Federica Opublikowano 1 Kwietnia 2015 Zgłoś Udostępnij Opublikowano 1 Kwietnia 2015 Witam wszystkich. To mój pierwszy wpis, mam nadzieję, że wszystko zrobię dobrze... Mam problem z laptopem, co chwilę wyświetla mi się informacja "brak odpowiedzi", bez względu na to, co robię, czy jest to praca w jakimś programie, czy przeglądanie internetu. Proszę o wyrozumiałość, bo jestem laiczką, ale postaram się podać wszystkie informacje, jakie wydają mi się pomocne. Laptop to hd 655 procesor AMD E2-1800 APU with Radeon 1,70 GHz zainstalowana pamięć RAM 2,00 GB (dostępne 1,60 GB) system Windows 7 64-bitowy FRST http://wklej.org/id/1677343/ Addition http://wklej.org/id/1677346/ Shortcut http://wklej.org/id/1677347/ GMER http://wklej.org/id/1677348/ Uruchomiłam program HD Tune, wstawiam załączniki. W szukaniu błędów wszystkie pola zielone, czyli ok. Nie znam się, ale szukałam informacji w internecie i wydaje mi się, że dysk będzie do wymiany, ale proszę o pomoc, może ktoś rzuci okiem, będę bardzo wdzięczna. Jeśli będą potrzebne jakieś dodatkowe informacje, to postaram się je dostarczyć. Z góry dziękuję i pozdrawiam Odnośnik do komentarza
wieslaw531 Opublikowano 1 Kwietnia 2015 Zgłoś Udostępnij Opublikowano 1 Kwietnia 2015 Moje zdanie. Dysk po przejściach - zobacz parametr BF (zarejestrowane wstrząsy i wibracje - 15336) + 05 - ilość realokowanych sektorów - wartość bardzo duża i dziwna. Do wymiany. Z nowym musisz obchodzić się delikatniej. Podstawowe pytanie to ponowna instalacja systemu. Czy masz płytę? Odnośnik do komentarza
Federica Opublikowano 2 Kwietnia 2015 Autor Zgłoś Udostępnij Opublikowano 2 Kwietnia 2015 Moje zdanie. Dysk po przejściach - zobacz parametr BF (zarejestrowane wstrząsy i wibracje - 15336) + 05 - ilość realokowanych sektorów - wartość bardzo duża i dziwna. Do wymiany. Z nowym musisz obchodzić się delikatniej. Podstawowe pytanie to ponowna instalacja systemu. Czy masz płytę? tak, mam płytę Odnośnik do komentarza
wieslaw531 Opublikowano 2 Kwietnia 2015 Zgłoś Udostępnij Opublikowano 2 Kwietnia 2015 Kopiuj ważne dane na nośnik zewnętrzny (metoda dowolna), wymieniaj dysk i stawiaj system od nowa. Odnośnik do komentarza
Federica Opublikowano 7 Kwietnia 2015 Autor Zgłoś Udostępnij Opublikowano 7 Kwietnia 2015 Kopiuj ważne dane na nośnik zewnętrzny (metoda dowolna), wymieniaj dysk i stawiaj system od nowa. Tak też zrobię, bardzo dziękuję. Jeszcze tylko jedno pytanie, czy taki częsty komunikat "brak odpowiedzi" może być też objawem czegoś innego poza awarią dysku? Odnośnik do komentarza
Federica Opublikowano 9 Lipca 2015 Autor Zgłoś Udostępnij Opublikowano 9 Lipca 2015 Nowy dysk zakupiony i wymieniony a problem pozostał... Tamten dysk i tak był do wymiany, ale niestety ta akcja nie pomogła na to, z czym mam problem. Niezmiennie sie laptop zawiesza i ciagle jest "brak odpowiedzi". Już nie mogę na nim pracować, a nie mam pomysłu, co może być problemem. Raczej jednak sama sobie nie poradzę, ale dziękuję za rady. No chyba że ktoś jeszcze będzie miał jakiś pomysł, poza oddaniem do serwisu, to ja chętnie przetestuję Dodam tylko, że Memtest nie wykrył żadnych błędów. Coś mam wrażenie, że to po prostu płyta główna :/ Odnośnik do komentarza
wieslaw531 Opublikowano 9 Lipca 2015 Zgłoś Udostępnij Opublikowano 9 Lipca 2015 Zakładam, że system i cały soft postawiony od zera. Pokaż obrazki: 1. System Summary 2. Sensors - najlepiej odpalony tuż po uruchomieniu lapka - uruchomiony log - pracujesz 1 godzinę - zatrzymujesz log i pokazujesz obrazek. 3. Menadżer Urządzeń 4. Zarządzanie dyskami 5. SMART z Crystala Napisz na czym najczęściej się zawiesza i co masz w tym czasie uruchomione. Skopiuj na pulpit cały katalog C:\Windows\System32\winevt\ - kopie spakuj - shostuj gdzieś i daj linka. Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 Witam.Oto wszystko co na razie uzyskałam. Proszę o rzucenie fachowym okiem, może w tych wiadomościach kryje się jakaś wskazówka...1. Additional scan result of Farbar Recovery Scan Tool (x64) Version:26-07-2015Ran by david at 2015-07-27 09:21:43Running from C:\Users\david\DesktopBoot Mode: Normal============================================================================== Accounts: =============================Administrator (S-1-5-21-3412306807-1217589574-2955255516-500 - Administrator - Disabled)david (S-1-5-21-3412306807-1217589574-2955255516-1000 - Administrator - Enabled) => C:\Users\davidGość (S-1-5-21-3412306807-1217589574-2955255516-501 - Limited - Disabled)==================== Security Center ========================(If an entry is included in the fixlist, it will be removed.)AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}==================== Installed Programs ======================(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)AIDA64 Extreme v5.20 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.20 - FinalWire Ltd.)AMD Catalyst Install Manager (HKLM\...\{F56D7C41-9105-8F4B-C791-06BA190CA281}) (Version: 3.0.868.0 - Advanced Micro Devices, Inc.)Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software)CPUID HWMonitor 1.27 (HKLM\...\CPUID HWMonitor_is1) (Version: - )CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World)EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.)GG (HKU\S-1-5-21-3412306807-1217589574-2955255516-1000\...\GG) (Version: 12 - GG Network S.A.)Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) HiddenHP Support Assistant (HKLM-x32\...\{904822F1-6C7D-4B91-B936-6A1C0810544C}) (Version: 7.7.34.34 - Hewlett-Packard Company)Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)Narzędzia diagnostyczne sprzętu (HKLM\...\PC-Doctor for Windows) (Version: 6.0.5205.31 - PC-Doctor, Inc.)Opera Stable 30.0.1835.125 (HKLM-x32\...\Opera 30.0.1835.125) (Version: 30.0.1835.125 - Opera Software)Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.72.410.2013 - Realtek)Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6652 - Realtek Semiconductor Corp.)==================== Custom CLSID (Whitelisted): ==========================(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)CustomCLSID: HKU\S-1-5-21-3412306807-1217589574-2955255516-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\david\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.)==================== Restore Points =========================10-07-2015 22:05:03 Installed HP Quick Launch13-07-2015 09:06:29 Installed 7-Zip 9.20 (x64 edition)13-07-2015 09:27:13 Installed HP Launch Box13-07-2015 09:32:59 Removed HP Quick Launch13-07-2015 09:33:29 Installed HP Quick Launch13-07-2015 09:40:18 Usunięte Realtek Ethernet Controller All-In-One Windows Driver13-07-2015 09:54:43 Removed HP Quick Launch13-07-2015 09:56:11 Installed HP Quick Launch13-07-2015 10:02:11 Operacja przywracania13-07-2015 10:16:53 Windows Update13-07-2015 12:33:38 Windows Update13-07-2015 15:52:02 Windows Update15-07-2015 09:27:10 Instalator modułów systemu Windows15-07-2015 10:10:07 Windows Update17-07-2015 08:39:45 Installed Microsoft Fix it 5068822-07-2015 14:15:05 Installed HP Support Assistant22-07-2015 14:21:06 Instalator modułów systemu Windows22-07-2015 14:22:15 Instalator modułów systemu Windows==================== Hosts content: ===============================(If needed Hosts: directive could be included in the fixlist to reset Hosts.)2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts==================== Scheduled Tasks (Whitelisted) =============(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)Task: {228D1541-C6DB-46C6-BE75-5639FE105B6D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)Task: {5C80A764-0028-440A-8DC9-F93DFA6837FC} - System32\Tasks\Opera scheduled Autoupdate 1436771934 => C:\Program Files (x86)\Opera\launcher.exe [2015-07-10] (Opera Software)Task: {724CA17F-2FE9-4E93-9533-96A60C586F65} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-08-21] (Hewlett-Packard Company)Task: {9CBCF293-918E-4588-80E7-8277888BFA21} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Service Update Utility => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\Service\ServiceUpdater.exe [2015-05-20] (Hewlett-Packard Company)Task: {BADB5248-495C-490E-AE7A-CD5CD808E106} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-13] (Avast Software s.r.o.)Task: {BC2C588E-C1DC-46E9-978C-FBBF172C21EB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Opt-in For HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe [2014-08-21] (Hewlett-Packard Company)Task: {BE78E482-ACD5-45B9-B46F-057C0811EA55} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-08-21] (Hewlett-Packard Company)Task: {E83F28D7-474D-47C4-A773-8759F49EB095} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-08-21] (Hewlett-Packard Company)(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)==================== Loaded Modules (Whitelisted) ==============2012-02-14 23:16 - 2012-02-14 23:16 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll2015-07-13 13:05 - 2015-07-13 13:05 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll2015-07-13 13:05 - 2015-07-13 13:05 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll2015-07-22 11:44 - 2015-07-22 11:44 - 02957312 _____ () C:\Program Files\AVAST Software\Avast\defs\15072200\algo.dll2015-07-27 08:48 - 2015-07-27 08:48 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15072501\algo.dll2015-07-13 13:05 - 2015-07-13 13:05 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll2015-06-17 16:01 - 2015-06-17 16:01 - 03715648 _____ () C:\Users\david\AppData\Local\GG\Application\xulrunner\mozjs.dll2015-06-17 16:01 - 2015-06-17 16:01 - 00122432 _____ () C:\Users\david\AppData\Local\GG\Application\ggdrive\ZLIB1.dll==================== Alternate Data Streams (Whitelisted) =========(If an entry is included in the fixlist, only the ADS will be removed.)==================== Safe Mode (Whitelisted) ===================(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)==================== EXE Association (Whitelisted) ===============(If an entry is included in the fixlist, the registry item will be restored to default or removed.)==================== Internet Explorer trusted/restricted ===============(If an entry is included in the fixlist, it will be removed from the registry.)==================== Other Areas ============================(Currently there is no automatic fix for this section.)HKU\S-1-5-21-3412306807-1217589574-2955255516-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\david\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpgDNS Servers: 31.41.176.2 - 31.41.176.12HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)Windows Firewall is enabled.==================== MSCONFIG/TASK MANAGER disabled items ==(Currently there is no automatic fix for this section.)MSCONFIG\startupreg: GG => "C:\Users\david\AppData\Local\GG\Application\gghub.exe"MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -sMSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun==================== FirewallRules (Whitelisted) ===============(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)==================== Faulty Device Manager Devices ================================= Event log errors: =========================Application errors:==================Error: (07/22/2015 03:19:54 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: System.Windows.Presentation, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020Error: (07/22/2015 03:15:59 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: Microsoft.PowerShell.GPowerShell, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Error: (07/22/2015 03:15:54 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: Microsoft.PowerShell.Editor, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Error: (07/22/2015 03:15:36 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: Microsoft.PowerShell.Commands.Utility, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Error: (07/22/2015 02:20:12 PM) (Source: MsiInstaller) (EventID: 11609) (User: david-komp)Description: Product: HP Customer Experience Enhancements -- Error 1609.An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL)(NULL)(NULL)Error: (07/17/2015 07:59:42 AM) (Source: WinMgmt) (EventID: 10) (User: )Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003Error: (07/15/2015 03:17:26 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Failed to compile: MIGUIControls, Version=1.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020Error: (07/15/2015 03:17:01 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Failed to compile: ehshell, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Error: (07/15/2015 03:13:50 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Failed to compile: System.ServiceModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070020Error: (07/15/2015 03:07:13 PM) (Source: WinMgmt) (EventID: 10) (User: )Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003System errors:=============Error: (07/15/2015 03:06:22 PM) (Source: EventLog) (EventID: 6008) (User: )Description: Poprzednie zamknięcie systemu przy 11:06:16 na 2015-07-15 było nieoczekiwane.Error: (07/15/2015 09:43:01 AM) (Source: Service Control Manager) (EventID: 7043) (User: )Description: Usługa Instalator modułów systemu Windows nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem.Error: (07/15/2015 09:39:47 AM) (Source: Service Control Manager) (EventID: 7043) (User: )Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem.Error: (07/15/2015 09:19:54 AM) (Source: Service Control Manager) (EventID: 7023) (User: )Description: Usługa Instalator modułów systemu Windows zakończyła działanie; wystąpił następujący błąd:%%16405Error: (07/13/2015 01:28:03 PM) (Source: Service Control Manager) (EventID: 7023) (User: )Description: Usługa Instalator modułów systemu Windows zakończyła działanie; wystąpił następujący błąd:%%16405Error: (07/13/2015 01:24:52 PM) (Source: Service Control Manager) (EventID: 7043) (User: )Description: Usługa Instalator modułów systemu Windows nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem.Error: (07/13/2015 12:53:58 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT)Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Aktualizacja zabezpieczeń systemu Windows 7 dla systemów opartych na procesorach x64 (KB3035132).Error: (07/13/2015 12:53:57 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT)Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Aktualizacja zabezpieczeń systemu Windows 7 dla systemów opartych na procesorach x64 (KB3035126).Error: (07/13/2015 12:23:29 PM) (Source: Service Control Manager) (EventID: 7031) (User: )Description: Usługa Service Mgr RazorWeb niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.Error: (07/13/2015 12:23:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: )Description: Usługa Update Mgr RazorWeb niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.Microsoft Office:=========================Error: (07/22/2015 03:19:54 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: System.Windows.Presentation, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020System.Windows.Presentation, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msilError: (07/22/2015 03:15:59 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: Microsoft.PowerShell.GPowerShell, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Microsoft.PowerShell.GPowerShell, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msilError: (07/22/2015 03:15:54 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: Microsoft.PowerShell.Editor, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Microsoft.PowerShell.Editor, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msilError: (07/22/2015 03:15:36 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: Microsoft.PowerShell.Commands.Utility, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020Microsoft.PowerShell.Commands.Utility, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msilError: (07/22/2015 02:20:12 PM) (Source: MsiInstaller) (EventID: 11609) (User: david-komp)Description: Product: HP Customer Experience Enhancements -- Error 1609.An error occurred while applying security settings. Users is not a valid user or group. This could be a problem with the package, or a problem connecting to a domain controller on the network. Check your network connection and click Retry, or Cancel to end the install. Unable to locate the user's SID, system error 1332(NULL)(NULL)(NULL)(NULL)(NULL)Error: (07/17/2015 07:59:42 AM) (Source: WinMgmt) (EventID: 10) (User: )Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003Error: (07/15/2015 03:17:26 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Failed to compile: MIGUIControls, Version=1.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020MIGUIControls, Version=1.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35Error: (07/15/2015 03:17:01 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Failed to compile: ehshell, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020ehshell, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msilError: (07/15/2015 03:13:50 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Failed to compile: System.ServiceModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070020System.ServiceModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089Error: (07/15/2015 03:07:13 PM) (Source: WinMgmt) (EventID: 10) (User: )Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003==================== Memory info ===========================Processor: AMD E2-1800 APU with Radeon HD GraphicsPercentage of memory in use: 59%Total physical RAM: 1640.37 MBAvailable physical RAM: 665.6 MBTotal Virtual: 3280.73 MBAvailable Virtual: 1876.54 MB==================== Drives ================================Drive c: () (Fixed) (Total:931.41 GB) (Free:902.25 GB) NTFS==================== MBR & Partition Table ==========================================================================Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 5856C227)Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)==================== End of log ============================ Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 C.D. 2. OTL Extras logfile created on: 2015-07-22 13:34:16 - Run 1OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\david\Downloads64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstationInternet Explorer (Version = 9.11.9600.17728)Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,60 Gb Total Physical Memory | 0,53 Gb Available Physical Memory | 33,31% Memory free3,20 Gb Paging File | 1,19 Gb Available in Paging File | 37,21% Paging File freePaging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)Drive C: | 931,41 Gb Total Space | 901,89 Gb Free Space | 96,83% Space Free | Partition Type: NTFS Computer Name: DAVID-KOMP | User Name: david | Logged in as Administrator.Boot Mode: Normal | Scan Mode: Current user | Include 64bit ScansCompany Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (All) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>].chm[@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation).cpl[@ = cplfile] -- C:\Windows\SysNative\control.exe (Microsoft Corporation).hlp[@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation).hta[@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation).html[@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software).inf[@ = inffile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation).ini[@ = inifile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation).url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation).js[@ = JSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation).jse[@ = JSEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation).reg[@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation).txt[@ = txtfile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation).vbe[@ = VBEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation).vbs[@ = VBSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation).wsf[@ = WSFFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation).wsh[@ = WSHFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>].bat [@ = batfile] -- "%1" %*.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation).cmd [@ = cmdfile] -- "%1" %*.com [@ = comfile] -- "%1" %*.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation).exe [@ = exefile] -- "%1" %*.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation).hta [@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation).html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software).inf [@ = inffile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation).ini [@ = inifile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation).url [@ = InternetShortcut] -- C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation).js [@ = JSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation).jse [@ = JSEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation).pif [@ = piffile] -- "%1" %*.reg [@ = regfile] -- C:\Windows\SysWow64\regedit.exe (Microsoft Corporation).scr [@ = scrfile] -- "%1" /S.txt [@ = txtfile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation).vbe [@ = VBEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation).vbs [@ = VBSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation).wsf [@ = WSFFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation).wsh [@ = WSHFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>].html [@ = OperaStable] -- C:\Program Files (x86)\Opera\Launcher.exe (Opera Software) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)batfile [open] -- "%1" %*batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)cmdfile [open] -- "%1" %*cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)comfile [open] -- "%1" %*cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)exefile [open] -- "%1" %*helpfile [open] -- Reg Error: Key error.hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)htmlfile [edit] -- Reg Error: Key error.htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)piffile [open] -- "%1" %*regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)regfile [open] -- regedit.exe "%1" (Microsoft Corporation)regfile [merge] -- Reg Error: Key error.regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)scrfile [config] -- "%1"scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %lscrfile [open] -- "%1" /Stxtfile [edit] -- Reg Error: Key error.txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Folder [explore] -- Reg Error: Value error.Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)batfile [open] -- "%1" %*batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)cmdfile [open] -- "%1" %*cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)comfile [open] -- "%1" %*cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)exefile [open] -- "%1" %*helpfile [open] -- Reg Error: Key error.hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)htmlfile [edit] -- Reg Error: Key error.htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1" (Opera Software)inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)piffile [open] -- "%1" %*regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)regfile [open] -- regedit.exe "%1" (Microsoft Corporation)regfile [merge] -- Reg Error: Key error.regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)scrfile [config] -- "%1"scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %lscrfile [open] -- "%1" /Stxtfile [edit] -- Reg Error: Key error.txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Folder [explore] -- Reg Error: Value error.Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]"cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]"AntiVirusOverride" = 0"AntiSpywareOverride" = 0"FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]"EnableFirewall" = 1"DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]"EnableFirewall" = 1"DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]"EnableFirewall" = 1"DisableNotifications" = 0 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime"{58770389-4566-DD7B-07BA-5ADFC0130F0C}" = ccc-utility64"{9DC01ACE-1CCE-1054-7067-75CCD94EDB3D}" = AMD Fuel"{DA2737A4-B639-96F4-1CC2-30D2919EE1FB}" = AMD Steady Video Plug-In"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319"{DAA96F0E-FBC9-21B7-74FC-E77BDE5FC456}" = AMD Media Foundation Decoders"{F56D7C41-9105-8F4B-C791-06BA190CA281}" = AMD Catalyst Install Manager"CPUID HWMonitor_is1" = CPUID HWMonitor 1.27 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]"{03C1E6A6-14BD-A692-6274-BA34EE40936B}" = CCC Help Spanish"{06606691-1113-21B4-50AE-1E043F4A5470}" = CCC Help Chinese Standard"{0C672EF6-BF60-5F2C-95AF-5228BDE4B52F}" = CCC Help German"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319"{1A050FB1-820B-9CAA-52C5-602EC602A759}" = Catalyst Control Center InstallProxy"{1FF5DD4A-3B1F-E795-6EED-A64CF0454D1B}" = CCC Help Norwegian"{200A2254-4E56-19E1-F545-47CD713C8F70}" = CCC Help Greek"{2D511D11-7903-7C76-6E35-CDC5D9F86346}" = Catalyst Control Center Localization All"{31BF9CD1-A904-43B5-A236-53E5E908AD0E}" = Catalyst Control Center - Branding"{3B8EF70B-33D4-3973-5CD7-D3DA0FA69EA1}" = CCC Help Swedish"{406E2FBB-A0EC-3644-130E-B730A3CDE209}" = AMD VISION Engine Control Center"{5A679C2E-188C-040E-E900-F5FD7BAA7556}" = CCC Help Portuguese"{5D4D4D5A-DD1C-64C2-20CC-3FFD7315302D}" = CCC Help Hungarian"{693334CC-D97A-E05E-8CB3-F1FAB22DB75D}" = CCC Help Korean"{6E25C736-E97E-EE91-20C3-10888B5C2600}" = CCC Help Dutch"{75D931D7-FA8E-40EE-D7EE-C6854B9CE23C}" = CCC Help Thai"{8306A58E-D509-2893-D9B5-F8EA03386E36}" = CCC Help French"{85A914C0-65A0-0E98-C930-62FF273492E9}" = Catalyst Control Center Graphics Previews Common"{94E46B5E-5730-E6E1-DC83-84DFD1A8F851}" = CCC Help Czech"{A0502138-497E-47A5-B835-EE362296DAC4}" = CCC Help Turkish"{A50941D9-6B04-37A6-AAF7-65D24F89D7B3}" = CCC Help Danish"{B4F37144-5351-FC17-8CA7-74394A2DF20F}" = CCC Help Japanese"{B9CA2659-7AD5-6B8C-B3B0-586892FEBC46}" = CCC Help Chinese Traditional"{BCA9980F-7D3D-AE17-43FB-725167F54801}" = CCC Help Italian"{BCFAD844-4124-328E-36BE-6852196CE831}" = CCC Help Finnish"{D519F57A-00EE-BE5C-6DE7-B43BFE81A426}" = CCC Help Russian"{E6D7FF92-6935-C2D4-843D-ABBC385D258E}" = CCC Help Polish"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver"{F4446B5B-84B2-6335-82E3-4B2820EB7737}" = CCC Help English"{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}" = Realtek Ethernet Controller All-In-One Windows Driver"AIDA64 Extreme_is1" = AIDA64 Extreme v5.20"Avast" = Avast Free Antivirus"CrystalDiskInfo_is1" = CrystalDiskInfo 6.5.2"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.50"Opera 30.0.1835.125" = Opera Stable 30.0.1835.125 ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]"GG" = GG ========== Last 20 Event Log Errors ========== [ Application Events ]Error - 2015-07-15 03:35:42 | Computer Name = david-komp | Source = .NET Runtime Optimization Service | ID = 1101Description = Error - 2015-07-15 03:40:05 | Computer Name = david-komp | Source = .NET Runtime Optimization Service | ID = 1101Description = Error - 2015-07-15 03:45:07 | Computer Name = david-komp | Source = WinMgmt | ID = 10Description = Error - 2015-07-15 03:45:50 | Computer Name = david-komp | Source = Microsoft-Windows-CAPI2 | ID = 257Description = Zainicjowanie bazy danych wykazu przez Usługi kryptograficzne niepowiodło się. Błąd ESENT: -1305. Error - 2015-07-15 03:49:51 | Computer Name = david-komp | Source = .NET Runtime Optimization Service | ID = 1101Description = Error - 2015-07-15 09:07:13 | Computer Name = david-komp | Source = WinMgmt | ID = 10Description = Error - 2015-07-15 09:13:50 | Computer Name = david-komp | Source = .NET Runtime Optimization Service | ID = 1101Description = Error - 2015-07-15 09:17:01 | Computer Name = david-komp | Source = .NET Runtime Optimization Service | ID = 1101Description = Error - 2015-07-15 09:17:26 | Computer Name = david-komp | Source = .NET Runtime Optimization Service | ID = 1101Description = Error - 2015-07-17 01:59:42 | Computer Name = david-komp | Source = WinMgmt | ID = 10Description = [ System Events ]Error - 2015-07-13 06:23:28 | Computer Name = david-komp | Source = Service Control Manager | ID = 7031Description = Usługa Update Mgr RazorWeb niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynnośćkorekcyjna: Uruchom usługę ponownie. Error - 2015-07-13 06:23:29 | Computer Name = david-komp | Source = Service Control Manager | ID = 7031Description = Usługa Service Mgr RazorWeb niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynnośćkorekcyjna: Uruchom usługę ponownie. Error - 2015-07-13 06:53:57 | Computer Name = david-komp | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20Description = Instalacja nie powiodła się: system Windows nie mógł zainstalowaćnastępującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Aktualizacja zabezpieczeń systemu Windows 7 dla systemów opartych na procesorach x64 (KB3035126). Error - 2015-07-13 06:53:58 | Computer Name = david-komp | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20Description = Instalacja nie powiodła się: system Windows nie mógł zainstalowaćnastępującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Aktualizacja zabezpieczeń systemu Windows 7 dla systemów opartych na procesorach x64 (KB3035132). Error - 2015-07-13 07:24:52 | Computer Name = david-komp | Source = Service Control Manager | ID = 7043Description = Usługa Instalator modułów systemu Windows nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error - 2015-07-13 07:28:03 | Computer Name = david-komp | Source = Service Control Manager | ID = 7023Description = Usługa Instalator modułów systemu Windows zakończyła działanie; wystąpił następujący błąd: %%16405 Error - 2015-07-15 03:19:54 | Computer Name = david-komp | Source = Service Control Manager | ID = 7023Description = Usługa Instalator modułów systemu Windows zakończyła działanie; wystąpił następujący błąd: %%16405 Error - 2015-07-15 03:39:47 | Computer Name = david-komp | Source = Service Control Manager | ID = 7043Description = Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error - 2015-07-15 03:43:01 | Computer Name = david-komp | Source = Service Control Manager | ID = 7043Description = Usługa Instalator modułów systemu Windows nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error - 2015-07-15 09:06:22 | Computer Name = david-komp | Source = EventLog | ID = 6008Description = Poprzednie zamknięcie systemu przy 11:06:16 na ?2015-?07-?15 byłonieoczekiwane. < End of report > Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 C.D. 3. Fix result of Farbar Recovery Scan Tool (x64) Version:26-07-2015Ran by david at 2015-07-27 13:06:37 Run:1Running from C:\Users\david\DesktopLoaded Profiles: david (Available Profiles: david)Boot Mode: Normal==============================================fixlist content:*****************ShortcutWithArgument: C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\SpyHunter Emergency Startup.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "%PROGRAMFILES%\Enigma Software Group\SpyHunter\SH4.com"ShortcutWithArgument: C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\Uninstall SpyHunter.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /X {46B04D53-4E34-4388-B6EE-80FAB66AEF9B}C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunterReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{46B04D53-4E34-4388-B6EE-80FAB66AEF9B}" /fSearchScopes: HKU\S-1-5-21-1717522040-3165649303-3677985996-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://do-search.com...type=default&q={searchTerms}Task: {EE0E59BD-6DC7-41A6-9106-C5E83D8C1FC6} - System32\Tasks\{0DB63620-DAD5-4B2C-910A-C99C434621AA} => pcalua.exe -a C:\Users\Karol\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smtC:\Users\Karol\AppData\Roaming\mystartsearchS3 esgiguard; C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()C:\Program Files (x86)\Enigma Software GroupS2 ATE_PROCMON; \??\C:\Program Files (x86)\Anti Trojan Elite\ATEPMon.sys [X]C:\Users\Karol\Downloads\Any-Video-Converter(13038)-dp.exeEmptyTemp:*****************C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\SpyHunter Emergency Startup.lnk => File not found.C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\Uninstall SpyHunter.lnk => File not found."C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter" => File/Folder not found.========= reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{46B04D53-4E34-4388-B6EE-80FAB66AEF9B}" /f =========Bť¤D: System nie znalaz w rejestrze okrelonego klucza albo wartoci.========= End of Reg: =========HKU\S-1-5-21-1717522040-3165649303-3677985996-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EE0E59BD-6DC7-41A6-9106-C5E83D8C1FC6} => key not found.C:\Windows\System32\Tasks\{0DB63620-DAD5-4B2C-910A-C99C434621AA} not found.HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0DB63620-DAD5-4B2C-910A-C99C434621AA} => key not found."C:\Users\Karol\AppData\Roaming\mystartsearch" => File/Folder not found.esgiguard => service not found."C:\Program Files (x86)\Enigma Software Group" => File/Folder not found.ATE_PROCMON => service not found."C:\Users\Karol\Downloads\Any-Video-Converter(13038)-dp.exe" => File/Folder not found.EmptyTemp: => 33.2 MB temporary data Removed.The system needed a reboot..==== End of Fixlog 13:06:51 ==== Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 4. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:26-07-2015Ran by david (administrator) on DAVID-KOMP (27-07-2015 09:19:54)Running from C:\Users\david\DesktopLoaded Profiles: david (Available Profiles: david)Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Polski (Polska)Internet Explorer Version 11 (Default browser: Opera)Boot Mode: NormalTutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/==================== Processes (Whitelisted) =================(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)(AMD) C:\Windows\System32\atiesrxx.exe(AMD) C:\Windows\System32\atieclxx.exe(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe(GG Network S.A.) C:\Users\david\AppData\Local\GG\Application\gghub.exe(GG Network S.A.) C:\Users\david\AppData\Local\GG\Application\ggapp.exe(GG Network S.A.) C:\Users\david\AppData\Local\GG\Application\ggapp.exe(GG Network S.A.) C:\Users\david\AppData\Local\GG\Application\ggdrive\ggdrive.exe(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe==================== Registry (Whitelisted) ==================(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-07-13] (Avast Software s.r.o.)HKLM-x32\...\RunOnce: [20150107] => C:\Program Files\AVAST Software\Avast\setup\emupdate\bc5ab97b-548a-462d-9f56-af3df23d4ed3.exe [183232 2015-07-27] (AVAST Software)ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-13] (Avast Software s.r.o.)GroupPolicy: Group Policy on Chrome detected <======= ATTENTIONCHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION==================== Internet (Whitelisted) ====================(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSHKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSHKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}HKU\S-1-5-21-3412306807-1217589574-2955255516-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=dspp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}HKU\S-1-5-21-3412306807-1217589574-2955255516-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/HKU\S-1-5-21-3412306807-1217589574-2955255516-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehpSearchScopes: HKU\S-1-5-21-3412306807-1217589574-2955255516-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.sweet-page.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&ts=1437562450&type=default&q={searchTerms}SearchScopes: HKU\S-1-5-21-3412306807-1217589574-2955255516-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.sweet-page.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&ts=1437562450&type=default&q={searchTerms}BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-13] (Advanced Micro Devices)BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-13] (Avast Software s.r.o.)BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)BHO-x32: No Name -> {2e22e1c9-9ddb-40da-85c7-0753217fff76} -> No FileBHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-13] (Advanced Micro Devices)BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-13] (Avast Software s.r.o.)BHO-x32: No Name -> {b18906df-1dfa-4d50-8a1f-7d076a8c87b7} -> No FileBHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-07] (Advanced Micro Devices)Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-07] (Advanced Micro Devices)Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-07] (Advanced Micro Devices)Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-07] (Advanced Micro Devices)Tcpip\Parameters: [DhcpNameServer] 31.41.176.2 31.41.176.12 0.0.0.0Tcpip\..\Interfaces\{2E2A1A12-AB5B-46A5-9142-5136E4D9165C}: [DhcpNameServer] 31.41.176.2 31.41.176.12 0.0.0.0Tcpip\..\Interfaces\{37D16A24-EFE2-4332-97CB-6D7EF7A1A649}: [NameServer] 8.8.8.8,8.8.4.4Tcpip\..\Interfaces\{37D16A24-EFE2-4332-97CB-6D7EF7A1A649}: [DhcpNameServer] 31.41.176.2 31.41.176.12 0.0.0.0FireFox:========FF Plugin: @microsoft.com/GENUINE -> disabled No FileFF Plugin-x32: @microsoft.com/GENUINE -> disabled No FileFF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FFFF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-07-13]Chrome:=======CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-07-13]CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-13]Opera:=======OPR StartupUrls: "hxxp://www.sweet-page.com/?type=hp&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS"OPR Extension: (Razor Web) - C:\Users\david\AppData\Roaming\Opera Software\Opera Stable\Extensions\mnnkdijihbjckicodidolgadgbjnnmfa [2015-07-13]OPR Extension: (Sale Clipper) - C:\Users\david\AppData\Roaming\Opera Software\Opera Stable\Extensions\odlhikpaegeblidjhkeefjdjegganhpg [2015-07-22]OPR Extension: (Adblock Plus) - C:\Users\david\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-07-13]==================== Services (Whitelisted) =================(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-02-14] (Advanced Micro Devices, Inc.) [File not signed]R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-07-13] (Avast Software s.r.o.)R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [93184 2014-08-21] (Hewlett-Packard Company) [File not signed]R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 ==================== Drivers (Whitelisted) ====================(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [55936 2012-01-03] (Advanced Micro Devices)R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-07-13] ()R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-07-13] (Avast Software s.r.o.)R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-13] (Avast Software s.r.o.)R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-07-13] ()R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-07-13] (Avast Software s.r.o.)R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-07-13] (Avast Software s.r.o.)R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-07-13] (Avast Software s.r.o.)R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-07-13] ()R3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [290520 2013-08-19] (Realtek Semiconductor Corp.)S3 dcdbas; system32\DRIVERS\dcdbas64.sys [X]==================== NetSvcs (Whitelisted) ===================(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)==================== One Month Created files and folders ========(If an entry is included in the fixlist, the file/folder will be moved.)2015-07-27 09:19 - 2015-07-27 09:20 - 00011415 _____ C:\Users\david\Desktop\FRST.txt2015-07-27 09:19 - 2015-07-27 09:19 - 00000000 ____D C:\FRST2015-07-27 09:18 - 2015-07-27 09:18 - 00029036 _____ C:\Users\david\Documents\cc_20150727_091830.reg2015-07-27 09:12 - 2015-07-27 09:12 - 02146816 _____ (Farbar) C:\Users\david\Desktop\FRST64.exe2015-07-22 14:53 - 2015-07-22 14:53 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools2015-07-22 14:53 - 2015-07-22 14:53 - 00000000 ____D C:\ProgramData\PC-Doctor for Windows2015-07-22 14:52 - 2015-07-22 14:53 - 00000000 ____D C:\Program Files\PC-Doctor for Windows2015-07-22 14:50 - 2015-07-22 14:50 - 00000000 ____D C:\Users\david\AppData\Roaming\WinBatch2015-07-22 14:38 - 2015-07-27 09:17 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log2015-07-22 14:38 - 2015-07-22 14:38 - 00000000 ____D C:\Users\david\AppData\Local\Hewlett-Packard2015-07-22 14:25 - 2015-07-22 14:25 - 00000000 ____D C:\Users\david\AppData\Roaming\Hewlett-Packard2015-07-22 14:25 - 2015-07-22 14:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support2015-07-22 14:20 - 2015-07-22 14:20 - 00000000 ____D C:\System.sav2015-07-22 14:19 - 2015-07-22 14:19 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard2015-07-22 14:17 - 2015-07-22 14:20 - 00000000 ____D C:\ProgramData\Hewlett-Packard2015-07-22 14:17 - 2015-07-22 14:17 - 00000000 __SHD C:\Users\david\AppData\Local\EmieUserList2015-07-22 14:17 - 2015-07-22 14:17 - 00000000 __SHD C:\Users\david\AppData\Local\EmieSiteList2015-07-22 14:17 - 2015-07-22 14:17 - 00000000 __SHD C:\Users\david\AppData\Local\EmieBrowserModeList2015-07-22 14:16 - 2015-07-22 14:16 - 00000000 ____D C:\Users\david\AppData\Roaming\hpqLog2015-07-22 14:14 - 2015-07-22 14:14 - 00000000 ____D C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44}2015-07-22 13:55 - 2015-07-22 13:55 - 00000000 ____D C:\_OTL2015-07-22 13:53 - 2015-07-22 13:53 - 00423026 _____ C:\Users\david\Desktop\OTL.Txt2015-07-22 13:53 - 2015-07-22 13:53 - 00045946 _____ C:\Users\david\Desktop\Extras.Txt2015-07-22 13:51 - 2015-07-22 13:53 - 00423026 _____ C:\Users\david\Downloads\OTL.Txt2015-07-22 13:51 - 2015-07-22 13:51 - 00045946 _____ C:\Users\david\Downloads\Extras.Txt2015-07-22 13:31 - 2015-07-22 13:31 - 00602112 _____ (OldTimer Tools) C:\Users\david\Downloads\OTL 3.2.69.0.exe2015-07-22 12:54 - 2015-07-22 12:54 - 00000000 ____D C:\ProgramData\IHProtectUpDate2015-07-17 08:52 - 2015-07-17 08:52 - 00000000 ___SD C:\Users\david\GG dysk2015-07-17 08:52 - 2015-07-17 08:52 - 00000000 ____D C:\Users\david\AppData\Roaming\Mozilla2015-07-17 08:52 - 2015-07-17 08:52 - 00000000 ____D C:\Users\david\AppData\Roaming\Macromedia2015-07-17 08:51 - 2015-07-27 09:03 - 00000000 ____D C:\Users\david\AppData\Roaming\GG2015-07-17 08:51 - 2015-07-17 08:52 - 00000000 ____D C:\Users\david\AppData\Local\GG2015-07-17 08:51 - 2015-07-17 08:51 - 00001111 _____ C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk2015-07-17 08:48 - 2015-07-17 08:48 - 00000000 ____D C:\Windows\System32\Tasks\Zadania podglądu zdarzeń2015-07-15 10:09 - 2015-02-04 05:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll2015-07-15 10:09 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll2015-07-13 15:04 - 2015-02-03 05:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll2015-07-13 15:04 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll2015-07-13 13:51 - 2015-04-20 05:17 - 01647104 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll2015-07-13 13:51 - 2015-04-20 05:17 - 01179136 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll2015-07-13 13:51 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll2015-07-13 13:49 - 2014-10-14 04:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll2015-07-13 13:49 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll2015-07-13 13:49 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll2015-07-13 13:49 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll2015-07-13 13:49 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll2015-07-13 13:48 - 2015-02-20 06:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll2015-07-13 13:48 - 2015-02-20 06:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll2015-07-13 13:48 - 2015-02-20 06:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll2015-07-13 13:48 - 2015-02-20 06:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll2015-07-13 13:48 - 2015-02-20 06:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll2015-07-13 13:48 - 2015-02-20 06:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll2015-07-13 13:48 - 2015-02-20 06:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll2015-07-13 13:48 - 2015-02-20 06:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll2015-07-13 13:48 - 2015-02-20 05:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll2015-07-13 13:48 - 2015-02-20 05:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll2015-07-13 13:48 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll2015-07-13 13:48 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll2015-07-13 13:46 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll2015-07-13 13:46 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll2015-07-13 13:46 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx2015-07-13 13:46 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll2015-07-13 13:46 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL2015-07-13 13:45 - 2015-04-29 20:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll2015-07-13 13:45 - 2015-04-29 20:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll2015-07-13 13:45 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx2015-07-13 13:45 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll2015-07-13 13:45 - 2015-04-29 20:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL2015-07-13 13:45 - 2015-04-13 05:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe2015-07-13 13:45 - 2015-03-25 05:24 - 03298816 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll2015-07-13 13:45 - 2015-03-25 05:24 - 02553856 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll2015-07-13 13:45 - 2015-03-25 05:24 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll2015-07-13 13:45 - 2015-03-25 05:24 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll2015-07-13 13:45 - 2015-03-25 05:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll2015-07-13 13:45 - 2015-03-25 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll2015-07-13 13:45 - 2015-03-25 05:24 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll2015-07-13 13:45 - 2015-03-25 05:24 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll2015-07-13 13:45 - 2015-03-25 05:23 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe2015-07-13 13:45 - 2015-03-25 05:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe2015-07-13 13:45 - 2015-03-25 05:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll2015-07-13 13:45 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll2015-07-13 13:45 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll2015-07-13 13:45 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll2015-07-13 13:45 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe2015-07-13 13:45 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll2015-07-13 13:45 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll2015-07-13 13:45 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll2015-07-13 13:45 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys2015-07-13 13:45 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys2015-07-13 13:45 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys2015-07-13 13:45 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys2015-07-13 13:45 - 2013-11-27 03:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys2015-07-13 13:45 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys2015-07-13 13:45 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys2015-07-13 13:44 - 2015-04-08 05:29 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll2015-07-13 13:44 - 2015-04-08 05:29 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll2015-07-13 13:44 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll2015-07-13 13:44 - 2015-02-03 05:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll2015-07-13 13:44 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll2015-07-13 13:44 - 2014-12-19 05:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll2015-07-13 13:44 - 2014-12-06 06:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll2015-07-13 13:44 - 2014-12-06 05:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll2015-07-13 13:44 - 2014-12-06 05:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll2015-07-13 13:44 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll2015-07-13 13:44 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll2015-07-13 13:44 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll2015-07-13 13:44 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll2015-07-13 13:43 - 2014-06-19 00:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll2015-07-13 13:43 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll2015-07-13 13:43 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll2015-07-13 13:43 - 2014-06-19 00:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll2015-07-13 13:43 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll2015-07-13 13:43 - 2014-06-19 00:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll2015-07-13 13:43 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys2015-07-13 13:43 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS2015-07-13 13:43 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys2015-07-13 13:43 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys2015-07-13 13:38 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll2015-07-13 13:38 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll2015-07-13 13:38 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll2015-07-13 13:37 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll2015-07-13 13:37 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll2015-07-13 13:37 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll2015-07-13 13:36 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe2015-07-13 13:36 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe2015-07-13 13:35 - 2014-12-19 03:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys2015-07-13 13:35 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll2015-07-13 13:35 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll2015-07-13 13:34 - 2015-04-04 05:05 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll2015-07-13 13:34 - 2015-04-04 05:05 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll2015-07-13 13:34 - 2015-04-04 05:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll2015-07-13 13:33 - 2015-05-05 03:29 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll2015-07-13 13:33 - 2015-05-05 03:12 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll2015-07-13 13:33 - 2015-04-18 05:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll2015-07-13 13:33 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll2015-07-13 13:33 - 2015-04-04 05:29 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys2015-07-13 13:33 - 2015-04-04 05:29 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys2015-07-13 13:33 - 2015-04-04 05:22 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll2015-07-13 13:33 - 2015-04-04 05:22 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll2015-07-13 13:33 - 2015-04-04 05:20 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe2015-07-13 13:33 - 2015-04-04 05:20 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe2015-07-13 13:33 - 2015-04-04 05:17 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll2015-07-13 13:33 - 2015-04-04 05:17 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll2015-07-13 13:33 - 2015-04-04 05:15 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll2015-07-13 13:33 - 2015-04-04 05:05 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll2015-07-13 13:33 - 2015-04-04 05:05 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll2015-07-13 13:33 - 2015-04-04 05:05 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll2015-07-13 13:33 - 2015-04-04 05:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll2015-07-13 13:33 - 2015-04-04 05:04 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll2015-07-13 13:33 - 2015-04-04 05:04 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe2015-07-13 13:33 - 2015-04-04 05:01 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll2015-07-13 13:33 - 2015-04-04 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll2015-07-13 13:33 - 2015-04-04 04:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll2015-07-13 13:33 - 2014-12-11 19:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe2015-07-13 13:33 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll2015-07-13 13:33 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll2015-07-13 13:32 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll2015-07-13 13:32 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll2015-07-13 13:32 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax2015-07-13 13:32 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll2015-07-13 13:32 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll2015-07-13 13:32 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax2015-07-13 13:31 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll2015-07-13 13:31 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll2015-07-13 13:31 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll2015-07-13 13:31 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll2015-07-13 13:31 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys2015-07-13 13:31 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll2015-07-13 13:31 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll2015-07-13 13:31 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll2015-07-13 13:31 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll2015-07-13 13:31 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll2015-07-13 13:31 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll2015-07-13 13:31 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll2015-07-13 13:31 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll2015-07-13 13:31 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll2015-07-13 13:31 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys2015-07-13 13:31 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys2015-07-13 13:31 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll2015-07-13 13:31 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll2015-07-13 13:31 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll2015-07-13 13:31 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll2015-07-13 13:21 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL2015-07-13 13:21 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL2015-07-13 13:20 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll2015-07-13 13:20 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll2015-07-13 13:20 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys2015-07-13 13:19 - 2015-02-13 07:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll2015-07-13 13:19 - 2015-02-13 07:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll2015-07-13 13:17 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys2015-07-13 13:14 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys2015-07-13 13:14 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys2015-07-13 13:14 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll2015-07-13 13:14 - 2012-11-29 00:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf2015-07-13 13:13 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll2015-07-13 13:13 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll2015-07-13 13:13 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe2015-07-13 13:13 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll2015-07-13 13:13 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe2015-07-13 13:09 - 2015-07-13 13:09 - 00000000 ____D C:\Users\david\AppData\Roaming\AVAST Software2015-07-13 13:09 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll2015-07-13 13:09 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll2015-07-13 13:07 - 2015-07-13 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software2015-07-13 13:07 - 2015-03-05 07:12 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll2015-07-13 13:07 - 2015-03-05 06:05 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll2015-07-13 13:06 - 2015-07-22 14:28 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update2015-07-13 13:06 - 2015-07-13 13:06 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys2015-07-13 13:06 - 2015-07-13 13:06 - 00364472 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe2015-07-13 13:06 - 2015-07-13 13:06 - 00272248 _____ C:\Windows\system32\Drivers\aswVmm.sys2015-07-13 13:06 - 2015-07-13 13:06 - 00137288 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys2015-07-13 13:06 - 2015-07-13 13:06 - 00093528 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys2015-07-13 13:06 - 2015-07-13 13:06 - 00089944 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys2015-07-13 13:06 - 2015-07-13 13:06 - 00065736 _____ C:\Windows\system32\Drivers\aswRvrt.sys2015-07-13 13:06 - 2015-07-13 13:06 - 00029168 _____ C:\Windows\system32\Drivers\aswHwid.sys2015-07-13 13:06 - 2015-07-13 13:05 - 01047320 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys2015-07-13 13:05 - 2015-07-13 13:05 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr2015-07-13 13:04 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll2015-07-13 13:04 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll2015-07-13 13:04 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll2015-07-13 13:03 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll2015-07-13 13:03 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll2015-07-13 13:03 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll2015-07-13 13:03 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe2015-07-13 13:03 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll2015-07-13 13:02 - 2015-07-13 13:02 - 00000000 ____D C:\ProgramData\AVAST Software2015-07-13 13:02 - 2015-07-13 13:02 - 00000000 ____D C:\Program Files\AVAST Software2015-07-13 13:01 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll2015-07-13 13:01 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll2015-07-13 13:01 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll2015-07-13 13:01 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll2015-07-13 13:01 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll2015-07-13 13:01 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll2015-07-13 13:01 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll2015-07-13 13:00 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll2015-07-13 13:00 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll2015-07-13 13:00 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll2015-07-13 13:00 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll2015-07-13 13:00 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll2015-07-13 13:00 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll2015-07-13 13:00 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll2015-07-13 12:55 - 2015-03-10 05:25 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll2015-07-13 12:55 - 2015-03-10 05:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll2015-07-13 12:55 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll2015-07-13 12:55 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll2015-07-13 12:55 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys2015-07-13 12:55 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys2015-07-13 12:55 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys2015-07-13 12:54 - 2015-07-13 13:03 - 00000000 ____D C:\Windows\system32\MRT2015-07-13 12:54 - 2015-05-27 00:04 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe2015-07-13 12:54 - 2014-08-12 04:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL2015-07-13 12:54 - 2014-08-12 03:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL2015-07-13 12:54 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys2015-07-13 12:54 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys2015-07-13 12:54 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll2015-07-13 12:26 - 2015-07-13 12:26 - 00000266 __RSH C:\ProgramData\ntuser.pol2015-07-13 12:26 - 2015-07-13 12:26 - 00000000 ____D C:\Users\david\AppData\Roaming\Adobe2015-07-13 11:56 - 2015-07-13 11:56 - 00037292 _____ C:\Users\david\Desktop\HWMonitor.txt2015-07-13 11:55 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE2015-07-13 11:54 - 2015-07-13 11:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID2015-07-13 11:54 - 2015-07-13 11:54 - 00000000 ____D C:\Program Files\CPUID2015-07-13 11:41 - 2015-07-13 11:41 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe2015-07-13 11:41 - 2015-07-13 11:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll2015-07-13 11:40 - 2015-07-13 11:40 - 24980480 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll2015-07-13 11:40 - 2015-07-13 11:40 - 19695616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll2015-07-13 11:40 - 2015-07-13 11:40 - 14397440 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll2015-07-13 11:40 - 2015-07-13 11:40 - 12825600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll2015-07-13 11:40 - 2015-07-13 11:40 - 06025216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll2015-07-13 11:40 - 2015-07-13 11:40 - 04305408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll2015-07-13 11:40 - 2015-07-13 11:40 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll2015-07-13 11:40 - 2015-07-13 11:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb2015-07-13 11:40 - 2015-07-13 11:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb2015-07-13 11:40 - 2015-07-13 11:40 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll2015-07-13 11:40 - 2015-07-13 11:40 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll2015-07-13 11:40 - 2015-07-13 11:40 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl2015-07-13 11:40 - 2015-07-13 11:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl2015-07-13 11:40 - 2015-07-13 11:40 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll2015-07-13 11:40 - 2015-07-13 11:40 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll2015-07-13 11:40 - 2015-07-13 11:40 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll2015-07-13 11:40 - 2015-07-13 11:40 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll2015-07-13 11:40 - 2015-07-13 11:40 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat2015-07-13 11:40 - 2015-07-13 11:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat2015-07-13 11:40 - 2015-07-13 11:40 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec2015-07-13 11:40 - 2015-07-13 11:40 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec2015-07-13 11:40 - 2015-07-13 11:40 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx2015-07-13 11:40 - 2015-07-13 11:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx2015-07-13 11:40 - 2015-07-13 11:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll2015-07-13 11:40 - 2015-07-13 11:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe2015-07-13 11:40 - 2015-07-13 11:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll2015-07-13 11:37 - 2015-07-13 11:37 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll2015-07-13 11:37 - 2015-07-13 11:37 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll2015-07-13 11:37 - 2015-07-13 11:37 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll2015-07-13 11:37 - 2015-07-13 11:37 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll2015-07-13 11:35 - 2015-07-13 11:35 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll2015-07-13 11:35 - 2015-07-13 11:35 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll2015-07-13 11:33 - 2015-07-13 11:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe2015-07-13 11:30 - 2015-03-17 07:22 - 05557696 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe2015-07-13 11:30 - 2015-03-17 07:19 - 01727904 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll2015-07-13 11:30 - 2015-03-17 07:16 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll2015-07-13 11:30 - 2015-03-17 07:16 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe2015-07-13 11:30 - 2015-03-17 07:16 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe2015-07-13 11:30 - 2015-03-17 07:16 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll2015-07-13 11:30 - 2015-03-17 07:16 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll2015-07-13 11:30 - 2015-03-17 07:11 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll2015-07-13 11:30 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe2015-07-13 11:30 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe2015-07-13 11:30 - 2015-03-17 06:59 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll2015-07-13 11:30 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll2015-07-13 11:30 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll2015-07-13 11:30 - 2015-01-31 01:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys2015-07-13 11:27 - 2015-05-25 19:08 - 03206144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys2015-07-13 11:26 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll2015-07-13 11:26 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax2015-07-13 11:26 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll2015-07-13 11:26 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax2015-07-13 11:25 - 2015-07-13 11:25 - 02533120 _____ C:\Users\david\Desktop\system.nfo2015-07-13 11:23 - 2015-07-13 11:23 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll2015-07-13 11:23 - 2015-07-13 11:23 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll2015-07-13 11:23 - 2015-07-13 11:23 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll2015-07-13 11:23 - 2015-07-13 11:23 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll2015-07-13 11:23 - 2015-07-13 11:23 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll2015-07-13 11:23 - 2015-07-13 11:23 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll2015-07-13 11:23 - 2015-07-13 11:23 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll2015-07-13 11:23 - 2015-07-13 11:23 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll2015-07-13 11:23 - 2015-07-13 11:23 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll2015-07-13 11:23 - 2015-07-13 11:23 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll2015-07-13 11:23 - 2015-07-13 11:23 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll2015-07-13 11:20 - 2015-07-13 11:20 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll2015-07-13 11:20 - 2015-07-13 11:20 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll2015-07-13 11:20 - 2015-05-09 05:27 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll2015-07-13 11:20 - 2015-05-09 05:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll2015-07-13 11:20 - 2015-05-09 05:27 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll2015-07-13 11:20 - 2015-05-09 05:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll2015-07-13 11:20 - 2015-05-09 05:26 - 01162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll2015-07-13 11:20 - 2015-05-09 05:26 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll2015-07-13 11:20 - 2015-05-09 05:26 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll2015-07-13 11:20 - 2015-05-09 05:25 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe2015-07-13 11:20 - 2015-05-09 05:20 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe2015-07-13 11:20 - 2015-05-09 05:13 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll2015-07-13 11:20 - 2015-05-09 05:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll2015-07-13 11:20 - 2015-05-09 05:12 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll2015-07-13 11:20 - 2015-05-09 05:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 04:01 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe2015-07-13 11:20 - 2015-05-09 04:01 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe2015-07-13 11:20 - 2015-05-09 03:59 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 03:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 03:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll2015-07-13 11:20 - 2015-05-09 03:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll2015-07-13 11:17 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys2015-07-13 11:16 - 2015-02-18 09:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe2015-07-13 11:15 - 2015-02-18 09:04 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe2015-07-13 11:14 - 2014-11-11 05:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll2015-07-13 11:14 - 2014-11-11 04:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll2015-07-13 11:13 - 2015-02-25 05:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys2015-07-13 11:11 - 2014-10-03 04:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll2015-07-13 11:11 - 2014-10-03 04:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll2015-07-13 11:11 - 2014-10-03 04:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll2015-07-13 11:11 - 2014-10-03 04:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll2015-07-13 11:11 - 2014-10-03 04:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll2015-07-13 11:11 - 2014-10-03 03:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll2015-07-13 11:11 - 2014-10-03 03:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll2015-07-13 11:11 - 2014-10-03 03:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll2015-07-13 11:11 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll2015-07-13 11:11 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll2015-07-13 11:10 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi2015-07-13 11:10 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll2015-07-13 11:10 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll2015-07-13 11:10 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll2015-07-13 11:10 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe2015-07-13 11:10 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi2015-07-13 11:10 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe2015-07-13 11:02 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll2015-07-13 11:02 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll2015-07-13 11:01 - 2015-01-17 04:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll2015-07-13 11:01 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll2015-07-13 11:01 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll2015-07-13 11:01 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll2015-07-13 11:00 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll2015-07-13 11:00 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll2015-07-13 10:56 - 2015-07-13 10:57 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo2015-07-13 10:56 - 2015-07-13 10:56 - 00000000 ____D C:\Users\david\AppData\Roaming\OpenCandy2015-07-13 10:56 - 2015-07-13 10:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo2015-07-13 10:56 - 2014-10-25 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll2015-07-13 10:56 - 2014-10-25 03:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll2015-07-13 10:55 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll2015-07-13 10:55 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll2015-07-13 10:55 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe2015-07-13 10:55 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll2015-07-13 10:55 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll2015-07-13 10:54 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll2015-07-13 10:54 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe2015-07-13 10:54 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe2015-07-13 10:54 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll2015-07-13 10:54 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll2015-07-13 10:54 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys2015-07-13 10:54 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys2015-07-13 10:54 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll2015-07-13 10:54 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll2015-07-13 10:54 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll2015-07-13 10:54 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll2015-07-13 10:54 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll2015-07-13 10:54 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll2015-07-13 10:54 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll2015-07-13 10:54 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll2015-07-13 10:54 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe2015-07-13 10:53 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll2015-07-13 10:53 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll2015-07-13 10:53 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe2015-07-13 10:52 - 2014-12-08 05:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll2015-07-13 10:52 - 2014-12-08 04:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll2015-07-13 10:52 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll2015-07-13 10:52 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe2015-07-13 10:52 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe2015-07-13 10:52 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll2015-07-13 10:52 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll2015-07-13 10:52 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll2015-07-13 10:51 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx2015-07-13 10:51 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll2015-07-13 10:51 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx2015-07-13 10:51 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll2015-07-13 10:51 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe2015-07-13 10:51 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe2015-07-13 10:51 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe2015-07-13 10:51 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe2015-07-13 10:49 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll2015-07-13 10:48 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll2015-07-13 10:48 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll2015-07-13 10:48 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll2015-07-13 10:48 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll2015-07-13 10:48 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys2015-07-13 10:47 - 2015-03-04 06:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys2015-07-13 10:47 - 2015-03-04 06:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll2015-07-13 10:47 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll2015-07-13 10:47 - 2014-10-18 04:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll2015-07-13 10:47 - 2014-10-18 03:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll2015-07-13 10:46 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll2015-07-13 10:46 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll2015-07-13 10:44 - 2013-08-19 15:25 - 00290520 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsP2Stor.sys2015-07-13 10:44 - 2013-04-25 20:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsP2StorIcon.dll2015-07-13 10:42 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll2015-07-13 10:42 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll2015-07-13 10:42 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll2015-07-13 10:42 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL2015-07-13 10:42 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL2015-07-13 10:42 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll2015-07-13 10:42 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL2015-07-13 10:38 - 2015-05-01 15:17 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll2015-07-13 10:38 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll2015-07-13 10:36 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys2015-07-13 10:36 - 2012-03-01 08:38 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll2015-07-13 10:36 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll2015-07-13 10:36 - 2012-03-01 07:37 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll2015-07-13 10:36 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll2015-07-13 10:31 - 2015-07-13 10:32 - 49217332 _____ C:\Users\david\Downloads\66833_WLAN_LITEON_WCBN612AH_Win7_81_VER1000276.zip2015-07-13 10:29 - 2015-07-13 10:29 - 00013898 _____ C:\Users\david\Desktop\OpenHardwareMonitor.Report.txt2015-07-13 10:27 - 2015-07-13 10:27 - 00000000 ____D C:\Users\david\Downloads\openhardwaremonitor-v0.7.1-beta2015-07-13 10:26 - 2015-07-13 10:26 - 00511764 _____ C:\Users\david\Downloads\openhardwaremonitor-v0.7.1-beta.zip2015-07-13 10:24 - 2015-07-15 10:28 - 00003876 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 14367719342015-07-13 10:21 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll2015-07-13 10:21 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll2015-07-13 10:21 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe2015-07-13 10:21 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll2015-07-13 10:21 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe2015-07-13 10:21 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll2015-07-13 10:19 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe2015-07-13 10:19 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe2015-07-13 09:57 - 2015-07-22 14:18 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard2015-07-13 09:20 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll2015-07-13 09:20 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll2015-07-13 09:20 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll2015-07-13 09:20 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll2015-07-13 09:20 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe2015-07-13 09:19 - 2015-07-13 09:19 - 00000000 ____D C:\Users\david\AppData\Roaming\Opera Software2015-07-13 09:19 - 2015-07-13 09:19 - 00000000 ____D C:\Users\david\AppData\Local\Opera Software2015-07-13 09:18 - 2015-07-15 10:28 - 00000000 ____D C:\Program Files (x86)\Opera2015-07-13 09:15 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys2015-07-13 09:15 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys2015-07-13 09:15 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys2015-07-13 09:15 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys2015-07-13 09:15 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys2015-07-13 09:15 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys2015-07-13 09:08 - 2015-07-13 10:09 - 00000000 ____D C:\Program Files\7-Zip2015-07-10 22:04 - 2015-07-22 14:54 - 00000000 ____D C:\HP2015-07-10 21:59 - 2012-06-05 17:26 - 04064784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys2015-07-10 21:59 - 2012-06-04 14:04 - 00283125 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT2015-07-10 21:59 - 2012-06-01 09:37 - 02674320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll2015-07-10 21:59 - 2012-05-31 18:08 - 00105616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll2015-07-10 21:59 - 2012-05-29 16:34 - 00854672 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll2015-07-10 21:59 - 2012-05-10 15:22 - 01262696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll2015-07-10 21:59 - 2012-05-09 15:57 - 03611752 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll2015-07-10 21:59 - 2012-03-08 11:47 - 00202336 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll2015-07-10 21:59 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll2015-07-10 21:40 - 2015-07-13 10:09 - 00000000 ____D C:\Windows\SysWOW64\RTCOM2015-07-10 21:40 - 2015-07-10 21:40 - 00000000 ____D C:\Program Files\Realtek2015-07-10 21:40 - 2012-04-06 15:15 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl2015-07-10 21:40 - 2012-04-06 15:15 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll2015-07-10 21:40 - 2012-04-06 15:15 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll2015-07-10 21:37 - 2012-05-25 18:06 - 01706640 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll2015-07-10 21:36 - 2015-07-10 21:36 - 00000000 ____D C:\Users\david\AppData\Roaming\ATI2015-07-10 21:36 - 2015-07-10 21:36 - 00000000 ____D C:\Users\david\AppData\Local\ATI2015-07-10 21:36 - 2015-07-10 21:36 - 00000000 ____D C:\Users\david\AppData\Local\AMD2015-07-10 21:36 - 2015-07-10 21:36 - 00000000 ____D C:\ProgramData\ATI2015-07-10 21:27 - 2015-07-10 21:27 - 00000000 _____ C:\Windows\ativpsrm.bin2015-07-10 21:25 - 2015-07-10 21:25 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies2015-07-10 21:25 - 2015-07-10 21:25 - 00000000 ____D C:\Program Files\AMD2015-07-10 21:25 - 2015-07-10 21:25 - 00000000 ____D C:\Program Files (x86)\AMD APP2015-07-10 21:25 - 2015-07-10 21:25 - 00000000 ____D C:\Program Files (x86)\AMD2015-07-10 21:23 - 2015-07-10 21:23 - 00000000 ____D C:\ProgramData\AMD2015-07-10 21:23 - 2011-12-14 01:44 - 00056448 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys2015-07-10 21:23 - 2010-02-18 09:18 - 00046136 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdiox64.sys2015-07-10 21:22 - 2015-07-10 21:24 - 00000000 ____D C:\Program Files\ATI Technologies2015-07-10 21:22 - 2015-07-10 21:22 - 00000000 ____D C:\Program Files\ATI2015-07-10 21:22 - 2015-07-10 21:22 - 00000000 ____D C:\Program Files (x86)\ATI Technologies2015-07-10 21:13 - 2012-03-07 12:23 - 00000008 _____ C:\Windows\system32\Drivers\rtkhdaud.dat2015-07-10 21:13 - 2012-01-28 10:19 - 00000712 _____ C:\Windows\system32\Drivers\RTEQEX0.dat2015-07-10 21:12 - 2015-07-22 14:13 - 00000000 ____D C:\swsetup2015-07-10 21:12 - 2015-07-13 09:52 - 00000000 ___HD C:\Program Files (x86)\Temp2015-07-10 21:08 - 2015-07-10 21:08 - 00057560 _____ C:\Users\david\AppData\Local\GDIPFONTCACHEV1.DAT2015-07-10 19:25 - 2015-07-10 19:25 - 00000000 ____D C:\Program Files (x86)\Lavalys2015-07-10 18:31 - 2015-07-10 18:31 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf2015-07-10 13:36 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll2015-07-10 13:36 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll2015-07-10 13:36 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys2015-07-10 13:33 - 2015-07-10 13:33 - 00000000 ____D C:\Users\david\Documents\AIDA64 Reports2015-07-10 13:25 - 2015-07-27 09:16 - 00000000 ____D C:\Windows\Panther2015-07-10 13:19 - 2015-07-10 13:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire2015-07-10 13:19 - 2015-07-10 13:19 - 00000000 ____D C:\Program Files (x86)\FinalWire2015-07-10 12:44 - 2015-07-22 14:19 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information2015-07-10 12:44 - 2015-07-13 10:09 - 00000000 ____D C:\Program Files (x86)\Realtek2015-07-10 12:44 - 2013-04-10 18:09 - 00849992 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys2015-07-10 12:44 - 2013-04-10 18:09 - 00108104 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll2015-07-10 12:44 - 2013-04-10 18:09 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll2015-07-10 12:43 - 2015-07-10 12:43 - 00000000 ____D C:\ProgramData\Dell2015-07-10 12:37 - 2015-07-13 12:26 - 00001425 _____ C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk2015-07-10 12:37 - 2015-07-10 12:37 - 00000000 ____D C:\Users\david\AppData\Local\VirtualStore2015-07-10 12:36 - 2015-07-17 08:52 - 00000000 ____D C:\Users\david2015-07-10 12:36 - 2015-07-10 12:36 - 00000020 ___SH C:\Users\david\ntuser.ini2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Public\Documents\Moje wideo2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Public\Documents\Moje obrazy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Public\Documents\Moja muzyka2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Szablony2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Moje dokumenty2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Menu Start2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\Dane aplikacji2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Ustawienia lokalne2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Szablony2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Moje dokumenty2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Menu Start2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Documents\Moje wideo2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Documents\Moje obrazy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Documents\Moja muzyka2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\Dane aplikacji2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\AppData\Local\Historia2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\Users\david\AppData\Local\Dane aplikacji2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Ulubione2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Szablony2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Pulpit2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Menu Start2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Dokumenty2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 _SHDL C:\ProgramData\Dane aplikacji2015-07-10 12:36 - 2015-07-10 12:36 - 00000000 __SHD C:\Recovery2015-07-10 12:36 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories2015-07-10 12:36 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance2015-07-10 12:31 - 2015-07-10 12:31 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk2015-07-10 12:30 - 2015-07-10 12:30 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk2015-07-10 12:29 - 2015-07-27 09:13 - 02094397 ____N C:\Windows\WindowsUpdate.log Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 ==================== One Month Modified files and folders ========(If an entry is included in the fixlist, the file/folder will be moved.)2015-07-27 08:55 - 2009-07-14 06:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A02015-07-27 08:55 - 2009-07-14 06:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A02015-07-27 08:47 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT2015-07-22 14:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help2015-07-22 12:31 - 2011-04-12 15:21 - 00687828 _____ C:\Windows\system32\perfh015.dat2015-07-22 12:31 - 2011-04-12 15:21 - 00131382 _____ C:\Windows\system32\perfc015.dat2015-07-22 12:31 - 2009-07-14 07:13 - 01523412 _____ C:\Windows\system32\PerfStringBackup.INI2015-07-22 12:25 - 2015-03-05 11:00 - 04137472 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys2015-07-17 08:31 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF2015-07-15 09:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Dism2015-07-15 09:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Dism2015-07-15 09:17 - 2009-07-14 06:45 - 00266656 _____ C:\Windows\system32\FNTCACHE.DAT2015-07-15 09:14 - 2011-04-12 15:32 - 00000000 ____D C:\Program Files\Windows Journal2015-07-15 09:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender2015-07-15 09:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender2015-07-15 09:14 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions2015-07-15 09:14 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System2015-07-13 12:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK2015-07-13 12:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR2015-07-13 12:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK2015-07-13 12:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR2015-07-13 10:59 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\GroupPolicy2015-07-13 10:09 - 2011-04-12 15:32 - 00000000 ____D C:\Windows\ShellNew2015-07-13 10:09 - 2009-07-14 05:20 - 00000000 __RSD C:\Windows\Media2015-07-13 10:07 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration2015-07-10 21:22 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared2015-07-10 19:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache2015-07-10 13:25 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG2015-07-10 13:25 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template2015-07-10 12:44 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore2015-07-10 12:36 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default2015-07-10 12:36 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Recovery2015-07-10 12:36 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT2015-07-10 12:31 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games2015-07-10 12:30 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories2015-07-10 12:30 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprepSome files in TEMP:====================C:\Users\david\AppData\Local\Temp\CCleaner64.exe==================== Bamital & volsnap Check =================(There is no automatic fix for files that do not pass verification.)C:\Windows\System32\winlogon.exe => File is digitally signedC:\Windows\System32\wininit.exe => File is digitally signedC:\Windows\SysWOW64\wininit.exe => File is digitally signedC:\Windows\explorer.exe => File is digitally signedC:\Windows\SysWOW64\explorer.exe => File is digitally signedC:\Windows\System32\svchost.exe => File is digitally signedC:\Windows\SysWOW64\svchost.exe => File is digitally signedC:\Windows\System32\services.exe => File is digitally signedC:\Windows\System32\User32.dll => File is digitally signedC:\Windows\SysWOW64\User32.dll => File is digitally signedC:\Windows\System32\userinit.exe => File is digitally signedC:\Windows\SysWOW64\userinit.exe => File is digitally signedC:\Windows\System32\rpcss.dll => File is digitally signedC:\Windows\System32\Drivers\volsnap.sys => File is digitally signedLastRegBack: 2015-07-10 14:49==================== End of log ============================ Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 5. CPUID HWMonitor Report-------------------------------------------------------------------------Binaries-------------------------------------------------------------------------HWMonitor version 1.2.7.0Monitoring-------------------------------------------------------------------------Mainboard Model 1885 (0x000000D6 - 0x000022E8)LPCIO-------------------------------------------------------------------------Hardware Monitors-------------------------------------------------------------------------Hardware monitor ACPI Temperature 0 61°C (141°F) [0xD0E] (TSZ0)Hardware monitor Battery Voltage 0 12.53 Volts [0x30F6] (Current Voltage) Capacity 0 43276 mWh [0xA90C] (Designed Capacity) Capacity 1 43276 mWh [0xA90C] (Full Charge Capacity) Capacity 2 43276 mWh [0xA90C] (Current Capacity) Level 0 n.a. [0x64] (Wear Level) Level 1 100 pc [0x64] (Charge Level)Hardware monitor AMD ADL Voltage 0 0.85 Volts [0x352] (VIN0) Temperature 0 59°C (138°F) [0x3B] (TMPIN0)Processors-------------------------------------------------------------------------Number of processors 1Number of threads 2APICs-------------------------------------------------------------------------Processor 0 -- Core 0 -- Thread 0 0 -- Core 1 -- Thread 0 1Timers------------------------------------------------------------------------- ACPI timer 3.580 MHz HPET timer 14.318 MHz Perf timer 1.657 MHz Sys timer 1.000 KHzProcessors Information-------------------------------------------------------------------------Processor 1 ID = 0 Number of cores 2 (max 2) Number of threads 2 (max 2) Name AMD K140 Codename Specification AMD E2-1800 APU with Radeon HD Graphics Package Socket FT1 BGA CPUID F.2.0 Extended CPUID 14.2 Brand ID 26 Core Stepping ON-C0 Technology 40 nm Core Speed 1697.2 MHz Multiplier x Bus Speed 17.0 x 99.8 MHz Stock frequency 1700 MHz Instructions sets MMX (+), SSE, SSE2, SSE3, SSSE3, SSE4A, x86-64, AMD-V L1 Data cache 2 x 32 KBytes, 8-way set associative, 64-byte line size L1 Instruction cache 2 x 32 KBytes, 2-way set associative, 64-byte line size L2 cache 2 x 512 KBytes, 16-way set associative, 64-byte line size FID/VID Control yes Min FID 8.5x Max VID 1.350 V # of P-States 3 P-State 1700 MHz - FID 0x100 - VID 0x10 - IDD 5 (17.00x - 1.350 V) P-State 1360 MHz - FID 0x102 - VID 0x19 - IDD 3 (13.60x - 1.237 V) P-State 850 MHz - FID 0x300 - VID 0x2E - IDD 2 (8.50x - 0.975 V) Max PLL Frequency 3400 Package Type 0x0 Model 81 String 1 0x6 String 2 0x9 Page 0x0 Boosted P-States 0 Max non-turbo ratio 17.00x Max turbo ratio 17.00x Attached device PCI device at bus 0, device 24, function 0 Attached device PCI device at bus 0, device 24, function 1 Attached device PCI device at bus 0, device 24, function 2 Attached device PCI device at bus 0, device 24, function 3 Attached device PCI device at bus 0, device 24, function 4 Attached device PCI device at bus 0, device 24, function 5 Attached device PCI device at bus 0, device 24, function 6 Attached device PCI device at bus 0, device 24, function 7 TSC 1711.7 MHz APERF 1697.0 MHz MPERF 1696.9 MHzThread dumps-------------------------------------------------------------------------CPU Thread 0 APIC ID 0 Topology Processor ID 0, Core ID 0, Thread ID 0 Type 02020000h Max CPUID level 00000006h Max CPUID ext. level 8000001Bh Cache descriptor Level 1, I, 32 KB, 1 thread(s) Cache descriptor Level 1, D, 32 KB, 1 thread(s) Cache descriptor Level 2, U, 512 KB, 1 thread(s) CPUID 0x00000000 0x00000006 0x68747541 0x444D4163 0x69746E65 0x00000001 0x00500F20 0x00020800 0x00802209 0x178BFBFF 0x00000002 0x00000000 0x00000000 0x00000000 0x00000000 0x00000003 0x00000000 0x00000000 0x00000000 0x00000000 0x00000004 0x00000000 0x00000000 0x00000000 0x00000000 0x00000005 0x00000040 0x00000040 0x00000003 0x00000000 0x00000006 0x00000000 0x00000000 0x00000001 0x00000000 0x80000000 0x8000001B 0x68747541 0x444D4163 0x69746E65 0x80000001 0x00500F20 0x00003519 0x000035FF 0x2FD3FBFF 0x80000002 0x20444D41 0x312D3245 0x20303038 0x20555041 0x80000003 0x68746977 0x64615220 0x286E6F65 0x20296D74 0x80000004 0x47204448 0x68706172 0x00736369 0x00000000 0x80000005 0xFF08FF08 0xFF280000 0x20080140 0x20020140 0x80000006 0x00000000 0x42004200 0x02008140 0x00000000 0x80000007 0x00000000 0x00000000 0x00000000 0x000001F9 0x80000008 0x00003024 0x00000000 0x00001001 0x00000000 0x80000009 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000A 0x00000001 0x00000008 0x00000000 0x0000060F 0x8000000B 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000C 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000D 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000E 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000F 0x00000000 0x00000000 0x00000000 0x00000000 0x80000010 0x00000000 0x00000000 0x00000000 0x00000000 0x80000011 0x00000000 0x00000000 0x00000000 0x00000000 0x80000012 0x00000000 0x00000000 0x00000000 0x00000000 0x80000013 0x00000000 0x00000000 0x00000000 0x00000000 0x80000014 0x00000000 0x00000000 0x00000000 0x00000000 0x80000015 0x00000000 0x00000000 0x00000000 0x00000000 0x80000016 0x00000000 0x00000000 0x00000000 0x00000000 0x80000017 0x00000000 0x00000000 0x00000000 0x00000000 0x80000018 0x00000000 0x00000000 0x00000000 0x00000000 0x80000019 0x00000000 0x00000000 0x00000000 0x00000000 0x8000001A 0x00000000 0x00000000 0x00000000 0x00000000 0x8000001B 0x000000FF 0x00000000 0x00000000 0x00000000 MSR 0x0000001B 0x00000000 0xFEE00900 MSR 0xC0010114 0x00000000 0x00000018 MSR 0xC0010061 0x00000000 0x00000020 MSR 0xC0010062 0x00000000 0x00000000 MSR 0xC0010063 0x00000000 0x00000000 MSR 0xC0010064 0x80000130 0x00002010 MSR 0xC0010065 0x80000120 0x00003212 MSR 0xC0010066 0x8000029B 0x00005C30 MSR 0xC0010067 0x00000000 0x00000000 MSR 0xC0010068 0x00000000 0x00000000 MSR 0xC0010058 0x00000000 0xF8000019 MSR 0xC0010015 0x00000000 0x01000011 MSR 0xC001001F 0x04004000 0x00000200 MSR 0xC0010071 0x00240082 0x70025C30 MSR 0xC0010070 0x00000000 0x00020000CPU Thread 1 APIC ID 1 Topology Processor ID 0, Core ID 1, Thread ID 0 Type 02020000h Max CPUID level 00000006h Max CPUID ext. level 8000001Bh Cache descriptor Level 1, I, 32 KB, 1 thread(s) Cache descriptor Level 1, D, 32 KB, 1 thread(s) Cache descriptor Level 2, U, 512 KB, 1 thread(s) CPUID 0x00000000 0x00000006 0x68747541 0x444D4163 0x69746E65 0x00000001 0x00500F20 0x01020800 0x00802209 0x178BFBFF 0x00000002 0x00000000 0x00000000 0x00000000 0x00000000 0x00000003 0x00000000 0x00000000 0x00000000 0x00000000 0x00000004 0x00000000 0x00000000 0x00000000 0x00000000 0x00000005 0x00000040 0x00000040 0x00000003 0x00000000 0x00000006 0x00000000 0x00000000 0x00000001 0x00000000 0x80000000 0x8000001B 0x68747541 0x444D4163 0x69746E65 0x80000001 0x00500F20 0x00003519 0x000035FF 0x2FD3FBFF 0x80000002 0x20444D41 0x312D3245 0x20303038 0x20555041 0x80000003 0x68746977 0x64615220 0x286E6F65 0x20296D74 0x80000004 0x47204448 0x68706172 0x00736369 0x00000000 0x80000005 0xFF08FF08 0xFF280000 0x20080140 0x20020140 0x80000006 0x00000000 0x42004200 0x02008140 0x00000000 0x80000007 0x00000000 0x00000000 0x00000000 0x000001F9 0x80000008 0x00003024 0x00000000 0x00001001 0x00000000 0x80000009 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000A 0x00000001 0x00000008 0x00000000 0x0000060F 0x8000000B 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000C 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000D 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000E 0x00000000 0x00000000 0x00000000 0x00000000 0x8000000F 0x00000000 0x00000000 0x00000000 0x00000000 0x80000010 0x00000000 0x00000000 0x00000000 0x00000000 0x80000011 0x00000000 0x00000000 0x00000000 0x00000000 0x80000012 0x00000000 0x00000000 0x00000000 0x00000000 0x80000013 0x00000000 0x00000000 0x00000000 0x00000000 0x80000014 0x00000000 0x00000000 0x00000000 0x00000000 0x80000015 0x00000000 0x00000000 0x00000000 0x00000000 0x80000016 0x00000000 0x00000000 0x00000000 0x00000000 0x80000017 0x00000000 0x00000000 0x00000000 0x00000000 0x80000018 0x00000000 0x00000000 0x00000000 0x00000000 0x80000019 0x00000000 0x00000000 0x00000000 0x00000000 0x8000001A 0x00000000 0x00000000 0x00000000 0x00000000 0x8000001B 0x000000FF 0x00000000 0x00000000 0x00000000 MSR 0x0000001B 0x00000000 0xFEE00800 MSR 0xC0010114 0x00000000 0x00000018 MSR 0xC0010061 0x00000000 0x00000020 MSR 0xC0010062 0x00000000 0x00000000 MSR 0xC0010063 0x00000000 0x00000000 MSR 0xC0010064 0x80000130 0x00002010 MSR 0xC0010065 0x80000120 0x00003212 MSR 0xC0010066 0x8000029B 0x00005C30 MSR 0xC0010067 0x00000000 0x00000000 MSR 0xC0010068 0x00000000 0x00000000 MSR 0xC0010058 0x00000000 0xF8000019 MSR 0xC0010015 0x00000000 0x01000011 MSR 0xC001001F 0x04004000 0x00000200 MSR 0xC0010071 0x00240082 0x70025C30 MSR 0xC0010070 0x00000000 0x00020000Storage-------------------------------------------------------------------------Drive 0 Device Path \\?\scsi#disk&ven_toshiba&prod_mq01abd100#4&361c9412&0&000000#{53f56307-b6bf-11d0-94f2-00a0c91efb8b} Type Fixed Name TOSHIBA MQ01ABD100 Capacity 931.5 GB SMART Support YesUSB Devices-------------------------------------------------------------------------USB Device Urządzenie wejściowe USB, class=0x00, subclass=0x00, vendor=0x1BCF, product=0x0007USB Device Urządzenie kompozytowe USB, class=0xEF, subclass=0x02, vendor=0x04F2, product=0xB2F4Graphic APIs-------------------------------------------------------------------------API ATI I/OAPI ADL SDKDisplay Adapters-------------------------------------------------------------------------Display adapter 0 Name AMD Radeon HD 7340 Graphics Board Manufacturer 0x103C (0x1885) PCI device bus 0 (0x0), device 1 (0x1), function 0 (0x0) Vendor ID 0x1002 (0x103C) Model ID 0x9808 (0x1885)Monitor 0 Model (Seiko Epson) ID SEC325A Serial Manufacturing Date Week 0, Year 2012 Size 15.3 inches Max Resolution 1366 x 768 @ 59 Hz Horizontal Freq. Range 0-0 kHz Vertical Freq. Range 0-0 Hz Max Pixel Clock 0 MHz Gamma Factor 2.2 Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 6.Open Hardware Monitor Report--------------------------------------------------------------------------------Version: 0.7.1.0--------------------------------------------------------------------------------Common Language Runtime: 2.0.50727.5420Operating System: Microsoft Windows NT 6.1.7601 Service Pack 1Process Type: 64-Bit--------------------------------------------------------------------------------Sensors|+- HP 1885 (/mainboard)|+- AMD E2-1800 APU with Radeon HD Graphics (/amdcpu/0)| +- Bus Speed : 99.8205 99.8204 99.8216 (/amdcpu/0/clock/0)| +- CPU Core #1 : 1696.95 1696.95 1696.97 (/amdcpu/0/clock/1)| +- CPU Core #2 : 1696.95 1696.95 1696.97 (/amdcpu/0/clock/2)| +- Core #1 - #2 : 67.5 67.5 69.5 (/amdcpu/0/temperature/0)| +- CPU Total : 57.6923 55.3846 100 (/amdcpu/0/load/0)| +- CPU Core #1 : 72.3077 31.8182 100 (/amdcpu/0/load/1)| +- CPU Core #2 : 43.0769 32.3077 100 (/amdcpu/0/load/2)|+- Generic Memory (/ram)| +- Memory : 93.4609 93.0956 94.4568 (/ram/load/0)| +- Used Memory : 1.49717 1.49132 1.51312 (/ram/data/0)| +- Available Memory : 0.104752 0.0887985 0.110603 (/ram/data/1)|+- AMD Radeon HD 7340 Graphics (/atigpu/0)| +- GPU Core : 0.85 0.85 0.913 (/atigpu/0/voltage/0)| +- GPU Core : 283.34 283.34 523.08 (/atigpu/0/clock/0)| +- GPU Memory : 667 667 667 (/atigpu/0/clock/1)| +- GPU Core : 67 67 70 (/atigpu/0/temperature/0)| +- GPU Core : 0 0 24 (/atigpu/0/load/0)|+- TOSHIBA MQ01ABD100 (/hdd/0)| +- Temperature : 46 46 46 (/hdd/0/temperature/0)| +- Used Space : 2.08584 2.08584 2.11163 (/hdd/0/load/0)--------------------------------------------------------------------------------Parameters|+- HP 1885 (/mainboard)|+- AMD E2-1800 APU with Radeon HD Graphics (/amdcpu/0)| || +- Core #1 - #2 (/amdcpu/0/temperature/0)| | +- Offset [°C] : 0 : 0|+- Generic Memory (/ram)|+- AMD Radeon HD 7340 Graphics (/atigpu/0)|+- TOSHIBA MQ01ABD100 (/hdd/0)| || +- Temperature (/hdd/0/temperature/0)| | +- Offset [°C] : 0 : 0--------------------------------------------------------------------------------MainboardSMBIOS Version: 2.7BIOS Vendor: InsydeBIOS Version: F.29System Manufacturer: Hewlett-PackardSystem Name: HP 655 Notebook PCSystem Version: 0798100000005210002600000Mainboard Manufacturer: Hewlett-PackardMainboard Name: 1885Mainboard Version: 66.34Processor Manufacturer: AMD processorProcessor Version: AMD E2-1800 APU with Radeon HD GraphicsProcessor Core Count: 2Processor Core Enabled: 2Processor Thread Count: 2Processor External Clock: 100 MhzMemory Device [0] Manufacturer: EmptyMemory Device [0] Part Number: EmptyMemory Device [0] Device Locator: Bottom-Slot 1(top)Memory Device [0] Bank Locator: CHANNEL AMemory Device [0] Speed: 0 MHzMemory Device [1] Manufacturer: Micron TechnologyMemory Device [1] Part Number: 8KTF25664HZ-1G6M1Memory Device [1] Device Locator: Bottom-Slot 2(under)Memory Device [1] Bank Locator: CHANNEL AMemory Device [1] Speed: 1333 MHzSMBIOS Table ABgAAAECAOADP4CY+0sBAFAAAwwPKUI0SW5zeWRlAEYuMjkAMDUvMDgvMjAxNAAA ARsBAAECAwTFfjWBYGsdDqsloLPMzpp2BgUGSGV3bGV0dC1QYWNrYXJkAEhQIDY1 NSBOb3RlYm9vayBQQwAwNzk4MTAwMDAwMDA1MjEwMDAyNjAwMDAwADVDQjIyNDBU N0MAQjZOMjFFQSNBS0QAMTAzQ181MzM2QU4gRz1OIEw9U01CIEI9SFAgUz02NTUg ICAgICAgIAAAAhACAAECAwQFCQYDAAoAAEhld2xldHQtUGFja2FyZAAxODg1ADY2 LjM0AFBDVFZOQTU3VjJTREhFAEJhc2UgQm9hcmQgQXNzZXQgVGFnAEJhc2UgQm9h cmQgQ2hhc3NpcyBMb2NhdGlvbgAAAxcDAAEKAgMEAwMDA1IBAAAAAQAAAAVIZXds ZXR0LVBhY2thcmQAQ2hhc3NpcyBWZXJzaW9uAENoYXNzaXMgU2VyaWFsIE51bWJl cgBDaGFzc2lzIEFzc2V0IFRhZwBDaGFzc2lzIFNLVQAACREEAAGqDQMEAQAEAwAA ABBKNkMxAAAJEQUAAaYIAwMCAAQDAAAAIEo4QzEAAAkRBgABpggDAwMABAMAAAAo SjdDMQAACREHAAGmCAMDBAAEAwAAADBKOEQxAAAJEQgAAQYFAwQFAKYFAAAApEo4 QjEAAAsFCQAHJEhQJABMT0MjQUtEAEFCUyA3MC83MSA3OCA3OSA3QSA3QgBDTkIx IDA3OTgxMDAwMDAwMDUyMTAwMDI2MDAwMDAAU3RyaW5nNiBmb3IgT3JpZ2luYWwg RXF1aXBtZW50IE1hbnVmYWN0dXJlcgBTdHJpbmc3IGZvciBPcmlnaW5hbCBFcXVp cG1lbnQgTWFudWZhY3R1cmVyAFN0cmluZzggZm9yIE9yaWdpbmFsIEVxdWlwbWVu dCBNYW51ZmFjdHVyZXIAAA0WCwAEAAAAAAAAAAAAAAAAAAAAAAFlbnxVU3xpc284 ODU5LTEAZnJ8Q0F8aXNvODg1OS0xAGVzfEVTfGlzbzg4NTktMQB6aHxUV3x1bmlj b2RlAAAgFA4AAAAAAAAAAAAAAAAAAAAAAAAACAkQAAEAAhIQSjNBMQBVU0IAAAgJ EQABAAISEEozQTEAVVNCAAAICRIAAQACEhBKM0ExAFVTQgAACAkTAAEAAgsfSjVB MQBOZXR3b3JrAAAICRQAAQACBxxKMkEyAENSVAAACAkVAAEAAv8cSjJBMwBIRE1J AAAICRYAAQACHx1KMzAATWljcm9waG9uZSBJbgAACAkXAAEAAh8dSjMwAExpbmUg SW4AAAgJGAABAAIfHUozMABTcGVha2VyIE91dAAAFhoZAAECAAADBqC5MCoEAeos nUAFAf//AABQcmltYXJ5ADEzLTI0AE1VMDYwNDcAdjEuMQBMaS1pb24AACkLGwAB gwEAAAAIQU1EIFJhZGVvbiBIRCA3MzQwIEdyYXBoaWNzAAAQFxwAAwMDAAAgACMA AgAAAAAAAAAAAAAAESIdABwA/v8AAAAAAAANAAECAgQAAAADBAUGAAAAAAAAAEJv dHRvbS1TbG90IDEodG9wKQBDSEFOTkVMIEEARW1wdHkARW1wdHkAQXNzZXQgVGFn OiAARW1wdHkAABEiHwAcACEAQABAAAAIDQABAhiAQDUFAwQFBgEAAAAANQVCb3R0 b20tU2xvdCAyKHVuZGVyKQBDSEFOTkVMIEEATWljcm9uIFRlY2hub2xvZ3kAMzMz OTEzNjQAQXNzZXQgVGFnOiAAOEtURjI1NjY0SFotMUc2TTEgAAASFyEAAwICAAAA AAAAAIAAAACAAAAAgAAAFCMiAAAAAAD//x8AHwAkAAIAAAAAAAAAAAAAAAAAAAAA AAAAABIXIwADAgIAAAAAAAAAgAAAAIAAAACAAAATHyQAAAAAAP//HwAcAP8AAAAA AAAAAAAAAAAAAAAAAAAEKiYAAwNHASAPUAD/+4sXAo5kAKQGpAZBBicAKAD//wUE BgICAgQARwBBTUQgcHJvY2Vzc29yAEFNRCBFMi0xODAwIEFQVSB3aXRoIFJhZGVv bih0bSkgSEQgR3JhcGhpY3MAU29ja2V0IEZUMQBGRkZGAE5vdFN1cHBvcnQARkZG RgAABxMnAAGAAYAAgAAQABAAAQYFBEwxIENhY2hlAAAHEygAAYEBEIAQgBAAEAAB BgUITDIgQ2FjaGUAACkLKQABhQEAAAMAUmVhbHRlayBQQ0llIEdCRSBGYW1pbHkg Q29udHJvbGxlcgAAKQsqAAGBAQAABABBdGhlcm9zIEFSOTQ4NSA4MDIuMTFiL2cv biBXaUZpIEFkYXB0ZXIAAH8EKwAAAA==LPCIOChip ID: Unknown Winbond / Nuvoton / Fintek with ID 0x8518 at 0x4E/0x4FChip ID: Unknown SMSC with ID 0x8518 at 0x4E/0x4F--------------------------------------------------------------------------------CPUIDProcessor 0Processor Vendor: AMDProcessor Brand: AMD E2-1800 APU with Radeon HD GraphicsFamily: 0x14Model: 0x2Stepping: 0x0CPUID Return Values CPU Thread: 0 APIC ID: 0 Processor ID: 0 Core ID: 0 Thread ID: 0 Function EAX EBX ECX EDX 00000000 00000006 68747541 444D4163 69746E65 00000001 00500F20 00020800 00802209 178BFBFF 00000002 00000000 00000000 00000000 00000000 00000003 00000000 00000000 00000000 00000000 00000004 00000000 00000000 00000000 00000000 00000005 00000040 00000040 00000003 00000000 00000006 00000000 00000000 00000001 00000000 80000000 8000001B 68747541 444D4163 69746E65 80000001 00500F20 00003519 000035FF 2FD3FBFF 80000002 20444D41 312D3245 20303038 20555041 80000003 68746977 64615220 286E6F65 20296D74 80000004 47204448 68706172 00736369 00000000 80000005 FF08FF08 FF280000 20080140 20020140 80000006 00000000 42004200 02008140 00000000 80000007 00000000 00000000 00000000 000001F9 80000008 00003024 00000000 00001001 00000000 80000009 00000000 00000000 00000000 00000000 8000000A 00000001 00000008 00000000 0000060F 8000000B 00000000 00000000 00000000 00000000 8000000C 00000000 00000000 00000000 00000000 8000000D 00000000 00000000 00000000 00000000 8000000E 00000000 00000000 00000000 00000000 8000000F 00000000 00000000 00000000 00000000 80000010 00000000 00000000 00000000 00000000 80000011 00000000 00000000 00000000 00000000 80000012 00000000 00000000 00000000 00000000 80000013 00000000 00000000 00000000 00000000 80000014 00000000 00000000 00000000 00000000 80000015 00000000 00000000 00000000 00000000 80000016 00000000 00000000 00000000 00000000 80000017 00000000 00000000 00000000 00000000 80000018 00000000 00000000 00000000 00000000 80000019 00000000 00000000 00000000 00000000 8000001A 00000000 00000000 00000000 00000000 8000001B 000000FF 00000000 00000000 00000000 CPU Thread: 1 APIC ID: 1 Processor ID: 0 Core ID: 1 Thread ID: 0 Function EAX EBX ECX EDX 00000000 00000006 68747541 444D4163 69746E65 00000001 00500F20 01020800 00802209 178BFBFF 00000002 00000000 00000000 00000000 00000000 00000003 00000000 00000000 00000000 00000000 00000004 00000000 00000000 00000000 00000000 00000005 00000040 00000040 00000003 00000000 00000006 00000000 00000000 00000001 00000000 80000000 8000001B 68747541 444D4163 69746E65 80000001 00500F20 00003519 000035FF 2FD3FBFF 80000002 20444D41 312D3245 20303038 20555041 80000003 68746977 64615220 286E6F65 20296D74 80000004 47204448 68706172 00736369 00000000 80000005 FF08FF08 FF280000 20080140 20020140 80000006 00000000 42004200 02008140 00000000 80000007 00000000 00000000 00000000 000001F9 80000008 00003024 00000000 00001001 00000000 80000009 00000000 00000000 00000000 00000000 8000000A 00000001 00000008 00000000 0000060F 8000000B 00000000 00000000 00000000 00000000 8000000C 00000000 00000000 00000000 00000000 8000000D 00000000 00000000 00000000 00000000 8000000E 00000000 00000000 00000000 00000000 8000000F 00000000 00000000 00000000 00000000 80000010 00000000 00000000 00000000 00000000 80000011 00000000 00000000 00000000 00000000 80000012 00000000 00000000 00000000 00000000 80000013 00000000 00000000 00000000 00000000 80000014 00000000 00000000 00000000 00000000 80000015 00000000 00000000 00000000 00000000 80000016 00000000 00000000 00000000 00000000 80000017 00000000 00000000 00000000 00000000 80000018 00000000 00000000 00000000 00000000 80000019 00000000 00000000 00000000 00000000 8000001A 00000000 00000000 00000000 00000000 8000001B 000000FF 00000000 00000000 00000000 Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 AMD CPUName: AMD E2-1800 APU with Radeon HD GraphicsNumber of Cores: 2Threads per Core: 1Timer Frequency: 1.657177 MHzTime Stamp Counter: InvariantEstimated Time Stamp Counter Frequency: 1696.97 MHzEstimated Time Stamp Counter Frequency Error: 0.04096 MhzTime Stamp Counter Frequency: 1696.95 MHzMSR Core #1 MSR EDX EAX C0010000 00000000 00000000 C0010004 00000000 00000000 C0010015 00000000 01000011 C0010064 80000130 00002010 C0010071 00240082 66002010MSR Core #2 MSR EDX EAX C0010000 00000000 00000000 C0010004 00000000 00000000 C0010015 00000000 01000011 C0010064 80000130 00002010 C0010071 00240082 66002010Miscellaneous Control Address: 0xC3Time Stamp Counter Multiplier: 17PCI Register D18F3xD4: 00024F52--------------------------------------------------------------------------------AMD Display LibraryStatus: OKNumber of adapters: 2AdapterIndex: 0isActive: 1AdapterName: AMD Radeon HD 7340 GraphicsUDID: PCI_VEN_1002&DEV_9808&SUBSYS_1885103C&REV_00_3&2411E6FE&2&08APresent: 1VendorID: 0x1002BusNumber: 0DeviceNumber: 1FunctionNumber: 0AdapterID: 0x3CBE780AdapterIndex: 1isActive: 0AdapterName: AMD Radeon HD 7340 GraphicsUDID: PCI_VEN_1002&DEV_9808&SUBSYS_1885103C&REV_00_3&2411E6FE&2&08&02APresent: 1VendorID: 0x1002BusNumber: 0DeviceNumber: 1FunctionNumber: 0AdapterID: 0x3CBE780--------------------------------------------------------------------------------GenericHarddiskDrive name: TOSHIBA MQ01ABD100Firmware version: AX001U ID Description Raw Value Worst Value Thres Physical 01 Read Error Rate 000000000000 100 100 50 - 02 Throughput Performance 000000000000 100 100 50 - 03 Spin-Up Time 100A00000000 100 100 1 - 04 Start/Stop Count 1A0000000000 100 100 0 26 05 Reallocated Sectors Count 000000000000 100 100 50 - 07 Seek Error Rate 000000000000 100 100 50 - 08 Seek Time Performance 000000000000 100 100 50 - 09 Power-On Hours (POH) 4E0000000000 100 100 0 78 0A Spin Retry Count 000000000000 100 100 30 - 0C Power Cycle Count 1A0000000000 100 100 0 26 BF G-sense Error Rate 000000000000 100 100 0 - C0 Emergency Retract Cycle Count 060000000000 100 100 0 - C1 Load Cycle Count 9A0100000000 100 100 0 - C2 Temperature 2E0017003300 100 100 0 46 C4 Reallocation Event Count 000000000000 100 100 0 - C5 Current Pending Sector Count 000000000000 100 100 0 - C6 Uncorrectable Sector Count 000000000000 100 100 0 - C7 UltraDMA CRC Error Count 000000000000 200 200 0 - DC Disk Shift 000000000000 100 100 0 - DE Loaded Hours 380000000000 100 100 0 - DF Load/Unload Retry Count 000000000000 100 100 0 - E0 Load Friction 000000000000 100 100 0 - E2 Load 'In'-time BA0000000000 100 100 0 - F0 Head Flying Hours 000000000000 100 100 1 - Logical drive name: C:\Format: NTFSTotal size: 1000097181696Total free space: 979241623552 Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 7. OTL logfile created on: 2015-07-22 13:34:16 - Run 1OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\david\Downloads64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstationInternet Explorer (Version = 9.11.9600.17728)Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,60 Gb Total Physical Memory | 0,53 Gb Available Physical Memory | 33,31% Memory free3,20 Gb Paging File | 1,19 Gb Available in Paging File | 37,21% Paging File freePaging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)Drive C: | 931,41 Gb Total Space | 901,89 Gb Free Space | 96,83% Space Free | Partition Type: NTFS Computer Name: DAVID-KOMP | User Name: david | Logged in as Administrator.Boot Mode: Normal | Scan Mode: Current user | Include 64bit ScansCompany Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (All) ========== PRC - [2015-07-22 13:31:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\david\Downloads\OTL 3.2.69.0.exePRC - [2015-07-15 10:28:18 | 000,866,936 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\30.0.1835.125\opera_crashreporter.exePRC - [2015-07-15 10:28:18 | 000,866,424 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\30.0.1835.125\opera.exePRC - [2015-07-13 13:06:46 | 005,515,496 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\avastui.exePRC - [2015-07-13 13:05:36 | 000,343,336 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exePRC - [2015-06-17 16:01:32 | 005,260,864 | ---- | M] (GG Network S.A.) -- C:\Users\david\AppData\Local\GG\Application\ggdrive\ggdrive.exePRC - [2015-06-17 16:01:30 | 004,078,144 | ---- | M] (GG Network S.A.) -- C:\Users\david\AppData\Local\GG\Application\gghub.exePRC - [2015-06-17 16:01:30 | 000,118,336 | ---- | M] (GG Network S.A.) -- C:\Users\david\AppData\Local\GG\Application\ggapp.exePRC - [2014-03-21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exePRC - [2012-02-14 23:07:16 | 000,049,664 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe ========== Modules (All) ========== MOD - [2015-07-22 13:31:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\david\Downloads\OTL 3.2.69.0.exeMOD - [2015-07-22 11:44:51 | 000,128,112 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\defs\15072200\aswCmnOS.dllMOD - [2015-07-22 11:44:51 | 000,059,096 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\defs\15072200\uiext.dllMOD - [2015-07-22 11:44:50 | 000,446,400 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\defs\15072200\aswCmnBS.dllMOD - [2015-07-22 11:44:50 | 000,439,160 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\defs\15072200\aswCmnIS.dllMOD - [2015-07-15 10:28:18 | 000,866,936 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\30.0.1835.125\opera_crashreporter.exeMOD - [2015-07-15 10:28:18 | 000,866,424 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\30.0.1835.125\opera.exeMOD - [2015-07-15 10:28:14 | 057,575,544 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\30.0.1835.125\opera.dllMOD - [2015-07-15 09:57:09 | 001,649,272 | ---- | M] () -- C:\Program Files (x86)\Opera\30.0.1835.125\libglesv2.dllMOD - [2015-07-15 09:57:06 | 000,081,016 | ---- | M] () -- C:\Program Files (x86)\Opera\30.0.1835.125\libegl.dllMOD - [2015-07-15 09:57:05 | 000,968,312 | ---- | M] (The Chromium Authors) -- C:\Program Files (x86)\Opera\30.0.1835.125\ffmpegsumo.dllMOD - [2015-07-15 09:57:04 | 003,457,656 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Opera\30.0.1835.125\D3DCompiler_47.dllMOD - [2015-07-13 13:06:46 | 005,515,496 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\avastui.exeMOD - [2015-07-13 13:06:06 | 004,456,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\mfc110u.dllMOD - [2015-07-13 13:06:06 | 000,875,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\msvcr110.dllMOD - [2015-07-13 13:06:06 | 000,535,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\msvcp110.dllMOD - [2015-07-13 13:06:01 | 001,260,544 | ---- | M] (The OpenSSL Project, http://www.openssl.org/)-- C:\Program Files\AVAST Software\Avast\libeay32.dll MOD - [2015-07-13 13:06:01 | 000,294,400 | ---- | M] (The OpenSSL Project, http://www.openssl.org/)-- C:\Program Files\AVAST Software\Avast\ssleay32.dll MOD - [2015-07-13 13:05:59 | 040,540,672 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dllMOD - [2015-07-13 13:05:43 | 000,104,400 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\log.dllMOD - [2015-07-13 13:05:42 | 001,080,656 | ---- | M] (Microsoft Corporation) -- C:\Program Files\AVAST Software\Avast\dbghelp.dllMOD - [2015-07-13 13:05:42 | 000,544,704 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswSqLt.dllMOD - [2015-07-13 13:05:42 | 000,076,584 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\avastIP.dllMOD - [2015-07-13 13:05:42 | 000,047,208 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswUtil.dllMOD - [2015-07-13 13:05:41 | 000,648,240 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswData.dllMOD - [2015-07-13 13:05:41 | 000,335,096 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswProperty.dllMOD - [2015-07-13 13:05:41 | 000,311,424 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswCmnIS.dllMOD - [2015-07-13 13:05:41 | 000,281,048 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswLog.dllMOD - [2015-07-13 13:05:41 | 000,127,048 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswCmnOS.dllMOD - [2015-07-13 13:05:41 | 000,102,840 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswRemoteCache.dllMOD - [2015-07-13 13:05:41 | 000,064,224 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswEngLdr.dllMOD - [2015-07-13 13:05:40 | 000,356,744 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswCmnBS.dllMOD - [2015-07-13 13:05:39 | 000,941,784 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswAux.dllMOD - [2015-07-13 13:05:39 | 000,392,288 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\ashTask.dllMOD - [2015-07-13 13:05:39 | 000,269,688 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\ashTaskEx.dllMOD - [2015-07-13 13:05:37 | 003,355,056 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\CommonRes.dllMOD - [2015-07-13 13:05:37 | 000,891,320 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\ashBase.dllMOD - [2015-07-13 13:05:37 | 000,081,728 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\JsonRpcServer.dllMOD - [2015-07-13 13:05:36 | 000,575,128 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\CommChannel.dllMOD - [2015-07-13 13:05:35 | 001,350,736 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\Aavm4h.dllMOD - [2015-07-13 13:05:35 | 000,336,144 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\1045\uiLangRes.dllMOD - [2015-07-13 13:05:35 | 000,291,872 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\AavmRpch.dllMOD - [2015-07-13 13:05:35 | 000,098,696 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\1045\Base.dllMOD - [2015-07-13 13:05:23 | 000,277,416 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\snxhk.dllMOD - [2015-07-13 13:05:21 | 006,813,832 | ---- | M] (Avast Software s.r.o.) -- C:\Program Files\AVAST Software\Avast\aswJSScan.dllMOD - [2015-07-13 13:05:19 | 002,172,592 | ---- | M] (GlavSoft LLC.) -- C:\Program Files\AVAST Software\Avast\aswAra.dllMOD - [2015-07-13 11:40:58 | 001,888,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wininet.dllMOD - [2015-07-13 11:40:57 | 002,278,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\iertutil.dllMOD - [2015-07-13 11:40:56 | 012,825,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ieframe.dllMOD - [2015-07-13 11:40:56 | 001,311,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\urlmon.dllMOD - [2015-07-13 11:37:31 | 000,640,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dllMOD - [2015-07-13 11:35:32 | 000,231,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mswsock.dllMOD - [2015-07-13 11:23:54 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dllMOD - [2015-07-13 11:23:54 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dllMOD - [2015-07-13 11:23:54 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllMOD - [2015-07-13 11:23:54 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dllMOD - [2015-07-13 11:23:54 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dllMOD - [2015-07-13 11:23:54 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllMOD - [2015-07-13 11:23:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dllMOD - [2015-07-13 11:23:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllMOD - [2015-07-13 11:23:54 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dllMOD - [2015-07-13 11:23:53 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msmpeg2vdec.dllMOD - [2015-07-13 11:23:53 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dxgi.dllMOD - [2015-07-13 11:20:33 | 001,505,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d11.dllMOD - [2015-06-17 16:01:32 | 005,260,864 | ---- | M] (GG Network S.A.) -- C:\Users\david\AppData\Local\GG\Application\ggdrive\ggdrive.exeMOD - [2015-06-17 16:01:32 | 001,288,256 | ---- | M] (The OpenSSL Project, http://www.openssl.org/)-- C:\Users\david\AppData\Local\GG\Application\ggdrive\LIBEAY32.dll MOD - [2015-06-17 16:01:32 | 000,337,472 | ---- | M] (The OpenSSL Project, http://www.openssl.org/)-- C:\Users\david\AppData\Local\GG\Application\ggdrive\SSLEAY32.dll MOD - [2015-06-17 16:01:32 | 000,122,432 | ---- | M] () -- C:\Users\david\AppData\Local\GG\Application\ggdrive\ZLIB1.dllMOD - [2015-06-17 16:01:30 | 024,385,088 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\xul.dllMOD - [2015-06-17 16:01:30 | 010,395,712 | ---- | M] (The ICU Project) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\icudt52.dllMOD - [2015-06-17 16:01:30 | 005,149,760 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\gkmedias.dllMOD - [2015-06-17 16:01:30 | 004,078,144 | ---- | M] (GG Network S.A.) -- C:\Users\david\AppData\Local\GG\Application\gghub.exeMOD - [2015-06-17 16:01:30 | 003,715,648 | ---- | M] () -- C:\Users\david\AppData\Local\GG\Application\xulrunner\mozjs.dllMOD - [2015-06-17 16:01:30 | 001,558,080 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\nss3.dllMOD - [2015-06-17 16:01:30 | 001,306,688 | ---- | M] (The ICU Project) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\icuin52.dllMOD - [2015-06-17 16:01:30 | 001,288,256 | ---- | M] (The OpenSSL Project, http://www.openssl.org/)-- C:\Users\david\AppData\Local\GG\Application\xulrunner\LIBEAY32.dll MOD - [2015-06-17 16:01:30 | 001,010,752 | ---- | M] (The ICU Project) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\icuuc52.dllMOD - [2015-06-17 16:01:30 | 000,773,968 | ---- | M] (Microsoft Corporation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\MSVCR100.dllMOD - [2015-06-17 16:01:30 | 000,421,200 | ---- | M] (Microsoft Corporation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\MSVCP100.dllMOD - [2015-06-17 16:01:30 | 000,411,712 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\nssckbi.dllMOD - [2015-06-17 16:01:30 | 000,329,792 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\freebl3.dllMOD - [2015-06-17 16:01:30 | 000,219,200 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\sandboxbroker.dllMOD - [2015-06-17 16:01:30 | 000,148,544 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\softokn3.dllMOD - [2015-06-17 16:01:30 | 000,140,352 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\mozglue.dllMOD - [2015-06-17 16:01:30 | 000,118,336 | ---- | M] (GG Network S.A.) -- C:\Users\david\AppData\Local\GG\Application\ggapp.exeMOD - [2015-06-17 16:01:30 | 000,091,200 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\nssdbm3.dllMOD - [2015-06-17 16:01:30 | 000,018,496 | ---- | M] (Mozilla Foundation) -- C:\Users\david\AppData\Local\GG\Application\xulrunner\mozalloc.dllMOD - [2015-05-09 05:12:44 | 001,114,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dllMOD - [2015-05-09 05:12:44 | 000,274,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dllMOD - [2015-04-28 16:49:04 | 003,171,728 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\HTMLayout.dllMOD - [2015-04-24 19:56:58 | 000,530,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dllMOD - [2015-04-24 19:54:13 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dllMOD - [2015-04-20 04:56:29 | 001,250,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\DWrite.dllMOD - [2015-04-20 04:52:09 | 001,625,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18834_none_72d38c5186679d48\GdiPlus.dllMOD - [2015-04-04 05:05:39 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dllMOD - [2015-04-04 05:05:35 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ncrypt.dllMOD - [2015-04-04 05:05:23 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\credssp.dllMOD - [2015-04-04 05:04:02 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dllMOD - [2015-03-17 06:59:26 | 001,309,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dllMOD - [2015-03-17 06:57:20 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dllMOD - [2015-03-10 05:08:26 | 001,237,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msxml3.dllMOD - [2015-03-05 06:05:06 | 000,311,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dllMOD - [2015-02-20 06:12:51 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dllMOD - [2015-02-13 07:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dllMOD - [2015-01-17 04:30:42 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dllMOD - [2014-12-06 05:50:19 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\nlaapi.dllMOD - [2014-10-18 03:33:18 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dllMOD - [2014-10-03 03:44:26 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\AudioSes.dllMOD - [2014-07-17 03:40:03 | 000,157,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winsta.dllMOD - [2014-07-14 03:40:58 | 000,664,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dllMOD - [2014-04-25 04:06:17 | 000,626,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dllMOD - [2013-10-12 04:01:25 | 000,216,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\FWPUCLNT.DLLMOD - [2013-10-05 21:57:25 | 001,168,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\crypt32.dllMOD - [2013-07-26 03:55:59 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dllMOD - [2013-07-09 06:46:31 | 000,103,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptnet.dllMOD - [2012-07-04 23:16:56 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\netapi32.dllMOD - [2012-03-01 07:37:41 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wintrust.dllMOD - [2012-02-15 11:18:42 | 000,791,040 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\aticfx32.dllMOD - [2012-02-15 11:07:46 | 006,200,320 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\atidxx32.dllMOD - [2012-02-15 10:12:16 | 000,033,280 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\atiuxpag.dllMOD - [2012-02-15 10:12:02 | 000,030,208 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\atiu9pag.dllMOD - [2012-02-14 23:07:16 | 000,049,664 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exeMOD - [2011-12-16 09:52:58 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dllMOD - [2011-11-17 07:35:02 | 000,314,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\webio.dllMOD - [2011-10-26 06:32:11 | 001,328,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\quartz.dllMOD - [2011-08-27 06:26:27 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleacc.dllMOD - [2011-05-24 12:40:05 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dllMOD - [2011-05-24 12:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devrtl.dllMOD - [2011-05-24 12:39:38 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dllMOD - [2011-03-03 07:38:01 | 000,270,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dnsapi.dllMOD - [2010-11-21 05:25:15 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dllMOD - [2010-11-21 05:25:11 | 000,488,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\evr.dllMOD - [2010-11-21 05:24:51 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\WinSATAPI.dllMOD - [2010-11-21 05:24:43 | 000,481,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mscms.dllMOD - [2010-11-21 05:24:32 | 001,003,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptui.dllMOD - [2010-11-21 05:24:32 | 000,505,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\taskschd.dllMOD - [2010-11-21 05:24:32 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\credui.dllMOD - [2010-11-21 05:24:32 | 000,103,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\IPHLPAPI.DLLMOD - [2010-11-21 05:24:26 | 001,128,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dllMOD - [2010-11-21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbem\fastprox.dllMOD - [2010-11-21 05:24:25 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dllMOD - [2010-11-21 05:24:23 | 001,828,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d9.dllMOD - [2010-11-21 05:24:23 | 001,493,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ExplorerFrame.dllMOD - [2010-11-21 05:24:20 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dllMOD - [2010-11-21 05:24:16 | 000,380,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sxs.dllMOD - [2010-11-21 05:24:16 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dllMOD - [2010-11-21 05:24:16 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winmm.dllMOD - [2010-11-21 05:24:16 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srvcli.dllMOD - [2010-11-21 05:24:16 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\userenv.dllMOD - [2010-11-21 05:24:16 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\netutils.dllMOD - [2010-11-21 05:24:14 | 000,295,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dllMOD - [2010-11-21 05:24:14 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\RpcRtRemote.dllMOD - [2010-11-21 05:24:09 | 000,854,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dbghelp.dllMOD - [2010-11-21 05:24:08 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dllMOD - [2010-11-21 05:24:08 | 000,363,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbemcomn.dllMOD - [2010-11-21 05:24:08 | 000,351,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winhttp.dllMOD - [2010-11-21 05:24:08 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drvMOD - [2010-11-21 05:24:08 | 000,236,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\pdh.dllMOD - [2010-11-21 05:24:03 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dllMOD - [2010-11-21 05:24:02 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cscapi.dllMOD - [2010-11-21 05:24:01 | 001,414,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dllMOD - [2010-11-21 05:24:01 | 000,442,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntshrui.dllMOD - [2010-11-21 05:24:00 | 000,562,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\AppPatch\AcLayers.dllMOD - [2010-11-21 05:23:55 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ws2_32.dllMOD - [2010-11-21 05:23:54 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\samcli.dllMOD - [2010-11-21 05:23:54 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wtsapi32.dllMOD - [2010-11-21 05:23:51 | 001,667,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dllMOD - [2010-11-21 05:23:51 | 000,213,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\MMDevAPI.dllMOD - [2010-11-21 05:23:51 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wkscli.dllMOD - [2010-11-21 05:23:48 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dllMOD - [2010-11-21 05:23:48 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dllMOD - [2010-11-21 05:23:48 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msasn1.dllMOD - [2010-10-17 23:09:22 | 000,770,384 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MSVCR100.dllMOD - [2009-07-14 03:17:54 | 000,249,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\bcryptprimitives.dllMOD - [2009-07-14 03:17:54 | 000,242,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rsaenh.dllMOD - [2009-07-14 03:16:20 | 000,308,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wpc.dllMOD - [2009-07-14 03:16:20 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wsock32.dllMOD - [2009-07-14 03:16:20 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wship6.dllMOD - [2009-07-14 03:16:20 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\WSHTCPIP.DLLMOD - [2009-07-14 03:16:19 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winrnr.dllMOD - [2009-07-14 03:16:19 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winnsi.dllMOD - [2009-07-14 03:16:18 | 000,262,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wevtapi.dllMOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dllMOD - [2009-07-14 03:16:17 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbem\wbemsvc.dllMOD - [2009-07-14 03:16:17 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbem\wbemprox.dllMOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dllMOD - [2009-07-14 03:16:15 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\slc.dllMOD - [2009-07-14 03:16:14 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\SPInf.dllMOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dllMOD - [2009-07-14 03:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\samlib.dllMOD - [2009-07-14 03:16:13 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\SensApi.dllMOD - [2009-07-14 03:16:12 | 000,325,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rasapi32.dllMOD - [2009-07-14 03:16:12 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\powrprof.dllMOD - [2009-07-14 03:16:12 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rasman.dllMOD - [2009-07-14 03:16:12 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\pnrpnsp.dllMOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dllMOD - [2009-07-14 03:16:12 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rasadhlp.dllMOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dllMOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dllMOD - [2009-07-14 03:16:11 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdsapi.dllMOD - [2009-07-14 03:16:11 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\nsi.dllMOD - [2009-07-14 03:16:02 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\NapiNSP.dllMOD - [2009-07-14 03:15:48 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mssprxy.dllMOD - [2009-07-14 03:15:45 | 000,970,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msmpeg2adec.dllMOD - [2009-07-14 03:15:44 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msimg32.dllMOD - [2009-07-14 03:15:41 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mpr.dllMOD - [2009-07-14 03:15:39 | 000,352,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mfplat.dllMOD - [2009-07-14 03:15:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\linkinfo.dllMOD - [2009-07-14 03:15:27 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\icm32.dllMOD - [2009-07-14 03:15:24 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\hid.dllMOD - [2009-07-14 03:15:22 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gpapi.dllMOD - [2009-07-14 03:15:13 | 000,717,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dui70.dllMOD - [2009-07-14 03:15:13 | 000,181,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\duser.dllMOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dllMOD - [2009-07-14 03:15:11 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dhcpcsvc.dllMOD - [2009-07-14 03:15:11 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dhcpcsvc6.dllMOD - [2009-07-14 03:15:08 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d8thk.dllMOD - [2009-07-14 03:15:07 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptsp.dllMOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dllMOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dllMOD - [2009-07-14 03:14:58 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\avrt.dllMOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dllMOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msscript.ocxMOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dllMOD - [2009-07-14 03:11:20 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\bcrypt.dllMOD - [2009-07-14 03:09:00 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\normaliz.dll Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 ========== Services (All) ========== SRV:64bit: - [2015-07-13 13:05:36 | 000,343,336 | ---- | M] (Avast Software s.r.o.) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)SRV:64bit: - [2015-07-13 11:40:46 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)SRV:64bit: - [2015-07-13 10:48:08 | 001,255,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Wat\WatAdminSvc.exe -- (WatAdminSvc)SRV:64bit: - [2015-04-20 05:17:07 | 001,179,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\FntCache.dll -- (FontCache)SRV:64bit: - [2015-04-04 05:20:52 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (VaultSvc)SRV:64bit: - [2015-04-04 05:20:52 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)SRV:64bit: - [2015-04-04 05:20:52 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)SRV:64bit: - [2015-04-04 05:20:52 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (Netlogon)SRV:64bit: - [2015-04-04 05:20:52 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)SRV:64bit: - [2015-04-04 05:20:52 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (EFS)SRV:64bit: - [2015-03-25 05:24:41 | 002,553,856 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)SRV:64bit: - [2014-12-19 05:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)SRV:64bit: - [2014-12-06 06:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)SRV:64bit: - [2014-10-14 04:13:06 | 000,683,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\termsrv.dll -- (TermService)SRV:64bit: - [2014-10-03 04:11:51 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)SRV:64bit: - [2014-10-03 04:11:51 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)SRV:64bit: - [2013-10-12 04:29:21 | 000,859,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IKEEXT.DLL -- (IKEEXT)SRV:64bit: - [2013-07-09 07:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)SRV:64bit: - [2013-05-27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)SRV:64bit: - [2013-02-27 07:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)SRV:64bit: - [2012-07-05 00:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)SRV:64bit: - [2012-04-06 15:15:44 | 000,098,208 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe -- (AERTFilters)SRV:64bit: - [2012-02-15 11:13:02 | 000,235,520 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)SRV:64bit: - [2012-02-14 23:16:40 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)SRV:64bit: - [2011-05-24 13:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)SRV:64bit: - [2011-03-03 08:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)SRV:64bit: - [2010-11-21 05:25:14 | 001,504,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbengine.exe -- (wbengine)SRV:64bit: - [2010-11-21 05:25:14 | 000,689,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FXSSVC.exe -- (Fax)SRV:64bit: - [2010-11-21 05:25:10 | 000,092,672 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\TabSvc.dll -- (TabletInputService)SRV:64bit: - [2010-11-21 05:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)SRV:64bit: - [2010-11-21 05:25:05 | 001,525,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc)SRV:64bit: - [2010-11-21 05:24:52 | 000,117,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wpdbusenum.dll -- (WPDBusEnum)SRV:64bit: - [2010-11-21 05:24:51 | 000,232,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ListSvc.dll -- (HomeGroupListener)SRV:64bit: - [2010-11-21 05:24:51 | 000,187,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\provsvc.dll -- (HomeGroupProvider)SRV:64bit: - [2010-11-21 05:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)SRV:64bit: - [2010-11-21 05:24:42 | 000,084,992 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\Mcx2Svc.dll -- (Mcx2Svc)SRV:64bit: - [2010-11-21 05:24:36 | 001,743,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\sysmain.dll -- (SysMain)SRV:64bit: - [2010-11-21 05:24:36 | 000,367,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wcncsvc.dll -- (wcncsvc)SRV:64bit: - [2010-11-21 05:24:35 | 000,258,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WebClnt.dll -- (WebClient)SRV:64bit: - [2010-11-21 05:24:34 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AxInstSv.dll -- (AxInstSV)SRV:64bit: - [2010-11-21 05:24:33 | 000,121,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SessEnv.dll -- (SessionEnv)SRV:64bit: - [2010-11-21 05:24:32 | 000,777,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\gpsvc.dll -- (gpsvc)SRV:64bit: - [2010-11-21 05:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)SRV:64bit: - [2010-11-21 05:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)SRV:64bit: - [2010-11-21 05:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)SRV:64bit: - [2010-11-21 05:24:27 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)SRV:64bit: - [2010-11-21 05:24:24 | 002,018,304 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WsmSvc.dll -- (WinRM)SRV:64bit: - [2010-11-21 05:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)SRV:64bit: - [2010-11-21 05:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)SRV:64bit: - [2010-11-21 05:24:16 | 000,162,816 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dps.dll -- (DPS)SRV:64bit: - [2010-11-21 05:24:16 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\KMSVC.DLL -- (hkmsvc)SRV:64bit: - [2010-11-21 05:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)SRV:64bit: - [2010-11-21 05:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)SRV:64bit: - [2010-11-21 05:24:14 | 000,569,344 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\iphlpsvc.dll -- (iphlpsvc)SRV:64bit: - [2010-11-21 05:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)SRV:64bit: - [2010-11-21 05:24:09 | 000,080,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\certprop.dll -- (SCPolicySvc)SRV:64bit: - [2010-11-21 05:24:09 | 000,080,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\certprop.dll -- (CertPropSvc)SRV:64bit: - [2010-11-21 05:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)SRV:64bit: - [2010-11-21 05:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)SRV:64bit: - [2010-11-21 05:24:00 | 001,389,056 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\pla.dll -- (pla)SRV:64bit: - [2010-11-21 05:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)SRV:64bit: - [2010-11-21 05:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)SRV:64bit: - [2010-11-21 05:23:56 | 003,524,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\sppsvc.exe -- (sppsvc)SRV:64bit: - [2010-11-21 05:23:56 | 000,444,416 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\winhttp.dll -- (WinHttpAutoProxySvc)SRV:64bit: - [2010-11-21 05:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)SRV:64bit: - [2010-11-21 05:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)SRV:64bit: - [2010-11-21 05:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)SRV:64bit: - [2010-11-21 05:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)SRV:64bit: - [2010-11-21 05:23:51 | 000,533,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vds.exe -- (vds)SRV:64bit: - [2010-11-21 05:23:50 | 000,078,848 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\WUDFSvc.dll -- (wudfsvc)SRV:64bit: - [2010-11-21 05:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)SRV:64bit: - [2010-11-21 05:23:48 | 000,476,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\QAGENTRT.DLL -- (napagent)SRV:64bit: - [2010-11-21 05:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)SRV:64bit: - [2009-07-14 03:41:59 | 000,229,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wwansvc.dll -- (WwanSvc)SRV:64bit: - [2009-07-14 03:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)SRV:64bit: - [2009-07-14 03:41:57 | 000,012,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wpcsvc.dll -- (WPCSvc)SRV:64bit: - [2009-07-14 03:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)SRV:64bit: - [2009-07-14 03:41:56 | 000,381,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\w32time.dll -- (W32Time)SRV:64bit: - [2009-07-14 03:41:56 | 000,353,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\upnphost.dll -- (upnphost)SRV:64bit: - [2009-07-14 03:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)SRV:64bit: - [2009-07-14 03:41:56 | 000,237,568 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wecsvc.dll -- (Wecsvc)SRV:64bit: - [2009-07-14 03:41:56 | 000,202,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbiosrvc.dll -- (WbioSrvc)SRV:64bit: - [2009-07-14 03:41:56 | 000,163,840 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpo.dll -- (Power)SRV:64bit: - [2009-07-14 03:41:56 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wdi.dll -- (WdiSystemHost)SRV:64bit: - [2009-07-14 03:41:56 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wdi.dll -- (WdiServiceHost)SRV:64bit: - [2009-07-14 03:41:56 | 000,084,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wercplsupport.dll -- (wercplsupport)SRV:64bit: - [2009-07-14 03:41:56 | 000,076,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wersvc.dll -- (WerSvc)SRV:64bit: - [2009-07-14 03:41:56 | 000,040,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WcsPlugInService.dll -- (WcsPlugInService)SRV:64bit: - [2009-07-14 03:41:56 | 000,038,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\uxsms.dll -- (UxSms)SRV:64bit: - [2009-07-14 03:41:55 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\trkwks.dll -- (TrkWks)SRV:64bit: - [2009-07-14 03:41:55 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tbssvc.dll -- (TBS)SRV:64bit: - [2009-07-14 03:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)SRV:64bit: - [2009-07-14 03:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)SRV:64bit: - [2009-07-14 03:41:54 | 000,193,024 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ssdpsrv.dll -- (SSDPSRV)SRV:64bit: - [2009-07-14 03:41:54 | 000,075,264 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sstpsvc.dll -- (SstpSvc)SRV:64bit: - [2009-07-14 03:41:54 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sppuinotify.dll -- (sppuinotify)SRV:64bit: - [2009-07-14 03:41:54 | 000,029,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sensrsvc.dll -- (SensrSvc)SRV:64bit: - [2009-07-14 03:41:53 | 000,438,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\p2psvc.dll -- (p2psvc)SRV:64bit: - [2009-07-14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (PNRPsvc)SRV:64bit: - [2009-07-14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (p2pimsvc)SRV:64bit: - [2009-07-14 03:41:53 | 000,242,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\qwave.dll -- (QWAVE)SRV:64bit: - [2009-07-14 03:41:53 | 000,190,976 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SCardSvr.dll -- (SCardSvr)SRV:64bit: - [2009-07-14 03:41:53 | 000,186,368 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\pcasvc.dll -- (PcaSvc)SRV:64bit: - [2009-07-14 03:41:53 | 000,159,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\regsvc.dll -- (RemoteRegistry)SRV:64bit: - [2009-07-14 03:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)SRV:64bit: - [2009-07-14 03:41:53 | 000,067,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\RpcEpMap.dll -- (RpcEptMapper)SRV:64bit: - [2009-07-14 03:41:53 | 000,064,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\Sens.dll -- (SENS)SRV:64bit: - [2009-07-14 03:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)SRV:64bit: - [2009-07-14 03:41:53 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\pnrpauto.dll -- (PNRPAutoReg)SRV:64bit: - [2009-07-14 03:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)SRV:64bit: - [2009-07-14 03:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)SRV:64bit: - [2009-07-14 03:41:28 | 000,368,640 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msdtckrm.dll -- (KtmRm)SRV:64bit: - [2009-07-14 03:41:27 | 000,097,792 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\mprdim.dll -- (RemoteAccess)SRV:64bit: - [2009-07-14 03:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (THREADORDER)SRV:64bit: - [2009-07-14 03:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)SRV:64bit: - [2009-07-14 03:41:18 | 000,300,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lltdsvc.dll -- (lltdsvc)SRV:64bit: - [2009-07-14 03:41:18 | 000,023,552 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lmhsvc.dll -- (lmhosts)SRV:64bit: - [2009-07-14 03:41:11 | 000,156,672 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\iscsiexe.dll -- (MSiSCSI)SRV:64bit: - [2009-07-14 03:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)SRV:64bit: - [2009-07-14 03:41:09 | 000,101,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPBusEnum.dll -- (IPBusEnum)SRV:64bit: - [2009-07-14 03:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)SRV:64bit: - [2009-07-14 03:40:52 | 000,034,816 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\FDResPub.dll -- (FDResPub)SRV:64bit: - [2009-07-14 03:40:52 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\fdPHost.dll -- (fdPHost)SRV:64bit: - [2009-07-14 03:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)SRV:64bit: - [2009-07-14 03:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)SRV:64bit: - [2009-07-14 03:40:28 | 000,291,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\defragsvc.dll -- (defragsvc)SRV:64bit: - [2009-07-14 03:40:13 | 000,083,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\bthserv.dll -- (bthserv)SRV:64bit: - [2009-07-14 03:40:10 | 000,100,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\bdesvc.dll -- (BDESVC)SRV:64bit: - [2009-07-14 03:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)SRV:64bit: - [2009-07-14 03:40:01 | 000,032,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appidsvc.dll -- (AppIDSvc)SRV:64bit: - [2009-07-14 03:39:55 | 000,203,264 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbem\WmiApSrv.exe -- (wmiApSrv)SRV:64bit: - [2009-07-14 03:39:48 | 000,040,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\UI0Detect.exe -- (UI0Detect)SRV:64bit: - [2009-07-14 03:39:41 | 000,014,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\snmptrap.exe -- (SNMPTRAP)SRV:64bit: - [2009-07-14 03:39:37 | 000,593,408 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SearchIndexer.exe -- (WSearch)SRV:64bit: - [2009-07-14 03:39:21 | 000,141,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msdtc.exe -- (MSDTC)SRV:64bit: - [2009-07-14 03:39:15 | 000,010,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Locator.exe -- (RpcLocator)SRV:64bit: - [2009-07-14 03:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dllhost.exe -- (COMSysApp)SRV:64bit: - [2009-07-14 03:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)SRV - [2014-07-01 00:24:49 | 000,859,280 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc)SRV - [2014-03-21 00:50:31 | 000,090,776 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_64)SRV - [2014-03-21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)SRV - [2013-07-09 06:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)SRV - [2010-11-21 05:25:10 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\provsvc.dll -- (HomeGroupProvider)SRV - [2010-11-21 05:24:52 | 000,042,856 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0)SRV - [2010-11-21 05:24:49 | 000,276,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\wcncsvc.dll -- (wcncsvc)SRV - [2010-11-21 05:24:49 | 000,204,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\WebClnt.dll -- (WebClient)SRV - [2010-11-21 05:24:42 | 000,696,832 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\ehome\ehrecvr.exe -- (ehRecvr)SRV - [2010-11-21 05:24:32 | 001,175,040 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\WsmSvc.dll -- (WinRM)SRV - [2010-11-21 05:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)SRV - [2010-11-21 05:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)SRV - [2010-11-21 05:24:08 | 001,508,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\pla.dll -- (pla)SRV - [2010-11-21 05:24:08 | 000,351,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWow64\winhttp.dll -- (WinHttpAutoProxySvc)SRV - [2010-11-21 05:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)SRV - [2010-11-21 05:24:03 | 000,194,048 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\servicing\TrustedInstaller.exe -- (TrustedInstaller)SRV - [2010-11-21 05:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)SRV - [2010-11-21 05:23:55 | 000,113,664 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\SessEnv.dll -- (SessionEnv)SRV - [2009-07-14 03:39:09 | 000,127,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\ehome\ehsched.exe -- (ehSched)SRV - [2009-07-14 03:16:20 | 000,010,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\wpcsvc.dll -- (WPCSvc)SRV - [2009-07-14 03:16:18 | 000,076,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\wdi.dll -- (WdiSystemHost)SRV - [2009-07-14 03:16:18 | 000,076,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\wdi.dll -- (WdiServiceHost)SRV - [2009-07-14 03:16:18 | 000,032,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\WcsPlugInService.dll -- (WcsPlugInService)SRV - [2009-07-14 03:16:17 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\upnphost.dll -- (upnphost)SRV - [2009-07-14 03:16:13 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\Sens.dll -- (SENS)SRV - [2009-07-14 03:16:12 | 000,210,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\qwave.dll -- (QWAVE)SRV - [2009-07-14 03:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)SRV - [2009-07-14 03:15:41 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysWOW64\mprdim.dll -- (RemoteAccess)SRV - [2009-07-14 03:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)SRV - [2009-07-14 03:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)SRV - [2009-07-14 03:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWow64\SearchIndexer.exe -- (WSearch)SRV - [2009-07-14 03:14:28 | 000,020,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\perfhost.exe -- (PerfHost)SRV - [2009-07-14 03:14:18 | 000,007,168 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\dllhost.exe -- (COMSysApp) ========== Driver Services (All) ========== DRV:64bit: - [2015-07-22 12:25:21 | 004,137,472 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)DRV:64bit: - [2015-07-13 13:06:46 | 000,442,264 | ---- | M] (Avast Software s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)DRV:64bit: - [2015-07-13 13:06:02 | 000,137,288 | ---- | M] (Avast Software s.r.o.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)DRV:64bit: - [2015-07-13 13:06:01 | 000,272,248 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)DRV:64bit: - [2015-07-13 13:06:01 | 000,093,528 | ---- | M] (Avast Software s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)DRV:64bit: - [2015-07-13 13:06:01 | 000,089,944 | ---- | M] (Avast Software s.r.o.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)DRV:64bit: - [2015-07-13 13:06:01 | 000,065,736 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)DRV:64bit: - [2015-07-13 13:06:01 | 000,029,168 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)DRV:64bit: - [2015-07-13 13:05:23 | 001,047,320 | ---- | M] (Avast Software s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)DRV:64bit: - [2015-04-04 05:29:36 | 000,155,576 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ksecpkg.sys -- (KSecPkg)DRV:64bit: - [2015-04-04 05:29:36 | 000,095,680 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ksecdd.sys -- (KSecDD)DRV:64bit: - [2015-03-04 06:55:13 | 000,367,552 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\clfs.sys -- (CLFS)DRV:64bit: - [2015-02-25 05:18:01 | 000,754,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\http.sys -- (HTTP)DRV:64bit: - [2015-01-31 01:56:51 | 000,459,336 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\cng.sys -- (CNG)DRV:64bit: - [2014-12-19 03:46:45 | 000,141,312 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mrxdav.sys -- (MRxDAV)DRV:64bit: - [2014-07-17 03:21:54 | 000,212,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpwd.sys -- (RDPWD)DRV:64bit: - [2014-07-17 03:21:27 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tssecsrv.sys -- (tssecsrv)DRV:64bit: - [2014-06-16 04:10:19 | 000,985,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dxgkrnl.sys -- (DXGKrnl)DRV:64bit: - [2014-05-30 08:45:52 | 000,497,152 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\afd.sys -- (AFD)DRV:64bit: - [2014-04-05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tcpip.sys -- (TCPIP6)DRV:64bit: - [2014-04-05 04:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tcpip.sys -- (Tcpip)DRV:64bit: - [2013-11-27 03:41:37 | 000,343,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbhub.sys -- (usbhub)DRV:64bit: - [2013-11-27 03:41:15 | 000,099,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbccgp.sys -- (usbccgp)DRV:64bit: - [2013-11-27 03:41:11 | 000,053,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbehci.sys -- (usbehci)DRV:64bit: - [2013-11-27 03:41:09 | 000,025,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbohci.sys -- (usbohci)DRV:64bit: - [2013-11-27 03:41:06 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbuhci.sys -- (usbuhci)DRV:64bit: - [2013-08-19 15:25:30 | 000,290,520 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsP2Stor.sys -- (RSP2STOR)DRV:64bit: - [2013-07-12 12:41:35 | 000,185,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbvideo.sys -- (usbvideo)DRV:64bit: - [2013-07-12 12:41:12 | 000,100,864 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbcir.sys -- (usbcir)DRV:64bit: - [2013-06-26 00:55:52 | 000,785,624 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\Wdf01000.sys -- (Wdf01000)DRV:64bit: - [2013-04-12 16:45:08 | 001,656,680 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\ntfs.sys -- (Ntfs)DRV:64bit: - [2013-04-10 18:09:24 | 000,849,992 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)DRV:64bit: - [2012-06-05 17:26:06 | 004,064,784 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTKVHD64.sys -- (IntcAzAudAddService)DRV:64bit: - [2012-03-17 09:58:57 | 000,075,120 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\partmgr.sys -- (partmgr)DRV:64bit: - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)DRV:64bit: - [2012-02-17 06:57:32 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tdtcp.sys -- (TDTCP)DRV:64bit: - [2012-02-15 11:48:34 | 010,856,960 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)DRV:64bit: - [2012-02-15 10:13:14 | 000,327,680 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)DRV:64bit: - [2012-01-03 23:22:54 | 000,055,936 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.1)DRV:64bit: - [2011-12-14 01:44:16 | 000,056,448 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)DRV:64bit: - [2011-12-13 04:52:44 | 000,082,048 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)DRV:64bit: - [2011-12-13 04:52:44 | 000,042,624 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)DRV:64bit: - [2011-12-06 03:47:30 | 000,095,248 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)DRV:64bit: - [2011-07-09 04:46:28 | 000,288,768 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mrxsmb10.sys -- (mrxsmb10)DRV:64bit: - [2011-04-29 05:06:10 | 000,467,456 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\srv.sys -- (srv)DRV:64bit: - [2011-04-29 05:05:49 | 000,410,112 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\srv2.sys -- (srv2)DRV:64bit: - [2011-04-29 05:05:37 | 000,168,448 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\srvnet.sys -- (srvnet)DRV:64bit: - [2011-04-27 04:40:40 | 000,158,208 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mrxsmb.sys -- (mrxsmb)DRV:64bit: - [2011-04-27 04:39:37 | 000,128,000 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mrxsmb20.sys -- (mrxsmb20)DRV:64bit: - [2011-02-23 06:55:04 | 000,090,624 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\bowser.sys -- (bowser)DRV:64bit: - [2010-11-21 05:24:39 | 000,223,248 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fvevol.sys -- (fvevol)DRV:64bit: - [2010-11-21 05:24:33 | 000,213,888 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\rdyboost.sys -- (rdyboost)DRV:64bit: - [2010-11-21 05:24:33 | 000,129,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rasl2tp.sys -- (Rasl2tp)DRV:64bit: - [2010-11-21 05:24:33 | 000,111,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\raspptp.sys -- (PptpMiniport)DRV:64bit: - [2010-11-21 05:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)DRV:64bit: - [2010-11-21 05:24:32 | 000,119,296 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tdx.sys -- (tdx)DRV:64bit: - [2010-11-21 05:24:32 | 000,102,400 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\dfsc.sys -- (DfsC)DRV:64bit: - [2010-11-21 05:24:32 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ndisuio.sys -- (Ndisuio)DRV:64bit: - [2010-11-21 05:24:27 | 000,082,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ipfltdrv.sys -- (IpFilterDriver)DRV:64bit: - [2010-11-21 05:24:25 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\appid.sys -- (AppID)DRV:64bit: - [2010-11-21 05:24:24 | 000,014,720 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hwpolicy.sys -- (hwpolicy)DRV:64bit: - [2010-11-21 05:24:15 | 000,366,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msrpc.sys -- (MsRPC)DRV:64bit: - [2010-11-21 05:24:15 | 000,363,392 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\volmgrx.sys -- (volmgrx)DRV:64bit: - [2010-11-21 05:24:15 | 000,125,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tunnel.sys -- (tunnel)DRV:64bit: - [2010-11-21 05:24:14 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ndproxy.sys -- (NDProxy)DRV:64bit: - [2010-11-21 05:24:11 | 000,088,576 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\wanarp.sys -- (Wanarpv6)DRV:64bit: - [2010-11-21 05:24:11 | 000,088,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wanarp.sys -- (WANARP)DRV:64bit: - [2010-11-21 05:24:09 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\scfilter.sys -- (scfilter)DRV:64bit: - [2010-11-21 05:24:08 | 000,309,248 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\rdbss.sys -- (rdbss)DRV:64bit: - [2010-11-21 05:24:08 | 000,164,352 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ndiswan.sys -- (NdisWan)DRV:64bit: - [2010-11-21 05:24:08 | 000,131,584 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\pacer.sys -- (Psched)DRV:64bit: - [2010-11-21 05:24:00 | 000,289,664 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\fltMgr.sys -- (FltMgr)DRV:64bit: - [2010-11-21 05:23:55 | 000,951,680 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ndis.sys -- (NDIS)DRV:64bit: - [2010-11-21 05:23:55 | 000,328,192 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\udfs.sys -- (udfs)DRV:64bit: - [2010-11-21 05:23:53 | 000,094,592 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mountmgr.sys -- (mountmgr)DRV:64bit: - [2010-11-21 05:23:52 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\tcpipreg.sys -- (tcpipreg)DRV:64bit: - [2010-11-21 05:23:51 | 000,261,632 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\netbt.sys -- (NetBT)DRV:64bit: - [2010-11-21 05:23:50 | 000,172,544 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WUDFRd.sys -- (WUDFRd)DRV:64bit: - [2010-11-21 05:23:50 | 000,112,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WUDFPf.sys -- (WudfPf)DRV:64bit: - [2010-11-21 05:23:48 | 000,273,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msiscsi.sys -- (iScsiPrt)DRV:64bit: - [2010-11-21 05:23:48 | 000,078,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IPMIDrv.sys -- (IPMIDRV)DRV:64bit: - [2010-11-21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaStorV.sys -- (iaStorV)DRV:64bit: - [2010-11-21 05:23:47 | 000,350,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HdAudio.sys -- (HdAudAddService)DRV:64bit: - [2010-11-21 05:23:47 | 000,334,208 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpi.sys -- (ACPI)DRV:64bit: - [2010-11-21 05:23:47 | 000,295,808 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\volsnap.sys -- (volsnap)DRV:64bit: - [2010-11-21 05:23:47 | 000,229,888 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\1394ohci.sys -- (1394ohci)DRV:64bit: - [2010-11-21 05:23:47 | 000,215,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhdmp.sys -- (vhdmp)DRV:64bit: - [2010-11-21 05:23:47 | 000,184,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pci.sys -- (pci)DRV:64bit: - [2010-11-21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvstor.sys -- (nvstor)DRV:64bit: - [2010-11-21 05:23:47 | 000,155,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mpio.sys -- (mpio)DRV:64bit: - [2010-11-21 05:23:47 | 000,148,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvraid.sys -- (nvraid)DRV:64bit: - [2010-11-21 05:23:47 | 000,147,456 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\cdrom.sys -- (cdrom)DRV:64bit: - [2010-11-21 05:23:47 | 000,140,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msdsm.sys -- (msdsm)DRV:64bit: - [2010-11-21 05:23:47 | 000,122,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hdaudbus.sys -- (HDAudBus)DRV:64bit: - [2010-11-21 05:23:47 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)DRV:64bit: - [2010-11-21 05:23:47 | 000,103,808 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sbp2port.sys -- (sbp2port)DRV:64bit: - [2010-11-21 05:23:47 | 000,091,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\USBSTOR.SYS -- (USBSTOR)DRV:64bit: - [2010-11-21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)DRV:64bit: - [2010-11-21 05:23:47 | 000,071,552 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\volmgr.sys -- (volmgr)DRV:64bit: - [2010-11-21 05:23:47 | 000,063,360 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\termdd.sys -- (TermDD)DRV:64bit: - [2010-11-21 05:23:47 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\umbus.sys -- (umbus)DRV:64bit: - [2010-11-21 05:23:47 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CompositeBus.sys -- (CompositeBus)DRV:64bit: - [2010-11-21 05:23:47 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\kbdhid.sys -- (kbdhid)DRV:64bit: - [2010-11-21 05:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)DRV:64bit: - [2010-11-21 05:23:47 | 000,031,104 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\msahci.sys -- (msahci)DRV:64bit: - [2010-11-21 05:23:47 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hidusb.sys -- (HidUsb)DRV:64bit: - [2010-11-21 05:23:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)DRV:64bit: - [2010-11-21 05:23:47 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sffp_sd.sys -- (sffp_sd)DRV:64bit: - [2010-11-21 05:23:47 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipmi.sys -- (AcpiPmi)DRV:64bit: - [2010-02-18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)DRV:64bit: - [2009-07-14 03:52:31 | 000,021,584 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\compbatt.sys -- (Compbatt)DRV:64bit: - [2009-07-14 03:52:31 | 000,017,488 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\cmdide.sys -- (cmdide)DRV:64bit: - [2009-07-14 03:52:21 | 000,491,088 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\adp94xx.sys -- (adp94xx)DRV:64bit: - [2009-07-14 03:52:21 | 000,339,536 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\adpahci.sys -- (adpahci)DRV:64bit: - [2009-07-14 03:52:21 | 000,182,864 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\adpu320.sys -- (adpu320)DRV:64bit: - [2009-07-14 03:52:21 | 000,097,856 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\arcsas.sys -- (arcsas)DRV:64bit: - [2009-07-14 03:52:21 | 000,087,632 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\arc.sys -- (arc)DRV:64bit: - [2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AGP440.sys -- (agp440)DRV:64bit: - [2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\atapi.sys -- (atapi)DRV:64bit: - [2009-07-14 03:52:21 | 000,015,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdide.sys -- (amdide)DRV:64bit: - [2009-07-14 03:52:21 | 000,015,440 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aliide.sys -- (aliide)DRV:64bit: - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)DRV:64bit: - [2009-07-14 03:48:27 | 000,060,496 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\mup.sys -- (Mup)DRV:64bit: - [2009-07-14 03:48:27 | 000,049,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mouclass.sys -- (mouclass)DRV:64bit: - [2009-07-14 03:48:27 | 000,032,320 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mssmbios.sys -- (mssmbios)DRV:64bit: - [2009-07-14 03:48:27 | 000,015,424 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\msisadrv.sys -- (msisadrv)DRV:64bit: - [2009-07-14 03:48:26 | 000,122,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NV_AGP.SYS -- (nv_agp)DRV:64bit: - [2009-07-14 03:48:26 | 000,051,264 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nfrd960.sys -- (nfrd960)DRV:64bit: - [2009-07-14 03:48:04 | 000,284,736 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MegaSR.sys -- (MegaSR)DRV:64bit: - [2009-07-14 03:48:04 | 000,115,776 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_scsi.sys -- (LSI_SCSI)DRV:64bit: - [2009-07-14 03:48:04 | 000,114,752 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_fc.sys -- (LSI_FC)DRV:64bit: - [2009-07-14 03:48:04 | 000,106,560 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas.sys -- (LSI_SAS)DRV:64bit: - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)DRV:64bit: - [2009-07-14 03:48:04 | 000,050,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbdclass.sys -- (kbdclass)DRV:64bit: - [2009-07-14 03:48:04 | 000,044,112 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iirsp.sys -- (iirsp)DRV:64bit: - [2009-07-14 03:48:04 | 000,035,392 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\megasas.sys -- (megasas)DRV:64bit: - [2009-07-14 03:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\isapnp.sys -- (isapnp)DRV:64bit: - [2009-07-14 03:48:04 | 000,016,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelide.sys -- (intelide)DRV:64bit: - [2009-07-14 03:47:49 | 000,055,376 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fsdepends.sys -- (FsDepends)DRV:64bit: - [2009-07-14 03:47:48 | 000,530,496 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\elxstor.sys -- (elxstor)DRV:64bit: - [2009-07-14 03:47:48 | 000,073,280 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\disk.sys -- (Disk)DRV:64bit: - [2009-07-14 03:47:48 | 000,070,224 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\fileinfo.sys -- (FileInfo)DRV:64bit: - [2009-07-14 03:47:48 | 000,065,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\GAGP30KX.SYS -- (gagp30kx)DRV:64bit: - [2009-07-14 03:47:48 | 000,024,144 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\crcdisk.sys -- (crcdisk)DRV:64bit: - [2009-07-14 03:45:56 | 000,022,096 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wimmount.sys -- (WIMMount)DRV:64bit: - [2009-07-14 03:45:55 | 000,161,872 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vsmraid.sys -- (vsmraid)DRV:64bit: - [2009-07-14 03:45:55 | 000,064,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ULIAGPKX.SYS -- (uliagpkx)DRV:64bit: - [2009-07-14 03:45:55 | 000,064,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UAGP35.SYS -- (uagp35)DRV:64bit: - [2009-07-14 03:45:55 | 000,036,432 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vdrvroot.sys -- (vdrvroot)DRV:64bit: - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)DRV:64bit: - [2009-07-14 03:45:55 | 000,021,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wd.sys -- (Wd)DRV:64bit: - [2009-07-14 03:45:55 | 000,019,008 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spldr.sys -- (spldr)DRV:64bit: - [2009-07-14 03:45:55 | 000,017,488 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\viaide.sys -- (viaide)DRV:64bit: - [2009-07-14 03:45:55 | 000,012,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\swenum.sys -- (swenum)DRV:64bit: - [2009-07-14 03:45:46 | 001,524,816 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ql2300.sys -- (ql2300)DRV:64bit: - [2009-07-14 03:45:46 | 000,080,464 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sisraid4.sys -- (SiSRaid4)DRV:64bit: - [2009-07-14 03:45:45 | 000,220,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pcmcia.sys -- (pcmcia)DRV:64bit: - [2009-07-14 03:45:45 | 000,128,592 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ql40xx.sys -- (ql40xx)DRV:64bit: - [2009-07-14 03:45:45 | 000,050,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pcw.sys -- (pcw)DRV:64bit: - [2009-07-14 03:45:45 | 000,043,584 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sisraid2.sys -- (SiSRaid2)DRV:64bit: - [2009-07-14 03:45:45 | 000,012,352 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pciide.sys -- (pciide)DRV:64bit: - [2009-07-14 03:19:07 | 000,286,720 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BrSerId.sys -- (Brserid)DRV:64bit: - [2009-07-14 03:01:19 | 000,651,264 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\PEAuth.sys -- (PEAUTH)DRV:64bit: - [2009-07-14 02:38:18 | 000,025,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbprint.sys -- (usbprint)DRV:64bit: - [2009-07-14 02:17:46 | 000,024,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpbus.sys -- (rdpbus)DRV:64bit: - [2009-07-14 02:16:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\RDPREFMP.sys -- (RDPREFMP)DRV:64bit: - [2009-07-14 02:16:34 | 000,007,680 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\RDPENCDD.sys -- (RDPENCDD)DRV:64bit: - [2009-07-14 02:16:34 | 000,007,680 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\RDPCDD.sys -- (RDPCDD)DRV:64bit: - [2009-07-14 02:16:32 | 000,015,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tdpipe.sys -- (TDPIPE)DRV:64bit: - [2009-07-14 02:10:48 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\modem.sys -- (Modem)DRV:64bit: - [2009-07-14 02:10:33 | 000,021,504 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\ws2ifsl.sys -- (ws2ifsl)DRV:64bit: - [2009-07-14 02:10:25 | 000,083,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rassstp.sys -- (RasSstp)DRV:64bit: - [2009-07-14 02:10:24 | 000,060,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agilevpn.sys -- (RasAgileVpn)DRV:64bit: - [2009-07-14 02:10:17 | 000,092,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\raspppoe.sys -- (RasPppoe)DRV:64bit: - [2009-07-14 02:10:13 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\asyncmac.sys -- (AsyncMac)DRV:64bit: - [2009-07-14 02:10:09 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rasacd.sys -- (RasAcd)DRV:64bit: - [2009-07-14 02:10:03 | 000,116,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ipnat.sys -- (IPNAT)DRV:64bit: - [2009-07-14 02:10:00 | 000,024,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ndistapi.sys -- (NdisTapi)DRV:64bit: - [2009-07-14 02:09:48 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\qwavedrv.sys -- (QWAVEdrv)DRV:64bit: - [2009-07-14 02:09:26 | 000,044,544 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\netbios.sys -- (NetBIOS)DRV:64bit: - [2009-07-14 02:09:26 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\wfplwf.sys -- (WfpLwf)DRV:64bit: - [2009-07-14 02:09:09 | 000,093,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\smb.sys -- (Smb)DRV:64bit: - [2009-07-14 02:08:59 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\irenum.sys -- (IRENUM)DRV:64bit: - [2009-07-14 02:08:51 | 000,076,800 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rspndr.sys -- (rspndr)DRV:64bit: - [2009-07-14 02:08:51 | 000,060,928 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lltdio.sys -- (lltdio)DRV:64bit: - [2009-07-14 02:08:25 | 000,077,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mpsdrv.sys -- (mpsdrv)DRV:64bit: - [2009-07-14 02:08:13 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndiscap.sys -- (NdisCap)DRV:64bit: - [2009-07-14 02:07:23 | 000,318,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nwifi.sys -- (NativeWifiP)DRV:64bit: - [2009-07-14 02:07:22 | 000,059,904 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vwififlt.sys -- (vwififlt)DRV:64bit: - [2009-07-14 02:07:21 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vwifibus.sys -- (vwifibus)DRV:64bit: - [2009-07-14 02:06:52 | 000,100,864 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidbth.sys -- (HidBth)DRV:64bit: - [2009-07-14 02:06:52 | 000,072,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthmodem.sys -- (BTHMODEM)DRV:64bit: - [2009-07-14 02:06:52 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\umpass.sys -- (UmPass)DRV:64bit: - [2009-07-14 02:06:45 | 000,072,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ohci1394.sys -- (ohci1394)DRV:64bit: - [2009-07-14 02:06:34 | 000,045,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\circlass.sys -- (circlass)DRV:64bit: - [2009-07-14 02:06:24 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidkmdf.sys -- (mshidkmdf)DRV:64bit: - [2009-07-14 02:06:23 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidir.sys -- (HidIr)DRV:64bit: - [2009-07-14 02:06:16 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\drmkaud.sys -- (drmkaud)DRV:64bit: - [2009-07-14 02:02:08 | 000,015,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MTConfig.sys -- (MTConfig)DRV:64bit: - [2009-07-14 02:02:07 | 000,027,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wacompen.sys -- (WacomPen)DRV:64bit: - [2009-07-14 02:01:03 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sffp_mmc.sys -- (sffp_mmc)DRV:64bit: - [2009-07-14 02:01:02 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sfloppy.sys -- (sfloppy)DRV:64bit: - [2009-07-14 02:01:01 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sffdisk.sys -- (sffdisk)DRV:64bit: - [2009-07-14 02:00:54 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fdc.sys -- (fdc)DRV:64bit: - [2009-07-14 02:00:54 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\flpydisk.sys -- (flpydisk)DRV:64bit: - [2009-07-14 02:00:41 | 000,097,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\parport.sys -- (Parport)DRV:64bit: - [2009-07-14 02:00:40 | 000,094,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serial.sys -- (Serial)DRV:64bit: - [2009-07-14 02:00:33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serenum.sys -- (Serenum)DRV:64bit: - [2009-07-14 02:00:20 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mouhid.sys -- (mouhid)DRV:64bit: - [2009-07-14 02:00:20 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sermouse.sys -- (sermouse)DRV:64bit: - [2009-07-14 02:00:19 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ksthunk.sys -- (ksthunk)DRV:64bit: - [2009-07-14 02:00:18 | 000,011,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mskssrv.sys -- (MSKSSRV)DRV:64bit: - [2009-07-14 02:00:17 | 000,008,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mstee.sys -- (MSTEE)DRV:64bit: - [2009-07-14 02:00:17 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mspclock.sys -- (MSPCLOCK)DRV:64bit: - [2009-07-14 02:00:17 | 000,006,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mspqm.sys -- (MSPQM)DRV:64bit: - [2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\beep.sys -- (Beep)DRV:64bit: - [2009-07-14 01:38:52 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\monitor.sys -- (monitor)DRV:64bit: - [2009-07-14 01:38:47 | 000,029,184 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vga.sys -- (VgaSave)DRV:64bit: - [2009-07-14 01:38:47 | 000,029,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vgapnp.sys -- (vga)DRV:64bit: - [2009-07-14 01:37:18 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\discache.sys -- (discache)DRV:64bit: - [2009-07-14 01:35:59 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\blbdrive.sys -- (blbdrive)DRV:64bit: - [2009-07-14 01:31:06 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidbatt.sys -- (HidBatt)DRV:64bit: - [2009-07-14 01:31:04 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\errdev.sys -- (ErrDev)DRV:64bit: - [2009-07-14 01:31:03 | 000,017,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CmBatt.sys -- (CmBatt)DRV:64bit: - [2009-07-14 01:31:02 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wmiacpi.sys -- (WmiAcpi)DRV:64bit: - [2009-07-14 01:26:13 | 000,113,152 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\luafv.sys -- (luafv)DRV:64bit: - [2009-07-14 01:25:40 | 000,034,304 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\filetrace.sys -- (Filetrace)DRV:64bit: - [2009-07-14 01:23:29 | 000,204,800 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fastfat.sys -- (fastfat)DRV:64bit: - [2009-07-14 01:23:29 | 000,195,072 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\exfat.sys -- (exfat)DRV:64bit: - [2009-07-14 01:21:02 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\nsiproxy.sys -- (nsiproxy)DRV:64bit: - [2009-07-14 01:19:57 | 000,105,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\i8042prt.sys -- (i8042prt)DRV:64bit: - [2009-07-14 01:19:48 | 000,044,032 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\npfs.sys -- (Npfs)DRV:64bit: - [2009-07-14 01:19:47 | 000,092,160 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\cdfs.sys -- (cdfs)DRV:64bit: - [2009-07-14 01:19:47 | 000,026,112 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\msfs.sys -- (Msfs)DRV:64bit: - [2009-07-14 01:19:38 | 000,006,144 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\null.sys -- (Null)DRV:64bit: - [2009-07-14 01:19:25 | 000,064,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdk8.sys -- (AmdK8)DRV:64bit: - [2009-07-14 01:19:25 | 000,062,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelppm.sys -- (intelppm)DRV:64bit: - [2009-07-14 01:19:25 | 000,060,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdppm.sys -- (AmdPPM)DRV:64bit: - [2009-07-14 01:19:25 | 000,060,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\processr.sys -- (Processor)DRV:64bit: - [2009-06-10 22:41:10 | 000,047,104 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BrSerWdm.sys -- (BrSerWdm)DRV:64bit: - [2009-06-10 22:41:10 | 000,014,976 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BrUsbMdm.sys -- (BrUsbMdm)DRV:64bit: - [2009-06-10 22:41:10 | 000,014,720 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BrUsbSer.sys -- (BrUsbSer)DRV:64bit: - [2009-06-10 22:41:06 | 000,018,432 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BrFiltLo.sys -- (BrFiltLo)DRV:64bit: - [2009-06-10 22:41:06 | 000,008,704 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BrFiltUp.sys -- (BrFiltUp)DRV:64bit: - [2009-06-10 22:37:19 | 000,023,040 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\secdrv.sys -- (secdrv)DRV:64bit: - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)DRV:64bit: - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)DRV:64bit: - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)DRV:64bit: - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 ========== Standard Registry (All) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-onsIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htmIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRiskIE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSIE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRCIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-onsIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htmIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1437562353&z=c28c4e3cf0e3da1494903a5g3z5c9mbw6qeo3ccw9c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRiskIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSIE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=dspp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htmIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=dspp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&q={searchTerms}IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.sweet-page.com/?type=hppp&ts=1437562423&z=f309648ab2ee7026d866992gdzec8mbwaqdo6z6o1c&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PSIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehpIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = plIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = BE D4 8B 5E FE BA D0 01 [binary data]IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)IE - HKCU\..\SearchScopes,DefaultScope = {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.sweet-page.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&ts=1437562450&type=default&q={searchTerms}IE - HKCU\..\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}: "URL" = http://www.sweet-page.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&ts=1437562450&type=default&q={searchTerms}IE - HKCU\..\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}: "URL" = http://www.sweet-page.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=TOSHIBAXMQ01ABD100_Y473S20PSXXY473S20PS&ts=1437562450&type=default&q={searchTerms}IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not foundFF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-07-13 13:06:04 | 000,000,000 | ---D | M] O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hostsO2:64bit: - BHO: (SteadyVideoBHO Class) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (Avast Software s.r.o.)O2 - BHO: (Razor Web) - {2e22e1c9-9ddb-40da-85c7-0753217fff76} - C:\Program Files (x86)\Razor Web\Extensions\2e22e1c9-9ddb-40da-85c7-0753217fff76.dll File not foundO2 - BHO: (SteadyVideoBHO Class) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (Avast Software s.r.o.)O2 - BHO: (Sale Clipper) - {b18906df-1dfa-4d50-8a1f-7d076a8c87b7} - C:\Program Files (x86)\Sale Clipper\Extensions\b18906df-1dfa-4d50-8a1f-7d076a8c87b7.dll File not foundO4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o.)O4 - HKLM..\Run: [startCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)O4 - HKCU..\Run: [GG] C:\Users\david\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)O1364bit: - gopher Prefix: missingO13 - gopher Prefix: missingO17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 31.41.176.2 31.41.176.12 0.0.0.0O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2E2A1A12-AB5B-46A5-9142-5136E4D9165C}: DhcpNameServer = 31.41.176.2 31.41.176.12 0.0.0.0O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{37D16A24-EFE2-4332-97CB-6D7EF7A1A649}: DhcpNameServer = 31.41.176.2 31.41.176.12 0.0.0.0O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{37D16A24-EFE2-4332-97CB-6D7EF7A1A649}: NameServer = 8.8.8.8,8.8.4.4O18:64bit: - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)O18:64bit: - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)O18:64bit: - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)O18:64bit: - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)O18:64bit: - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)O18:64bit: - Protocol\Filter\video/mp4 {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)O18:64bit: - Protocol\Filter\video/x-flv {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)O18 - Protocol\Filter\video/mp4 {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)O18 - Protocol\Filter\video/x-flv {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)O30:64bit: - LSA: Security Packages - (kerberos) - C:\Windows\SysNative\kerberos.dll (Microsoft Corporation)O30:64bit: - LSA: Security Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)O30:64bit: - LSA: Security Packages - (schannel) - C:\Windows\SysNative\schannel.dll (Microsoft Corporation)O30:64bit: - LSA: Security Packages - (wdigest) - C:\Windows\SysNative\wdigest.dll (Microsoft Corporation)O30:64bit: - LSA: Security Packages - (tspkg) - C:\Windows\SysNative\tspkg.dll (Microsoft Corporation)O30:64bit: - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)O30 - LSA: Security Packages - (kerberos) - C:\Windows\SysWow64\kerberos.dll (Microsoft Corporation)O30 - LSA: Security Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)O30 - LSA: Security Packages - (schannel) - C:\Windows\SysWow64\schannel.dll (Microsoft Corporation)O30 - LSA: Security Packages - (wdigest) - C:\Windows\SysWow64\wdigest.dll (Microsoft Corporation)O30 - LSA: Security Packages - (tspkg) - C:\Windows\SysWow64\tspkg.dll (Microsoft Corporation)O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)O31 - SafeBoot: AlternateShell - cmd.exeO32 - HKLM CDRom: AutoRun - 1O34 - HKLM BootExecute: (autocheck autochk *)O35:64bit: - HKLM\..comfile [open] -- "%1" %*O35:64bit: - HKLM\..exefile [open] -- "%1" %*O35 - HKLM\..comfile [open] -- "%1" %*O35 - HKLM\..exefile [open] -- "%1" %*O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*O37 - HKLM\...com [@ = comfile] -- "%1" %*O37 - HKLM\...exe [@ = exefile] -- "%1" %*O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2015-07-22 12:54:12 | 000,000,000 | ---D | C] -- C:\ProgramData\IHProtectUpDate[2015-07-22 12:49:48 | 000,820,648 | ---- | C] (Web Soft ) -- C:\Users\david\Desktop\OTL 3.exe[2015-07-17 08:52:40 | 000,000,000 | --SD | C] -- C:\Users\david\GG dysk[2015-07-17 08:52:36 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\Macromedia[2015-07-17 08:52:07 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\Mozilla[2015-07-17 08:51:49 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\GG[2015-07-17 08:51:22 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\GG[2015-07-17 08:31:12 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\Diagnostics[2015-07-15 10:55:02 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\ElevatedDiagnostics[2015-07-15 10:09:46 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll[2015-07-15 10:09:45 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll[2015-07-13 15:04:05 | 001,424,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll[2015-07-13 13:51:59 | 001,647,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll[2015-07-13 13:49:56 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml6r.dll[2015-07-13 13:49:55 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml6r.dll[2015-07-13 13:48:09 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll[2015-07-13 13:48:09 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll[2015-07-13 13:48:09 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll[2015-07-13 13:48:08 | 000,372,224 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll[2015-07-13 13:48:08 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll[2015-07-13 13:48:08 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll[2015-07-13 13:48:08 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll[2015-07-13 13:48:08 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll[2015-07-13 13:48:04 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll[2015-07-13 13:46:03 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL[2015-07-13 13:46:03 | 011,411,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll[2015-07-13 13:46:03 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll[2015-07-13 13:46:03 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx[2015-07-13 13:46:03 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll[2015-07-13 13:45:59 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL[2015-07-13 13:45:58 | 014,635,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll[2015-07-13 13:45:58 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll[2015-07-13 13:45:58 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx[2015-07-13 13:45:58 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll[2015-07-13 13:45:53 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys[2015-07-13 13:45:53 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys[2015-07-13 13:45:48 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll[2015-07-13 13:45:26 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll[2015-07-13 13:45:26 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll[2015-07-13 13:45:26 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll[2015-07-13 13:45:26 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe[2015-07-13 13:45:26 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll[2015-07-13 13:45:24 | 003,298,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll[2015-07-13 13:45:24 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll[2015-07-13 13:45:24 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe[2015-07-13 13:45:24 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll[2015-07-13 13:45:24 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll[2015-07-13 13:45:24 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe[2015-07-13 13:45:23 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll[2015-07-13 13:45:23 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll[2015-07-13 13:45:23 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll[2015-07-13 13:45:22 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll[2015-07-13 13:45:14 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe[2015-07-13 13:44:27 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\InkEd.dll[2015-07-13 13:44:23 | 000,275,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\InkEd.dll[2015-07-13 13:44:22 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jnwmon.dll[2015-07-13 13:44:16 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll[2015-07-13 13:44:15 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll[2015-07-13 13:44:12 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ubpm.dll[2015-07-13 13:44:11 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ubpm.dll[2015-07-13 13:44:09 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll[2015-07-13 13:44:08 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll[2015-07-13 13:43:42 | 000,288,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS[2015-07-13 13:43:41 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys[2015-07-13 13:43:19 | 001,131,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll[2015-07-13 13:43:19 | 000,156,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll[2015-07-13 13:43:19 | 000,081,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll[2015-07-13 13:43:18 | 000,156,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll[2015-07-13 13:43:18 | 000,073,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscories.dll[2015-07-13 13:43:17 | 001,943,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll[2015-07-13 13:37:31 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll[2015-07-13 13:37:30 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll[2015-07-13 13:36:32 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\osk.exe[2015-07-13 13:36:27 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\osk.exe[2015-07-13 13:35:10 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wer.dll[2015-07-13 13:35:10 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll[2015-07-13 13:33:59 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll[2015-07-13 13:33:59 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll[2015-07-13 13:33:59 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll[2015-07-13 13:33:59 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe[2015-07-13 13:33:57 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll[2015-07-13 13:33:46 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll[2015-07-13 13:33:46 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll[2015-07-13 13:33:46 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll[2015-07-13 13:33:46 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe[2015-07-13 13:33:46 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll[2015-07-13 13:33:41 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll[2015-07-13 13:33:41 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll[2015-07-13 13:33:41 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll[2015-07-13 13:33:41 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll[2015-07-13 13:33:37 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll[2015-07-13 13:33:23 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe[2015-07-13 13:33:07 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll[2015-07-13 13:33:06 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll[2015-07-13 13:32:51 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll[2015-07-13 13:32:51 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll[2015-07-13 13:32:51 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax[2015-07-13 13:32:49 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sbe.dll[2015-07-13 13:32:49 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax[2015-07-13 13:32:48 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll[2015-07-13 13:31:50 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll[2015-07-13 13:31:50 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll[2015-07-13 13:31:48 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll[2015-07-13 13:31:47 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll[2015-07-13 13:31:29 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll[2015-07-13 13:31:29 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll[2015-07-13 13:31:26 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42.dll[2015-07-13 13:31:26 | 001,359,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42u.dll[2015-07-13 13:31:07 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll[2015-07-13 13:31:06 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll[2015-07-13 13:31:06 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll[2015-07-13 13:31:06 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll[2015-07-13 13:31:06 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll[2015-07-13 13:31:04 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccu32.dll[2015-07-13 13:31:03 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll[2015-07-13 13:31:03 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccr32.dll[2015-07-13 13:31:02 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll[2015-07-13 13:21:09 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL[2015-07-13 13:21:07 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL[2015-07-13 13:20:35 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll[2015-07-13 13:20:04 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys[2015-07-13 13:14:44 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys[2015-07-13 13:14:44 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wdfres.dll[2015-07-13 13:13:52 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscacheugc.exe[2015-07-13 13:13:51 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnsapi.dll[2015-07-13 13:13:51 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscacheugc.exe[2015-07-13 13:09:28 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\AVAST Software[2015-07-13 13:09:05 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnet.dll[2015-07-13 13:09:04 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnet.dll[2015-07-13 13:07:37 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll[2015-07-13 13:07:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software[2015-07-13 13:06:09 | 000,442,264 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswsp.sys[2015-07-13 13:06:09 | 000,137,288 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswStm.sys[2015-07-13 13:06:08 | 001,047,320 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswSnx.sys[2015-07-13 13:06:08 | 000,093,528 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswRdr2.sys[2015-07-13 13:06:08 | 000,089,944 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswMonFlt.sys[2015-07-13 13:06:05 | 000,364,472 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\aswBoot.exe[2015-07-13 13:05:43 | 000,043,112 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\avastSS.scr[2015-07-13 13:04:31 | 001,805,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll[2015-07-13 13:04:31 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll[2015-07-13 13:03:51 | 000,112,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe[2015-07-13 13:03:50 | 003,241,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll[2015-07-13 13:03:50 | 001,941,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll[2015-07-13 13:03:50 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msihnd.dll[2015-07-13 13:02:45 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software[2015-07-13 13:02:02 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software[2015-07-13 13:01:08 | 000,538,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\objsel.dll[2015-07-13 13:01:03 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cngprovider.dll[2015-07-13 13:01:03 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adprovider.dll[2015-07-13 13:01:03 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\capiprovider.dll[2015-07-13 13:01:03 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpapiprovider.dll[2015-07-13 13:01:03 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dimsroam.dll[2015-07-13 13:01:03 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wincredprovider.dll[2015-07-13 13:00:36 | 000,722,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\objsel.dll[2015-07-13 13:00:28 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wincredprovider.dll[2015-07-13 13:00:27 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cngprovider.dll[2015-07-13 13:00:27 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adprovider.dll[2015-07-13 13:00:27 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\capiprovider.dll[2015-07-13 13:00:27 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpapiprovider.dll[2015-07-13 13:00:27 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dimsroam.dll[2015-07-13 12:55:55 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll[2015-07-13 12:55:53 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll[2015-07-13 12:54:58 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10K.DLL[2015-07-13 12:54:58 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10K.DLL[2015-07-13 12:54:34 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT[2015-07-13 12:54:08 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys[2015-07-13 12:54:08 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll[2015-07-13 12:26:53 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\Adobe[2015-07-13 12:19:32 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat[2015-07-13 12:19:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat[2015-07-13 11:55:42 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE[2015-07-13 11:54:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID[2015-07-13 11:54:32 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID[2015-07-13 11:41:12 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe[2015-07-13 11:41:12 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll[2015-07-13 11:40:58 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll[2015-07-13 11:40:58 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll[2015-07-13 11:40:58 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe[2015-07-13 11:40:56 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll[2015-07-13 11:40:56 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll[2015-07-13 11:40:55 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx[2015-07-13 11:40:55 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll[2015-07-13 11:40:54 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl[2015-07-13 11:40:54 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll[2015-07-13 11:40:54 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll[2015-07-13 11:40:54 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat[2015-07-13 11:40:54 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec[2015-07-13 11:40:54 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll[2015-07-13 11:40:54 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll[2015-07-13 11:40:54 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll[2015-07-13 11:40:54 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll[2015-07-13 11:40:54 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll[2015-07-13 11:40:54 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll[2015-07-13 11:40:53 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe[2015-07-13 11:40:53 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe[2015-07-13 11:40:53 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll[2015-07-13 11:40:53 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe[2015-07-13 11:40:53 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll[2015-07-13 11:40:53 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll[2015-07-13 11:40:53 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll[2015-07-13 11:40:53 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll[2015-07-13 11:40:52 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll[2015-07-13 11:40:52 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll[2015-07-13 11:40:52 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll[2015-07-13 11:40:52 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll[2015-07-13 11:40:52 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll[2015-07-13 11:40:52 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe[2015-07-13 11:40:52 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll[2015-07-13 11:40:52 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe[2015-07-13 11:40:49 | 000,942,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll[2015-07-13 11:40:49 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll[2015-07-13 11:40:49 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll[2015-07-13 11:40:49 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe[2015-07-13 11:40:48 | 006,025,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll[2015-07-13 11:40:48 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll[2015-07-13 11:40:48 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll[2015-07-13 11:40:48 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll[2015-07-13 11:40:48 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll[2015-07-13 11:40:48 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe[2015-07-13 11:40:48 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll[2015-07-13 11:40:48 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx[2015-07-13 11:40:48 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll[2015-07-13 11:40:48 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe[2015-07-13 11:40:47 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl[2015-07-13 11:40:47 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll[2015-07-13 11:40:47 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll[2015-07-13 11:40:47 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll[2015-07-13 11:40:47 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe[2015-07-13 11:40:47 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat[2015-07-13 11:40:47 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll[2015-07-13 11:40:47 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec[2015-07-13 11:40:47 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll[2015-07-13 11:40:47 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll[2015-07-13 11:40:47 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe[2015-07-13 11:40:47 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe[2015-07-13 11:40:47 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll[2015-07-13 11:40:47 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll[2015-07-13 11:40:47 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll[2015-07-13 11:40:47 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll[2015-07-13 11:40:47 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll[2015-07-13 11:40:47 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll[2015-07-13 11:40:46 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll[2015-07-13 11:40:46 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll[2015-07-13 11:40:46 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe[2015-07-13 11:40:46 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe[2015-07-13 11:40:46 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll[2015-07-13 11:40:46 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll[2015-07-13 11:40:46 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe[2015-07-13 11:40:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll[2015-07-13 11:40:45 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll[2015-07-13 11:40:45 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll[2015-07-13 11:40:45 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll[2015-07-13 11:40:45 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll[2015-07-13 11:37:31 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll[2015-07-13 11:37:31 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll[2015-07-13 11:37:31 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll[2015-07-13 11:33:00 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe[2015-07-13 11:30:44 | 003,976,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe[2015-07-13 11:30:44 | 003,920,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe[2015-07-13 11:30:37 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll[2015-07-13 11:30:14 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll[2015-07-13 11:30:14 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe[2015-07-13 11:30:14 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe[2015-07-13 11:30:14 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll[2015-07-13 11:30:14 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll[2015-07-13 11:30:13 | 005,557,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe[2015-07-13 11:30:13 | 001,727,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll[2015-07-13 11:30:10 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll[2015-07-13 11:26:18 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll[2015-07-13 11:26:18 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll[2015-07-13 11:26:18 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax[2015-07-13 11:26:18 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax[2015-07-13 11:23:54 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll[2015-07-13 11:23:54 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll[2015-07-13 11:23:54 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll[2015-07-13 11:23:54 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll[2015-07-13 11:23:54 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll[2015-07-13 11:23:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll[2015-07-13 11:23:54 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll[2015-07-13 11:23:54 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll[2015-07-13 11:23:53 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll[2015-07-13 11:23:53 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll[2015-07-13 11:23:53 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll[2015-07-13 11:23:53 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll[2015-07-13 11:23:53 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll[2015-07-13 11:23:53 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll[2015-07-13 11:23:53 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll[2015-07-13 11:23:53 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll[2015-07-13 11:23:53 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll[2015-07-13 11:23:53 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll[2015-07-13 11:23:53 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll[2015-07-13 11:23:53 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll[2015-07-13 11:23:53 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll[2015-07-13 11:23:53 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll[2015-07-13 11:23:53 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll[2015-07-13 11:23:53 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll[2015-07-13 11:23:53 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll[2015-07-13 11:23:53 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll[2015-07-13 11:20:33 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll[2015-07-13 11:20:33 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll[2015-07-13 11:20:13 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll[2015-07-13 11:20:13 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll[2015-07-13 11:20:13 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll[2015-07-13 11:20:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll[2015-07-13 11:20:12 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll[2015-07-13 11:20:12 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll[2015-07-13 11:20:12 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll[2015-07-13 11:20:12 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe[2015-07-13 11:20:12 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll[2015-07-13 11:20:12 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll[2015-07-13 11:20:12 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll[2015-07-13 11:20:12 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe[2015-07-13 11:20:12 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll[2015-07-13 11:20:12 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll[2015-07-13 11:20:12 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe[2015-07-13 11:20:11 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll[2015-07-13 11:20:11 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll[2015-07-13 11:20:11 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe[2015-07-13 11:20:11 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll[2015-07-13 11:20:11 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll[2015-07-13 11:20:11 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll[2015-07-13 11:20:11 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll[2015-07-13 11:20:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll[2015-07-13 11:20:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll[2015-07-13 11:20:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll[2015-07-13 11:20:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll[2015-07-13 11:20:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll[2015-07-13 11:16:11 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe[2015-07-13 11:15:53 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe[2015-07-13 11:11:56 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AUDIOKSE.dll[2015-07-13 11:11:53 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AUDIOKSE.dll[2015-07-13 11:11:53 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll[2015-07-13 11:11:53 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll[2015-07-13 11:11:53 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDump.dll[2015-07-13 11:11:20 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\synceng.dll[2015-07-13 11:11:15 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\synceng.dll[2015-07-13 11:10:43 | 000,642,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi[2015-07-13 11:10:43 | 000,605,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe[2015-07-13 11:10:43 | 000,566,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi[2015-07-13 11:10:43 | 000,518,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe[2015-07-13 11:10:43 | 000,019,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd1394.dll[2015-07-13 11:10:42 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdcom.dll[2015-07-13 11:10:37 | 000,020,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdusb.dll[2015-07-13 11:02:22 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll[2015-07-13 11:01:37 | 001,067,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msctf.dll[2015-07-13 11:01:22 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll[2015-07-13 11:01:21 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll[2015-07-13 11:00:53 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll[2015-07-13 11:00:53 | 000,492,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll[2015-07-13 10:56:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo[2015-07-13 10:56:33 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\OpenCandy[2015-07-13 10:56:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CrystalDiskInfo[2015-07-13 10:56:19 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll[2015-07-13 10:56:18 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll[2015-07-13 10:55:06 | 003,221,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll[2015-07-13 10:55:06 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll[2015-07-13 10:55:06 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll[2015-07-13 10:55:01 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe[2015-07-13 10:54:56 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe[2015-07-13 10:54:46 | 003,722,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll[2015-07-13 10:54:46 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe[2015-07-13 10:54:46 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll[2015-07-13 10:54:46 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll[2015-07-13 10:54:46 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll[2015-07-13 10:54:46 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll[2015-07-13 10:54:46 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll[2015-07-13 10:54:46 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdrmemptylst.exe[2015-07-13 10:54:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll[2015-07-13 10:54:18 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll[2015-07-13 10:54:18 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll[2015-07-13 10:53:32 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSCOVER.exe[2015-07-13 10:52:58 | 000,634,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcrt.dll[2015-07-13 10:52:48 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll[2015-07-13 10:52:48 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll[2015-07-13 10:52:13 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certutil.exe[2015-07-13 10:52:13 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certenc.dll[2015-07-13 10:52:01 | 001,192,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certutil.exe[2015-07-13 10:52:01 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certenc.dll[2015-07-13 10:51:26 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll[2015-07-13 10:51:26 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe[2015-07-13 10:51:26 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx[2015-07-13 10:51:22 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll[2015-07-13 10:51:22 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe[2015-07-13 10:51:22 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx[2015-07-13 10:49:17 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll[2015-07-13 10:48:18 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll[2015-07-13 10:48:01 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll[2015-07-13 10:48:01 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll[2015-07-13 10:47:39 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clfsw32.dll[2015-07-13 10:47:36 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clfsw32.dll[2015-07-13 10:47:18 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll[2015-07-13 10:46:12 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll[2015-07-13 10:46:00 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll[2015-07-13 10:44:16 | 009,889,352 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysWow64\RtsP2StorIcon.dll[2015-07-13 10:44:16 | 000,290,520 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\drivers\RtsP2Stor.sys[2015-07-13 10:42:46 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll[2015-07-13 10:42:46 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL[2015-07-13 10:42:45 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll[2015-07-13 10:42:45 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL[2015-07-13 10:42:14 | 001,216,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll[2015-07-13 10:38:23 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll[2015-07-13 10:38:23 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll[2015-07-13 10:36:18 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll[2015-07-13 10:36:18 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys[2015-07-13 10:21:29 | 001,389,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardagt.exe[2015-07-13 10:21:29 | 000,171,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\infocardapi.dll[2015-07-13 10:21:29 | 000,099,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\infocardapi.dll[2015-07-13 10:21:28 | 000,619,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardagt.exe[2015-07-13 10:21:19 | 000,008,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardres.dll[2015-07-13 10:21:19 | 000,008,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardres.dll[2015-07-13 10:19:50 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TsWpfWrp.exe[2015-07-13 10:19:50 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsWpfWrp.exe[2015-07-13 09:57:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hewlett-Packard[2015-07-13 09:20:48 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe[2015-07-13 09:20:47 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll[2015-07-13 09:19:08 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\Opera Software[2015-07-13 09:19:06 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\Opera Software[2015-07-13 09:18:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera[2015-07-13 09:15:54 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys[2015-07-13 09:15:54 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys[2015-07-13 09:15:23 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys[2015-07-13 09:15:23 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys[2015-07-13 09:08:06 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip[2015-07-10 22:04:54 | 000,000,000 | ---D | C] -- C:\HP[2015-07-10 21:59:47 | 002,674,320 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll[2015-07-10 21:59:46 | 003,611,752 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll[2015-07-10 21:59:46 | 001,262,696 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll[2015-07-10 21:59:46 | 000,854,672 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll[2015-07-10 21:59:45 | 000,105,616 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll[2015-07-10 21:59:40 | 000,202,336 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll[2015-07-10 21:59:40 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll[2015-07-10 21:40:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM[2015-07-10 21:40:33 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek[2015-07-10 21:40:20 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll[2015-07-10 21:40:20 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll[2015-07-10 21:40:19 | 001,560,168 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl[2015-07-10 21:40:19 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll[2015-07-10 21:40:18 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll[2015-07-10 21:40:18 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll[2015-07-10 21:40:18 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll[2015-07-10 21:40:18 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll[2015-07-10 21:40:18 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll[2015-07-10 21:40:18 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll[2015-07-10 21:40:18 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll[2015-07-10 21:40:18 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll[2015-07-10 21:37:42 | 001,706,640 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll[2015-07-10 21:37:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield[2015-07-10 21:36:29 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\AMD[2015-07-10 21:36:10 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\ATI[2015-07-10 21:36:10 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\ATI[2015-07-10 21:36:10 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI[2015-07-10 21:25:08 | 000,000,000 | ---D | C] -- C:\Program Files\AMD[2015-07-10 21:25:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD[2015-07-10 21:25:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP[2015-07-10 21:25:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies[2015-07-10 21:25:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies[2015-07-10 21:23:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD[2015-07-10 21:23:50 | 000,046,136 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdiox64.sys[2015-07-10 21:23:43 | 000,056,448 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\usbfilter.sys[2015-07-10 21:23:43 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE[2015-07-10 21:22:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies[2015-07-10 21:22:49 | 000,000,000 | -HSD | C] -- C:\Windows\Installer[2015-07-10 21:22:34 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies[2015-07-10 21:22:32 | 000,000,000 | ---D | C] -- C:\Program Files\ATI[2015-07-10 21:12:44 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp[2015-07-10 21:12:07 | 000,000,000 | ---D | C] -- C:\swsetup[2015-07-10 19:25:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lavalys[2015-07-10 13:36:51 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll[2015-07-10 13:36:51 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll[2015-07-10 13:33:54 | 000,000,000 | ---D | C] -- C:\Users\david\Documents\AIDA64 Reports[2015-07-10 13:25:33 | 000,000,000 | ---D | C] -- C:\Windows\Panther[2015-07-10 13:19:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire[2015-07-10 13:19:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FinalWire[2015-07-10 13:18:57 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\Programs[2015-07-10 12:44:47 | 000,849,992 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys[2015-07-10 12:44:47 | 000,108,104 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll[2015-07-10 12:44:47 | 000,073,800 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll[2015-07-10 12:44:44 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information[2015-07-10 12:44:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek[2015-07-10 12:43:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Dell[2015-07-10 12:37:21 | 000,000,000 | R--D | C] -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup[2015-07-10 12:37:21 | 000,000,000 | R--D | C] -- C:\Users\david\Searches[2015-07-10 12:37:21 | 000,000,000 | R--D | C] -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools[2015-07-10 12:37:10 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\Identities[2015-07-10 12:37:05 | 000,000,000 | R--D | C] -- C:\Users\david\Contacts[2015-07-10 12:37:03 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\VirtualStore[2015-07-10 12:36:48 | 000,000,000 | --SD | C] -- C:\Users\david\AppData\Roaming\Microsoft[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Videos[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Saved Games[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Pictures[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Music[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Links[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Favorites[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Downloads[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Documents[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\Desktop[2015-07-10 12:36:48 | 000,000,000 | R--D | C] -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Ustawienia lokalne[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\AppData\Local\Temporary Internet Files[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Szablony[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\SendTo[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Recent[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\PrintHood[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\NetHood[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Documents\Moje wideo[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Documents\Moje obrazy[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Moje dokumenty[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Documents\Moja muzyka[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Menu Start[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\AppData\Local\Historia[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Dane aplikacji[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\AppData\Local\Dane aplikacji[2015-07-10 12:36:48 | 000,000,000 | -HSD | C] -- C:\Users\david\Cookies[2015-07-10 12:36:48 | 000,000,000 | -H-D | C] -- C:\Users\david\AppData[2015-07-10 12:36:48 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\Temp[2015-07-10 12:36:48 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Local\Microsoft[2015-07-10 12:36:48 | 000,000,000 | ---D | C] -- C:\Users\david\AppData\Roaming\Media Center Programs[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\Recovery[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty[2015-07-10 12:36:37 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji[2015-07-10 12:29:13 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution[2015-07-10 12:26:54 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch[2015-07-10 12:25:59 | 000,000,000 | -HSD | C] -- C:\System Volume Information Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 ========== Files - Modified Within 30 Days ========== [2015-07-22 13:19:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat[2015-07-22 13:19:51 | 1290,035,200 | -HS- | M] () -- C:\hiberfil.sys[2015-07-22 13:19:18 | 000,020,656 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0[2015-07-22 13:19:17 | 000,020,656 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0[2015-07-22 12:50:21 | 000,820,648 | ---- | M] (Web Soft ) -- C:\Users\david\Desktop\OTL 3.exe[2015-07-22 12:31:33 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI[2015-07-22 12:31:33 | 000,687,828 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat[2015-07-22 12:31:33 | 000,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat[2015-07-22 12:31:33 | 000,131,382 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat[2015-07-22 12:31:33 | 000,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat[2015-07-22 12:25:21 | 004,137,472 | ---- | M] (Qualcomm Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athrx.sys[2015-07-15 09:17:02 | 000,266,656 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT[2015-07-13 13:06:46 | 000,442,264 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswsp.sys[2015-07-13 13:06:02 | 000,137,288 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswStm.sys[2015-07-13 13:06:01 | 000,364,472 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\aswBoot.exe[2015-07-13 13:06:01 | 000,272,248 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys[2015-07-13 13:06:01 | 000,093,528 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswRdr2.sys[2015-07-13 13:06:01 | 000,089,944 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswMonFlt.sys[2015-07-13 13:06:01 | 000,065,736 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys[2015-07-13 13:06:01 | 000,029,168 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys[2015-07-13 13:05:43 | 000,043,112 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\avastSS.scr[2015-07-13 13:05:23 | 001,047,320 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswSnx.sys[2015-07-13 12:26:39 | 000,000,266 | RHS- | M] () -- C:\ProgramData\ntuser.pol[2015-07-13 11:41:12 | 000,940,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe[2015-07-13 11:41:12 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll[2015-07-13 11:40:58 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll[2015-07-13 11:40:58 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll[2015-07-13 11:40:58 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe[2015-07-13 11:40:56 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll[2015-07-13 11:40:56 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll[2015-07-13 11:40:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec[2015-07-13 11:40:55 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx[2015-07-13 11:40:55 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll[2015-07-13 11:40:54 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl[2015-07-13 11:40:54 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll[2015-07-13 11:40:54 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll[2015-07-13 11:40:54 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat[2015-07-13 11:40:54 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll[2015-07-13 11:40:54 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll[2015-07-13 11:40:54 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll[2015-07-13 11:40:54 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll[2015-07-13 11:40:54 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll[2015-07-13 11:40:54 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll[2015-07-13 11:40:54 | 000,016,303 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf[2015-07-13 11:40:53 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe[2015-07-13 11:40:53 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe[2015-07-13 11:40:53 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll[2015-07-13 11:40:53 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe[2015-07-13 11:40:53 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll[2015-07-13 11:40:53 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll[2015-07-13 11:40:53 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll[2015-07-13 11:40:53 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll[2015-07-13 11:40:52 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll[2015-07-13 11:40:52 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll[2015-07-13 11:40:52 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll[2015-07-13 11:40:52 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll[2015-07-13 11:40:52 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll[2015-07-13 11:40:52 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe[2015-07-13 11:40:52 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll[2015-07-13 11:40:52 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe[2015-07-13 11:40:49 | 000,942,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll[2015-07-13 11:40:49 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll[2015-07-13 11:40:49 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll[2015-07-13 11:40:49 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe[2015-07-13 11:40:48 | 006,025,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll[2015-07-13 11:40:48 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll[2015-07-13 11:40:48 | 000,633,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll[2015-07-13 11:40:48 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll[2015-07-13 11:40:48 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll[2015-07-13 11:40:48 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe[2015-07-13 11:40:48 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll[2015-07-13 11:40:48 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx[2015-07-13 11:40:48 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll[2015-07-13 11:40:48 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe[2015-07-13 11:40:47 | 002,125,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl[2015-07-13 11:40:47 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll[2015-07-13 11:40:47 | 000,801,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll[2015-07-13 11:40:47 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll[2015-07-13 11:40:47 | 000,720,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe[2015-07-13 11:40:47 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat[2015-07-13 11:40:47 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll[2015-07-13 11:40:47 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll[2015-07-13 11:40:47 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec[2015-07-13 11:40:47 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll[2015-07-13 11:40:47 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll[2015-07-13 11:40:47 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe[2015-07-13 11:40:47 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe[2015-07-13 11:40:47 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll[2015-07-13 11:40:47 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll[2015-07-13 11:40:47 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll[2015-07-13 11:40:47 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll[2015-07-13 11:40:47 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll[2015-07-13 11:40:47 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll[2015-07-13 11:40:47 | 000,016,303 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf[2015-07-13 11:40:46 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll[2015-07-13 11:40:46 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe[2015-07-13 11:40:46 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe[2015-07-13 11:40:46 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll[2015-07-13 11:40:46 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll[2015-07-13 11:40:46 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe[2015-07-13 11:40:46 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll[2015-07-13 11:40:45 | 000,774,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll[2015-07-13 11:40:45 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll[2015-07-13 11:40:45 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll[2015-07-13 11:40:45 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll[2015-07-13 11:37:31 | 000,878,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll[2015-07-13 11:37:31 | 000,859,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll[2015-07-13 11:37:31 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll[2015-07-13 11:33:00 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe[2015-07-13 11:25:04 | 002,533,120 | ---- | M] () -- C:\Users\david\Desktop\system.nfo[2015-07-13 11:23:54 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll[2015-07-13 11:23:54 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll[2015-07-13 11:23:54 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll[2015-07-13 11:23:54 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll[2015-07-13 11:23:54 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll[2015-07-13 11:23:54 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll[2015-07-13 11:23:54 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll[2015-07-13 11:23:54 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll[2015-07-13 11:23:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll[2015-07-13 11:23:54 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll[2015-07-13 11:23:54 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll[2015-07-13 11:23:53 | 003,928,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll[2015-07-13 11:23:53 | 002,776,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll[2015-07-13 11:23:53 | 002,565,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll[2015-07-13 11:23:53 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll[2015-07-13 11:23:53 | 001,682,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll[2015-07-13 11:23:53 | 001,238,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll[2015-07-13 11:23:53 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll[2015-07-13 11:23:53 | 000,648,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll[2015-07-13 11:23:53 | 000,522,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll[2015-07-13 11:23:53 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll[2015-07-13 11:23:53 | 000,363,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll[2015-07-13 11:23:53 | 000,333,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll[2015-07-13 11:23:53 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll[2015-07-13 11:23:53 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll[2015-07-13 11:23:53 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll[2015-07-13 11:23:53 | 000,194,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll[2015-07-13 11:23:53 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll[2015-07-13 11:20:33 | 001,887,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll[2015-07-13 11:20:33 | 001,505,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll[2015-07-13 11:20:29 | 000,164,263 | ---- | M] () -- C:\Users\david\Desktop\menedżer.jpg[2015-07-13 11:16:13 | 000,120,557 | ---- | M] () -- C:\Users\david\Desktop\dysk.jpg[2015-07-13 11:10:48 | 000,201,073 | ---- | M] () -- C:\Users\david\Desktop\smart 2.jpg[2015-07-13 11:08:30 | 000,196,975 | ---- | M] () -- C:\Users\david\Desktop\smart 1.jpg[2015-07-10 21:27:01 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin[2015-07-10 18:31:29 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf[2015-07-10 12:31:34 | 000,151,249 | ---- | M] () -- C:\Windows\SysWow64\license.rtf[2015-07-10 12:31:34 | 000,151,249 | ---- | M] () -- C:\Windows\SysNative\license.rtf ========== Files Created - No Company Name ========== [2015-07-17 08:51:36 | 000,001,111 | ---- | C] () -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk[2015-07-13 13:14:44 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf[2015-07-13 13:06:09 | 000,272,248 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys[2015-07-13 13:06:08 | 000,065,736 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys[2015-07-13 13:06:08 | 000,029,168 | ---- | C] () -- C:\Windows\SysNative\drivers\aswHwid.sys[2015-07-13 12:26:39 | 000,000,266 | RHS- | C] () -- C:\ProgramData\ntuser.pol[2015-07-13 11:40:54 | 000,016,303 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf[2015-07-13 11:40:47 | 000,016,303 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf[2015-07-13 11:25:00 | 002,533,120 | ---- | C] () -- C:\Users\david\Desktop\system.nfo[2015-07-13 11:20:29 | 000,164,263 | ---- | C] () -- C:\Users\david\Desktop\menedżer.jpg[2015-07-13 11:16:13 | 000,120,557 | ---- | C] () -- C:\Users\david\Desktop\dysk.jpg[2015-07-13 11:09:32 | 000,201,073 | ---- | C] () -- C:\Users\david\Desktop\smart 2.jpg[2015-07-13 11:08:30 | 000,196,975 | ---- | C] () -- C:\Users\david\Desktop\smart 1.jpg[2015-07-10 21:59:46 | 000,283,125 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT[2015-07-10 21:27:01 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin[2015-07-10 21:13:11 | 000,000,712 | ---- | C] () -- C:\Windows\SysNative\drivers\RTEQEX0.dat[2015-07-10 21:13:11 | 000,000,008 | ---- | C] () -- C:\Windows\SysNative\drivers\rtkhdaud.dat[2015-07-10 18:31:29 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf[2015-07-10 12:37:23 | 000,001,425 | ---- | C] () -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk[2015-07-10 12:31:14 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk[2015-07-10 12:30:54 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk[2015-07-10 12:25:59 | 1290,035,200 | -HS- | C] () -- C:\hiberfil.sys ========== ZeroAccess Check ========== [2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64"" = C:\Windows\SysNative\shell32.dll -- [2015-02-13 07:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]"" = %SystemRoot%\system32\shell32.dll -- [2015-02-13 07:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)"ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]< End of report >8. http://imageshack.com/a/img661/7404/mA1Qti.jpg9. http://imageshack.com/a/img633/3089/Pt5Hl8.jpg10. http://imageshack.com/a/img538/8488/jaJwMI.jpg11. http://imageshack.com/a/img661/5994/Hrtkpr.jpg Odnośnik do komentarza
Federica Opublikowano 17 Sierpnia 2015 Autor Zgłoś Udostępnij Opublikowano 17 Sierpnia 2015 Przepraszam że taki ogrom tego, ale zrobiłam już chyba wszystkie możliwe testy i analizy Odnośnik do komentarza
Rekomendowane odpowiedzi
Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto
Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.
Zarejestruj nowe konto
Załóż nowe konto. To bardzo proste!
Zarejestruj sięZaloguj się
Posiadasz już konto? Zaloguj się poniżej.
Zaloguj się