Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-01-2014 Ran by adam (administrator) on LAPTOPEK on 10-01-2014 17:00:17 Running from C:\Users\adam\Downloads Windows 8.1 (X64) OS Language: Polish Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe () C:\ProgramData\IBUpdaterService\ibsvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\5.2.2.3\ccsvchst.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\PSUService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\5.2.2.3\ccsvchst.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\TrayManager.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Bandoo Media Inc.) C:\Users\adam\AppData\Local\iLivid\iLivid.exe (Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Dropbox, Inc.) C:\Users\adam\AppData\Roaming\Dropbox\bin\Dropbox.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Samsung Electronics Co., Ltd.) D:\all shere\AllShare\AllShareAgent.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [651672 2012-07-24] (Alps Electric Co., Ltd.) HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp HKLM-x32\...\Run: [YouCam Service] - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [258576 2012-07-30] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [AllShareAgent] - D:\all shere\AllShare\AllShareAgent.exe [285072 2012-03-01] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [738496 2013-10-18] () Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [SkyDrive] - C:\Users\adam\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-14] (Microsoft Corporation) HKCU\...\Run: [EPSON Stylus DX8400] - C:\Windows\System32\spool\drivers\x64\3\E_IATICEE.EXE [213504 2007-04-12] (SEIKO EPSON CORPORATION) HKCU\...\Run: [iLivid] - C:\Users\adam\AppData\Local\iLivid\iLivid.exe [6827008 2013-09-08] (Bandoo Media Inc.) HKCU\...\Run: [EPSON Stylus DX8400 Series] - C:\Windows\System32\spool\drivers\x64\3\E_IATICEE.EXE [213504 2007-04-12] (SEIKO EPSON CORPORATION) HKCU\...\Run: [EADM] - C:\Program Files (x86)\Origin\Origin.exe [3551576 2014-01-04] (Electronic Arts) AppInit_DLLs: [ ] () AppInit_DLLs-x32: [ ] () IFEO\bitguard.exe: [Debugger] tasklist.exe IFEO\bprotect.exe: [Debugger] tasklist.exe IFEO\browsemngr.exe: [Debugger] tasklist.exe IFEO\browserdefender.exe: [Debugger] tasklist.exe IFEO\browsermngr.exe: [Debugger] tasklist.exe IFEO\browserprotect.exe: [Debugger] tasklist.exe IFEO\bundlesweetimsetup.exe: [Debugger] tasklist.exe IFEO\cltmngsvc.exe: [Debugger] tasklist.exe IFEO\delta babylon.exe: [Debugger] tasklist.exe IFEO\delta tb.exe: [Debugger] tasklist.exe IFEO\delta2.exe: [Debugger] tasklist.exe IFEO\deltainstaller.exe: [Debugger] tasklist.exe IFEO\deltasetup.exe: [Debugger] tasklist.exe IFEO\deltatb.exe: [Debugger] tasklist.exe IFEO\deltatb_2501-c733154b.exe: [Debugger] tasklist.exe IFEO\iminentsetup.exe: [Debugger] tasklist.exe IFEO\rjatydimofu.exe: [Debugger] tasklist.exe IFEO\sweetimsetup.exe: [Debugger] tasklist.exe IFEO\tbdelta.exetoolbar783881609.exe: [Debugger] tasklist.exe Startup: C:\Users\adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\adam\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=GB&userid=db778518-0be0-bbdf-c713-33cfa763e6fb&searchtype=ds&q={searchTerms}&installDate=10/11/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.gametop.com/?utm_source=sed&utm_medium=start HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fujitsu13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=GB&userid=db778518-0be0-bbdf-c713-33cfa763e6fb&searchtype=ds&q={searchTerms}&installDate=10/11/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = SearchScopes: HKLM - DefaultScope {454CF31C-05AB-4392-917A-8F967E791418} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAFSJS SearchScopes: HKLM - {454CF31C-05AB-4392-917A-8F967E791418} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAFSJS SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=429&systemid=406&v=n9602-141&apn_uid=9550206250934495&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=GB&userid=db778518-0be0-bbdf-c713-33cfa763e6fb&searchtype=ds&q={searchTerms}&installDate=10/11/2013 SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://feed.snapdo.com/?publisher=TightropeYB&dpid=TightropeYB&co=GB&userid=db778518-0be0-bbdf-c713-33cfa763e6fb&searchtype=ds&q={searchTerms}&installDate=10/11/2013 SearchScopes: HKCU - DefaultScope {02832C0A-9707-4D23-8938-14D7F5C6119B} URL = http://search.softonic.com/MOY00002/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=ce681d1e00000000000084a6c8067265&toi=16074&r=375 SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=horus SearchScopes: HKCU - {02832C0A-9707-4D23-8938-14D7F5C6119B} URL = http://search.softonic.com/MOY00002/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=ce681d1e00000000000084a6c8067265&toi=16074&r=375 BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\5.2.2.3\coieplg.dll (Symantec Corporation) BHO-x32: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\5.2.2.3\ips\ipsbho.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\5.2.2.3\coieplg.dll (Symantec Corporation) DPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455} Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0 Chrome: ======= CHR DefaultSearchKeyword: google.co.uk CHR Extension: (Speed Analysis 2) - C:\Users\adam\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgjkhjdcljddbedokogakmmdjgnbeanf\3.0.0.0_1 CHR Extension: (PlusWinks) - C:\Users\adam\AppData\Local\Google\Chrome\User Data\Default\Extensions\mocblcnaofikinigmceddfghppkkjbog\3.0.0.0_1 CHR Extension: (Google Wallet) - C:\Users\adam\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1 CHR HKLM-x32\...\Chrome\Extension: [dgjkhjdcljddbedokogakmmdjgnbeanf] - C:\Users\adam\AppData\Roaming\SpeedAnalysis2\SpeedAnalysis.crx CHR HKLM-x32\...\Chrome\Extension: [mocblcnaofikinigmceddfghppkkjbog] - C:\Users\adam\AppData\Roaming\PlusWinks\PlusWinks.crx ==================== Services (Whitelisted) ================= R2 FUJ02E3Service; C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [80752 2012-07-18] (FUJITSU LIMITED) R2 IBUpdaterService; C:\ProgramData\IBUpdaterService\ibsvc.exe [607552 2013-06-10] () R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] () R2 N360; C:\Program Files (x86)\Norton 360\Engine\5.2.2.3\ccSvcHst.exe [130008 2011-04-17] (Symantec Corporation) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-09-06] (Microsoft Corporation) R2 PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2219520 2012-07-11] (FUJITSU LIMITED) R2 PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [51608 2012-08-07] (FUJITSU LIMITED) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-12] (Windows (R) Win 7 DDK provider) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\BASHDefs\20131218.001\BHDrvx64.sys [1526488 2013-12-18] (Symantec Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-12-01] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-12-01] (Symantec Corporation) R0 FBIOSDRV; C:\Windows\System32\Drivers\FBIOSDRV.sys [20848 2012-08-01] (FUJITSU LIMITED) R3 FUJ02B1; C:\Windows\System32\drivers\FUJ02B1.sys [16368 2012-08-01] (FUJITSU LIMITED) R3 FUJ02E3; C:\Windows\System32\drivers\FUJ02E3.sys [17264 2012-08-01] (FUJITSU LIMITED) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\IPSDefs\20140109.001\IDSvia64.sys [521944 2013-12-12] (Symantec Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\VirusDefs\20140110.002\ENG64.SYS [126040 2013-12-02] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\VirusDefs\20140110.002\EX64.SYS [2099288 2013-12-02] (Symantec Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-09-04] (Intel Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) R3 SNP2UVC; C:\Windows\system32\DRIVERS\snp2uvc.sys [1849608 2012-09-05] (Sonix Co. Ltd.) R3 SRTSP; C:\Windows\System32\Drivers\N360x64\0502020.003\SRTSP64.SYS [744568 2011-03-31] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\N360x64\0502020.003\SRTSPX64.SYS [40568 2011-03-31] (Symantec Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) R0 SymDS; C:\Windows\System32\drivers\N360x64\0502020.003\SYMDS64.SYS [450680 2011-01-27] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\N360x64\0502020.003\SYMEFA64.SYS [912504 2011-03-15] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [174200 2013-12-01] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\N360x64\0502020.003\Ironx64.SYS [171128 2010-11-16] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\N360x64\0502020.003\SYMNETS.SYS [386168 2011-04-21] (Symantec Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [x] S3 IntcAzAudAddService; \SystemRoot\system32\drivers\RTKVHD64.sys [x] ========================== Drivers MD5 ======================= C:\Windows\System32\drivers\1394ohci.sys E1832BD9FD7E0FC2DC9FA5935DE3E8C1 C:\Windows\System32\drivers\3ware.sys AD508A1A46EC21B740AB31C28EFDFDB1 C:\Windows\System32\drivers\ACPI.sys 3D30878A269D934100FA5F972E53AF39 C:\Windows\System32\Drivers\acpiex.sys AC8279D229398BCF05C3154ADCA86813 C:\Windows\System32\drivers\acpipagr.sys A8970D9BF23CD309E0403978A1B58F3F C:\Windows\System32\drivers\acpipmi.sys 111A89C99C5B4F1A7BCE5F643DD86F65 C:\Windows\System32\drivers\acpitime.sys 5758387D68A20AE7D3245011B07E36E7 C:\Windows\System32\drivers\ADP80XX.SYS 7C1FDF1B48298CBA7CE4BDD4978951AD C:\Windows\system32\drivers\afd.sys 239268BAB58EAE9A3FF4E08334C00451 C:\Windows\System32\drivers\agp440.sys 7DFAEBA9AD62D20102B576D5CAC45EC8 C:\Windows\System32\DRIVERS\ahcache.sys 8E8E34B7BA059050EED827410D0697A2 C:\Windows\System32\drivers\amdk8.sys 7589DE749DB6F71A68489DCE04158729 C:\Windows\System32\drivers\amdppm.sys B46D2D89AFF8A9490FA8C98C7A5616E3 C:\Windows\System32\drivers\amdsata.sys D2BF2F94A47D332814910FD47C6BBCD2 C:\Windows\System32\drivers\amdsbs.sys A8E04943C7BBA7219AA50400272C3C6E C:\Windows\System32\drivers\amdxata.sys CEA5F4F27CFC08E3A44D576811B35F50 C:\Windows\System32\drivers\AMPPAL.sys FB88245C1815EB1588DBC364A8D24522 C:\Windows\system32\DRIVERS\Apfiltr.sys FC905E8F31E56B1D9FEC2C8EE3C4329C C:\Windows\system32\drivers\appid.sys 04951A9A937CBE28A2D3FEEA360B6D1F C:\Windows\System32\drivers\arcsas.sys 65045784366F7EC5FB4E71BCF923187B C:\Windows\System32\drivers\atapi.sys 74B14192CF79A72F7536B27CB8814FBD C:\Windows\System32\drivers\bxvbda.sys A4A73F631FE2AA2826FBE4A399B04DEF C:\Windows\System32\drivers\BasicDisplay.sys 8CC7F7E4AFCBA605921B137ED7992C68 C:\Windows\System32\drivers\BasicRender.sys 2748E116F8621A4DB0D39FCDD7318C01 C:\Windows\System32\drivers\bcmfn2.sys C1ABB0F7E3BEA48A0417BDF6FF14AB21 C:\Windows\System32\Drivers\Beep.sys EC19013E4CF87609534165DF897274D6 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\BASHDefs\20131218.001\BHDrvx64.sys F14F048B4D05FBCE536250EA74BF9FDC C:\Windows\System32\DRIVERS\bowser.sys 6B4FFFDDC618FCF64473CAA86E305697 C:\Windows\System32\drivers\BthAvrcpTg.sys A8F23D453A424FF4DE04989C4727ECC7 C:\Windows\System32\drivers\BthEnum.sys 131F1C8573E7BFB41C54FBF5309CCD94 C:\Windows\System32\drivers\bthhfenum.sys 746B9F94214915AECDE4B7FEA5FF9664 C:\Windows\System32\drivers\BthHFHid.sys 71FE2A48E4C93DDB9798C024880B6C07 C:\Windows\system32\DRIVERS\BthLEEnum.sys FCD8BD17B7193CFFF18C332D1A381D7F C:\Windows\System32\drivers\bthmodem.sys 07E33226AD218A2A162662A05CAFB52F C:\Windows\system32\DRIVERS\bthpan.sys 3AFE71D80EDF5D4DE0C5731352905669 C:\Windows\System32\Drivers\BTHport.sys 8458ECAB701EE385851C2559B71D1209 C:\Windows\System32\Drivers\BTHUSB.sys 2C0B77176CD68F1F60510CDF36ADC401 C:\Windows\system32\DRIVERS\btmhsf.sys 1134650C2F97611ACCDB02BC904AD35D C:\Windows\System32\DRIVERS\cdfs.sys 2FA6510E33F7DEFEC03658B74101A9B9 C:\Windows\System32\drivers\cdrom.sys C6796EA22B513E3457514D92DCDB1A3D C:\Windows\System32\drivers\circlass.sys BE9936EDD3267FAAFF94A7835867F00B C:\Windows\System32\drivers\CLFS.sys 7F006813C2AFE622C13D7AF94F56CD07 C:\Windows\System32\drivers\CmBatt.sys EF6EF85DADC3184A10D8F2F7159973CB C:\Windows\System32\Drivers\cng.sys 825BE21E6395E00698D8A23955A87972 C:\Windows\System32\drivers\CompositeBus.sys 03AAED827C36F35D70900558B8274905 C:\Windows\System32\drivers\condrv.sys A1FF7DFBFBE164CF92603C651D304DD2 C:\Windows\System32\drivers\dam.sys 315BA4BC19316D72B2E037534E048B93 C:\Windows\System32\Drivers\dfsc.sys 5DB26D7E0216D0BF364A81D3829AD7B9 C:\Windows\System32\drivers\disk.sys 4D40C9B33F738797CF50E77CB7C53E85 C:\Windows\System32\drivers\dmvsc.sys EB70A894708D1BC176AFD690FF06085F C:\Windows\system32\drivers\drmkaud.sys DDC11A202207C0400CBE07315B8FDE5E C:\Windows\System32\drivers\dxgkrnl.sys A3D1CB64DF885ACE126543E6D7067348 C:\Windows\System32\drivers\evbda.sys 114BCFDF367FF37C3F1B0A96AF542E4D C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys 1B7AA375F711F66D5FF2B855F9EC987F C:\Windows\System32\drivers\EhStorClass.sys 43531A5993380CC5113242C29D265FD9 C:\Windows\System32\drivers\EhStorTcgDrv.sys 6F8E738A9505A388B1157FDDE7B3101B C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 7230C8B80DDE1F0524C353240B78CC0E C:\Windows\System32\drivers\errdev.sys DFFFAE1442BA4076E18EED5E406FA0D3 C:\Windows\System32\Drivers\exfat.sys 7729D294A555C7AEB281ED8E4D0E01E4 C:\Windows\System32\Drivers\fastfat.sys 7C4E0D5900B2A1D11EDD626D6DDB937B C:\Windows\System32\Drivers\FBIOSDRV.sys 4C347E0315E64241FC70E8EEF8B0DC68 C:\Windows\System32\drivers\fdc.sys 5D8402613E778B3BD45E687A8372710B C:\Windows\System32\drivers\fileinfo.sys 957A7A8F5ACCAF23DD9DFF6DAA393CE5 C:\Windows\System32\drivers\filetrace.sys A1A66C4FDAFD6B0289523232AFB7D8AF C:\Windows\System32\drivers\flpydisk.sys BE743083CF7063C486A4398E3AEFE59A C:\Windows\System32\drivers\fltmgr.sys 60D5067FCE6D9433D35E04C01D8538B3 C:\Windows\System32\drivers\FsDepends.sys 35005534E600E993A90B036E4E599F2B C:\Windows\System32\Drivers\Fs_Rec.sys 09F460AFEDCA03F3BF6E07D1CCC9AC42 C:\Windows\System32\drivers\FUJ02B1.sys 094B770A3EBE08AB50DF75C6D8279761 C:\Windows\System32\drivers\FUJ02E3.sys 2824D5D464BF0F7376E3280D4F03A3BF C:\Windows\System32\DRIVERS\fvevol.sys 83E1F0983B02A6F8EC764D18E24ECF10 C:\Windows\System32\drivers\fxppm.sys 9591D0B9351ED489EAFD9D1CE52A8015 C:\Windows\System32\drivers\gagp30kx.sys FC3EF65EE20D39F8749C2218DBA681CA C:\Windows\system32\DRIVERS\GEARAspiWDM.sys ==> MD5 is legit C:\Windows\System32\drivers\vmgencounter.sys 0BF5CAD281E25F1418E5B8875DC5ADD1 C:\Windows\System32\Drivers\msgpioclx.sys FDA72810CA2F8409D9B31E833C448E34 C:\Windows\system32\drivers\HdAudio.sys 56F69F7C25FB67C970997D7066DBC593 C:\Windows\System32\drivers\HDAudBus.sys 03909BDBFF0DCACCABF2B2D4ADEE44DC C:\Windows\System32\drivers\HidBatt.sys 10A70BC1871CD955D85CD88372724906 C:\Windows\System32\drivers\hidbth.sys 1EA1B4FABB8CC348E73CA90DBA22E104 C:\Windows\System32\drivers\hidi2c.sys C241A8BAFBBFC90176EA0F5240EACC17 C:\Windows\System32\drivers\hidir.sys 9BDDEE26255421017E161CCB9D5EDA95 C:\Windows\System32\drivers\hidusb.sys F31397220D9687E11EB448649AA6E038 C:\Windows\system32\drivers\hppdbulkio.sys E325F85012E793CEE74B73C4F22AE311 C:\Windows\System32\drivers\HpSAMD.sys A6AACEA4C785789BDA5912AD1FEDA80D C:\Windows\System32\drivers\HTTP.sys 3502776E366C913D49C0DA928AE3E6CB C:\Windows\System32\drivers\hwpolicy.sys 90656C0B3864804B090434EFC582404F C:\Windows\System32\drivers\hyperkbd.sys 6D6F9E3BF0484967E52F7E846BFF1CA1 C:\Windows\system32\DRIVERS\HyperVideo.sys 907C870F8C31F8DDD6F090857B46AB25 C:\Windows\System32\drivers\i8042prt.sys 84CFC5EFA97D0C965EDE1D56F116A541 C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 5D90E32E36CE5D4C535D17CE08AEAF05 C:\Windows\System32\drivers\iaLPSSi_I2C.sys DD05E7E80F52ADE9AEB292819920F32C C:\Windows\System32\drivers\iaStorA.sys 050F2539E14F9D5E90A4B61738EC29BD C:\Windows\System32\drivers\iaStorAV.sys 08BFE413B0B4AA8DFA4B5684CE06D3DC C:\Windows\System32\drivers\iaStorV.sys A2200C3033FA4EF249FC096A7A7D02A2 C:\Windows\system32\DRIVERS\iBtFltCoex.sys 43E864824FCEBEE7119E1572B2703EB9 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\IPSDefs\20140109.001\IDSvia64.sys D7CB14B41DA52DF2EC143768E02F0E97 C:\Windows\system32\DRIVERS\igdkmd64.sys 7A5A61997B5404C8EDDFCC62378164DC C:\Windows\system32\drivers\intelaud.sys 4011430BC9DA46ADFAE9915EFEC312FB C:\Windows\system32\DRIVERS\IntcDAud.sys F5495B38BFB9149925F54F65AB40EFBF C:\Windows\System32\drivers\intelide.sys 4E448FCFFD00E8D657CD9E48D3E47157 C:\Windows\System32\drivers\intelpep.sys 139CFCDCD36B1B1782FD8C0014AC9B0E C:\Windows\System32\drivers\intelppm.sys 47E74A8E53C7C24DCE38311E1451C1D9 C:\Windows\System32\DRIVERS\ipfltdrv.sys 9DB76D7F9E4E53EFE5DD8C53DE837514 C:\Windows\System32\drivers\IPMIDrv.sys 9949A3C7590B8C536C05312205079A82 C:\Windows\System32\drivers\ipnat.sys E23D32BAF152FBE35F18C6A2AB8EF271 C:\Windows\System32\drivers\irenum.sys AE44C526AB5F8A487D941CEB57B10C97 C:\Windows\System32\drivers\isapnp.sys 8AFEEA3955AA43616A60F133B1D25F21 C:\Windows\System32\drivers\msiscsi.sys 034D4BD9DC67C64F3A4C8A049B5173BF C:\Windows\System32\drivers\iwdbus.sys EE03564B7FAFE2E44EDA33D52E83B4A3 C:\Windows\System32\drivers\kbdclass.sys 8BE92376799B6B44D543E8D07CDCF885 C:\Windows\System32\drivers\kbdhid.sys FB6E47E569D4872ABEB506BE03A45FBA C:\Windows\system32\DRIVERS\kdnic.sys 813871C7D402A05F2E3A7075F9584A05 C:\Windows\System32\Drivers\ksecdd.sys ADDECBCC777665BD113BED437E602AB0 C:\Windows\System32\Drivers\ksecpkg.sys 7296EA420134EAC390798B3232D066A4 C:\Windows\system32\drivers\ksthunk.sys 11AFB527AA370B1DAFD5C36F35F6D45F C:\Windows\system32\DRIVERS\lltdio.sys C09010B3680860131631F53E8FE7BAD8 C:\Windows\System32\drivers\lsi_sas.sys C755AE4635457AA2A11F79C0DF857ABC C:\Windows\System32\drivers\lsi_sas2.sys ADAC09CBE7A2040B7F68B5E5C9A75141 C:\Windows\System32\drivers\lsi_sas3.sys 04D1274BB9BBCCF12BD12374002AA191 C:\Windows\System32\drivers\lsi_sss.sys 327469EEF3833D0C584B7E88A76AEC0C C:\Windows\system32\drivers\luafv.sys 5EF604B0698F4FA962778285E8C5F1F2 C:\Windows\System32\drivers\megasas.sys EB5C03A070F30D64A6DF80E53B22F53F C:\Windows\System32\drivers\megasr.sys F6F13533196DE7A582D422B0241E4363 C:\Windows\System32\drivers\HECIx64.sys 2BB3EAE2EA641515D4B205CAB29E1624 C:\Windows\System32\drivers\modem.sys 8B38C44F69259987C95135C9627E2378 C:\Windows\System32\drivers\monitor.sys 601589000CC90F0DF8DA2CC254A3CCC9 C:\Windows\System32\drivers\mouclass.sys CEAC6D40FE887CE8406C2393CF97DE06 C:\Windows\System32\drivers\mouhid.sys 02D98BF804084E9A0D69D1C69B02CCA9 C:\Windows\System32\drivers\mountmgr.sys 515549560D481138E6E21AF7C6998E56 C:\Windows\System32\drivers\mpsdrv.sys F170510BE94CF45E3C6274578F6204B2 C:\Windows\system32\drivers\mrxdav.sys 59DCEC7499095DE5AED741358037AE2D C:\Windows\System32\DRIVERS\mrxsmb.sys 6129EDB793A4255B1E2FB41773AC9D9A C:\Windows\System32\DRIVERS\mrxsmb10.sys 295771B092D4F7FCF2B62F80CCD14320 C:\Windows\System32\DRIVERS\mrxsmb20.sys AAF56E4E84D35411B4E446C445732DFE C:\Windows\system32\DRIVERS\bridge.sys 4E888019078AC363076A5433E89AA4F8 C:\Windows\System32\Drivers\Msfs.sys D13329FBF8345B28AB30F44CC247DC08 C:\Windows\System32\drivers\msgpiowin32.sys C6B474E46F9E543B875981ED3FFE6ADD C:\Windows\System32\drivers\mshidkmdf.sys 65C92EB9D08DB5C69F28C7FFD4E84E31 C:\Windows\System32\drivers\mshidumdf.sys 52299F086AC2DAFD100DD5DC4A8614BA C:\Windows\System32\drivers\msisadrv.sys 36D92AF3343C3A3E57FEF11C449AEA4C C:\Windows\system32\drivers\MSKSSRV.sys A9BBBD2BAE6142253B9195E949AC2E8D C:\Windows\system32\DRIVERS\mslldp.sys 375E44168F2DFB91A68B8A3F619C5A7C C:\Windows\system32\drivers\MSPCLOCK.sys 7B2128EB875DCBC006E6A913211006D6 C:\Windows\system32\drivers\MSPQM.sys 1E88171579B218115C7A772F8DE04BD8 C:\Windows\System32\Drivers\MsRPC.sys BBE2A455053E63BECBF42C2F9B21FAE0 C:\Windows\System32\drivers\mssmbios.sys 8D6B7D515C5CBCDB75B928A0B73C3C5E C:\Windows\system32\drivers\MSTEE.sys 115019AE01E0EB9C048530D2928AB4A2 C:\Windows\System32\drivers\MTConfig.sys 96D604A35070360F0DD4A7A8AF410B5E C:\Windows\System32\Drivers\mup.sys 619CA29326B82372621DB2C0964D8365 C:\Windows\System32\drivers\mvumis.sys B8C35C94DCB2DFEAF03BB42131F2F77F C:\Windows\system32\DRIVERS\nwifi.sys CF8B989D89D6807B887690F2CF24EFD9 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\VirusDefs\20140110.002\ENG64.SYS 702E07EC32F96ACDB873E9A5465D4401 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\VirusDefs\20140110.002\EX64.SYS 302EA314A1AF0D7CEF0A3D0195F79561 C:\Windows\System32\drivers\ndis.sys AD9086052A5E5153AF43FE74138A4B27 C:\Windows\system32\DRIVERS\ndiscap.sys C6BB12BC35D1637CA17AE16D3A4725EB C:\Windows\system32\DRIVERS\NdisImPlatform.sys 9F1DA20E943BE7AA4ED5F3E1EBA78B37 C:\Windows\system32\DRIVERS\ndistapi.sys 9423421E735BD5394351E0C47C76BB92 C:\Windows\system32\DRIVERS\ndisuio.sys B832B35055BA2B7B4181861FF94D8E59 C:\Windows\System32\drivers\NdisVirtualBus.sys 1F58E48EF75F34C35D8E93A0DC535CFE C:\Windows\system32\DRIVERS\ndiswan.sys DEC29080202D4F9F17F55E18BCFCC41A C:\Windows\system32\DRIVERS\ndiswan.sys DEC29080202D4F9F17F55E18BCFCC41A C:\Windows\System32\Drivers\NDProxy.sys A5BD69A8812FA79D1A487691DD3FB244 C:\Windows\System32\drivers\Ndu.sys 5A072F0B90C29C5233D78BE33EF5ED78 C:\Windows\System32\DRIVERS\netbios.sys A83D67D347A684F10B7D3019C8A6380C C:\Windows\System32\DRIVERS\netbt.sys 0217532E19A748F0E5D569307363D5FD C:\Windows\system32\DRIVERS\netr28ux.sys 91307C4F3AA4E42404BC4F513CCD5430 C:\Windows\system32\DRIVERS\netvsc63.sys 70414DB660BFBB7BD58FCE8EA4364E1B C:\Windows\system32\DRIVERS\NETwew00.sys 75B9B86878CC159FBC40C4F9202ADBE3 C:\Windows\System32\Drivers\Npfs.sys 8F44A2F57C9F1A19AC9C6288C10FB351 C:\Windows\System32\drivers\npsvctrig.sys CBDB4F0871C88DF930FC0E8588CA67FC C:\Windows\System32\drivers\nsiproxy.sys E490B459978CB87779E84C761D22B827 C:\Windows\System32\Drivers\Ntfs.sys 4412D565C0278C401575E11072C7DCE3 C:\Windows\System32\Drivers\Null.sys EF1B290FC9F0E47CC0B537292BEE5904 C:\Windows\System32\drivers\nvraid.sys BC6B5942AFF25EBAF62DE43C3807EDF8 C:\Windows\System32\drivers\nvstor.sys 1F43ABFFAC3D6CA356851D517392966E C:\Windows\System32\drivers\nv_agp.sys 6934A936A7369DFE37B7DBA93F5E5E49 C:\Windows\System32\drivers\parport.sys 764B1121867B2D9B31C491668AC72B2B C:\Windows\System32\drivers\partmgr.sys EF0C1749C9A8CEE9A457473D433CC00F C:\Windows\System32\drivers\pci.sys C0D3F3BC1C84B4BA746D9847314C1164 C:\Windows\System32\drivers\pciide.sys 346E38FCC6859A727DD28AFAD1F0AFF4 C:\Windows\System32\drivers\pcmcia.sys 4D3BDCC1C7B40C9D7B6AD990E6DEC397 C:\Windows\System32\drivers\pcw.sys BF28771D1436C88BE1D297D3098B0F7D C:\Windows\System32\drivers\pdc.sys B9D968D8E2B0F9C6301CEB39CFC9B9E4 C:\Windows\System32\drivers\peauth.sys BA50CC0BD19004AAB88BE37338B6FA0D C:\Windows\System32\drivers\processr.sys ECD373F9571C745894367CC2635EA44F C:\Windows\system32\DRIVERS\pacer.sys 8528BB05E4D4E25945F78B00B2555FB7 C:\Windows\system32\drivers\qwavedrv.sys 3FB466684609A4329858CF2EBD62E0FD C:\Windows\System32\DRIVERS\rasacd.sys 2C56F0EE27E4EF70CA4B4983D3638905 C:\Windows\system32\DRIVERS\raspppoe.sys 5247F308C4103CDC4FE12AE1D235800A C:\Windows\System32\DRIVERS\rdbss.sys B939A2A0F9D6C6C186721E268EB6FA93 C:\Windows\System32\drivers\rdpbus.sys 6B21EBF892CD8CACB71669B35AB5DE32 C:\Windows\System32\drivers\rdpdr.sys 680C1DAE268B6FB67FA21B389A8B79EF C:\Windows\System32\drivers\rdpvideominiport.sys 858776908AF838E3790F3261B799CDA6 C:\Windows\System32\drivers\rdyboost.sys 847C6A08912C3515807049C93E526D65 C:\Windows\System32\Drivers\ReFS.sys 036746D54347FD2D0385668E2A4064E4 C:\Windows\system32\DRIVERS\rfcomm.sys 02307C86CB24769306B0DFA0C751952E C:\Windows\system32\DRIVERS\rspndr.sys 2D05A5508F4685412F2B89E8C2189ABC C:\Windows\System32\Drivers\RtsUStor.sys 7291CC1B5ECA448B0B9C15E7E987A6B3 C:\Windows\system32\DRIVERS\Rt630x64.sys 19764658C1468C2C0CEF133D28414A6B C:\Windows\System32\drivers\vms3cap.sys 1A063730F221B2746FF00457AE17E4F0 C:\Windows\System32\drivers\sbp2port.sys C624A1B32211C3166EDB3F4AB02A30B7 C:\Windows\System32\DRIVERS\scfilter.sys ABD0237B15DBD2B4695F4B7D734A58F7 C:\Windows\System32\drivers\sdbus.sys 2F9A3380B8C0380E5608E29C7AA66899 C:\Windows\System32\drivers\sdstor.sys 4EAF4DCF9DBD9A56952A58F56D61C005 C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit C:\Windows\System32\drivers\SerCx.sys DB2FF24CE0BDD15FE75870AFE312BA89 C:\Windows\System32\drivers\SerCx2.sys 0044B31F93946D5D41982314381FE431 C:\Windows\System32\drivers\serenum.sys 3CD600C089C1251BEEB4CD4CD5164F9E C:\Windows\System32\drivers\serial.sys D864381BC9C725FAB01D94C060660166 C:\Windows\System32\drivers\sermouse.sys 0BD2B65DCE756FDE95A2E5CCCBF7705D C:\Windows\System32\drivers\sfloppy.sys 472B7A5AC181C050888DB454663DD764 C:\Windows\System32\drivers\SiSRaid2.sys 2F518D13DD6F3053837FE606F1A2EA1F C:\Windows\System32\drivers\sisraid4.sys 1AC9A200A9C49C4508F04AAFFCA34A3F C:\Windows\system32\DRIVERS\snp2uvc.sys A2514BC95BB99C6A0DC6E55AD3C21842 C:\Windows\System32\drivers\spaceport.sys F6EBE514D13ECE7EDC23440039CDF9AB C:\Windows\System32\drivers\SpbCx.sys F337BE11071818FC3F5DC2940B6BDE34 C:\Windows\System32\Drivers\N360x64\0502020.003\SRTSP64.SYS 90EF30C3867BCDE4579C01A6D6E75A7A C:\Windows\system32\drivers\N360x64\0502020.003\SRTSPX64.SYS C513E8A5E7978DA49077F5484344EE1B C:\Windows\System32\DRIVERS\srv.sys 2B78788A1485F9B99A578A299DF42C02 C:\Windows\System32\DRIVERS\srv2.sys C1AE59C0B0817236EC083A91C396005A C:\Windows\System32\DRIVERS\srvnet.sys 77195C32175FC63D6054EBA5A066D727 C:\Windows\System32\drivers\stexstor.sys 366DEA74BBA65B362BCCFC6FC2ADFD8B C:\Windows\System32\drivers\storahci.sys 0ED2E318ABB68C1A35A8B8038BDB4C90 C:\Windows\System32\DRIVERS\vmstorfl.sys 7A08CEE1535F5A448215634C5EA74E50 C:\Windows\System32\drivers\stornvme.sys 6B06E2D11E604BE2B1A406C4CB3B90DE C:\Windows\System32\drivers\storvsc.sys 548759755BC73DAD663250239D7E0B9F C:\Windows\System32\drivers\swenum.sys 84E0F5D41C138C5CC975137A2A98F6D3 C:\Windows\System32\drivers\N360x64\0502020.003\SYMDS64.SYS 6160145C7A87FC7672E8E3B886888176 C:\Windows\System32\drivers\N360x64\0502020.003\SYMEFA64.SYS 96AEED40D4D3521568B42027687E69E0 C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS 21A1C2D694C3CF962D31F5E873AB3D6F C:\Windows\system32\drivers\N360x64\0502020.003\Ironx64.SYS BD0D711D8CBFCAA19CA123306EAF53A5 C:\Windows\System32\Drivers\N360x64\0502020.003\SYMNETS.SYS A6ADB3D83023F8DAA0F7B6FDA785D83B C:\Windows\System32\drivers\tcpip.sys 6617F44D2432C529B2249A0498B6B40A C:\Windows\system32\DRIVERS\tcpip.sys 6617F44D2432C529B2249A0498B6B40A C:\Windows\System32\drivers\tcpipreg.sys 33A7D83EEB15431773A6E186CFAABA21 C:\Windows\system32\DRIVERS\tdx.sys FFF28F9F6823EB1756C60F1649560BBF C:\Windows\System32\drivers\terminpt.sys 232D185D2337F141311D0CF1983E1431 C:\Windows\system32\drivers\tpm.sys 82F909359600D3603FE852DB7F135626 C:\Windows\System32\drivers\tsusbflt.sys BF8F54CA37E9C9D6582C31C5761F8C93 C:\Windows\System32\drivers\TsUsbGD.sys E0088068DCE2EE82897027DDB8E05254 C:\Windows\system32\DRIVERS\tunnel.sys C8E0E78B5D284C2FF59BDFFDAF997242 C:\Windows\System32\drivers\uagp35.sys F6EEAD052943B5A3104C1405BB856C54 C:\Windows\System32\drivers\uaspstor.sys FE6067B1FD4E63650C667B33D080565B C:\Windows\System32\drivers\ucx01000.sys 5D1B430EA11064C56E7C8F84B90DEB6A C:\Windows\System32\DRIVERS\udfs.sys 1EC649F112896FAE33250F0B97AC5D0B C:\Windows\System32\drivers\UEFI.sys 9578691F297E1B1F519970FE6D47CB21 C:\Windows\System32\drivers\uliagpkx.sys 5EAB5117DDB24FC4D39E6FFFCF1837B9 C:\Windows\System32\drivers\umbus.sys DA34C39A18E60E7C3FA0630566408034 C:\Windows\System32\drivers\umpass.sys AE8294875E5446E359B1E8035D40C05E C:\Windows\System32\drivers\usbccgp.sys 433ECDE01A52691FA7ACA51C10C09B70 C:\Windows\System32\drivers\usbcir.sys B3D6457D841A0CAEF4C52D88621715F2 C:\Windows\System32\drivers\usbehci.sys 5477D6E27C7D266EF8C152B9A25ADE5E C:\Windows\System32\drivers\usbhub.sys DF56C2C04EFA328D7A66B69007130266 C:\Windows\System32\drivers\UsbHub3.sys C0E33820326199CE3CFD3B9F27F81D99 C:\Windows\System32\drivers\usbohci.sys 3019097FB6C985EF24C058090FF3BDBD C:\Windows\System32\drivers\usbprint.sys 4D655E3B684BE9B0F7FFD8A2935C348C C:\Windows\system32\DRIVERS\usbscan.sys F04D164C4168701A4E7835607722E5F1 C:\Windows\System32\drivers\USBSTOR.SYS B1230E9813B5C7E762DF27756AA23917 C:\Windows\System32\drivers\usbuhci.sys BA4FA655E0FC577DB7436FC963932CE4 C:\Windows\System32\drivers\USBXHCI.SYS 3B44CB989757428208CCFCC028C13110 C:\Windows\System32\drivers\VClone.sys 3C8E2C591345F38149C69FE8E5DF8C90 C:\Windows\System32\drivers\vdrvroot.sys FEB26E3B8345A7E8D62F945C4AE86562 C:\Windows\System32\drivers\VerifierExt.sys A026EDEAA5EECAE0B08E2748B616D4BD C:\Windows\System32\drivers\vhdmp.sys 041D3EF364E624DBB2703A64A5AADF89 C:\Windows\System32\drivers\viaide.sys 06D38968028E9AB19DE9B618C7B6D199 C:\Windows\System32\drivers\vmbus.sys C6305BDFC4F7CE51F72BB072C03D4ACE C:\Windows\System32\drivers\VMBusHID.sys DA40BEA0A863CE768C940CA9723BF81F C:\Windows\System32\drivers\volmgr.sys 55D7D963DE85162F1C49721E502F9744 C:\Windows\System32\drivers\volmgrx.sys CCB9E901F7254BF96D28EB1B0E5329B7 C:\Windows\System32\drivers\volsnap.sys 9F9CE33B50611A1C61A46B8911E0B30B C:\Windows\System32\drivers\vpci.sys 01355C98B5C3ED1EC446743CDA848FCE C:\Windows\System32\drivers\vsmraid.sys 4539F45F9F4C9757A86A56C949421E07 C:\Windows\System32\drivers\vstxraid.sys 0849B7260F26FE05EA56DED0672E2F4B C:\Windows\System32\drivers\vwifibus.sys BE970C369E43B509C1EDA2B8FA7CECB0 C:\Windows\system32\DRIVERS\vwififlt.sys 6B26AD573CCDD5209DF4397438B76354 C:\Windows\system32\DRIVERS\vwifimp.sys 0B48E0DFB44EE475F4FD8A8EE599AF30 C:\Windows\System32\drivers\wacompen.sys 0910AB9ED404C1434E2D0376C2AD5D8B C:\Windows\system32\drivers\WdBoot.sys 694B28DE12AD47031FFB4B052662131A C:\Windows\System32\drivers\Wdf01000.sys CB6C63FF8342B467E2EF76E98D5B934D C:\Windows\system32\drivers\WdFilter.sys 0B99529A3BECC3528D865DDECB62503B C:\Windows\System32\Drivers\WdNisDrv.sys 282E7D46310338FF4A6B7680440EB0DA C:\Windows\System32\DRIVERS\wfplwfs.sys 2E3E82D7B1076B90F4E228A8EF17B261 C:\Windows\System32\drivers\wimmount.sys 867BCC69ED9C31C501465EB0E8BA9DFA C:\Windows\System32\drivers\wmiacpi.sys 2834D9D3B4F554A39C72F00EA3F0E128 C:\Windows\System32\DRIVERS\wpcfltr.sys E746BCDBA2E02CF6B8D6B26FB167FBE0 C:\Windows\System32\drivers\WpdUpFltr.sys 9F2904B55F6CECCD1A8D986B5CE2609A C:\Windows\system32\drivers\ws2ifsl.sys AE072B0339D0A18E455DC21666CAD572 C:\Windows\System32\drivers\WudfPf.sys 2FEAE33E9B2B56104596E1BA444405A9 C:\Windows\System32\drivers\WUDFRd.sys 19240C13F526125554B5370566F21A0A C:\Windows\system32\DRIVERS\WUDFRd.sys 19240C13F526125554B5370566F21A0A C:\Windows\system32\DRIVERS\WUDFRd.sys 19240C13F526125554B5370566F21A0A ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-10 16:59 - 2014-01-10 16:59 - 00033439 _____ C:\Users\adam\Downloads\Addition.txt 2014-01-10 16:58 - 2014-01-10 17:00 - 00040660 _____ C:\Users\adam\Downloads\FRST.txt 2014-01-10 16:58 - 2014-01-10 16:58 - 00000000 ____D C:\FRST 2014-01-10 16:56 - 2014-01-10 16:56 - 01932166 _____ (Farbar) C:\Users\adam\Downloads\FRST64.exe 2014-01-09 20:53 - 2014-01-09 20:53 - 00126048 _____ C:\Users\adam\Downloads\OTL (2).Txt 2014-01-09 20:52 - 2014-01-09 20:52 - 00040747 _____ C:\Users\adam\Downloads\FRST2.txt 2014-01-09 20:51 - 2014-01-09 20:51 - 00156242 _____ C:\Users\adam\Downloads\OTL (1).Txt 2014-01-09 16:35 - 2014-01-09 16:35 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled 2014-01-09 16:27 - 2014-01-09 21:24 - 00016800 _____ C:\WINDOWS\PFRO.log 2014-01-09 16:22 - 2014-01-09 16:30 - 00165659 _____ C:\MyXML.xml 2014-01-09 16:16 - 2014-01-09 19:23 - 00000000 ____D C:\ProgramData\ProductData 2014-01-09 16:16 - 2014-01-09 16:16 - 00000000 ____D C:\Users\adam\AppData\Roaming\Apple Computer 2014-01-09 16:16 - 2014-01-09 16:16 - 00000000 ____D C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-01-09 16:10 - 2014-01-09 19:23 - 00000000 ____D C:\Users\adam\AppData\Roaming\IObit 2014-01-09 16:10 - 2014-01-09 19:23 - 00000000 ____D C:\ProgramData\IObit 2014-01-09 16:10 - 2014-01-09 16:35 - 00000000 ____D C:\Program Files (x86)\IObit 2014-01-05 11:57 - 2014-01-05 11:57 - 00105586 _____ C:\Users\adam\Downloads\TickSheet_14GBC010000931.tif 2014-01-04 17:43 - 2014-01-04 17:43 - 00000000 ____D C:\Program Files (x86)\Origin Games 2014-01-04 17:42 - 2014-01-05 11:24 - 00000000 ____D C:\Users\adam\AppData\Roaming\Origin 2014-01-04 17:42 - 2014-01-04 17:43 - 00000000 ____D C:\Users\adam\AppData\Local\Origin 2014-01-04 17:41 - 2014-01-10 10:15 - 00000000 ____D C:\Program Files (x86)\Origin 2014-01-04 17:41 - 2014-01-04 17:41 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\adam\Downloads\OriginThinSetup.exe 2014-01-04 17:41 - 2014-01-04 17:41 - 00000998 _____ C:\Users\Public\Desktop\Origin.lnk 2014-01-04 17:41 - 2014-01-04 17:41 - 00000000 ____D C:\ProgramData\Electronic Arts 2014-01-04 16:56 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2014-01-04 16:56 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2014-01-04 16:56 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2014-01-04 16:56 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2014-01-04 16:56 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2014-01-04 16:56 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2014-01-04 16:56 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2014-01-04 16:56 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2014-01-04 16:56 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2014-01-04 16:56 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2014-01-04 16:56 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2014-01-04 16:56 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2014-01-04 16:56 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2014-01-04 16:56 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2014-01-04 16:56 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2014-01-04 16:56 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2014-01-04 16:56 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2014-01-04 16:56 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2014-01-04 16:56 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2014-01-04 16:56 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2014-01-04 16:56 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2014-01-04 16:56 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2014-01-04 16:56 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2014-01-04 16:56 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2014-01-04 16:56 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2014-01-04 16:56 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2014-01-04 16:56 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2014-01-04 16:56 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2014-01-04 16:56 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2014-01-04 16:56 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2014-01-04 16:56 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2014-01-04 16:56 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2014-01-04 16:56 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2014-01-04 16:56 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2014-01-04 16:56 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2014-01-04 16:56 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2014-01-04 16:56 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2014-01-04 16:56 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2014-01-04 16:56 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2014-01-04 16:56 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2014-01-04 16:56 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2014-01-04 16:56 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2014-01-04 16:56 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2014-01-04 16:56 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2014-01-04 16:56 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2014-01-04 16:56 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2014-01-04 16:56 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2014-01-04 16:56 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2014-01-04 16:56 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2014-01-04 16:56 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2014-01-04 16:56 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2014-01-04 16:56 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2014-01-04 16:56 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2014-01-04 16:56 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2014-01-04 16:56 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2014-01-04 16:56 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2014-01-04 16:56 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2014-01-04 16:56 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2014-01-04 16:56 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2014-01-04 16:56 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2014-01-04 16:56 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2014-01-04 16:56 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2014-01-04 16:56 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2014-01-04 16:56 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2014-01-04 16:55 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2014-01-04 16:55 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2014-01-04 16:55 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2014-01-04 16:55 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2014-01-04 16:55 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2014-01-04 16:55 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2014-01-04 16:55 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2014-01-04 16:55 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2014-01-04 16:55 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2014-01-04 16:55 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2014-01-04 16:55 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2014-01-04 16:55 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2014-01-04 16:55 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2014-01-04 16:55 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2014-01-04 16:55 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2014-01-04 16:55 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2014-01-04 16:55 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2014-01-04 16:55 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2014-01-04 16:55 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2014-01-04 16:55 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2014-01-04 16:55 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2014-01-04 16:55 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2014-01-04 16:55 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2014-01-04 16:55 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2014-01-04 16:55 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2014-01-04 16:55 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2014-01-04 16:55 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2014-01-04 16:55 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2014-01-04 16:55 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2014-01-04 16:55 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2014-01-04 16:55 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2014-01-04 16:55 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2014-01-04 16:55 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2014-01-04 16:55 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2014-01-04 16:55 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2014-01-04 16:55 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2014-01-04 16:55 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2014-01-04 16:55 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2014-01-04 16:55 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2014-01-04 16:55 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2014-01-04 16:55 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2014-01-04 16:55 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2014-01-04 16:55 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2014-01-04 16:55 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2014-01-04 16:55 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2014-01-04 16:55 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2014-01-04 16:55 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2014-01-04 16:55 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2014-01-04 16:55 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2014-01-04 16:55 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2014-01-04 16:55 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2014-01-04 16:55 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2014-01-04 16:55 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2014-01-04 16:55 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2014-01-04 16:55 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2014-01-04 16:55 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2014-01-04 16:55 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2014-01-04 16:55 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2014-01-04 16:55 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2014-01-04 16:55 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2014-01-04 16:55 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2014-01-04 16:55 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2014-01-04 16:55 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2014-01-04 16:55 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2014-01-04 16:55 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2014-01-04 16:55 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2014-01-04 16:55 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2014-01-04 16:55 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2014-01-04 16:55 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2014-01-04 16:55 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2014-01-04 16:55 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2014-01-04 16:55 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2014-01-04 16:55 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2014-01-04 16:55 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2014-01-04 16:55 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2014-01-04 16:55 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2014-01-04 16:55 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2014-01-04 16:55 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2014-01-04 16:55 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2014-01-04 16:55 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2014-01-04 16:55 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2014-01-04 16:55 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2014-01-04 16:55 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2014-01-04 16:55 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2014-01-04 16:55 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2014-01-04 16:55 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2014-01-04 15:28 - 2014-01-04 15:28 - 00003086 _____ C:\WINDOWS\System32\Tasks\{6AF1BF45-E781-468C-9054-0F3FBDC49527} 2014-01-04 15:24 - 2014-01-04 15:37 - 00000266 __RSH C:\Users\adam\ntuser.pol 2014-01-04 15:23 - 2014-01-09 19:23 - 00000000 ____D C:\Users\adam\AppData\Local\Mobogenie 2014-01-04 15:23 - 2014-01-04 15:23 - 00000000 ____D C:\Users\adam\Documents\Mobogenie 2014-01-04 15:23 - 2014-01-04 15:23 - 00000000 ____D C:\Users\adam\AppData\Local\cache 2014-01-04 15:23 - 2014-01-04 15:23 - 00000000 _____ C:\Users\adam\daemonprocess.txt 2014-01-04 15:22 - 2014-01-09 19:23 - 00000000 ____D C:\Program Files (x86)\Mobogenie 2014-01-04 14:37 - 2014-01-09 19:23 - 00000000 ____D C:\Users\adam\Documents\FIFA 13 2014-01-04 12:46 - 2014-01-04 19:09 - 00000000 ____D C:\ProgramData\Origin 2014-01-04 12:42 - 2014-01-09 19:23 - 00000000 ____D C:\Users\adam\Documents\FIFA 14 2014-01-03 20:50 - 2014-01-03 20:50 - 00000000 ____D C:\Users\adam\AppData\Roaming\Floodlight Games 2014-01-03 20:50 - 2014-01-03 20:50 - 00000000 ____D C:\ProgramData\Floodlight Games 2013-12-29 15:33 - 2014-01-04 15:35 - 00000000 ____D C:\Log 2013-12-29 14:50 - 2013-12-29 14:50 - 00045270 _____ C:\Users\adam\AppData\Roaming\room_v3.dat 2013-12-29 14:35 - 2014-01-04 15:27 - 00000000 ____D C:\Program Files (x86)\Garena Plus 2013-12-29 14:18 - 2013-12-29 14:18 - 00000000 ____D C:\Users\adam\AppData\Local\Garena 2013-12-28 21:10 - 2013-12-28 21:10 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes 2013-12-28 15:26 - 2013-12-28 15:35 - 2134859776 _____ C:\Users\adam\Downloads\The.Hobbit-The.Desolation.of.Smaug.2013.DVDScr.XVID.AC3.Hive-CM8.avi 2013-12-28 15:06 - 2013-12-28 15:09 - 00000000 ____D C:\Users\adam\Downloads\Linkin Park - Discography 2013-12-23 08:14 - 2013-12-23 08:14 - 00000000 ____D C:\WINDOWS\System32\Tasks\Symantec 2013-12-22 19:16 - 2013-12-22 19:16 - 00000000 ____D C:\ProgramData\HP 2013-12-22 19:16 - 2010-10-13 12:02 - 00176640 _____ (Hewlett-Packard Corporation) C:\WINDOWS\system32\hpcpn103.dll 2013-12-22 19:16 - 2010-10-13 11:57 - 00305664 _____ (Hewlett Packard Corporation) C:\WINDOWS\SysWOW64\hpcc3103.dll 2013-12-22 19:16 - 2010-09-19 15:51 - 00193592 _____ (Hewlett-Packard) C:\WINDOWS\system32\hppdcompio.dll 2013-12-22 19:16 - 2010-09-19 15:51 - 00167480 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\hppccompio.dll 2013-12-22 19:16 - 2010-02-11 10:19 - 00491008 _____ (HP) C:\WINDOWS\SysWOW64\hpcdmc32.dll 2013-12-15 15:13 - 2014-01-05 16:07 - 00001093 _____ C:\Users\adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk 2013-12-15 15:12 - 2014-01-09 19:23 - 00000000 ____D C:\Users\adam\AppData\Local\iLivid 2013-12-14 03:37 - 2013-11-11 23:41 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2013-12-14 03:37 - 2013-11-11 23:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2013-12-14 03:37 - 2013-11-11 23:27 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2013-12-14 03:37 - 2013-11-11 23:24 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2013-12-14 03:37 - 2013-11-11 02:48 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2013-12-14 03:37 - 2013-11-09 11:55 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2013-12-14 03:37 - 2013-11-09 06:37 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2013-12-14 03:37 - 2013-11-09 05:56 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2013-12-14 03:37 - 2013-11-08 10:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2013-12-14 03:37 - 2013-11-08 04:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2013-12-14 03:37 - 2013-11-08 04:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2013-12-14 03:37 - 2013-11-08 04:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2013-12-14 03:37 - 2013-11-08 04:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2013-12-14 03:37 - 2013-11-08 04:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2013-12-14 03:37 - 2013-11-08 04:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2013-12-14 03:37 - 2013-11-08 03:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2013-12-14 03:37 - 2013-11-08 03:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2013-12-14 03:37 - 2013-11-05 14:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2013-12-14 03:37 - 2013-11-05 14:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2013-12-14 03:37 - 2013-11-05 13:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2013-12-14 03:37 - 2013-11-05 13:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2013-12-14 03:37 - 2013-11-05 13:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2013-12-14 03:37 - 2013-11-04 17:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2013-12-14 03:37 - 2013-11-04 17:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2013-12-14 03:37 - 2013-11-04 13:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2013-12-14 03:37 - 2013-11-04 11:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2013-12-14 03:37 - 2013-11-04 10:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2013-12-14 03:37 - 2013-11-04 02:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2013-12-14 03:37 - 2013-11-04 01:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2013-12-14 03:37 - 2013-11-01 11:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2013-12-14 03:37 - 2013-11-01 06:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2013-12-14 03:37 - 2013-11-01 05:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2013-12-14 03:37 - 2013-10-31 00:58 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2013-12-14 03:37 - 2013-10-31 00:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2013-12-14 03:37 - 2013-10-31 00:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2013-12-14 03:37 - 2013-10-31 00:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2013-12-14 03:37 - 2013-10-31 00:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2013-12-14 03:37 - 2013-10-31 00:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2013-12-14 03:37 - 2013-10-26 01:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys 2013-12-14 03:37 - 2013-10-24 09:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2013-12-14 03:37 - 2013-10-24 09:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2013-12-14 03:37 - 2013-10-17 11:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2013-12-14 03:37 - 2013-10-17 10:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2013-12-14 03:37 - 2013-10-05 14:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2013-12-14 03:37 - 2013-10-05 14:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2013-12-14 03:37 - 2013-10-05 12:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2013-12-14 03:37 - 2013-10-05 12:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2013-12-13 18:04 - 2013-12-13 18:04 - 00000000 ____D C:\GOG Games 2013-12-13 17:48 - 2013-12-13 18:05 - 00000000 ____D C:\Users\adam\AppData\Local\GOG.com 2013-12-12 15:43 - 2013-11-26 11:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2013-12-12 15:43 - 2013-11-26 10:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2013-12-12 15:43 - 2013-11-26 09:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2013-12-12 15:43 - 2013-11-26 08:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2013-12-12 15:43 - 2013-11-26 08:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2013-12-12 15:43 - 2013-11-26 08:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2013-12-12 15:43 - 2013-11-26 08:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2013-12-12 15:43 - 2013-11-26 08:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2013-12-12 15:43 - 2013-11-26 07:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2013-12-12 15:43 - 2013-11-26 07:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2013-12-12 15:43 - 2013-11-26 07:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2013-12-12 15:43 - 2013-11-26 07:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2013-12-12 15:43 - 2013-11-26 06:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2013-12-12 15:43 - 2013-11-26 06:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2013-12-12 15:43 - 2013-11-26 06:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2013-12-12 15:43 - 2013-11-26 06:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2013-12-12 15:43 - 2013-11-26 06:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2013-12-12 15:43 - 2013-11-23 04:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2013-12-12 15:43 - 2013-11-23 04:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2013-12-12 15:43 - 2013-11-23 03:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2013-12-12 15:43 - 2013-11-23 03:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2013-12-12 15:43 - 2013-11-09 06:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2013-12-12 15:43 - 2013-11-09 06:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2013-12-12 15:43 - 2013-10-19 08:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll 2013-12-12 15:43 - 2013-10-19 07:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll 2013-12-12 15:43 - 2013-10-15 08:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll 2013-12-12 15:43 - 2013-10-15 08:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll 2013-12-12 15:42 - 2013-11-09 05:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2013-12-12 15:42 - 2013-11-08 07:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys ==================== One Month Modified Files and Folders ======= 2014-01-10 17:00 - 2014-01-10 16:58 - 00040660 _____ C:\Users\adam\Downloads\FRST.txt 2014-01-10 17:00 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\sru 2014-01-10 16:59 - 2014-01-10 16:59 - 00033439 _____ C:\Users\adam\Downloads\Addition.txt 2014-01-10 16:59 - 2013-10-19 14:19 - 02015772 _____ C:\WINDOWS\WindowsUpdate.log 2014-01-10 16:58 - 2014-01-10 16:58 - 00000000 ____D C:\FRST 2014-01-10 16:56 - 2014-01-10 16:56 - 01932166 _____ (Farbar) C:\Users\adam\Downloads\FRST64.exe 2014-01-10 16:47 - 2013-10-22 08:02 - 00003980 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B8E01413-744E-43C6-AB25-EDF609D73F57} 2014-01-10 16:45 - 2013-04-22 16:43 - 00001062 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-10 10:26 - 2013-04-22 16:36 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1666906798-3589306414-584983686-1001 2014-01-10 10:16 - 2013-07-21 09:57 - 00000000 ____D C:\Users\adam\AppData\Roaming\Dropbox 2014-01-10 10:16 - 2013-04-22 16:43 - 00002216 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-10 10:15 - 2014-01-04 17:41 - 00000000 ____D C:\Program Files (x86)\Origin 2014-01-10 10:15 - 2013-07-21 10:00 - 00000000 ___RD C:\Users\adam\Dropbox 2014-01-10 10:15 - 2013-04-22 17:25 - 00000000 __RDO C:\Users\adam\SkyDrive 2014-01-10 10:15 - 2013-04-22 16:43 - 00001058 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-10 10:15 - 2013-04-22 16:32 - 00000000 ____D C:\Users\adam\Documents\Youcam 2014-01-09 21:49 - 2013-10-03 21:08 - 00072192 ___SH C:\Users\adam\Downloads\Thumbs.db 2014-01-09 21:24 - 2014-01-09 16:27 - 00016800 _____ C:\WINDOWS\PFRO.log 2014-01-09 21:24 - 2013-08-22 14:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2014-01-09 20:53 - 2014-01-09 20:53 - 00126048 _____ C:\Users\adam\Downloads\OTL (2).Txt 2014-01-09 20:52 - 2014-01-09 20:52 - 00040747 _____ C:\Users\adam\Downloads\FRST2.txt 2014-01-09 20:51 - 2014-01-09 20:51 - 00156242 _____ C:\Users\adam\Downloads\OTL (1).Txt 2014-01-09 19:23 - 2014-01-09 16:16 - 00000000 ____D C:\ProgramData\ProductData 2014-01-09 19:23 - 2014-01-09 16:10 - 00000000 ____D C:\Users\adam\AppData\Roaming\IObit 2014-01-09 19:23 - 2014-01-09 16:10 - 00000000 ____D C:\ProgramData\IObit 2014-01-09 19:23 - 2014-01-04 15:23 - 00000000 ____D C:\Users\adam\AppData\Local\Mobogenie 2014-01-09 19:23 - 2014-01-04 15:22 - 00000000 ____D C:\Program Files (x86)\Mobogenie 2014-01-09 19:23 - 2014-01-04 14:37 - 00000000 ____D C:\Users\adam\Documents\FIFA 13 2014-01-09 19:23 - 2014-01-04 12:42 - 00000000 ____D C:\Users\adam\Documents\FIFA 14 2014-01-09 19:23 - 2013-12-15 15:12 - 00000000 ____D C:\Users\adam\AppData\Local\iLivid 2014-01-09 19:23 - 2013-10-20 17:48 - 00000000 ____D C:\Users\adam\AppData\Local\Intel_Corporation 2014-01-09 19:23 - 2013-10-19 14:05 - 00000000 ____D C:\Users\adam 2014-01-09 19:23 - 2013-08-22 15:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2014-01-09 19:23 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2014-01-09 19:23 - 2013-04-22 16:30 - 00000000 ____D C:\Users\adam\AppData\Roaming\Fujitsu 2014-01-09 19:18 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\registration 2014-01-09 18:46 - 2013-08-22 13:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2014-01-09 18:32 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2014-01-09 16:35 - 2014-01-09 16:35 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled 2014-01-09 16:35 - 2014-01-09 16:10 - 00000000 ____D C:\Program Files (x86)\IObit 2014-01-09 16:30 - 2014-01-09 16:22 - 00165659 _____ C:\MyXML.xml 2014-01-09 16:19 - 2013-10-19 13:59 - 00000000 ___DC C:\WINDOWS\Panther 2014-01-09 16:18 - 2013-05-23 17:50 - 00000000 ____D C:\Users\adam\AppData\Roaming\uTorrent 2014-01-09 16:16 - 2014-01-09 16:16 - 00000000 ____D C:\Users\adam\AppData\Roaming\Apple Computer 2014-01-09 16:16 - 2014-01-09 16:16 - 00000000 ____D C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-01-06 11:49 - 2012-08-28 12:36 - 00000000 ____D C:\ProgramData\Norton 2014-01-05 16:07 - 2013-12-15 15:13 - 00001093 _____ C:\Users\adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk 2014-01-05 11:57 - 2014-01-05 11:57 - 00105586 _____ C:\Users\adam\Downloads\TickSheet_14GBC010000931.tif 2014-01-05 11:24 - 2014-01-04 17:42 - 00000000 ____D C:\Users\adam\AppData\Roaming\Origin 2014-01-04 19:48 - 2013-09-30 04:15 - 01825074 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2014-01-04 19:48 - 2013-09-30 04:00 - 00807160 _____ C:\WINDOWS\system32\perfh015.dat 2014-01-04 19:48 - 2013-09-30 04:00 - 00163478 _____ C:\WINDOWS\system32\perfc015.dat 2014-01-04 19:09 - 2014-01-04 12:46 - 00000000 ____D C:\ProgramData\Origin 2014-01-04 17:43 - 2014-01-04 17:43 - 00000000 ____D C:\Program Files (x86)\Origin Games 2014-01-04 17:43 - 2014-01-04 17:42 - 00000000 ____D C:\Users\adam\AppData\Local\Origin 2014-01-04 17:41 - 2014-01-04 17:41 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\adam\Downloads\OriginThinSetup.exe 2014-01-04 17:41 - 2014-01-04 17:41 - 00000998 _____ C:\Users\Public\Desktop\Origin.lnk 2014-01-04 17:41 - 2014-01-04 17:41 - 00000000 ____D C:\ProgramData\Electronic Arts 2014-01-04 15:37 - 2014-01-04 15:24 - 00000266 __RSH C:\Users\adam\ntuser.pol 2014-01-04 15:35 - 2013-12-29 15:33 - 00000000 ____D C:\Log 2014-01-04 15:30 - 2013-05-06 17:34 - 00000000 ____D C:\Users\adam\AppData\Local\CrashDumps 2014-01-04 15:28 - 2014-01-04 15:28 - 00003086 _____ C:\WINDOWS\System32\Tasks\{6AF1BF45-E781-468C-9054-0F3FBDC49527} 2014-01-04 15:27 - 2013-12-29 14:35 - 00000000 ____D C:\Program Files (x86)\Garena Plus 2014-01-04 15:23 - 2014-01-04 15:23 - 00000000 ____D C:\Users\adam\Documents\Mobogenie 2014-01-04 15:23 - 2014-01-04 15:23 - 00000000 ____D C:\Users\adam\AppData\Local\cache 2014-01-04 15:23 - 2014-01-04 15:23 - 00000000 _____ C:\Users\adam\daemonprocess.txt 2014-01-03 20:50 - 2014-01-03 20:50 - 00000000 ____D C:\Users\adam\AppData\Roaming\Floodlight Games 2014-01-03 20:50 - 2014-01-03 20:50 - 00000000 ____D C:\ProgramData\Floodlight Games 2013-12-29 14:50 - 2013-12-29 14:50 - 00045270 _____ C:\Users\adam\AppData\Roaming\room_v3.dat 2013-12-29 14:18 - 2013-12-29 14:18 - 00000000 ____D C:\Users\adam\AppData\Local\Garena 2013-12-28 21:15 - 2013-08-01 20:32 - 00000000 ___RD C:\Users\adam\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App 2013-12-28 21:10 - 2013-12-28 21:10 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes 2013-12-28 15:35 - 2013-12-28 15:26 - 2134859776 _____ C:\Users\adam\Downloads\The.Hobbit-The.Desolation.of.Smaug.2013.DVDScr.XVID.AC3.Hive-CM8.avi 2013-12-28 15:09 - 2013-12-28 15:06 - 00000000 ____D C:\Users\adam\Downloads\Linkin Park - Discography 2013-12-23 08:30 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\rescache 2013-12-23 08:14 - 2013-12-23 08:14 - 00000000 ____D C:\WINDOWS\System32\Tasks\Symantec 2013-12-23 08:08 - 2013-12-01 11:47 - 00002404 _____ C:\Users\Public\Desktop\Norton 360.lnk 2013-12-23 08:08 - 2013-12-01 11:46 - 00000000 ____D C:\WINDOWS\system32\Drivers\N360x64 2013-12-23 08:08 - 2013-08-22 14:44 - 00488464 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-12-23 08:06 - 2013-08-22 15:36 - 00000000 ___RD C:\WINDOWS\ToastData 2013-12-23 08:06 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\WinStore 2013-12-23 08:06 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\MediaViewer 2013-12-23 08:06 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\FileManager 2013-12-23 08:06 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Camera 2013-12-22 19:17 - 2013-04-22 16:28 - 00000000 ____D C:\Users\adam\AppData\Local\Packages 2013-12-22 19:16 - 2013-12-22 19:16 - 00000000 ____D C:\ProgramData\HP 2013-12-18 21:18 - 2013-07-20 10:27 - 00001113 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk 2013-12-16 21:33 - 2013-04-24 10:03 - 00131072 ___SH C:\Users\adam\Desktop\Thumbs.db 2013-12-15 08:44 - 2013-08-20 19:41 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-12-15 08:43 - 2013-04-22 18:08 - 90708896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-12-14 07:45 - 2013-04-22 16:43 - 00000000 ____D C:\Program Files (x86)\Google 2013-12-13 18:05 - 2013-12-13 17:48 - 00000000 ____D C:\Users\adam\AppData\Local\GOG.com 2013-12-13 18:04 - 2013-12-13 18:04 - 00000000 ____D C:\GOG Games 2013-12-12 16:02 - 2013-10-11 18:44 - 00000000 ____D C:\ProgramData\Microsoft Help ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {bootmgr} {9937d74d-45e5-11e2-be82-806e6f6e6963} {9937d74e-45e5-11e2-be82-806e6f6e6963} {9937d74f-45e5-11e2-be82-806e6f6e6963} {9937d750-45e5-11e2-be82-806e6f6e6963} {9937d751-45e5-11e2-be82-806e6f6e6963} {9937d752-45e5-11e2-be82-806e6f6e6963} timeout 2 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {028a4985-4631-11e2-948c-2cd44490d088} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Firmware Application (101fffff) ------------------------------- identifier {9937d747-45e5-11e2-be82-806e6f6e6963} description BIOS Setup Firmware Application (101fffff) ------------------------------- identifier {9937d748-45e5-11e2-be82-806e6f6e6963} description Boot Menu Firmware Application (101fffff) ------------------------------- identifier {9937d749-45e5-11e2-be82-806e6f6e6963} description Diagnostic Screen Firmware Application (101fffff) ------------------------------- identifier {9937d74a-45e5-11e2-be82-806e6f6e6963} description Recovery and Utility Firmware Application (101fffff) ------------------------------- identifier {9937d74b-45e5-11e2-be82-806e6f6e6963} description Diagnostic Program Firmware Application (101fffff) ------------------------------- identifier {9937d74c-45e5-11e2-be82-806e6f6e6963} description Diagnostic Progrogram ROM Firmware Application (101fffff) ------------------------------- identifier {9937d74d-45e5-11e2-be82-806e6f6e6963} description Floppy Disk Drive: Firmware Application (101fffff) ------------------------------- identifier {9937d74e-45e5-11e2-be82-806e6f6e6963} description Drive0 HDD: Firmware Application (101fffff) ------------------------------- identifier {9937d74f-45e5-11e2-be82-806e6f6e6963} description CD/DVD Drive: Firmware Application (101fffff) ------------------------------- identifier {9937d750-45e5-11e2-be82-806e6f6e6963} description NETWORK: Firmware Application (101fffff) ------------------------------- identifier {9937d751-45e5-11e2-be82-806e6f6e6963} description USB HDD: Firmware Application (101fffff) ------------------------------- identifier {9937d752-45e5-11e2-be82-806e6f6e6963} description USB CD/DVD: Firmware Application (101fffff) ------------------------------- identifier {9937d753-45e5-11e2-be82-806e6f6e6963} description Erase Disk Windows Boot Loader ------------------- identifier {028a4982-4631-11e2-948c-2cd44490d088} device ramdisk=[\Device\HarddiskVolume1]\Recovery\028a4982-4631-11e2-948c-2cd44490d088\Winre.wim,{028a4983-4631-11e2-948c-2cd44490d088} path \windows\system32\winload.efi description Windows Recovery Environment locale en-us inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\028a4982-4631-11e2-948c-2cd44490d088\Winre.wim,{028a4983-4631-11e2-948c-2cd44490d088} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 8.1 locale pl-PL inherit {bootloadersettings} recoverysequence {028a4987-4631-11e2-948c-2cd44490d088} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {028a4985-4631-11e2-948c-2cd44490d088} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {028a4987-4631-11e2-948c-2cd44490d088} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{028a4988-4631-11e2-948c-2cd44490d088} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{028a4988-4631-11e2-948c-2cd44490d088} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {028a497f-4631-11e2-948c-2cd44490d088} device partition=C: path \windows\system32\winresume.efi description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {028a4982-4631-11e2-948c-2cd44490d088} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Resume from Hibernate --------------------- identifier {028a4985-4631-11e2-948c-2cd44490d088} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {028a4987-4631-11e2-948c-2cd44490d088} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostyka pami©ci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {028a4983-4631-11e2-948c-2cd44490d088} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume1 ramdisksdipath \Recovery\028a4982-4631-11e2-948c-2cd44490d088\boot.sdi Device options -------------- identifier {028a4984-4631-11e2-948c-2cd44490d088} description Windows Setup ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Device options -------------- identifier {028a4988-4631-11e2-948c-2cd44490d088} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2014-01-09 21:41 ==================== End Of Log ============================