Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-09-2013 01 Ran by Qairo (administrator) on QAIRO-KOMPUTER on 11-09-2013 22:24:58 Running from C:\Users\Qairo\Downloads Windows 7 Ultimate Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Eugene Gavrilov) C:\Program Files\kX Audio Driver\3550\kxmixer.exe () C:\Program Files (x86)\NetMeter\NetMeter.exe (GG Network S.A.) C:\Users\Qairo\AppData\Local\GG\Application\gghub.exe (Innovative Solutions) C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe (GG Network S.A.) C:\Users\Qairo\AppData\Local\GG\Application\ggapp.exe (Murray Hurps Software Pty Ltd) C:\Program Files (x86)\Ad Muncher\AdMunch.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Vimicro) C:\Program Files (x86)\USB Camera\VM331_STI.EXE (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Turbo Key\TurboKey.exe (Murray Hurps Software Pty Ltd) C:\Program Files (x86)\Ad Muncher\AdMunch64.exe (GG Network S.A.) C:\Users\Qairo\AppData\Local\GG\Application\ggdrive\ggdrive.exe (GG Network S.A.) C:\Users\Qairo\AppData\Local\GG\Application\xulrunner\gghub.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [kX Mixer] - C:\Program Files\kX Audio Driver\3550\kxmixer.exe [677896 2009-09-18] (Eugene Gavrilov) HKCU\...\Run: [C:\Program Files (x86)\NetMeter\NetMeter.exe] - C:\Program Files (x86)\NetMeter\NetMeter.exe [331264 2007-08-11] () HKCU\...\Run: [GG] - C:\Users\Qairo\AppData\Local\GG\Application\gghub.exe [4009024 2013-09-06] (GG Network S.A.) HKCU\...\Run: [DriverMax] - C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe [7292416 2013-08-12] (Innovative Solutions) HKCU\...\Run: [DriverMax_RESTART] - C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe [7292416 2013-08-12] (Innovative Solutions) HKCU\...\Run: [uTorrent] - C:\Users\Qairo\AppData\Roaming\uTorrent\uTorrent.exe [888152 2013-08-14] (BitTorrent Inc.) HKLM-x32\...\Run: [Ad Muncher] - C:\Program Files (x86)\Ad Muncher\AdMunch.exe [595144 2013-08-06] (Murray Hurps Software Pty Ltd) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-29] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [331BigDog] - C:\Program Files (x86)\USB Camera\VM331_STI.EXE [536576 2009-10-27] (Vimicro) HKLM-x32\...\Run: [Turbo Key] - C:\Program Files (x86)\ASUS\Turbo Key\TurboKey.exe [1874432 2009-11-24] (ASUSTeK Computer Inc.) AppInit_DLLs: C:\PROGRA~1\NVIDIA~1\NVSTRE~1\rxinput.dll [97280 2009-07-14] () AppInit_DLLs-x32: c:\progra~2\nvidia~1\nvstre~1\rxinput.dll [ ] () ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Chrome: ======= CHR Extension: (Google Docs) - C:\Users\Qairo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Qairo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Qairo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Qairo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\Qairo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0 CHR Extension: (Gmail) - C:\Users\Qairo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-08-29] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-29] (Avira Operations GmbH & Co. KG) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [90112 2009-08-19] (ASUSTeK Computer Inc.) R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [626208 2009-08-10] () R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [206880 2009-08-10] () ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-06] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-02] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-08-29] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-06] (Avira Operations GmbH & Co. KG) R3 kxwdmdrv; C:\Windows\System32\drivers\kx.sys [765448 2009-09-18] (Eugene Gavrilov) R0 LPCFilter; C:\Windows\System32\DRIVERS\LPCFilter.sys [31024 2012-08-02] (Windows (R) Win 7 DDK provider) R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv_x64.sys [44928 2012-10-11] (ManyCam LLC) R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [28160 2013-01-31] (ManyCam LLC) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () R0 MxEFUF; C:\Windows\System32\DRIVERS\MxEFUF64.sys [157696 2011-10-20] (Matrox Graphics Inc.) S3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0127.sys [28768 2013-09-11] (SoftEther Project at University of Tsukuba, Japan.) S3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [20480 2012-03-14] (NVIDIA Corporation) S3 SEE; C:\Windows\System32\drivers\see.sys [38240 2013-09-11] (SoftEther Project at University of Tsukuba, Japan.) S3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1083776 2010-08-25] (Vimicro Corporation) S3 vvftav323; C:\Windows\System32\drivers\vvftav323.sys [301824 2007-03-18] (Vimicro Corporation) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-11 22:22 - 2013-09-11 22:22 - 543181494 _____ C:\Windows\MEMORY.DMP 2013-09-11 22:18 - 2013-09-11 22:18 - 00000000 ____D C:\Users\Qairo\Downloads\gmer 2013-09-11 22:17 - 2013-09-11 22:17 - 00000000 ____D C:\FRST 2013-09-11 22:16 - 2013-09-11 22:17 - 01949288 _____ (Farbar) C:\Users\Qairo\Downloads\FRST64.exe 2013-09-11 21:57 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-11 21:57 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-11 21:57 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-11 21:57 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-11 21:57 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-11 21:57 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-11 21:57 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-11 21:57 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-11 21:57 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-11 21:57 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-11 21:57 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-11 21:57 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-11 21:57 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-11 21:57 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-11 21:47 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-11 21:47 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-11 21:47 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-11 21:47 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-11 21:47 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-11 21:47 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-11 21:47 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-11 21:47 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-11 21:47 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-11 21:47 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-11 21:47 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-11 21:47 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-11 21:47 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-11 21:47 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-11 21:47 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-11 21:47 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-11 21:47 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-11 21:47 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-11 21:47 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-11 21:47 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-11 21:47 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-11 21:47 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 21:47 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-11 21:47 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-11 21:47 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-11 21:47 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-11 21:47 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-11 21:12 - 2013-09-11 21:12 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2013-09-11 21:12 - 2013-09-11 21:12 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Malwarebytes 2013-09-11 21:12 - 2013-09-11 21:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-11 21:12 - 2013-09-11 21:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-11 21:12 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-11 20:42 - 2013-09-11 21:12 - 00000000 ____D C:\Users\Qairo\Doctor Web 2013-09-11 18:50 - 2013-09-11 18:50 - 00000593 _____ C:\Users\Public\Desktop\Grand Theft Auto IV - Simple Mod Ěóëüňčďëĺĺđ.lnk 2013-09-11 18:50 - 2013-09-11 18:50 - 00000573 _____ C:\Users\Public\Desktop\Grand Theft Auto IV - Simple Mod.lnk 2013-09-11 17:05 - 2013-09-11 17:07 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\DAEMON Tools Lite 2013-09-11 17:04 - 2013-09-11 17:07 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-09-11 15:16 - 2013-09-11 22:22 - 00046240 _____ C:\Windows\PFRO.log 2013-09-11 15:14 - 2013-09-11 15:14 - 00028768 _____ (SoftEther Project at University of Tsukuba, Japan.) C:\Windows\system32\Drivers\Neo_0127.sys 2013-09-11 15:13 - 2013-09-11 15:13 - 00135736 _____ (SoftEther Project at University of Tsukuba, Japan.) C:\Windows\system32\vpncmd.exe 2013-09-11 15:13 - 2013-09-11 15:13 - 00038240 _____ (SoftEther Project at University of Tsukuba, Japan.) C:\Windows\system32\Drivers\see.sys 2013-09-11 15:12 - 2013-09-11 15:20 - 00000000 ____D C:\Program Files\SoftEther VPN Client 2013-09-11 15:03 - 2013-09-11 22:23 - 00000280 _____ C:\Windows\setupact.log 2013-09-11 15:03 - 2013-09-11 15:03 - 00000000 _____ C:\Windows\setuperr.log 2013-09-11 13:19 - 2013-09-10 13:58 - 57206282 _____ C:\Users\Qairo\Desktop\VID_20130910_135714.mp4 2013-09-10 20:54 - 2013-09-11 02:54 - 97021647 _____ C:\Windows\SysWOW64\뮩꤁¥ 2013-09-10 15:38 - 2013-09-10 15:38 - 00000000 ____D C:\Users\Qairo\Desktop\diablo3legacy16_9 2013-09-10 10:15 - 2013-09-10 10:15 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\NVIDIA 2013-09-10 08:55 - 2013-09-10 08:55 - 96910367 _____ C:\Windows\SysWOW64\騕賄K 2013-09-06 18:04 - 2013-09-06 18:05 - 00000071 _____ C:\Users\Qairo\Desktop\BUTY.txt 2013-09-06 10:02 - 2013-09-06 10:02 - 00000000 ____D C:\ProgramData\GG 2013-09-05 09:45 - 2013-09-05 13:54 - 00000087 _____ C:\Users\Qairo\Desktop\Lpaciok.txt 2013-09-04 19:01 - 2013-09-04 19:01 - 00000000 ____D C:\ProgramData\SystemRequirementsLab 2013-09-04 19:01 - 2013-09-04 19:01 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab 2013-09-04 15:37 - 2013-09-04 15:38 - 00000107 _____ C:\Users\Qairo\Desktop\Kreatyna.txt 2013-09-04 11:55 - 2013-09-04 11:48 - 00001737 _____ C:\Users\Qairo\Desktop\rift.cfg 2013-09-03 22:45 - 2013-09-11 10:38 - 00004608 _____ C:\Users\Qairo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-08-28 13:23 - 2006-04-05 14:12 - 03863096 _____ (Johnny Lee) C:\Users\Qairo\SP2004.exe 2013-08-28 13:12 - 2013-09-11 15:17 - 00012579 _____ C:\autoupdate.log 2013-08-28 11:19 - 2013-08-28 11:19 - 00003172 _____ C:\Windows\System32\Tasks\Razer_Game_Booster_AutoUpdate 2013-08-28 11:19 - 2013-08-28 11:19 - 00000000 ____D C:\Users\Qairo\Documents\Razer 2013-08-28 11:18 - 2013-09-11 15:18 - 00000000 ____D C:\ProgramData\Razer 2013-08-28 11:18 - 2013-09-11 15:18 - 00000000 ____D C:\Program Files (x86)\Razer 2013-08-28 11:18 - 2013-08-28 11:18 - 00000000 ____D C:\Users\Qairo\AppData\Local\Razer 2013-08-28 08:59 - 2013-08-28 08:59 - 00000000 ____D C:\Users\Qairo\Documents\Pluginy BOT 2013-08-23 14:53 - 2013-08-23 16:27 - 1204807688 _____ C:\Users\Qairo\Desktop\streamkonfig (02).mp4 2013-08-23 12:04 - 2013-08-23 12:05 - 00000428 _____ C:\Users\Qairo\Desktop\Rift daily questy.txt 2013-08-23 09:23 - 2013-09-10 16:27 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\HexChat 2013-08-23 09:21 - 2013-08-23 14:57 - 00000000 ____D C:\Program Files\HexChat 2013-08-22 22:04 - 2013-08-22 22:05 - 00000000 ____D C:\Users\Qairo\Desktop\emotki gg 2013-08-22 18:19 - 2013-08-22 18:19 - 00003134 _____ C:\Windows\System32\Tasks\{7FDB7052-85C5-464D-9B0F-61DFF1329DD8} 2013-08-22 18:19 - 2013-08-22 18:19 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\WinBatch 2013-08-22 18:10 - 2013-08-22 18:10 - 00000000 ____D C:\Program Files (x86)\Lavalys 2013-08-22 18:07 - 2013-09-11 13:24 - 00000000 ____D C:\Program Files\CCleaner 2013-08-22 18:07 - 2013-08-22 18:07 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-08-22 17:50 - 2013-08-22 17:50 - 00000000 ____D C:\Users\Qairo\Documents\Add-in Express 2013-08-22 17:43 - 2013-08-22 17:50 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\DeviceVm 2013-08-22 17:43 - 2013-08-22 17:43 - 00000000 ____D C:\ProgramData\DeviceVm 2013-08-22 17:42 - 2009-07-06 10:48 - 00013368 _____ C:\Windows\SysWOW64\Drivers\AsUpIO.sys 2013-08-22 17:41 - 2013-08-29 11:44 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-08-22 17:41 - 2013-08-29 10:32 - 00000000 ____D C:\Windows\System32\Tasks\ASUS 2013-08-22 17:41 - 2013-08-29 10:31 - 00000000 ____D C:\Program Files (x86)\ASUS 2013-08-22 17:41 - 2009-09-30 11:33 - 00024576 _____ () C:\Windows\SysWOW64\AsIO.dll 2013-08-22 17:41 - 2009-08-04 10:28 - 00013440 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys 2013-08-22 17:41 - 2009-07-16 11:38 - 00015416 _____ () C:\Windows\system32\Drivers\ASACPI.sys 2013-08-22 17:36 - 2013-07-26 10:09 - 29335328 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 22100768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 15701128 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 11262240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-22 17:36 - 2013-07-26 10:09 - 09248072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 07695320 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 02968352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 02630304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 01223336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00387536 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00326224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-08-22 17:36 - 2013-07-26 10:09 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-08-21 15:43 - 2013-09-11 13:25 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\TS3Client 2013-08-21 15:12 - 2013-08-21 15:12 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-08-21 10:23 - 2013-08-21 10:23 - 00000000 _____ C:\Windows\Bench32_2.47(dobreprogramy.pl).INI 2013-08-21 09:54 - 2013-08-21 09:56 - 00000000 ____D C:\AdwCleaner 2013-08-21 09:46 - 2012-08-02 16:50 - 00031024 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\LPCFilter.sys 2013-08-21 09:45 - 2010-08-12 10:14 - 00660072 _____ (NVIDIA Corporation) C:\Windows\system32\nvuninst.exe 2013-08-21 09:45 - 2008-08-21 08:15 - 00002306 _____ C:\Windows\system32\nvsmb.nvu 2013-08-21 09:45 - 2008-08-20 11:35 - 00501280 _____ (NVIDIA Corporation) C:\Windows\system32\nvusmb.exe 2013-08-21 09:45 - 2008-08-20 11:35 - 00135680 _____ (NVIDIA Corporation) C:\Windows\system32\NVCOSMB.DLL 2013-08-21 09:43 - 2013-08-21 09:43 - 00000000 ____D C:\Program Files (x86)\Innovative Solutions 2013-08-21 08:49 - 2013-08-21 08:49 - 00000000 _____ C:\autoexec.bat 2013-08-21 08:48 - 2013-08-21 09:10 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-08-21 08:48 - 2013-08-21 08:48 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-08-20 21:24 - 2013-09-11 13:25 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Media Player Classic 2013-08-20 21:24 - 2013-08-20 21:24 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\WinAVI 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinAVI Video Converter 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Users\Qairo\AppData\Local\WinAVI 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Program Files (x86)\WinAVI 2013-08-20 20:47 - 2009-08-05 16:10 - 00006136 _____ C:\Windows\system32\Drivers\nvphy.bin 2013-08-20 20:47 - 2009-07-30 16:48 - 00704000 _____ (NVIDIA Corporation) C:\Windows\system32\cohelper.dll 2013-08-20 19:43 - 2013-08-20 19:43 - 00000000 ____D C:\Users\Qairo\AppData\Local\4kdownload.com 2013-08-20 19:42 - 2013-08-20 19:56 - 353784727 _____ C:\Users\Qairo\Desktop\New Zealand in 4K (Ultra HD).mp4 2013-08-20 19:40 - 2013-08-20 19:40 - 00000000 ____D C:\Program Files (x86)\4KDownload 2013-08-20 19:05 - 2013-09-05 14:42 - 00000848 _____ C:\Users\Qairo\Desktop\Rozpiska treningow.txt 2013-08-20 15:40 - 2013-09-11 22:22 - 00000000 ____D C:\Windows\Minidump 2013-08-14 14:37 - 2013-08-23 09:19 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\mIRC 2013-08-14 12:44 - 2012-08-23 16:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2013-08-14 12:44 - 2012-08-23 16:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2013-08-14 12:44 - 2012-08-23 16:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2013-08-14 12:44 - 2012-08-23 15:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2013-08-14 12:44 - 2012-08-23 15:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2013-08-14 12:44 - 2012-08-23 15:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2013-08-14 12:44 - 2012-08-23 15:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2013-08-14 12:44 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2013-08-14 12:44 - 2012-08-23 15:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2013-08-14 12:44 - 2012-08-23 15:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-08-14 12:44 - 2012-08-23 15:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2013-08-14 12:44 - 2012-08-23 15:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2013-08-14 12:44 - 2012-08-23 14:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-08-14 12:44 - 2012-08-23 13:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2013-08-14 12:44 - 2012-08-23 13:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2013-08-14 12:44 - 2012-08-23 13:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2013-08-14 12:44 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2013-08-14 12:44 - 2012-08-23 12:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2013-08-14 12:44 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2013-08-14 12:44 - 2012-08-23 12:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2013-08-14 12:44 - 2012-08-23 12:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2013-08-14 12:44 - 2012-08-23 11:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2013-08-14 12:44 - 2012-08-23 10:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-08-14 12:44 - 2012-08-23 10:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-08-14 12:39 - 2012-08-24 20:13 - 00154480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-08-14 12:39 - 2012-08-24 20:09 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-08-14 12:39 - 2012-08-24 20:05 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-08-14 12:39 - 2012-08-24 20:03 - 01448448 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-08-14 12:39 - 2012-08-24 18:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-08-14 12:39 - 2012-08-24 18:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-08-14 12:39 - 2012-08-24 18:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-08-14 12:39 - 2012-05-04 13:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2013-08-14 12:39 - 2012-05-04 11:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2013-08-14 12:31 - 2013-08-30 13:45 - 00000948 _____ C:\Users\Qairo\Desktop\riftpatchlive — skrót.lnk 2013-08-14 11:59 - 2013-08-20 23:24 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\IrfanView 2013-08-14 11:59 - 2013-08-14 11:59 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2013-08-14 11:59 - 2013-08-14 11:59 - 00000000 ____D C:\Program Files (x86)\IrfanView 2013-08-14 11:51 - 2013-08-14 11:51 - 00001322 _____ C:\Users\Qairo\Desktop\OBS — skrót.lnk 2013-08-14 11:06 - 2013-09-11 21:57 - 00000000 ____D C:\Windows\system32\MRT 2013-08-14 08:35 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-14 08:35 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-08-14 08:35 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-14 08:35 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-08-14 08:35 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 08:35 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 08:35 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 08:35 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 08:35 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-14 08:35 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 08:35 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 08:35 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 08:35 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-08-14 08:35 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-08-14 08:35 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 08:35 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-13 19:20 - 2013-08-13 19:20 - 00000837 _____ C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2013-08-13 19:19 - 2013-09-11 22:24 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\uTorrent 2013-08-13 11:15 - 2013-08-21 10:07 - 00000443 _____ C:\Users\Qairo\Desktop\Trening psa.txt 2013-08-12 11:36 - 2013-08-12 11:36 - 00000000 ____D C:\Users\Qairo\AppData\Local\CrashRpt 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Program Files (x86)\Photo! 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox ==================== One Month Modified Files and Folders ======= 2013-09-11 22:24 - 2013-08-13 19:19 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\uTorrent 2013-09-11 22:23 - 2013-09-11 15:03 - 00000280 _____ C:\Windows\setupact.log 2013-09-11 22:23 - 2013-08-06 14:42 - 00000000 ____D C:\Windows\Panther 2013-09-11 22:23 - 2013-08-06 13:47 - 00001042 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-11 22:23 - 2013-08-06 13:46 - 00000000 ___RD C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-11 22:23 - 2013-08-06 13:46 - 00000000 ___RD C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-11 22:23 - 2009-07-14 07:08 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-09-11 22:23 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-11 22:23 - 2009-07-14 06:45 - 00276200 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-11 22:22 - 2013-09-11 22:22 - 543181494 _____ C:\Windows\MEMORY.DMP 2013-09-11 22:22 - 2013-09-11 15:16 - 00046240 _____ C:\Windows\PFRO.log 2013-09-11 22:22 - 2013-08-20 15:40 - 00000000 ____D C:\Windows\Minidump 2013-09-11 22:18 - 2013-09-11 22:18 - 00000000 ____D C:\Users\Qairo\Downloads\gmer 2013-09-11 22:17 - 2013-09-11 22:17 - 00000000 ____D C:\FRST 2013-09-11 22:17 - 2013-09-11 22:16 - 01949288 _____ (Farbar) C:\Users\Qairo\Downloads\FRST64.exe 2013-09-11 21:58 - 2013-08-06 13:45 - 01835525 _____ C:\Windows\WindowsUpdate.log 2013-09-11 21:57 - 2013-08-14 11:06 - 00000000 ____D C:\Windows\system32\MRT 2013-09-11 21:56 - 2013-08-06 14:51 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-11 21:56 - 2009-07-14 06:45 - 00017168 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-11 21:56 - 2009-07-14 06:45 - 00017168 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-11 21:52 - 2013-08-06 13:47 - 00001046 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-11 21:25 - 2013-08-06 13:45 - 00000000 ____D C:\Users\Qairo 2013-09-11 21:18 - 2009-07-14 19:55 - 00737730 _____ C:\Windows\system32\perfh015.dat 2013-09-11 21:18 - 2009-07-14 19:55 - 00154418 _____ C:\Windows\system32\perfc015.dat 2013-09-11 21:18 - 2009-07-14 07:13 - 01662556 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-11 21:14 - 2013-08-06 14:28 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\GG 2013-09-11 21:14 - 2013-08-06 14:21 - 00000000 ____D C:\ProgramData\NVIDIA 2013-09-11 21:12 - 2013-09-11 21:12 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2013-09-11 21:12 - 2013-09-11 21:12 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Malwarebytes 2013-09-11 21:12 - 2013-09-11 21:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-11 21:12 - 2013-09-11 21:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-11 21:12 - 2013-09-11 20:42 - 00000000 ____D C:\Users\Qairo\Doctor Web 2013-09-11 20:50 - 2013-08-06 17:12 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Skype 2013-09-11 18:50 - 2013-09-11 18:50 - 00000593 _____ C:\Users\Public\Desktop\Grand Theft Auto IV - Simple Mod Ěóëüňčďëĺĺđ.lnk 2013-09-11 18:50 - 2013-09-11 18:50 - 00000573 _____ C:\Users\Public\Desktop\Grand Theft Auto IV - Simple Mod.lnk 2013-09-11 17:07 - 2013-09-11 17:05 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\DAEMON Tools Lite 2013-09-11 17:07 - 2013-09-11 17:04 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-09-11 16:50 - 2013-08-06 15:57 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Kamerzysta 2013-09-11 15:20 - 2013-09-11 15:12 - 00000000 ____D C:\Program Files\SoftEther VPN Client 2013-09-11 15:18 - 2013-08-28 11:18 - 00000000 ____D C:\ProgramData\Razer 2013-09-11 15:18 - 2013-08-28 11:18 - 00000000 ____D C:\Program Files (x86)\Razer 2013-09-11 15:17 - 2013-08-28 13:12 - 00012579 _____ C:\autoupdate.log 2013-09-11 15:14 - 2013-09-11 15:14 - 00028768 _____ (SoftEther Project at University of Tsukuba, Japan.) C:\Windows\system32\Drivers\Neo_0127.sys 2013-09-11 15:13 - 2013-09-11 15:13 - 00135736 _____ (SoftEther Project at University of Tsukuba, Japan.) C:\Windows\system32\vpncmd.exe 2013-09-11 15:13 - 2013-09-11 15:13 - 00038240 _____ (SoftEther Project at University of Tsukuba, Japan.) C:\Windows\system32\Drivers\see.sys 2013-09-11 15:03 - 2013-09-11 15:03 - 00000000 _____ C:\Windows\setuperr.log 2013-09-11 13:25 - 2013-08-21 15:43 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\TS3Client 2013-09-11 13:25 - 2013-08-20 21:24 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Media Player Classic 2013-09-11 13:24 - 2013-08-22 18:07 - 00000000 ____D C:\Program Files\CCleaner 2013-09-11 10:38 - 2013-09-03 22:45 - 00004608 _____ C:\Users\Qairo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-09-11 02:54 - 2013-09-10 20:54 - 97021647 _____ C:\Windows\SysWOW64\뮩꤁¥ 2013-09-10 16:27 - 2013-08-23 09:23 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\HexChat 2013-09-10 15:40 - 2013-08-06 14:22 - 00000147 _____ C:\Users\Qairo\Desktop\PvE Build.txt 2013-09-10 15:38 - 2013-09-10 15:38 - 00000000 ____D C:\Users\Qairo\Desktop\diablo3legacy16_9 2013-09-10 13:58 - 2013-09-11 13:19 - 57206282 _____ C:\Users\Qairo\Desktop\VID_20130910_135714.mp4 2013-09-10 10:15 - 2013-09-10 10:15 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\NVIDIA 2013-09-10 08:55 - 2013-09-10 08:55 - 96910367 _____ C:\Windows\SysWOW64\騕賄K 2013-09-06 18:05 - 2013-09-06 18:04 - 00000071 _____ C:\Users\Qairo\Desktop\BUTY.txt 2013-09-06 10:02 - 2013-09-06 10:02 - 00000000 ____D C:\ProgramData\GG 2013-09-06 10:02 - 2013-08-06 14:28 - 00000000 ____D C:\Users\Qairo\AppData\Local\GG 2013-09-05 14:42 - 2013-08-20 19:05 - 00000848 _____ C:\Users\Qairo\Desktop\Rozpiska treningow.txt 2013-09-05 13:54 - 2013-09-05 09:45 - 00000087 _____ C:\Users\Qairo\Desktop\Lpaciok.txt 2013-09-05 11:35 - 2013-08-06 14:22 - 00000000 ____D C:\Program Files (x86)\OBS 2013-09-04 19:01 - 2013-09-04 19:01 - 00000000 ____D C:\ProgramData\SystemRequirementsLab 2013-09-04 19:01 - 2013-09-04 19:01 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab 2013-09-04 15:38 - 2013-09-04 15:37 - 00000107 _____ C:\Users\Qairo\Desktop\Kreatyna.txt 2013-09-04 11:48 - 2013-09-04 11:55 - 00001737 _____ C:\Users\Qairo\Desktop\rift.cfg 2013-09-03 09:26 - 2013-08-07 11:03 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\OBS 2013-09-02 14:43 - 2013-08-06 15:52 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-08-30 13:45 - 2013-08-14 12:31 - 00000948 _____ C:\Users\Qairo\Desktop\riftpatchlive — skrót.lnk 2013-08-29 16:27 - 2013-08-06 15:53 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-08-29 16:27 - 2013-08-06 15:52 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-08-29 11:44 - 2013-08-22 17:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-08-29 11:44 - 2013-08-06 14:19 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-08-29 11:43 - 2013-08-06 14:19 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-08-29 10:32 - 2013-08-22 17:41 - 00000000 ____D C:\Windows\System32\Tasks\ASUS 2013-08-29 10:31 - 2013-08-22 17:41 - 00000000 ____D C:\Program Files (x86)\ASUS 2013-08-28 11:19 - 2013-08-28 11:19 - 00003172 _____ C:\Windows\System32\Tasks\Razer_Game_Booster_AutoUpdate 2013-08-28 11:19 - 2013-08-28 11:19 - 00000000 ____D C:\Users\Qairo\Documents\Razer 2013-08-28 11:18 - 2013-08-28 11:18 - 00000000 ____D C:\Users\Qairo\AppData\Local\Razer 2013-08-28 08:59 - 2013-08-28 08:59 - 00000000 ____D C:\Users\Qairo\Documents\Pluginy BOT 2013-08-23 16:27 - 2013-08-23 14:53 - 1204807688 _____ C:\Users\Qairo\Desktop\streamkonfig (02).mp4 2013-08-23 14:57 - 2013-08-23 09:21 - 00000000 ____D C:\Program Files\HexChat 2013-08-23 12:05 - 2013-08-23 12:04 - 00000428 _____ C:\Users\Qairo\Desktop\Rift daily questy.txt 2013-08-23 09:19 - 2013-08-14 14:37 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\mIRC 2013-08-22 22:05 - 2013-08-22 22:04 - 00000000 ____D C:\Users\Qairo\Desktop\emotki gg 2013-08-22 18:19 - 2013-08-22 18:19 - 00003134 _____ C:\Windows\System32\Tasks\{7FDB7052-85C5-464D-9B0F-61DFF1329DD8} 2013-08-22 18:19 - 2013-08-22 18:19 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\WinBatch 2013-08-22 18:10 - 2013-08-22 18:10 - 00000000 ____D C:\Program Files (x86)\Lavalys 2013-08-22 18:07 - 2013-08-22 18:07 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-08-22 17:50 - 2013-08-22 17:50 - 00000000 ____D C:\Users\Qairo\Documents\Add-in Express 2013-08-22 17:50 - 2013-08-22 17:43 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\DeviceVm 2013-08-22 17:43 - 2013-08-22 17:43 - 00000000 ____D C:\ProgramData\DeviceVm 2013-08-22 17:27 - 2013-08-09 10:12 - 00001769 _____ C:\Windows\Language_trs.ini 2013-08-22 17:27 - 2013-08-06 15:08 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Foxit Software 2013-08-22 10:12 - 2013-08-06 15:23 - 00000000 ____D C:\Users\Qairo\Documents\RIFT 2013-08-21 15:12 - 2013-08-21 15:12 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-08-21 15:12 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-08-21 10:23 - 2013-08-21 10:23 - 00000000 _____ C:\Windows\Bench32_2.47(dobreprogramy.pl).INI 2013-08-21 10:07 - 2013-08-13 11:15 - 00000443 _____ C:\Users\Qairo\Desktop\Trening psa.txt 2013-08-21 09:56 - 2013-08-21 09:54 - 00000000 ____D C:\AdwCleaner 2013-08-21 09:56 - 2013-08-06 13:46 - 00001180 _____ C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-21 09:43 - 2013-08-21 09:43 - 00000000 ____D C:\Program Files (x86)\Innovative Solutions 2013-08-21 09:10 - 2013-08-21 08:48 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-08-21 09:10 - 2013-08-06 15:24 - 00000000 ____D C:\Windows\system32\appmgmt 2013-08-21 08:49 - 2013-08-21 08:49 - 00000000 _____ C:\autoexec.bat 2013-08-21 08:48 - 2013-08-21 08:48 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-08-20 23:24 - 2013-08-14 11:59 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\IrfanView 2013-08-20 21:24 - 2013-08-20 21:24 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\WinAVI 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinAVI Video Converter 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Users\Qairo\AppData\Local\WinAVI 2013-08-20 20:55 - 2013-08-20 20:55 - 00000000 ____D C:\Program Files (x86)\WinAVI 2013-08-20 19:56 - 2013-08-20 19:42 - 353784727 _____ C:\Users\Qairo\Desktop\New Zealand in 4K (Ultra HD).mp4 2013-08-20 19:43 - 2013-08-20 19:43 - 00000000 ____D C:\Users\Qairo\AppData\Local\4kdownload.com 2013-08-20 19:40 - 2013-08-20 19:40 - 00000000 ____D C:\Program Files (x86)\4KDownload 2013-08-20 17:25 - 2013-08-07 14:36 - 00000000 ____D C:\Users\Qairo\AppData\Local\NVIDIA 2013-08-20 17:25 - 2013-08-06 14:19 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-08-15 15:30 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-08-14 12:52 - 2013-08-06 15:17 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\RIFT 2013-08-14 12:45 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-08-14 12:43 - 2013-08-07 10:13 - 01637758 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-14 11:59 - 2013-08-14 11:59 - 00000000 ____D C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2013-08-14 11:59 - 2013-08-14 11:59 - 00000000 ____D C:\Program Files (x86)\IrfanView 2013-08-14 11:51 - 2013-08-14 11:51 - 00001322 _____ C:\Users\Qairo\Desktop\OBS — skrót.lnk 2013-08-13 19:20 - 2013-08-13 19:20 - 00000837 _____ C:\Users\Qairo\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2013-08-13 09:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-08-12 11:36 - 2013-08-12 11:36 - 00000000 ____D C:\Users\Qairo\AppData\Local\CrashRpt 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Program Files (x86)\Photo! 2013-08-12 11:30 - 2013-08-12 11:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-12 11:30 - 2013-08-06 13:45 - 00000000 ____D C:\Users\Qairo\AppData\Local\VirtualStore Files to move or delete: ==================== C:\Users\Qairo\SP2004.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-11 00:29 ==================== End Of Log ============================