Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-11-2014 Ran by rambo (administrator) on RAMBO_EPKK on 19-11-2014 03:27:39 Running from C:\Users\rambo\Downloads\FIXITPC Loaded Profile: rambo (Available profiles: rambo) Platform: Microsoft Windows 7 Professional N Service Pack 1 (X86) OS Language: Polski (Polska) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Emsisoft GmbH) C:\Program Files\Security\Online Armor\oacat.exe (Emsisoft GmbH) C:\Program Files\Security\Online Armor\oasrv.exe (Kingsoft Corporation) C:\Program Files\kingsoft\kingsoft antivirus\kxescore.exe () C:\ProgramData\685d26dc-c30a-434b-bda2-3004e8743669\maintainer.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Raid\nvraidservice.exe (Emsisoft GmbH) C:\Program Files\Security\Online Armor\oaui.exe (Kingsoft Corporation) C:\Program Files\kingsoft\kingsoft antivirus\kxetray.exe (Klipfolio Inc.) C:\Program Files\Klipfolio\Klipfolio.exe (Emsisoft GmbH) C:\Program Files\Security\Online Armor\oahlp.exe () C:\Program Files\Admin\Launchy\Launchy.exe (Mega Limited) C:\Users\rambo\AppData\Local\MEGAsync\MEGAsync.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (PortableApps.com) E:\Programy\Programy portable\Internet\OperaPortable\OperaPortable.exe (Opera Software) E:\Programy\Programy portable\Internet\OperaPortable\App\Opera\opera.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12021464 2014-05-09] (Realtek Semiconductor) HKLM\...\Run: [NVRaidService] => C:\Program Files\NVIDIA Corporation\Raid\nvraidservice.exe [163944 2010-04-09] (NVIDIA Corporation) HKLM\...\Run: [@OnlineArmor GUI] => C:\Program Files\Security\Online Armor\oaui.exe [7558464 2013-10-11] (Emsisoft GmbH) HKLM\...\Run: [kxesc] => c:\program files\kingsoft\kingsoft antivirus\kxetray.exe [1595056 2014-11-17] (Kingsoft Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-19\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\S-1-5-20\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\S-1-5-21-437592956-270204519-1642714051-1001\...\Run: [Klipfolio] => C:\Program Files\Klipfolio\Klipfolio.exe [1701904 2014-11-06] (Klipfolio Inc.) HKU\S-1-5-21-437592956-270204519-1642714051-1001\...\Policies\Explorer: [NoCDBurning] 1 IFEO\taskmgr.exe: [Debugger] "E:\PROGRAMY\PROGRAMY PORTABLE\ADMIN\PROCESSEXPLORER\PROCEXP.EXE" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Launchy.lnk ShortcutTarget: Launchy.lnk -> C:\Program Files\Admin\Launchy\Launchy.exe () Startup: C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk ShortcutTarget: MEGAsync.lnk -> C:\Users\rambo\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\rambo\AppData\Local\MEGAsync\ShellExtX32.dll () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\rambo\AppData\Local\MEGAsync\ShellExtX32.dll () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\rambo\AppData\Local\MEGAsync\ShellExtX32.dll () GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) SearchScopes: HKU\S-1-5-21-437592956-270204519-1642714051-1001 -> DefaultScope {C78A7758-718E-4E3E-8FEE-F8CF1C37E10F} URL = http://www.google.com/search?hl=pl&q={searchTerms} SearchScopes: HKU\S-1-5-21-437592956-270204519-1642714051-1001 -> {C78A7758-718E-4E3E-8FEE-F8CF1C37E10F} URL = http://www.google.com/search?hl=pl&q={searchTerms} ShellExecuteHooks: OA Shell Helper - {4F07DA45-8170-4859-9B5F-037EF2970034} - C:\Program Files\Security\Online Armor\oaevent.dll [1033968 2013-10-11] (Emsisoft GmbH) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== Chrome: ======= ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 kxescore; c:\program files\kingsoft\kingsoft antivirus\kxescore.exe [123992 2014-11-17] (Kingsoft Corporation) R2 MaintainerSvc4.29.2173613; C:\ProgramData\685d26dc-c30a-434b-bda2-3004e8743669\maintainer.exe [123632 2014-11-19] () R2 OAcat; C:\Program Files\Security\Online Armor\OAcat.exe [584864 2013-10-11] (Emsisoft GmbH) S4 PuranDefrag; C:\Windows\system32\PuranDefragS.exe [260992 2013-08-15] (Puran Software) [File not signed] R2 SvcOnlineArmor; C:\Program Files\Security\Online Armor\oasrv.exe [4457688 2013-10-11] (Emsisoft GmbH) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [1569792 2011-03-30] (C-Media Inc) R0 kavbootc; C:\Windows\System32\drivers\kavbootc.sys [27240 2014-11-17] (Kingsoft Corporation) R1 KDHacker; c:\program files\kingsoft\kingsoft antivirus\security\kxescan\kdhacker.sys [125784 2014-11-17] (Kingsoft Corporation) R2 kisknl; C:\Windows\system32\drivers\kisknl.sys [165176 2014-11-17] (Kingsoft Corporation) R3 ksapi; C:\Windows\system32\drivers\ksapi.sys [82264 2014-11-17] (Kingsoft Corporation) R4 KUsbGuard; C:\Program Files\kingsoft\kingsoft antivirus\kusbquery.sys [14200 2014-11-17] (Kingsoft Corporation) R1 OADevice; C:\Windows\system32\drivers\OADriver.sys [210360 2013-10-11] () R1 oahlpXX; C:\Windows\system32\drivers\oahlp32.sys [44984 2013-10-11] () R1 OAmon; C:\Windows\system32\drivers\OAmon.sys [34856 2013-10-11] (Emsisoft) R3 OAnet; C:\Windows\System32\DRIVERS\oanet.sys [31760 2013-10-11] (Emsisoft) R1 {1e3cbb53-e197-4e2a-92c5-00bc91f79189}Gw; C:\Windows\System32\drivers\{1e3cbb53-e197-4e2a-92c5-00bc91f79189}Gw.sys [43152 2014-11-17] (StdLib) U5 UnlockerDriver5; C:\Program Files\Admin\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [File not signed] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-19 03:26 - 2014-11-19 03:27 - 00000000 ____D () C:\FRST 2014-11-19 03:24 - 2014-11-19 03:28 - 00000000 ____D () C:\Users\rambo\Downloads\FIXITPC 2014-11-18 23:18 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-11-18 23:18 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-11-18 23:18 - 2014-11-06 04:28 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-11-18 23:18 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-11-18 23:18 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-11-18 23:18 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-11-18 23:18 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-11-18 23:18 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-11-18 23:18 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-11-18 23:18 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-11-18 23:18 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-11-18 23:18 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-11-18 23:18 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-11-18 23:18 - 2014-11-06 03:59 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-11-18 23:18 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-11-18 23:18 - 2014-11-06 03:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-11-18 23:18 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-11-18 23:18 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-11-18 23:18 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-11-18 23:18 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-11-18 23:18 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-11-18 23:18 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-11-18 23:18 - 2014-11-06 03:22 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-11-18 23:18 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-11-18 23:18 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-11-18 23:18 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-11-18 23:18 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-11-18 23:18 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-11-18 23:18 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-11-18 23:18 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-11-18 20:12 - 2014-11-19 03:21 - 00000008 __RSH () C:\ProgramData\ntuser.pol 2014-11-18 19:21 - 2014-11-18 19:23 - 39848632 _____ (PortableApps.com) C:\Users\rambo\Downloads\FirefoxPortable_33.1.1_Polish.paf.exe 2014-11-18 17:30 - 2014-11-19 02:50 - 00000000 ____D () C:\ProgramData\685d26dc-c30a-434b-bda2-3004e8743669 2014-11-18 17:01 - 2014-11-17 22:29 - 00043152 _____ (StdLib) C:\Windows\system32\Drivers\{1e3cbb53-e197-4e2a-92c5-00bc91f79189}Gw.sys 2014-11-18 16:53 - 2014-11-18 16:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Puran Defrag 2014-11-18 16:53 - 2013-08-15 16:39 - 01136512 _____ (Puran Software) C:\Windows\system32\PuranFD.exe 2014-11-18 16:53 - 2013-08-15 16:39 - 00260992 _____ (Puran Software) C:\Windows\system32\PuranDefragS.exe 2014-11-18 16:53 - 2013-08-15 16:39 - 00257408 _____ (Puran Software) C:\Windows\system32\PuranDC.exe 2014-11-18 16:53 - 2013-08-15 16:39 - 00219520 _____ (Puran Software) C:\Windows\system32\PuranDefrag.dll 2014-11-18 16:53 - 2013-08-15 16:39 - 00109952 _____ (Puran Software) C:\Windows\system32\PuranDefragBT.exe 2014-11-18 16:43 - 2014-11-18 16:45 - 09173128 _____ (PortableApps.com) C:\Users\rambo\Downloads\ClawsMailPortable_3.8.0cvs6.paf.exe 2014-11-18 15:46 - 2014-11-18 15:46 - 01834631 _____ () C:\Users\rambo\Downloads\SVS_20_Personal(dobreprogramy.pl).zip 2014-11-18 15:43 - 2014-11-18 15:45 - 15959550 _____ (Cameyo) C:\Users\rambo\Downloads\Cameyo.exe 2014-11-18 14:41 - 2014-11-18 16:26 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\VOS 2014-11-18 13:00 - 2014-11-18 13:00 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Returnil 2014-11-18 12:58 - 2014-11-19 03:17 - 00000000 ____D () C:\ProgramData\Returnil 2014-11-18 12:53 - 2014-11-18 12:56 - 39307416 _____ (CJSC Returnil Software) C:\Users\rambo\Downloads\Returnil System Safe Pro 2011 PL (sandbox).exe 2014-11-18 12:20 - 2014-11-18 12:20 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\gtk-2.0 2014-11-18 12:12 - 2014-11-18 15:42 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Sylpheed 2014-11-18 11:04 - 2014-11-18 11:05 - 00000000 ____D () C:\Users\rambo\Downloads\Linux 2014-11-17 20:00 - 2014-11-17 20:00 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2014-11-17 19:01 - 2014-11-17 19:01 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Locate32 2014-11-17 18:35 - 2014-11-17 18:35 - 00000000 ____D () C:\ERDNT 2014-11-17 02:18 - 2014-11-17 02:18 - 00000000 ____D () C:\Program Files\Microsoft.NET 2014-11-17 01:03 - 2014-11-17 01:03 - 00000000 ____D () C:\Users\rambo\Documents\SpiderOak Hive 2014-11-17 01:02 - 2014-11-17 01:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpiderOak 2014-11-17 01:00 - 2014-11-18 04:54 - 00000000 ____D () C:\ProgramData\kingsoft 2014-11-17 01:00 - 2014-11-17 18:51 - 00000000 __SHD () C:\KRECYCLE 2014-11-17 01:00 - 2014-11-17 01:00 - 00210296 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kisknl64.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00165176 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kisknl.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00164696 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kdhacker64.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00125784 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kdhacker.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00082264 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\ksapi.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00031848 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kavbootc64.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00027240 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kavbootc.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00024472 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\bc.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00019352 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\ksskrpr.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00018296 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kusbquery64.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00014200 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\kusbquery.sys 2014-11-17 01:00 - 2014-11-17 01:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingsoft Antivirus 2014-11-17 01:00 - 2014-11-17 01:00 - 00000000 ____D () C:\Program Files\kingsoft 2014-11-17 01:00 - 2014-11-17 01:00 - 00000000 _____ () C:\Windows\system32\config\KAVEventLog.EVT 2014-11-17 00:59 - 2014-11-17 00:59 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync 2014-11-17 00:56 - 2014-11-17 01:07 - 00000000 ____D () C:\ProgramData\OnlineArmor 2014-11-17 00:56 - 2014-11-17 00:56 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\OnlineArmor 2014-11-17 00:55 - 2014-11-17 00:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Armor 2014-11-17 00:55 - 2013-10-11 03:41 - 00044984 _____ () C:\Windows\system32\Drivers\oahlp32.sys 2014-11-17 00:55 - 2013-10-11 03:40 - 00210360 _____ () C:\Windows\system32\Drivers\OADriver.sys 2014-11-17 00:55 - 2013-10-11 03:40 - 00034856 _____ (Emsisoft) C:\Windows\system32\Drivers\OAmon.sys 2014-11-17 00:55 - 2013-10-11 03:40 - 00031760 _____ (Emsisoft) C:\Windows\system32\Drivers\OAnet.sys 2014-11-17 00:45 - 2014-11-17 00:45 - 00000000 __RSH () C:\MSDOS.SYS 2014-11-17 00:45 - 2014-11-17 00:45 - 00000000 __RSH () C:\IO.SYS 2014-11-17 00:42 - 2014-11-17 12:42 - 00000000 ____D () C:\Users\rambo\Downloads\Monitortest 2014-11-17 00:24 - 2014-11-17 00:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-11-17 00:23 - 2009-11-11 15:16 - 00729600 _____ (NVIDIA Corporation) C:\Windows\system32\cohelper.dll 2014-11-17 00:23 - 2009-11-11 09:22 - 00009548 _____ () C:\Windows\system32\Drivers\nvphy.bin 2014-11-17 00:20 - 2014-11-17 00:20 - 00000000 ____D () C:\Windows\system32\RTCOM 2014-11-17 00:20 - 2009-11-11 11:37 - 00592488 _____ (NVIDIA Corporation) C:\Windows\system32\NVUNINST.EXE 2014-11-17 00:19 - 2014-11-17 00:19 - 00000000 ____D () C:\Program Files\Realtek 2014-11-17 00:19 - 2014-11-17 00:19 - 00000000 ____D () C:\Program Files\Common Files\InstallShield 2014-11-17 00:19 - 2014-05-14 18:37 - 03086040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHDA.sys 2014-11-17 00:19 - 2014-05-14 16:00 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-11-17 00:19 - 2014-05-12 20:11 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes.dat 2014-11-17 00:19 - 2014-05-02 11:19 - 00029496 _____ () C:\Windows\system32\audioLibVc.dll 2014-11-17 00:19 - 2014-04-30 11:34 - 00916696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoInstII.dll 2014-11-17 00:19 - 2014-04-28 15:48 - 02474200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO.dll 2014-11-17 00:19 - 2014-04-25 13:51 - 02566872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkPgExt.dll 2014-11-17 00:19 - 2014-04-25 13:23 - 00782040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApoApi.dll 2014-11-17 00:19 - 2014-04-23 17:49 - 02140976 _____ () C:\Windows\system32\SStudio.dll 2014-11-17 00:19 - 2014-04-17 17:42 - 01116248 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO60.dll 2014-11-17 00:19 - 2014-04-17 17:42 - 00987224 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO50.dll 2014-11-17 00:19 - 2014-04-17 17:42 - 00966744 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO40.dll 2014-11-17 00:19 - 2014-04-10 12:20 - 11821656 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO30.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 28062296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 14585432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 03683416 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 01940056 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 01823320 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 01691224 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek2.dll 2014-11-17 00:19 - 2014-04-10 12:19 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell.dll 2014-11-17 00:19 - 2014-04-09 16:39 - 00890160 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-11-17 00:19 - 2014-04-09 16:37 - 05086984 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-11-17 00:19 - 2014-04-07 16:03 - 06177624 _____ (Dolby Laboratories) C:\Windows\system32\DDPP32A.dll 2014-11-17 00:19 - 2014-04-07 16:03 - 01490264 _____ (Dolby Laboratories) C:\Windows\system32\DDPD32A.dll 2014-11-17 00:19 - 2014-04-07 16:03 - 00274264 _____ (Dolby Laboratories) C:\Windows\system32\DDPO32A.dll 2014-11-17 00:19 - 2014-04-07 16:03 - 00221528 _____ (Dolby Laboratories) C:\Windows\system32\DDPA32.dll 2014-11-17 00:19 - 2014-03-21 14:17 - 00265376 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO.dll 2014-11-17 00:19 - 2014-03-19 19:19 - 00798296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO20.dll 2014-11-17 00:19 - 2014-03-06 16:35 - 01892056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSndMgr.cpl 2014-11-17 00:19 - 2014-03-05 05:11 - 00966904 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt32.dll 2014-11-17 00:19 - 2014-03-05 05:11 - 00818936 _____ (DTS, Inc.) C:\Windows\system32\sl3apo32.dll 2014-11-17 00:19 - 2014-03-05 05:11 - 00606968 _____ (DTS, Inc.) C:\Windows\system32\sltech32.dll 2014-11-17 00:19 - 2014-03-05 05:11 - 00219896 _____ (TODO: ) C:\Windows\system32\slprp32.dll 2014-11-17 00:19 - 2014-02-26 15:16 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-11-17 00:19 - 2014-02-18 17:04 - 02421792 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO.dll 2014-11-17 00:19 - 2014-02-06 11:28 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-11-17 00:19 - 2014-01-31 16:44 - 00948336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO.dll 2014-11-17 00:19 - 2013-10-16 03:43 - 00182472 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTACap.dll 2014-11-17 00:19 - 2013-10-11 12:47 - 00092584 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-11-17 00:19 - 2013-10-11 11:31 - 00919600 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-11-17 00:19 - 2013-10-07 00:14 - 00426944 _____ (DTS) C:\Windows\system32\DTSU2PLFX32.dll 2014-11-17 00:19 - 2013-10-07 00:14 - 00403392 _____ (DTS) C:\Windows\system32\DTSU2PGFX32.dll 2014-11-17 00:19 - 2013-10-07 00:14 - 00346048 _____ (DTS) C:\Windows\system32\DTSU2PREC32.dll 2014-11-17 00:19 - 2013-08-14 15:36 - 00509184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-11-17 00:19 - 2013-08-14 15:35 - 00509184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-11-17 00:19 - 2013-06-17 20:20 - 00188696 _____ () C:\Windows\system32\AcpiServiceVnA.dll 2014-11-17 00:19 - 2013-04-03 14:12 - 00852016 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-11-17 00:19 - 2012-08-31 19:17 - 07162128 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP32A.dll 2014-11-17 00:19 - 2012-08-31 19:17 - 00352016 _____ (Dolby Laboratories) C:\Windows\system32\R4EED32A.dll 2014-11-17 00:19 - 2012-08-31 19:17 - 00106768 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL32A.dll 2014-11-17 00:19 - 2012-08-31 19:17 - 00091920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA32A.dll 2014-11-17 00:19 - 2012-08-31 19:17 - 00062224 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG32A.dll 2014-11-17 00:19 - 2012-03-08 11:47 - 00095840 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTARen.dll 2014-11-17 00:19 - 2012-01-30 11:42 - 00819648 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo2.dll 2014-11-17 00:19 - 2012-01-10 10:20 - 00058264 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\TepeqAPO.dll 2014-11-17 00:19 - 2011-11-22 16:28 - 00013416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR.dll 2014-11-17 00:19 - 2011-09-02 14:21 - 00214368 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK.dll 2014-11-17 00:19 - 2011-09-02 14:21 - 00074080 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM.dll 2014-11-17 00:19 - 2011-09-02 14:21 - 00068960 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO.dll 2014-11-17 00:19 - 2011-08-23 17:00 - 00357712 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 01509480 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 01292904 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 01220200 _____ (DTS) C:\Windows\system32\DTSBoostDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00654952 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00631400 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00601704 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00458344 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00389736 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00375400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00218728 _____ (DTS) C:\Windows\system32\DTSGFXAPONS.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00218728 _____ (DTS) C:\Windows\system32\DTSGFXAPO.dll 2014-11-17 00:19 - 2011-05-31 09:42 - 00218216 _____ (DTS) C:\Windows\system32\DTSLFXAPO.dll 2014-11-17 00:19 - 2011-03-17 12:16 - 01379760 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-11-17 00:19 - 2011-03-07 17:03 - 00134584 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-11-17 00:19 - 2010-11-08 07:31 - 00359768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP32A.dll 2014-11-17 00:19 - 2010-11-08 07:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT32.dll 2014-11-17 00:19 - 2010-11-08 07:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA32.dll 2014-11-17 00:19 - 2010-11-08 07:31 - 00170840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED32A.dll 2014-11-17 00:19 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL32A.dll 2014-11-17 00:19 - 2010-11-08 07:31 - 00064856 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG32A.dll 2014-11-17 00:19 - 2010-09-27 09:34 - 00232792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-11-17 00:19 - 2009-12-04 15:43 - 00132368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO.dll 2014-11-17 00:19 - 2009-11-24 09:55 - 00345328 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSXT.dll 2014-11-17 00:19 - 2009-11-24 09:55 - 00185584 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSHD.dll 2014-11-17 00:19 - 2009-11-24 09:55 - 00173296 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP360.dll 2014-11-17 00:19 - 2009-11-24 09:55 - 00140528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW.dll 2014-11-17 00:19 - 2009-11-18 18:42 - 01783056 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesLib.dll 2014-11-17 00:15 - 2013-06-21 13:02 - 00053024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-11-17 00:15 - 2013-06-21 10:52 - 04192544 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-11-17 00:15 - 2013-06-21 10:52 - 03045664 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll 2014-11-17 00:15 - 2013-06-21 10:52 - 02555168 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-11-17 00:15 - 2013-06-21 10:52 - 00640288 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-11-17 00:15 - 2013-06-21 10:52 - 00223008 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-11-17 00:15 - 2013-06-21 10:52 - 00062752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 21102368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 13411896 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 12427240 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 09069344 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-11-17 00:14 - 2013-06-21 13:02 - 07687592 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 06324360 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 02777888 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 02597856 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 02002720 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 01024288 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3232049.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 00893728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3232049.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 00467232 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 00465184 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll 2014-11-17 00:14 - 2013-06-21 13:02 - 00016437 _____ () C:\Windows\system32\nvinfo.pb 2014-11-16 23:37 - 2014-11-16 23:37 - 00000000 ____D () C:\Program Files\Security 2014-11-16 23:31 - 2014-11-16 23:31 - 00004096 ___SH () C:\{80549B3E-7B9D-42D2-9735-2A4020C62451}.CBM 2014-11-16 21:35 - 2014-11-18 19:09 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\SpiderOak 2014-11-16 21:33 - 2014-11-17 01:02 - 00000000 ____D () C:\Program Files\SpiderOak 2014-11-16 21:30 - 2014-11-16 21:30 - 00000000 ____D () C:\Users\rambo\Documents\MEGAsync 2014-11-16 21:15 - 2014-11-17 00:25 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-11-16 21:14 - 2014-11-16 21:14 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-11-16 21:05 - 2014-11-16 21:05 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-11-16 21:04 - 2014-11-17 00:20 - 00000000 ___HD () C:\Program Files\Temp 2014-11-16 20:58 - 2014-11-17 00:24 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-11-16 20:58 - 2014-11-16 21:04 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-11-16 20:55 - 2014-11-16 20:55 - 00000083 _____ () C:\Windows\system\Cmicnfg3.ini 2014-11-16 20:55 - 2014-11-16 20:55 - 00000083 _____ () C:\Windows\Cmicnfg3.ini.imi 2014-11-16 20:55 - 2009-12-11 11:28 - 00002754 _____ () C:\Windows\cmudax3.ini 2014-11-16 20:55 - 2009-08-19 16:00 - 00303104 ____N () C:\Windows\system32\CmiInstallResAll.dll 2014-11-16 20:55 - 2008-10-15 15:41 - 00003518 ____N () C:\Windows\Cmicnfg3.ini.cfg 2014-11-16 20:55 - 2006-10-06 05:47 - 00319968 _____ (Microsoft Corporation) C:\Windows\difxapi.dll 2014-11-13 21:58 - 2014-11-07 12:49 - 15465815 _____ () C:\Users\rambo\Downloads\MusicBeePortable_2_4.zip 2014-11-06 14:58 - 2014-11-17 01:54 - 00000152 _____ () C:\Users\rambo\Desktop\zrobić.txt 2014-11-06 13:38 - 2014-11-19 03:21 - 00002614 _____ () C:\Windows\setupact.log 2014-11-06 13:38 - 2014-11-06 13:38 - 00000000 _____ () C:\Windows\setuperr.log 2014-11-06 12:59 - 2014-11-18 04:54 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Launchy 2014-11-06 12:59 - 2014-11-06 12:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launchy 2014-11-06 12:46 - 2014-11-06 12:46 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Moonchild Productions 2014-11-06 11:33 - 2014-11-19 03:22 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Klipfolio 2014-11-06 11:33 - 2014-11-06 11:33 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Klipfolio 2014-11-06 11:33 - 2014-11-06 11:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Klipfolio 2014-11-06 11:33 - 2014-11-06 11:33 - 00000000 ____D () C:\Program Files\Klipfolio 2014-11-06 00:00 - 2014-11-17 19:39 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Mozilla 2014-11-05 22:10 - 2014-11-05 22:10 - 00000000 ____D () C:\Users\rambo\AppData\Roaming\Adobe 2014-11-05 21:26 - 2012-03-01 06:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-11-05 21:26 - 2012-03-01 06:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-11-05 21:14 - 2014-11-05 21:14 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-11-05 21:14 - 2014-11-05 21:14 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-11-05 21:14 - 2014-11-05 21:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-11-05 21:14 - 2014-11-05 21:14 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-11-05 21:14 - 2014-11-05 21:14 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-11-05 21:14 - 2014-11-05 21:14 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-11-05 21:14 - 2014-11-05 21:14 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-11-05 21:14 - 2014-11-05 21:14 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-11-05 21:14 - 2014-11-05 21:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-11-05 21:13 - 2014-11-05 21:13 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-11-05 21:13 - 2014-11-05 21:13 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-11-05 21:13 - 2014-11-05 21:13 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-11-05 21:13 - 2014-11-05 21:13 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-11-05 21:13 - 2014-11-05 21:13 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-11-05 21:13 - 2014-11-05 21:13 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-11-05 21:13 - 2014-11-05 21:13 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 01988096 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 01247744 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 01158144 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00906240 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-11-05 21:11 - 2014-11-05 21:11 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-11-05 21:10 - 2014-11-17 11:31 - 00017868 _____ () C:\Windows\IE11_main.log 2014-11-05 21:10 - 2014-11-05 21:10 - 01505280 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-11-05 21:08 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-11-05 21:08 - 2014-06-16 02:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-11-05 21:08 - 2014-06-16 02:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-11-05 21:08 - 2014-06-16 02:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-11-05 21:08 - 2014-06-03 10:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-11-05 21:08 - 2014-06-03 10:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-11-05 21:08 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-11-05 21:08 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-11-05 21:08 - 2014-04-05 03:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-11-05 21:08 - 2014-04-05 03:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-11-05 21:08 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-11-05 21:08 - 2014-03-26 15:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-11-05 21:08 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-11-05 21:08 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-11-05 21:08 - 2014-03-04 10:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-11-05 21:08 - 2014-03-04 10:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-11-05 21:08 - 2014-03-04 10:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-11-05 21:08 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-11-05 21:08 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-11-05 21:08 - 2013-08-02 02:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 01:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-11-05 21:08 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-11-05 21:08 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-11-05 21:08 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-11-05 21:08 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-11-05 21:08 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-11-05 21:08 - 2013-04-12 14:45 - 01211752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-11-05 21:08 - 2012-06-06 06:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-11-05 21:08 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-11-05 21:08 - 2012-02-17 05:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-11-05 21:08 - 2011-12-16 08:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-11-05 21:08 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-11-05 21:08 - 2011-03-03 06:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-11-05 21:08 - 2011-03-03 06:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-11-05 21:08 - 2011-03-03 06:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-11-05 21:07 - 2014-09-29 01:41 - 02379264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-11-05 21:07 - 2014-09-13 02:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-11-05 21:07 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-11-05 21:07 - 2014-08-23 02:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-11-05 21:07 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2014-11-05 21:07 - 2014-07-17 02:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-11-05 21:07 - 2014-07-17 02:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-11-05 21:07 - 2014-07-17 02:39 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-11-05 21:07 - 2014-07-17 02:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-11-05 21:07 - 2014-07-17 02:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-11-05 21:07 - 2014-07-17 02:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-11-05 21:07 - 2014-07-17 02:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-11-05 21:07 - 2014-07-17 02:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-11-05 21:07 - 2014-07-17 02:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-11-05 21:07 - 2014-07-17 02:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-11-05 21:07 - 2014-07-14 02:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-11-05 21:07 - 2014-07-07 02:40 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-11-05 21:07 - 2014-07-07 02:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-11-05 21:07 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-11-05 21:07 - 2014-05-30 08:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-11-05 21:07 - 2014-05-30 08:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-11-05 21:07 - 2014-05-30 08:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-11-05 21:07 - 2014-05-30 08:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-11-05 21:07 - 2014-05-30 07:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-11-05 21:07 - 2014-03-25 03:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-11-05 21:07 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-11-05 21:07 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-11-05 21:07 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-11-05 21:07 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-11-05 21:07 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-11-05 21:07 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-11-05 21:07 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-11-05 21:07 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-11-05 21:07 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-11-05 21:07 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-11-05 21:07 - 2013-10-04 02:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-11-05 21:07 - 2013-10-04 02:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-11-05 21:07 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-11-05 21:07 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-11-05 21:07 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-11-05 21:07 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-11-05 21:07 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-11-05 21:07 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-11-05 21:07 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-11-05 21:07 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-11-05 21:07 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-11-05 21:07 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-11-05 21:07 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-11-05 21:07 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-11-05 21:07 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-11-05 21:07 - 2013-02-15 04:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-11-05 21:07 - 2013-02-12 04:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-11-05 21:07 - 2012-11-02 06:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-11-05 21:07 - 2012-09-25 23:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-11-05 21:07 - 2012-07-04 22:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-11-05 21:07 - 2012-07-04 22:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-11-05 21:07 - 2012-07-04 22:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-11-05 21:07 - 2012-05-14 05:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-11-05 21:07 - 2012-04-26 05:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-11-05 21:07 - 2012-04-26 05:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-11-05 21:07 - 2012-03-17 08:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-11-05 21:07 - 2011-10-26 05:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-11-05 21:07 - 2011-10-26 05:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-11-05 21:07 - 2011-10-15 06:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-11-05 21:07 - 2011-08-27 05:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-11-05 21:07 - 2011-08-27 05:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-11-05 21:07 - 2011-08-17 05:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-11-05 21:07 - 2011-08-17 05:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-11-05 21:07 - 2011-07-09 03:30 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-11-05 21:07 - 2011-06-15 09:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll 2014-11-05 21:07 - 2011-06-15 09:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-11-05 21:07 - 2011-06-15 09:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-11-05 21:07 - 2011-06-15 09:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-11-05 21:07 - 2011-06-15 09:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-11-05 21:07 - 2011-05-24 11:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-11-05 21:07 - 2011-05-03 05:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-11-05 21:07 - 2011-04-29 03:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-11-05 21:07 - 2011-04-29 03:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-11-05 21:07 - 2011-04-29 03:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-11-05 21:07 - 2011-04-27 03:17 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-11-05 21:07 - 2011-04-27 03:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-11-05 21:07 - 2011-03-11 06:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-11-05 21:07 - 2011-03-11 06:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-11-05 21:07 - 2011-02-23 05:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-11-05 21:07 - 2010-12-23 06:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-11-05 21:07 - 2010-12-23 06:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-11-05 21:07 - 2010-12-23 06:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-11-05 21:03 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-11-05 21:03 - 2014-04-12 03:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-11-05 21:03 - 2014-04-12 03:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-11-05 21:03 - 2014-04-12 03:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-11-05 21:03 - 2014-04-12 03:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-11-05 21:03 - 2014-04-12 03:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-11-05 21:03 - 2014-04-12 03:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-11-05 21:03 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-11-05 21:03 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-11-05 21:03 - 2013-11-27 02:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-11-05 21:03 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-11-05 21:03 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-11-05 21:03 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-11-05 21:03 - 2013-07-04 13:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-11-05 21:03 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-11-05 21:00 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-11-05 21:00 - 2013-02-27 05:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-11-05 21:00 - 2012-11-28 23:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-11-05 21:00 - 2012-11-28 23:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-11-05 21:00 - 2012-11-28 23:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-11-05 20:03 - 2014-05-14 17:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-11-05 20:03 - 2014-05-14 17:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-11-05 20:03 - 2014-05-14 17:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-11-05 20:03 - 2014-05-14 17:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-11-05 20:02 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-11-05 20:02 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-11-05 20:02 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-11-05 20:02 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-11-05 20:02 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-11-05 19:53 - 2014-11-06 15:10 - 00329216 ___SH () C:\EUMONBMP.SYS 2014-11-05 19:47 - 2014-10-28 05:35 - 00229000 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-11-05 19:41 - 2014-11-17 11:26 - 00000616 __RSH () C:\Users\rambo\ntuser.pol 2014-11-05 19:36 - 2014-11-19 03:28 - 00000000 ____D () C:\Temp 2014-11-05 19:33 - 2013-03-16 12:51 - 00186952 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\Windows\system32\Drivers\EuFdDisk.sys 2014-11-05 19:33 - 2013-03-16 12:48 - 00041544 _____ () C:\Windows\system32\Drivers\EUBKMON.sys 2014-11-05 19:33 - 2013-03-16 12:43 - 00015944 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\Windows\system32\Drivers\eudskacs.sys 2014-11-05 19:33 - 2013-03-16 12:40 - 00050248 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\Windows\system32\Drivers\eubakup.sys 2014-11-05 19:32 - 2014-11-18 16:53 - 00000000 ____D () C:\Program Files\Admin 2014-11-05 19:19 - 2014-11-05 19:19 - 00001421 _____ () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-11-05 19:18 - 2014-11-17 20:14 - 01048576 ___SH () C:\Users\rambo\ntuser.bak 2014-11-05 19:18 - 2014-11-17 20:14 - 00000000 ____D () C:\Users\rambo 2014-11-05 19:18 - 2014-11-05 19:18 - 00000020 ___SH () C:\Users\rambo\ntuser.ini 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Ustawienia lokalne 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Szablony 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Moje dokumenty 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Menu Start 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Documents\Moje wideo 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Documents\Moje obrazy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Documents\Moja muzyka 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\Dane aplikacji 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Public\Documents\Moje wideo 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Public\Documents\Moje obrazy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Public\Documents\Moja muzyka 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Ustawienia lokalne 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Szablony 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Moje dokumenty 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Menu Start 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Documents\Moje wideo 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Documents\Moje obrazy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Documents\Moja muzyka 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\Dane aplikacji 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje wideo 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje obrazy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default User\Documents\Moja muzyka 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Ulubione 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Szablony 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Pulpit 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Menu Start 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Dokumenty 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 _SHDL () C:\ProgramData\Dane aplikacji 2014-11-05 19:18 - 2014-11-05 19:18 - 00000000 __SHD () C:\Recovery 2014-11-05 19:18 - 2009-07-14 05:09 - 00000000 ___RD () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-11-05 19:18 - 2009-07-14 05:06 - 00000000 ___RD () C:\Users\rambo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-11-05 19:12 - 2014-11-19 03:20 - 01358673 _____ () C:\Windows\WindowsUpdate.log 2014-11-05 19:10 - 2014-11-05 19:12 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-11-05 19:08 - 2014-11-05 19:18 - 00000000 ____D () C:\Windows\Panther 2014-11-05 19:08 - 2014-11-05 19:08 - 00008192 __RSH () C:\BOOTSECT.BAK 2014-11-05 19:08 - 2010-11-20 22:30 - 00383786 __RSH () C:\bootmgr ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-19 03:21 - 2009-07-14 05:17 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-11-19 03:20 - 2010-11-20 22:49 - 00009672 _____ () C:\Windows\PFRO.log 2014-11-18 23:51 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache 2014-11-18 23:25 - 2009-07-14 05:02 - 00019920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-11-18 23:25 - 2009-07-14 05:02 - 00019920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-11-18 23:25 - 2009-07-14 03:04 - 00000194 _____ () C:\Windows\win.ini 2014-11-18 04:54 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\wfp 2014-11-18 04:54 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\registration 2014-11-18 04:54 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-11-17 20:15 - 2009-07-14 03:03 - 25952256 _____ () C:\Windows\system32\config\software.bak 2014-11-17 20:15 - 2009-07-14 03:03 - 14417920 _____ () C:\Windows\system32\config\system.bak 2014-11-17 20:15 - 2009-07-14 03:03 - 00262144 _____ () C:\Windows\system32\config\security.bak 2014-11-17 20:15 - 2009-07-14 03:03 - 00262144 _____ () C:\Windows\system32\config\sam.bak 2014-11-17 20:15 - 2009-07-14 03:03 - 00262144 _____ () C:\Windows\system32\config\default.bak 2014-11-17 11:54 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-11-17 02:22 - 2011-04-12 05:45 - 00700612 _____ () C:\Windows\system32\perfh015.dat 2014-11-17 02:22 - 2011-04-12 05:45 - 00146150 _____ () C:\Windows\system32\perfc015.dat 2014-11-17 02:22 - 2010-11-20 22:03 - 01546864 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-11-17 02:21 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pl-PL 2014-11-17 00:15 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Help 2014-11-17 00:01 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\security 2014-11-17 00:01 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\AppCompat 2014-11-16 20:55 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system 2014-11-05 22:06 - 2009-07-14 05:02 - 00266064 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-11-05 22:04 - 2009-07-14 05:51 - 00000000 ____D () C:\Program Files\Windows Defender 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-TW 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-CN 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\sv-SE 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ru-RU 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-PT 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-BR 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nl-NL 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nb-NO 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ko-KR 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ja-JP 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\it-IT 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\hu-HU 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fr-FR 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fi-FI 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\el-GR 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE 2014-11-05 22:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\System 2014-11-05 20:07 - 2009-07-14 03:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-11-05 20:07 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-11-05 19:46 - 2009-07-14 05:51 - 00000000 ____D () C:\Windows\system32\restore 2014-11-05 19:40 - 2009-07-14 03:37 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-11-05 19:18 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Default 2014-11-05 19:18 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Windows NT 2014-11-05 19:10 - 2011-04-12 05:53 - 00000000 ____D () C:\Windows\CSC 2014-11-05 19:10 - 2009-07-14 05:02 - 00002790 _____ () C:\Windows\DtcInstall.log 2014-11-05 19:08 - 2009-07-14 05:55 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-11-05 19:08 - 2009-07-14 05:51 - 00028672 _____ () C:\Windows\system32\config\BCD-Template ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-11-16 21:58 ==================== End Of Log ============================