Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz

Usuwanie wirusa?


xXPixel

Rekomendowane odpowiedzi

Opublikowano

 

OTL logfile created on: 5/28/2012 9:10:16 PM - Run 1

OTL by OldTimer - Version 3.2.43.2 Folder = C:\Users\axel\Downloads

64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation

Internet Explorer (Version = 8.0.7601.17514)

Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

 

3.86 Gb Total Physical Memory | 1.31 Gb Available Physical Memory | 34.06% Memory free

7.71 Gb Paging File | 4.93 Gb Available in Paging File | 63.94% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 148.72 Gb Total Space | 107.64 Gb Free Space | 72.38% Space Free | Partition Type: NTFS

Drive D: | 301.95 Gb Total Space | 233.92 Gb Free Space | 77.47% Space Free | Partition Type: NTFS

 

Computer Name: AXEL-KOMPUTER | User Name: axel | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

 

========== Processes (SafeList) ==========

 

PRC - [2012/05/28 21:09:09 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\axel\Downloads\OTL.com

PRC - [2012/04/09 11:20:30 | 003,063,968 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

PRC - [2012/03/31 04:38:26 | 000,021,392 | ---- | M] () -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

PRC - [2012/03/31 04:38:14 | 003,521,424 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

PRC - [2012/03/27 16:58:08 | 000,692,888 | ---- | M] () -- C:\Users\axel\AppData\Roaming\BrowserCompanion\tcbhn.exe

PRC - [2012/03/01 02:02:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

PRC - [2011/07/04 19:45:30 | 013,374,048 | ---- | M] (GG Network S.A.) -- C:\Program Files (x86)\Gadu-Gadu 10\gg.exe

PRC - [2010/01/19 04:34:48 | 002,201,192 | ---- | M] (SEC) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 4\WCScheduler.exe

PRC - [2009/12/14 09:17:48 | 000,091,136 | ---- | M] (SAMSUNG Electronics) -- C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe

PRC - [2009/11/04 06:11:48 | 000,835,072 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe

PRC - [2009/10/13 12:03:04 | 000,716,800 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe

PRC - [2009/10/02 18:39:46 | 000,013,600 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe

PRC - [2009/06/03 13:59:02 | 000,103,720 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe

PRC - [2009/04/15 16:52:06 | 000,091,432 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe

PRC - [2009/03/05 11:54:50 | 000,311,296 | ---- | M] () -- C:\Windows\SysWOW64\Rezip.exe

PRC - [2008/11/13 09:33:54 | 000,097,128 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\Office Live\OfficeLiveSignIn.exe

 

 

========== Modules (No Company Name) ==========

 

MOD - [2012/05/28 07:32:19 | 000,115,137 | ---- | M] () -- C:\Users\axel\AppData\Local\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll

MOD - [2012/05/23 03:56:50 | 000,441,880 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll

MOD - [2012/05/23 03:56:49 | 003,922,456 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\pdf.dll

MOD - [2012/05/23 03:55:35 | 000,553,496 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\libglesv2.dll

MOD - [2012/05/23 03:55:33 | 000,117,784 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\libegl.dll

MOD - [2012/05/23 03:55:24 | 000,134,696 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\avutil-51.dll

MOD - [2012/05/23 03:55:23 | 000,250,408 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\avformat-54.dll

MOD - [2012/05/23 03:55:21 | 002,375,720 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\avcodec-54.dll

MOD - [2012/05/23 03:06:23 | 008,743,584 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\gcswf32.dll

MOD - [2012/05/23 03:06:23 | 008,743,584 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\APPLIC~1\190108~1.52\gcswf32.dll

MOD - [2012/05/11 16:17:02 | 000,097,072 | ---- | M] () -- C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll

MOD - [2012/05/10 13:43:45 | 001,218,560 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Management\0c2b0d52156447592f33edf4116b7e7d\System.Management.ni.dll

MOD - [2012/05/10 13:42:23 | 000,762,880 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\65f0d70169a0e73b45307dddbd86f92b\System.Runtime.Remoting.ni.dll

MOD - [2012/05/10 13:42:15 | 001,782,272 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\d234eceae699d070b5a5712ce776c01f\System.Xaml.ni.dll

MOD - [2012/05/10 09:55:36 | 018,000,896 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\041b1bcf6ae9ab58925791d8198c37e2\PresentationFramework.ni.dll

MOD - [2012/05/10 09:55:22 | 011,451,904 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\a1de74c8d0dfd15e3246e5dd394013bf\PresentationCore.ni.dll

MOD - [2012/05/10 09:55:18 | 013,197,312 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\9ee9841d9e33fe5dceba4cd7d90f2ae0\System.Windows.Forms.ni.dll

MOD - [2012/05/10 09:55:10 | 003,858,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\4b7adff986a085bb562222d0c5fdf5aa\WindowsBase.ni.dll

MOD - [2012/05/10 09:55:07 | 001,665,536 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\03b5233f1511f5fdb39eb681b04e5506\System.Drawing.ni.dll

MOD - [2012/05/10 09:49:03 | 000,595,968 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\a5fa2a1cfc6e9fdc39d9a8f2baa57bc9\PresentationFramework.Aero.ni.dll

MOD - [2012/05/10 09:45:52 | 007,069,184 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\ed91b57205429a23bb91f4499059a459\System.Core.ni.dll

MOD - [2012/05/10 09:45:47 | 005,617,664 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\d1f299160424bad90fe9f658661389e2\System.Xml.ni.dll

MOD - [2012/05/10 09:45:39 | 009,091,584 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\6f9f0467e8b2dd3f69b015c8e30ac945\System.ni.dll

MOD - [2012/05/10 09:45:33 | 014,412,800 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\3953b1d8b9b57e4957bff8f58145384e\mscorlib.ni.dll

MOD - [2012/03/31 04:38:26 | 000,021,392 | ---- | M] () -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

MOD - [2012/03/27 16:58:08 | 000,692,888 | ---- | M] () -- C:\Users\axel\AppData\Roaming\BrowserCompanion\tcbhn.exe

MOD - [2011/10/05 03:52:30 | 000,756,048 | ---- | M] () -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL

MOD - [2011/07/04 19:46:20 | 000,217,696 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\gglog.dll

MOD - [2011/07/04 19:46:18 | 000,123,488 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\ggipcradioproxy.dll

MOD - [2011/07/04 19:46:16 | 000,017,504 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\ggipc.dll

MOD - [2011/07/04 19:46:12 | 000,027,744 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\ggcrypto.dll

MOD - [2011/07/04 19:46:10 | 000,356,960 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\ggcommon.dll

MOD - [2011/04/16 05:04:30 | 014,749,696 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtWebKit4.dll

MOD - [2011/02/17 11:00:28 | 001,781,760 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtScript4.dll

MOD - [2011/02/17 11:00:28 | 000,393,216 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtXml4.dll

MOD - [2011/02/17 11:00:28 | 000,327,680 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtSvg4.dll

MOD - [2011/02/17 11:00:26 | 001,044,480 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtNetwork4.dll

MOD - [2011/02/17 11:00:24 | 009,097,216 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtGui4.dll

MOD - [2011/02/17 11:00:24 | 002,560,000 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\QtCore4.dll

MOD - [2011/02/17 10:59:40 | 000,311,296 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qtiff4.dll

MOD - [2011/02/17 10:59:40 | 000,274,432 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qmng4.dll

MOD - [2011/02/17 10:59:40 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qjpeg4.dll

MOD - [2011/02/17 10:59:40 | 000,027,648 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qgif4.dll

MOD - [2011/02/17 10:59:40 | 000,018,944 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\imageformats\qsvg4.dll

MOD - [2011/02/17 10:59:32 | 000,059,904 | ---- | M] () -- C:\Program Files (x86)\Gadu-Gadu 10\zlib1.dll

MOD - [2009/10/28 05:40:14 | 003,885,984 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

MOD - [2009/06/03 13:59:14 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll

MOD - [2009/06/03 13:59:02 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll

MOD - [2006/08/12 05:48:40 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Display Manager\HookDllPS2.dll

 

 

========== Win32 Services (SafeList) ==========

 

SRV:64bit: - [2012/03/26 18:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)

SRV:64bit: - [2012/03/26 18:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)

SRV:64bit: - [2010/04/14 20:45:38 | 001,052,328 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysNative\lxeacoms.exe -- (lxea_device)

SRV:64bit: - [2009/10/02 18:39:44 | 000,873,248 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)

SRV:64bit: - [2009/09/29 17:25:48 | 000,126,392 | ---- | M] (Intel? Corporation) [On_Demand | Running] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost)

SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)

SRV - [2012/05/15 15:20:21 | 000,489,256 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)

SRV - [2012/05/03 08:31:10 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)

SRV - [2012/04/09 11:20:30 | 003,063,968 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)

SRV - [2012/03/01 02:02:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)

SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)

SRV - [2010/03/06 04:41:39 | 000,332,272 | ---- | M] (Google Inc.) [On_Demand | Stopped] -- C:\ProgramData\Partner\Partner.exe -- (Partner Service)

SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)

SRV - [2009/03/05 11:54:50 | 000,311,296 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\Rezip.exe -- (Rezip)

 

 

========== Driver Services (SafeList) ==========

 

DRV:64bit: - [2012/05/07 21:25:36 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)

DRV:64bit: - [2012/03/20 20:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)

DRV:64bit: - [2012/03/01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)

DRV:64bit: - [2012/01/17 14:45:56 | 000,188,224 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)

DRV:64bit: - [2011/12/13 03:32:22 | 002,797,056 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)

DRV:64bit: - [2011/03/11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)

DRV:64bit: - [2011/03/11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)

DRV:64bit: - [2010/12/21 07:55:02 | 000,161,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdm.sys -- (ss_bmdm)

DRV:64bit: - [2010/12/21 07:55:02 | 000,128,000 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bserd.sys -- (ss_bserd)

DRV:64bit: - [2010/12/21 07:55:02 | 000,127,488 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM)

DRV:64bit: - [2010/12/21 07:55:02 | 000,018,944 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter)

DRV:64bit: - [2010/11/20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)

DRV:64bit: - [2010/11/20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)

DRV:64bit: - [2009/11/25 23:32:58 | 000,151,936 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)

DRV:64bit: - [2009/11/20 08:09:48 | 000,537,112 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)

DRV:64bit: - [2009/10/10 05:16:28 | 000,293,936 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)

DRV:64bit: - [2009/10/02 18:47:38 | 000,098,344 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)

DRV:64bit: - [2009/09/29 17:25:50 | 000,012,728 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TurboB.sys -- (TurboB)

DRV:64bit: - [2009/09/28 11:22:00 | 000,395,264 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)

DRV:64bit: - [2009/08/29 05:15:32 | 000,132,648 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)

DRV:64bit: - [2009/08/29 05:15:26 | 000,021,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)

DRV:64bit: - [2009/08/05 23:24:16 | 000,061,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)

DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)

DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)

DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)

DRV:64bit: - [2009/07/01 22:46:58 | 000,052,264 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btusbflt.sys -- (btusbflt)

DRV:64bit: - [2009/06/10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)

DRV:64bit: - [2009/06/10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)

DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)

DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)

DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)

DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)

DRV:64bit: - [2009/05/28 08:38:04 | 000,013,824 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SABI.sys -- (SABI)

DRV:64bit: - [2009/04/08 01:33:08 | 000,035,104 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)

DRV - [2010/11/01 06:08:46 | 000,014,544 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys -- (WinRing0_1_2_0)

DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)

 

 

========== Standard Registry (SafeList) ==========

 

 

========== Internet Explorer ==========

 

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}

IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC

IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}

IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC

IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.co...ng}&rlz=1I7SMSN

IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7

 

 

IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

 

 

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.google.pl...q={searchTerms}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.co...SN_plPL482PL482

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.google.pl...q={searchTerms}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.co...SN_plPL482PL482

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

========== FireFox ==========

 

FF - user.js - File not found

 

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32.dll ()

FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_32: C:\windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)

FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\axel\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\axel\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

 

 

[2012/05/06 12:29:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\axel\AppData\Roaming\mozilla\Extensions

 

========== Chrome ==========

 

CHR - default_search_provider: Google (Enabled)

CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}

CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms},

CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer

CHR - plugin: Native Client (Enabled) = C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll

CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\pdf.dll

CHR - plugin: Shockwave Flash (Enabled) = C:\Users\axel\AppData\Local\Google\Chrome\Application\19.0.1084.52\gcswf32.dll

CHR - plugin: Shockwave Flash (Disabled) = C:\Users\axel\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll

CHR - plugin: Shockwave Flash (Enabled) = C:\windows\system32\Macromed\Flash\NPSWF32.dll

CHR - plugin: (Enabled) = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll

CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll

CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll

CHR - plugin: Java? Platform SE 6 U32 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll

CHR - plugin: Java Deployment Toolkit 6.0.320.5 (Enabled) = C:\windows\SysWOW64\npdeployJava1.dll

CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll

CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll

CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

CHR - Extension: YouTube = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\

CHR - Extension: Browser Companion Helper = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\

CHR - Extension: ImmorTall = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccgofchligkleafmbnobellmjjoppoin\1.5.0_0\

CHR - Extension: Szukaj w Google = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\

CHR - Extension: Rysujemy s\u0142owa = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbcmncdmcmdncgdoloobnlhienkgfpmj\1.0.0.2_0\

CHR - Extension: Ostateczny Street Car Racer = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkhlplfgnlmpppihiigcpbgehohljaam\1.0_0\

CHR - Extension: Creatures & Castles = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpeacgpdnhofhebmincihdelcemhagd\2.0_0\

CHR - Extension: Cargo Bridge: Armor Games Edition = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlpiaibleklmjieibbnmkignbggodmmj\2.1.1_0\

CHR - Extension: Ball of Death = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\iipccaibmkhecajelgiejadoffbhohpa\1.0.3_0\

CHR - Extension: LineBall = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeclmehkhpookgkhkecnaanahhoglakj\1.2.0_0\

CHR - Extension: Perpetual Blaze = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgjbldhpikblgpcbgdokneecddeomimo\1.1.5_0\

CHR - Extension: Skyrama = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlehaidnnmjjkhgbbiombcdifogolhap\1.0.1_0\

CHR - Extension: Park My Samolot = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgbhfjddokcaippnolmocdikbponhpkd\1.2_0\

CHR - Extension: Skype Click to Call = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.11.0.9874_0\

CHR - Extension: Top Eleven = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljphpjlafmmdmegmfbkacafhbegjfkkn\2.0.0.2_0\

CHR - Extension: Sprawdzanie poczty Google = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\3.2_0\

CHR - Extension: Plants vs Zombies = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmcegpfdgcoclcdfkjahiimlikdpnina\1.0.5_0\

CHR - Extension: Szczytu jailbreak = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncfiimlbhgllinjmkfjpikokpedpdbae\2.0_0\

CHR - Extension: Gmail = C:\Users\axel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

 

O1 HOSTS File: ([2009/06/10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts

O2:64bit: - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)

O2:64bit: - BHO: (Partner BHO Class) - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner64.dll (Google Inc.)

O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)

O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg64.dll (Google Inc.)

O2 - BHO: (Browser Companion Helper) - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files (x86)\BrowserCompanion\jsloader.dll ( )

O2 - BHO: (Search Fairy) - {27CF82B1-E1D2-4f9b-976E-62095A52BA4A} - C:\Program Files (x86)\Search Fairy\SearchFairy.dll (Results Media Ltd)

O2 - BHO: (Java? Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)

O2 - BHO: (Partner BHO Class) - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll (Google Inc.)

O2 - BHO: (Browser Companion Helper Verifier) - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll ( )

O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (Google Inc.)

O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)

O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)

O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.

O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.

O3:64bit: - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)

O3:64bit: - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)

O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)

O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)

O4 - HKLM..\Run: [APLangApp] C:\Program Files (x86)\AnyPC Client\APLangApp.exe (DoctorSoft)

O4 - HKLM..\Run: [CLMLServer] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)

O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)

O4 - HKLM..\Run: [Otshot] c:\program files\otshot\otshot.exe -minimize File not found

O4 - HKLM..\Run: [PDVD8LanguageShortcut] C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe (CyberLink Corp.)

O4 - HKLM..\Run: [RemoteControl8] C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe (CyberLink Corp.)

O4 - HKLM..\Run: [updateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)

O4 - HKLM..\Run: [updateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)

O4 - HKLM..\Run: [updatePDRShortCut] C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)

O4 - HKLM..\Run: [updatePPShortCut] C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)

O4 - HKLM..\Run: [updatePSTShortCut] C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)

O4 - HKU\S-1-5-19..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)

O4 - HKU\S-1-5-20..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)

O4 - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe (Samsung)

O4 - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()

O4 - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe (Samsung)

O4 - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()

O4 - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)

O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found

O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found

O4 - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found

O4 - Startup: C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tcbhn.lnk = C:\Users\axel\AppData\Roaming\BrowserCompanion\tcbhn.exe ()

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3

O8:64bit: - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found

O8:64bit: - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()

O8:64bit: - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()

O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found

O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()

O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()

O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()

O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()

O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra Button: Search Fairy - {81727BE7-50E7-48ed-A547-F0274756E2DD} - C:\Program Files (x86)\Search Fairy\SearchFairy.dll (Results Media Ltd)

O9 - Extra 'Tools' menuitem : Search Fairy options - {81727BE7-50E7-48ed-A547-F0274756E2DD} - C:\Program Files (x86)\Search Fairy\SearchFairy.dll (Results Media Ltd)

O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)

O9 - Extra Button: Wyślij do interfejsu Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()

O9 - Extra 'Tools' menuitem : Wyślij do urządzenia &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()

O1364bit: - gopher Prefix: missing

O13 - gopher Prefix: missing

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_32)

O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_32)

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_32)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7D69B199-535D-4A3A-8484-45B684FC512D}: DhcpNameServer = 192.168.0.1

O18:64bit: - Protocol\Handler\base64 - No CLSID value found

O18:64bit: - Protocol\Handler\chrome - No CLSID value found

O18:64bit: - Protocol\Handler\livecall - No CLSID value found

O18:64bit: - Protocol\Handler\ms-help - No CLSID value found

O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found

O18:64bit: - Protocol\Handler\msnim - No CLSID value found

O18:64bit: - Protocol\Handler\prox - No CLSID value found

O18:64bit: - Protocol\Handler\skype4com - No CLSID value found

O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found

O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found

O18 - Protocol\Handler\base64 {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)

O18 - Protocol\Handler\chrome {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)

O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)

O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)

O18 - Protocol\Handler\prox {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)

O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)

O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)

O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)

O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found

O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)

O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found

O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

O32 - HKLM CDRom: AutoRun - 1

O33 - MountPoints2\{50dfb13a-984a-11e1-af98-b482fe503b72}\Shell - "" = AutoRun

O33 - MountPoints2\{50dfb13a-984a-11e1-af98-b482fe503b72}\Shell\AutoRun\command - "" = F:\Autorun.exe

O34 - HKLM BootExecute: (autocheck autochk *)

O35:64bit: - HKLM\..comfile [open] -- "%1" %*

O35:64bit: - HKLM\..exefile [open] -- "%1" %*

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*

O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*

O37 - HKLM\...com [@ = comfile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

 

========== Files/Folders - Created Within 30 Days ==========

 

[2012/05/28 07:35:47 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\RTCOM

[2012/05/28 07:35:21 | 002,605,400 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\WavesGUILib.dll

[2012/05/28 07:35:19 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSTSX64.dll

[2012/05/28 07:35:19 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSTSH64.dll

[2012/05/28 07:35:19 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSHP64.dll

[2012/05/28 07:35:19 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\windows\SysNative\SRSWOW64.dll

[2012/05/28 07:35:15 | 000,220,776 | ---- | C] (Sony Corporation) -- C:\windows\SysNative\SFSS_APO.dll

[2012/05/28 07:35:14 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\windows\SysNative\SFNHK64.dll

[2012/05/28 07:35:14 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\windows\SysNative\SFCOM64.dll

[2012/05/28 07:35:14 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\windows\SysNative\SFAPO64.dll

[2012/05/28 07:35:14 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\windows\SysWow64\SFCOM.dll

[2012/05/28 07:35:13 | 002,670,696 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RtPgEx64.dll

[2012/05/28 07:35:13 | 001,560,168 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RTSnMg64.cpl

[2012/05/28 07:35:12 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RtlCPAPI64.dll

[2012/05/28 07:35:07 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RtkCfg64.dll

[2012/05/28 07:35:07 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RtkCoLDR64.dll

[2012/05/28 07:35:06 | 003,608,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RtkAPO64.dll

[2012/05/28 07:35:04 | 000,824,424 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RtkApi64.dll

[2012/05/28 07:35:03 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEEP64A.dll

[2012/05/28 07:35:03 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEEL64A.dll

[2012/05/28 07:35:02 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEED64A.dll

[2012/05/28 07:35:02 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RTEEG64A.dll

[2012/05/28 07:35:00 | 001,251,432 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RTCOM64.dll

[2012/05/28 07:34:58 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RP3DHT64.dll

[2012/05/28 07:34:57 | 002,886,656 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RCoRes64.dat

[2012/05/28 07:34:57 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\windows\SysNative\RP3DAA64.dll

[2012/05/28 07:34:53 | 000,102,504 | ---- | C] (Realtek Semiconductor Corp.) -- C:\windows\SysNative\RCoInstII64.dll

[2012/05/28 07:34:35 | 007,163,744 | ---- | C] (Dolby Laboratories) -- C:\windows\SysNative\R4EEP64A.dll

[2012/05/28 07:34:26 | 000,137,056 | ---- | C] (Dolby Laboratories) -- C:\windows\SysNative\R4EEL64A.dll

[2012/05/28 07:34:26 | 000,075,104 | ---- | C] (Dolby Laboratories) -- C:\windows\SysNative\R4EEG64A.dll

[2012/05/28 07:34:25 | 000,433,504 | ---- | C] (Dolby Laboratories) -- C:\windows\SysNative\R4EED64A.dll

[2012/05/28 07:34:24 | 000,120,160 | ---- | C] (Dolby Laboratories) -- C:\windows\SysNative\R4EEA64A.dll

[2012/05/28 07:34:10 | 000,396,632 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxVolumeSDAPO.dll

[2012/05/28 07:34:07 | 008,363,864 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioRealtek.dll

[2012/05/28 07:33:57 | 002,131,288 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioEQ.dll

[2012/05/28 07:33:56 | 000,978,776 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioAPOShell64.dll

[2012/05/28 07:33:55 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\windows\SysNative\KAAPORT64.dll

[2012/05/28 07:33:55 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioAPO30.dll

[2012/05/28 07:33:55 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\windows\SysNative\MaxxAudioAPO20.dll

[2012/05/28 07:33:07 | 002,528,832 | ---- | C] (Fortemedia Corporation) -- C:\windows\SysNative\FMAPO64.dll

[2012/05/28 07:33:02 | 000,693,352 | ---- | C] (DTS) -- C:\windows\SysNative\DTSVoiceClarityDLL64.dll

[2012/05/28 07:32:56 | 000,712,296 | ---- | C] (DTS) -- C:\windows\SysNative\DTSSymmetryDLL64.dll

[2012/05/28 07:32:54 | 001,756,264 | ---- | C] (DTS) -- C:\windows\SysNative\DTSS2SpeakerDLL64.dll

[2012/05/28 07:32:50 | 001,568,360 | ---- | C] (DTS) -- C:\windows\SysNative\DTSS2HeadphoneDLL64.dll

[2012/05/28 07:32:47 | 000,491,112 | ---- | C] (DTS) -- C:\windows\SysNative\DTSNeoPCDLL64.dll

[2012/05/28 07:32:47 | 000,432,744 | ---- | C] (DTS) -- C:\windows\SysNative\DTSLimiterDLL64.dll

[2012/05/28 07:32:46 | 000,242,792 | ---- | C] (DTS) -- C:\windows\SysNative\DTSLFXAPO64.dll

[2012/05/28 07:32:46 | 000,241,768 | ---- | C] (DTS) -- C:\windows\SysNative\DTSGFXAPONS64.dll

[2012/05/28 07:32:45 | 000,428,648 | ---- | C] (DTS) -- C:\windows\SysNative\DTSGainCompensatorDLL64.dll

[2012/05/28 07:32:45 | 000,242,792 | ---- | C] (DTS) -- C:\windows\SysNative\DTSGFXAPO64.dll

[2012/05/28 07:32:44 | 001,486,952 | ---- | C] (DTS) -- C:\windows\SysNative\DTSBoostDLL64.dll

[2012/05/28 07:32:41 | 000,728,680 | ---- | C] (DTS) -- C:\windows\SysNative\DTSBassEnhancementDLL64.dll

[2012/05/28 07:32:37 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\ElevatedDiagnostics

[2012/05/28 07:32:25 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\windows\SysNative\AERTAR64.dll

[2012/05/28 07:32:24 | 000,202,336 | ---- | C] (Andrea Electronics Corporation) -- C:\windows\SysNative\AERTAC64.dll

[2012/05/28 07:21:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek

[2012/05/28 07:05:04 | 000,000,000 | ---D | C] -- C:\windows\pss

[2012/05/28 06:55:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner

[2012/05/28 06:55:12 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner

[2012/05/28 06:52:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster 3

[2012/05/28 06:52:20 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit

[2012/05/28 06:52:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit

[2012/05/27 13:58:34 | 000,000,000 | ---D | C] -- C:\Users\axel\Documents\Diablo III

[2012/05/27 12:58:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III Beta

[2012/05/26 23:38:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET

[2012/05/26 12:53:29 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\CyberLink

[2012/05/21 14:16:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metin2

[2012/05/20 15:06:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III

[2012/05/20 15:06:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Blizzard Entertainment

[2012/05/20 15:06:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Blizzard Entertainment

[2012/05/20 12:02:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Battle.net

[2012/05/20 11:48:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip

[2012/05/20 11:48:52 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip

[2012/05/15 15:56:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam

[2012/05/15 15:18:35 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam

[2012/05/15 14:59:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam

[2012/05/15 14:10:09 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\webkit

[2012/05/15 10:51:02 | 000,000,000 | ---D | C] -- C:\Users\axel\Documents\FIFA 10

[2012/05/15 10:49:45 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FPP 10

[2012/05/14 22:34:52 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Leadertech

[2012/05/14 21:19:33 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games

[2012/05/14 19:13:35 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mafia

[2012/05/14 19:13:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mafia

[2012/05/14 17:57:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

[2012/05/14 17:56:36 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight

[2012/05/14 17:56:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight

[2012/05/14 14:55:42 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpcorekmts.dll

[2012/05/14 14:55:42 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpwsx.dll

[2012/05/13 19:43:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe

[2012/05/13 12:31:58 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess

[2012/05/13 12:31:41 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Skype

[2012/05/13 12:31:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype

[2012/05/13 12:31:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype

[2012/05/13 12:31:32 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype

[2012/05/13 12:31:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype

[2012/05/11 16:17:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Yontoo

[2012/05/11 16:17:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Tarma Installer

[2012/05/11 16:17:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\otshot

[2012/05/11 16:16:55 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\BrowserCompanion

[2012/05/11 16:16:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BrowserCompanion

[2012/05/11 16:16:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Search Fairy

[2012/05/11 16:16:31 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\ZalmanInstaller_otshot

[2012/05/11 06:52:50 | 000,000,000 | R--D | C] -- C:\Users\axel\Documents\Notes

[2012/05/11 06:50:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark

[2012/05/11 06:50:40 | 000,000,000 | ---D | C] -- C:\ProgramData\lx_Cats

[2012/05/11 06:50:28 | 000,000,000 | ---D | C] -- C:\Program Files\Lexmark S300-S400 Series

[2012/05/11 06:48:00 | 000,000,000 | ---D | C] -- C:\Program Files\Lexmark

[2012/05/10 15:06:46 | 000,000,000 | ---D | C] -- C:\ProgramData\ReaConverter

[2012/05/10 15:06:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReaConverter 6.0 Pro

[2012/05/10 15:06:31 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\RCP 6

[2012/05/10 15:06:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ReaConverter 6.0 Pro

[2012/05/10 14:52:44 | 000,000,000 | ---D | C] -- C:\Users\axel\.thumbnails

[2012/05/10 14:00:37 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\fontconfig

[2012/05/10 14:00:35 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\gegl-0.2

[2012/05/10 14:00:35 | 000,000,000 | ---D | C] -- C:\Users\axel\.gimp-2.8

[2012/05/10 13:57:26 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP 2

[2012/05/10 09:28:52 | 000,000,000 | ---D | C] -- C:\windows\SysNative\SPReview

[2012/05/10 09:28:29 | 000,000,000 | ---D | C] -- C:\windows\SysNative\EventProviders

[2012/05/10 09:25:22 | 001,544,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DWrite.dll

[2012/05/10 09:24:45 | 005,559,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe

[2012/05/10 09:24:44 | 003,968,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe

[2012/05/10 09:24:44 | 003,913,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe

[2012/05/10 07:52:46 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\Samsung

[2012/05/10 07:52:34 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Samsung

[2012/05/10 07:52:31 | 000,000,000 | ---D | C] -- C:\Users\axel\Documents\samsung

[2012/05/08 09:43:50 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fsquirt.exe

[2012/05/08 09:43:48 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\usbport.sys

[2012/05/08 09:43:48 | 000,007,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\usbd.sys

[2012/05/08 09:42:18 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\esent.dll

[2012/05/08 09:42:18 | 001,699,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\esent.dll

[2012/05/08 09:42:17 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\storport.sys

[2012/05/08 09:42:17 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\windows\SysNative\drivers\amdsata.sys

[2012/05/08 09:42:17 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\windows\SysNative\drivers\amdxata.sys

[2012/05/08 09:42:16 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fsutil.exe

[2012/05/08 09:42:16 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fsutil.exe

[2012/05/07 21:46:34 | 000,000,000 | ---D | C] -- C:\Users\axel\Documents\Syndicate

[2012/05/07 21:46:25 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_7.dll

[2012/05/07 21:46:25 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_7.dll

[2012/05/07 21:46:25 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_5.dll

[2012/05/07 21:46:25 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_5.dll

[2012/05/07 21:46:24 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_43.dll

[2012/05/07 21:46:24 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_43.dll

[2012/05/07 21:46:24 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_43.dll

[2012/05/07 21:46:24 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_43.dll

[2012/05/07 21:46:24 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_7.dll

[2012/05/07 21:46:24 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_7.dll

[2012/05/07 21:46:23 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_43.dll

[2012/05/07 21:46:23 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_43.dll

[2012/05/07 21:46:23 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_43.dll

[2012/05/07 21:46:23 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_43.dll

[2012/05/07 21:46:22 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_43.dll

[2012/05/07 21:46:22 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_43.dll

[2012/05/07 21:46:22 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_6.dll

[2012/05/07 21:46:22 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_6.dll

[2012/05/07 21:46:22 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_4.dll

[2012/05/07 21:46:22 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_4.dll

[2012/05/07 21:46:21 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_6.dll

[2012/05/07 21:46:21 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_6.dll

[2012/05/07 21:46:20 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_7.dll

[2012/05/07 21:46:20 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_7.dll

[2012/05/07 21:46:19 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_5.dll

[2012/05/07 21:46:19 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_5.dll

[2012/05/07 21:46:19 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_5.dll

[2012/05/07 21:46:19 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_5.dll

[2012/05/07 21:46:18 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_42.dll

[2012/05/07 21:46:18 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_42.dll

[2012/05/07 21:46:17 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_42.dll

[2012/05/07 21:46:17 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_42.dll

[2012/05/07 21:46:17 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_42.dll

[2012/05/07 21:46:17 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_42.dll

[2012/05/07 21:46:16 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_42.dll

[2012/05/07 21:46:16 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_42.dll

[2012/05/07 21:46:16 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_42.dll

[2012/05/07 21:46:16 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_42.dll

[2012/05/07 21:46:15 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_41.dll

[2012/05/07 21:46:15 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_41.dll

[2012/05/07 21:46:15 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_41.dll

[2012/05/07 21:46:15 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_41.dll

[2012/05/07 21:46:15 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_41.dll

[2012/05/07 21:46:15 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_41.dll

[2012/05/07 21:46:14 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_4.dll

[2012/05/07 21:46:14 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_4.dll

[2012/05/07 21:46:14 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_3.dll

[2012/05/07 21:46:14 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_3.dll

[2012/05/07 21:46:13 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_4.dll

[2012/05/07 21:46:13 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_4.dll

[2012/05/07 21:46:13 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_6.dll

[2012/05/07 21:46:13 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_6.dll

[2012/05/07 21:46:12 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_40.dll

[2012/05/07 21:46:12 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_40.dll

[2012/05/07 21:46:12 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_40.dll

[2012/05/07 21:46:12 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_40.dll

[2012/05/07 21:46:12 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_40.dll

[2012/05/07 21:46:12 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_40.dll

[2012/05/07 21:46:11 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_3.dll

[2012/05/07 21:46:11 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_3.dll

[2012/05/07 21:46:11 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_2.dll

[2012/05/07 21:46:11 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_2.dll

[2012/05/07 21:46:10 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_3.dll

[2012/05/07 21:46:10 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_3.dll

[2012/05/07 21:46:10 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_5.dll

[2012/05/07 21:46:10 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_5.dll

[2012/05/07 21:46:09 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_2.dll

[2012/05/07 21:46:09 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_2.dll

[2012/05/07 21:46:09 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_2.dll

[2012/05/07 21:46:09 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_2.dll

[2012/05/07 21:46:09 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_1.dll

[2012/05/07 21:46:09 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_1.dll

[2012/05/07 21:46:08 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_39.dll

[2012/05/07 21:46:08 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_39.dll

[2012/05/07 21:46:08 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_39.dll

[2012/05/07 21:46:08 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_39.dll

[2012/05/07 21:46:08 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_39.dll

[2012/05/07 21:46:08 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_39.dll

[2012/05/07 21:46:07 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_1.dll

[2012/05/07 21:46:07 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_1.dll

[2012/05/07 21:46:07 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_1.dll

[2012/05/07 21:46:07 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_1.dll

[2012/05/07 21:46:07 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_0.dll

[2012/05/07 21:46:07 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_0.dll

[2012/05/07 21:46:06 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_38.dll

[2012/05/07 21:46:06 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_38.dll

[2012/05/07 21:46:06 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_38.dll

[2012/05/07 21:46:06 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_38.dll

[2012/05/07 21:46:06 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_4.dll

[2012/05/07 21:46:06 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_4.dll

[2012/05/07 21:46:05 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_38.dll

[2012/05/07 21:46:05 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_38.dll

[2012/05/07 21:46:04 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_0.dll

[2012/05/07 21:46:04 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_0.dll

[2012/05/07 21:46:03 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_0.dll

[2012/05/07 21:46:03 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_0.dll

[2012/05/07 21:46:03 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_3.dll

[2012/05/07 21:46:03 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_3.dll

[2012/05/07 21:46:02 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_37.dll

[2012/05/07 21:46:02 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_37.dll

[2012/05/07 21:46:02 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_37.dll

[2012/05/07 21:46:02 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_37.dll

[2012/05/07 21:46:00 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_37.dll

[2012/05/07 21:46:00 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_37.dll

[2012/05/07 21:45:58 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_10.dll

[2012/05/07 21:45:58 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_10.dll

[2012/05/07 21:45:57 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_36.dll

[2012/05/07 21:45:57 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_36.dll

[2012/05/07 21:45:57 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_36.dll

[2012/05/07 21:45:57 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_36.dll

[2012/05/07 21:45:55 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_36.dll

[2012/05/07 21:45:55 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_36.dll

[2012/05/07 21:45:54 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_9.dll

[2012/05/07 21:45:54 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_9.dll

[2012/05/07 21:45:53 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_35.dll

[2012/05/07 21:45:53 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_35.dll

[2012/05/07 21:45:53 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_35.dll

[2012/05/07 21:45:53 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_35.dll

[2012/05/07 21:45:52 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_35.dll

[2012/05/07 21:45:52 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_35.dll

[2012/05/07 21:45:51 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_8.dll

[2012/05/07 21:45:51 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_8.dll

[2012/05/07 21:45:51 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_2.dll

[2012/05/07 21:45:51 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_2.dll

[2012/05/07 21:45:50 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_34.dll

[2012/05/07 21:45:50 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_34.dll

[2012/05/07 21:45:50 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_34.dll

[2012/05/07 21:45:50 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_34.dll

[2012/05/07 21:45:49 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_34.dll

[2012/05/07 21:45:49 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_34.dll

[2012/05/07 21:45:49 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_3.dll

[2012/05/07 21:45:49 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_3.dll

[2012/05/07 21:45:47 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_7.dll

[2012/05/07 21:45:47 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_7.dll

[2012/05/07 21:45:46 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_33.dll

[2012/05/07 21:45:46 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_33.dll

[2012/05/07 21:45:46 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_33.dll

[2012/05/07 21:45:46 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_33.dll

[2012/05/07 21:45:45 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_33.dll

[2012/05/07 21:45:45 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_33.dll

[2012/05/07 21:45:44 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_6.dll

[2012/05/07 21:45:44 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_6.dll

[2012/05/07 21:45:42 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_5.dll

[2012/05/07 21:45:42 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_5.dll

[2012/05/07 21:45:41 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10.dll

[2012/05/07 21:45:41 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10.dll

[2012/05/07 21:45:40 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_4.dll

[2012/05/07 21:45:40 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_4.dll

[2012/05/07 21:45:40 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\x3daudio1_1.dll

[2012/05/07 21:45:40 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\x3daudio1_1.dll

[2012/05/07 21:45:39 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_31.dll

[2012/05/07 21:45:39 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_31.dll

[2012/05/07 21:45:37 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_3.dll

[2012/05/07 21:45:37 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_3.dll

[2012/05/07 21:45:37 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_2.dll

[2012/05/07 21:45:37 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_2.dll

[2012/05/07 21:45:36 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_2.dll

[2012/05/07 21:45:36 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_2.dll

[2012/05/07 21:45:36 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_1.dll

[2012/05/07 21:45:36 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_1.dll

[2012/05/07 21:45:34 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_1.dll

[2012/05/07 21:45:34 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_1.dll

[2012/05/07 21:45:29 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_30.dll

[2012/05/07 21:45:29 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_30.dll

[2012/05/07 21:45:27 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_0.dll

[2012/05/07 21:45:27 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_0.dll

[2012/05/07 21:45:27 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\x3daudio1_0.dll

[2012/05/07 21:45:27 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\x3daudio1_0.dll

[2012/05/07 21:45:26 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_29.dll

[2012/05/07 21:45:26 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_29.dll

[2012/05/07 21:45:25 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_28.dll

[2012/05/07 21:45:25 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_28.dll

[2012/05/07 21:45:24 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_27.dll

[2012/05/07 21:45:24 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_26.dll

[2012/05/07 21:45:24 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_27.dll

[2012/05/07 21:45:24 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_26.dll

[2012/05/07 21:45:23 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_25.dll

[2012/05/07 21:45:23 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_25.dll

[2012/05/07 21:45:22 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_24.dll

[2012/05/07 21:45:22 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_24.dll

[2012/05/07 21:41:20 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\directx

[2012/05/07 21:36:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games

[2012/05/07 21:26:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite

[2012/05/07 21:25:36 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\windows\SysNative\drivers\dtsoftbus01.sys

[2012/05/07 21:25:32 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\DAEMON Tools Lite

[2012/05/07 21:25:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite

[2012/05/07 21:24:56 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite

[2012/05/07 19:27:47 | 000,161,280 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bmdm.sys

[2012/05/07 19:27:47 | 000,128,000 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bserd.sys

[2012/05/07 19:27:47 | 000,127,488 | ---- | C] (MCCI) -- C:\windows\SysNative\drivers\ss_bbus.sys

[2012/05/07 19:27:47 | 000,018,944 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bmdfl.sys

[2012/05/07 19:27:47 | 000,015,872 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bwhnt.sys

[2012/05/07 19:27:47 | 000,015,872 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bwh.sys

[2012/05/07 19:27:47 | 000,015,360 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bcmnt.sys

[2012/05/07 19:27:47 | 000,015,360 | ---- | C] (MCCI Corporation) -- C:\windows\SysNative\drivers\ss_bcm.sys

[2012/05/07 19:26:47 | 004,659,712 | ---- | C] (Dmitry Streblechenko) -- C:\windows\SysWow64\Redemption.dll

[2012/05/07 19:26:39 | 000,821,824 | ---- | C] (Devguru Co., Ltd.) -- C:\windows\SysWow64\dgderapi.dll

[2012/05/07 19:26:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MarkAny

[2012/05/07 19:25:06 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\Downloaded Installations

[2012/05/07 16:18:46 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps

[2012/05/07 15:36:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation

[2012/05/07 15:35:18 | 006,074,176 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcpl.dll

[2012/05/07 15:35:18 | 003,089,728 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvsvc64.dll

[2012/05/07 15:35:18 | 002,561,856 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvsvcr.dll

[2012/05/07 15:35:18 | 000,118,080 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvmctray.dll

[2012/05/07 15:35:18 | 000,063,296 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvshext.dll

[2012/05/07 15:34:18 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation

[2012/05/07 15:28:09 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\Wat

[2012/05/07 15:28:09 | 000,000,000 | ---D | C] -- C:\windows\SysNative\Wat

[2012/05/07 15:22:09 | 025,543,488 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvoglv64.dll

[2012/05/07 15:22:09 | 019,444,544 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvoglv32.dll

[2012/05/07 15:22:09 | 009,717,568 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvwgf2umx.dll

[2012/05/07 15:22:09 | 007,713,088 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvwgf2um.dll

[2012/05/07 15:22:09 | 001,737,536 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispco64.dll

[2012/05/07 15:22:09 | 001,466,176 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvgenco64.dll

[2012/05/07 15:22:09 | 001,451,840 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvhdagenco6420103.dll

[2012/05/07 15:22:09 | 000,068,928 | ---- | C] (Khronos Group) -- C:\windows\SysNative\OpenCL.dll

[2012/05/07 15:22:09 | 000,061,248 | ---- | C] (Khronos Group) -- C:\windows\SysWow64\OpenCL.dll

[2012/05/07 15:22:08 | 017,642,816 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvd3dumx.dll

[2012/05/07 15:22:08 | 015,009,600 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvd3dum.dll

[2012/05/07 15:22:08 | 008,008,000 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuda.dll

[2012/05/07 15:22:08 | 005,892,928 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuda.dll

[2012/05/07 15:22:08 | 002,872,640 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuvenc.dll

[2012/05/07 15:22:08 | 002,672,448 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuvid.dll

[2012/05/07 15:22:08 | 002,517,312 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuvid.dll

[2012/05/07 15:22:08 | 002,437,440 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuvenc.dll

[2012/05/07 15:22:06 | 025,222,976 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcompiler.dll

[2012/05/07 15:22:06 | 017,543,488 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcompiler.dll

[2012/05/07 15:22:06 | 002,660,160 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvapi64.dll

[2012/05/07 15:22:06 | 002,301,248 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvapi.dll

[2012/05/07 15:20:32 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation

[2012/05/07 15:19:50 | 000,000,000 | ---D | C] -- C:\NVIDIA

[2012/05/07 15:19:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client

[2012/05/07 15:19:08 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client

[2012/05/07 15:06:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrent

[2012/05/07 15:05:25 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\uTorrent

[2012/05/07 14:54:35 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dfshim.dll

[2012/05/07 14:54:35 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netfxperf.dll

[2012/05/07 14:54:28 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dfshim.dll

[2012/05/07 14:54:25 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mstscax.dll

[2012/05/07 14:54:25 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d10warp.dll

[2012/05/07 14:54:25 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\TsUsbFlt.sys

[2012/05/07 14:54:25 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll

[2012/05/07 14:54:22 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mstscax.dll

[2012/05/07 14:54:20 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfc40.dll

[2012/05/07 14:54:20 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfc40u.dll

[2012/05/07 14:54:18 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmp.dll

[2012/05/07 14:54:17 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mmcndmgr.dll

[2012/05/07 14:54:15 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mf.dll

[2012/05/07 14:54:15 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secproc.dll

[2012/05/07 14:54:15 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secproc_isv.dll

[2012/05/07 14:54:15 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\secproc_isv.dll

[2012/05/07 14:54:15 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RMActivate_isv.exe

[2012/05/07 14:54:15 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RMActivate.exe

[2012/05/07 14:54:14 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xpsservices.dll

[2012/05/07 14:54:14 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\secproc.dll

[2012/05/07 14:54:14 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RMActivate_isv.exe

[2012/05/07 14:54:13 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MPCrt4.dll

[2012/05/07 14:54:13 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RMActivate.exe

[2012/05/07 14:54:12 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ole32.dll

[2012/05/07 14:54:12 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spwizui.dll

[2012/05/07 14:54:11 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mf.dll

[2012/05/07 14:54:11 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ExplorerFrame.dll

[2012/05/07 14:54:11 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RacEngn.dll

[2012/05/07 14:54:11 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diagperf.dll

[2012/05/07 14:54:11 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskschd.dll

[2012/05/07 14:54:10 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vssapi.dll

[2012/05/07 14:54:10 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CertEnroll.dll

[2012/05/07 14:54:09 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UIRibbon.dll

[2012/05/07 14:54:09 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\NaturalLanguage6.dll

[2012/05/07 14:54:09 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mcupdate_GenuineIntel.dll

[2012/05/07 14:54:08 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmp.dll

[2012/05/07 14:54:07 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMVCORE.DLL

[2012/05/07 14:54:07 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PresentationHostProxy.dll

[2012/05/07 14:54:06 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spinstall.exe

[2012/05/07 14:54:06 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PresentationHost.exe

[2012/05/07 14:54:06 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spreview.exe

[2012/05/07 14:54:06 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PresentationHost.exe

[2012/05/07 14:54:06 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpdd.dll

[2012/05/07 14:54:06 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PresentationHostProxy.dll

[2012/05/07 14:54:05 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSAT.exe

[2012/05/07 14:54:05 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CertEnroll.dll

[2012/05/07 14:54:05 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMVDECOD.DLL

[2012/05/07 14:54:04 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d9.dll

[2012/05/07 14:54:04 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RacEngn.dll

[2012/05/07 14:54:04 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SearchFolder.dll

[2012/05/07 14:54:03 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AuthFWSnapin.dll

[2012/05/07 14:54:03 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AuthFWSnapin.dll

[2012/05/07 14:54:03 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dwmcore.dll

[2012/05/07 14:54:02 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dbgeng.dll

[2012/05/07 14:54:00 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\crypt32.dll

[2012/05/07 14:53:59 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ExplorerFrame.dll

[2012/05/07 14:53:59 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\actxprxy.dll

[2012/05/07 14:53:59 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\TSWorkspace.dll

[2012/05/07 14:53:58 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mstsc.exe

[2012/05/07 14:53:57 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\imapi2fs.dll

[2012/05/07 14:53:57 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\propsys.dll

[2012/05/07 14:53:57 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d11.dll

[2012/05/07 14:53:57 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netlogon.dll

[2012/05/07 14:53:56 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\authui.dll

[2012/05/07 14:53:56 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\setupapi.dll

[2012/05/07 14:53:56 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\werconcpl.dll

[2012/05/07 14:53:56 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\odbc32.dll

[2012/05/07 14:53:56 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\taskschd.dll

[2012/05/07 14:53:56 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskeng.exe

[2012/05/07 14:53:55 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mstsc.exe

[2012/05/07 14:53:55 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\user32.dll

[2012/05/07 14:53:55 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\netio.sys

[2012/05/07 14:53:54 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\certmgr.dll

[2012/05/07 14:53:54 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\localspl.dll

[2012/05/07 14:53:54 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wer.dll

[2012/05/07 14:53:54 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\certcli.dll

[2012/05/07 14:53:54 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\scavengeui.dll

[2012/05/07 14:53:53 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dwmcore.dll

[2012/05/07 14:53:53 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PortableDeviceApi.dll

[2012/05/07 14:53:53 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdrm.dll

[2012/05/07 14:53:53 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shlwapi.dll

[2012/05/07 14:53:53 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tsmf.dll

[2012/05/07 14:53:53 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncsi.dll

[2012/05/07 14:53:52 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netshell.dll

[2012/05/07 14:53:52 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdtctm.dll

[2012/05/07 14:53:52 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\usp10.dll

[2012/05/07 14:53:52 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbc32.dll

[2012/05/07 14:53:52 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmicmiplugin.dll

[2012/05/07 14:53:52 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netcfgx.dll

[2012/05/07 14:53:52 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winlogon.exe

[2012/05/07 14:53:52 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ws2_32.dll

[2012/05/07 14:53:52 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\framedynos.dll

[2012/05/07 14:53:52 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tcpmonui.dll

[2012/05/07 14:53:51 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Query.dll

[2012/05/07 14:53:51 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxgi.dll

[2012/05/07 14:53:51 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\TSWorkspace.dll

[2012/05/07 14:53:51 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\comdlg32.dll

[2012/05/07 14:53:51 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpps.dll

[2012/05/07 14:53:51 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsm.exe

[2012/05/07 14:53:51 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\apphelp.dll

[2012/05/07 14:53:50 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpdshext.dll

[2012/05/07 14:53:50 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\azroles.dll

[2012/05/07 14:53:50 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drvstore.dll

[2012/05/07 14:53:50 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tsmf.dll

[2012/05/07 14:53:50 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dot3api.dll

[2012/05/07 14:53:49 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dbgeng.dll

[2012/05/07 14:53:49 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Vault.dll

[2012/05/07 14:53:49 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\samsrv.dll

[2012/05/07 14:53:49 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lpksetup.exe

[2012/05/07 14:53:49 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cmd.exe

[2012/05/07 14:53:49 | 000,281,600 | ---- | C] (Microsoft) -- C:\windows\SysNative\DShowRdpFilter.dll

[2012/05/07 14:53:49 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QAGENT.DLL

[2012/05/07 14:53:48 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\win32spl.dll

[2012/05/07 14:53:47 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMVDECOD.DLL

[2012/05/07 14:53:47 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3d11.dll

[2012/05/07 14:53:47 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netcfgx.dll

[2012/05/07 14:53:46 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WindowsCodecs.dll

[2012/05/07 14:53:46 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sxs.dll

[2012/05/07 14:53:45 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\pnidui.dll

[2012/05/07 14:53:45 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskcomp.dll

[2012/05/07 14:53:45 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfds.dll

[2012/05/07 14:53:45 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Wldap32.dll

[2012/05/07 14:53:45 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mcbuilder.exe

[2012/05/07 14:53:45 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\upnp.dll

[2012/05/07 14:53:44 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ipsmsnap.dll

[2012/05/07 14:53:43 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mmcndmgr.dll

[2012/05/07 14:53:43 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\authui.dll

[2012/05/07 14:53:43 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\webservices.dll

[2012/05/07 14:53:43 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\imapi2fs.dll

[2012/05/07 14:53:43 | 000,252,928 | ---- | C] (Microsoft) -- C:\windows\SysWow64\DShowRdpFilter.dll

[2012/05/07 14:53:43 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hgprint.dll

[2012/05/07 14:53:43 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netfxperf.dll

[2012/05/07 14:53:42 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsta.dll

[2012/05/07 14:53:41 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sqlsrv32.dll

[2012/05/07 14:53:41 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\gdi32.dll

[2012/05/07 14:53:41 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fveapi.dll

[2012/05/07 14:53:41 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iepeers.dll

[2012/05/07 14:53:41 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mcbuilder.exe

[2012/05/07 14:53:41 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\prncache.dll

[2012/05/07 14:53:41 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dot3api.dll

[2012/05/07 14:53:40 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMNetMgr.dll

[2012/05/07 14:53:40 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mcmde.dll

[2012/05/07 14:53:40 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\schtasks.exe

[2012/05/07 14:53:39 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xpsservices.dll

[2012/05/07 14:53:39 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\certmgr.dll

[2012/05/07 14:53:39 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlanpref.dll

[2012/05/07 14:53:39 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll

[2012/05/07 14:53:39 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\evr.dll

[2012/05/07 14:53:39 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\photowiz.dll

[2012/05/07 14:53:39 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\drvstore.dll

[2012/05/07 14:53:39 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vpnike.dll

[2012/05/07 14:53:39 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\userenv.dll

[2012/05/07 14:53:38 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AudioSes.dll

[2012/05/07 14:53:38 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\framedyn.dll

[2012/05/07 14:53:37 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SyncCenter.dll

[2012/05/07 14:53:37 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMPEncEn.dll

[2012/05/07 14:53:37 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppobjs.dll

[2012/05/07 14:53:37 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpmde.dll

[2012/05/07 14:53:37 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpeffects.dll

[2012/05/07 14:53:37 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll

[2012/05/07 14:53:37 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cmd.exe

[2012/05/07 14:53:37 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfreadwrite.dll

[2012/05/07 14:53:36 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll

[2012/05/07 14:53:35 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSATAPI.dll

[2012/05/07 14:53:35 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\win32spl.dll

[2012/05/07 14:53:35 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfds.dll

[2012/05/07 14:53:35 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\stobject.dll

[2012/05/07 14:53:35 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\framedynos.dll

[2012/05/07 14:53:35 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fde.dll

[2012/05/07 14:53:34 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\localsec.dll

[2012/05/07 14:53:34 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\imapi2.dll

[2012/05/07 14:53:34 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netdiagfx.dll

[2012/05/07 14:53:34 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\credui.dll

[2012/05/07 14:53:33 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcryptprimitives.dll

[2012/05/07 14:53:33 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cdd.dll

[2012/05/07 14:53:32 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetpp.dll

[2012/05/07 14:53:31 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tcpipcfg.dll

[2012/05/07 14:53:31 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QSHVHOST.DLL

[2012/05/07 14:53:31 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netid.dll

[2012/05/07 14:53:31 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\davclnt.dll

[2012/05/07 14:53:30 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\azroles.dll

[2012/05/07 14:53:30 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spp.dll

[2012/05/07 14:53:30 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ncsi.dll

[2012/05/07 14:53:29 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\gameux.dll

[2012/05/07 14:53:29 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\biocpl.dll

[2012/05/07 14:53:29 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msinfo32.exe

[2012/05/07 14:53:28 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\printui.dll

[2012/05/07 14:53:28 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\scansetting.dll

[2012/05/07 14:53:27 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\themeui.dll

[2012/05/07 14:53:27 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mspbda.dll

[2012/05/07 14:53:27 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PhotoScreensaver.scr

[2012/05/07 14:53:27 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\windows\splwow64.exe

[2012/05/07 14:53:25 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdri.dll

[2012/05/07 14:53:25 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wusa.exe

[2012/05/07 14:53:25 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\IPHLPAPI.DLL

[2012/05/07 14:53:25 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aitagent.exe

[2012/05/07 14:53:24 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\basecsp.dll

[2012/05/07 14:53:23 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dbghelp.dll

[2012/05/07 14:53:23 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mscms.dll

[2012/05/07 14:53:23 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfreadwrite.dll

[2012/05/07 14:53:23 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MPChttp.dll

[2012/05/07 14:53:22 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winspool.drv

[2012/05/07 14:53:21 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FirewallControlPanel.dll

[2012/05/07 14:53:21 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PkgMgr.exe

[2012/05/07 14:53:20 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msi.dll

[2012/05/07 14:53:20 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wisptis.exe

[2012/05/07 14:53:20 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XpsRasterService.dll

[2012/05/07 14:53:19 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\evr.dll

[2012/05/07 14:53:19 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\taskcomp.dll

[2012/05/07 14:53:19 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ocsetup.exe

[2012/05/07 14:53:17 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\calc.exe

[2012/05/07 14:53:17 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DXP.dll

[2012/05/07 14:53:17 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppwinob.dll

[2012/05/07 14:53:17 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WinSATAPI.dll

[2012/05/07 14:53:17 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ocsetapi.dll

[2012/05/07 14:53:15 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ci.dll

[2012/05/07 14:53:15 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sqlsrv32.dll

[2012/05/07 14:53:15 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\eapp3hst.dll

[2012/05/07 14:53:14 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\eapphost.dll

[2012/05/07 14:53:14 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\upnp.dll

[2012/05/07 14:53:14 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mprapi.dll

[2012/05/07 14:53:14 | 000,128,000 | ---- | C] (Microsoft) -- C:\windows\SysNative\Robocopy.exe

[2012/05/07 14:53:13 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\UIRibbon.dll

[2012/05/07 14:53:13 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netshell.dll

[2012/05/07 14:53:13 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mmsys.cpl

[2012/05/07 14:53:13 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hal.dll

[2012/05/07 14:53:13 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ie4uinit.exe

[2012/05/07 14:53:13 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\t2embed.dll

[2012/05/07 14:53:13 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\thumbcache.dll

[2012/05/07 14:53:13 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\windows\SysNative\drivers\HpSAMD.sys

[2012/05/07 14:53:12 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DxpTaskSync.dll

[2012/05/07 14:53:12 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PerfCenterCPL.dll

[2012/05/07 14:53:11 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\themeui.dll

[2012/05/07 14:53:11 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MSMPEG2ENC.DLL

[2012/05/07 14:53:11 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\puiobj.dll

[2012/05/07 14:53:11 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\scecli.dll

[2012/05/07 14:53:11 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\Classpnp.sys

[2012/05/07 14:53:11 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dwmredir.dll

[2012/05/07 14:53:11 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\prncache.dll

[2012/05/07 14:53:11 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msasn1.dll

[2012/05/07 14:53:10 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DXPTaskRingtone.dll

[2012/05/07 14:53:10 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\onex.dll

[2012/05/07 14:53:09 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\printui.dll

[2012/05/07 14:53:09 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmpeffects.dll

[2012/05/07 14:53:09 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aaclient.dll

[2012/05/07 14:53:09 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\net1.exe

[2012/05/07 14:53:09 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MPChttp.dll

[2012/05/07 14:53:08 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wdc.dll

[2012/05/07 14:53:07 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msftedit.dll

[2012/05/07 14:53:07 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlangpui.dll

[2012/05/07 14:53:07 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\scesrv.dll

[2012/05/07 14:53:07 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\scansetting.dll

[2012/05/07 14:53:05 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netcenter.dll

[2012/05/07 14:53:05 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sdengin2.dll

[2012/05/07 14:53:05 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\VAN.dll

[2012/05/07 14:53:05 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\StructuredQuery.dll

[2012/05/07 14:53:05 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wiadefui.dll

[2012/05/07 14:53:05 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SndVol.exe

[2012/05/07 14:53:05 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dskquoui.dll

[2012/05/07 14:53:05 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\samcli.dll

[2012/05/07 14:53:05 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wscapi.dll

[2012/05/07 14:53:04 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll

[2012/05/07 14:53:04 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlangpui.dll

[2012/05/07 14:53:04 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\aaclient.dll

[2012/05/07 14:53:04 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\regapi.dll

[2012/05/07 14:53:03 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\pnidui.dll

[2012/05/07 14:53:03 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\webservices.dll

[2012/05/07 14:53:03 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srchadmin.dll

[2012/05/07 14:53:03 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QSHVHOST.DLL

[2012/05/07 14:53:03 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fde.dll

[2012/05/07 14:53:03 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\consent.exe

[2012/05/07 14:53:03 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\t2embed.dll

[2012/05/07 14:53:03 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QUTIL.DLL

[2012/05/07 14:53:02 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wksprt.exe

[2012/05/07 14:53:02 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\setupcl.exe

[2012/05/07 14:53:01 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SyncCenter.dll

[2012/05/07 14:53:01 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\appwiz.cpl

[2012/05/07 14:53:01 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\TabletPC.cpl

[2012/05/07 14:53:01 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapi.dll

[2012/05/07 14:53:01 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rastls.dll

[2012/05/07 14:53:01 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netdiagfx.dll

[2012/05/07 14:53:01 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskhost.exe

[2012/05/07 14:53:01 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wscapi.dll

[2012/05/07 14:53:00 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netiohlp.dll

[2012/05/07 14:53:00 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mimefilt.dll

[2012/05/07 14:52:59 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MSMPEG2ENC.DLL

[2012/05/07 14:52:59 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hgcpl.dll

[2012/05/07 14:52:59 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\clusapi.dll

[2012/05/07 14:52:59 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msconfig.exe

[2012/05/07 14:52:59 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\basecsp.dll

[2012/05/07 14:52:59 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fdeploy.dll

[2012/05/07 14:52:59 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsmproxy.dll

[2012/05/07 14:52:58 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl

[2012/05/07 14:52:58 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AuxiliaryDisplayCpl.dll

[2012/05/07 14:52:57 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\riched20.dll

[2012/05/07 14:52:57 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DXPTaskRingtone.dll

[2012/05/07 14:52:57 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\imapi2.dll

[2012/05/07 14:52:57 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mtxclu.dll

[2012/05/07 14:52:57 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iepeers.dll

[2012/05/07 14:52:57 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\TsUsbGDCoInstaller.dll

[2012/05/07 14:52:56 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dnscmmc.dll

[2012/05/07 14:52:55 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\gameux.dll

[2012/05/07 14:52:55 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MPCRtRemote.dll

[2012/05/07 14:52:54 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\powercpl.dll

[2012/05/07 14:52:54 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\logoncli.dll

[2012/05/07 14:52:53 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\themecpl.dll

[2012/05/07 14:52:53 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMPEncEn.dll

[2012/05/07 14:52:53 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sharemediacpl.dll

[2012/05/07 14:52:53 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\onex.dll

[2012/05/07 14:52:53 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nci.dll

[2012/05/07 14:52:52 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SensorsCpl.dll

[2012/05/07 14:52:52 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\eudcedit.exe

[2012/05/07 14:52:51 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Narrator.exe

[2012/05/07 14:52:51 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\autochk.exe

[2012/05/07 14:52:51 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\autofmt.exe

[2012/05/07 14:52:51 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Faultrep.dll

[2012/05/07 14:52:51 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netjoin.dll

[2012/05/07 14:52:51 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netiohlp.dll

[2012/05/07 14:52:51 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\hbaapi.dll

[2012/05/07 14:52:51 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\licmgr10.dll

[2012/05/07 14:52:51 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vpnikeapi.dll

[2012/05/07 14:52:49 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\autochk.exe

[2012/05/07 14:52:49 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\comctl32.dll

[2012/05/07 14:52:49 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppcomapi.dll

[2012/05/07 14:52:49 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msutb.dll

[2012/05/07 14:52:49 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cabview.dll

[2012/05/07 14:52:49 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\proquota.exe

[2012/05/07 14:52:48 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\autofmt.exe

[2012/05/07 14:52:48 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\autoconv.exe

[2012/05/07 14:52:47 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\autoconv.exe

[2012/05/07 14:52:47 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpd_ci.dll

[2012/05/07 14:52:47 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nshipsec.dll

[2012/05/07 14:52:47 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\powercpl.dll

[2012/05/07 14:52:47 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ipsmsnap.dll

[2012/05/07 14:52:47 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msinfo32.exe

[2012/05/07 14:52:47 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\srchadmin.dll

[2012/05/07 14:52:47 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\eapphost.dll

[2012/05/07 14:52:47 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tcpipcfg.dll

[2012/05/07 14:52:47 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\schtasks.exe

[2012/05/07 14:52:47 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcdsrv.dll

[2012/05/07 14:52:47 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shsetup.dll

[2012/05/07 14:52:47 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\audiodg.exe

[2012/05/07 14:52:47 | 000,116,224 | ---- | C] (Windows ? Codename Longhorn DDK provider) -- C:\windows\SysNative\fms.dll

[2012/05/07 14:52:47 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\regapi.dll

[2012/05/07 14:52:47 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mimefilt.dll

[2012/05/07 14:52:46 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sdclt.exe

[2012/05/07 14:52:46 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\framedyn.dll

[2012/05/07 14:52:45 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl

[2012/05/07 14:52:45 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SmiEngine.dll

[2012/05/07 14:52:45 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mmsys.cpl

[2012/05/07 14:52:45 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fontext.dll

[2012/05/07 14:52:45 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AuxiliaryDisplayCpl.dll

[2012/05/07 14:52:45 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlanui.dll

[2012/05/07 14:52:45 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msihnd.dll

[2012/05/07 14:52:45 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wwanconn.dll

[2012/05/07 14:52:45 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QAGENT.DLL

[2012/05/07 14:52:45 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\scsiport.sys

[2012/05/07 14:52:45 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\prntvpt.dll

[2012/05/07 14:52:45 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mscorier.dll

[2012/05/07 14:52:45 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mscorier.dll

[2012/05/07 14:52:44 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Display.dll

[2012/05/07 14:52:44 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\qedit.dll

[2012/05/07 14:52:44 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mprddm.dll

[2012/05/07 14:52:44 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netid.dll

[2012/05/07 14:52:43 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wdc.dll

[2012/05/07 14:52:43 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mblctr.exe

[2012/05/07 14:52:43 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\batmeter.dll

[2012/05/07 14:52:43 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\untfs.dll

[2012/05/07 14:52:43 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\scesrv.dll

[2012/05/07 14:52:43 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpsrcwp.dll

[2012/05/07 14:52:43 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\hidclass.sys

[2012/05/07 14:52:42 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlanpref.dll

[2012/05/07 14:52:42 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Vault.dll

[2012/05/07 14:52:42 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rastls.dll

[2012/05/07 14:52:42 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\nci.dll

[2012/05/07 14:52:41 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bootres.dll

[2012/05/07 14:52:41 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DiagCpl.dll

[2012/05/07 14:52:41 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMNetMgr.dll

[2012/05/07 14:52:41 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\usercpl.dll

[2012/05/07 14:52:41 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MCEWMDRMNDBootstrap.dll

[2012/05/07 14:52:41 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ksproxy.ax

[2012/05/07 14:52:41 | 000,098,816 | ---- | C] (Microsoft) -- C:\windows\SysWow64\Robocopy.exe

[2012/05/07 14:52:41 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WSTPager.ax

[2012/05/07 14:52:41 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rtutils.dll

[2012/05/07 14:52:41 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\licmgr10.dll

[2012/05/07 14:52:40 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpccpl.dll

[2012/05/07 14:52:39 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DxpTaskSync.dll

[2012/05/07 14:52:39 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Display.dll

[2012/05/07 14:52:39 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mtxclu.dll

[2012/05/07 14:52:39 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxdiagn.dll

[2012/05/07 14:52:39 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\taskmgr.exe

[2012/05/07 14:52:39 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SndVolSSO.dll

[2012/05/07 14:52:39 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasppp.dll

[2012/05/07 14:52:39 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dot3cfg.dll

[2012/05/07 14:52:38 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\puiobj.dll

[2012/05/07 14:52:38 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskmgr.exe

[2012/05/07 14:52:38 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shdocvw.dll

[2012/05/07 14:52:38 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XpsRasterService.dll

[2012/05/07 14:52:38 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hbaapi.dll

[2012/05/07 14:52:38 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\userinit.exe

[2012/05/07 14:52:37 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\prnfldr.dll

[2012/05/07 14:52:37 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\termmgr.dll

[2012/05/07 14:52:37 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\pdh.dll

[2012/05/07 14:52:37 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\eudcedit.exe

[2012/05/07 14:52:37 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MSAC3ENC.DLL

[2012/05/07 14:52:37 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\ataport.sys

[2012/05/07 14:52:37 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WPDShServiceObj.dll

[2012/05/07 14:52:37 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\proquota.exe

[2012/05/07 14:52:36 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wiadefui.dll

[2012/05/07 14:52:36 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\untfs.dll

[2012/05/07 14:52:36 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rasppp.dll

[2012/05/07 14:52:36 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\logoncli.dll

[2012/05/07 14:52:36 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\shsetup.dll

[2012/05/07 14:52:35 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\accessibilitycpl.dll

[2012/05/07 14:52:35 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\FirewallControlPanel.dll

[2012/05/07 14:52:35 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\appwiz.cpl

[2012/05/07 14:52:35 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sppcomapi.dll

[2012/05/07 14:52:35 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cabview.dll

[2012/05/07 14:52:35 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\userinit.exe

[2012/05/07 14:52:34 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SensorsCpl.dll

[2012/05/07 14:52:33 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\themecpl.dll

[2012/05/07 14:52:33 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PhotoScreensaver.scr

[2012/05/07 14:52:33 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\zipfldr.dll

[2012/05/07 14:52:33 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\slui.exe

[2012/05/07 14:52:33 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msieftp.dll

[2012/05/07 14:52:33 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\hgcpl.dll

[2012/05/07 14:52:33 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\defaultlocationcpl.dll

[2012/05/07 14:52:33 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\FWPUCLNT.DLL

[2012/05/07 14:52:33 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dnscmmc.dll

[2012/05/07 14:52:32 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sud.dll

[2012/05/07 14:52:32 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\scecli.dll

[2012/05/07 14:52:31 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\networkmap.dll

[2012/05/07 14:52:31 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cryptui.dll

[2012/05/07 14:52:31 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fontext.dll

[2012/05/07 14:52:31 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ActionCenter.dll

[2012/05/07 14:52:31 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DeviceCenter.dll

[2012/05/07 14:52:31 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\localsec.dll

[2012/05/07 14:52:31 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mprddm.dll

[2012/05/07 14:52:31 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskbarcpl.dll

[2012/05/07 14:52:31 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\OnLineIDCpl.dll

[2012/05/07 14:52:31 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SndVolSSO.dll

[2012/05/07 14:52:31 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mscories.dll

[2012/05/07 14:52:30 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\batmeter.dll

[2012/05/07 14:52:30 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\VAN.dll

[2012/05/07 14:52:30 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PerfCenterCPL.dll

[2012/05/07 14:52:30 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\usercpl.dll

[2012/05/07 14:52:30 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\qedit.dll

[2012/05/07 14:52:30 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll

[2012/05/07 14:52:30 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlanui.dll

[2012/05/07 14:52:30 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\intl.cpl

[2012/05/07 14:52:30 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\twext.dll

[2012/05/07 14:52:29 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netcenter.dll

[2012/05/07 14:52:29 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\OobeFldr.dll

[2012/05/07 14:52:29 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dsuiext.dll

[2012/05/07 14:52:29 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\azroleui.dll

[2012/05/07 14:52:29 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spwizeng.dll

[2012/05/07 14:52:29 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcdedit.exe

[2012/05/07 14:52:29 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MediaMetadataHandler.dll

[2012/05/07 14:52:29 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SndVol.exe

[2012/05/07 14:52:29 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\azroleui.dll

[2012/05/07 14:52:29 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\uxlib.dll

[2012/05/07 14:52:29 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\recovery.dll

[2012/05/07 14:52:29 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\prntvpt.dll

[2012/05/07 14:52:29 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cca.dll

[2012/05/07 14:52:29 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\isoburn.exe

[2012/05/07 14:52:29 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\w32tm.exe

[2012/05/07 14:52:29 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sisbkup.dll

[2012/05/07 14:52:28 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\accessibilitycpl.dll

[2012/05/07 14:52:28 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sdcpl.dll

[2012/05/07 14:52:28 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bthprops.cpl

[2012/05/07 14:52:28 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\efscore.dll

[2012/05/07 14:52:28 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\VBICodec.ax

[2012/05/07 14:52:28 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tzutil.exe

[2012/05/07 14:52:27 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\networkmap.dll

[2012/05/07 14:52:27 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cryptui.dll

[2012/05/07 14:52:27 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\main.cpl

[2012/05/07 14:52:27 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\certcli.dll

[2012/05/07 14:52:27 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shwebsvc.dll

[2012/05/07 14:52:27 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\systemcpl.dll

[2012/05/07 14:52:27 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlanmsm.dll

[2012/05/07 14:52:27 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\recdisc.exe

[2012/05/07 14:52:27 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MSAC3ENC.DLL

[2012/05/07 14:52:27 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sysclass.dll

[2012/05/07 14:52:27 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\syncui.dll

[2012/05/07 14:52:27 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netplwiz.dll

[2012/05/07 14:52:27 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\adsldp.dll

[2012/05/07 14:52:27 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netjoin.dll

[2012/05/07 14:52:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\autoplay.dll

[2012/05/07 14:52:27 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncryptui.dll

[2012/05/07 14:52:27 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fdeploy.dll

[2012/05/07 14:52:27 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\httpapi.dll

[2012/05/07 14:52:26 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ActionCenterCPL.dll

[2012/05/07 14:52:26 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Faultrep.dll

[2012/05/07 14:52:26 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wusa.exe

[2012/05/07 14:52:26 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MCEWMDRMNDBootstrap.dll

[2012/05/07 14:52:26 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AuxiliaryDisplayServices.dll

[2012/05/07 14:52:25 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sud.dll

[2012/05/07 14:52:25 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ActionCenter.dll

[2012/05/07 14:52:25 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spwizeng.dll

[2012/05/07 14:52:25 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\prnfldr.dll

[2012/05/07 14:52:25 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msieftp.dll

[2012/05/07 14:52:25 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MFPlay.dll

[2012/05/07 14:52:25 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\OnLineIDCpl.dll

[2012/05/07 14:52:25 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vdsutil.dll

[2012/05/07 14:52:25 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ksxbar.ax

[2012/05/07 14:52:24 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sysmon.ocx

[2012/05/07 14:52:24 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\termmgr.dll

[2012/05/07 14:52:24 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\photowiz.dll

[2012/05/07 14:52:24 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MediaMetadataHandler.dll

[2012/05/07 14:52:23 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msscp.dll

[2012/05/07 14:52:23 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sysmon.ocx

[2012/05/07 14:52:23 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe

[2012/05/07 14:52:23 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sethc.exe

[2012/05/07 14:52:23 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iprtrmgr.dll

[2012/05/07 14:52:22 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ReAgent.dll

[2012/05/07 14:52:22 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\defaultlocationcpl.dll

[2012/05/07 14:52:22 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SmartcardCredentialProvider.dll

[2012/05/07 14:52:22 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntlanman.dll

[2012/05/07 14:52:22 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dot3cfg.dll

[2012/05/07 14:52:21 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bthprops.cpl

[2012/05/07 14:52:21 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sqlcese30.dll

[2012/05/07 14:52:21 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\shwebsvc.dll

[2012/05/07 14:52:21 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\intl.cpl

[2012/05/07 14:52:21 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iprtrmgr.dll

[2012/05/07 14:52:21 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\efscore.dll

[2012/05/07 14:52:21 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ifsutil.dll

[2012/05/07 14:52:21 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe

[2012/05/07 14:52:21 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpd3d.dll

[2012/05/07 14:52:21 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wwanprotdim.dll

[2012/05/07 14:52:21 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tsgqec.dll

[2012/05/07 14:52:21 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ftp.exe

[2012/05/07 14:52:21 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sisbkup.dll

[2012/05/07 14:52:20 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\unimdm.tsp

[2012/05/07 14:52:20 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UserAccountControlSettings.dll

[2012/05/07 14:52:19 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ActionCenterCPL.dll

[2012/05/07 14:52:19 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ssText3d.scr

[2012/05/07 14:52:19 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iTVData.dll

[2012/05/07 14:52:19 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iesysprep.dll

[2012/05/07 14:52:18 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\syncui.dll

[2012/05/07 14:52:18 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\autoplay.dll

[2012/05/07 14:52:17 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmdrmsdk.dll

[2012/05/07 14:52:17 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmpmde.dll

[2012/05/07 14:52:17 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drmmgrtn.dll

[2012/05/07 14:52:17 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DeviceCenter.dll

[2012/05/07 14:52:17 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dskquoui.dll

[2012/05/07 14:52:17 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srvcli.dll

[2012/05/07 14:52:17 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nslookup.exe

[2012/05/07 14:52:17 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WSTPager.ax

[2012/05/07 14:52:17 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\slwga.dll

[2012/05/07 14:52:16 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\OobeFldr.dll

[2012/05/07 14:52:16 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\systemcpl.dll

[2012/05/07 14:52:16 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntprint.dll

[2012/05/07 14:52:16 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntprint.dll

[2012/05/07 14:52:16 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wavemsp.dll

[2012/05/07 14:52:16 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DevicePairingFolder.dll

[2012/05/07 14:52:16 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\powercfg.cpl

[2012/05/07 14:52:16 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SmartcardCredentialProvider.dll

[2012/05/07 14:52:16 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\NAPHLPR.DLL

[2012/05/07 14:52:16 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\acppage.dll

[2012/05/07 14:52:15 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\networkexplorer.dll

[2012/05/07 14:52:15 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\blackbox.dll

[2012/05/07 14:52:15 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\nshwfp.dll

[2012/05/07 14:52:15 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srrstr.dll

[2012/05/07 14:52:15 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sethc.exe

[2012/05/07 14:52:15 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dpx.dll

[2012/05/07 14:52:15 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\activeds.dll

[2012/05/07 14:52:15 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ksproxy.ax

[2012/05/07 14:52:15 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmpsrcwp.dll

[2012/05/07 14:52:15 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netplwiz.dll

[2012/05/07 14:52:15 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcdboot.exe

[2012/05/07 14:52:15 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\NAPHLPR.DLL

[2012/05/07 14:52:15 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppnp.dll

[2012/05/07 14:52:15 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\migisol.dll

[2012/05/07 14:52:15 | 000,093,696 | ---- | C] (Windows ? Codename Longhorn DDK provider) -- C:\windows\SysWow64\fms.dll

[2012/05/07 14:52:14 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cdosys.dll

[2012/05/07 14:52:14 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\remotepg.dll

[2012/05/07 14:52:14 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cabinet.dll

[2012/05/07 14:52:14 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wkscli.dll

[2012/05/07 14:52:14 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\httpapi.dll

[2012/05/07 14:52:13 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cdosys.dll

[2012/05/07 14:52:13 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dfrgui.exe

[2012/05/07 14:52:13 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msftedit.dll

[2012/05/07 14:52:13 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlanmsm.dll

[2012/05/07 14:52:13 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpdxm.dll

[2012/05/07 14:52:13 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\nshipsec.dll

[2012/05/07 14:52:13 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dot3ui.dll

[2012/05/07 14:52:13 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ReAgent.dll

[2012/05/07 14:52:13 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wavemsp.dll

[2012/05/07 14:52:13 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSCard.dll

[2012/05/07 14:52:13 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuwebv.dll

[2012/05/07 14:52:13 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kstvtune.ax

[2012/05/07 14:52:13 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\isoburn.exe

[2012/05/07 14:52:13 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wsnmp32.dll

[2012/05/07 14:52:13 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ftp.exe

[2012/05/07 14:52:12 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dsuiext.dll

[2012/05/07 14:52:12 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dfrgui.exe

[2012/05/07 14:52:12 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll

[2012/05/07 14:52:12 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\net1.exe

[2012/05/07 14:52:11 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\blackbox.dll

[2012/05/07 14:52:11 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmdrmdev.dll

[2012/05/07 14:52:11 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wvc.dll

[2012/05/07 14:52:11 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wvc.dll

[2012/05/07 14:52:11 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wimgapi.dll

[2012/05/07 14:52:11 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wsqmcons.exe

[2012/05/07 14:52:11 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unimdm.tsp

[2012/05/07 14:52:11 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dxgmms1.sys

[2012/05/07 14:52:11 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PkgMgr.exe

[2012/05/07 14:52:11 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mstask.dll

[2012/05/07 14:52:11 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfps.dll

[2012/05/07 14:52:11 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ocsetup.exe

[2012/05/07 14:52:11 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\twext.dll

[2012/05/07 14:52:11 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tzutil.exe

[2012/05/07 14:52:11 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WerFaultSecure.exe

[2012/05/07 14:52:10 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\OpcServices.dll

[2012/05/07 14:52:10 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Bubbles.scr

[2012/05/07 14:52:10 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\qcap.dll

[2012/05/07 14:52:10 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WUDFPlatform.dll

[2012/05/07 14:52:10 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setupugc.exe

[2012/05/07 14:52:10 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mapistub.dll

[2012/05/07 14:52:10 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mapi32.dll

[2012/05/07 14:52:10 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\unimdmat.dll

[2012/05/07 14:52:10 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\windows\twain_32.dll

[2012/05/07 14:52:10 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe

[2012/05/07 14:52:09 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\main.cpl

[2012/05/07 14:52:09 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diskraid.exe

[2012/05/07 14:52:09 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ssText3d.scr

[2012/05/07 14:52:09 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Mystify.scr

[2012/05/07 14:52:09 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Ribbons.scr

[2012/05/07 14:52:09 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\qasf.dll

[2012/05/07 14:52:09 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msrating.dll

[2012/05/07 14:52:09 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ifsutil.dll

[2012/05/07 14:52:09 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\occache.dll

[2012/05/07 14:52:09 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\uxlib.dll

[2012/05/07 14:52:09 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iscsium.dll

[2012/05/07 14:52:09 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\slwga.dll

[2012/05/07 14:52:08 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msvfw32.dll

[2012/05/07 14:52:08 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\nslookup.exe

[2012/05/07 14:52:08 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mciavi32.dll

[2012/05/07 14:52:07 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmdrmsdk.dll

[2012/05/07 14:52:07 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d10level9.dll

[2012/05/07 14:52:07 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msscp.dll

[2012/05/07 14:52:07 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wimserv.exe

[2012/05/07 14:52:07 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WindowsAnytimeUpgradeResults.exe

[2012/05/07 14:52:07 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\diskraid.exe

[2012/05/07 14:52:07 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\clusapi.dll

[2012/05/07 14:52:07 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpencom.dll

[2012/05/07 14:52:07 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DevicePairingFolder.dll

[2012/05/07 14:52:07 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\perfmon.exe

[2012/05/07 14:52:07 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpshell.dll

[2012/05/07 14:52:07 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tlscsp.dll

[2012/05/07 14:52:07 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AzSqlExt.dll

[2012/05/07 14:52:07 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netutils.dll

[2012/05/07 14:52:07 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\muifontsetup.dll

[2012/05/07 14:52:06 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dbghelp.dll

[2012/05/07 14:52:06 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\qasf.dll

[2012/05/07 14:52:06 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rdpencom.dll

[2012/05/07 14:52:06 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inseng.dll

[2012/05/07 14:52:06 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\umb.dll

[2012/05/07 14:52:06 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\NAPCRYPT.DLL

[2012/05/07 14:52:06 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\acppage.dll

[2012/05/07 14:52:05 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMADMOD.DLL

[2012/05/07 14:52:05 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FXSAPI.dll

[2012/05/07 14:52:05 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\drmmgrtn.dll

[2012/05/07 14:52:05 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\raschap.dll

[2012/05/07 14:52:05 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\raschap.dll

[2012/05/07 14:52:05 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpdwcn.dll

[2012/05/07 14:52:05 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ActionQueue.dll

[2012/05/07 14:52:05 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\input.dll

[2012/05/07 14:52:05 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ocsetapi.dll

[2012/05/07 14:52:05 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\perfmon.exe

[2012/05/07 14:52:05 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\remotepg.dll

[2012/05/07 14:52:05 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wiavideo.dll

[2012/05/07 14:52:05 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QUTIL.DLL

[2012/05/07 14:52:05 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\windows\bfsvc.exe

[2012/05/07 14:52:05 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\runonce.exe

[2012/05/07 14:52:05 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\NAPCRYPT.DLL

[2012/05/07 14:52:05 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\syssetup.dll

[2012/05/07 14:52:04 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmpdxm.dll

[2012/05/07 14:52:04 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vdsbas.dll

[2012/05/07 14:52:04 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MdSched.exe

[2012/05/07 14:52:04 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\UserAccountControlSettings.dll

[2012/05/07 14:52:04 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PrintIsolationProxy.dll

[2012/05/07 14:52:04 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\vpnikeapi.dll

[2012/05/07 14:52:03 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\onexui.dll

[2012/05/07 14:52:03 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMVSDECD.DLL

[2012/05/07 14:52:03 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nltest.exe

[2012/05/07 14:52:03 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mstask.dll

[2012/05/07 14:52:03 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bitsadmin.exe

[2012/05/07 14:52:03 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iTVData.dll

[2012/05/07 14:52:03 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dxdiagn.dll

[2012/05/07 14:52:03 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wpdwcn.dll

[2012/05/07 14:52:03 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\vdsbas.dll

[2012/05/07 14:52:03 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\rmcast.sys

[2012/05/07 14:52:03 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Kswdmcap.ax

[2012/05/07 14:52:03 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inseng.dll

[2012/05/07 14:52:03 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\logagent.exe

[2012/05/07 14:52:03 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RegisterIEPKEYs.exe

[2012/05/07 14:52:03 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\runonce.exe

[2012/05/07 14:52:02 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\eapp3hst.dll

[2012/05/07 14:52:02 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MFPlay.dll

[2012/05/07 14:52:02 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shacct.dll

[2012/05/07 14:52:02 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QSVRMGMT.DLL

[2012/05/07 14:52:02 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tabcal.exe

[2012/05/07 14:52:02 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vss_ps.dll

[2012/05/07 14:52:02 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cscapi.dll

[2012/05/07 14:52:01 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMSPDMOD.DLL

[2012/05/07 14:52:01 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Bubbles.scr

[2012/05/07 14:52:01 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmdrmnet.dll

[2012/05/07 14:52:01 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmdrmdev.dll

[2012/05/07 14:52:01 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WPDSp.dll

[2012/05/07 14:52:01 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msnetobj.dll

[2012/05/07 14:52:01 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sqlcese30.dll

[2012/05/07 14:52:01 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PortableDeviceSyncProvider.dll

[2012/05/07 14:52:01 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bitsadmin.exe

[2012/05/07 14:52:01 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\qcap.dll

[2012/05/07 14:52:01 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secproc_ssp_isv.dll

[2012/05/07 14:52:01 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secproc_ssp.dll

[2012/05/07 14:52:01 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\shacct.dll

[2012/05/07 14:52:01 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmpshell.dll

[2012/05/07 14:52:01 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\logman.exe

[2012/05/07 14:52:01 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll

[2012/05/07 14:52:01 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wudriver.dll

[2012/05/07 14:52:01 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unimdmat.dll

[2012/05/07 14:52:01 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rdpd3d.dll

[2012/05/07 14:52:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iscsium.dll

[2012/05/07 14:52:01 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\lsmproxy.dll

[2012/05/07 14:52:00 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\qdv.dll

[2012/05/07 14:52:00 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mprapi.dll

[2012/05/07 14:51:59 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\OpcServices.dll

[2012/05/07 14:51:59 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PortableDeviceStatus.dll

[2012/05/07 14:51:59 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PortableDeviceStatus.dll

[2012/05/07 14:51:59 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMPhoto.dll

[2012/05/07 14:51:59 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WPDSp.dll

[2012/05/07 14:51:59 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMPhoto.dll

[2012/05/07 14:51:59 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dot3ui.dll

[2012/05/07 14:51:59 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\pdh.dll

[2012/05/07 14:51:59 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Mystify.scr

[2012/05/07 14:51:59 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Ribbons.scr

[2012/05/07 14:51:59 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PortableDeviceSyncProvider.dll

[2012/05/07 14:51:59 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\powercfg.cpl

[2012/05/07 14:51:59 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\desk.cpl

[2012/05/07 14:51:59 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fphc.dll

[2012/05/07 14:51:59 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QSVRMGMT.DLL

[2012/05/07 14:51:59 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RegisterIEPKEYs.exe

[2012/05/07 14:51:59 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\kstvtune.ax

[2012/05/07 14:51:59 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\logman.exe

[2012/05/07 14:51:59 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spbcd.dll

[2012/05/07 14:51:59 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\olethk32.dll

[2012/05/07 14:51:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mapistub.dll

[2012/05/07 14:51:59 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\takeown.exe

[2012/05/07 14:51:59 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PnPUnattend.exe

[2012/05/07 14:51:59 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ncryptui.dll

[2012/05/07 14:51:59 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tsgqec.dll

[2012/05/07 14:51:59 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\utildll.dll

[2012/05/07 14:51:58 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMADMOD.DLL

[2012/05/07 14:51:58 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dot3msm.dll

[2012/05/07 14:51:58 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wiavideo.dll

[2012/05/07 14:51:58 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Kswdmcap.ax

[2012/05/07 14:51:58 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fphc.dll

[2012/05/07 14:51:58 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\avifil32.dll

[2012/05/07 14:51:58 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\amstream.dll

[2012/05/07 14:51:58 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\takeown.exe

[2012/05/07 14:51:57 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\IMJP10.IME

[2012/05/07 14:51:57 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMVSDECD.DLL

[2012/05/07 14:51:57 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmdrmnet.dll

[2012/05/07 14:51:57 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\qdv.dll

[2012/05/07 14:51:57 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msnetobj.dll

[2012/05/07 14:51:57 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WUDFHost.exe

[2012/05/07 14:51:57 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\VBICodec.ax

[2012/05/07 14:51:57 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\EhStorAPI.dll

[2012/05/07 14:51:57 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cmstp.exe

[2012/05/07 14:51:57 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QCLIPROV.DLL

[2012/05/07 14:51:57 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netapi32.dll

[2012/05/07 14:51:57 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CertPolEng.dll

[2012/05/07 14:51:57 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\djoin.exe

[2012/05/07 14:51:57 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shimgvw.dll

[2012/05/07 14:51:57 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\HotStartUserAgent.dll

[2012/05/07 14:51:57 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nrpsrv.dll

[2012/05/07 14:51:56 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WUDFx.dll

[2012/05/07 14:51:56 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sppinst.dll

[2012/05/07 14:51:56 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cmstp.exe

[2012/05/07 14:51:56 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QCLIPROV.DLL

[2012/05/07 14:51:56 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cca.dll

[2012/05/07 14:51:56 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WavDest.dll

[2012/05/07 14:51:55 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMSPDMOD.DLL

[2012/05/07 14:51:55 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msorcl32.dll

[2012/05/07 14:51:55 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diskpart.exe

[2012/05/07 14:51:55 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iscsicli.exe

[2012/05/07 14:51:55 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mydocs.dll

[2012/05/07 14:51:55 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setupcln.dll

[2012/05/07 14:51:55 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fdProxy.dll

[2012/05/07 14:51:55 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MuiUnattend.exe

[2012/05/07 14:51:55 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\g711codc.ax

[2012/05/07 14:51:55 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\vfwwdm32.dll

[2012/05/07 14:51:55 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wsnmp32.dll

[2012/05/07 14:51:55 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MultiDigiMon.exe

[2012/05/07 14:51:55 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe

[2012/05/07 14:51:55 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\pdhui.dll

[2012/05/07 14:51:55 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\relog.exe

[2012/05/07 14:51:55 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AzSqlExt.dll

[2012/05/07 14:51:55 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sscore.dll

[2012/05/07 14:51:54 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\desk.cpl

[2012/05/07 14:51:54 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mobsync.exe

[2012/05/07 14:51:54 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbisurf.ax

[2012/05/07 14:51:54 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\relog.exe

[2012/05/07 14:51:54 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netiougc.exe

[2012/05/07 14:51:54 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BWUnpairElevated.dll

[2012/05/07 14:51:53 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RMActivate_ssp.exe

[2012/05/07 14:51:53 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RMActivate_ssp_isv.exe

[2012/05/07 14:51:53 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\itircl.dll

[2012/05/07 14:51:53 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\itircl.dll

[2012/05/07 14:51:53 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iscsicli.exe

[2012/05/07 14:51:53 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mydocs.dll

[2012/05/07 14:51:53 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\diskpart.exe

[2012/05/07 14:51:53 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dot3msm.dll

[2012/05/07 14:51:53 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\secproc_ssp_isv.dll

[2012/05/07 14:51:53 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\secproc_ssp.dll

[2012/05/07 14:51:53 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\resutils.dll

[2012/05/07 14:51:53 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\amstream.dll

[2012/05/07 14:51:53 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rastapi.dll

[2012/05/07 14:51:53 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CertPolEng.dll

[2012/05/07 14:51:53 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spbcd.dll

[2012/05/07 14:51:53 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\browcli.dll

[2012/05/07 14:51:53 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wkscli.dll

[2012/05/07 14:51:53 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdmo.dll

[2012/05/07 14:51:53 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netbtugc.exe

[2012/05/07 14:51:53 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\syssetup.dll

[2012/05/07 14:51:52 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\IMJP10.IME

[2012/05/07 14:51:52 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FXSTIFF.dll

[2012/05/07 14:51:52 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmpps.dll

[2012/05/07 14:51:52 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\eappgnui.dll

[2012/05/07 14:51:52 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\findstr.exe

[2012/05/07 14:51:52 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ksxbar.ax

[2012/05/07 14:51:52 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mciqtz32.dll

[2012/05/07 14:51:52 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe

[2012/05/07 14:51:52 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\choice.exe

[2012/05/07 14:51:52 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapp.exe

[2012/05/07 14:51:51 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\onexui.dll

[2012/05/07 14:51:51 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RMActivate_ssp.exe

[2012/05/07 14:51:51 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RMActivate_ssp_isv.exe

[2012/05/07 14:51:51 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppc.dll

[2012/05/07 14:51:51 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mobsync.exe

[2012/05/07 14:51:51 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\eappgnui.dll

[2012/05/07 14:51:51 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\manage-bde.exe

[2012/05/07 14:51:51 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tlscsp.dll

[2012/05/07 14:51:51 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetmib1.dll

[2012/05/07 14:51:51 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\findstr.exe

[2012/05/07 14:51:51 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\repair-bde.exe

[2012/05/07 14:51:51 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\luainstall.dll

[2012/05/07 14:51:51 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wdiasqmmodule.dll

[2012/05/07 14:51:51 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mciqtz32.dll

[2012/05/07 14:51:51 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WerFaultSecure.exe

[2012/05/07 14:51:51 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\schedcli.dll

[2012/05/07 14:51:51 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ReAgentc.exe

[2012/05/07 14:51:51 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\muifontsetup.dll

[2012/05/07 14:51:50 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sppc.dll

[2012/05/07 14:51:50 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\windows\SysWow64\iccvid.dll

[2012/05/07 14:51:50 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\shimgvw.dll

[2012/05/07 14:51:50 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spopk.dll

[2012/05/07 14:51:50 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spopk.dll

[2012/05/07 14:51:49 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RDPENCDD.dll

[2012/05/07 14:51:49 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\odbcconf.dll

[2012/05/07 14:51:49 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetmib1.dll

[2012/05/07 14:51:49 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\g711codc.ax

[2012/05/07 14:51:49 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WUDFCoinstaller.dll

[2012/05/07 14:51:49 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\luainstall.dll

[2012/05/07 14:51:49 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FXSMON.dll

[2012/05/07 14:51:49 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\unlodctr.exe

[2012/05/07 14:51:49 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\vbisurf.ax

[2012/05/07 14:51:49 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\profprov.dll

[2012/05/07 14:51:49 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msdmo.dll

[2012/05/07 14:51:49 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rdprefdrvapi.dll

[2012/05/07 14:51:49 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fixmapi.exe

[2012/05/07 14:51:48 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\UIRibbonRes.dll

[2012/05/07 14:51:48 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UIRibbonRes.dll

[2012/05/07 14:51:48 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\browcli.dll

[2012/05/07 14:51:48 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbcconf.dll

[2012/05/07 14:51:48 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wups.dll

[2012/05/07 14:51:48 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\elsTrans.dll

[2012/05/07 14:51:48 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\TRAPI.dll

[2012/05/07 14:51:48 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeedssync.exe

[2012/05/07 14:51:47 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\napdsnap.dll

[2012/05/07 14:51:47 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dsauth.dll

[2012/05/07 14:51:47 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\LogonUI.exe

[2012/05/07 14:51:47 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\tdi.sys

[2012/05/07 14:51:47 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdprefdrvapi.dll

[2012/05/07 14:51:47 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\perfts.dll

[2012/05/07 14:51:47 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msfeedssync.exe

[2012/05/07 14:51:46 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cscdll.dll

[2012/05/07 14:51:46 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\elsTrans.dll

[2012/05/07 14:51:46 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\TRAPI.dll

[2012/05/07 14:51:46 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FXSUNATD.exe

[2012/05/07 14:51:45 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\imkr80.ime

[2012/05/07 14:51:45 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\napdsnap.dll

[2012/05/07 14:51:45 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups2.dll

[2012/05/07 14:51:45 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\usbrpm.sys

[2012/05/07 14:51:45 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dsauth.dll

[2012/05/07 14:51:45 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wsdchngr.dll

[2012/05/07 14:51:45 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bitsperf.dll

[2012/05/07 14:51:45 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bitsperf.dll

[2012/05/07 14:51:45 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\schedcli.dll

[2012/05/07 14:51:44 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\html.iec

[2012/05/07 14:51:44 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\imkr80.ime

[2012/05/07 14:51:44 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups.dll

[2012/05/07 14:51:44 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shgina.dll

[2012/05/07 14:51:44 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wsdchngr.dll

[2012/05/07 14:51:44 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sscore.dll

[2012/05/07 14:51:43 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\html.iec

[2012/05/07 14:51:43 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\USBCAMD2.sys

[2012/05/07 14:51:43 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\shgina.dll

[2012/05/07 14:51:43 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wshirda.dll

[2012/05/07 14:51:43 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\riched32.dll

[2012/05/07 14:51:41 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wshirda.dll

[2012/05/07 14:51:41 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\riched32.dll

[2012/05/07 14:51:41 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpcfgex.dll

[2012/05/07 14:51:41 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spwmp.dll

[2012/05/07 14:51:40 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\C_ISCII.DLL

[2012/05/07 14:51:39 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shunimpl.dll

[2012/05/07 14:51:39 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\C_ISCII.DLL

[2012/05/07 14:51:39 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spwmp.dll

[2012/05/07 14:51:39 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDTUF.DLL

[2012/05/07 14:51:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDTUF.DLL

[2012/05/07 14:51:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDSG.DLL

[2012/05/07 14:51:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDSF.DLL

[2012/05/07 14:51:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDPO.DLL

[2012/05/07 14:51:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\kbdlk41a.dll

[2012/05/07 14:51:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINTAM.DLL

[2012/05/07 14:51:39 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdxm.ocx

[2012/05/07 14:51:39 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxmasf.dll

[2012/05/07 14:51:39 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msdxm.ocx

[2012/05/07 14:51:39 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dxmasf.dll

[2012/05/07 14:51:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-ums-l1-1-0.dll

[2012/05/07 14:51:38 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmploc.DLL

[2012/05/07 14:51:38 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmploc.DLL

[2012/05/07 14:51:38 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDTUQ.DLL

[2012/05/07 14:51:38 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDSG.DLL

[2012/05/07 14:51:38 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kbdlk41a.dll

[2012/05/07 14:51:38 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDGKL.DLL

[2012/05/07 14:51:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDTUQ.DLL

[2012/05/07 14:51:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDNEPR.DLL

[2012/05/07 14:51:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINBEN.DLL

[2012/05/07 14:51:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDGR1.DLL

[2012/05/07 14:51:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDGR1.DLL

[2012/05/07 14:51:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDGKL.DLL

[2012/05/07 14:51:37 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\nlsbres.dll

[2012/05/07 14:51:37 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nlsbres.dll

[2012/05/07 14:51:37 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BlbEvents.dll

[2012/05/07 14:51:37 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\pifmgr.dll

[2012/05/07 14:51:37 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\pifmgr.dll

[2012/05/07 14:51:37 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDCZ1.DLL

[2012/05/07 14:51:37 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spwizres.dll

[2012/05/07 14:51:37 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spwizres.dll

[2012/05/07 14:51:37 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDCZ1.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDUS.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDUGHR1.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDTURME.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDTAJIK.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDSF.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDPO.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDNEPR.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDMON.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDMAORI.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDLT1.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINTEL.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINTAM.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINORI.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINORI.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINMAR.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINMAR.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINKAN.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINKAN.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINHIN.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDINHIN.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINBEN.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDBULG.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDBLR.DLL

[2012/05/07 14:51:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDBASH.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDUS.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDUGHR1.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDTURME.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDTAJIK.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDMON.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDMAORI.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDLT1.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDINTEL.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDGEO.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KBDGEO.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDBULG.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDBLR.DLL

[2012/05/07 14:51:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\KBDBASH.DLL

[2012/05/07 14:51:37 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dpnaddr.dll

[2012/05/07 14:51:37 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dpnaddr.dll

[2012/05/07 14:51:05 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dpx.dll

[2012/05/07 14:51:05 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wdscore.dll

[2012/05/07 14:50:59 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sqmapi.dll

[2012/05/07 14:47:32 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wbemcomn.dll

[2012/05/07 14:47:14 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sqmapi.dll

[2012/05/07 14:45:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun

[2012/05/07 14:45:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java

[2012/05/07 14:44:52 | 000,476,960 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\npdeployJava1.dll

[2012/05/07 14:44:52 | 000,472,864 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\deployJava1.dll

[2012/05/07 14:44:52 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\javaws.exe

[2012/05/07 14:44:52 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\javaw.exe

[2012/05/07 14:44:52 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\java.exe

[2012/05/07 14:44:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java

[2012/05/07 13:42:14 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\browserchoice.exe

[2012/05/07 06:50:45 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wintrust.dll

[2012/05/07 06:50:45 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\imagehlp.dll

[2012/05/07 06:50:45 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\fs_rec.sys

[2012/05/06 21:38:11 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Gadu-Gadu 10

[2012/05/06 21:38:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Gadu-Gadu 10

[2012/05/06 21:33:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gadu-Gadu 10

[2012/05/06 21:24:38 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\WinRAR

[2012/05/06 21:22:21 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

[2012/05/06 21:22:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

[2012/05/06 21:22:14 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR

[2012/05/06 12:34:24 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d2d1.dll

[2012/05/06 12:33:27 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xmllite.dll

[2012/05/06 12:33:19 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntshrui.dll

[2012/05/06 12:32:51 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tquery.dll

[2012/05/06 12:32:51 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssrch.dll

[2012/05/06 12:32:50 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tquery.dll

[2012/05/06 12:32:50 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mssrch.dll

[2012/05/06 12:32:49 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssvp.dll

[2012/05/06 12:32:49 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mssph.dll

[2012/05/06 12:32:49 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SearchProtocolHost.exe

[2012/05/06 12:32:48 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mssvp.dll

[2012/05/06 12:32:48 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssph.dll

[2012/05/06 12:32:48 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssphtb.dll

[2012/05/06 12:32:48 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SearchFilterHost.exe

[2012/05/06 12:32:47 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msscntrs.dll

[2012/05/06 12:32:46 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msscntrs.dll

[2012/05/06 12:32:36 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\FWPKCLNT.SYS

[2012/05/06 12:32:29 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\poqexec.exe

[2012/05/06 12:32:29 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\poqexec.exe

[2012/05/06 12:32:21 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll

[2012/05/06 12:32:21 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\webio.dll

[2012/05/06 12:32:20 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\webio.dll

[2012/05/06 12:32:20 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspicli.dll

[2012/05/06 12:32:19 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspisrv.dll

[2012/05/06 12:32:19 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secur32.dll

[2012/05/06 12:32:15 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\quartz.dll

[2012/05/06 12:32:15 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\quartz.dll

[2012/05/06 12:32:15 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\qdvd.dll

[2012/05/06 12:32:15 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\qdvd.dll

[2012/05/06 12:32:10 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\odbccp32.dll

[2012/05/06 12:32:10 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\odbccu32.dll

[2012/05/06 12:32:10 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\odbccr32.dll

[2012/05/06 12:32:09 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbcjt32.dll

[2012/05/06 12:32:09 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\odbctrac.dll

[2012/05/06 12:32:09 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbctrac.dll

[2012/05/06 12:32:09 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbccp32.dll

[2012/05/06 12:32:09 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbccu32.dll

[2012/05/06 12:32:09 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\odbccr32.dll

[2012/05/06 12:32:06 | 002,871,808 | ---- | C] (Microsoft Corporation) -- C:\windows\explorer.exe

[2012/05/06 12:32:06 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\explorer.exe

[2012/05/06 12:32:02 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sbe.dll

[2012/05/06 12:32:02 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CPFilters.dll

[2012/05/06 12:32:02 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CPFilters.dll

[2012/05/06 12:32:01 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sbe.dll

[2012/05/06 12:32:01 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mpg2splt.ax

[2012/05/06 12:32:01 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mpg2splt.ax

[2012/05/06 12:31:59 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfc42.dll

[2012/05/06 12:31:59 | 001,359,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfc42u.dll

[2012/05/06 12:31:58 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfc42u.dll

[2012/05/06 12:31:58 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfc42.dll

[2012/05/06 12:31:43 | 000,476,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XpsGdiConverter.dll

[2012/05/06 12:31:43 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XpsGdiConverter.dll

[2012/05/06 12:31:41 | 000,613,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll

[2012/05/06 12:31:38 | 001,465,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XpsPrint.dll

[2012/05/06 12:31:38 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XpsPrint.dll

[2012/05/06 12:31:35 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\timedate.cpl

[2012/05/06 12:31:34 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\timedate.cpl

[2012/05/06 12:31:26 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\csrsrv.dll

[2012/05/06 12:31:23 | 000,367,616 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\SysNative\atmfd.dll

[2012/05/06 12:31:23 | 000,294,912 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\SysWow64\atmfd.dll

[2012/05/06 12:31:23 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fontsub.dll

[2012/05/06 12:31:23 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fontsub.dll

[2012/05/06 12:31:23 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\windows\SysNative\atmlib.dll

[2012/05/06 12:31:23 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\windows\SysWow64\atmlib.dll

[2012/05/06 12:31:11 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\Diskdump.sys

[2012/05/06 12:30:44 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dnsapi.dll

[2012/05/06 12:30:44 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dnscacheugc.exe

[2012/05/06 12:30:44 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dnscacheugc.exe

[2012/05/06 12:30:36 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d10_1core.dll

[2012/05/06 12:30:36 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d10_1.dll

[2012/05/06 12:30:33 | 000,918,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll

[2012/05/06 12:30:33 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll

[2012/05/06 12:30:21 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll

[2012/05/06 12:30:19 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll

[2012/05/06 12:30:19 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll

[2012/05/06 12:30:18 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll

[2012/05/06 12:30:18 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\url.dll

[2012/05/06 12:30:18 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\url.dll

[2012/05/06 12:30:18 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll

[2012/05/06 12:29:59 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\psisdecd.dll

[2012/05/06 12:29:59 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MSNP.ax

[2012/05/06 12:29:59 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\psisrndr.ax

[2012/05/06 12:29:59 | 000,000,000 | --SD | C] -- C:\Users\axel\GG dysk

[2012/05/06 12:29:58 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\psisdecd.dll

[2012/05/06 12:29:58 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MSNP.ax

[2012/05/06 12:29:58 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Mpeg2Data.ax

[2012/05/06 12:29:58 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\psisrndr.ax

[2012/05/06 12:29:57 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MSDvbNP.ax

[2012/05/06 12:29:57 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Mpeg2Data.ax

[2012/05/06 12:29:57 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MSDvbNP.ax

[2012/05/06 12:29:38 | 000,642,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winload.efi

[2012/05/06 12:29:38 | 000,605,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winload.exe

[2012/05/06 12:29:37 | 000,566,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winresume.efi

[2012/05/06 12:29:37 | 000,518,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winresume.exe

[2012/05/06 12:29:37 | 000,019,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kd1394.dll

[2012/05/06 12:29:36 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\setbcdlocale.dll

[2012/05/06 12:29:36 | 000,020,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kdusb.dll

[2012/05/06 12:29:36 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kdcom.dll

[2012/05/06 12:29:33 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Mozilla

[2012/05/06 12:29:30 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll

[2012/05/06 12:29:30 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll

[2012/05/06 12:29:29 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll

[2012/05/06 12:29:29 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe

[2012/05/06 12:29:29 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll

[2012/05/06 12:29:29 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll

[2012/05/06 12:29:28 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe

[2012/05/06 12:29:28 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll

[2012/05/06 12:29:28 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll

[2012/05/06 12:29:28 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll

[2012/05/06 12:29:28 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll

[2012/05/06 12:29:28 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll

[2012/05/06 12:29:27 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe

[2012/05/06 12:29:27 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll

[2012/05/06 12:29:27 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll

[2012/05/06 12:29:27 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll

[2012/05/06 12:29:27 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll

[2012/05/06 12:29:27 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll

[2012/05/06 12:29:27 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll

[2012/05/06 12:29:27 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll

[2012/05/06 12:29:27 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll

[2012/05/06 12:29:27 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll

[2012/05/06 12:29:27 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll

[2012/05/06 12:29:26 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll

[2012/05/06 12:29:26 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll

[2012/05/06 12:29:26 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll

[2012/05/06 12:29:26 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll

[2012/05/06 12:29:26 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll

[2012/05/06 12:29:26 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll

[2012/05/06 12:29:26 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll

[2012/05/06 12:29:25 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll

[2012/05/06 12:29:25 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll

[2012/05/06 12:29:25 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll

[2012/05/06 12:29:25 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll

[2012/05/06 12:29:25 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe

[2012/05/06 12:29:09 | 000,000,000 | ---D | C] -- C:\ProgramData\GG

[2012/05/06 12:29:08 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cfgmgr32.dll

[2012/05/06 12:29:07 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\drvinst.exe

[2012/05/06 12:29:07 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\devrtl.dll

[2012/05/06 12:28:53 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\prevhost.exe

[2012/05/06 12:28:53 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\prevhost.exe

[2012/05/06 12:28:51 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\GG

[2012/05/06 12:28:49 | 000,974,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WFS.exe

[2012/05/06 12:28:49 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FXSCOVER.exe

[2012/05/06 12:28:48 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\GG

[2012/05/06 12:28:46 | 000,634,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msvcrt.dll

[2012/05/06 12:28:38 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\oleaut32.dll

[2012/05/06 12:28:38 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\oleacc.dll

[2012/05/06 12:28:33 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\EncDec.dll

[2012/05/06 12:28:33 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\EncDec.dll

[2012/05/06 12:27:52 | 001,731,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll

[2012/05/06 12:21:33 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Macromedia

[2012/05/06 12:19:03 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\packager.dll

[2012/05/06 12:19:03 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\packager.dll

[2012/05/06 12:18:54 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpcore.dll

[2012/05/06 12:18:54 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rdpcore.dll

[2012/05/06 12:18:12 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdrmemptylst.exe

[2012/05/06 12:17:53 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome

[2012/05/06 12:16:03 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\Apps

[2012/05/06 12:16:02 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\Deployment

[2012/05/06 12:13:10 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Adobe

[2012/05/06 12:12:45 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\Google

[2012/05/06 12:12:45 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Local\Google

[2012/05/06 12:09:35 | 000,000,000 | ---D | C] -- C:\Program Files\Intel

[2012/05/06 12:08:21 | 000,000,000 | ---D | C] -- C:\Users\axel\Documents\Folder wymiany interfejsu Bluetooth

[2012/05/06 12:08:11 | 000,000,000 | ---D | C] -- C:\Users\axel\AppData\Roaming\InstallShield

 

========== Files - Modified Within 30 Days ==========

 

[2012/05/28 21:15:40 | 001,572,864 | -HS- | M] () -- C:\Users\axel\NTUSER.DAT

[2012/05/28 21:05:44 | 000,001,054 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2195184045-3265951034-2981680463-1000UA.job

[2012/05/28 21:05:44 | 000,001,048 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job

[2012/05/28 21:05:43 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat

[2012/05/28 15:07:42 | 000,001,002 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2195184045-3265951034-2981680463-1000Core.job

[2012/05/28 15:02:41 | 000,001,044 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job

[2012/05/28 10:18:10 | 002,249,334 | ---- | M] () -- C:\Users\axel\Desktop\metin.bmp

[2012/05/28 07:40:47 | 000,014,144 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

[2012/05/28 07:40:47 | 000,014,144 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

[2012/05/28 07:29:42 | 000,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT

[2012/05/28 07:29:14 | 4141,469,696 | -HS- | M] () -- C:\hiberfil.sys

[2012/05/28 07:28:10 | 006,291,456 | -H-- | M] () -- C:\Users\axel\AppData\Local\IconCache.db

[2012/05/28 06:55:18 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk

[2012/05/28 06:52:22 | 000,001,186 | ---- | M] () -- C:\Users\Public\Desktop\Switch to Gaming Mode.lnk

[2012/05/28 06:52:22 | 000,001,174 | ---- | M] () -- C:\Users\Public\Desktop\Game Booster 3.lnk

[2012/05/27 22:47:41 | 000,329,117 | ---- | M] () -- C:\Users\axel\Desktop\postać.PNG

[2012/05/27 22:37:40 | 000,007,605 | ---- | M] () -- C:\Users\axel\AppData\Local\Resmon.ResmonCfg

[2012/05/27 14:02:50 | 000,001,115 | ---- | M] () -- C:\Users\Public\Desktop\Diablo III Beta.lnk

[2012/05/25 06:46:36 | 001,556,224 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI

[2012/05/25 06:46:36 | 000,700,012 | ---- | M] () -- C:\windows\SysNative\perfh015.dat

[2012/05/25 06:46:36 | 000,618,108 | ---- | M] () -- C:\windows\SysNative\perfh009.dat

[2012/05/25 06:46:36 | 000,135,990 | ---- | M] () -- C:\windows\SysNative\perfc015.dat

[2012/05/25 06:46:36 | 000,107,388 | ---- | M] () -- C:\windows\SysNative\perfc009.dat

[2012/05/22 22:08:39 | 000,175,987 | ---- | M] () -- C:\Users\axel\Documents\mole2(1).jpg

[2012/05/22 22:08:00 | 000,249,842 | ---- | M] () -- C:\Users\axel\Documents\mole1(2).jpg

[2012/05/21 17:23:45 | 000,016,681 | ---- | M] () -- C:\Users\axel\Desktop\1244221747.jpeg

[2012/05/21 17:12:34 | 000,009,228 | ---- | M] () -- C:\Users\axel\Desktop\12269.avtr

[2012/05/21 14:16:44 | 000,000,692 | ---- | M] () -- C:\Users\Public\Desktop\Metin2.lnk

[2012/05/20 20:16:42 | 000,000,856 | ---- | M] () -- C:\Users\Public\Desktop\Diablo III.lnk

[2012/05/16 16:16:50 | 000,006,610 | ---- | M] () -- C:\Users\axel\Desktop\grzybu.PNG

[2012/05/16 15:14:55 | 000,000,221 | ---- | M] () -- C:\Users\axel\Desktop\Call of Duty Modern Warfare 2 - Multiplayer.url

[2012/05/16 14:32:58 | 001,467,013 | ---- | M] () -- C:\Users\axel\Desktop\2012-05-16 14.05.23.jpg

[2012/05/15 21:30:22 | 000,354,704 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT

[2012/05/15 15:18:36 | 000,001,541 | ---- | M] () -- C:\Users\axel\Desktop\Counter-Strike Source.lnk

[2012/05/15 14:59:49 | 000,000,523 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk

[2012/05/15 14:13:27 | 000,014,083 | ---- | M] () -- C:\Users\axel\AppData\Local\recently-used.xbel

[2012/05/15 10:48:40 | 000,000,803 | ---- | M] () -- C:\Users\axel\Desktop\FIFA10.lnk

[2012/05/14 19:14:12 | 000,000,669 | ---- | M] () -- C:\Users\axel\Desktop\Mafia.lnk

[2012/05/13 13:54:02 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msclmd.dll

[2012/05/13 13:54:02 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msclmd.dll

[2012/05/13 12:31:36 | 000,002,517 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk

[2012/05/11 16:16:57 | 000,075,112 | ---- | M] () -- C:\windows\SysWow64\85e08124.exe

[2012/05/11 16:16:56 | 000,002,038 | ---- | M] () -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tcbhn.lnk

[2012/05/11 06:50:54 | 000,004,544 | ---- | M] () -- C:\Users\axel\Desktop\Nowy dokument dziennika.jnt

[2012/05/11 06:50:40 | 000,000,154 | ---- | M] () -- C:\windows\SysNative\LexFiles.ulf

[2012/05/10 19:08:06 | 001,054,280 | ---- | M] () -- C:\Users\axel\Desktop\2012-04-19 14.24.49.jpg

[2012/05/10 18:50:57 | 001,105,867 | ---- | M] () -- C:\Users\axel\Desktop\2012-04-19 14.22.34.jpg

[2012/05/10 18:37:41 | 001,246,739 | ---- | M] () -- C:\Users\axel\Desktop\2012-04-19 14.22.23.jpg

[2012/05/10 18:13:04 | 000,964,524 | ---- | M] () -- C:\Users\axel\Desktop\2012-04-19 14.25.00.jpg

[2012/05/10 18:11:17 | 000,000,924 | ---- | M] () -- C:\Users\axel\Desktop\GIMP 2.lnk

[2012/05/10 15:06:33 | 000,001,051 | ---- | M] () -- C:\Users\axel\Desktop\ReaConverter 6.0 Pro.lnk

[2012/05/10 14:52:44 | 002,356,923 | ---- | M] () -- C:\Users\axel\Documents\herbbeeeeek.xcf

[2012/05/07 21:36:48 | 000,001,254 | ---- | M] () -- C:\Users\Public\Desktop\Syndicate.lnk

[2012/05/07 21:25:36 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\windows\SysNative\drivers\dtsoftbus01.sys

[2012/05/07 19:28:37 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf

[2012/05/07 16:18:46 | 000,000,512 | ---- | M] () -- C:\Users\axel\Desktop\Fraps.lnk

[2012/05/07 15:19:30 | 000,002,154 | ---- | M] () -- C:\windows\epplauncher.mif

[2012/05/07 15:19:15 | 003,234,382 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI

[2012/05/07 15:06:10 | 000,000,947 | ---- | M] () -- C:\Users\Public\Desktop\?Torrent.lnk

[2012/05/07 14:44:35 | 000,476,960 | ---- | M] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\npdeployJava1.dll

[2012/05/07 14:44:35 | 000,472,864 | ---- | M] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\deployJava1.dll

[2012/05/07 14:44:35 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\javaws.exe

[2012/05/07 14:44:35 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\javaw.exe

[2012/05/07 14:44:35 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\windows\SysWow64\java.exe

[2012/05/06 21:38:08 | 000,001,036 | ---- | M] () -- C:\Users\Public\Desktop\OpenFM.lnk

[2012/05/06 21:38:08 | 000,001,007 | ---- | M] () -- C:\Users\Public\Desktop\Gadu-Gadu 10.lnk

 

========== Files Created - No Company Name ==========

 

[2012/05/28 07:34:58 | 000,272,629 | ---- | C] () -- C:\windows\SysNative\drivers\RTAIODAT.DAT

[2012/05/28 06:55:18 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk

[2012/05/28 06:52:22 | 000,001,186 | ---- | C] () -- C:\Users\Public\Desktop\Switch to Gaming Mode.lnk

[2012/05/28 06:52:22 | 000,001,174 | ---- | C] () -- C:\Users\Public\Desktop\Game Booster 3.lnk

[2012/05/27 22:47:41 | 000,329,117 | ---- | C] () -- C:\Users\axel\Desktop\postać.PNG

[2012/05/27 22:37:40 | 000,007,605 | ---- | C] () -- C:\Users\axel\AppData\Local\Resmon.ResmonCfg

[2012/05/27 12:58:55 | 000,001,115 | ---- | C] () -- C:\Users\Public\Desktop\Diablo III Beta.lnk

[2012/05/22 22:08:17 | 000,175,987 | ---- | C] () -- C:\Users\axel\Documents\mole2(1).jpg

[2012/05/22 22:07:35 | 000,249,842 | ---- | C] () -- C:\Users\axel\Documents\mole1(2).jpg

[2012/05/21 17:23:46 | 000,016,681 | ---- | C] () -- C:\Users\axel\Desktop\1244221747.jpeg

[2012/05/21 17:12:38 | 000,009,228 | ---- | C] () -- C:\Users\axel\Desktop\12269.avtr

[2012/05/21 16:10:14 | 002,249,334 | ---- | C] () -- C:\Users\axel\Desktop\metin.bmp

[2012/05/21 14:16:44 | 000,000,692 | ---- | C] () -- C:\Users\Public\Desktop\Metin2.lnk

[2012/05/20 15:06:23 | 000,000,856 | ---- | C] () -- C:\Users\Public\Desktop\Diablo III.lnk

[2012/05/16 16:16:50 | 000,006,610 | ---- | C] () -- C:\Users\axel\Desktop\grzybu.PNG

[2012/05/16 15:14:55 | 000,000,221 | ---- | C] () -- C:\Users\axel\Desktop\Call of Duty Modern Warfare 2 - Multiplayer.url

[2012/05/16 14:15:06 | 001,467,013 | ---- | C] () -- C:\Users\axel\Desktop\2012-05-16 14.05.23.jpg

[2012/05/15 15:18:36 | 000,001,541 | ---- | C] () -- C:\Users\axel\Desktop\Counter-Strike Source.lnk

[2012/05/15 14:59:49 | 000,000,523 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk

[2012/05/15 14:13:27 | 000,014,083 | ---- | C] () -- C:\Users\axel\AppData\Local\recently-used.xbel

[2012/05/15 10:48:42 | 000,000,803 | ---- | C] () -- C:\Users\axel\Desktop\FIFA10.lnk

[2012/05/14 19:14:12 | 000,000,669 | ---- | C] () -- C:\Users\axel\Desktop\Mafia.lnk

[2012/05/13 19:43:19 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk

[2012/05/13 12:31:36 | 000,002,517 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk

[2012/05/11 16:17:11 | 000,000,810 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\otshot.lnk

[2012/05/11 16:16:56 | 000,075,112 | ---- | C] () -- C:\windows\SysWow64\85e08124.exe

[2012/05/11 16:16:56 | 000,002,038 | ---- | C] () -- C:\Users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tcbhn.lnk

[2012/05/11 06:50:54 | 000,004,544 | ---- | C] () -- C:\Users\axel\Desktop\Nowy dokument dziennika.jnt

[2012/05/11 06:50:40 | 000,000,154 | ---- | C] () -- C:\windows\SysNative\LexFiles.ulf

[2012/05/10 18:11:15 | 001,105,867 | ---- | C] () -- C:\Users\axel\Desktop\2012-04-19 14.22.34.jpg

[2012/05/10 18:11:14 | 001,246,739 | ---- | C] () -- C:\Users\axel\Desktop\2012-04-19 14.22.23.jpg

[2012/05/10 18:11:14 | 001,054,280 | ---- | C] () -- C:\Users\axel\Desktop\2012-04-19 14.24.49.jpg

[2012/05/10 18:11:14 | 000,964,524 | ---- | C] () -- C:\Users\axel\Desktop\2012-04-19 14.25.00.jpg

[2012/05/10 15:06:33 | 000,001,051 | ---- | C] () -- C:\Users\axel\Desktop\ReaConverter 6.0 Pro.lnk

[2012/05/10 14:52:44 | 002,356,923 | ---- | C] () -- C:\Users\axel\Documents\herbbeeeeek.xcf

[2012/05/10 14:00:33 | 000,000,924 | ---- | C] () -- C:\Users\axel\Desktop\GIMP 2.lnk

[2012/05/10 13:58:23 | 000,000,892 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk

[2012/05/07 21:36:48 | 000,001,254 | ---- | C] () -- C:\Users\Public\Desktop\Syndicate.lnk

[2012/05/07 19:29:16 | 000,089,035 | ---- | C] () -- C:\Users\axel\Desktop\00001.vcf

[2012/05/07 19:28:37 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf

[2012/05/07 16:18:46 | 000,000,512 | ---- | C] () -- C:\Users\axel\Desktop\Fraps.lnk

[2012/05/07 15:22:09 | 000,011,770 | ---- | C] () -- C:\windows\SysNative\nvinfo.pb

[2012/05/07 15:19:29 | 000,002,154 | ---- | C] () -- C:\windows\epplauncher.mif

[2012/05/07 15:19:21 | 000,001,915 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk

[2012/05/07 15:19:15 | 003,234,382 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI

[2012/05/07 15:06:10 | 000,000,947 | ---- | C] () -- C:\Users\Public\Desktop\?Torrent.lnk

[2012/05/07 14:54:07 | 000,347,904 | ---- | C] () -- C:\windows\SysNative\systemsf.ebd

[2012/05/07 14:53:54 | 000,419,880 | ---- | C] () -- C:\windows\SysWow64\locale.nls

[2012/05/07 14:53:54 | 000,419,880 | ---- | C] () -- C:\windows\SysNative\locale.nls

[2012/05/07 14:51:51 | 000,010,429 | ---- | C] () -- C:\windows\SysNative\ScavengeSpace.xml

[2012/05/07 14:51:35 | 000,105,559 | ---- | C] () -- C:\windows\SysWow64\RacRules.xml

[2012/05/07 14:51:35 | 000,105,559 | ---- | C] () -- C:\windows\SysNative\RacRules.xml

[2012/05/07 14:50:58 | 000,001,041 | ---- | C] () -- C:\windows\SysWow64\tcpbidi.xml

[2012/05/06 21:38:08 | 000,001,036 | ---- | C] () -- C:\Users\Public\Desktop\OpenFM.lnk

[2012/05/06 21:38:08 | 000,001,007 | ---- | C] () -- C:\Users\Public\Desktop\Gadu-Gadu 10.lnk

[2012/05/06 21:33:07 | 000,001,015 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gadu-Gadu 10.lnk

[2012/05/06 12:36:43 | 000,001,048 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job

[2012/05/06 12:36:40 | 000,001,044 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job

[2012/05/06 12:16:18 | 000,001,054 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2195184045-3265951034-2981680463-1000UA.job

[2012/05/06 12:16:18 | 000,001,002 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2195184045-3265951034-2981680463-1000Core.job

[2012/03/28 22:11:08 | 000,030,568 | ---- | C] () -- C:\windows\MusiccityDownload.exe

[2012/03/28 22:11:06 | 000,974,848 | ---- | C] () -- C:\windows\SysWow64\cis-2.4.dll

[2012/03/28 22:11:06 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll

[2012/03/28 22:11:06 | 000,065,536 | ---- | C] () -- C:\windows\SysWow64\issacapi_pe-2.3.dll

[2012/03/28 22:11:06 | 000,057,344 | ---- | C] () -- C:\windows\SysWow64\issacapi_se-2.3.dll

[2010/06/06 22:29:00 | 006,291,456 | -H-- | C] () -- C:\Users\axel\AppData\Local\IconCache.db

[2010/06/06 22:11:54 | 000,084,240 | ---- | C] () -- C:\Users\axel\AppData\Local\GDIPFONTCACHEV1.DAT

 

========== LOP Check ==========

 

[2012/05/28 07:30:40 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\BrowserCompanion

[2012/05/28 07:01:53 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\DAEMON Tools Lite

[2012/05/06 22:19:08 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\Gadu-Gadu 10

[2012/05/06 21:31:26 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\GG

[2012/05/14 22:34:52 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\Leadertech

[2012/05/15 14:05:39 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\RCP 6

[2012/05/10 07:52:34 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\Samsung

[2012/05/28 07:01:52 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\uTorrent

[2012/05/27 22:35:57 | 000,000,000 | ---D | M] -- C:\Users\axel\AppData\Roaming\ZalmanInstaller_otshot

[2009/07/14 07:08:49 | 000,010,798 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

 

========== Purity Check ==========

 

 

 

< End of report >

 

 

 

 

 

 

OTL Extras logfile created on: 5/28/2012 9:10:16 PM - Run 1

OTL by OldTimer - Version 3.2.43.2 Folder = C:\Users\axel\Downloads

64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation

Internet Explorer (Version = 8.0.7601.17514)

Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

 

3.86 Gb Total Physical Memory | 1.31 Gb Available Physical Memory | 34.06% Memory free

7.71 Gb Paging File | 4.93 Gb Available in Paging File | 63.94% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)

Drive C: | 148.72 Gb Total Space | 107.64 Gb Free Space | 72.38% Space Free | Partition Type: NTFS

Drive D: | 301.95 Gb Total Space | 233.92 Gb Free Space | 77.47% Space Free | Partition Type: NTFS

 

Computer Name: AXEL-KOMPUTER | User Name: axel | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

 

========== Extra Registry (SafeList) ==========

 

 

========== File Associations ==========

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)

 

========== Shell Spawning ==========

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)

InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)

InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L"

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]

batfile [open] -- "%1" %*

cmdfile [open] -- "%1" %*

comfile [open] -- "%1" %*

cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)

exefile [open] -- "%1" %*

helpfile [open] -- Reg Error: Key error.

inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)

piffile [open] -- "%1" %*

regfile [merge] -- Reg Error: Key error.

scrfile [config] -- "%1"

scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l

scrfile [open] -- "%1" /S

txtfile [edit] -- Reg Error: Key error.

Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1

Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)

Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L"

Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

Folder [explore] -- Reg Error: Value error.

Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

 

========== Security Center Settings ==========

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

"cval" = 1

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]

"AntiVirusOverride" = 0

"AntiSpywareOverride" = 0

"FirewallOverride" = 0

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

 

========== Firewall Settings ==========

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]

"DisableNotifications" = 0

"EnableFirewall" = 1

 

========== Authorized Applications List ==========

 

 

========== Vista Active Open Ports Exception List ==========

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{0D7893D8-B269-44BA-A36A-016F96AFBDA1}" = lport=10243 | protocol=6 | dir=in | app=system |

"{239B1E95-EE44-4064-9B52-C4AB944F325B}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |

"{27D46B91-8ACC-4ADA-86FF-54C3E00DE7BB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{313B589A-8D63-4B0A-8646-8BA134D1974D}" = lport=MPC-epmap | protocol=6 | dir=in | svc=MPCss | [email protected],-28539 |

"{35537B4A-1B4B-4964-8D43-33E48A2FE706}" = lport=137 | protocol=17 | dir=in | app=system |

"{3E881247-3C4C-4CF3-A935-087434563DAD}" = rport=445 | protocol=6 | dir=out | app=system |

"{4006CB70-668A-4FAA-AD4E-2E66DED2AA23}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{4B9CA715-2EF8-4291-9665-868569D8E8BA}" = lport=2869 | protocol=6 | dir=in | app=system |

"{4E089E85-4D92-4926-8EF6-7164896EF02F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{536C8B28-36F5-4EF6-B716-1CF576EAF8FB}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{584EE692-0A82-4C63-A0F5-337DFC7C868F}" = rport=139 | protocol=6 | dir=out | app=system |

"{5A0729DE-6E06-4464-ADDC-C22482A630B7}" = lport=MPC | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |

"{618ACF58-26FF-4C38-BBF4-8A6BE360FBAB}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{6681F913-8326-4542-9214-BE9948967506}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |

"{6F634AC0-365D-405E-9080-8D3904710BF1}" = rport=138 | protocol=17 | dir=out | app=system |

"{8AEE81D7-53DA-47B6-B4ED-A7D04D453EDC}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{A0753C79-DAC8-4B05-8C5E-F09F19750E18}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{A2F3E06C-63C7-44E4-B12A-22B49864D109}" = lport=139 | protocol=6 | dir=in | app=system |

"{C2139C5E-6EA4-447B-96BA-8634ADD78F96}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

"{C3599FF4-EF01-4A5E-9BCD-71DE2BDCF3F2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |

"{C6BFEAA4-2FCA-45FF-A5B7-A396E67E5503}" = lport=445 | protocol=6 | dir=in | app=system |

"{C8F2827D-0C55-4442-BD92-47BCEECA6054}" = lport=2869 | protocol=6 | dir=in | app=system |

"{DDC62C27-7404-408F-9667-712944BB9257}" = rport=137 | protocol=17 | dir=out | app=system |

"{EDD90822-13EB-4E9C-881B-611BDA0F3A1D}" = rport=10243 | protocol=6 | dir=out | app=system |

"{F07C9C35-CDBD-4989-93F9-BA3480BCA603}" = lport=138 | protocol=17 | dir=in | app=system |

 

========== Vista Active Application Exception List ==========

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

"{056C93D3-55BB-4589-B1ED-2B588BE7C667}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe |

"{0C88A6FF-681A-4E27-BD4F-603010C7F89A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{1052F97D-3D29-45BF-B81C-B260E12F2E1C}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"{1DA8814E-D602-47AA-BA64-B686095ACAA0}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe |

"{1E73DB48-2315-44FF-9107-9606D3F2962C}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe |

"{1F3D0480-FA17-4320-8CB0-EA8B4DC3C179}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{2009A0C8-8BDB-4A1C-93AC-F17246A5A916}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |

"{28E61610-8935-483C-8060-294048D50C2F}" = protocol=1 | dir=out | [email protected],-28544 |

"{2B89D56E-AFF3-47E7-B309-3568EC24F646}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{3021F9E9-BC64-42A1-B478-B8FDBED3647F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{32EFA0C4-F1A2-4E2F-B728-CC2E34F56EAD}" = protocol=6 | dir=in | app=d:\program files (x86)\diablo iii beta\diablo iii.exe |

"{33694B45-6056-4E97-8E75-68DE407012F5}" = protocol=6 | dir=out | app=system |

"{41387062-8CD8-43CE-AAF9-259F523F0E23}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |

"{43DC2A01-78F8-4FF5-A0CE-0F267F213018}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |

"{45D6EA1B-1538-4366-9F29-97265BE6EA88}" = protocol=17 | dir=in | app=d:\program files (x86)\diablo iii beta\diablo iii.exe |

"{4967453C-0CD4-4BE6-A616-029BA0B44519}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |

"{4C02089C-D8F4-4182-8054-8372D0AABBCC}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe |

"{508FF78A-5E03-4743-BF65-2565F89CF327}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |

"{55F5FB41-D5DF-45AB-950C-6ECB52CB3A6B}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{5D6A6009-FB4F-415F-8216-6104C9F4AC7C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

"{65DD5511-3450-4FA3-BFBC-2855B79612B0}" = protocol=1 | dir=in | [email protected],-28543 |

"{66D8FC24-206E-4D2F-AC8D-1725BEBA2728}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{6D0ADD19-6330-4A20-872D-27A1503ADB20}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe |

"{783ABFF5-1002-4294-B440-D796FA425274}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.976\agent.exe |

"{832B3100-FE21-4534-90F8-E569D251E282}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |

"{9FB18105-C96B-4736-AB57-1BA2DD830A96}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.524\agent.exe |

"{A75389B2-61CA-42DD-8092-00D8A78EDE6A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{ADE868E5-BB76-41CE-A43A-18FB9D03F03D}" = protocol=58 | dir=in | [email protected],-28545 |

"{BB03844B-4B7D-41DE-9C7B-264AFC2D84AA}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |

"{C1452DB4-F537-4619-BA5F-55A62C978BE1}" = protocol=58 | dir=out | [email protected],-28546 |

"{C3802616-3671-4C68-8D6B-84F623482F73}" = protocol=6 | dir=in | app=d:\program files (x86)\steam\steam.exe |

"{C62C86BA-32AF-4526-ADA7-B9D6E5F2BA7D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |

"{C8F0BFC9-6F37-48A5-8B36-B4C79BF5F0B8}" = dir=in | app=c:\windows\system32\lxeacoms.exe |

"{D4C7FA8C-DAB9-4494-B6A0-1F7A2D4425C6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |

"{D9AA5B93-1B93-45EF-896B-0AB4EF97C166}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steam.exe |

"{DA3125DB-8925-4A06-884C-918723864D75}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd8\powerdvd8.exe |

"{DDF0AC4C-EBC3-4028-A9C0-9D0E105AAAA7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |

"{DEC74698-D19B-40E1-A1E7-5525C7418676}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |

"{E276AA40-94F2-4C92-94A0-035BC19C797E}" = protocol=6 | dir=in | app=d:\program files (x86)\diablo iii\diablo iii.exe |

"{E7180BBA-9F6D-430F-9828-20F7B606072C}" = protocol=17 | dir=in | app=d:\program files (x86)\diablo iii\diablo iii.exe |

"{E9378979-C4D5-400B-BC34-8D54EB010A0A}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe |

"{EB47D4EC-0932-4D65-8C95-BA40BD292256}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |

"{F29AD5F2-4726-4617-98DA-93B174A13097}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe |

"{FA71FDCF-F17A-4DA2-A6D4-E3EC5E8B9C2F}" = protocol=17 | dir=in | app=d:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe |

"{FDF14BF9-B10F-4EFF-85F3-6F9884238635}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |

"TCP Query User{0A6B5727-8F21-43C8-BD9C-BD7B3A185B87}D:\lorenzo.eu - klient gry\starter.exe" = protocol=6 | dir=in | app=d:\lorenzo.eu - klient gry\starter.exe |

"TCP Query User{11F1A468-9CD2-4FA7-A5CD-671FF650F8CF}D:\lorenzo.eu - klient gry\starter (1).exe" = protocol=6 | dir=in | app=d:\lorenzo.eu - klient gry\starter (1).exe |

"TCP Query User{22920083-4D06-42F0-ADFE-F5CB54463FEE}D:\spirit\metin2client.exe" = protocol=6 | dir=in | app=d:\spirit\metin2client.exe |

"TCP Query User{275F3378-8751-4930-BB52-241BF5210F9B}D:\lorenzo.eu - klient gry\starter (3).exe" = protocol=6 | dir=in | app=d:\lorenzo.eu - klient gry\starter (3).exe |

"TCP Query User{2B2C16D7-EB3A-439B-B052-8D139E676E53}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe |

"TCP Query User{400D63DE-277A-418E-A01F-212AF0E10BF5}D:\program files (x86)\metin2\metin2client.bin" = protocol=6 | dir=in | app=d:\program files (x86)\metin2\metin2client.bin |

"TCP Query User{900CE240-DD82-424F-86AB-1D41EAE211DE}D:\ambrozjamt-klient\ambrozjamt2\ambrozjamt2.exe" = protocol=6 | dir=in | app=d:\ambrozjamt-klient\ambrozjamt2\ambrozjamt2.exe |

"TCP Query User{A94315CC-CEE9-46CD-B7AE-2F1D8ADB2879}D:\lorenzo.eu - klient gry\lorenzo.exe" = protocol=6 | dir=in | app=d:\lorenzo.eu - klient gry\lorenzo.exe |

"TCP Query User{B4D8DE2B-EF96-4660-B7A1-D2CA678A22F5}D:\diablo iii\diablo-iii-8370-plpl-installer-downloader to nie jest crack kurwa.exe" = protocol=6 | dir=in | app=d:\diablo iii\diablo-iii-8370-plpl-installer-downloader to nie jest crack kurwa.exe |

"UDP Query User{05F78849-1A3E-426C-944D-02407D1A5410}D:\diablo iii\diablo-iii-8370-plpl-installer-downloader to nie jest crack kurwa.exe" = protocol=17 | dir=in | app=d:\diablo iii\diablo-iii-8370-plpl-installer-downloader to nie jest crack kurwa.exe |

"UDP Query User{137888A2-C966-4BD1-BCBB-6C5068D5EEFB}D:\ambrozjamt-klient\ambrozjamt2\ambrozjamt2.exe" = protocol=17 | dir=in | app=d:\ambrozjamt-klient\ambrozjamt2\ambrozjamt2.exe |

"UDP Query User{2656B279-1BEE-40AC-A763-A58A4B76D45B}D:\lorenzo.eu - klient gry\starter (3).exe" = protocol=17 | dir=in | app=d:\lorenzo.eu - klient gry\starter (3).exe |

"UDP Query User{695C2870-0DBE-42AB-9D64-922E6519DEF9}D:\lorenzo.eu - klient gry\starter.exe" = protocol=17 | dir=in | app=d:\lorenzo.eu - klient gry\starter.exe |

"UDP Query User{7B020F05-6328-48EE-AEF8-FF57E57AF62B}D:\lorenzo.eu - klient gry\lorenzo.exe" = protocol=17 | dir=in | app=d:\lorenzo.eu - klient gry\lorenzo.exe |

"UDP Query User{AA9F137C-9792-49F1-BF35-81F2D56C767C}D:\spirit\metin2client.exe" = protocol=17 | dir=in | app=d:\spirit\metin2client.exe |

"UDP Query User{B6B06801-38A1-4F1A-9F14-006275081C6C}D:\program files (x86)\metin2\metin2client.bin" = protocol=17 | dir=in | app=d:\program files (x86)\metin2\metin2client.bin |

"UDP Query User{BD9972C6-AFEF-4CE0-A9E4-0EFDDB44EDFC}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe |

"UDP Query User{E04C996A-BA89-4CF9-B7B6-EDE34B27A3A9}D:\lorenzo.eu - klient gry\starter (1).exe" = protocol=17 | dir=in | app=d:\lorenzo.eu - klient gry\starter (1).exe |

 

========== HKEY_LOCAL_MACHINE Uninstall List ==========

 

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{23170F69-40C1-2702-0925-000001000000}" = 7-Zip 9.25 (x64 edition)

"{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}" = Intel? Turbo Boost Technology Monitor

"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.02

"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight

"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007

"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007

"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting

"{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}" = Microsoft Security Client

"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = WIDCOMM Bluetooth Software

"{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 296.10

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 296.10

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.12.0213

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.7.11

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Sterownik dźwięku HD 1.3.12.0

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application

"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components

"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones

"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile

"{F770CEB0-4157-406A-99F8-E03F39667917}" = Bezpieczeństwo rodzinne usługi Windows Live

"3932CA781A7894D20116FDF60F878301800EA8AB" = Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407)

"3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800)

"6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405)

"CCleaner" = CCleaner

"GIMP-2_is1" = GIMP 2.8.0

"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile

"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile

"Microsoft Security Client" = Microsoft Security Essentials

"SynTPDeinstKey" = Synaptics Pointing Device Driver

"WinRAR archiver" = WinRAR 4.01 (64-bitowy)

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam

"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam?

"{0A353130-D22C-41DD-8C67-1B02A05F2CE0}" = Samsung Support Center

"{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10

"{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution 4

"{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Display Manager

"{178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}" = EasyBatteryManager

"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer

"{1AFA1FEF-8CF9-4A51-AC46-64FAA7F3D9E2}" = AnyPC Client

"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite

"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live

"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT

"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer

"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java? 6 Update 32

"{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8

"{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync

"{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works

"{34B76DCB-BF7C-440F-B058-C84172C1E338}" = Easy Network Manager

"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform

"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel? Rapid Storage Technology

"{3EED7541-55F8-4DC6-B9CD-28762D71310E}" = Samsung R-Series

"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go

"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater

"{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live

"{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}" = Microsoft Office Live Add-in 1.3

"{6053FE9B-5473-41D6-AEBF-AD6F98138191}" = Windows Live Movie Maker

"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable

"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies

"{853F8A41-A3C9-43FA-87FA-1AE74FC6F3F7}" = BatteryLifeExtender

"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007

"{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007

"{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007

"{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007

"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007

"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007

"{90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

"{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007

"{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002A-0415-1000-0000000FF1CE}_HOMESTUDENTR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007

"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007

"{90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007

"{90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In

"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007

"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)

"{92D50865-FC60-4EA8-BA7A-5581B0D13EFB}" = ChargeableUSB

"{95120000-00AF-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Polish)

"{9580813D-94B1-4C28-9426-A441E2BB29A5}" = Counter-Strike: Source

"{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live

"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

"{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer

"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

"{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live

"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable

"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper

"{AC76BA86-7AD7-1045-7B44-A95000000001}" = Adobe Reader 9.5.1 - Polish

"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call

"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = CyberLink PowerProducer

"{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}" = User Guide

"{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live

"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint

"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = CyberLink PowerDirector

"{D1434266-0486-4469-B338-A60082CC04E1}" = Atheros Client Installation Program

"{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger

"{D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}" = Samsung Update Plus

"{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel? Turbo Boost Technology Driver

"{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}" = NVIDIA PhysX

"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update

"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant

"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype? 5.9

"{EF367AA4-070B-493C-9575-85BE59D789C9}" = Easy SpeedUp Manager

"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]

"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard

"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver

"{F2BC3383-F000-410C-A038-3846ADBE8D90}" = REALTEK Wireless LAN Software

"85e08124" = Contextual Tool Sleekseek

"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX

"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin

"BrowserCompanion" = BrowserCompanion

"DAEMON Tools Lite" = DAEMON Tools Lite

"Diablo III" = Diablo III

"Diablo III Beta" = Diablo III Beta

"ESET Online Scanner" = ESET Online Scanner v3

"Fraps" = Fraps (remove only)

"Gadu-Gadu 10" = Gadu-Gadu 10

"Game Booster_is1" = Game Booster 3

"HOMESTUDENTR" = Microsoft Office Home and Student 2007

"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam

"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite

"InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}" = CyberLink PowerDVD 8

"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go

"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies

"InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = CyberLink PowerProducer

"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint

"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = CyberLink PowerDirector

"Mafia" = Mafia

"Marvell Miniport Driver" = Marvell Miniport Driver

"Metin2_is1" = Metin2

"ReaConverter 6.0 Pro_is1" = ReaConverter 6.0 Pro

"Search Fairy" = Search Fairy

"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer

"Syndicate_is1" = Syndicate

"uTorrent" = ?Torrent

"WinLiveSuite_Wave3" = Podstawowe programy Windows Live

 

========== HKEY_USERS Uninstall List ==========

 

[HKEY_USERS\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"Google Chrome" = Google Chrome

 

========== HKEY_USERS Uninstall List ==========

 

[HKEY_USERS\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

"Google Chrome" = Google Chrome

 

========== Last 10 Event Log Errors ==========

 

[ Application Events ]

Error - 5/6/2012 6:14:46 AM | Computer Name = axel-Komputer | Source = McLogEvent | ID = 5051

Description =

 

Error - 5/7/2012 12:47:08 AM | Computer Name = axel-Komputer | Source = System Restore | ID = 8193

Description =

 

Error - 5/7/2012 8:42:11 AM | Computer Name = axel-Komputer | Source = Application Hang | ID = 1002

Description = Program Explorer.EXE w wersji 6.1.7600.16434 zatrzymał interakcję

z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej

informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania

Centrum akcji. Identyfikator procesu: 98c Godzina rozpoczęcia: 01cd2bb6f44f1344 Godzina

zakończenia: 1642 Ścieżka aplikacji: C:\windows\Explorer.EXE Identyfikator raportu:

0505baa1-9842-11e1-8491-b482fe503b72

 

Error - 5/7/2012 9:28:59 AM | Computer Name = axel-Komputer | Source = Application Error | ID = 1000

Description = Nazwa aplikacji powodującej błąd: Rezip.exe, wersja: 500.2001.208.2009,

sygnatura czasowa: 0x49afaf79 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0,

sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x74b26a34

Identyfikator

procesu powodującego błąd: 0x6d4 Godzina uruchomienia aplikacji powodującej błąd:

0x01cd2bb6dd930ec6 Ścieżka aplikacji powodującej błąd: C:\windows\SysWOW64\Rezip.exe

Ścieżka

modułu powodującego błąd: unknown Identyfikator raportu: 99b98855-9848-11e1-8491-b482fe503b72

 

Error - 5/7/2012 9:29:02 AM | Computer Name = axel-Komputer | Source = Application Error | ID = 1000

Description = Nazwa aplikacji powodującej błąd: RichVideo.exe, wersja: 2.0.0.3027,

sygnatura czasowa: 0x4864c8fb Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0,

sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x74b26a34

Identyfikator

procesu powodującego błąd: 0x6fc Godzina uruchomienia aplikacji powodującej błąd:

0x01cd2bb6de008e12 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\CyberLink\Shared

files\RichVideo.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu:

9ba6452e-9848-11e1-8491-b482fe503b72

 

Error - 5/7/2012 12:53:07 PM | Computer Name = axel-Komputer | Source = SideBySide | ID = 16842787

Description = Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\windows

live\photo gallery\MovieMaker.Exe". Błąd w pliku manifestu lub w pliku zasad "c:\program

files (x86)\windows live\photo gallery\WLMFDS.DLL" w wierszu 8. Tożsamość składnika

znaleziona w manifeście nie odpowiada tożsamości składnika żądanego. Odwołanie to

WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1". Definicja to

WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1". Użyj narzędzia

sxstrace.exe, aby uzyskać szczegółową diagnozę.

 

Error - 5/9/2012 1:28:42 AM | Computer Name = axel-Komputer | Source = Windows Search Service | ID = 3007

Description =

 

[ System Events ]

Error - 5/7/2012 8:00:05 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja dla systemu

Windows 7 dla systemów opartych na procesorach x64 (KB2387530).

 

Error - 5/7/2012 8:00:05 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja zabezpieczeń

systemu Windows 7 dla systemów opartych na procesorach x64 (KB2535512).

 

Error - 5/7/2012 8:00:05 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja zabezpieczeń

dla systemu Windows 7 dla systemów opartych na procesorach x64 (KB979482).

 

Error - 5/7/2012 8:00:05 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja zabezpieczeń

systemu Windows 7 dla systemów opartych na procesorach x64 (KB2560656).

 

Error - 5/7/2012 8:00:05 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja zabezpieczeń

dla programu Microsoft .NET Framework 3.5.1 w systemach Windows 7 i Windows Server

2008 R2 dla systemów opartych na procesorach x64 (KB2572076).

 

Error - 5/7/2012 8:00:05 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja zabezpieczeń

systemu Windows 7 dla systemów opartych na procesorach x64 (KB2425227).

 

Error - 5/7/2012 8:00:06 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja systemu

Windows 7 dla komputerów z procesorami x64 (KB2563227).

 

Error - 5/7/2012 8:00:06 AM | Computer Name = axel-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20

Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować

następującej aktualizacji, ponieważ wystąpił błąd 0x800f0902: Aktualizacja zabezpieczeń

systemu Windows 7 dla systemów opartych na procesorach x64 (KB979309).

 

Error - 5/7/2012 9:29:01 AM | Computer Name = axel-Komputer | Source = Service Control Manager | ID = 7034

Description = Usługa Rezip niespodziewanie zakończyła pracę. Wystąpiło to razy:

1.

 

Error - 5/7/2012 9:29:04 AM | Computer Name = axel-Komputer | Source = Service Control Manager | ID = 7034

Description = Usługa Cyberlink RichVideo Service(CRVS) niespodziewanie zakończyła

pracę. Wystąpiło to razy: 1.

 

 

< End of report >

 

 

 

 

Procek: inter core i5

ram: 4gb

karta graficzna : nvidia geforce 330m 1g

Jest to laptop samsung r780 :)

29wr21h.png

Opublikowano

SSCKbdHk.exe już wiem co to za plik to od samsunga pewnie instalowałeś coś z płyty?

tcbhn.exe- nadal nie wiem co to jest to chyba jakiś trojan .

Wejdź w menedżer zadań PPM klik na ten proces i tam masz gdzie ten plik się znajduje i prześlij mi ten plik na speedyshare.com.

 

Otwórz OTL .Własne Opcje skanowania /wklej

 

 

:OTL

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =

http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =

http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =

http://www.bing.com/...Box&FORM=IE8SRC

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" =

http://www.google.pl...q={searchTerms}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" =

http://www.google.co...SN_plPL482PL482

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =

http://www.google.co...g}&sourceid=ie7

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =

http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =

http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =

http://www.bing.com/...Box&FORM=IE8SRC

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" =

http://www.google.pl...q={searchTerms}

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" =

http://www.google.co...SN_plPL482PL482

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =

http://www.google.co...g}&sourceid=ie7

IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE:

64bit:

- HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}

IE:

64bit:

- HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =

http://www.bing.com/...ms}&FORM=IE8SRC

IE:

64bit:

- HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =

http://www.google.co...g}&sourceid=ie7

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =

http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =

http://pl.v9.com/?ut...&utm_medium=vlt

IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}

IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =

http://www.bing.com/...ms}&FORM=IE8SRC

IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" =

http://www.google.co...ng}&rlz=1I7SMSN

IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =

http://www.google.co...g}&sourceid=ie7

 

Kliknij wykonaj skrypt i pokazujesz nowy log OTL.

1364047611-U477327.png

 

STOP komentarzom typu: "AMD to gówno"! Zanim coś napiszesz, to pomyśl jak odbiorą to inni !

 

 

 

Nie pisać mi na PW w sprawach pomocy od tego macie dział komputery!!!

I nie pomagam na PW!

 

 

 

 

gardenscapes cheats

 

bakery story 2 cheat

Opublikowano
SSCKbdHk.exe już wiem co to za plik to od samsunga pewnie instalowałeś coś z płyty?
- tak to coś od samsunga

 

Otwórz OTL .Własne Opcje skanowania /wklej
- jak to zrobić ? bo u mnie nie ma takiej opcji a mam wersje 3.2.43.2

29wr21h.png

Opublikowano

Tu masz nową wersję na dole masz taką ramkę i wklej ten tekst co ci podałem.

http://www.dobreprogramy.pl/OTL,Program,Windows,19450.html

1364047611-U477327.png

 

STOP komentarzom typu: "AMD to gówno"! Zanim coś napiszesz, to pomyśl jak odbiorą to inni !

 

 

 

Nie pisać mi na PW w sprawach pomocy od tego macie dział komputery!!!

I nie pomagam na PW!

 

 

 

 

gardenscapes cheats

 

bakery story 2 cheat

Opublikowano

Zrobiłem i co teraz? Przepraszam ale dopiero teraz wróciłem z wycieczki a tam nie miałem neta :/

29wr21h.png

Opublikowano

http://speedy.sh/pyaHc/tcbhn.exe Proszę

 

nowy log z tego o co mnie prosiłeś

 

 

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL => in the current context!

Error: Unable to interpret <http://pl.v9.com/?ut...&utm_medium=vlt> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page => in the current context!

Error: Unable to interpret <http://pl.v9.com/?ut...&utm_medium=vlt> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" => in the current context!

Error: Unable to interpret <http://www.bing.com/...Box&FORM=IE8SRC> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.pl...q={searchTerms}> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...SN_plPL482PL482> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...g}&sourceid=ie7> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL => in the current context!

Error: Unable to interpret <http://pl.v9.com/?ut...&utm_medium=vlt> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page => in the current context!

Error: Unable to interpret <http://pl.v9.com/?ut...&utm_medium=vlt> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" => in the current context!

Error: Unable to interpret <http://www.bing.com/...Box&FORM=IE8SRC> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.pl...q={searchTerms}> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...SN_plPL482PL482> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...g}&sourceid=ie7> in the current context!

Error: Unable to interpret <IE - HKU\S-1-5-21-2195184045-3265951034-2981680463-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0> in the current context!

Error: Unable to interpret <IE:> in the current context!

Error: Unable to interpret <64bit:> in the current context!

Error: Unable to interpret <- HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}> in the current context!

Error: Unable to interpret <IE:> in the current context!

Error: Unable to interpret <64bit:> in the current context!

Error: Unable to interpret <- HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" => in the current context!

Error: Unable to interpret <http://www.bing.com/...ms}&FORM=IE8SRC> in the current context!

Error: Unable to interpret <IE:> in the current context!

Error: Unable to interpret <64bit:> in the current context!

Error: Unable to interpret <- HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...g}&sourceid=ie7> in the current context!

Error: Unable to interpret <IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL => in the current context!

Error: Unable to interpret <http://pl.v9.com/?ut...&utm_medium=vlt> in the current context!

Error: Unable to interpret <IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm> in the current context!

Error: Unable to interpret <IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page => in the current context!

Error: Unable to interpret <http://pl.v9.com/?ut...&utm_medium=vlt> in the current context!

Error: Unable to interpret <IE - HKLM\..\SearchScopes,DefaultScope = {67A2568C-7A0A-4EED-AECC-B5405DE63B64}> in the current context!

Error: Unable to interpret <IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" => in the current context!

Error: Unable to interpret <http://www.bing.com/...ms}&FORM=IE8SRC> in the current context!

Error: Unable to interpret <IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...ng}&rlz=1I7SMSN> in the current context!

Error: Unable to interpret <IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" => in the current context!

Error: Unable to interpret <http://www.google.co...g}&sourceid=ie7> in the current context!

 

OTL by OldTimer - Version 3.2.45.0 log created on 06022012_094054

 

 

 

29wr21h.png

Opublikowano

To jest trojan wykradający hasła.

Pobierz Combofix :

http://www.programosy.pl/program,combofix.html

Powyłaczaj antywirusa/firewalla i zapore przed uruchomieniem Combofixa gdyż istnieje ryzyko uszkodzenia plików.

Po zakończeniu pokaż wyniki usuwania.

1364047611-U477327.png

 

STOP komentarzom typu: "AMD to gówno"! Zanim coś napiszesz, to pomyśl jak odbiorą to inni !

 

 

 

Nie pisać mi na PW w sprawach pomocy od tego macie dział komputery!!!

I nie pomagam na PW!

 

 

 

 

gardenscapes cheats

 

bakery story 2 cheat

Opublikowano

Tutaj nowy log z tego programu. Coś tam usuwał.

 

 

 

ComboFix 12-06-02.02 - axel 2012-06-02 9:46.1.4 - x64

Microsoft Windows 7 Home Premium 6.1.7601.1.1250.48.1045.18.3950.2396 [GMT 2:00]

Uruchomiony z: c:\users\axel\Downloads\ComboFix.exe

AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}

SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\program files (x86)\Search Fairy\SeARchfairy.dll

c:\windows\SysWow64\85e08124.exe

c:\windows\SysWow64\muzapp.exe

.

.

((((((((((((((((((((((((( Pliki utworzone od 2012-05-02 do 2012-06-02 )))))))))))))))))))))))))))))))

.

.

2012-06-02 07:52 . 2012-06-02 07:52 -------- d-----w- c:\users\Default\AppData\Local emp

2012-06-01 21:37 . 2012-05-08 17:02 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{5FE579A1-3B4F-40E4-A528-038EDC48CC14}\mpengine.dll

2012-06-01 20:22 . 2012-06-01 20:22 -------- d-----w- C:\_OTL

2012-06-01 12:11 . 2012-05-08 17:02 8955792 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2012-05-28 19:21 . 2012-03-09 08:57 23816 ----a-w- c:\windows\system32\drivers\cpuz135_x64.sys

2012-05-28 19:21 . 2012-05-28 19:21 -------- d-----w- c:\program files\CPUID

2012-05-28 05:34 . 2010-11-08 05:31 310104 ----a-w- c:\windows\system32\RP3DHT64.dll

2012-05-28 05:34 . 2012-03-21 13:55 2886656 ----a-w- c:\windows\system32\RCoRes64.dat

2012-05-28 05:34 . 2010-11-08 05:31 310104 ----a-w- c:\windows\system32\RP3DAA64.dll

2012-05-28 05:34 . 2012-03-19 17:01 102504 ----a-w- c:\windows\system32\RCoInstII64.dll

2012-05-28 05:34 . 2011-12-15 11:16 7163744 ----a-w- c:\windows\system32\R4EEP64A.dll

2012-05-28 05:34 . 2011-12-15 11:16 75104 ----a-w- c:\windows\system32\R4EEG64A.dll

2012-05-28 05:34 . 2011-12-15 11:16 137056 ----a-w- c:\windows\system32\R4EEL64A.dll

2012-05-28 05:34 . 2011-12-15 11:16 433504 ----a-w- c:\windows\system32\R4EED64A.dll

2012-05-28 05:34 . 2011-12-15 11:16 120160 ----a-w- c:\windows\system32\R4EEA64A.dll

2012-05-28 05:34 . 2012-02-17 13:54 396632 ----a-w- c:\windows\system32\MaxxVolumeSDAPO.dll

2012-05-28 05:34 . 2012-02-13 22:05 8363864 ----a-w- c:\windows\system32\MaxxAudioRealtek.dll

2012-05-28 05:33 . 2011-12-18 15:58 2131288 ----a-w- c:\windows\system32\MaxxAudioEQ.dll

2012-05-28 05:33 . 2012-02-13 20:35 978776 ----a-w- c:\windows\system32\MaxxAudioAPOShell64.dll

2012-05-28 05:33 . 2011-08-23 15:00 603984 ----a-w- c:\windows\system32\KAAPORT64.dll

2012-05-28 05:33 . 2010-10-03 11:46 341336 ----a-w- c:\windows\system32\MaxxAudioAPO30.dll

2012-05-28 05:33 . 2010-09-27 07:34 318808 ----a-w- c:\windows\system32\MaxxAudioAPO20.dll

2012-05-28 05:33 . 2012-02-21 12:26 2528832 ----a-w- c:\windows\system32\FMAPO64.dll

2012-05-28 05:33 . 2011-05-31 07:42 693352 ----a-w- c:\windows\system32\DTSVoiceClarityDLL64.dll

2012-05-28 05:31 . 2005-11-13 21:19 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe

2012-05-28 05:21 . 2012-05-28 05:21 -------- d-----w- c:\program files (x86)\Realtek

2012-05-28 04:55 . 2012-05-28 04:55 -------- d-----w- c:\program files\CCleaner

2012-05-28 04:52 . 2012-05-28 04:52 -------- d-----w- c:\programdata\IObit

2012-05-28 04:52 . 2012-05-28 04:52 -------- d-----w- c:\program files (x86)\IObit

2012-05-26 21:38 . 2012-05-26 21:38 -------- d-----w- c:\program files (x86)\ESET

2012-05-26 10:53 . 2012-05-26 10:53 -------- d-----w- c:\users\axel\AppData\Roaming\CyberLink

2012-05-26 10:53 . 2012-05-26 10:53 -------- d-----w- c:\users\Public\CyberLink

2012-05-20 13:06 . 2012-05-27 10:59 -------- d-----w- c:\program files (x86)\Common Files\Blizzard Entertainment

2012-05-20 13:06 . 2012-05-20 18:16 -------- d-----w- c:\programdata\Blizzard Entertainment

2012-05-20 10:02 . 2012-05-20 10:03 -------- d-----w- c:\programdata\Battle.net

2012-05-20 09:48 . 2012-05-20 09:48 -------- d-----w- c:\program files\7-Zip

2012-05-15 13:56 . 2012-05-15 13:56 -------- d-----w- c:\program files (x86)\Common Files\Steam

2012-05-15 12:10 . 2012-05-15 12:10 -------- d-----w- c:\users\axel\AppData\Local\webkit

2012-05-14 20:34 . 2012-05-14 20:34 -------- d-----w- c:\users\axel\AppData\Roaming\Leadertech

2012-05-14 15:56 . 2012-05-14 15:56 -------- d-----w- c:\program files\Microsoft Silverlight

2012-05-14 15:56 . 2012-05-14 15:56 -------- d-----w- c:\program files (x86)\Microsoft Silverlight

2012-05-14 12:55 . 2012-01-25 06:38 77312 ----a-w- c:\windows\system32\rdpwsx.dll

2012-05-14 12:55 . 2012-01-25 06:38 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll

2012-05-13 10:31 . 2012-05-28 05:30 -------- d-----w- c:\programdata\boost_interprocess

2012-05-13 10:31 . 2012-05-15 19:32 -------- d-----w- c:\users\axel\AppData\Roaming\Skype

2012-05-13 10:31 . 2012-05-13 10:31 -------- d-----w- c:\program files (x86)\Common Files\Skype

2012-05-13 10:31 . 2012-05-13 10:31 -------- d-----r- c:\program files (x86)\Skype

2012-05-13 10:31 . 2012-05-13 10:31 -------- d-----w- c:\programdata\Skype

2012-05-11 14:17 . 2012-05-11 14:17 -------- d-----w- c:\program files (x86)\Yontoo

2012-05-11 14:17 . 2012-05-11 14:17 -------- d-----w- c:\programdata\Tarma Installer

2012-05-11 14:17 . 2012-05-11 14:17 -------- d-----w- c:\program files (x86)\otshot

2012-05-11 14:16 . 2012-05-28 05:30 -------- d-----w- c:\users\axel\AppData\Roaming\BrowserCompanion

2012-05-11 14:16 . 2012-05-11 14:16 -------- d-----w- c:\program files (x86)\BrowserCompanion

2012-05-11 14:16 . 2012-06-02 07:51 -------- d-----w- c:\program files (x86)\Search Fairy

2012-05-11 14:16 . 2012-05-27 20:35 -------- d-----w- c:\users\axel\AppData\Roaming\ZalmanInstaller_otshot

2012-05-11 04:50 . 2012-05-11 04:51 -------- d-----w- c:\programdata\lx_Cats

2012-05-11 04:50 . 2009-11-04 11:18 189440 ----a-w- c:\windows\system32\Spool\prtprocs\x64\lxeadrpp.dll

2012-05-11 04:50 . 2012-05-11 04:50 -------- d-----w- c:\program files\Lexmark S300-S400 Series

2012-05-11 04:48 . 2012-05-11 04:48 -------- d-----w- c:\program files\Lexmark

2012-05-10 13:06 . 2012-05-15 12:20 -------- d-----w- c:\programdata\ReaConverter

2012-05-10 13:06 . 2012-05-15 12:05 -------- d-----w- c:\users\axel\AppData\Roaming\RCP 6

2012-05-10 13:06 . 2012-05-10 13:06 -------- d-----w- c:\program files (x86)\ReaConverter 6.0 Pro

2012-05-10 12:52 . 2012-05-10 12:52 -------- d-----w- c:\users\axel\.thumbnails

2012-05-10 12:00 . 2012-05-10 12:00 -------- d-----w- c:\users\axel\AppData\Local\fontconfig

2012-05-10 12:00 . 2012-05-15 12:20 -------- d-----w- c:\users\axel\.gimp-2.8

2012-05-10 12:00 . 2012-05-10 12:00 -------- d-----w- c:\users\axel\AppData\Local\gegl-0.2

2012-05-10 11:57 . 2012-05-10 11:58 -------- d-----w- c:\program files\GIMP 2

2012-05-10 07:28 . 2012-05-10 07:28 -------- d-----w- c:\windows\system32\SPReview

2012-05-10 07:28 . 2012-05-10 07:28 -------- d-----w- c:\windows\system32\EventProviders

2012-05-10 07:25 . 2012-03-03 06:35 1544704 ----a-w- c:\windows\system32\DWrite.dll

2012-05-10 07:25 . 2012-03-03 05:31 1077248 ----a-w- c:\windows\SysWow64\DWrite.dll

2012-05-10 07:24 . 2012-03-31 06:05 5559664 ----a-w- c:\windows\system32\ntoskrnl.exe

2012-05-10 07:24 . 2012-03-31 04:39 3968368 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe

2012-05-10 07:24 . 2012-03-31 04:39 3913072 ----a-w- c:\windows\SysWow64\ntoskrnl.exe

2012-05-10 07:24 . 2012-03-31 03:10 3146240 ----a-w- c:\windows\system32\win32k.sys

2012-05-10 07:24 . 2012-03-30 11:35 1918320 ----a-w- c:\windows\system32\drivers cpip.sys

2012-05-10 07:24 . 2012-03-31 05:42 1732096 ----a-w- c:\program files\Windows Journal\NBDoc.DLL

2012-05-10 07:24 . 2012-03-31 05:40 1367552 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll

2012-05-10 07:24 . 2010-11-20 13:24 2164224 ----a-w- c:\program files\Windows Journal\Journal.exe

2012-05-10 07:24 . 2012-03-31 05:40 1402880 ----a-w- c:\program files\Windows Journal\JNWDRV.dll

2012-05-10 07:24 . 2012-03-31 05:40 1393664 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll

2012-05-10 07:24 . 2012-03-31 04:29 936960 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll

2012-05-10 07:24 . 2012-03-17 07:58 75120 ----a-w- c:\windows\system32\drivers\partmgr.sys

2012-05-10 05:52 . 2012-05-10 05:52 -------- d-----w- c:\users\axel\AppData\Local\Samsung

2012-05-10 05:52 . 2012-05-10 05:52 -------- d-----w- c:\users\axel\AppData\Roaming\Samsung

2012-05-09 13:15 . 2012-05-09 13:15 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help

2012-05-08 07:43 . 2011-04-28 03:55 552960 ----a-w- c:\windows\system32\drivers\bthport.sys

2012-05-08 07:43 . 2011-04-28 03:54 80384 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS

2012-05-08 07:43 . 2010-11-20 13:24 229376 ----a-w- c:\windows\system32\fsquirt.exe

2012-05-08 07:43 . 2011-03-25 03:29 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys

2012-05-08 07:43 . 2011-03-25 03:29 98816 ----a-w- c:\windows\system32\drivers\usbccgp.sys

2012-05-08 07:43 . 2011-03-25 03:29 325120 ----a-w- c:\windows\system32\drivers\usbport.sys

2012-05-08 07:43 . 2011-03-25 03:29 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys

2012-05-08 07:43 . 2011-03-25 03:29 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys

2012-05-08 07:43 . 2011-03-25 03:29 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys

2012-05-08 07:43 . 2011-03-25 03:28 7936 ----a-w- c:\windows\system32\drivers\usbd.sys

2012-05-08 07:42 . 2011-03-11 06:41 1659776 ----a-w- c:\windows\system32\drivers\ntfs.sys

2012-05-08 07:42 . 2011-03-11 06:33 2565632 ----a-w- c:\windows\system32\esent.dll

2012-05-08 07:42 . 2011-03-11 05:33 1699328 ----a-w- c:\windows\SysWow64\esent.dll

2012-05-08 07:42 . 2011-03-11 06:41 189824 ----a-w- c:\windows\system32\drivers\storport.sys

2012-05-08 07:42 . 2011-03-11 06:41 166272 ----a-w- c:\windows\system32\drivers\nvstor.sys

2012-05-08 07:42 . 2011-03-11 06:41 148352 ----a-w- c:\windows\system32\drivers\nvraid.sys

2012-05-08 07:42 . 2011-03-11 06:41 410496 ----a-w- c:\windows\system32\drivers\iaStorV.sys

2012-05-08 07:42 . 2011-03-11 06:41 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys

2012-05-08 07:42 . 2011-03-11 06:41 107904 ----a-w- c:\windows\system32\drivers\amdsata.sys

2012-05-08 07:42 . 2011-03-11 06:30 96768 ----a-w- c:\windows\system32\fsutil.exe

2012-05-08 07:42 . 2011-03-11 05:31 74240 ----a-w- c:\windows\SysWow64\fsutil.exe

2012-05-07 19:45 . 2007-10-22 01:40 411656 ----a-w- c:\windows\system32\xactengine2_10.dll

2012-05-07 19:25 . 2012-05-07 19:25 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys

2012-05-07 19:25 . 2012-05-29 07:07 -------- d-----w- c:\users\axel\AppData\Roaming\DAEMON Tools Lite

2012-05-07 19:25 . 2012-05-07 19:25 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite

2012-05-07 19:24 . 2012-05-07 19:26 -------- d-----w- c:\programdata\DAEMON Tools Lite

2012-05-07 17:27 . 2010-12-21 05:55 18944 ----a-w- c:\windows\system32\drivers\ss_bmdfl.sys

2012-05-07 17:27 . 2010-12-21 05:55 161280 ----a-w- c:\windows\system32\drivers\ss_bmdm.sys

2012-05-07 17:27 . 2010-12-21 05:55 15872 ----a-w- c:\windows\system32\drivers\ss_bwhnt.sys

2012-05-07 17:27 . 2010-12-21 05:55 15872 ----a-w- c:\windows\system32\drivers\ss_bwh.sys

2012-05-07 17:27 . 2010-12-21 05:55 15360 ----a-w- c:\windows\system32\drivers\ss_bcmnt.sys

2012-05-07 17:27 . 2010-12-21 05:55 15360 ----a-w- c:\windows\system32\drivers\ss_bcm.sys

2012-05-07 17:27 . 2010-12-21 05:55 128000 ----a-w- c:\windows\system32\drivers\ss_bserd.sys

2012-05-07 17:27 . 2010-12-21 05:55 127488 ----a-w- c:\windows\system32\drivers\ss_bbus.sys

2012-05-07 17:26 . 2012-03-28 20:11 4659712 ----a-w- c:\windows\SysWow64\Redemption.dll

2012-05-07 17:26 . 2012-05-07 17:26 -------- d-----w- c:\program files (x86)\MarkAny

2012-05-07 17:26 . 2012-03-28 20:11 821824 ----a-w- c:\windows\SysWow64\dgderapi.dll

2012-05-07 17:25 . 2012-05-07 17:25 -------- d-----w- c:\users\axel\AppData\Local\Downloaded Installations

2012-05-07 13:36 . 2012-05-07 13:36 -------- d-----w- c:\users\UpdatusUser

.

.

(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-05-13 11:54 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll

2012-05-13 11:54 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll

2012-03-28 20:11 . 2012-03-28 20:11 90112 ----a-w- c:\windows\MAMCityDownload.ocx

2012-03-28 20:11 . 2012-03-28 20:11 325552 ----a-w- c:\windows\MASetupCaller.dll

2012-03-28 20:11 . 2012-03-28 20:11 30568 ----a-w- c:\windows\MusiccityDownload.exe

2012-03-28 20:11 . 2012-03-28 20:11 974848 ----a-w- c:\windows\SysWow64\cis-2.4.dll

2012-03-28 20:11 . 2012-03-28 20:11 81920 ----a-w- c:\windows\SysWow64\issacapi_bs-2.3.dll

2012-03-28 20:11 . 2012-03-28 20:11 65536 ----a-w- c:\windows\SysWow64\issacapi_pe-2.3.dll

2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\SysWow64\MTXSYNCICON.dll

2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\SysWow64\MK_Lyric.dll

2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\SysWow64\issacapi_se-2.3.dll

2012-03-28 20:11 . 2012-03-28 20:11 569344 ----a-w- c:\windows\SysWow64\muzdecode.ax

2012-03-28 20:11 . 2012-03-28 20:11 491520 ----a-w- c:\windows\SysWow64\muzapp.dll

2012-03-28 20:11 . 2012-03-28 20:11 49152 ----a-w- c:\windows\SysWow64\MaJGUILib.dll

2012-03-28 20:11 . 2012-03-28 20:11 45320 ----a-w- c:\windows\SysWow64\MAMACExtract.dll

2012-03-28 20:11 . 2012-03-28 20:11 45056 ----a-w- c:\windows\SysWow64\MaXMLProto.dll

2012-03-28 20:11 . 2012-03-28 20:11 45056 ----a-w- c:\windows\SysWow64\MACXMLProto.dll

2012-03-28 20:11 . 2012-03-28 20:11 40960 ----a-w- c:\windows\SysWow64\MTTELECHIP.dll

2012-03-28 20:11 . 2012-03-28 20:11 352256 ----a-w- c:\windows\SysWow64\MSLUR71.dll

2012-03-28 20:11 . 2012-03-28 20:11 258048 ----a-w- c:\windows\SysWow64\muzoggsp.ax

2012-03-28 20:11 . 2012-03-28 20:11 245760 ----a-w- c:\windows\SysWow64\MSCLib.dll

2012-03-28 20:11 . 2012-03-28 20:11 24576 ----a-w- c:\windows\SysWow64\MASetupCleaner.exe

2012-03-28 20:11 . 2012-03-28 20:11 200704 ----a-w- c:\windows\SysWow64\muzwmts.dll

2012-03-28 20:11 . 2012-03-28 20:11 155648 ----a-w- c:\windows\SysWow64\MSFLib.dll

2012-03-28 20:11 . 2012-03-28 20:11 143360 ----a-w- c:\windows\SysWow64\3DAudio.ax

2012-03-28 20:11 . 2012-03-28 20:11 135168 ----a-w- c:\windows\SysWow64\muzaf1.dll

2012-03-28 20:11 . 2012-03-28 20:11 131072 ----a-w- c:\windows\SysWow64\muzmpgsp.ax

2012-03-28 20:11 . 2012-03-28 20:11 122880 ----a-w- c:\windows\SysWow64\muzeffect.ax

2012-03-28 20:11 . 2012-03-28 20:11 118784 ----a-w- c:\windows\SysWow64\MaDRM.dll

2012-03-28 20:11 . 2012-03-28 20:11 110592 ----a-w- c:\windows\SysWow64\muzmp4sp.ax

2012-03-20 18:44 . 2012-03-20 18:44 98688 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys

2012-03-20 18:44 . 2012-03-20 18:44 203888 ----a-w- c:\windows\system32\drivers\MpFilter.sys

.

.

((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane

REGEDIT4

.

[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{00cbb66b-1d3b-46d3-9577-323a336acb50}]

2012-03-27 14:58 225584 ----a-w- c:\program files (x86)\BrowserCompanion\jsloader.dll

.

[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]

2010-03-06 02:41 433648 ----a-w- c:\programdata\Partner\Partner.dll

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]

"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-03-06 39408]

"KiesHelper"="c:\program files (x86)\Samsung\Kies\KiesHelper.exe" [2012-03-31 954256]

"KiesPDLR"="c:\program files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-03-31 21392]

"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]

"CLMLServer"="c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [2009-06-03 103720]

"UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]

"UpdatePDRShortCut"="c:\program files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" [2008-01-04 222504]

"RemoteControl8"="c:\program files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe" [2009-04-15 91432]

"PDVD8LanguageShortcut"="c:\program files (x86)\CyberLink\PowerDVD8\Language\Language.exe" [2009-04-15 50472]

"UpdatePPShortCut"="c:\program files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" [2008-12-03 218408]

"UpdatePSTShortCut"="c:\program files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" [2009-07-21 210216]

"APLangApp"="c:\program files (x86)\AnyPC Client\APLangApp.exe" [2009-11-20 13312]

"UCam_Menu"="c:\program files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]

"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]

"KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2012-03-31 3521424]

"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]

"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]

.

c:\users\axel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

FIFA 10 Registration.lnk - d:\program files (x86)\EA Sports\FIFA 10\Support\EAregister.exe [N/A]

tcbhn.lnk - c:\users\axel\AppData\Roaming\BrowserCompanion cbhn.exe [2012-3-27 692888]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-10-2 1082144]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

@="Service"

.

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x64.sys [x]

R2 gupdate;Usługa Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-05-06 135664]

R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-04-09 3063968]

R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-05-03 158856]

R3 gupdatem;Usługa Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-05-06 135664]

R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]

R3 NisSrv;Inspekcja sieci firmy Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]

R3 Partner Service;Partner Service;c:\programdata\Partner\Partner.exe [2010-03-06 332272]

R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]

R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x]

R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x]

R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x]

R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [x]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers susbflt.sys [x]

R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]

S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]

S1 SABI;SAMSUNG Kernel Driver For Windows 7;c:\windows\system32\Drivers\SABI.sys [x]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]

S2 lxea_device;lxea_device;c:\windows\system32\lxeacoms.exe [x]

S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-03-01 2348352]

S2 Rezip;Rezip;c:\windows\SysWOW64\Rezip.exe [2009-03-05 311296]

S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [x]

S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [x]

S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]

S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]

S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]

S3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-09-29 126392]

S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [x]

S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x]

.

.

--- Inne Usługi/Sterowniki w Pamięci ---

.

*NewlyCreated* - CPUZ135

*NewlyCreated* - WINRING0_1_2_0

.

Zawartość folderu 'Zaplanowane zadania'

.

2012-06-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-05-06 10:36]

.

2012-06-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-05-06 10:36]

.

2012-06-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2195184045-3265951034-2981680463-1000Core.job

- c:\users\axel\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-06 10:16]

.

2012-06-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2195184045-3265951034-2981680463-1000UA.job

- c:\users\axel\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-06 10:16]

.

.

--------- x86-64 -----------

.

.

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]

2010-03-06 02:41 750064 ----a-w- c:\programdata\Partner\Partner64.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GGDriveOverlay1]

@="{E68D0A50-3C40-4712-B90D-DCFA93FF2534}"

[HKEY_CLASSES_ROOT\CLSID\{E68D0A50-3C40-4712-B90D-DCFA93FF2534}]

2012-04-19 11:44 507904 ----a-w- c:\programdata\GG\ggdrive\ggdrive-overlay.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GGDriveOverlay2]

@="{E68D0A51-3C40-4712-B90D-DCFA93FF2534}"

[HKEY_CLASSES_ROOT\CLSID\{E68D0A51-3C40-4712-B90D-DCFA93FF2534}]

2012-04-19 11:44 507904 ----a-w- c:\programdata\GG\ggdrive\ggdrive-overlay.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GGDriveOverlay3]

@="{E68D0A52-3C40-4712-B90D-DCFA93FF2534}"

[HKEY_CLASSES_ROOT\CLSID\{E68D0A52-3C40-4712-B90D-DCFA93FF2534}]

2012-04-19 11:44 507904 ----a-w- c:\programdata\GG\ggdrive\ggdrive-overlay.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GGDriveOverlay4]

@="{E68D0A53-3C40-4712-B90D-DCFA93FF2534}"

[HKEY_CLASSES_ROOT\CLSID\{E68D0A53-3C40-4712-B90D-DCFA93FF2534}]

2012-04-19 11:44 507904 ----a-w- c:\programdata\GG\ggdrive\ggdrive-overlay.dll

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]

"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-03-27 12459112]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"LoadAppInit_DLLs"=0x0

.

------- Skan uzupełniający -------

.

uLocal Page = c:\windows\system32\blank.htm

uStart Page =

mStart Page = hxxp://pl.v9.com/?utm_source=b&utm_medium=vlt

mLocal Page = c:\windows\SysWOW64\blank.htm

IE: E&ksportuj do programu Microsoft Excel - c:\progra~2\MICROS~2\Office12\EXCEL.EXE/3000

IE: Wyślij obraz do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

IE: Wyślij stronę do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

IE: {{81727BE7-50E7-48ed-A547-F0274756E2DD} - {27CF82B1-E1D2-4f9b-976E-62095A52BA4A} -

TCP: DhcpNameServer = 192.168.0.1

Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion dataprotocol.dll

Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion dataprotocol.dll

Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion dataprotocol.dll

.

- - - - USUNIĘTO PUSTE WPISY - - - -

.

Toolbar-Locked - (no file)

SafeBoot-mcmscsvc

SafeBoot-MCODS

Toolbar-Locked - (no file)

HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe

AddRemove-85e08124 - c:\windows\system32\85e08124.exe

.

.

.

--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.9"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash9f.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil9f.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32]

@="c:\\windows\\SysWow64\\Macromed\\Flash\\FlashUtil9f.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}]

@Denied: (A 2) (Everyone)

@="IFlashBroker"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Czas ukończenia: 2012-06-02 09:54:56

ComboFix-quarantined-files.txt 2012-06-02 07:54

.

Przed: 112 139 010 048 bajtów wolnych

Po: 115 406 983 168 bajtów wolnych

.

- - End Of File - - D62C763D1C6FCA9EF861620392DD0091

 

 

 

29wr21h.png

Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...