AVG_Protection_Free_1064.exe
2016-04-24 18:40 - 2016-04-24 18:40 - 00001613 _____ C:\Users\Maciej\Desktop\Action!.lnk
2016-04-24 18:39 - 2016-04-24 18:39 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Mirillis
2016-04-24 18:39 - 2016-04-24 18:39 - 00000000 ____D C:\Users\Maciej\AppData\Local\Mirillis
2016-04-24 18:39 - 2016-04-24 18:39 - 00000000 ____D C:\ProgramData\Mirillis
2016-04-24 18:39 - 2016-04-24 18:39 - 00000000 ____D C:\Action!
2016-04-24 18:38 - 2016-04-24 18:45 - 361585922 _____ C:\Users\Maciej\Downloads\Sony Vegas Pro 13.0 (TrueSpoon).zip
2016-04-24 18:38 - 2016-04-24 18:38 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-04-24 18:38 - 2016-04-24 18:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-04-24 18:38 - 2016-04-24 18:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis
2016-04-24 18:38 - 2016-04-24 18:38 - 00000000 ____D C:\Program Files (x86)\Mirillis
2016-04-24 18:37 - 2016-04-24 18:38 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\WinRAR
2016-04-24 18:37 - 2016-04-24 18:38 - 00000000 ____D C:\Program Files\WinRAR
2016-04-24 18:37 - 2016-04-24 18:37 - 00014376 _____ C:\Users\Maciej\Downloads\[kat.cr]sony.vegas.pro.13.0.including.khg.patch.torrent
2016-04-24 18:36 - 2016-04-24 18:37 - 11212025 _____ ( ) C:\Users\Maciej\Downloads\WinRAR 5.20 -32x64 bit pl-full(1).exe
2016-04-24 18:35 - 2016-04-24 18:36 - 28171477 _____ C:\Users\Maciej\Downloads\Action 1.18.0.0 [PL] Crack.rar
2016-04-24 18:35 - 2016-04-24 18:35 - 26496761 _____ (Audacity Team ) C:\Users\Maciej\Downloads\audacity-win-2.1.2.exe
2016-04-24 18:35 - 2016-04-24 18:35 - 00001035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2016-04-24 18:35 - 2016-04-24 18:35 - 00000000 ____D C:\Program Files (x86)\Audacity
2016-04-24 18:34 - 2016-04-28 21:13 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\uTorrent
2016-04-24 18:34 - 2016-04-24 18:34 - 01959424 _____ (BitTorrent Inc.) C:\Users\Maciej\Downloads\uTorrent.exe
2016-04-24 18:33 - 2016-04-28 21:18 - 00000000 ____D C:\Users\Maciej\AppData\Local\ClassicShell
2016-04-24 18:33 - 2016-04-24 18:33 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-04-24 18:33 - 2016-04-24 18:33 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\ClassicShell
2016-04-24 18:33 - 2016-04-24 18:33 - 00000000 ____D C:\ProgramData\ClassicShell
2016-04-24 18:32 - 2016-04-24 18:32 - 00000000 ____D C:\Users\Maciej\AppData\Local\Steam
2016-04-24 18:32 - 2016-04-24 18:32 - 00000000 ____D C:\Users\Maciej\AppData\Local\CEF
2016-04-24 18:30 - 2016-04-24 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2016-04-24 18:30 - 2016-04-24 18:30 - 00000000 ____D C:\Program Files\Classic Shell
2016-04-24 18:26 - 2016-04-28 21:13 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-24 18:26 - 2016-04-24 18:29 - 07004912 _____ (IvoSoft) C:\Users\Maciej\Downloads\ClassicShellSetup_4_2_5-pl.exe
2016-04-24 18:26 - 2016-04-24 18:26 - 00000979 _____ C:\Users\Public\Desktop\Steam.lnk
2016-04-24 18:26 - 2016-04-24 18:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-04-24 18:25 - 2016-04-24 18:25 - 01380712 _____ C:\Users\Maciej\Downloads\SteamSetup.exe
2016-04-24 18:19 - 2016-04-24 18:19 - 00000000 ____D C:\Users\Maciej\Tracing
2016-04-24 18:18 - 2016-04-28 21:12 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Skype
2016-04-24 18:18 - 2016-04-24 18:18 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk
2016-04-24 18:18 - 2016-04-24 18:18 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-04-24 18:18 - 2016-04-24 18:18 - 00000000 ____D C:\ProgramData\Skype
2016-04-24 18:18 - 2016-04-24 18:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-04-24 18:17 - 2016-04-28 21:16 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1456535354-2696374450-2110360931-1001
2016-04-24 18:17 - 2016-04-24 18:17 - 01505408 _____ (Skype Technologies S.A.) C:\Users\Maciej\Downloads\SkypeSetup.exe
2016-04-24 18:17 - 2016-04-24 18:17 - 01505408 _____ (Skype Technologies S.A.) C:\Users\Maciej\Downloads\SkypeSetup (1).exe
2016-04-24 18:16 - 2016-04-28 21:01 - 00002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-24 18:15 - 2016-04-28 21:20 - 00001062 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-24 18:15 - 2016-04-28 21:10 - 00001058 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-24 18:15 - 2016-04-24 19:49 - 00000000 ____D C:\Users\Maciej\AppData\Local\Google
2016-04-24 18:15 - 2016-04-24 18:16 - 00000000 ____D C:\Program Files (x86)\Google
2016-04-24 18:15 - 2016-04-24 18:15 - 00004034 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-04-24 18:15 - 2016-04-24 18:15 - 00003798 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-04-24 18:12 - 2016-04-28 21:13 - 00000000 __RDO C:\Users\Maciej\SkyDrive
2016-04-24 18:07 - 2016-04-28 21:09 - 00000000 ____D C:\Users\Maciej
2016-04-24 18:07 - 2016-04-28 10:31 - 00000000 ____D C:\Users\Maciej\AppData\Local\Packages
2016-04-24 18:07 - 2016-04-25 20:34 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Adobe
2016-04-24 18:07 - 2016-04-24 18:07 - 00001454 _____ C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-04-24 18:07 - 2016-04-24 18:07 - 00000020 ___SH C:\Users\Maciej\ntuser.ini
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Ustawienia lokalne
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Szablony
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Moje dokumenty
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Menu Start
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Documents\Moje wideo
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Documents\Moje obrazy
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Documents\Moja muzyka
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\Dane aplikacji
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\AppData\Local\Historia
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 _SHDL C:\Users\Maciej\AppData\Local\Dane aplikacji
2016-04-24 18:07 - 2016-04-24 18:07 - 00000000 ____D C:\Users\Maciej\AppData\Local\VirtualStore
2016-04-24 18:06 - 2016-04-28 21:15 - 01825074 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-24 18:04 - 2016-04-24 18:04 - 00000000 ____D C:\WINDOWS\CSC
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Public\Documents\Moje wideo
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Public\Documents\Moje obrazy
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Public\Documents\Moja muzyka
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Szablony
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Moje dokumenty
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Menu Start
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\Dane aplikacji
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\ProgramData\Szablony
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\ProgramData\Pulpit
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\ProgramData\Menu Start
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\ProgramData\Dokumenty
2016-04-24 18:03 - 2016-04-24 18:03 - 00000000 _SHDL C:\ProgramData\Dane aplikacji
2016-04-24 17:57 - 2013-08-22 07:17 - 02407936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-04-24 17:56 - 2016-04-24 17:56 - 00000000 ____D C:\ProgramData\NVIDIA
2016-04-24 17:56 - 2014-07-02 20:55 - 06783776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2016-04-24 17:56 - 2014-07-02 20:55 - 03522392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2016-04-24 17:56 - 2014-07-02 20:55 - 02559960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2016-04-24 17:56 - 2014-07-02 20:55 - 00935368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2016-04-24 17:56 - 2014-07-02 20:55 - 00386520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2016-04-24 17:56 - 2014-07-02 20:55 - 00062808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2016-04-24 17:56 - 2014-07-02 12:14 - 03826628 _____ C:\WINDOWS\system32\nvcoproc.bin
2016-04-24 17:55 - 2016-04-24 17:56 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-04-24 17:55 - 2016-04-24 17:55 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-04-24 17:22 - 2016-04-24 17:22 - 00000000 ____D C:\uninst
2016-04-24 17:21 - 2016-04-28 20:16 - 00000000 ____D C:\extensions
2016-04-24 16:50 - 2016-04-24 16:50 - 00000000 ____D C:\ESD
2016-04-24 15:57 - 2016-04-24 15:57 - 00000000 ___HD C:\$Windows.~WS

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-04-28 21:21 - 2016-01-03 00:59 - 00000000 ____D C:\FRST
2016-04-28 21:15 - 2013-08-23 01:12 - 00805918 _____ C:\WINDOWS\system32\perfh015.dat
2016-04-28 21:15 - 2013-08-23 01:12 - 00163272 _____ C:\WINDOWS\system32\perfc015.dat
2016-04-28 21:15 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-04-28 21:09 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-28 21:08 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-04-28 20:19 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-28 20:19 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-28 20:16 - 2015-12-19 17:58 - 00000987 _____ C:\Prefs.js
2016-04-28 20:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-04-28 20:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-04-28 19:56 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-27 18:41 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-04-27 18:20 - 2013-08-22 16:44 - 00337840 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\FileManager
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Camera
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-04-26 22:37 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-04-26 22:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-04-26 22:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-04-26 22:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-04-26 22:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-04-26 22:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-04-26 22:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\servicing
2016-04-26 19:58 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-04-26 13:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2016-04-26 13:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-04-26 12:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-04-24 19:07 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2016-04-24 19:01 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-04-24 18:49 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2016-04-24 18:03 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT
2016-04-05 23:53 - 2013-08-22 17:38 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-04-05 23:53 - 2013-08-22 17:38 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-31 21:15 - 2016-02-28 20:52 - 00000000 ____D C:\sielu_cfg

==================== Pliki w katalogu głównym wybranych folderów =======

2016-04-28 20:10 - 2016-04-28 20:10 - 21434586 _____ ( ) C:\Users\Maciej\AppData\Roaming\Windows.exe
2016-04-26 18:17 - 2016-04-26 18:59 - 0000600 _____ () C:\Users\Maciej\AppData\Local\PUTTY.RND

Pliki do przeniesienia lub usunięcia:
====================
C:\Users\Maciej\AppData\Local\Temp\22.exe


Niektóre pliki w TEMP:
====================
C:\Users\Maciej\AppData\Local\Temp\22.exe
C:\Users\Maciej\AppData\Local\Temp\56a190le_1202000525.exe
C:\Users\Maciej\AppData\Local\Temp\B2CB.tmp.exe


==================== Bamital & volsnap =================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo


LastRegBack: 2016-04-24 17:54

==================== Koniec FRST.txt ============================

 

 

Addition:

 

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:27-04-2016
Uruchomiony przez Maciej (2016-04-28 21:23:36)
Uruchomiony z C:\Users\Maciej\Downloads
Windows 8.1 Pro (Update 1) (X64) (2016-04-24 16:07:50)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-1456535354-2696374450-2110360931-500 - Administrator - Disabled)
Gość (S-1-5-21-1456535354-2696374450-2110360931-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1456535354-2696374450-2110360931-1003 - Limited - Enabled)
Maciej (S-1-5-21-1456535354-2696374450-2110360931-1001 - Administrator - Enabled) => C:\Users\Maciej

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

µTorrent (HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\...\uTorrent) (Version: 3.4.6.42178 - BitTorrent Inc.)
Action! (HKLM-x32\...\Mirillis Action!) (Version: 1.18.0 - Mirillis)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 21.0.0.198 - Adobe Systems Incorporated)
AnySend (HKLM-x32\...\ASPackage) (Version: - CMI Limited) <==== UWAGA
AppHelper (HKLM-x32\...\AppHelper) (Version: 1.0 - AppHelper)
Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team)
AVG (HKLM\...\AvgZen) (Version: 1.51.2.3593 - AVG Technologies)
AVG (Version: 16.61.7539 - AVG Technologies) Hidden
AVG 2016 (Version: 16.0.4563 - AVG Technologies) Hidden
AVG Protection (HKLM\...\AVG) (Version: 2016.61.7539 - AVG Technologies)
AVG Zen (Version: 1.51.58 - AVG Technologies) Hidden
Body Text Feathering (HKLM-x32\...\PopupProduct) (Version: 1.0.0.0 - Body Text Feathering) <==== UWAGA
Classic Shell (HKLM\...\{D4B3454F-7529-4F5F-851D-2C36933F7D64}) (Version: 4.2.5 - IvoSoft)
CleanBrowser (HKLM-x32\...\CleanBrowser) (Version: - ) <==== UWAGA
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
FileZilla Client 3.17.0 (HKLM-x32\...\FileZilla Client) (Version: 3.17.0 - Tim Kosse)
FMW 1 (Version: 1.73.2 - AVG Technologies) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.94 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
hohosearch - Uninstall (HKLM-x32\...\Uninstall - amz) (Version: - )
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
OFICJALNE TESTY EGZAMINACYJNE NA PJ (HKLM-x32\...\OFICJALNE TESTY EGZAMINACYJNE NA PJ) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 9.11.6.18139 - Electronic Arts, Inc.)
Panel sterowania NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
shopperz (HKLM-x32\...\{2695FC60-A77F-4C39-8F15-C4B8370998FB}) (Version: 2.0.0.480 - shopperz) <==== UWAGA
Skype™ 7.22 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.22.109 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.13.104.1010 - Electronic Arts Inc.)
Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows 8.1 KMS Activator Ultimate v1.4.1 (HKLM-x32\...\Windows 8.1 KMS Activator Ultimate v1.4.1_is1) (Version: v1.4.1 - )
WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)

==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Zaplanowane zadania (filtrowane) =============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {0533BE72-317D-4CBB-9CC5-E94219D11065} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-24] (Google Inc.)
Task: {2033B4D7-BCFC-4E8B-B48C-402F118BD0AB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-24] (Google Inc.)
Task: {3F33DFE2-FB89-4289-910D-AF63A142C4CF} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\WINDOWS\SYSTEM32\OOBE\SETUPSQM.EXE [2013-08-22] (Microsoft Corporation)
Task: {F652D923-3CD2-47CF-AB15-7CA3D3641CF5} - System32\Tasks\Atagary Verfier => Rundll32.exe "C:\Program Files (x86)\Atagary\Atgverfier.dll",w <==== UWAGA
Task: {FE99FD32-8F3D-4864-A68C-96AACD532C16} - System32\Tasks\Dravsynlether Core => C:\Program Files (x86)\Dravsynlether\Drvcoretsk.exe [2016-04-27] ()
Task: {FFCCD263-D730-4D0A-90A8-54D75035CAEA} - System32\Tasks\{97B89B9A-5C8B-4C79-A692-08B7538B3CA8} => C:\Users\Maciej\AppData\Local\Temp\RarSFX2\StubInstallerCleanUp.bat <==== UWAGA

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)

ShortcutWithArgument: C:\Users\Maciej\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp
ShortcutWithArgument: C:\Users\Maciej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp
ShortcutWithArgument: C:\Users\Maciej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp

==================== Załadowane moduły (filtrowane) ==============

2016-04-24 17:56 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-04-27 20:05 - 2016-04-28 20:17 - 00278384 _____ () C:\Program Files\Rasdytw\Runboa.exe
2016-04-28 19:45 - 2016-04-28 19:45 - 00361472 _____ () C:\Program Files (x86)\34323030-1461867215-3741-4643-3135FFFFFFFF\knsk4600.tmpfs
2016-04-27 20:05 - 2016-04-28 20:17 - 00539504 _____ () C:\Program Files\Rasdytw\DijpeKahk.exe
2016-04-22 15:15 - 2016-04-22 15:15 - 00052912 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
2016-04-27 20:05 - 2016-04-28 20:17 - 00710512 _____ () C:\Program Files\Rasdytw\Piandarc64.exe
2016-04-27 20:05 - 2016-04-28 20:17 - 00817008 _____ () C:\Program Files\Rasdytw\Maiutxac64.DLL
2016-04-27 20:05 - 2016-04-28 20:17 - 00447488 _____ () C:\Program Files\Rasdytw\Roobjo64.DLL
2016-04-28 20:11 - 2016-04-28 20:11 - 03680768 _____ () C:\Users\Maciej\AppData\Local\Temp\22.exe
2016-04-24 19:19 - 2016-04-24 19:19 - 00103424 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
2016-04-01 12:13 - 2016-04-26 18:37 - 00174872 _____ () C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\quazip.dll
2016-04-01 12:13 - 2016-04-26 18:37 - 00103192 _____ () C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll
2016-04-01 12:13 - 2016-04-26 18:37 - 00107800 _____ () C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll
2016-04-01 12:14 - 2016-04-26 18:37 - 00312088 _____ () C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2016-04-01 12:14 - 2016-04-26 18:37 - 00485656 _____ () C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2016-04-28 21:20 - 2016-04-28 21:20 - 00380928 _____ () C:\Users\Maciej\Downloads\v4hs7nip.exe
2016-04-24 18:29 - 2016-03-11 02:56 - 00783360 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-04-24 18:29 - 2015-07-03 18:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-04-24 18:29 - 2016-03-31 22:55 - 02549840 _____ () C:\Program Files (x86)\Steam\video.dll
2016-04-24 18:29 - 2015-07-03 18:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-04-24 18:29 - 2015-07-03 18:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-04-24 18:29 - 2016-02-09 01:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-04-24 18:29 - 2016-02-09 01:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-04-24 18:29 - 2016-02-09 01:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-04-24 18:29 - 2016-02-09 01:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-04-24 18:29 - 2016-02-09 01:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-04-24 18:29 - 2016-03-31 22:55 - 00829008 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-04-24 18:29 - 2016-02-18 00:25 - 00281088 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-04-28 21:12 - 2016-04-28 21:12 - 00155232 ___HT () C:\Users\Maciej\AppData\Local\Temp\~A3F2.tmp
2016-04-24 18:50 - 2016-04-24 18:49 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
2016-04-24 18:29 - 2016-02-09 03:33 - 48400672 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2016-04-24 18:29 - 2015-09-25 01:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00198144 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\launcher.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00317952 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\tier0.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00203776 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\vstdlib.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00390656 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\filesystem_stdio.dll
2016-04-24 19:19 - 2016-04-28 09:59 - 06971392 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\engine.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00166912 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\inputsystem.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 01174016 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\vphysics.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 01242112 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\materialsystem.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00355840 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\datacache.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00610816 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\studiorender.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00164864 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\soundemittersystem.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00708096 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\vscript.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00134656 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\valve_avi.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 01336320 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\vguimatsurface.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00395264 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\vgui2.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 03276288 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\scaleformui.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 01769984 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\shaderapidx9.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00143360 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\localize.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00230912 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\stdshader_dbg.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 01016832 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\stdshader_dx9.dll
2016-04-24 19:19 - 2016-04-28 09:59 - 00584704 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo\bin\matchmaking.dll
2016-04-24 19:19 - 2016-04-28 09:59 - 12708352 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo\bin\client.dll
2016-04-24 19:19 - 2016-04-28 09:59 - 10260480 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo\bin\server.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00094208 _____ () C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\scenefilecache.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00084992 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\vaudio_miles.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00071680 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\mssmp3.asi
2016-04-24 19:19 - 2016-04-24 19:19 - 00012800 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\mssds3d.flt
2016-04-24 19:19 - 2016-04-24 19:19 - 00055808 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\msseax.flt
2016-04-24 19:19 - 2016-04-24 19:19 - 00974848 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\serverbrowser.dll
2016-04-24 19:19 - 2016-04-24 19:19 - 00173568 _____ () c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\bin\vaudio_celt.dll
2016-04-28 21:01 - 2016-04-28 01:25 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\libglesv2.dll
2016-04-28 21:01 - 2016-04-28 01:25 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\libegl.dll
2016-04-28 21:01 - 2016-04-28 01:25 - 17536664 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)


==================== Tryb awaryjny (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\bsdpf64.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\bsdpr64.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\bsdpf64.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\bsdpr64.sys => ""="Driver"

==================== EXE - Powiązania (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)


==================== Hosts - zawartość: ===============================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2013-08-22 15:25 - 2016-04-28 21:07 - 00000876 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Inne obszary ============================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 104.197.191.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja wyłączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

(Obecnie brak automatycznej naprawy dla tej sekcji.)


==================== Reguły Zapory systemu Windows (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [TCP Query User{50BFB8C3-D469-4E2F-9694-6BE0B1497E4D}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [uDP Query User{EB90A3CE-7E01-4FA2-9696-ACFBBB929B28}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{A064C223-C00C-4955-ADF2-306F7EB89492}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{AB20C680-20A4-4DAC-A280-F9A7A36B6753}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{BD7ADCC4-D97A-4C0F-B318-E90863DC3B7A}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{EA1D760E-36B7-4A21-9E2B-CE38EFB1EFCF}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{51688542-0A9D-47ED-B812-8532446860F5}] => (Allow) C:\Users\Maciej\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F0E53518-7318-4298-B7C2-1C1F3D3227F7}] => (Allow) C:\Users\Maciej\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A7B47448-8359-49CC-9A66-467CD85B9061}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{EB105AAD-FFFB-4329-94F0-963D8022AE28}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{BE7A2E6E-B82F-42F9-BF1E-87C23CB6DD7B}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{63BA99C7-CBAD-4497-B9F2-C96EEEC6B1E8}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{DC537B3E-F043-4B11-B524-FB16C4898479}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{1B14F8AF-0A8F-4281-A18A-F039E4AF4F81}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{6B6A2332-171E-4785-A893-EA37A1D215B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{F97C4952-2E85-4165-9011-17D462A91294}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{E0A26AC9-649A-4335-B461-3E078B7C9D0F}] => (Allow) C:\Users\Maciej\Downloads\The.Sims.4.Deluxe.Edition.v1.13.104.1010.Incl.All.DLC-ALI213\ALI213\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{25A18568-3D02-469A-AB46-549AC5BD14C3}] => (Allow) C:\Users\Maciej\Downloads\The.Sims.4.Deluxe.Edition.v1.13.104.1010.Incl.All.DLC-ALI213\ALI213\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{92B3A026-1D23-40CF-8DF9-78B7F0A86697}] => (Allow) C:\Users\Maciej\Downloads\The.Sims.4.Deluxe.Edition.v1.13.104.1010.Incl.All.DLC-ALI213\ALI213\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{5B36B616-B9E3-4BA4-9F09-A0E207E195E5}] => (Allow) C:\Users\Maciej\Downloads\The.Sims.4.Deluxe.Edition.v1.13.104.1010.Incl.All.DLC-ALI213\ALI213\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{3314B6BC-8A97-4458-980D-439CC1CD612E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Punkty Przywracania systemu =========================

28-04-2016 20:15:00 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
28-04-2016 20:15:23 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501

==================== Wadliwe urządzenia w Menedżerze urządzeń =============

Name: Nieznane urządzenie USB (żądanie deskryptora urządzenia nie powiodło się)
Description: Nieznane urządzenie USB (żądanie deskryptora urządzenia nie powiodło się)
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standardowy kontroler hosta USB)
Service:
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.


==================== Błędy w Dzienniku zdarzeń: =========================

Dziennik Aplikacja:
==================
Error: (04/28/2016 08:22:35 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Taskmgr.exe w wersji 6.3.9600.17031 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 7bc

Godzina rozpoczęcia: 01d1a17addc8c745

Godzina zakończenia: 62

Ścieżka aplikacji: C:\WINDOWS\System32\Taskmgr.exe

Identyfikator raportu: 2a8b7e55-0d6e-11e6-8255-00241da7fc15

Pełna nazwa pakietu powodującego błąd:

Identyfikator aplikacji względem pakietu powodującego błąd:

Error: (04/28/2016 08:19:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000f80d46
Identyfikator procesu powodującego błąd: 0x1b44
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:19:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: RldOrigin_x64.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x5669a7b8
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000002080
Identyfikator procesu powodującego błąd: 0x1b44
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:19:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000f80d46
Identyfikator procesu powodującego błąd: 0x1b98
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:19:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: RldOrigin_x64.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x5669a7b8
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000002080
Identyfikator procesu powodującego błąd: 0x1b98
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:18:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000f80d46
Identyfikator procesu powodującego błąd: 0x187c
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:18:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: RldOrigin_x64.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x5669a7b8
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000002080
Identyfikator procesu powodującego błąd: 0x187c
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:17:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000f80d46
Identyfikator procesu powodującego błąd: 0x1268
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:17:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: TS4_x64.exe, wersja: 1.13.104.1010, sygnatura czasowa: 0x564e4293
Nazwa modułu powodującego błąd: RldOrigin_x64.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x5669a7b8
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000002080
Identyfikator procesu powodującego błąd: 0x1268
Godzina uruchomienia aplikacji powodującej błąd: 0xTS4_x64.exe0
Ścieżka aplikacji powodującej błąd: TS4_x64.exe1
Ścieżka modułu powodującego błąd: TS4_x64.exe2
Identyfikator raportu: TS4_x64.exe3
Pełna nazwa pakietu powodującego błąd: TS4_x64.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: TS4_x64.exe5

Error: (04/28/2016 08:16:39 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft.

System Error:
Odmowa dostępu.
.


Dziennik System:
=============
Error: (04/28/2016 09:10:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi cherimoya z powodu następującego błędu:
%%2

Error: (04/28/2016 09:10:41 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Usługa 9292BEFE-D830-4F5B-8A3D-C004968A1B4D zawiesiła się podczas uruchamiania.

Error: (04/28/2016 09:08:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Windows Update z powodu następującego błędu:
%%3

Error: (04/28/2016 09:08:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Instalator modułów systemu Windows z powodu następującego błędu:
%%3

Error: (04/28/2016 09:07:17 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts.

Error: (04/28/2016 08:23:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Ewevki z powodu następującego błędu:
%%2

Error: (04/28/2016 08:23:12 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Ewevki niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

Error: (04/28/2016 08:22:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Enhzebabo z powodu następującego błędu:
%%2

Error: (04/28/2016 08:22:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Enhzebabo niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

Error: (04/28/2016 08:22:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Rasdytw Updater niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 400 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.


CodeIntegrity:
===================================
Date: 2016-04-28 21:10:46.864
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\1\avgnetclix.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 21:10:46.036
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\1\avgnetclix.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 21:10:45.365
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 20:18:10.905
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\1\avgnetclix.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 20:18:10.227
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\1\avgnetclix.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 20:18:09.487
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 20:05:06.221
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\1\avgnetclix.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 20:05:05.861
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\1\avgnetclix.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 20:05:05.221
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-04-28 17:15:20.372
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume5\Program Files (x86)\AVG\Framework\Common\avgfmwbasex.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Statystyki pamięci ===========================

Procesor: AMD Athlon II X2 250 Processor
Procent pamięci w użyciu: 41%
Całkowita pamięć fizyczna: 8191.55 MB
Dostępna pamięć fizyczna: 4807.63 MB
Całkowita pamięć wirtualna: 10111.55 MB
Dostępna pamięć wirtualna: 6381.12 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:362.71 GB) NTFS
Drive d: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
Drive e: () (Fixed) (Total:126.86 GB) (Free:113.93 GB) NTFS
Drive f: () (Fixed) (Total:105.93 GB) (Free:90.94 GB) NTFS

==================== MBR & Tablica partycji ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: FA18FA18)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 0006B642)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=126.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=105.9 GB) - (Type=07 NTFS)

==================== Koniec Addition.txt ============================

 

GMER:

 

GMER 2.2.19882 - http://www.gmer.net
Rootkit scan 2016-04-28 21:26:02
Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000024 WDC_WD50 rev.12.0 465,76GB
Running: v4hs7nip.exe; Driver: C:\Users\Maciej\AppData\Local\Temp\ufldypod.sys


---- User code sections - GMER 2.2 ----

.text C:\WINDOWS\system32\dwm.exe[1188] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe73ac169a 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\dwm.exe[1188] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe73ac16a2 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\dwm.exe[1188] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe73ac181a 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\dwm.exe[1188] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe73ac1832 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[1264] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe73ac169a 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[1264] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe73ac16a2 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[1264] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe73ac181a 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[1264] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe73ac1832 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\Explorer.EXE[2872] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe73ac169a 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\Explorer.EXE[2872] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe73ac16a2 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\Explorer.EXE[2872] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe73ac181a 4 bytes [AC, 73, FE, 7F]
.text C:\WINDOWS\Explorer.EXE[2872] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe73ac1832 4 bytes [AC, 73, FE, 7F]
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\Program Files (x86)\AVG\Av\avgnsa.exe[2900] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\system32\svchost.exe[2116] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\system32\svchost.exe[2012] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\Program Files\Rasdytw\Piandarc64.exe[1820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\System32\svchost.exe[3412] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\system32\dashost.exe[3820] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\Program Files\Classic Shell\ClassicStartMenu.exe[1788] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\system32\SearchIndexer.exe[4320] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\system32\DllHost.exe[4388] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\Windows\System32\skydrive.exe[4652] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 194 00007ffe60c11f6a 4 bytes [C1, 60, FE, 7F]
.text C:\Program Files\Windows Media Player\wmpnetwk.exe[6112] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 218 00007ffe60c11f82 4 bytes [C1, 60, FE, 7F]
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\WINDOWS\system32\taskeng.exe[3688] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!RtlDecompressBuffer 00007ffe76a98cdc 5 bytes JMP 00007ffe70792e10
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtMapViewOfSection 00007ffe76aaae00 5 bytes JMP 00007ffe70792640
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 00007ffe76aaaf20 5 bytes JMP 00007ffe70792470
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent 00007ffe76aaaf80 1 byte JMP 00007ffe70792b10
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenEvent + 2 00007ffe76aaaf82 3 bytes {JMP 0xfffffffff9ce7b90}
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateEvent 00007ffe76aab000 5 bytes JMP 00007ffe70792ab0
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtResumeThread 00007ffe76aab0a0 5 bytes JMP 00007ffe707928d0
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateMutant 00007ffe76aab5e0 5 bytes JMP 00007ffe70792b60
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateSemaphore 00007ffe76aab670 5 bytes JMP 00007ffe70792c10
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtCreateUserProcess 00007ffe76aab700 5 bytes JMP 00007ffe70792cc0
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenMutant 00007ffe76aabc40 5 bytes JMP 00007ffe70792bc0
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\SYSTEM32\ntdll.dll!NtOpenSemaphore 00007ffe76aabc90 5 bytes JMP 00007ffe70792c70
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffe73ac169a 4 bytes [AC, 73, FE, 7F]
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffe73ac16a2 4 bytes [AC, 73, FE, 7F]
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffe73ac181a 4 bytes [AC, 73, FE, 7F]
.text C:\Users\Maciej\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe[2804] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffe73ac1832 4 bytes [AC, 73, FE, 7F]

 

1 odpowiedź na to pytanie

Rekomendowane odpowiedzi

Opublikowano

Odinstaluj AnySend, Body Text Feathering, CleanBrowser, shopperz

 

Closeprocesses:
HKLM-x32\...\Run: [22] => C:\Users\Maciej\AppData\Local\Temp\22.exe [3680768 2016-04-28] () <===== UWAGA
HKU\S-1-5-21-1456535354-2696374450-2110360931-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=93018773_hao_pg
CHR HomePage: Default -> hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBP-OqRkK_4g5H3zXx0q1D1XXsHhKKzkrGfutJ42VIE43jdby06grJ4kewieME2p8GGmMsrWbEXC_WBLZtGHtCutbRz1fawiY4ygNCEzBl-oAM5jLvrUtUIGfNm8ra0LtEaerJwKjB0eGoP6dolfFriLa6Dx8scao0sEjMDjjTOr4c,
CHR StartupUrls: Default -> "hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=F837001E8C877314&affID=119294&tsp=4960","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380220599","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380288108","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380295139","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380306791","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380309931","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380358344","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380365654","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380376767","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380443910","hxxp://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=hp&from=newgdp&uid=ST3320613AS_9SZ09T02XXXX9SZ09T02&ts=1380447521","hxxp://mysearch.avg.com?cid={A4ACEF1D-D83F-432B-8205-8775AF3993B9}&mid=e619d3b7808647d2a1ead157ca639ae7-14f59128680cac54cfb6b722ab1aa7fce97a516d〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-02-06 18:07:50&v=17.3.1.91&pid=safeguard&sg=&sap=hp","hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRa0T-NJ1bNV5iGB7j76kR7EOZGkeQkbUBtqSnxyncrRE33KckNPn0Vx9PzkWmR57FbPcBE43N0GJMD-7CmEopXJUZZO7-8ug_3cjZdmZczlZ9IRNxDCCksnHN2ZHk7r421m5CLmvylEmdZjS_QeQJJid556R3M5LRNDONs-X23CZc3mQJGM,","hxxp://www.sweet-page.com/?type=hp&ts=1399910256&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400240706&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400616588&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400693095&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400762138&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.sweet-page.com/?type=hppp&ts=1400778667&from=wpc&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://start.qone8.com/?type=hp&ts=1400740707&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400789659&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400824872&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400848639&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400868406&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400872346&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400910940&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400943761&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1400962881&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401002033&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401041430&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401052942&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401136353&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401208133&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401286591&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401292532&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401373531&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401460752&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401475359&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401481414&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401526558&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401531465&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401572028&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401612697&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401632438&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401642507&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401717736&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401736544&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401743684&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401806649&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401811305&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401901997&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401912926&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401976015&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1401979502&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402003254&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402060626&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402088835&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402125875&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402128084&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402161721&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402171121&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402227416&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402257686&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402294544&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402328809&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402330263&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402347466&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402413746&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402417808&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402432512&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402433398&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402507243&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402515442&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402600652&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://start.qone8.com/?type=hppp&ts=1402606854&from=tt4u&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://www.delta-homes.com/?type=hp&ts=1402607114&from=wpm0612&uid=HitachiXHTS543225A7A384_E2024242CEH5KDCEH5KDX","hxxp://www.mystartsearch.com/?type=hp&ts=1418068828&from=smt&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.istartsurf.com/?type=hp&ts=1429474365&from=smt&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.istartsurf.com/?type=hppp&ts=1429474396&from=smt&uid=SAMSUNGXSP2504C_S09QJ1WL807085","hxxp://www.hohosearch.com/?mode=nnnb&ptid=clc&uid=EFF498F67F22E488C6CDF6FEA50F02E1&v=20160415&ts=AHEqAHIlAH4qBU..","hxxp://www.hohosearch.com/?mode=nnnb&ptid=amz&uid=EFF498F67F22E488C6CDF6FEA50F02E1&v=20160421&ts=AHEqAHIlAH8kC0..","hxxp://www.hohosearch.com/?mode=nnnb&ptid=amz&uid=EFF498F67F22E488C6CDF6FEA50F02E1&v=20160425&ts=AHEqAHUqBn8sA0.."
R2 cenysusyzbt; C:\Program Files (x86)\34323030-1461867215-3741-4643-3135FFFFFFFF\knsk4600.tmpfs [X]
S2 Rasdytw Updater; C:\Program Files\Rasdytw\Ipelpi.exe [X]
S1 cherimoya; system32\drivers\cherimoya.sys [X]
U3 ufldypod; \??\C:\Users\Maciej\AppData\Local\Temp\ufldypod.sys [X]
C:\Program Files (x86)\MPC Cleaner
2016-04-28 20:17 - 2016-04-28 21:09 - 00000000 ____D C:\Users\Maciej\AppData\Roaming\Jeqgohci
2016-04-28 20:16 - 2016-04-28 21:07 - 00000000 ____D C:\Program Files (x86)\hohobnd
2016-04-28 20:16 - 2016-04-28 20:19 - 00000000 ____D C:\Program Files (x86)\Atagary
2016-04-28 20:16 - 2016-04-28 20:18 - 00000000 ____D C:\Program Files (x86)\CleanBrowser
2016-04-28 20:10 - 2016-04-28 20:10 - 21434586 _____ ( ) C:\Users\Maciej\AppData\Roaming\Windows.exe
Task: {F652D923-3CD2-47CF-AB15-7CA3D3641CF5} - System32\Tasks\Atagary Verfier => Rundll32.exe "C:\Program Files (x86)\Atagary\Atgverfier.dll",w <==== UWAGA
Task: {FFCCD263-D730-4D0A-90A8-54D75035CAEA} - System32\Tasks\{97B89B9A-5C8B-4C79-A692-08B7538B3CA8} => C:\Users\Maciej\AppData\Local\Temp\RarSFX2\StubInstallerCleanUp.bat <==== UWAGA

ShortcutWithArgument: C:\Users\Maciej\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp
ShortcutWithArgument: C:\Users\Maciej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp
ShortcutWithArgument: C:\Users\Maciej\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.hohosearch.com/?ts=AHEqAHUqBn8sA0..&v=20160425&uid=EFF498F67F22E488C6CDF6FEA50F02E1&ptid=amz&mode=scrp



CMD: dir /a "C:\Users\Maciej\appdata\Local"
CMD: dir /a "C:\Users\Maciej\appdata\Roaming"
CMD: dir /a "C:\Users\Maciej\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
CMD: dir /a "C:\program files (x86)\common files"

RemoveProxy:
EmptyTemp:

Zapisz jako fixlist.txt umieść obok FRST i kliknij FIX/Napraw. Po restarcie zamieść fixlog na forum.

Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...