OTL logfile created on: 2015-06-25 15:46:48 - Run 3 OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\WT\Desktop 64bit- An unknown product Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17843) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 45,00% Memory free 6,00 Gb Paging File | 4,00 Gb Available in Paging File | 65,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 50,17 Gb Total Space | 3,01 Gb Free Space | 6,00% Space Free | Partition Type: NTFS Drive D: | 61,52 Gb Total Space | 7,24 Gb Free Space | 11,78% Space Free | Partition Type: NTFS Computer Name: T61 | User Name: WT | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2015-06-25 13:32:17 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\WT\Desktop\OTL_3.2.17.3.exe PRC - [2015-06-23 19:16:36 | 003,423,408 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_194.exe PRC - [2015-06-19 11:02:05 | 002,510,784 | ---- | M] () -- C:\Program Files (x86)\AVG Secure Search\vprot.exe PRC - [2015-06-19 11:02:05 | 001,812,416 | ---- | M] (AVG Secure Search) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe PRC - [2015-06-19 11:02:04 | 000,166,848 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\loggingserver.exe PRC - [2015-06-03 08:09:59 | 000,376,944 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe PRC - [2015-06-03 08:09:53 | 000,270,960 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe PRC - [2015-03-23 14:00:26 | 000,066,000 | ---- | M] (Lenovo) -- C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe PRC - [2015-02-27 08:59:24 | 029,731,096 | ---- | M] (SlimWare Utilities, Inc.) -- C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe PRC - [2015-01-28 14:08:58 | 001,349,576 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe PRC - [2014-12-19 09:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2014-05-27 11:11:30 | 000,257,072 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\lenovo\ZOOM\TpScrex.exe PRC - [2014-05-27 11:10:38 | 000,149,040 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\lenovo\HOTKEY\TPOSDSVC.exe PRC - [2014-05-27 11:10:34 | 000,330,800 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\lenovo\HOTKEY\TPONSCR.exe PRC - [2014-05-27 11:10:32 | 000,125,488 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\lenovo\HOTKEY\TPHKSVC.exe PRC - [2014-01-02 22:58:27 | 000,151,552 | ---- | M] () -- C:\Windows\KMService.exe PRC - [2014-01-02 22:58:27 | 000,008,192 | ---- | M] () -- C:\Windows\SysWOW64\srvany.exe PRC - [2013-10-22 07:04:00 | 000,127,784 | ---- | M] (Lenovo Group Limited) -- C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.exe PRC - [2011-12-26 12:41:50 | 002,512,184 | ---- | M] (Lenovo Group Limited) -- C:\Program Files (x86)\Lenovo\Password Manager\password_manager.exe PRC - [2009-05-18 14:28:04 | 001,314,816 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2015-06-25 13:32:17 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\WT\Desktop\OTL_3.2.17.3.exe MOD - [2015-04-24 19:54:13 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - File not found [Auto | Running] -- C:\Windows\SysNative\srvany.exe -- (KMService) SRV:[b]64bit:[/b] - [2015-05-25 20:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack) SRV:[b]64bit:[/b] - [2015-05-22 20:47:34 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService) SRV:[b]64bit:[/b] - [2015-01-28 14:08:58 | 001,349,576 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe -- (ekrn) SRV:[b]64bit:[/b] - [2014-07-14 17:49:43 | 001,471,792 | ---- | M] (Flexera Software LLC) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64) SRV:[b]64bit:[/b] - [2014-06-10 11:44:50 | 000,125,424 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe -- (TPHKLOAD) SRV:[b]64bit:[/b] - [2014-05-27 11:10:46 | 000,110,128 | ---- | M] (Lenovo Group Limited) [Auto | Stopped] -- C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe -- (LENOVO.MICMUTE) SRV:[b]64bit:[/b] - [2014-05-27 11:10:32 | 000,125,488 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe -- (TPHKSVC) SRV:[b]64bit:[/b] - [2014-02-27 02:52:12 | 000,068,440 | ---- | M] (Lenovo.) [Auto | Running] -- C:\Windows\SysNative\ibmpmsvc.exe -- (IBMPMSVC) SRV:[b]64bit:[/b] - [2013-12-18 10:38:36 | 000,042,808 | ---- | M] (AVG) [Auto | Running] -- C:\Windows\SysNative\uxtuneup.dll -- (UxTuneUp) SRV:[b]64bit:[/b] - [2013-11-29 19:20:12 | 000,047,448 | ---- | M] (Lenovo.) [On_Demand | Stopped] -- C:\Windows\SysNative\TPHDEXLG64.exe -- (TPHDEXLGSVC) SRV:[b]64bit:[/b] - [2013-05-27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2011-11-01 14:37:56 | 001,518,352 | ---- | M] (Intel(R) Corporation) [Disabled | Stopped] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) SRV:[b]64bit:[/b] - [2011-11-01 14:22:28 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Disabled | Stopped] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) SRV:[b]64bit:[/b] - [2011-10-20 19:33:22 | 000,135,440 | ---- | M] (Intel(R) Corporation) [Disabled | Stopped] -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe -- (BTHSSecurityMgr) SRV:[b]64bit:[/b] - [2011-10-19 15:25:00 | 000,661,504 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe -- (AMPPALR3) SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV:[b]64bit:[/b] - [2008-07-15 14:09:48 | 000,111,616 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\SysNative\AEADISRV.EXE -- (AEADIFilters) SRV:[b]64bit:[/b] - [2006-11-27 18:45:16 | 000,410,624 | ---- | M] (Conexant Systems, Inc.) [Auto | Running] -- C:\Windows\SysNative\drivers\XAudio64.exe -- (XAudioService) SRV - [2015-06-23 19:16:37 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2015-06-19 11:02:05 | 001,812,416 | ---- | M] (AVG Secure Search) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.5.0\ToolbarUpdater.exe -- (vToolbarUpdater18.5.0) SRV - [2015-06-03 08:09:57 | 000,148,080 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2015-05-15 21:06:22 | 000,049,136 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Lenovo\System Update\SUService.exe -- (SUService) SRV - [2015-03-28 12:58:42 | 000,089,840 | ---- | M] (Hewlett-Packard Company) [Auto | Stopped] -- C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe -- (HPSupportSolutionsFrameworkService) SRV - [2014-12-19 09:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2014-03-21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2014-01-29 11:53:34 | 000,079,360 | ---- | M] (SolidWorks) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe -- (SolidWorks Licensing Service) SRV - [2014-01-29 11:53:31 | 001,044,816 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2014-01-02 22:58:27 | 000,008,192 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\srvany.exe -- (KMService) SRV - [2013-12-18 10:38:40 | 002,102,072 | ---- | M] (AVG) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc) SRV - [2013-12-18 10:38:36 | 000,035,640 | ---- | M] (AVG) [Auto | Running] -- C:\Windows\SysWOW64\uxtuneup.dll -- (UxTuneUp) SRV - [2013-10-22 07:04:00 | 001,669,928 | ---- | M] (Lenovo) [Disabled | Stopped] -- C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE -- (Power Manager DBC Service) SRV - [2013-10-22 07:04:00 | 001,664,808 | ---- | M] (Lenovo Group Limited) [Disabled | Stopped] -- C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE -- (PwmEWSvc) SRV - [2013-10-22 07:04:00 | 000,320,576 | ---- | M] (Lenovo.) [Disabled | Stopped] -- C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE -- (DozeSvc) SRV - [2013-09-11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2012-12-13 17:37:26 | 000,012,288 | ---- | M] (Autodesk, Inc.) [Disabled | Stopped] -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe -- (Autodesk Content Service) SRV - [2007-11-28 03:08:02 | 000,077,824 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe -- (SPTISRV) SRV - [2007-11-28 03:02:20 | 000,053,248 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe -- (MSCSPTISRV) SRV - [2007-11-28 02:43:44 | 000,053,248 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR) SRV - [2005-11-14 02:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2015-06-25 13:21:38 | 000,016,056 | ---- | M] (SlimWare Utilities, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SWDUMon.sys -- (SWDUMon) DRV:[b]64bit:[/b] - [2015-02-23 16:06:26 | 000,246,000 | ---- | M] (ESET) [File_System | System | Running] -- C:\Windows\SysNative\drivers\eamonm.sys -- (eamonm) DRV:[b]64bit:[/b] - [2015-02-23 16:06:26 | 000,169,792 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ehdrv.sys -- (ehdrv) DRV:[b]64bit:[/b] - [2015-02-23 16:06:26 | 000,159,480 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\epfwwfpr.sys -- (epfwwfpr) DRV:[b]64bit:[/b] - [2015-01-26 09:23:56 | 000,037,376 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgandnetmodem64.sys -- (ANDNetModem) DRV:[b]64bit:[/b] - [2015-01-26 09:22:42 | 000,030,720 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgandnetdiag64.sys -- (AndNetDiag) DRV:[b]64bit:[/b] - [2015-01-21 13:59:56 | 000,093,696 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lgandnetndis64.sys -- (andnetndis) DRV:[b]64bit:[/b] - [2014-04-04 09:50:07 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV:[b]64bit:[/b] - [2014-03-05 11:45:46 | 000,040,760 | ---- | M] (Lenovo Information Product(ShenZhen China) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\psadd.sys -- (psadd) DRV:[b]64bit:[/b] - [2014-02-27 02:52:12 | 000,057,144 | ---- | M] (Lenovo.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ibmpmdrv.sys -- (IBMPMDRV) DRV:[b]64bit:[/b] - [2013-11-29 19:20:12 | 000,152,888 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ApsX64.sys -- (Shockprf) DRV:[b]64bit:[/b] - [2013-11-29 19:20:12 | 000,029,496 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ApsHM64.sys -- (TPDIGIMN) DRV:[b]64bit:[/b] - [2013-11-15 16:39:56 | 000,461,040 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP) DRV:[b]64bit:[/b] - [2013-10-22 07:04:00 | 000,029,512 | ---- | M] (Lenovo.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\DZHDD64.SYS -- (DzHDD64) DRV:[b]64bit:[/b] - [2013-10-22 07:04:00 | 000,020,736 | ---- | M] (Lenovo Group Limited) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\TPPWR64V.SYS -- (TPPWRIF) DRV:[b]64bit:[/b] - [2013-10-02 04:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2013-08-29 03:29:52 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser) DRV:[b]64bit:[/b] - [2013-05-22 17:17:54 | 000,015,472 | ---- | M] (Lenovo Group Limited) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\smiifx64.sys -- (lenovo.smi) DRV:[b]64bit:[/b] - [2012-10-30 02:22:32 | 000,302,464 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1e6232e.sys -- (e1express) Intel(R) DRV:[b]64bit:[/b] - [2012-08-23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:[b]64bit:[/b] - [2012-08-23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD) DRV:[b]64bit:[/b] - [2011-11-25 15:04:40 | 000,027,760 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc) DRV:[b]64bit:[/b] - [2011-11-25 15:04:40 | 000,014,448 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt) DRV:[b]64bit:[/b] - [2011-10-19 15:19:08 | 000,195,072 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPALP) DRV:[b]64bit:[/b] - [2011-10-19 15:19:08 | 000,195,072 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL) DRV:[b]64bit:[/b] - [2011-05-30 18:21:40 | 000,013,128 | ---- | M] (Authentec Inc.) [Kernel | Auto | Running] -- C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys -- (smihlp) SMI Helper Driver (smihlp) DRV:[b]64bit:[/b] - [2011-05-30 10:48:04 | 000,040,248 | ---- | M] (Lenovo Information Product(ShenZhen China) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tvti2c.sys -- (TVTI2C) DRV:[b]64bit:[/b] - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2010-11-21 05:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc) DRV:[b]64bit:[/b] - [2010-11-21 05:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2010-11-21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2010-11-20 15:34:04 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm) DRV:[b]64bit:[/b] - [2010-11-20 15:34:04 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus) DRV:[b]64bit:[/b] - [2010-11-20 13:35:34 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb) DRV:[b]64bit:[/b] - [2010-11-20 13:35:22 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr) DRV:[b]64bit:[/b] - [2010-10-07 06:11:52 | 007,533,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwLv64.sys -- (NETwLv64) Sterownik karty Intel(R) DRV:[b]64bit:[/b] - [2010-04-09 00:11:12 | 000,054,824 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btusbflt.sys -- (btusbflt) DRV:[b]64bit:[/b] - [2009-09-03 20:14:30 | 000,057,856 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rixdpx64.sys -- (rismxdp) DRV:[b]64bit:[/b] - [2009-09-03 19:59:28 | 000,054,784 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rimspx64.sys -- (rimsptsk) DRV:[b]64bit:[/b] - [2009-09-03 19:37:02 | 000,067,072 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rimmpx64.sys -- (rimmptsk) DRV:[b]64bit:[/b] - [2009-08-07 06:24:14 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor) DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-14 02:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam) DRV:[b]64bit:[/b] - [2009-07-14 01:21:48 | 000,038,400 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM) DRV:[b]64bit:[/b] - [2009-06-10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92) DRV:[b]64bit:[/b] - [2009-06-10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac) DRV:[b]64bit:[/b] - [2009-06-10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA) DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009-06-10 22:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Sterownik karty Intel(R) DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-18 14:31:56 | 000,497,152 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ADIHdAud.sys -- (ADIHdAudAddService) DRV:[b]64bit:[/b] - [2006-12-21 14:33:28 | 001,511,936 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CAX_DPV.sys -- (HSF_DPV) DRV:[b]64bit:[/b] - [2006-12-21 14:30:50 | 000,300,032 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CAXHWAZL.sys -- (CAXHWAZL) DRV:[b]64bit:[/b] - [2006-12-21 14:29:48 | 000,731,648 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CAX_CNXT.sys -- (winachsf) DRV:[b]64bit:[/b] - [2006-11-27 18:45:06 | 000,009,728 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\XAudio64.sys -- (XAudio) DRV:[b]64bit:[/b] - [2006-06-18 16:27:24 | 000,017,024 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mdmxsdk.sys -- (mdmxsdk) DRV - [2013-09-18 12:14:34 | 000,014,112 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv) DRV - [1996-05-20 05:15:00 | 000,064,000 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\System32\Drivers\SENTINEL.SYS -- (Sentinel) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1104414289-543613260-1847677347-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=170 IE - HKU\S-1-5-21-1104414289-543613260-1847677347-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1104414289-543613260-1847677347-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.countryCode: "PL" FF - prefs.js..browser.search.hiddenOneOffs: "Allegro,AVG Secure Search,DuckDuckGo,Encyklopedia PWN,Merlin,Wikipedia (pl),Wolne Lektury" FF - prefs.js..browser.search.isUS: false FF - prefs.js..browser.search.region: "PL" FF - prefs.js..browser.search.selectedEngine: "AVG Secure Search" FF - prefs.js..browser.startup.homepage: "https://www.google.pl/" FF - prefs.js..keyword.URL: "" FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2013-12-30 23:50:32 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\mozilla\Extensions [2015-06-19 11:03:47 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\mozilla\Firefox\Profiles\83btim74.default-1398242682662\extensions [2015-06-19 11:03:48 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\mozilla\Firefox\Profiles\83btim74.default-1398242682662\extensions\avg@toolbar [2015-06-19 11:02:45 | 000,003,730 | ---- | M] () -- C:\Users\WT\AppData\Roaming\Mozilla\FireFox\Profiles\83btim74.default-1398242682662\searchplugins\avg-secure-search.xml [2015-06-03 08:09:31 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\mozilla firefox\browser\extensions [2015-06-03 08:10:01 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (IePasswordManagerHelper Class) - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\lenovo\Password Manager\tvtpwm_ie_com.dll (Lenovo Group Limited) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (IePasswordManagerHelper Class) - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files (x86)\Lenovo\Password Manager\tvtpwm_ie_com.dll (Lenovo Group Limited) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\PROGRA~2\ALLPLA~1\Iplex\IPLEXT~1.DLL (ALLCinema Ltd.) O4:[b]64bit:[/b] - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4:[b]64bit:[/b] - HKLM..\Run: [PasswordManager] C:\Program Files\lenovo\Password Manager\password_manager.exe (Lenovo Group Limited) O4:[b]64bit:[/b] - HKLM..\Run: [PSQLLauncher] C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe (Authentec Inc.) O4:[b]64bit:[/b] - HKLM..\Run: [TpShocks] C:\Windows\SysNative\TpShocks.exe (Lenovo.) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) O4 - HKLM..\Run: [PWMTRV] File not found O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.) O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG Secure Search\vprot.exe () O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-1104414289-543613260-1847677347-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd) O4 - HKU\S-1-5-21-1104414289-543613260-1847677347-1000..\Run: [HP Officejet Pro 8500 A910 (NET)] C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Co.) O4 - HKU\S-1-5-21-1104414289-543613260-1847677347-1000..\Run: [Napisy24.pl] C:\Program Files (x86)\Napisy24\Napisy24.exe (Napisy24.pl) O4 - HKU\S-1-5-21-1104414289-543613260-1847677347-1000..\Run: [Napisy24Update] C:\Program Files (x86)\Napisy24\Napisy24Update.exe (Napisy24.pl) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O4 - Startup: C:\Users\WT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1 O7 - HKU\S-1-5-21-1104414289-543613260-1847677347-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: = O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\lenovo\Password Manager\tvtpwm_ie_com.dll (Lenovo Group Limited) O9 - Extra 'Tools' menuitem : Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files (x86)\Lenovo\Password Manager\tvtpwm_ie_com.dll (Lenovo Group Limited) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O18:[b]64bit:[/b] - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - Reg Error: Key error. File not found O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation) O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.5.0\ViProtocol.dll (AVG Secure Search) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20:[b]64bit:[/b] - Winlogon\Notify\psfus: DllName - Reg Error: Key error. - C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll (Authentec Inc.) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O27:[b]64bit:[/b] - HKLM IFEO\connect.service.contentservice.admin.exe: Debugger - C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe (AVG) O27:[b]64bit:[/b] - HKLM IFEO\dtlite.exe: Debugger - C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe (AVG) O27:[b]64bit:[/b] - HKLM IFEO\kiesagent.exe: Debugger - C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe (AVG) O27:[b]64bit:[/b] - HKLM IFEO\pwmui.exe: Debugger - C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe (AVG) O27:[b]64bit:[/b] - HKLM IFEO\setup.exe: Debugger - C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe (AVG) O27:[b]64bit:[/b] - HKLM IFEO\sptdinst-x64.exe: Debugger - C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe (AVG) O27 - HKLM IFEO\connect.service.contentservice.admin.exe: Debugger - "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe" (AVG) O27 - HKLM IFEO\dtlite.exe: Debugger - "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe" (AVG) O27 - HKLM IFEO\kiesagent.exe: Debugger - "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe" (AVG) O27 - HKLM IFEO\pwmui.exe: Debugger - "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe" (AVG) O27 - HKLM IFEO\setup.exe: Debugger - "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe" (AVG) O27 - HKLM IFEO\sptdinst-x64.exe: Debugger - "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe" (AVG) O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2014-06-02 13:16:21 | 000,000,000 | ---D | M] - D:\AutoCAD_2014_Polish_Win_64bit_dlm -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2015-06-25 13:31:57 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\WT\Desktop\OTL_3.2.17.3.exe [2015-06-25 09:40:26 | 000,000,000 | ---D | C] -- C:\Users\WT\Desktop\Kulisiewicz [2015-06-21 22:59:40 | 000,000,000 | ---D | C] -- C:\Users\WT\Desktop\Nowy folder (3) [2015-06-20 16:07:26 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Roaming\HpUpdate [2015-06-20 16:07:07 | 000,741,480 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\SysNative\HPDiscoPM5312.dll [2015-06-20 16:06:17 | 000,000,000 | ---D | C] -- C:\Program Files\HP [2015-06-20 16:04:37 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Local\HP [2015-06-20 15:58:35 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Local\Hewlett-Packard [2015-06-20 15:57:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hewlett-Packard [2015-06-20 15:01:50 | 000,231,424 | ---- | C] (Hewlett-Packard) -- C:\Windows\SysNative\hpbprtmonui.dll [2015-06-20 15:01:49 | 000,423,936 | ---- | C] (Hewlett-Packard) -- C:\Windows\SysNative\hpbprtmon.dll [2015-06-20 15:01:49 | 000,413,184 | ---- | C] (Hewlett-Packard) -- C:\Windows\SysNative\hpbrprtmon.dll [2015-06-20 15:00:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP [2015-06-20 14:55:07 | 000,000,000 | ---D | C] -- C:\ProgramData\HP [2015-06-20 14:53:11 | 000,000,000 | ---D | C] -- C:\HP_ePrint [2015-06-19 11:41:46 | 000,552,760 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\PROUnstl.exe [2015-06-19 11:39:19 | 000,302,464 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\e1e6232e.sys [2015-06-19 11:39:19 | 000,101,216 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\NicInE6.dll [2015-06-19 11:39:19 | 000,036,472 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\NicCo36.dll [2015-06-19 11:39:18 | 000,121,440 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\e1000msg.dll [2015-06-19 11:36:20 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll [2015-06-19 11:36:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel [2015-06-19 11:31:34 | 000,090,112 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\snymsico.dll [2015-06-19 11:31:33 | 000,172,032 | ---- | C] (Ricoh Company,Ltd) -- C:\Windows\SysNative\rixdicon.dll [2015-06-19 11:31:33 | 000,067,072 | ---- | C] (REDC) -- C:\Windows\SysNative\drivers\rimmpx64.sys [2015-06-19 11:31:33 | 000,057,856 | ---- | C] (REDC) -- C:\Windows\SysNative\drivers\rixdpx64.sys [2015-06-19 11:31:33 | 000,054,784 | ---- | C] (REDC) -- C:\Windows\SysNative\drivers\rimspx64.sys [2015-06-19 11:07:32 | 000,000,000 | ---D | C] -- C:\ProgramData\SlimWare Utilities, Inc [2015-06-19 11:03:52 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Local\AVG Secure Search [2015-06-19 11:02:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\AVG Secure Search [2015-06-19 11:02:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG Secure Search [2015-06-19 11:02:44 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG Secure Search [2015-06-19 11:01:32 | 000,016,056 | ---- | C] (SlimWare Utilities, Inc.) -- C:\Windows\SysNative\drivers\SWDUMon.sys [2015-06-19 11:01:19 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Local\SlimWare Utilities Inc [2015-06-19 11:00:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SlimDrivers [2015-06-19 11:00:15 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Downloaded Installers [2015-06-19 10:26:21 | 000,000,000 | ---D | C] -- C:\ProgramData\SP_FT_Logs [2015-06-19 08:41:40 | 001,730,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01009.dll [2015-06-19 08:41:40 | 001,011,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinUSBCoInstaller2.dll [2015-06-15 09:09:30 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE [2015-06-15 07:47:32 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle [2015-06-15 07:34:34 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Roaming\Andy [2015-06-15 07:34:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Andy [2015-06-10 17:06:08 | 001,119,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll [2015-06-10 17:06:08 | 001,021,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll [2015-06-10 17:06:08 | 000,700,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll [2015-06-10 17:06:08 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll [2015-06-10 17:06:07 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll [2015-06-10 17:06:07 | 000,423,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll [2015-06-10 17:06:07 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll [2015-06-10 17:06:05 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll [2015-06-10 17:06:00 | 014,635,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll [2015-06-10 17:05:57 | 011,411,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll [2015-06-10 17:05:54 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL [2015-06-10 17:05:54 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll [2015-06-10 17:05:54 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll [2015-06-10 17:05:54 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx [2015-06-10 17:05:54 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll [2015-06-10 17:05:54 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx [2015-06-10 17:05:54 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll [2015-06-10 17:05:53 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL [2015-06-10 17:05:27 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe [2015-06-10 17:05:27 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll [2015-06-10 17:05:27 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll [2015-06-10 17:05:26 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll [2015-06-10 17:05:26 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll [2015-06-10 17:05:25 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe [2015-06-10 17:05:25 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll [2015-06-10 17:05:25 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll [2015-06-10 17:05:25 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll [2015-06-10 17:05:24 | 000,689,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll [2015-06-10 17:05:24 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxtrans.dll [2015-06-10 17:05:24 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll [2015-06-10 17:05:20 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl [2015-06-10 17:05:20 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll [2015-06-10 17:05:20 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll [2015-06-10 17:05:20 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll [2015-06-10 17:05:20 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll [2015-06-10 17:05:20 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll [2015-06-10 17:05:19 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe [2015-06-10 17:05:19 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll [2015-06-10 17:05:19 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll [2015-06-10 17:05:19 | 000,418,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxtmsft.dll [2015-06-10 17:05:19 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll [2015-06-10 17:05:19 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe [2015-06-10 17:05:18 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll [2015-06-10 17:05:18 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll [2015-06-10 17:05:17 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl [2015-06-10 17:05:15 | 004,305,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9.dll [2015-06-10 17:05:15 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll [2015-06-10 17:05:15 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll [2015-06-10 17:05:15 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe [2015-06-10 17:05:14 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll [2015-06-10 17:05:14 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec [2015-06-10 17:05:14 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll [2015-06-10 17:05:13 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll [2015-06-10 17:05:12 | 006,026,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll [2015-06-10 17:05:12 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll [2015-06-10 17:05:12 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll [2015-06-10 17:05:12 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll [2015-06-10 17:05:12 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll [2015-06-10 17:05:11 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec [2015-06-10 17:05:10 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll [2015-06-10 17:05:10 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll [2015-06-10 17:03:15 | 001,255,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagtrack.dll [2015-06-10 17:03:13 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll [2015-06-10 17:03:11 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll [2015-06-10 17:03:10 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll [2015-06-10 17:03:09 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll [2015-06-10 17:03:08 | 003,989,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe [2015-06-10 17:03:07 | 005,569,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe [2015-06-10 17:03:05 | 001,728,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll [2015-06-10 17:03:05 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll [2015-06-10 17:03:04 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe [2015-06-10 17:03:03 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll [2015-06-10 17:03:03 | 000,404,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tracerpt.exe [2015-06-10 17:03:03 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tracerpt.exe [2015-06-10 17:03:03 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll [2015-06-10 17:03:02 | 003,934,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe [2015-06-10 17:03:02 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe [2015-06-10 17:03:00 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll [2015-06-10 17:02:59 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll [2015-06-10 17:02:59 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sechost.dll [2015-06-10 17:02:59 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe [2015-06-10 17:02:59 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe [2015-06-10 17:02:58 | 000,635,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll [2015-06-10 17:02:58 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncrypt.dll [2015-06-10 17:02:58 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll [2015-06-10 17:02:58 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe [2015-06-10 17:02:57 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe [2015-06-10 17:02:57 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll [2015-06-10 17:02:57 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe [2015-06-10 17:02:57 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\typeperf.exe [2015-06-10 17:02:57 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll [2015-06-10 17:02:57 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe [2015-06-10 17:02:57 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\typeperf.exe [2015-06-10 17:02:57 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe [2015-06-10 17:02:57 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe [2015-06-10 17:02:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskperf.exe [2015-06-10 17:02:56 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskperf.exe [2015-06-10 17:02:56 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll [2015-06-10 17:02:55 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll [2015-06-10 17:02:55 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll [2015-06-10 17:02:55 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll [2015-06-10 17:02:54 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll [2015-06-10 17:02:53 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll [2015-06-10 17:02:53 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll [2015-06-10 17:02:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll [2015-06-10 17:02:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll [2015-06-10 17:02:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll [2015-06-10 17:02:50 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll [2015-06-10 17:02:50 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll [2015-06-10 17:02:50 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll [2015-06-10 17:02:50 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll [2015-06-10 17:02:50 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll [2015-06-10 17:02:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll [2015-06-10 17:02:49 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe [2015-06-10 17:02:49 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll [2015-06-10 17:02:49 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll [2015-06-10 17:02:49 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll [2015-06-10 17:02:49 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll [2015-06-10 17:02:49 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll [2015-06-10 17:02:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll [2015-06-10 17:02:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll [2015-06-10 17:02:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll [2015-06-10 17:02:49 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe [2015-06-10 17:02:47 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll [2015-06-10 17:02:47 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll [2015-06-10 17:02:45 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll [2015-06-10 17:02:45 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll [2015-06-10 17:02:45 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll [2015-06-10 17:02:45 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll [2015-06-10 17:02:45 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UtcResources.dll [2015-06-10 17:00:29 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll [2015-06-10 16:59:14 | 000,069,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\stream.sys [2015-06-03 08:09:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox [2015-06-01 17:31:37 | 000,000,000 | ---D | C] -- C:\Users\WT\AppData\Local\GWX [2011-12-07 21:32:24 | 000,216,064 | ---- | C] ( ) -- C:\Windows\SysWow64\Lagarith.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2015-06-25 15:22:12 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2015-06-25 15:22:11 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2015-06-25 13:32:17 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\WT\Desktop\OTL_3.2.17.3.exe [2015-06-25 13:31:11 | 000,045,104 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2015-06-25 13:31:11 | 000,045,104 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2015-06-25 13:23:48 | 000,000,404 | ---- | M] () -- C:\Windows\tasks\SlimDrivers Startup.job [2015-06-25 13:21:38 | 000,016,056 | ---- | M] (SlimWare Utilities, Inc.) -- C:\Windows\SysNative\drivers\SWDUMon.sys [2015-06-25 08:05:08 | 190,683,462 | ---- | M] () -- C:\Users\WT\Desktop\Mechanika zadania rozwiazane.rar [2015-06-24 23:08:42 | 000,789,252 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2015-06-24 23:08:42 | 000,174,798 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2015-06-24 23:08:41 | 000,702,036 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2015-06-24 23:08:41 | 000,140,842 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2015-06-24 23:08:40 | 001,803,136 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2015-06-23 23:30:05 | 006,574,094 | ---- | M] () -- C:\Users\WT\Desktop\ipp - opracowanie Kasi.pdf [2015-06-23 23:29:21 | 005,949,706 | ---- | M] () -- C:\Users\WT\Desktop\ipp-zeszyt.pdf [2015-06-23 19:16:36 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2015-06-23 19:16:36 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2015-06-23 01:54:33 | 000,058,255 | ---- | M] () -- C:\Users\WT\Desktop\lesiuk.jpg [2015-06-22 23:24:55 | 000,049,488 | ---- | M] () -- C:\Users\WT\Desktop\lesiuk kolo.jpg [2015-06-22 18:12:31 | 000,522,912 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2015-06-21 23:02:13 | 013,745,997 | ---- | M] () -- C:\Users\WT\Desktop\lesiuk zadania.pdf [2015-06-21 16:48:33 | 000,114,598 | ---- | M] () -- C:\Users\WT\Desktop\mom bezwl.pdf [2015-06-21 16:45:28 | 000,218,326 | ---- | M] () -- C:\Users\WT\Desktop\mom bezwl.png [2015-06-21 16:08:26 | 000,339,956 | ---- | M] () -- C:\Users\WT\Desktop\9momentybezwladnoscifigurplaskich.pdf [2015-06-20 16:07:02 | 000,002,260 | ---- | M] () -- C:\Users\Public\Desktop\HP Officejet Pro 8500 A910.lnk [2015-06-20 16:06:02 | 000,000,057 | ---- | M] () -- C:\ProgramData\Ament.ini [2015-06-19 11:00:39 | 000,002,467 | ---- | M] () -- C:\Users\Public\Desktop\SlimDrivers.lnk [2015-06-19 08:41:40 | 001,730,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01009.dll [2015-06-19 08:41:40 | 001,011,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WinUSBCoInstaller2.dll [2015-06-12 16:53:14 | 000,046,334 | ---- | M] () -- C:\Users\WT\aview.loq [2015-06-12 04:37:44 | 023,300,465 | ---- | M] () -- C:\Users\WT\Desktop\Inżynieria_Powierzchni USM_10h (2).pdf [2015-06-10 22:10:47 | 000,047,585 | ---- | M] () -- C:\Users\WT\Desktop\CHICHOSZ-TEST.rtf [2015-06-07 15:42:04 | 000,019,857 | ---- | M] () -- C:\Users\WT\Desktop\chinol zamówienie 3.xlsx [2015-06-07 14:29:00 | 000,048,897 | ---- | M] () -- C:\Users\WT\Desktop\chinol zamówienie 3.pdf [2015-06-02 09:54:05 | 000,001,015 | ---- | M] () -- C:\Users\WT\Desktop\PWR MBM II ST.lnk [color=#E56717]========== Files Created - No Company Name ==========[/color] [2015-06-25 09:38:11 | 190,683,462 | ---- | C] () -- C:\Users\WT\Desktop\Mechanika zadania rozwiazane.rar [2015-06-24 15:58:24 | 006,574,094 | ---- | C] () -- C:\Users\WT\Desktop\ipp - opracowanie Kasi.pdf [2015-06-24 15:58:24 | 005,949,706 | ---- | C] () -- C:\Users\WT\Desktop\ipp-zeszyt.pdf [2015-06-23 01:54:33 | 000,058,255 | ---- | C] () -- C:\Users\WT\Desktop\lesiuk.jpg [2015-06-22 23:24:54 | 000,049,488 | ---- | C] () -- C:\Users\WT\Desktop\lesiuk kolo.jpg [2015-06-21 23:02:28 | 013,745,997 | ---- | C] () -- C:\Users\WT\Desktop\lesiuk zadania.pdf [2015-06-21 16:48:52 | 000,114,598 | ---- | C] () -- C:\Users\WT\Desktop\mom bezwl.pdf [2015-06-21 16:45:27 | 000,218,326 | ---- | C] () -- C:\Users\WT\Desktop\mom bezwl.png [2015-06-21 16:08:24 | 000,339,956 | ---- | C] () -- C:\Users\WT\Desktop\9momentybezwladnoscifigurplaskich.pdf [2015-06-20 16:07:02 | 000,002,260 | ---- | C] () -- C:\Users\Public\Desktop\HP Officejet Pro 8500 A910.lnk [2015-06-20 16:06:02 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini [2015-06-19 11:41:48 | 000,001,904 | ---- | C] () -- C:\Windows\SysNative\SetupBD.din [2015-06-19 11:39:19 | 000,002,716 | ---- | C] () -- C:\Windows\SysNative\e1e6232e.din [2015-06-19 11:02:06 | 000,000,404 | ---- | C] () -- C:\Windows\tasks\SlimDrivers Startup.job [2015-06-19 11:00:39 | 000,002,467 | ---- | C] () -- C:\Users\Public\Desktop\SlimDrivers.lnk [2015-06-16 08:48:00 | 000,256,512 | ---- | C] () -- C:\Users\WT\Desktop\zadania na widanke01.doc [2015-06-16 08:47:10 | 000,341,410 | ---- | C] () -- C:\Users\WT\Desktop\(ściaga zadania mat inż).pdf [2015-06-16 08:47:10 | 000,051,199 | ---- | C] () -- C:\Users\WT\Desktop\(ściąga wzory mat inż).pdf [2015-06-15 12:13:42 | 000,522,912 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT [2015-06-12 04:37:22 | 023,300,465 | ---- | C] () -- C:\Users\WT\Desktop\Inżynieria_Powierzchni USM_10h (2).pdf [2015-06-10 22:10:45 | 000,047,585 | ---- | C] () -- C:\Users\WT\Desktop\CHICHOSZ-TEST.rtf [2015-06-07 14:29:04 | 000,048,897 | ---- | C] () -- C:\Users\WT\Desktop\chinol zamówienie 3.pdf [2015-06-07 13:33:33 | 000,019,857 | ---- | C] () -- C:\Users\WT\Desktop\chinol zamówienie 3.xlsx [2015-06-02 09:54:05 | 000,001,015 | ---- | C] () -- C:\Users\WT\Desktop\PWR MBM II ST.lnk [2015-04-25 19:22:15 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\CommonDL.dll [2015-04-25 19:22:15 | 000,002,411 | ---- | C] () -- C:\Windows\SysWow64\lgAxconfig.ini [2015-02-15 14:45:11 | 000,000,048 | ---- | C] () -- C:\Users\WT\AppData\Local\Images.fl [2015-01-12 02:06:30 | 000,007,606 | ---- | C] () -- C:\Users\WT\AppData\Local\recently-used.xbel [2014-06-03 11:19:39 | 000,000,573 | ---- | C] () -- C:\Windows\Simrun2.ini [2014-06-03 11:19:30 | 000,000,185 | ---- | C] () -- C:\Windows\PMGEDIT.INI [2014-06-03 11:19:24 | 000,000,015 | ---- | C] () -- C:\Windows\ProMod4.ini [2014-06-03 07:40:57 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\drivers\SENTINEL.SYS [2014-06-03 07:40:57 | 000,017,920 | ---- | C] () -- C:\Windows\SysWow64\RNBOVDD.DLL [2014-06-03 07:40:55 | 000,034,304 | ---- | C] () -- C:\Windows\SysWow64\SNTI386.DLL [2014-01-29 22:55:44 | 001,683,456 | ---- | C] () -- C:\Windows\SysWow64\Ltclr13n.dll [2014-01-29 22:55:44 | 000,000,380 | ---- | C] () -- C:\Windows\Simrun3.ini [2014-01-29 22:55:42 | 000,338,944 | ---- | C] () -- C:\Windows\SysWow64\LFFPX7.DLL [2014-01-29 22:55:42 | 000,118,784 | ---- | C] () -- C:\Windows\SysWow64\LFKODAK.DLL [2014-01-29 22:54:26 | 000,000,015 | ---- | C] () -- C:\Windows\promod.ini [2014-01-23 19:31:08 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll [2014-01-23 19:31:08 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll [2014-01-23 19:31:08 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll [2014-01-23 19:31:08 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll [2014-01-01 19:09:02 | 001,699,298 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2013-12-30 23:49:07 | 000,258,048 | ---- | C] () -- C:\Windows\SysWow64\libFLAC.dll [2013-03-13 21:39:34 | 003,915,776 | ---- | C] () -- C:\Windows\SysWow64\ffmpeg.dll [2013-03-13 21:38:34 | 000,112,640 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll [2013-03-13 21:35:56 | 000,271,360 | ---- | C] () -- C:\Windows\SysWow64\TomsMoComp_ff.dll [2013-03-13 21:35:38 | 000,157,184 | ---- | C] () -- C:\Windows\SysWow64\ff_unrar.dll [2013-03-13 21:35:36 | 000,147,456 | ---- | C] () -- C:\Windows\SysWow64\ff_libmad.dll [2013-03-13 21:35:36 | 000,099,840 | ---- | C] () -- C:\Windows\SysWow64\ff_wmv9.dll [2013-03-13 21:35:34 | 001,525,760 | ---- | C] () -- C:\Windows\SysWow64\ff_samplerate.dll [2013-03-13 21:35:34 | 000,211,968 | ---- | C] () -- C:\Windows\SysWow64\ff_libdts.dll [2013-03-13 21:35:34 | 000,114,688 | ---- | C] () -- C:\Windows\SysWow64\ff_liba52.dll [2013-03-13 21:35:32 | 000,330,240 | ---- | C] () -- C:\Windows\SysWow64\ff_libfaad2.dll [2013-03-13 21:35:30 | 000,136,704 | ---- | C] () -- C:\Windows\SysWow64\libmpeg2_ff.dll [2012-09-30 00:47:28 | 000,000,178 | ---- | C] () -- C:\Windows\SysWow64\Formats.ini [2011-09-08 16:00:52 | 000,150,528 | ---- | C] () -- C:\Windows\SysWow64\mkx.dll [2011-09-08 16:00:48 | 000,142,336 | ---- | C] () -- C:\Windows\SysWow64\mp4.dll [2011-09-08 16:00:42 | 000,123,392 | ---- | C] () -- C:\Windows\SysWow64\ogm.dll [2011-09-08 16:00:38 | 000,249,856 | ---- | C] () -- C:\Windows\SysWow64\dxr.dll [2011-09-08 16:00:24 | 000,154,624 | ---- | C] () -- C:\Windows\SysWow64\ts.dll [2011-09-08 15:59:54 | 000,080,384 | ---- | C] () -- C:\Windows\SysWow64\mkzlib.dll [2011-09-08 15:59:52 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\mkunicode.dll [2011-06-24 05:58:32 | 000,242,259 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2011-06-24 05:58:04 | 000,644,608 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2011-03-03 13:39:56 | 000,109,568 | ---- | C] () -- C:\Windows\SysWow64\avi.dll [2011-03-03 13:38:10 | 000,097,792 | ---- | C] () -- C:\Windows\SysWow64\avs.dll [2011-03-03 13:37:50 | 000,093,184 | ---- | C] () -- C:\Windows\SysWow64\avss.dll [2011-02-11 12:26:20 | 000,237,568 | ---- | C] () -- C:\Windows\SysWow64\OptimFROG.dll [2010-03-24 13:15:10 | 000,047,104 | ---- | C] () -- C:\Windows\SysWow64\bass_tak.dll [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [color=#E56717]========== LOP Check ==========[/color] [2013-12-31 23:54:09 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\AC3Filter [2015-04-04 13:21:38 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\ACD Systems [2015-06-15 09:11:05 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Andy [2014-11-23 13:37:57 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Arduino [2014-06-26 12:45:00 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Autodesk [2014-02-17 11:09:38 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\AVG [2014-04-15 12:44:07 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\DAEMON Tools Lite [2015-03-20 15:09:11 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Dropbox [2015-02-17 00:18:51 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Garmin [2014-12-07 23:55:47 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\GG [2014-01-16 15:45:36 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\gom [2014-01-01 23:27:52 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Lenovo [2013-12-31 02:31:28 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\NapiProjekt [2015-02-15 14:45:30 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\ObviousIdea [2014-08-11 16:12:36 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Oracle [2013-12-31 01:19:13 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\PwrMgr [2015-02-18 14:18:53 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\Samsung [2014-01-01 19:54:18 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\TuneUp Software [2015-06-19 11:17:43 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\uTorrent [2015-04-14 01:58:53 | 000,000,000 | ---D | M] -- C:\Users\WT\AppData\Roaming\VSO [2015-06-22 21:56:54 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2015-06-25 13:23:48 | 000,000,404 | ---- | M] () -- C:\Windows\Tasks\SlimDrivers Startup.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 256 bytes -> C:\Windows:nlsPreferences < End of report >