x-kom hosting

Mam problem z komputerem. Bitcoin-miner, run time errors i inne.

elsaper
utworzono
utworzono (edytowane)

Od pewnego czasu mam problem ze swoim komputerem. Zaczęło się od samo-wpisywania się w różnych miejscach jakiegoś komunikatu (ze 4 razy), ale problem ustał. Potem pojawiały mi się różna Run-Time Errors 5 i 75. Teraz mam jakiś strasznie zaśmiecający pracę systemu Bitcoin-miner.exe usuwam go, ale on powraca po logowaniu systemu. Uzywam avasta, a także czasem Temp File Cleaner, który za pierwszym razem usunął mi aż 1600 MB (!).

To jest log z mojego komputera, ale ja się na tym nie znam.
Za chwilę wrzucę loga z OTL.

[log]OTL logfile created on: 2011-07-11 15:02:16 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,54 Gb Available Physical Memory | 53,52% Memory free
5,73 Gb Paging File | 4,01 Gb Available in Paging File | 69,86% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 96,46 Gb Free Space | 64,72% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 141,69 Gb Free Space | 95,31% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
PRC - [2011-07-11 14:55:41 | 000,167,936 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Local\Temp\unzip.exe
PRC - [2011-07-11 14:54:42 | 000,743,936 | ---- | M] (Ufasoft) -- C:\Users\MAX-BUD\AppData\Local\Temp\miner.exe
PRC - [2011-07-11 13:28:43 | 000,132,097 | RHS- | M] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\967137114.exe
PRC - [2011-07-10 17:01:53 | 000,510,465 | -H-- | M] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\3.exe
PRC - [2011-07-10 11:28:57 | 000,111,105 | RHS- | M] (Belmont Jutland Laue Kingston) -- C:\Users\MAX-BUD\AppData\Roaming\cunt.exe
PRC - [2011-07-04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011-06-24 08:25:50 | 001,012,792 | ---- | M] (Google Inc.) -- C:\Users\MAX-BUD\AppData\Local\Google\Chrome\Application\chrome.exe
PRC - [2011-04-08 12:59:52 | 000,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
PRC - [2010-11-20 14:22:51 | 000,673,040 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
PRC - [2009-07-28 20:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
PRC - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
PRC - [2009-07-14 03:14:31 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rundll32.exe
PRC - [2009-07-13 15:24:00 | 000,304,496 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
PRC - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
PRC - [2009-01-13 21:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
MOD - [2011-07-04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2011-05-24 12:40:05 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dll
MOD - [2011-05-24 12:39:38 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dll
MOD - [2011-02-25 07:34:36 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dll
MOD - [2010-11-20 14:24:35 | 001,292,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dll
MOD - [2010-11-20 14:21:36 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dll
MOD - [2010-11-20 14:21:34 | 001,128,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dll
MOD - [2010-11-20 14:21:33 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dll
MOD - [2010-11-20 14:21:24 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dll
MOD - [2010-11-20 14:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dll
MOD - [2010-11-20 14:21:19 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dll
MOD - [2010-11-20 14:21:15 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dll
MOD - [2010-11-20 14:21:14 | 001,667,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dll
MOD - [2010-11-20 14:21:07 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dll
MOD - [2010-11-20 14:20:57 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dll
MOD - [2010-11-20 14:20:49 | 001,414,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dll
MOD - [2010-11-20 14:20:49 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dll
MOD - [2010-11-20 14:18:23 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll
MOD - [2010-11-20 14:18:03 | 000,295,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dll
MOD - [2010-11-20 14:18:02 | 000,640,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dll
MOD - [2010-11-20 14:16:50 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drv
MOD - [2010-11-20 14:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dll
MOD - [2010-11-20 14:08:57 | 000,663,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dll
MOD - [2010-11-20 14:08:57 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dll
MOD - [2010-11-20 14:08:56 | 000,837,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dll
MOD - [2010-11-20 14:08:56 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dll
MOD - [2010-11-20 14:08:51 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dll
MOD - [2010-11-20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dll
MOD - [2010-11-20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dll
MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dll
MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dll
MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dll
MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dll
MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dll
MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dll
MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dll
MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dll
MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dll
MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dll
MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dll
MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dll
MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msscript.ocx
MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dll
MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2010-11-20 14:21:36 | 000,351,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- winhttp.dll -- (WinHttpAutoProxySvc)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009-08-17 10:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009-08-10 19:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO)
SRV - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2007-05-31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSEH&bmod=TSEH
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://174.37.200.81
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\URLSearchHook: {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Users\MAX-BUD\AppData\Local\Google\Update\1.2.183.23\npGoogleOneClick8.dll (Google Inc.)


[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Extensions
[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Firefox\Profiles\62mh5x8i.default\extensions
File not found (No name found) -- C:\PROGRAM FILES (X86)\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION

O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\Toolbar\WebBrowser: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - No CLSID value found.
O3 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\Toolbar\WebBrowser: (no name) - {C86EB8A9-CCC2-4B6C-B75D-73576ED591BF} - No CLSID value found.
O4 - HKLM..\Run: [AMCenter] File not found
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TWebCamera] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [Antivirus] C:\Cache\checker.exe (Company)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [CPU Config] C:\Users\MAX-BUD\AppData\Local\Temp\udpconmain.exe (Varitype Verlag Earthman Irene)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [cunt.exe] C:\Users\MAX-BUD\AppData\Roaming\cunt.exe (Belmont Jutland Laue Kingston)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [Google Update] File not found
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [Run32.dll] C:\Users\MAX-BUD\AppData\Roaming\Run32.exe (Sam Noetherian Saskatoon Shari)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [SKCJERmeGREBR] C:\Users\MAX-BUD\AppData\Roaming\cunt.exe (Belmont Jutland Laue Kingston)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [SystSec] C:\Users\MAX-BUD\AppData\Roaming\967137114.exe (Sam Noetherian Saskatoon Shari)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [Win Defender] C:\Users\MAX-BUD\AppData\Roaming\3.exe (Bismarck Oxonian Marcia Jacqueline)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [WinDefend] File not found
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [WinDefender] C:\Users\MAX-BUD\AppData\Roaming\Addobe\saver.exe ()
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [Windows Defender] C:\Users\MAX-BUD\AppData\Roaming\Windefend.exe (Longfellow Ferdinand Stanhope Carolina)
O4 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000..\Run: [Windows Defense Service] C:\Users\MAX-BUD\AppData\Roaming\Windefend.exe (Longfellow Ferdinand Stanhope Carolina)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O4 - Startup: C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CrazyKeys.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 62.179.1.62
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-02-02 01:51:14 | 000,018,366 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O33 - MountPoints2\{8409af20-4b3a-11e0-91dc-0026223e77bd}\Shell - "" = AutoRun
O33 - MountPoints2\{8409af20-4b3a-11e0-91dc-0026223e77bd}\Shell\AutoRun\command - "" = F:\NokiaPCIA_Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*



SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: mcmscsvc - Service
SafeBootMin: MCODS - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: mcmscsvc - Service
SafeBootNet: MCODS - Service
SafeBootNet: MpfService - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-07-11 14:54:35 | 000,974,849 | ---- | C] (Einsteinian Amerada Gilmore Mauricio) -- C:\Users\MAX-BUD\AppData\Roaming\isnvfrve.exe
[2011-07-11 14:54:32 | 000,175,617 | ---- | C] (Longfellow Ferdinand Stanhope Carolina) -- C:\Users\MAX-BUD\AppData\Roaming\Windefend.exe
[2011-07-11 14:54:23 | 000,175,617 | ---- | C] (Longfellow Ferdinand Stanhope Carolina) -- C:\Users\MAX-BUD\AppData\Roaming\grghooh.exe
[2011-07-11 14:54:18 | 000,012,289 | RHS- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\604824228528.exe
[2011-07-11 14:54:04 | 000,120,833 | ---- | C] (Brett Prentice McGregor Heinrich) -- C:\Users\MAX-BUD\AppData\Roaming\arfkehv.exe
[2011-07-11 14:54:03 | 000,132,097 | ---- | C] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\tvnkvb.exe
[2011-07-11 14:54:03 | 000,132,097 | ---- | C] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\Run32.exe
[2011-07-11 14:54:02 | 000,012,289 | ---- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\bxwgwcn.exe
[2011-07-11 14:20:20 | 000,012,289 | RHS- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\1267817344621.exe
[2011-07-11 14:20:17 | 000,012,289 | -H-- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:20:16 | 000,954,369 | -H-- | C] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\dbljkyh.exe
[2011-07-11 14:20:12 | 000,954,369 | RHS- | C] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\28116274407000.exe
[2011-07-11 14:18:16 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011-07-11 13:29:00 | 000,513,537 | -H-- | C] (Akers Jackman Hanover Rhodesia) -- C:\Users\MAX-BUD\AppData\Roaming\bsbklr.exe
[2011-07-11 13:28:50 | 000,132,097 | RHS- | C] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\967137114.exe
[2011-07-11 13:28:25 | 000,012,289 | RHS- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\113792238620881.exe
[2011-07-10 23:54:06 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1669950157977.exe
[2011-07-10 22:39:52 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\158371156010143.exe
[2011-07-10 22:21:51 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\120252480421057.exe
[2011-07-10 22:21:48 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\12138303659490.exe
[2011-07-10 19:16:53 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\243042037119215.exe
[2011-07-10 19:16:51 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\17266792813307.exe
[2011-07-10 19:16:49 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\24011113144647.exe
[2011-07-10 18:05:27 | 000,516,096 | -H-- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\654654.exe
[2011-07-10 17:11:55 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\19267523121528.exe
[2011-07-10 17:01:38 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1846132183427.exe
[2011-07-10 14:55:48 | 000,516,096 | -H-- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\btmc.exe
[2011-07-10 11:28:59 | 000,111,105 | RHS- | C] (Belmont Jutland Laue Kingston) -- C:\Users\MAX-BUD\AppData\Roaming\cunt.exe
[2011-07-09 22:41:37 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\31304257522626.exe
[2011-07-09 21:19:10 | 000,510,465 | -H-- | C] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\berfge.exe
[2011-07-09 21:19:10 | 000,510,465 | -H-- | C] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\3.exe
[2011-07-09 21:19:09 | 000,000,000 | -H-D | C] -- C:\Cache
[2011-07-09 21:18:57 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\179672163715022.exe
[2011-07-09 21:18:51 | 000,012,289 | -H-- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\fdns.exe
[2011-07-09 19:56:14 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\220981598027753.exe
[2011-07-09 19:38:43 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\1287165150.exe
[2011-07-09 18:04:42 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\11094890622125.exe
[2011-07-09 18:04:35 | 000,012,289 | -H-- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\gdns.exe
[2011-07-08 23:30:35 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\32681281584145.exe
[2011-07-08 22:54:39 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\93221794810267.exe
[2011-07-08 12:14:53 | 000,012,289 | RHS- | C] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\16367310928888.exe
[2011-07-08 11:46:48 | 000,012,289 | RHS- | C] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\185513254030552.exe
[2011-07-07 19:37:48 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\182441095326510.exe
[2011-07-07 15:10:16 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Desktop\koniec przedzkola
[2011-07-07 13:16:50 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\7821220125876.exe
[2011-07-07 10:55:40 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\99211623310306.exe
[2011-07-07 10:49:12 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\60811860520586.exe
[2011-07-07 10:49:10 | 000,012,289 | -H-- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\dh.exe
[2011-07-06 15:29:32 | 000,012,289 | RHS- | C] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\63151208611676.exe
[2011-07-06 15:29:21 | 000,012,289 | -H-- | C] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\dn.exe
[2011-07-05 16:30:09 | 000,012,289 | RHS- | C] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\23766359119203.exe
[2011-07-05 14:31:17 | 000,012,289 | -H-- | C] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\down.exe
[2011-07-02 15:17:20 | 000,012,289 | RHS- | C] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13481650225252.exe
[2011-07-02 13:28:59 | 000,012,289 | RHS- | C] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13333279027201.exe
[2011-07-02 13:28:40 | 000,012,289 | -H-- | C] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\djklhjhr.exe
[2011-07-01 20:14:44 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011-07-01 20:13:20 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011-07-01 19:54:18 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Odebrane pliki
[2011-07-01 19:13:11 | 000,012,289 | RHS- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2517217418876.exe
[2011-07-01 15:34:14 | 000,012,289 | RHS- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\1601846773014.exe
[2011-07-01 10:49:15 | 000,012,289 | RHS- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2604740433041.exe
[2011-06-30 19:53:55 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94533097315523.exe
[2011-06-30 17:34:48 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\127861323819012.exe
[2011-06-30 14:06:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegCleaner
[2011-06-30 13:56:54 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\210111278612278.exe
[2011-06-30 13:47:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-30 13:47:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Error Fix
[2011-06-30 13:44:26 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\194732620126686.exe
[2011-06-30 13:24:12 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94281359224605.exe
[2011-06-30 12:09:59 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27283287722729.exe
[2011-06-30 10:36:53 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27358809210311.exe
[2011-06-30 09:42:42 | 000,012,289 | -H-- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\dl.exe
[2011-06-30 09:31:09 | 000,057,344 | RHS- | C] ( ) -- C:\Users\MAX-BUD\AppData\Roaming\MSNMessengerAPI.dll
[2011-06-30 09:31:07 | 000,192,000 | -H-- | C] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\ircbot123.exe
[2011-06-30 09:26:41 | 000,192,000 | -H-- | C] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\Bot2324.exe
[2011-06-29 22:30:13 | 000,000,000 | RHSD | C] -- C:\Users\MAX-BUD\AppData\Roaming\Google Update
[2011-06-29 09:33:50 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-06-29 09:33:50 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-06-28 18:00:12 | 000,064,000 | -H-- | C] (Hiram) -- C:\Users\MAX-BUD\AppData\Roaming\28-Jun-11-d7b0ae627962c44-appz.exe
[2011-06-28 15:35:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011-06-28 15:33:02 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-06-28 15:33:01 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011-06-27 13:24:06 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2011-06-26 18:48:19 | 000,000,000 | ---D | C] -- C:\Windupdt
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Ytuby
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2011-06-26 15:06:11 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\WINSYS32
[2011-06-25 22:13:41 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\nvidia
[2011-06-22 20:40:55 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Favorites
[2011-06-16 17:10:30 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011-06-16 17:10:27 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011-06-12 19:06:05 | 000,086,016 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 13:33:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Cutter
[2011-06-12 13:33:03 | 000,140,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx
[2011-06-12 11:48:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Mortal Kombat 3
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Downloads
[2011-06-06 17:56:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 14:57:39 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\EurekaLog
[2011-06-06 14:57:34 | 008,989,184 | -H-- | C] (Creative Team S.A.) -- C:\Users\MAX-BUD\Desktop\AQQ.exe
[2011-06-04 17:31:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011-06-02 00:36:28 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011-06-02 00:36:21 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011-06-02 00:36:17 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011-06-02 00:36:17 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011-06-02 00:36:17 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011-06-02 00:36:11 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2011-06-02 00:36:10 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2011-06-02 00:36:09 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011-06-02 00:36:08 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011-06-02 00:36:08 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011-06-02 00:36:07 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011-06-02 00:36:04 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011-06-02 00:36:03 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011-06-02 00:36:03 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011-06-02 00:36:01 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011-06-02 00:36:01 | 002,872,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2011-06-02 00:35:59 | 001,698,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2011-06-02 00:35:59 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011-06-02 00:35:59 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011-06-02 00:35:57 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011-06-02 00:35:55 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011-06-02 00:35:51 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011-06-02 00:35:48 | 001,076,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011-06-02 00:35:47 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2011-06-02 00:35:47 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011-06-02 00:35:47 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011-06-02 00:35:45 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011-06-02 00:35:44 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011-06-02 00:35:44 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011-06-02 00:35:43 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011-06-02 00:35:42 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011-06-02 00:35:42 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011-06-02 00:35:41 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011-06-02 00:35:40 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011-06-02 00:35:39 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011-06-02 00:35:39 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011-06-02 00:35:39 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011-06-02 00:35:37 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011-06-02 00:35:37 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011-06-02 00:35:35 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011-06-02 00:35:35 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011-06-02 00:35:35 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011-06-02 00:35:35 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011-06-02 00:35:33 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011-06-02 00:35:33 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011-06-02 00:35:33 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011-06-02 00:35:29 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011-06-02 00:35:29 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011-06-02 00:35:29 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011-06-02 00:35:29 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011-06-02 00:35:28 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011-06-02 00:35:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011-06-02 00:35:27 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011-06-02 00:35:26 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011-06-02 00:35:26 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011-06-02 00:35:25 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011-06-02 00:35:23 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011-06-02 00:35:23 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011-06-02 00:35:23 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011-06-02 00:35:21 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011-06-02 00:35:21 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011-06-02 00:35:20 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011-06-02 00:35:20 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011-06-02 00:35:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011-06-02 00:35:18 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011-06-02 00:35:18 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011-06-02 00:35:18 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011-06-02 00:35:18 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011-06-02 00:35:18 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011-06-02 00:35:17 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011-06-02 00:35:17 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011-06-02 00:35:16 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011-06-02 00:35:16 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011-06-02 00:35:15 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011-06-02 00:35:15 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011-06-02 00:35:14 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011-06-02 00:35:14 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011-06-02 00:35:13 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011-06-02 00:35:12 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011-06-02 00:35:12 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011-06-02 00:35:12 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011-06-02 00:35:12 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011-06-02 00:35:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011-06-02 00:35:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011-06-02 00:35:10 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011-06-02 00:35:10 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011-06-02 00:35:09 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011-06-02 00:35:09 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011-06-02 00:35:09 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011-06-02 00:35:09 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011-06-02 00:35:09 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011-06-02 00:35:09 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011-06-02 00:35:09 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011-06-02 00:35:08 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011-06-02 00:35:08 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011-06-02 00:35:08 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011-06-02 00:35:08 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011-06-02 00:35:08 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011-06-02 00:35:08 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011-06-02 00:35:07 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011-06-02 00:35:05 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011-06-02 00:35:05 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011-06-02 00:35:05 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011-06-02 00:35:05 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011-06-02 00:35:05 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011-06-02 00:35:04 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011-06-02 00:35:04 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011-06-02 00:35:03 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011-06-02 00:35:03 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011-06-02 00:35:03 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011-06-02 00:35:02 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011-06-02 00:35:02 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011-06-02 00:35:02 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011-06-02 00:35:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011-06-02 00:35:02 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011-06-02 00:35:01 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011-06-02 00:35:01 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011-06-02 00:35:01 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011-06-02 00:35:01 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011-06-02 00:35:01 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011-06-02 00:35:01 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011-06-02 00:35:01 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011-06-02 00:35:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011-06-02 00:35:00 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011-06-02 00:35:00 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011-06-02 00:35:00 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011-06-02 00:35:00 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011-06-02 00:35:00 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011-06-02 00:35:00 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011-06-02 00:35:00 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011-06-02 00:34:59 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011-06-02 00:34:59 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011-06-02 00:34:59 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011-06-02 00:34:59 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011-06-02 00:34:59 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011-06-02 00:34:59 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011-06-02 00:34:59 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011-06-02 00:34:59 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011-06-02 00:34:58 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011-06-02 00:34:57 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011-06-02 00:34:57 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011-06-02 00:34:57 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011-06-02 00:34:57 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011-06-02 00:34:57 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011-06-02 00:34:57 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011-06-02 00:34:57 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011-06-02 00:34:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011-06-02 00:34:56 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011-06-02 00:34:55 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011-06-02 00:34:55 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011-06-02 00:34:55 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011-06-02 00:34:55 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011-06-02 00:34:54 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011-06-02 00:34:54 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011-06-02 00:34:54 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011-06-02 00:34:54 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011-06-02 00:34:54 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011-06-02 00:34:53 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011-06-02 00:34:53 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011-06-02 00:34:53 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011-06-02 00:34:53 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011-06-02 00:34:53 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011-06-02 00:34:53 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011-06-02 00:34:52 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011-06-02 00:34:52 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011-06-02 00:34:52 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011-06-02 00:34:52 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011-06-02 00:34:51 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011-06-02 00:34:51 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011-06-02 00:34:51 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011-06-02 00:34:51 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011-06-02 00:34:50 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011-06-02 00:34:50 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011-06-02 00:34:50 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011-06-02 00:34:50 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011-06-02 00:34:50 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011-06-02 00:34:49 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011-06-02 00:34:49 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011-06-02 00:34:49 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011-06-02 00:34:49 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011-06-02 00:34:48 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011-06-02 00:34:48 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011-06-02 00:34:48 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011-06-02 00:34:48 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011-06-02 00:34:48 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011-06-02 00:34:48 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011-06-02 00:34:48 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011-06-02 00:34:48 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011-06-02 00:34:48 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011-06-02 00:34:47 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011-06-02 00:34:47 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011-06-02 00:34:47 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011-06-02 00:34:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011-06-02 00:34:47 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011-06-02 00:34:46 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011-06-02 00:34:46 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011-06-02 00:34:46 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011-06-02 00:34:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011-06-02 00:34:46 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011-06-02 00:34:46 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011-06-02 00:34:45 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011-06-02 00:34:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011-06-02 00:34:45 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011-06-02 00:34:45 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011-06-02 00:34:45 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011-06-02 00:34:45 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:45 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011-06-02 00:34:44 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011-06-02 00:34:44 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011-06-02 00:34:44 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011-06-02 00:34:43 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011-06-02 00:34:43 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011-06-02 00:34:43 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011-06-02 00:34:43 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011-06-02 00:34:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011-06-02 00:34:43 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011-06-02 00:34:43 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011-06-02 00:34:42 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011-06-02 00:34:42 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011-06-02 00:34:42 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011-06-02 00:34:42 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011-06-02 00:34:42 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011-06-02 00:34:42 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011-06-02 00:34:42 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011-06-02 00:34:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011-06-02 00:34:42 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011-06-02 00:34:42 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011-06-02 00:34:41 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011-06-02 00:34:41 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011-06-02 00:34:41 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011-06-02 00:34:41 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011-06-02 00:34:41 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011-06-02 00:34:41 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011-06-02 00:34:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011-06-02 00:34:40 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011-06-02 00:34:40 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011-06-02 00:34:40 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011-06-02 00:34:40 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011-06-02 00:34:40 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011-06-02 00:34:40 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011-06-02 00:34:40 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011-06-02 00:34:40 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011-06-02 00:34:40 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011-06-02 00:34:39 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011-06-02 00:34:39 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011-06-02 00:34:39 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011-06-02 00:34:39 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011-06-02 00:34:39 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011-06-02 00:34:39 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011-06-02 00:34:39 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011-06-02 00:34:38 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011-06-02 00:34:38 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011-06-02 00:34:38 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011-06-02 00:34:38 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011-06-02 00:34:38 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011-06-02 00:34:38 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011-06-02 00:34:37 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011-06-02 00:34:37 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011-06-02 00:34:37 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011-06-02 00:34:37 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011-06-02 00:34:37 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011-06-02 00:34:37 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011-06-02 00:34:36 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011-06-02 00:34:36 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011-06-02 00:34:36 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011-06-02 00:34:36 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011-06-02 00:34:36 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011-06-02 00:34:36 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011-06-02 00:34:35 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011-06-02 00:34:35 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011-06-02 00:34:35 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011-06-02 00:34:35 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011-06-02 00:34:35 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011-06-02 00:34:35 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011-06-02 00:34:35 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011-06-02 00:34:35 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011-06-02 00:34:34 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011-06-02 00:34:34 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011-06-02 00:34:34 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011-06-02 00:34:34 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011-06-02 00:34:34 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011-06-02 00:34:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011-06-02 00:34:34 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011-06-02 00:34:34 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011-06-02 00:34:33 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011-06-02 00:34:33 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011-06-02 00:34:33 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011-06-02 00:34:33 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011-06-02 00:34:33 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011-06-02 00:34:33 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011-06-02 00:34:33 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011-06-02 00:34:32 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011-06-02 00:34:32 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011-06-02 00:34:32 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011-06-02 00:34:32 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011-06-02 00:34:32 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011-06-02 00:34:32 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011-06-02 00:34:32 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011-06-02 00:34:32 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011-06-02 00:34:32 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011-06-02 00:34:32 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011-06-02 00:34:32 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011-06-02 00:34:31 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011-06-02 00:34:31 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011-06-02 00:34:31 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011-06-02 00:34:31 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011-06-02 00:34:31 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011-06-02 00:34:31 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011-06-02 00:34:31 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011-06-02 00:34:31 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-06-02 00:34:31 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011-06-02 00:34:30 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011-06-02 00:34:30 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011-06-02 00:34:30 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011-06-02 00:34:30 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011-06-02 00:34:30 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011-06-02 00:34:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011-06-02 00:34:30 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011-06-02 00:34:30 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011-06-02 00:34:30 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011-06-02 00:34:30 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011-06-02 00:34:30 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011-06-02 00:34:29 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011-06-02 00:34:29 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011-06-02 00:34:29 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011-06-02 00:34:29 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011-06-02 00:34:29 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011-06-02 00:34:29 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011-06-02 00:34:29 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011-06-02 00:34:29 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011-06-02 00:34:29 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011-06-02 00:34:29 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011-06-02 00:34:29 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011-06-02 00:34:28 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011-06-02 00:34:28 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011-06-02 00:34:28 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011-06-02 00:34:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011-06-02 00:34:28 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011-06-02 00:34:28 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011-06-02 00:34:28 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011-06-02 00:34:28 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011-06-02 00:34:28 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011-06-02 00:34:28 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011-06-02 00:34:28 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011-06-02 00:34:28 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011-06-02 00:34:28 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011-06-02 00:34:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011-06-02 00:34:28 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011-06-02 00:34:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011-06-02 00:34:28 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011-06-02 00:34:28 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011-06-02 00:34:27 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011-06-02 00:34:27 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011-06-02 00:34:27 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011-06-02 00:34:27 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011-06-02 00:34:27 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011-06-02 00:34:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011-06-02 00:34:27 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011-06-02 00:34:27 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011-06-02 00:34:27 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011-06-02 00:34:26 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011-06-02 00:34:26 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011-06-02 00:34:26 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011-06-02 00:34:26 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011-06-02 00:34:25 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011-06-02 00:34:25 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011-06-02 00:34:25 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011-06-02 00:34:25 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011-06-02 00:34:23 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011-06-02 00:34:23 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011-06-02 00:34:23 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011-06-02 00:34:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011-06-02 00:34:23 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011-06-02 00:34:23 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011-06-02 00:34:23 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011-06-02 00:34:23 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011-06-02 00:34:23 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011-06-02 00:34:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011-06-02 00:34:22 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011-06-02 00:34:22 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011-06-02 00:34:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011-06-02 00:34:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011-06-02 00:34:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011-06-02 00:34:22 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011-06-02 00:34:22 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011-06-02 00:34:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011-06-02 00:34:22 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011-06-02 00:34:22 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011-06-02 00:34:22 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011-06-02 00:34:21 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011-06-02 00:34:21 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011-06-02 00:34:21 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011-06-02 00:34:21 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011-06-02 00:34:21 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011-06-02 00:34:21 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011-06-02 00:34:21 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011-06-02 00:34:21 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011-06-02 00:34:21 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011-06-02 00:34:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011-06-02 00:34:20 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011-06-02 00:34:20 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011-06-02 00:34:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011-06-02 00:34:20 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011-06-02 00:34:20 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011-06-02 00:34:20 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011-06-02 00:34:20 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2011-06-02 00:34:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011-06-02 00:34:20 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011-06-02 00:34:20 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011-06-02 00:34:19 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011-06-02 00:34:19 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011-06-02 00:34:19 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011-06-02 00:34:18 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011-06-02 00:34:18 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011-06-02 00:34:18 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011-06-02 00:34:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011-06-02 00:34:18 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011-06-02 00:34:18 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011-06-02 00:34:17 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011-06-02 00:34:17 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011-06-02 00:34:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011-06-02 00:34:16 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011-06-02 00:34:16 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011-06-02 00:34:16 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011-06-02 00:34:15 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011-06-02 00:34:14 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011-06-02 00:34:11 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011-06-02 00:34:10 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011-06-02 00:33:54 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011-06-02 00:33:54 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011-06-02 00:33:51 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011-06-02 00:33:51 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011-06-01 20:58:17 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Marcin
[2011-05-31 17:59:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Last.fm
[2011-05-31 17:58:32 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\Last.fm
[2011-05-31 17:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Last.fm
[2011-05-31 17:03:29 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2011-05-31 17:03:28 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2011-05-31 17:02:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2011-05-31 17:02:54 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Winamp
[2011-05-31 14:18:06 | 000,000,000 | ---D | C] -- C:\Max -bud i inne
[2011-05-22 08:31:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady
[2011-05-22 08:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\RDRM
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla
[2011-05-22 08:04:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011-05-22 08:04:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
[2011-05-22 08:03:31 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-07-11 15:05:15 | 008,650,752 | -HS- | M] () -- C:\Users\MAX-BUD\NTUSER.DAT
[2011-07-11 15:02:27 | 000,001,155 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\data.dat
[2011-07-11 14:55:16 | 000,974,849 | ---- | M] (Einsteinian Amerada Gilmore Mauricio) -- C:\Users\MAX-BUD\AppData\Roaming\isnvfrve.exe
[2011-07-11 14:55:12 | 000,513,537 | -H-- | M] (Akers Jackman Hanover Rhodesia) -- C:\Users\MAX-BUD\AppData\Roaming\bsbklr.exe
[2011-07-11 14:54:57 | 000,175,617 | ---- | M] (Longfellow Ferdinand Stanhope Carolina) -- C:\Users\MAX-BUD\AppData\Roaming\Windefend.exe
[2011-07-11 14:54:57 | 000,175,617 | ---- | M] (Longfellow Ferdinand Stanhope Carolina) -- C:\Users\MAX-BUD\AppData\Roaming\grghooh.exe
[2011-07-11 14:54:40 | 000,120,833 | ---- | M] (Brett Prentice McGregor Heinrich) -- C:\Users\MAX-BUD\AppData\Roaming\arfkehv.exe
[2011-07-11 14:54:33 | 000,132,097 | ---- | M] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\tvnkvb.exe
[2011-07-11 14:54:18 | 000,012,289 | RHS- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\604824228528.exe
[2011-07-11 14:54:09 | 000,012,289 | -H-- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:54:03 | 000,132,097 | ---- | M] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\Run32.exe
[2011-07-11 14:54:02 | 000,012,289 | ---- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\bxwgwcn.exe
[2011-07-11 14:51:57 | 000,155,648 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\chrtmp
[2011-07-11 14:39:41 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2011-07-11 14:39:28 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-07-11 14:39:20 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-11 14:20:20 | 000,012,289 | RHS- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\1267817344621.exe
[2011-07-11 14:20:17 | 000,954,369 | -H-- | M] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\dbljkyh.exe
[2011-07-11 14:20:12 | 000,954,369 | RHS- | M] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\28116274407000.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-11 13:39:02 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA.job
[2011-07-11 13:28:43 | 000,132,097 | RHS- | M] (Sam Noetherian Saskatoon Shari) -- C:\Users\MAX-BUD\AppData\Roaming\967137114.exe
[2011-07-11 13:28:26 | 000,012,289 | RHS- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\113792238620881.exe
[2011-07-10 23:54:06 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1669950157977.exe
[2011-07-10 23:54:04 | 000,012,289 | -H-- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\fdns.exe
[2011-07-10 22:39:52 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\158371156010143.exe
[2011-07-10 22:21:54 | 000,516,096 | -H-- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\654654.exe
[2011-07-10 22:21:51 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\120252480421057.exe
[2011-07-10 22:21:48 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\12138303659490.exe
[2011-07-10 19:16:53 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\243042037119215.exe
[2011-07-10 19:16:51 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\17266792813307.exe
[2011-07-10 19:16:49 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\24011113144647.exe
[2011-07-10 17:11:55 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\19267523121528.exe
[2011-07-10 17:11:54 | 000,516,096 | -H-- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\btmc.exe
[2011-07-10 17:01:53 | 000,510,465 | -H-- | M] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\berfge.exe
[2011-07-10 17:01:53 | 000,510,465 | -H-- | M] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\3.exe
[2011-07-10 17:01:39 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1846132183427.exe
[2011-07-10 16:39:00 | 000,001,014 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core.job
[2011-07-10 11:28:57 | 000,111,105 | RHS- | M] (Belmont Jutland Laue Kingston) -- C:\Users\MAX-BUD\AppData\Roaming\cunt.exe
[2011-07-09 22:41:37 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\31304257522626.exe
[2011-07-09 21:18:57 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\179672163715022.exe
[2011-07-09 19:56:14 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\220981598027753.exe
[2011-07-09 19:53:32 | 000,012,289 | -H-- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\gdns.exe
[2011-07-09 19:38:43 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\1287165150.exe
[2011-07-09 19:33:16 | 000,063,488 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\RGNVCD.EXE
[2011-07-09 19:27:42 | 000,100,864 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\crss.EXE
[2011-07-09 18:04:42 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\11094890622125.exe
[2011-07-09 12:38:22 | 000,073,551 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-09 00:43:12 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2011-07-08 23:30:35 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\32681281584145.exe
[2011-07-08 22:54:39 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\93221794810267.exe
[2011-07-08 20:14:00 | 000,000,688 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\107011213622616.exe
[2011-07-08 12:14:53 | 000,012,289 | RHS- | M] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\16367310928888.exe
[2011-07-08 11:46:48 | 000,012,289 | RHS- | M] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\185513254030552.exe
[2011-07-07 19:37:48 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\182441095326510.exe
[2011-07-07 13:16:51 | 000,012,289 | -H-- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\dh.exe
[2011-07-07 13:16:50 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\7821220125876.exe
[2011-07-07 10:55:40 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\99211623310306.exe
[2011-07-07 10:49:12 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\60811860520586.exe
[2011-07-06 15:29:32 | 000,012,289 | RHS- | M] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\63151208611676.exe
[2011-07-06 15:29:22 | 000,012,289 | -H-- | M] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\dn.exe
[2011-07-05 16:30:09 | 000,012,289 | RHS- | M] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\23766359119203.exe
[2011-07-05 16:29:55 | 000,012,289 | -H-- | M] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\down.exe
[2011-07-04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-07-04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-07-03 01:33:08 | 005,794,489 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-02 15:17:20 | 000,012,289 | RHS- | M] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13481650225252.exe
[2011-07-02 15:17:14 | 000,012,289 | -H-- | M] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\djklhjhr.exe
[2011-07-02 13:28:59 | 000,012,289 | RHS- | M] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13333279027201.exe
[2011-07-01 19:13:11 | 000,012,289 | RHS- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2517217418876.exe
[2011-07-01 19:13:07 | 000,012,289 | -H-- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\dl.exe
[2011-07-01 15:34:14 | 000,012,289 | RHS- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\1601846773014.exe
[2011-07-01 14:28:20 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011-07-01 12:58:15 | 000,000,000 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\92203030914209.exe
[2011-07-01 10:49:15 | 000,012,289 | RHS- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2604740433041.exe
[2011-07-01 10:42:26 | 000,000,522 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-30 19:53:55 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94533097315523.exe
[2011-06-30 17:34:48 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\127861323819012.exe
[2011-06-30 13:56:54 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\210111278612278.exe
[2011-06-30 13:44:26 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\194732620126686.exe
[2011-06-30 13:24:12 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94281359224605.exe
[2011-06-30 12:09:59 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27283287722729.exe
[2011-06-30 10:36:53 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27358809210311.exe
[2011-06-30 09:37:02 | 000,192,000 | -H-- | M] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\Bot2324.exe
[2011-06-30 09:31:09 | 000,057,344 | RHS- | M] ( ) -- C:\Users\MAX-BUD\AppData\Roaming\MSNMessengerAPI.dll
[2011-06-30 09:31:08 | 000,192,000 | -H-- | M] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\ircbot123.exe
[2011-06-28 18:00:12 | 000,064,000 | -H-- | M] (Hiram) -- C:\Users\MAX-BUD\AppData\Roaming\28-Jun-11-d7b0ae627962c44-appz.exe
[2011-06-28 15:35:23 | 000,001,848 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-27 14:08:43 | 000,000,688 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-27 10:34:28 | 000,000,985 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\logs.dat
[2011-06-26 22:32:18 | 000,248,320 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\adobeflash.exe
[2011-06-26 19:03:21 | 000,584,153 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\ctfmon.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
[2011-05-26 20:56:21 | 000,000,000 | ---- | M] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-26 16:38:12 | 000,000,698 | ---- | M] () -- C:\Windows\Thps3.INI
[2011-05-24 12:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-05-24 12:37:54 | 000,252,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-05-22 08:03:31 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-07-11 14:54:50 | 000,155,648 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\chrtmp
[2011-07-11 14:42:56 | 000,001,155 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\data.dat
[2011-07-11 14:18:16 | 000,002,959 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 19:33:16 | 000,063,488 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\RGNVCD.EXE
[2011-07-09 19:27:41 | 000,100,864 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\crss.EXE
[2011-07-09 12:38:21 | 000,073,551 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-08 20:14:00 | 000,000,688 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\107011213622616.exe
[2011-07-03 01:33:36 | 005,794,489 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 12:58:15 | 000,000,000 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\92203030914209.exe
[2011-07-01 10:42:26 | 000,000,522 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-28 15:35:23 | 000,001,848 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-28 15:34:55 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2011-06-27 14:08:43 | 000,000,688 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-26 22:32:15 | 000,248,320 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\adobeflash.exe
[2011-06-26 19:03:19 | 000,584,153 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\ctfmon.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
[2011-06-02 00:35:44 | 000,419,880 | ---- | C] () -- C:\Windows\SysWow64\locale.nls
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011-06-02 00:33:54 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011-05-31 15:57:34 | 000,002,691 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Microsoft Office Word 2007.lnk
[2011-05-26 20:56:21 | 000,000,000 | ---- | C] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-22 08:04:08 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011-04-08 23:29:17 | 000,000,698 | ---- | C] () -- C:\Windows\Thps3.INI
[2011-02-18 16:28:45 | 000,000,617 | ---- | C] () -- C:\Windows\eReg.dat
[2010-06-15 09:58:05 | 000,002,181 | ---- | C] () -- C:\Windows\Helicon Debug Window.ini
[2010-05-05 11:56:58 | 000,021,504 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-26 10:23:36 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010-02-26 00:00:07 | 000,127,696 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\GDIPFONTCACHEV1.DAT
[2009-10-04 23:59:37 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2009-08-27 08:05:12 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009-08-27 08:05:12 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009-08-27 08:05:12 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009-08-27 08:05:12 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini
[2009-07-14 04:34:57 | 000,000,510 | ---- | C] () -- C:\Windows\win.ini
[2009-07-14 04:34:57 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009-04-28 04:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll
[2005-03-25 10:31:14 | 000,000,985 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\logs.dat
[2002-10-03 14:42:27 | 000,000,034 | ---- | C] () -- C:\Windows\Q3version.ini

[color=#E56717]========== LOP Check ==========[/color]

[2011-07-09 11:48:58 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2010-03-18 09:49:42 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ashampoo
[2011-06-30 13:20:38 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\CrazyKeys
[2011-06-30 14:13:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-06 15:01:30 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\EurekaLog
[2010-11-15 01:53:49 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Gadu-Gadu 10
[2011-06-09 16:23:10 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2010-06-12 12:09:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GHISLER
[2011-05-31 15:53:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-07-11 14:05:12 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-04-29 14:31:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Lexis Rex
[2010-06-08 00:29:14 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia
[2010-05-05 12:11:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia Ovi Suite
[2010-10-16 12:23:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PC Suite
[2011-05-01 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PITy2010
[2011-07-07 11:36:29 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\System32
[2010-04-25 12:56:07 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Toshiba
[2010-10-23 08:26:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\uTorrent
[2011-06-30 15:09:57 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2010-03-21 21:57:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Windows Live Writer
[2011-06-29 11:58:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\WINSYS32
[2011-06-26 15:11:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ytuby
[2011-07-11 14:39:41 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2011-02-02 01:51:14 | 000,018,366 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2011-07-11 14:39:20 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-11 14:39:25 | 3079,536,640 | -HS- | M] () -- C:\pagefile.sys
[2009-10-04 23:48:13 | 000,002,942 | ---- | M] () -- C:\RHDSetup.log
[2009-09-09 09:26:52 | 000,000,070 | -H-- | M] () -- C:\SWSTAMP.TXT


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\SysNative\drivers\beep.sys
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SysNative\drivers\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009-07-14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009-07-14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009-10-28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009-10-28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2010-07-04 00:10:59 | 000,230,725 | ---- | M] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:06:24 | 000,230,725 | ---- | C] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:05:48 | 000,012,796 | ---- | M] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx
[2010-07-02 14:53:54 | 000,012,796 | ---- | C] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 400 bytes -> C:\Users\MAX-BUD\AppData\Local\desktop.ini:bf5af20ce7a419b1178ece347eddc338
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:DFC5A2B2

< End of report >[/log]

wirusolog
komentarz
komentarz

W logu widzę bardzo rozległą infekcję. Usuwanie OTL to strata czasu.

[b]1.[/b] Wypal na płytę CD [url=http://support.kaspersky.com/pl/viruses/rescuedisk][b][color=blue][u]Kaspersky Rescue Disk 10[/url][/b][/color][/u].
Przeskanuj nim [b]cały obszar komputera[/b] - to co wykryje usuwaj.

[b]2.[/b] Po zlikwidowaniu zagrożeń wklej log z [url=http://www.forumpc.pl/index.php?showtopic=153621][b][color=blue][u]ComboFixa[/url][/b][/color][/u].

  • Dobra wypowiedź 1
elsaper
komentarz
komentarz (edytowane)

Chyba jestem na to za słaby.

Mam tego Kaspersky'ego na dysku CD , i kopie zapasową systemu na drugim dysku CD. Włączam Kaspersky'ego zmieniając w BIOSie Boot'a na CD/DVD, coś tam wystartowało i niby naprawiało system, ale "narzędziem do naprawy systemu", a nie Kaspersky'im. Kompletnie sobie nie umiem z tym poradzić i czytałem te artykuły o tym jak uruchomić dysk z CD/DVD, ale nie wiem kiedy ten Kaspersky ma mi sie uruchomić. :/

wirusolog
komentarz
komentarz

support.kaspersky.com/pl/viruses/rescuedisk/all?qid=208282480

Tam jest wszystko opisane.

  • Dobra wypowiedź 1
elsaper
komentarz
komentarz

Tak też robię. Boot jest ustawiony na CD/DVD, a mimo to włącza się normalnie. Ponadto: http://imageshack.us/photo/my-images/198/proceky.png/ Denerwuje mnie już ten Bitcoin + to, że ja wcale nie mam włączonego IE, a on działa :/ Którą płytę mam mieć podczas próby włączenia z dysku, bo podczas robienia kopii dysku wyskoczyło, że mam wymienić płytę do zrobienia kopii.

wirusolog
komentarz
komentarz

Plik iso ściągnięty na pewno dobrze wypaliłeś?
Sprawdź np. czy inna płytka się bootuje, np. z Windowsem.

elsaper
komentarz
komentarz

użyłem programu UnHackMe i problem BitCoinMiner i inne syfy zniknął. Komputer działa poprawnie i zużycie procka jest w granicach 5%

raport z usuwania UnHackMe
[log]SpyHolesList Version:7.8 Build:6.9.7.80-64b
12.07.2011 22:30:43
WinDir=C:\Windows
Startup=C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Windows 7 Home Premium (6.1.7601)
Internet Explorer 8.0.7601.17514
[Internet Explorer]
[Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/?LinkId=69157
[Current Home Page] :HKCU Start Page=http://174.37.200.81
[Current Home Page] :HKCU HOMEOldSP=""
[Search URL Template] :HKLM 1=www.%s.com
[Search URL Template] :HKLM 2=www.%s.org
[Search URL Template] :HKLM 3=www.%s.net
[Search URL Template] :HKLM 4=www.%s.edu
[All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
[All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
[Current Users Search] :HKCU Search Page=http://www.google.com
[Current Users Search] :HKCU Search Bar=http://www.google.com/ie
[IE Local Blank Page] :HKCU Local Page=C:\Windows\system32\blank.htm
[IE Local Blank Page] :HKLM Local Page=C:\Windows\SysWOW64\blank.htm
[Browser Helper Objects] {18DF081C-E8AD-4283-A596-FA578C2EBDC3}=C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ACROBAT\ACTIVEX\ACROIEHELPERSHIM.DLL
### Adobe PDF Helper for Internet Explorer Adobe Systems Incorporated AcroIEHelperShim Library 9.1.0.2009022700
[Browser Helper Objects] {72853161-30C5-4D22-B7F9-0BBC1D38A37E}=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Browser Helper Objects] {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}=C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASWWEBREPIE.DLL
### avast! WebRep Plugin AVAST Software avast! WebRep 6.0.0.0
[Browser Helper Objects] {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL
### WindowsLiveLogin.dll Microsoft Corporation Microsoft® Windows Live Login Helper 5.000.818.5
[Browser Helper Objects] {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL
### Skype add-on for IE Skype Technologies S.A. Skype Toolbars 4.2.0.4997
[Browser Helper Objects] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\PROGRAM FILES (X86)\JAVA\JRE6\BIN\JP2SSV.DLL
### Java(TM) Platform SE binary Sun Microsystems, Inc. Java(TM) Platform SE 6 U26 6.0.260.3
[Auto Search URL] :HKCU provider=""
[Auto Search URL] :HKCU "Default Value"=http://www.google.com/search?q=%s
[Search Assistant] :HKCU SearchAssistant=http://www.google.com/ie
[Search Assistant] :HKLM SearchAssistant=""
[Search Assistant] :HKCU CustomizeSearch=""
[Search Assistant] :HKLM CustomizeSearch=""
[CustomizeSearch] :HKLM CustomizeSearch=""
[URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\SYSWOW64\IEFRAME.DLL
### Przeglądarka internetowa Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[URLSearchHook] :HKCU {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}=""
[URLSearchHook] :HKCU {472734EA-242A-422b-ADF8-83D1E48CC825}=""
[Default Prefix] :HKLM "Default Value"=http://
[URL Default Prefixes] :HKLM mosaic=http://
[URL Default Prefixes] :HKLM www=http://
[URL Default Prefixes] :HKLM home=http://
[URL Default Prefixes] :HKLM ftp=ftp://
[AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm
[AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm
[AboutURLs] :HKLM InPrivate=res://ieframe.dll/inprivate.htm
[AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm
[AboutURLs] :HKLM Home=270
[AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm
[AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM Tabs=res://ieframe.dll/tabswelcome.htm
[AboutURLs] :HKLM OfflineInformation=res://ieframe.dll/offcancl.htm
[AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm
[User Style Sheet] :HKCU User Stylesheet=""
[User Style Sheet] :HKUS User Stylesheet=""
[User Style Sheet] :HKCU Use My Stylesheet=0
[User Style Sheet] :HKUS Use My Stylesheet=0
[Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=0
[Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1
[Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3
[Links Toolbar] :HKCU LinksFolderName=""
[Toolbars] :HKLM {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}=C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASWWEBREPIE.DLL
### avast! WebRep Plugin AVAST Software avast! WebRep 6.0.0.0
[IE Extensions - All Users] :HKLM {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}
### File is deleted or hidden by rootkit or could not be located.
[IE Extensions - All Users] :HKLM {2670000A-7350-4f3c-8081-5663EE0C6C49}
### File is deleted or hidden by rootkit or could not be located.
[IE Extensions - All Users] :HKLM {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F}=Tworzenie elementu listy Przenośne — Ulubione
### File is deleted or hidden by rootkit or could not be located.
[IE Extensions - All Users] :HKLM {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F}=Utwórz element listy Przenośne — Ulubione...
### File is deleted or hidden by rootkit or could not be located.
[IE Extensions - All Users] :HKLM {898EA8C8-E7FF-479B-8935-AEC46303B9E5}
### File is deleted or hidden by rootkit or could not be located.
[IE Extensions - All Users] :HKLM {92780B25-18CC-41C8-B9BE-3C9C571A8263}=C:\PROGRA~2\MICROS~2\OFFICE12\REFIEBAR.DLL
### Allows you to use the Research Library and its collection of information services from Microsoft Internet Explorer Microsoft Corporation Research Library Explorer Bar 12.0.6423.1000
[Context menu items] :HKCU Add to Google Photos Screensa&ver=res://C:\Windows\system32\GPhotos.scr/200
### File is deleted or hidden by rootkit or could not be located.
[Context menu items] :HKCU E&ksportuj do programu Microsoft Excel=res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
### File is deleted or hidden by rootkit or could not be located.
[Context menu items] :HKCU Funkcja Google Sidewiki=res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
### File is deleted or hidden by rootkit or could not be located.
[Protocols Filter] :HKLM application/octet-stream=C:\Windows\system32\MSCOREE.DLL
### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 4.0.40305.0
[Protocols Filter] :HKLM application/x-complus=C:\Windows\system32\MSCOREE.DLL
### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 4.0.40305.0
[Protocols Filter] :HKLM application/x-msdownload=C:\Windows\system32\MSCOREE.DLL
### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 4.0.40305.0
[Protocols Filter] :HKLM deflate=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Filter] :HKLM gzip=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Filter] :HKLM text/xml=C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office InfoPath 12.0.6413.1000
[Protocols Handler] :HKLM about=C:\WINDOWS\SYSWOW64\MSHTML.DLL
### Microsoft (R) - Podgląd skryptów HTML Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM cdl=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM dvd=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL
### Formant ActiveX dla przesyłania strumieniowego obrazu wideo Microsoft Corporation DirectShow 6.05.7600.16385
[Protocols Handler] :HKLM file=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM ftp=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM grooveLocalGWS=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESYSTEMSERVICES.DLL
### GrooveSystemServices Module Microsoft Corporation GrooveSystemServices Module 4.2.2.2807
[Protocols Handler] :HKLM http=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM https=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM its=C:\WINDOWS\SYSTEM32\ITSS.DLL
### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Protocols Handler] :HKLM javascript=C:\WINDOWS\SYSWOW64\MSHTML.DLL
### Microsoft (R) - Podgląd skryptów HTML Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM livecall=C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
### Windows Live Messenger Protocol Handler Module Microsoft Corporation Windows Live Messenger Protocol Handler Module 14.0.8089.0726
[Protocols Handler] :HKLM local=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM mailto=C:\WINDOWS\SYSWOW64\MSHTML.DLL
### Microsoft (R) - Podgląd skryptów HTML Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM mhtml=C:\WINDOWS\SYSTEM32\INETCOMM.DLL
### Microsoft Internet Messaging API Resources Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17609
[Protocols Handler] :HKLM mk=C:\WINDOWS\SYSWOW64\URLMON.DLL
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM ms-help=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\HELP\HXDS.DLL
### Microsoft® Help Data Services Module Microsoft Corporation Microsoft ® Help 2.5 2.05.50727.198
[Protocols Handler] :HKLM ms-its=C:\WINDOWS\SYSTEM32\ITSS.DLL
### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Protocols Handler] :HKLM ms-itss=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\INFORMATION RETRIEVAL\MSITSS.DLL
### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft(R) Infotech Information Storage System Library 5.40.1171.1
[Protocols Handler] :HKLM msnim=C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
### Windows Live Messenger Protocol Handler Module Microsoft Corporation Windows Live Messenger Protocol Handler Module 14.0.8089.0726
[Protocols Handler] :HKLM res=C:\WINDOWS\SYSWOW64\MSHTML.DLL
### Microsoft (R) - Podgląd skryptów HTML Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM skype-ie-addon-data=C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL
### Skype add-on for IE Skype Technologies S.A. Skype Toolbars 4.2.0.4997
[Protocols Handler] :HKLM skype4com=C:\PROGRA~2\COMMON~1\SKYPE\SKYPE4~1.DLL
### Skype for COM API Skype Technologies Skype4COM 1, 0, 36, 0
[Protocols Handler] :HKLM tv=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL
### Formant ActiveX dla przesyłania strumieniowego obrazu wideo Microsoft Corporation DirectShow 6.05.7600.16385
[Protocols Handler] :HKLM vbscript=C:\WINDOWS\SYSWOW64\MSHTML.DLL
### Microsoft (R) - Podgląd skryptów HTML Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Protocols Handler] :HKLM wlmailhtml=C:\PROGRAM FILES (X86)\WINDOWS LIVE\MAIL\MAILCOMM.DLL
### Windows Live Mail Microsoft Corporation Windows Live Mail 14.0.8089.0726
[Proxy] :HKCU ProxyServer=""
[Proxy] :HKCU ProxyEnable=0
[Network Settings]
[Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc
[Domain Name] :HKLM Domain=""
[Name Server] {90C2A6F9-2B63-4B5D-A080-660DF3A4623B}=62.179.1.63 62.179.1.62
### Network Card:Realtek PCIe FE Family Controller DHCPNameServer:62.179.1.63 62.179.1.62 DhcpDefaultGateway:89.74.24.1
DhcpServer:89.74.13.1
[Name Server] {B79A5AE5-867C-479F-9978-8D893A010C7F}=62.179.1.63 62.179.1.62
### Network Card:Realtek RTL8187B Wireless 802.11bg 54Mbps USB 2.0 Network Adapter DHCPNameServer:62.179.1.63 62.179.1.62 DhcpDefaultGateway:192.168.1.1
DhcpServer:192.168.1.1
[WinSock2 Components] :HKLM NLAapi.dll=C:\WINDOWS\SYSTEM32\NLAAPI.DLL
### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[WinSock2 Components] :HKLM napinsp.dll=C:\WINDOWS\SYSTEM32\NAPINSP.DLL
### Dostawca podkładek nazewnictwa poczty e-mail Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[WinSock2 Components] :HKLM pnrpnsp.dll=C:\WINDOWS\SYSTEM32\PNRPNSP.DLL
### Dostawca obszaru nazw PNRP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[WinSock2 Components] :HKLM wshbth.dll=C:\WINDOWS\SYSTEM32\WSHBTH.DLL
### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[WinSock2 Components] :HKLM mswsock.dll=C:\WINDOWS\SYSTEM32\MSWSOCK.DLL
### Microsoft Windows Sockets 2.0 Dostawca usługi Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[WinSock2 Components] :HKLM winrnr.dll=C:\WINDOWS\SYSTEM32\WINRNR.DLL
### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Software Components]
[Internet Components] :HKLM C:\Windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe=C:\WINDOWS\DOWNLOADED PROGRAM FILES\FP_AX_CAB_INSTALLER.EXE
### Adobe® Flash® Player ActiveX Installer Adobe Systems Incorporated Adobe® Flash® Player ActiveX 10.0.45.2
[Windows Shell]
[Display Scrap's Extensions] :HKLM NeverShowExt=""
[ScreenSaver] :HKCU SCRNSAVE.EXE=""
### File is deleted or hidden by rootkit or could not be located.
[System.ini] shell=""
[User Shell] :HKCU shell=""
[Main File Extensions] :HKLM .exe="%1" %*
[Main File Extensions] :HKLM .com="%1" %*
[Main File Extensions] :HKLM .pif="%1" %*
[Main File Extensions] :HKLM .bat="%1" %*
[Main File Extensions] :HKLM .cmd="%1" %*
[Main File Extensions] :HKLM .scr="%1" /S
[Main File Extensions] :HKLM .txt=%SystemRoot%\system32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .reg=regedit.exe "%1"
[Main File Extensions] :HKLM .inf=%SystemRoot%\system32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .ini=%SystemRoot%\system32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .js=C:\Windows\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .vbs="%SystemRoot%\System32\WScript.exe" "%1" %*
[Main File Extensions] :HKLM .vbe="%SystemRoot%\System32\WScript.exe" "%1" %*
[Main File Extensions] :HKLM .msc=%SystemRoot%\system32\mmc.exe "%1" %*
[Main File Extensions] :HKLM .jpg=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1
[Main File Extensions] :HKLM .jpeg=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1
[Shell Execute Hooks] :HKLM {B5A7F190-DDA6-4420-B3BA-52453494E6CD}=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[UserInit Value] :HKLM UserInit=userinit.exe
[Shell Services DelayLoad] :HKLM WebCheck={E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[App Paths] :HKLM AcroRd32.exe=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
### AcroRd32.exe Adobe Reader 9.1 Adobe Systems Incorporated Adobe Reader 9.1.0.2009022700
[App Paths] :HKLM AvastUI.exe=C:\Program Files\AVAST Software\Avast\AvastUI.exe
### AvastUI.exe avast! Antivirus AVAST Software avast! Antivirus 6.0.0.0
[App Paths] :HKLM CEAPPMGR.EXE=C:\Windows\WindowsMobile\CEAppMgr.exe
### CEAPPMGR.EXE Application Manager Microsoft Corporation Centrum obsługi urządzeń z systemem Microsoft® Windows Mobile® 6.1.6965.0
[App Paths] :HKLM chrome.exe=C:\Users\MAX-BUD\AppData\Local\Google\Chrome\Application\chrome.exe
### chrome.exe Google Chrome Google Inc. Google Chrome 0.0.0.0
[App Paths] :HKLM cmmgr32.exe
### cmmgr32.exe
[App Paths] :HKLM dvdmaker.exe=%ProgramFiles%\DVD Maker\dvdmaker.exe
### dvdmaker.exe
[App Paths] :HKLM excel.exe=C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE
### excel.exe Microsoft Office Excel Microsoft Corporation 2007 Microsoft Office system 12.0.6557.5000
[App Paths] :HKLM fifa2005.exe=D:\Fifa 2005\fifa2005.exe
### fifa2005.exe
[App Paths] :HKLM fsquirt.exe
### fsquirt.exe
[App Paths] :HKLM GROOVE.EXE=C:\PROGRA~2\MICROS~2\Office12\GROOVE.EXE
### GROOVE.EXE Microsoft Office Groove Microsoft Corporation Microsoft Office Groove 4.2.2.2826
[App Paths] :HKLM IEXPLORE.EXE=C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
### IEXPLORE.EXE Internet Explorer Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[App Paths] :HKLM ImageReady.exe=C:\Program Files (x86)\Adobe\Photoshop 7.0 CE\ImageReady.exe
### ImageReady.exe ImageReady 7.0 CE Adobe Systems Incorporated Adobe ImageReady 7.0 CE
[App Paths] :HKLM infopath.exe=C:\PROGRA~2\MICROS~2\Office12\INFOPATH.EXE
### infopath.exe Microsoft Office InfoPath 2007 Microsoft Corporation Microsoft Office InfoPath 12.0.6529.5000
[App Paths] :HKLM install.exe
### install.exe
[App Paths] :HKLM javaws.exe=C:\Program Files (x86)\Java\jre6\bin\javaws.exe
### javaws.exe Java(TM) Web Start Launcher Sun Microsystems, Inc. Java(TM) Platform SE 6 U26 6.0.260.3
[App Paths] :HKLM Journal.exe=%ProgramFiles%\Windows Journal\Journal.exe
### Journal.exe
[App Paths] :HKLM kadu.exe=D:\Kadu\kadu.exe
### kadu.exe Kadu instant messenger Kadu Team Kadu 0.6.6
[App Paths] :HKLM migwiz.exe
### migwiz.exe
[App Paths] :HKLM mip.exe=%CommonProgramFiles%\Microsoft Shared\Ink\mip.exe
### mip.exe
[App Paths] :HKLM mplayer2.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
### mplayer2.exe
[App Paths] :HKLM MSACCESS.EXE=C:\PROGRA~2\MICROS~2\Office12\MSACCESS.EXE
### MSACCESS.EXE Microsoft Office Access Microsoft Corporation 2007 Microsoft Office system 12.0.6535.5005
[App Paths] :HKLM MSNMSGR.EXE=C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe
### MSNMSGR.EXE Windows Live Messenger Microsoft Corporation Windows Live Messenger 14.0.8089.0726
[App Paths] :HKLM MsoHtmEd.exe
### MsoHtmEd.exe
[App Paths] :HKLM msoxmled.exe=C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLED.EXE
### msoxmled.exe XML Editor Microsoft Corporation Microsoft Office InfoPath 12.0.4518.1014
[App Paths] :HKLM MSPUB.EXE=C:\PROGRA~2\MICROS~2\Office12\MSPUB.EXE
### MSPUB.EXE Microsoft Office Publisher Microsoft Corporation 2007 Microsoft Office system 12.0.6546.5000
[App Paths] :HKLM msworks.exe=c:\Program Files (x86)\Microsoft Works\msworks.exe
### msworks.exe Microsoft® Works Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM ois.exe=C:\PROGRA~2\MICROS~2\Office12\OIS.EXE
### ois.exe Microsoft Office Picture Manager Microsoft Corporation Microsoft Office Picture Manager 12.0.6413.1000
[App Paths] :HKLM OneNote.exe=C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE
### OneNote.exe Microsoft Office OneNote Microsoft Corporation Microsoft Office OneNote 12.0.6500.5000
[App Paths] :HKLM OUTLOOK.EXE=C:\PROGRA~2\MICROS~2\Office12\OUTLOOK.EXE
### OUTLOOK.EXE Microsoft Office Outlook Microsoft Corporation Microsoft Office Outlook 12.0.6557.5001
[App Paths] :HKLM pbrush.exe=%SystemRoot%\System32\mspaint.exe
### pbrush.exe
[App Paths] :HKLM PCDiag.exe=C:\Program Files (x86)\Toshiba\PCDiag\PCDiag.exe
### PCDiag.exe PCDiag PCDiag 4.0.0.3
[App Paths] :HKLM Photoshop.exe=C:\Program Files (x86)\Adobe\Photoshop 7.0 CE\Photoshop.exe
### Photoshop.exe Adobe Photoshop 7.0 CE Adobe Systems, Incorporated Adobe Photoshop 7.0 CE
[App Paths] :HKLM powerpnt.exe=C:\PROGRA~2\MICROS~2\Office12\POWERPNT.EXE
### powerpnt.exe Microsoft Office PowerPoint Microsoft Corporation 2007 Microsoft Office system 12.0.6545.5000
[App Paths] :HKLM PowerShell.exe=%SystemRoot%\system32\WindowsPowerShell\v1.0\PowerShell.exe
### PowerShell.exe
[App Paths] :HKLM setup.exe
### setup.exe
[App Paths] :HKLM sidebar.exe="%ProgramFiles%\Windows Sidebar\sidebar.exe"
### sidebar.exe
[App Paths] :HKLM Sims2.exe=D:\Koziołek\simsy\TSBin\Sims2.exe
### Sims2.exe
[App Paths] :HKLM Smoothview.exe=%ProgramFiles%\TOSHIBA\SmoothView\smoothview.exe
### Smoothview.exe
[App Paths] :HKLM SnippingTool.exe=%SystemRoot%\system32\SnippingTool.exe
### SnippingTool.exe
[App Paths] :HKLM speed.exe=D:\Nowy folder\speed.exe
### speed.exe
[App Paths] :HKLM table30.exe
### table30.exe
[App Paths] :HKLM TabTip.exe=%CommonProgramFiles%\microsoft shared\ink\TabTip.exe
### TabTip.exe
[App Paths] :HKLM TInTouch.exe=C:\Program Files\TOSHIBA\Toshiba Assist\TInTouch.exe
### TInTouch.exe Toshiba Assist TOSHIBA Toshiba Assist 2.01.11
[App Paths] :HKLM TosDVD.exe=C:\Program Files (x86)\TOSHIBA\TOSHIBA DVD PLAYER\TosDVD.exe
### TosDVD.exe TOSHIBA HD DVD Launcher TOSHIBA Corporation TOSHIBA HD DVD Player 1.00.0000
[App Paths] :HKLM TosHDDVD.exe=C:\Program Files (x86)\TOSHIBA\TOSHIBA DVD PLAYER\TosHDDVD.exe
### TosHDDVD.exe TOSHIBA DVD PLAYER TOSHIBA Corporation TOSHIBA DVD PLAYER 3.1.0.0
[App Paths] :HKLM TWebCamera.exe=C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe
### TWebCamera.exe TOSHIBA CORPORATION. TOSHIBA Web Camera Application 1, 1, 1, 4
[App Paths] :HKLM wab.exe=%ProgramFiles%\Windows Mail\wab.exe
### wab.exe
[App Paths] :HKLM wabmig.exe=%ProgramFiles%\Windows Mail\wabmig.exe
### wabmig.exe
[App Paths] :HKLM WCESCOMM.EXE=C:\Windows\WindowsMobile\wmdc.exe
### WCESCOMM.EXE Centrum obsługi urządzeń z systemem Windows Mobile Microsoft Corporation Centrum obsługi urządzeń z systemem Microsoft® Windows Mobile® 6.1.6965.0
[App Paths] :HKLM winamp.exe=D:\Winamp\winamp.exe
### winamp.exe
[App Paths] :HKLM WinRAR.exe=C:\Program Files (x86)\WinRAR\WinRAR.exe
### WinRAR.exe Archiwizer WinRAR Alexander Roshal WinRAR
[App Paths] :HKLM Winword.exe=C:\PROGRA~2\MICROS~2\Office12\WINWORD.EXE
### Winword.exe Microsoft Office Word Microsoft Corporation 2007 Microsoft Office system 12.0.6545.5000
[App Paths] :HKLM WKSAB.EXE=c:\Program Files (x86)\Microsoft Works\WKSAB.exe
### WKSAB.EXE Microsoft® Works Address Book Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM wkscal.exe=c:\PROGRA~2\MICROS~1\WksCal.exe
### wkscal.exe Microsoft® Works Calendar Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM wksdb.exe=c:\Program Files (x86)\Microsoft Works\wksdb.exe
### wksdb.exe Microsoft® Works Database Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM WKSSB.EXE=c:\Program Files (x86)\Microsoft Works\WKSSB.exe
### WKSSB.EXE Microsoft® Works PortFolio Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM wksss.exe=C:\Program Files (x86)\Microsoft Works\wksss.exe
### wksss.exe Microsoft® Works Spreadsheet Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM wkswp.exe=c:\Program Files (x86)\Microsoft Works\wkswp.exe
### wkswp.exe Microsoft® Works Word Processor Microsoft® Corporation Microsoft® Works 9 9.07.0613.0
[App Paths] :HKLM wlmail.exe=C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
### wlmail.exe Poczta usługi Windows Live Microsoft Corporation Poczta usługi Windows Live 14.0.8089.0726
[App Paths] :HKLM wmplayer.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
### wmplayer.exe
[App Paths] :HKLM WORDPAD.EXE=C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE
### WORDPAD.EXE Aplikacja Windows Wordpad Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"
### WRITE.EXE
[Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0
[Disable Registry Tools] :HKCU DisableRegistryTools =0
[Print Monitors] :HKLM Local Port=C:\Windows\system32\LOCALSPL.DLL
### Biblioteka DLL lokalnego buforu wydruku Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Print Monitors] :HKLM Microsoft Shared Fax Monitor=C:\Windows\system32\FXSMON.DLL
### Microsoft Fax Print Monitor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Print Monitors] :HKLM Standard TCP/IP Port=C:\Windows\system32\TCPMON.DLL
### Biblioteka DLL monitora standardowego portu TCP/IP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Print Monitors] :HKLM USB Monitor=C:\Windows\system32\USBMON.DLL
### Standardowa biblioteka DLL monitora portu drukowania dynamicznego Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Print Monitors] :HKLM WSD Port=C:\Windows\system32\WSDMON.DLL
### Monitor portu drukarki WSD Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Print Monitors] :HKLM XRXS1 Langmon=C:\Windows\system32\XRXS1L6.DLL
### Language Monitor for Status Monitor Language Monitor for Status Monitor 1.4.6.7
[Shell Icon Overlay Handlers] :HKLM EnhancedStorageShell=C:\WINDOWS\SYSTEM32\EHSTORSHELL.DLL
### Biblioteka DLL rozszerzenia powłoki magazynu rozszerzonego systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Shell Icon Overlay Handlers] :HKLM Groove Explorer Icon Overlay 1 (GFS Unread Stub)=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Shell Icon Overlay Handlers] :HKLM Groove Explorer Icon Overlay 2 (GFS Stub)=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Shell Icon Overlay Handlers] :HKLM Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Shell Icon Overlay Handlers] :HKLM Groove Explorer Icon Overlay 3 (GFS Folder)=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Shell Icon Overlay Handlers] :HKLM Groove Explorer Icon Overlay 4 (GFS Unread Mark)=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Shell Icon Overlay Handlers] :HKLM SharingPrivate=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL
### Rozszerzenia powłoki dla udostępniania zasobów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Context Menu Handlers] :HKLM avast=C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASHSHELL.DLL
### avast! Shell Extension AVAST Software avast! Antivirus 6.0.0.0
[Context Menu Handlers] :HKLM BriefcaseMenu=C:\WINDOWS\SYSTEM32\SYNCUI.DLL
### Aktówka Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Context Menu Handlers] :HKLM Open With=C:\WINDOWS\SYSTEM32\SHELL32.DLL
### Wspólna biblioteka DLL Powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Context Menu Handlers] :HKLM Open With EncryptionMenu=C:\WINDOWS\SYSTEM32\SHELL32.DLL
### Wspólna biblioteka DLL Powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Context Menu Handlers] :HKLM Sharing=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL
### Rozszerzenia powłoki dla udostępniania zasobów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Context Menu Handlers] :HKLM WinRAR={B41DB860-64E4-11D2-9906-E49FADC173CA}
[Context Menu Handlers] :HKLM WinRAR32=C:\PROGRAM FILES (X86)\WINRAR\RAREXT.DLL
### Rozszerzenie powłoki Alexander Roshal WinRAR
[Context Menu Handlers] :HKLM XXX Groove GFS Context Menu Handler XXX=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
### GrooveShellExtensions Module Microsoft Corporation GrooveShellExtensions Module 4.2.2.2807
[Context Menu Handlers] :HKLM {90AA3A4E-1CBA-4233-B8BB-535773D48449}=C:\WINDOWS\SYSTEM32\SHELL32.DLL
### Wspólna biblioteka DLL Powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Context Menu Handlers] :HKLM {a2a9545d-a0c2-42b4-9708-a0b2badd77c8}=C:\WINDOWS\SYSTEM32\SHELL32.DLL
### Wspólna biblioteka DLL Powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Kernel Auto Boot]
[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\SYSTEM32\UNREGMP2.EXE
### Narzędzie Instalatora programu Microsoft Windows Media Player Microsoft Corporation System operacyjny Microsoft® Windows® 12.0.7600.16385
[Svchost DLLs] :HKLM AeLookupSvc=C:\WINDOWS\SYSTEM32\AELUPSVC.DLL
### Usługa użytkowania aplikacji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM CertPropSvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL
### Usługa propagowania certyfikatów kart inteligentnych firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SCPolicySvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL
### Usługa propagowania certyfikatów kart inteligentnych firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM lanmanserver=C:\WINDOWS\SYSTEM32\SRVSVC.DLL
### Biblioteka DLL usługi serwera Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM gpsvc=C:\WINDOWS\SYSTEM32\GPSVC.DLL
### Group Policy Client Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM AudioSrv=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL
### Usługa audio systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM FastUserSwitchingCompatibility
[Svchost DLLs] :HKLM Ias
[Svchost DLLs] :HKLM Irmon
[Svchost DLLs] :HKLM Nla
[Svchost DLLs] :HKLM Ntmssvc
[Svchost DLLs] :HKLM NWCWorkstation
[Svchost DLLs] :HKLM Nwsapagent
[Svchost DLLs] :HKLM Rasauto=C:\WINDOWS\SYSTEM32\RASAUTO.DLL
### Menedżer autowybierania numeru dostępu zdalnego Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Rasman=C:\WINDOWS\SYSTEM32\RASMANS.DLL
### Menedżer połączeń usługi Dostęp zdalny Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Remoteaccess=C:\WINDOWS\SYSTEM32\MPRDIM.DLL
### Dynamiczny menedżer interfejsu Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SENS=C:\WINDOWS\SYSTEM32\SENS.DLL
### Usługa powiadamiania o zdarzeniach systemowych (SENS) Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Sharedaccess=C:\WINDOWS\SYSTEM32\IPNATHLP.DLL
### Składniki Pomocnika Microsoft NAT Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SRService
[Svchost DLLs] :HKLM Tapisrv=C:\WINDOWS\SYSTEM32\TAPISRV.DLL
### Serwer Telefonii Microsoft® Windows(TM) Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Wmi
[Svchost DLLs] :HKLM WmdmPmSp
[Svchost DLLs] :HKLM TermService=C:\WINDOWS\SYSTEM32\TERMSRV.DLL
### Menedżer połączeń zdalnych serwera hosta sesji pulpitu zdalnego Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\SYSTEM32\WUAUENG.DLL
### Windows Update Agent Microsoft Corporation System operacyjny Microsoft® Windows® 7.5.7601.17514
[Svchost DLLs] :HKLM BITS=C:\WINDOWS\SYSTEM32\QMGR.DLL
### Usługa inteligentnego transferu w tle Microsoft Corporation System operacyjny Microsoft® Windows® 7.5.7600.16385
[Svchost DLLs] :HKLM ShellHWDetection=C:\WINDOWS\SYSTEM32\SHSVCS.DLL
### Biblioteka DLL usług powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM LogonHours
[Svchost DLLs] :HKLM PCAudit
[Svchost DLLs] :HKLM helpsvc
[Svchost DLLs] :HKLM uploadmgr
[Svchost DLLs] :HKLM iphlpsvc=C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL
### Usługa oferująca łączność IPv6 w sieci IPv4. Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM msiscsi=C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL
### Usługa odnajdowania iSCSI Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM schedule=C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL
### Usługa Harmonogram zadań Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SessionEnv=C:\WINDOWS\SYSTEM32\SESSENV.DLL
### Usługa Konfiguracja usług pulpitu zdalnego Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM winmgmt=C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL
### WMI Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM RemoteRegistry=C:\WINDOWS\SYSTEM32\REGSVC.DLL
### Usługa Rejestr zdalny Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WinHttpAutoProxySvc=C:\Windows\system32\WINHTTP.DLL
### Usługi Windows HTTP Services Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM sppuinotify=C:\WINDOWS\SYSTEM32\SPPUINOTIFY.DLL
### Usługa powiadomień SPP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM netprofm=C:\WINDOWS\SYSTEM32\NETPROFM.DLL
### Menedżer listy sieci Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WebClient=C:\WINDOWS\SYSTEM32\WEBCLNT.DLL
### Biblioteka DLL usługi DAV w sieci Web Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Netman=C:\WINDOWS\SYSTEM32\NETMAN.DLL
### Menedżer połączeń sieciowych Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM AudioEndpointBuilder=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL
### Usługa audio systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM dot3svc=C:\WINDOWS\SYSTEM32\DOT3SVC.DLL
### Usługa automatycznej konfiguracji sieci przewodowej Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WPDBusEnum=C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL
### Moduł wyliczający urządzenia przenośne Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM wlansvc=C:\WINDOWS\SYSTEM32\WLANSVC.DLL
### Biblioteka DLL usługi autokonfiguracji sieci WLAN systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM PLA=C:\WINDOWS\SYSTEM32\PLA.DLL
### Dzienniki wydajności i alerty Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM RpcSs=C:\WINDOWS\SYSTEM32\RPCSS.DLL
### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Svchost DLLs] :HKLM BthHFSrv
[Svchost DLLs] :HKLM LmHosts=C:\WINDOWS\SYSTEM32\LMHSVC.DLL
### Biblioteka DLL usług transportowych NetBios TCPIP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM wscsvc=C:\WINDOWS\SYSTEM32\WSCSVC.DLL
### Usługa Centrum zabezpieczeń systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WPCSvc=C:\WINDOWS\SYSTEM32\WPCSVC.DLL
### Usługa filtrowania dla funkcji kontroli rodzicielskiej systemu Windows Microsoft Corporation Windows 1.0.0.1
[Svchost DLLs] :HKLM SSDPSRV=C:\WINDOWS\SYSTEM32\SSDPSRV.DLL
### Biblioteka DLL usługi SSDP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM upnphost=C:\WINDOWS\SYSTEM32\UPNPHOST.DLL
### Host urządzenia UPnP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SCardSvr=C:\WINDOWS\SYSTEM32\SCARDSVR.DLL
### Serwer zarządzania zasobami kart inteligentnych Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM TBS=C:\WINDOWS\SYSTEM32\TBSSVC.DLL
### Usługa TBS Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM QWAVE=C:\WINDOWS\SYSTEM32\QWAVE.DLL
### Windows NT Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM wcncsvc=C:\WINDOWS\SYSTEM32\WCNCSVC.DLL
### Usługa Połącz teraz w systemie Windows — Rejestrator konfiguracji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Power=C:\WINDOWS\SYSTEM32\UMPO.DLL
### Usługa zasilania w trybie użytkownika Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM PlugPlay=C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL
### Usługa Plug-and-Play trybu użytkownika Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM DcomLaunch=C:\WINDOWS\SYSTEM32\RPCSS.DLL
### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Svchost DLLs] :HKLM CryptSvc=C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL
### Usługi kryptograficzne Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM DHCP=C:\WINDOWS\SYSTEM32\DHCPCORE.DLL
### Usługa klienta DHCP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM DNSCache=C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL
### Usługa buforowanego rozpoznawania nazw DNS Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM NapAgent=C:\WINDOWS\SYSTEM32\QAGENTRT.DLL
### Środowisko wykonawcze usługi agenta kwarantanny Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM nlasvc=C:\WINDOWS\SYSTEM32\NLASVC.DLL
### Rozpoznawanie lokalizacji w sieci 2 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WinRM=C:\WINDOWS\SYSTEM32\WSMSVC.DLL
### Usługa WSMan Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WECSVC=C:\WINDOWS\SYSTEM32\WECSVC.DLL
### Usługa kolektora zdarzeń Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM StiSvc=C:\WINDOWS\SYSTEM32\WIASERVC.DLL
### Usługa urządzeń do przetwarzania obrazów nieruchomych Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WcsPlugInService=C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL
### Biblioteka DLL WcsPlugInService Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM AppIDSvc=C:\WINDOWS\SYSTEM32\APPIDSVC.DLL
### Usługa tożsamości aplikacji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Appinfo=C:\WINDOWS\SYSTEM32\APPINFO.DLL
### Usługa informacji o aplikacji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM AxInstSV=C:\WINDOWS\SYSTEM32\AXINSTSV.DLL
### Usługa Instalator formantów ActiveX Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM BDESVC=C:\WINDOWS\SYSTEM32\BDESVC.DLL
### Usługa BDE Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM BFE=C:\WINDOWS\SYSTEM32\BFE.DLL
### Podstawowy aparat filtrowania Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Browser=C:\WINDOWS\SYSTEM32\BROWSER.DLL
### Biblioteka DLL usługi Przeglądarka komputera Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM bthserv=C:\WINDOWS\SYSTEM32\BTHSERV.DLL
### Usługa obsługi Bluetooth Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM defragsvc=C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL
### Microsoft\Disk Defragmenter Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM DPS=C:\WINDOWS\SYSTEM32\DPS.DLL
### Usługa Zasady diagnostyki infrastruktury WDI Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM EapHost=C:\WINDOWS\SYSTEM32\EAPSVC.DLL
### Usługa EAPHost firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\SYSTEM32\ES.DLL
### COM+ Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Svchost DLLs] :HKLM fdPHost=C:\WINDOWS\SYSTEM32\FDPHOST.DLL
### Usługa Host dostawcy odnajdowania funkcji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM FDResPub=C:\WINDOWS\SYSTEM32\FDRESPUB.DLL
### Usługa Publikacja zasobów odnajdowania funkcji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM FontCache=C:\WINDOWS\SYSTEM32\FNTCACHE.DLL
### Usług systemu Windows buforowania czcionek Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM hidserv=C:\WINDOWS\SYSTEM32\HIDSERV.DLL
### Usługa HID Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM hkmsvc=C:\WINDOWS\SYSTEM32\KMSVC.DLL
### Usługa zarządzania kluczami Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM HomeGroupListener=C:\WINDOWS\SYSTEM32\LISTSVC.DLL
### Windows HomeGroup Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM HomeGroupProvider=C:\WINDOWS\SYSTEM32\PROVSVC.DLL
### Windows HomeGroup Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM IKEEXT=C:\WINDOWS\SYSTEM32\IKEEXT.DLL
### Rozszerzenie IKE Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM IPBusEnum=C:\WINDOWS\SYSTEM32\IPBUSENUM.DLL
### Biblioteka DLL modułu wyliczającego magistrali PnP-X IP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM KtmRm=C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL
### Microsoft Distributed Transaction Coordinator OLE Transactions KTM Resource Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Svchost DLLs] :HKLM LanmanWorkstation=C:\WINDOWS\SYSTEM32\WKSSVC.DLL
### Biblioteka DLL usługi Stacja robocza Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM lltdsvc=C:\WINDOWS\SYSTEM32\LLTDSVC.DLL
### Link-Layer Topology Mapper Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Svchost DLLs] :HKLM Mcx2Svc=C:\WINDOWS\SYSTEM32\MCX2SVC.DLL
### Media Center Extender Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Svchost DLLs] :HKLM MMCSS=C:\WINDOWS\SYSTEM32\MMCSS.DLL
### Usługa harmonogramu klas multimediów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM MpsSvc=C:\WINDOWS\SYSTEM32\MPSSVC.DLL
### Usługa ochrony Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM nsi=C:\WINDOWS\SYSTEM32\NSISVC.DLL
### Serwer RPC interfejsu magazynu sieciowego Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM p2pimsvc=C:\WINDOWS\SYSTEM32\PNRPSVC.DLL
### Biblioteka dll usługi PNRP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Svchost DLLs] :HKLM p2psvc=C:\WINDOWS\SYSTEM32\P2PSVC.DLL
### Usługi sieci równorzędnej Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM PcaSvc=C:\WINDOWS\SYSTEM32\PCASVC.DLL
### Usługa Asystent zgodności programów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM PolicyAgent=C:\WINDOWS\SYSTEM32\IPSECSVC.DLL
### Biblioteka DLL serwera bazy danych o zasadach zabezpieczeń protokołu IPsec systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM ProfSvc=C:\WINDOWS\SYSTEM32\PROFSVC.DLL
### ProfSvc Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM RapiMgr=C:\WINDOWS\WINDOWSMOBILE\RAPIMGR.DLL
### ActiveSync RAPI Manager Microsoft Corporation Centrum obsługi urządzeń z systemem Microsoft® Windows Mobile® 6.1.6965.0
[Svchost DLLs] :HKLM RpcEptMapper=C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL
### Program mapowania punktów końcowych wywołań RPC Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SDRSVC=C:\WINDOWS\SYSTEM32\SDRSVC.DLL
### Usługa Kopia zapasowa systemu Microsoft® Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM seclogon=C:\WINDOWS\SYSTEM32\SECLOGON.DLL
### Biblioteka DLL dla pomocniczej usługi logowania Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SensrSvc=C:\WINDOWS\SYSTEM32\SENSRSVC.DLL
### Usługa oświetlenia zewnętrznego systemu Microsoft Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SstpSvc=C:\WINDOWS\SYSTEM32\SSTPSVC.DLL
### Udostępnia funkcję obsługi protokołu SSTP (Secure Socket Tunneling Protocol) umożliwiającą łączenie się z komputerami zdalnymi (przy użyciu sieci VPN). Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM swprv=C:\WINDOWS\SYSTEM32\SWPRV.DLL
### Dostawca oprogramowania Usługi kopiowania woluminów w tle Microsoft® Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM SysMain=C:\WINDOWS\SYSTEM32\SYSMAIN.DLL
### Host usługi Wstępne ładowanie do pamięci Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM TabletInputService=C:\WINDOWS\SYSTEM32\TABSVC.DLL
### Usługa wprowadzania na komputerze typu Tablet firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM Themes=C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL
### Biblioteka DLL usług kompozycji powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM THREADORDER=C:\WINDOWS\SYSTEM32\MMCSS.DLL
### Usługa harmonogramu klas multimediów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM TrkWks=C:\WINDOWS\SYSTEM32\TRKWKS.DLL
### Klient śledzenia łączy rozproszonych Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM UxSms=C:\WINDOWS\SYSTEM32\UXSMS.DLL
### Microsoft User Experience Session Management Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Svchost DLLs] :HKLM W32Time=C:\WINDOWS\SYSTEM32\W32TIME.DLL
### Usługa Czas systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WbioSrvc=C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL
### Usługa biometryczna systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WcesComm=C:\WINDOWS\WINDOWSMOBILE\WCESCOMM.DLL
### Menedżer połączeń programu ActiveSync Microsoft Corporation Centrum obsługi urządzeń z systemem Microsoft® Windows Mobile® 6.1.6965.0
[Svchost DLLs] :HKLM WdiServiceHost=C:\WINDOWS\SYSTEM32\WDI.DLL
### Infrastruktura diagnostyczna systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WdiSystemHost=C:\WINDOWS\SYSTEM32\WDI.DLL
### Infrastruktura diagnostyczna systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM wercplsupport=C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL
### Raporty i rozwiązania problemów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WerSvc=C:\WINDOWS\SYSTEM32\WERSVC.DLL
### Usługa raportowania błędów systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WinDefend=C:\PROGRAM FILES\WINDOWS DEFENDER\MPSVC.DLL
### Service Module Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Svchost DLLs] :HKLM wudfsvc=C:\WINDOWS\SYSTEM32\WUDFSVC.DLL
### Windows Driver Foundation — usługa User-mode Driver Framework Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Svchost DLLs] :HKLM WwanSvc=C:\WINDOWS\SYSTEM32\WWANSVC.DLL
### Usługa automatycznej konfiguracji bezprzewodowej sieci WAN Microsoft Corporation System operacyjny Microsoft® Windows® 08.01.02.00
[Bootexecute] :HKLM BootExecute=autocheck autochk *
Partizan
[Winlogon System] :HKLM system=""
### File is deleted or hidden by rootkit or could not be located.
[Winlogon System] :HKLM taskman=""
### File is deleted or hidden by rootkit or could not be located.
[Winlogon System] :HKLM UIHost=""
### File is deleted or hidden by rootkit or could not be located.
[Winlogon Autostart] :HKLM VmApplet=SystemPropertiesPerformance.exe /pagefile
[Winlogon Autostart] :HKLM AppSetup=""
[Environment - Path] :HKLM Path=C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
[List of Injected DLLs] :HKLM AppInit_DLLs=""
[LSA Notification Packages] :HKLM scecli=C:\Windows\system32\SCECLI.DLL
### scecli Aparat klienta Edytora konfiguracji zabezpieczeń systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[LSA Security Packages] :HKLM kerberos=C:\Windows\system32\KERBEROS.DLL
### kerberos Pakiet zabezpieczeń protokołu Kerberos Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[LSA Security Packages] :HKLM msv1_0=C:\Windows\system32\MSV1_0.DLL
### msv1_0 Microsoft Authentication Package v1.0 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[LSA Security Packages] :HKLM schannel=C:\Windows\system32\SCHANNEL.DLL
### schannel TLS / SSL Security Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[LSA Security Packages] :HKLM wdigest=C:\Windows\system32\WDIGEST.DLL
### wdigest Microsoft Digest Access Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[LSA Security Packages] :HKLM tspkg=C:\Windows\system32\TSPKG.DLL
### tspkg Web Service Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[LSA Security Packages] :HKLM pku2u=C:\Windows\system32\PKU2U.DLL
### pku2u Pku2u Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Auto Services] AudioEndpointBuilder
### Internal Name: AudioEndpointBuilder. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Zarządza urządzeniami audio dla usługi Audio systemu Windows. Jeśli ta usługa zostanie zatrzymana, urządzenia i efekty audio nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] AudioSrv
### Internal Name: AudioSrv. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Zarządza audio w programach dla systemu Windows. Jeśli ta usługa zostanie zatrzymana, urządzenia i efekty audio nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] avast! Antivirus
### Internal Name: avast! Antivirus. Status: service is running. Actual File: "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" * Instaluje i zarządza usługami antywirusowymi programu avast! na tym komputerze, co obejmuje rezydentny skaner, kwarantannę oraz harmonogram zadań. avast! Service AVAST Software avast! Antivirus 6.0.0.0
[Auto Services] BFE
### Internal Name: BFE. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Podstawowy aparat filtrowania (BFE) jest usługą, która zarządza zasadami zapory i zabezpieczeniami protokołu internetowego (IPsec) oraz implementuje filtrowanie w trybie użytkownika. Zatrzymanie lub wyłączenie usługi BFE znacząco osłabi zabezpieczenia systemu. Doprowadzi także do nieprzewidywalnego zachowania aplikacji zarządzana IPsec i zapory. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] cfWiMAXService
### Internal Name: cfWiMAXService. Status: service is running. Actual File: "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe" * This is WiMAX Control Service of ConfigFree. Please do not stop this servce when you are using ConfigFree with Intel WiMAX device. ConfigFree Service Process TOSHIBA CORPORATION ConfigFree(TM) 8, 0, 0, 12
[Auto Services] ConfigFree Gadget Service
### Internal Name: ConfigFree Gadget Service. Status: service is running. Actual File: "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe" * It's called by ConfigFree Gadget (x64) ConfigFree Gadget Process Service TOSHIBA CORPORATION ConfigFree 7, 2, 0, 0
[Auto Services] ConfigFree Service
### Internal Name: ConfigFree Service. Status: service is running. Actual File: "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe" * You can't stop this service, if you want to keep ConfigFree functionality fine. ConfigFree Service Process TOSHIBA CORPORATION ConfigFree(TM) 7, 3, 0, 0
[Auto Services] CryptSvc
### Internal Name: CryptSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Zapewnia cztery usługi zarządzania: usługę bazy danych wykazu, która potwierdza podpisy plików systemu Windows i zezwala na instalowanie nowych programów; usługę chronionego magazynu głównego, która dodaje i usuwa certyfikaty zaufanego głównego urzędu certyfikacji z tego komputera; usługę automatycznego aktualizowania certyfikatów głównych, która pobiera certyfikaty główne z witryny Windows Update i umożliwia scenariusze, takie jak SSL, oraz usługę kluczy, która pomaga zarejestrować ten komputer dla certyfikatów. Jeśli ta usługa zostanie zatrzymana, te usługi zarządzania nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] DcomLaunch
### Internal Name: CryptSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Zapewnia cztery usługi zarządzania: usługę bazy danych wykazu, która potwierdza podpisy plików systemu Windows i zezwala na instalowanie nowych programów; usługę chronionego magazynu głównego, która dodaje i usuwa certyfikaty zaufanego głównego urzędu certyfikacji z tego komputera; usługę automatycznego aktualizowania certyfikatów głównych, która pobiera certyfikaty główne z witryny Windows Update i umożliwia scenariusze, takie jak SSL, oraz usługę kluczy, która pomaga zarejestrować ten komputer dla certyfikatów. Jeśli ta usługa zostanie zatrzymana, te usługi zarządzania nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] Dhcp
### Internal Name: Dhcp. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Rejestruje i aktualizuje adresy IP i rekordy DNS dla tego komputera. Jeśli ta usługa zostanie zatrzymana, ten komputer nie będzie odbierał dynamicznych adresów IP i aktualizacji DNS. Jeśli ta usługa zostanie wyłączona, uruchomienie usług jawnie od niej zależnych nie będzie możliwe. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] Dnscache
### Internal Name: Dnscache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Usługa Klient DNS (dnscache) buforuje nazwy systemu DNS (Domain Name System) i rejestruje pełną nazwę komputera dla tego komputera. Jeśli usługa zostanie zatrzymana, nazwy DNS będą nadal rozpoznawane. Jednak wyniki kwerend nazw DNS nie będą buforowane i nazwa komputera nie będzie rejestrowana. Jeśli usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] DPS
### Internal Name: Dnscache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Usługa Klient DNS (dnscache) buforuje nazwy systemu DNS (Domain Name System) i rejestruje pełną nazwę komputera dla tego komputera. Jeśli usługa zostanie zatrzymana, nazwy DNS będą nadal rozpoznawane. Jednak wyniki kwerend nazw DNS nie będą buforowane i nazwa komputera nie będzie rejestrowana. Jeśli usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] eventlog
### Internal Name: eventlog. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Ta usługa zarządza zdarzeniami i dziennikami zdarzeń. Obsługuje ona rejestrowanie zdarzeń, zapytania dotyczące zdarzeń, subskrybowanie zdarzeń, archiwizowanie dzienników zdarzeń i zarządzanie metadanymi zdarzeń. Umożliwia wyświetlanie zdarzeń w formacie XML i zwykłego tekstu. Zatrzymanie tej usługi może naruszyć zabezpieczenia systemu i zmniejszyć jego niezawodność. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] EventSystem
### Internal Name: EventSystem. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Obsługuje usługę powiadamiania o zdarzeniu systemowym (SENS, System Event Notification Service), która zapewnia automatyczną dystrybucję zdarzeń do subskrybujących składników modelu COM (Component Object Model). Jeżeli usługa zostanie zatrzymana, usługa SENS zostanie zamknięta i nie będzie mogła dostarczać informacji o logowaniu i wylogowaniu. Jeżeli usługa ta zostanie wyłączona, wszystkie usługi, które jawnie od niej zależą, nie będą mogły zostać uruchomione. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] FontCache
### Internal Name: FontCache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Poprawia wydajność aplikacji dzięki buforowaniu danych często używanych czcionek. Jeśli ta usługa jeszcze nie działa, zostanie uruchomiona przez aplikacje. Usługę można wyłączyć, ale zmniejszy to wydajność aplikacji. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] gpsvc
### Internal Name: FontCache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Poprawia wydajność aplikacji dzięki buforowaniu danych często używanych czcionek. Jeśli ta usługa jeszcze nie działa, zostanie uruchomiona przez aplikacje. Usługę można wyłączyć, ale zmniejszy to wydajność aplikacji. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] IKEEXT
### Internal Name: IKEEXT. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Usługa IKEEXT obejmuje moduły obsługi wymiany kluczy IKE (Internet Keying Exchange) i AuthIP (Authenticated Internet Protocol). Te moduły obsługi kluczy służą do uwierzytelniania i wymiany kluczy w protokole IPsec (Internet Protocol security). Zatrzymanie lub wyłączenie usługi IKEEXT spowoduje wyłączenie wymiany kluczy IKE i AuthIP z komputerami równorzędnymi. Typowa konfiguracja protokołu IPsec przewiduje korzystanie z modułu IKE lub AuthIP i dlatego zatrzymanie lub wyłączenie usługi IKEEXT może spowodować niepowodzenie protokołu IPsec i naruszenie zabezpieczeń systemu. Zdecydowanie zaleca się uruchomienie usługi IKEEXT. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] iphlpsvc
### Internal Name: iphlpsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetSvcs * Zapewnia łączność tunelową przy użyciu technologii przejściowych IPv6 (6to4, ISATAP, Port Proxy i Teredo) oraz protokołu IP-HTTPS. Jeśli usługa ta jest zatrzymana, komputer nie będzie korzystać z rozszerzonej łączności oferowanej przez te technologie. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] LanmanServer
### Internal Name: LanmanServer. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Oferuje udostępnianie w sieci plików, drukarek i potoków dla tego komputera. Jeśli ta usługa zostanie zatrzymana, te funkcje staną się niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] LanmanWorkstation
### Internal Name: LanmanWorkstation. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Tworzy klienckie połączenia sieciowe z serwerami zdalnymi za pomocą protokołu SMB i zarządza nimi. Jeśli ta usługa zostanie zatrzymana, te połączenia będą niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] lmhosts
### Internal Name: lmhosts. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Zapewnia obsługę systemu NetBIOS w usłudze TCP/IP (NetBT) i rozpoznawanie nazw systemu NetBIOS dla klientów w sieci, umożliwiając użytkownikom udostępnianie plików, drukarek i logowanie w sieci. Jeśli ta usługa zostanie zatrzymana, funkcje te mogą być niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] MMCSS
### Internal Name: MMCSS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Umożliwia nadawanie względnych priorytetów jednostkom pracy na podstawie systemowych priorytetów zadań. Usługa ta przeznaczona jest głównie dla aplikacji multimedialnych. Jeśli zostanie ona zatrzymana, poszczególne zadania powrócą do domyślnych priorytetów. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] MpsSvc
### Internal Name: MpsSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Zapora systemu Windows pomaga chronić ten komputer, uniemożliwiając nieautoryzowanym użytkownikom uzyskiwanie dostępu do tego komputera za pośrednictwem Internetu lub sieci. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] NlaSvc
### Internal Name: NlaSvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Zbiera i magazynuje informacje o konfiguracji sieci i powiadamia pogramy o zmianach tych informacji. Jeśli ta usługa zostanie zatrzymana, informacje o konfiguracji mogą być niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] nsi
### Internal Name: nsi. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Ta usługa dostarcza powiadomienia sieciowe (np. o dodaniu/usunięciu interfejsu itp.) dla klientów działających w trybie użytkownika. Zatrzymanie tej usługi może spowodować utratę łączności sieciowej. Jeśli ta usługa zostanie wyłączona, wszystkie inne usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] PcaSvc
### Internal Name: PcaSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Ta usługa zapewnia obsługę Asystenta zgodności programów. Asystent zgodności programów monitoruje programy instalowane i uruchamiane przez użytkownika oraz wykrywa znane problemy ze zgodnością. Jeśli ta usługa zostanie zatrzymana, Asystent zgodności programów nie będzie działał prawidłowo. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] PlugPlay
### Internal Name: PlugPlay. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Umożliwia komputerowi rozpoznawanie i adaptowanie zmian sprzętu bez udziału lub przy nieznacznym udziale użytkownika. Zatrzymanie lub wyłączenie tej usługi spowoduje niestabilność systemu. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] Power
### Internal Name: Power. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Zarządza zasadami zasilania i dostarczaniem powiadomień zasad zasilania. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] ProfSvc
### Internal Name: ProfSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Ta usługa odpowiada za ładowanie i zwalnianie profilów użytkowników. Jeśli ta usługa będzie zatrzymana lub wyłączona, użytkownicy nie będą mogli pomyślnie logować się i wylogowywać, aplikacje będą mogły mieć problemy z uzyskiwaniem danych użytkowników, a składniki zarejestrowane w celu odbierania powiadomień o zdarzeniach profilów nie będą ich odbierać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] RapiMgr
### Internal Name: RapiMgr. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Umożliwia zdalne wykonywanie poleceń i zdalne sterowanie urządzeniami z systemem Windows Mobile. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] RpcEptMapper
### Internal Name: RapiMgr. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Umożliwia zdalne wykonywanie poleceń i zdalne sterowanie urządzeniami z systemem Windows Mobile. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] RpcSs
### Internal Name: RapiMgr. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Umożliwia zdalne wykonywanie poleceń i zdalne sterowanie urządzeniami z systemem Windows Mobile. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] SamSs
### Internal Name: SamSs. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * Uruchomienie tej usługi informuje inne usługi, że Menedżer kont zabezpieczeń jest gotowy do akceptowania żądań. Wyłączenie tej usługi spowoduje, że inne usługi w systemie nie będą powiadamiane o gotowości Menedżera kont zabezpieczeń, przez co te usługi mogą być uruchamiane nieprawidłowo. Tej usługi nie należy wyłączać. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Auto Services] Schedule
### Internal Name: SamSs. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * Uruchomienie tej usługi informuje inne usługi, że Menedżer kont zabezpieczeń jest gotowy do akceptowania żądań. Wyłączenie tej usługi spowoduje, że inne usługi w systemie nie będą powiadamiane o gotowości Menedżera kont zabezpieczeń, przez co te usługi mogą być uruchamiane nieprawidłowo. Tej usługi nie należy wyłączać. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Auto Services] SENS
### Internal Name: SENS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Monitoruje zdarzenia systemowe i powiadamia o nich subskrybentów systemu zdarzeń COM+. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] ShellHWDetection
### Internal Name: ShellHWDetection. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Zapewnia powiadomienia o zdarzeniach sprzętowych Autoodtwarzania. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] Spooler
### Internal Name: Spooler. Status: service is running. Actual File: C:\Windows\System32\spoolsv.exe * Ładuje pliki do pamięci w celu późniejszego wydrukowania. Spooler SubSystem App Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] sppsvc
### Internal Name: sppsvc. Status: service stopped. Actual File: C:\Windows\system32\sppsvc.exe * Umożliwia pobieranie, instalowanie i egzekwowanie licencji cyfrowych na system Windows i aplikacje pracujące w systemie Windows. Jeśli usługa jest wyłączona, system operacyjny i licencjonowane aplikacje mogą pracować w trybie powiadamiania. Zaleca się niewyłączanie usługi ochrony oprogramowania. Usługa platformy ochrony oprogramowania firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] stisvc
### Internal Name: stisvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k imgsvc * Zapewnia usługi pozyskiwania obrazów dla skanerów i aparatów fotograficznych. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] SysMain
### Internal Name: SysMain. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Utrzymuje wydajność systemu i poprawia ją w dłuższym czasie. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] TemproMonitoringService
### Internal Name: TemproMonitoringService. Status: service is running. Actual File: "C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe" * Toshiba Notebook Performance Tuning Service Toshiba TEMPRO Toshiba Europe GmbH Toshiba TEMPRO 3.0.5.0
[Auto Services] Themes
### Internal Name: Themes. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Zapewnia zarządzanie kompozycjami obsługiwanymi przez użytkownika. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] TODDSrv
### Internal Name: TODDSrv. Status: service is running. Actual File: C:\Windows\system32\TODDSrv.exe * TDCSrv Application TOSHIBA Corporation TDCSrv Application 1, 0, 0, 7
[Auto Services] TosCoSrv
### Internal Name: TosCoSrv. Status: service is running. Actual File: "C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe" * Program Toshiba Power Saver zarządza ustawieniami oszczędzania energii obsługiwanymi przez firmę Toshiba. Te ustawienia nie będą działać, jeżeli usługa została zatrzymana. TOSHIBA Power Saver TOSHIBA Corporation TOSHIBA Power Saver V8.07.01
[Auto Services] TOSHIBA eco Utility Service
### Internal Name: TOSHIBA eco Utility Service. Status: service is running. Actual File: "C:\Program Files\TOSHIBA\TECO\TecoService.exe" * TOSHIBA eco Utility Service TOSHIBA eco Utility Service TOSHIBA Corporation TOSHIBA eco Utility V1.1.5.0
[Auto Services] TrkWks
### Internal Name: TrkWks. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Utrzymuje łącza między plikami systemu NTFS na komputerze lub między komputerami w sieci. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] UxSms
### Internal Name: UxSms. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Zapewnia usługi uruchamiania i obsługi Menedżera okien pulpitu Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] WcesComm
### Internal Name: WcesComm. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Zapewnia łączność dla urządzeń z systemem Windows Mobile 2003 Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] WinDefend
### Internal Name: WinDefend. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k secsvcs * Ochrona przed szpiegującym i niechcianym oprogramowaniem Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] Winmgmt
### Internal Name: Winmgmt. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Dostarcza interfejs i model obiektowy w celu uzyskiwania dostępu do informacji zarządzania o systemie operacyjnym, urządzeniach, aplikacjach i usługach. Jeśli ta usługa zostanie zatrzymana, większość oprogramowania opartego na systemie Windows nie będzie działać właściwie. Jeśli ta usługa zostanie wyłączona, uruchomienie usług od niej zależnych nie powiedzie się. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] Wlansvc
### Internal Name: Wlansvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Usługa WLANSVC zapewnia logikę niezbędną do konfigurowania, odnajdowania, łączenia i rozłączania z bezprzewodową siecią lokalną (WLAN) zgodnie ze standardami IEEE 802.11. Zawiera także logikę umożliwiającą przekształcenie komputera w programowy punkt dostępu, dzięki któremu inne urządzenia lub komputery mogą połączyć się z komputerem bezprzewodowo za pośrednictwem karty WLAN obsługującej taką funkcję. Zatrzymanie lub wyłączenie usługi WLANSVC spowoduje, że wszystkie karty WLAN w komputerze będą niedostępne z poziomu sieciowego interfejsu użytkownika systemu Windows. Jeżeli komputer jest wyposażony w kartę WLAN, zdecydowanie zalecane jest pozostawienie usługi WLANSVC działającej. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] WMPNetworkSvc
### Internal Name: WMPNetworkSvc. Status: service is running. Actual File: "C:\Program Files\Windows Media Player\wmpnetwk.exe" * Udostępnia biblioteki programu Windows Media Player innym odtwarzaczom i urządzeniom multimedialnym w sieci przy użyciu technologii Universal Plug and Play Usługa udostępniania w sieci programu Windows Media Player Microsoft Corporation System operacyjny Microsoft® Windows® 12.0.7600.16385
[Auto Services] wscsvc
### Internal Name: wscsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Usługa WSCSVC (Windows Security Center) monitoruje ustawienia kondycji zabezpieczeń komputera i raportuje ich stan. Ustawienia kondycji dotyczą zapory (włączona/wyłączona), oprogramowania antywirusowego (włączone/wyłączone/nieaktualne), oprogramowania antyszpiegowskiego (włączone/wyłączone/nieaktualne), usługi Windows Update (automatyczne/ręczne pobieranie i instalowanie aktualizacji), kontroli konta użytkownika (włączona/wyłączona) i ustawień internetowych (zalecane/niezalecane). Usługa udostępnia niezależnym dostawcom oprogramowania interfejsy API COM służące do rejestracji i zapisywania stanu ich produktów w usłudze Centrum zabezpieczeń. Interfejs użytkownika Centrum akcji używa tej usługi do przekazywania alertów usługi Systray i wyświetlania w postaci graficznej stanów kondycji zabezpieczeń w panelu sterowania Centrum akcji. Ochrona dostępu do sieci używa tej usługi do wysyłania raportów o stanach kondycji zabezpieczeń klientów do serwera zasad sieciowych ochrony dostępu do sieci dla potrzeb podejmowania decyzji dotyczących kwarantanny w sieci. Usługa ta ma również publiczny interfejs API, który umożliwia zewnętrznym użytkownikom programowe pobieranie skumulowanego stanu kondycji zabezpieczeń systemu. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] WSearch
### Internal Name: WSearch. Status: service is running. Actual File: C:\Windows\system32\SearchIndexer.exe /Embedding * Zapewnia indeksowanie zawartości, buforowanie właściwości i wyniki wyszukiwania plików, wiadomości e-mail i innej zawartości. Indeksator programu Microsoft Windows Search Microsoft Corporation Wyszukiwanie Windows® 7.00.7600.16385
[Auto Services] wuauserv
### Internal Name: wuauserv. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Umożliwia wykrywanie, pobieranie i instalowanie aktualizacji systemu Windows i innych programów. Wyłączenie tej usługi spowoduje, że użytkownicy tego komputera nie będą mogli używać rozszerzenia Windows Update ani funkcji automatycznego aktualizowania, a programy nie będą mogły używać funkcji API Windows Update Agent (WUA). Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Services] wudfsvc
### Internal Name: wudfsvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Zarządza procesami hosta sterowników trybu użytkownika. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] ntoskrnl.exe=C:\Windows\SYSTEM32\NTOSKRNL.EXE
### NT Kernel & System Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17592
[Drivers] hal.dll=C:\Windows\SYSTEM32\HAL.DLL
### Hardware Abstraction Layer DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] kdcom.dll=C:\Windows\SYSTEM32\KDCOM.DLL
### Serial Kernel Debugger Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17556
[Drivers] mcupdate_GenuineIntel.dll=C:\Windows\SYSTEM32\MCUPDATE_GENUINEINTEL.DLL
### Intel Microcode Update Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] PSHED.dll=C:\Windows\SYSTEM32\PSHED.DLL
### Sterownik błędów sprzętowych charakterystycznych dla platformy Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] CLFS.SYS=C:\Windows\SYSTEM32\CLFS.SYS
### Common Log File System Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] CI.dll=C:\Windows\SYSTEM32\CI.DLL
### Code Integrity Module Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Wdf01000.sys=C:\Windows\SYSTEM32\DRIVERS\WDF01000.SYS
### Aparat wykonawczy struktury sterowników trybu jądra Microsoft Corporation System operacyjny Microsoft® Windows® 1.9.7600.16385
[Drivers] WDFLDR.SYS=C:\Windows\SYSTEM32\DRIVERS\WDFLDR.SYS
### Kernel Mode Driver Framework Loader Microsoft Corporation Microsoft® Windows® Operating System 1.9.7600.16385
[Drivers] ACPI.sys=C:\Windows\SYSTEM32\DRIVERS\ACPI.SYS
### Sterownik ACPI dla systemu NT Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] WMILIB.SYS=C:\Windows\SYSTEM32\DRIVERS\WMILIB.SYS
### WMILIB WMI support library Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] msisadrv.sys=C:\Windows\SYSTEM32\DRIVERS\MSISADRV.SYS
### ISA Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] pci.sys=C:\Windows\SYSTEM32\DRIVERS\PCI.SYS
### Licznik NT Plug and Play PCI Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] vdrvroot.sys=C:\Windows\SYSTEM32\DRIVERS\VDRVROOT.SYS
### Główny moduł wyliczający dysku wirtualnego Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] partmgr.sys=C:\Windows\SYSTEM32\DRIVERS\PARTMGR.SYS
### Partition Management Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] compbatt.sys=C:\Windows\SYSTEM32\DRIVERS\COMPBATT.SYS
### Composite Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] BATTC.SYS=C:\Windows\SYSTEM32\DRIVERS\BATTC.SYS
### Battery Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] volmgr.sys=C:\Windows\SYSTEM32\DRIVERS\VOLMGR.SYS
### Volume Manager Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] volmgrx.sys=C:\Windows\SYSTEM32\DRIVERS\VOLMGRX.SYS
### Sterownik rozszerzenia menedżera woluminów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] mountmgr.sys=C:\Windows\SYSTEM32\DRIVERS\MOUNTMGR.SYS
### Menedżer punktów instalacji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] pciide.sys=C:\Windows\SYSTEM32\DRIVERS\PCIIDE.SYS
### Generic PCI IDE Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] PCIIDEX.SYS=C:\Windows\SYSTEM32\DRIVERS\PCIIDEX.SYS
### PCI IDE Bus Driver Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] iaStor.sys=C:\Windows\SYSTEM32\DRIVERS\IASTOR.SYS
### Intel Matrix Storage Manager driver - x64 Intel Corporation Intel Matrix Storage Manager driver 8.9.0.1023
[Drivers] atapi.sys=C:\Windows\SYSTEM32\DRIVERS\ATAPI.SYS
### ATAPI IDE Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] ataport.SYS=C:\Windows\SYSTEM32\DRIVERS\ATAPORT.SYS
### ATAPI Driver Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] msahci.sys=C:\Windows\SYSTEM32\DRIVERS\MSAHCI.SYS
### MS AHCI 1.0 Standard Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] amdxata.sys=C:\Windows\SYSTEM32\DRIVERS\AMDXATA.SYS
### Storage Filter Driver Advanced Micro Devices Storage Filter Driver 1.1.2.5
[Drivers] fltmgr.sys=C:\Windows\SYSTEM32\DRIVERS\FLTMGR.SYS
### Menedżer filtrów systemu plików firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] fileinfo.sys=C:\Windows\SYSTEM32\DRIVERS\FILEINFO.SYS
### FileInfo Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Ntfs.sys=C:\Windows\SYSTEM32\DRIVERS\NTFS.SYS
### Sterownik systemu plików NT Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] msrpc.sys=C:\Windows\SYSTEM32\DRIVERS\MSRPC.SYS
### Kernel Remote Procedure Call Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] ksecdd.sys=C:\Windows\SYSTEM32\DRIVERS\KSECDD.SYS
### Kernel Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] cng.sys=C:\Windows\SYSTEM32\DRIVERS\CNG.SYS
### Kernel Cryptography, Next Generation Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] pcw.sys=C:\Windows\SYSTEM32\DRIVERS\PCW.SYS
### Performance Counters for Windows Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Fs_Rec.sys=C:\Windows\SYSTEM32\DRIVERS\FS_REC.SYS
### File System Recognizer Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] ndis.sys=C:\Windows\SYSTEM32\DRIVERS\NDIS.SYS
### Sterownik NDIS 6.20 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] NETIO.SYS=C:\Windows\SYSTEM32\DRIVERS\NETIO.SYS
### Network I/O Subsystem Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] ksecpkg.sys=C:\Windows\SYSTEM32\DRIVERS\KSECPKG.SYS
### Kernel Security Support Provider Interface Packages Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] tcpip.sys=C:\Windows\SYSTEM32\DRIVERS\TCPIP.SYS
### Sterownik TCP/IP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] fwpkclnt.sys=C:\Windows\SYSTEM32\DRIVERS\FWPKCLNT.SYS
### FWP/IPsec Kernel-Mode API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] volsnap.sys=C:\Windows\SYSTEM32\DRIVERS\VOLSNAP.SYS
### Sterownik kopiowania woluminów w tle Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] TVALZ_O.SYS=C:\Windows\SYSTEM32\DRIVERS\TVALZ_O.SYS
### TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver TOSHIBA Corporation 2, 0, 0, 3
[Drivers] tos_sps64.sys=C:\Windows\SYSTEM32\DRIVERS\TOS_SPS64.SYS
### tos_sps64 TOSHIBA Corporation tos_sps64 4, 2, 0, 0
[Drivers] spldr.sys=C:\Windows\SYSTEM32\DRIVERS\SPLDR.SYS
### loader for security processor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7127.0
[Drivers] rdyboost.sys=C:\Windows\SYSTEM32\DRIVERS\RDYBOOST.SYS
### ReadyBoost Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] mup.sys=C:\Windows\SYSTEM32\DRIVERS\MUP.SYS
### Multiple UNC Provider Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] hwpolicy.sys=C:\Windows\SYSTEM32\DRIVERS\HWPOLICY.SYS
### Hardware Policy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] fvevol.sys=C:\Windows\SYSTEM32\DRIVERS\FVEVOL.SYS
### BitLocker Drive Encryption Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] disk.sys=C:\Windows\SYSTEM32\DRIVERS\DISK.SYS
### PnP Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] CLASSPNP.SYS=C:\Windows\SYSTEM32\DRIVERS\CLASSPNP.SYS
### SCSI Class System Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] cdrom.sys=C:\Windows\SYSTEM32\DRIVERS\CDROM.SYS
### SCSI CD-ROM Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] aswSnx.SYS=C:\Windows\SYSTEM32\DRIVERS\ASWSNX.SYS
### avast! Virtualization Driver AVAST Software avast! Antivirus System 6.0
[Drivers] Null.SYS=C:\Windows\SYSTEM32\DRIVERS\NULL.SYS
### NULL Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Beep.SYS=C:\Windows\SYSTEM32\DRIVERS\BEEP.SYS
### BEEP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] vga.sys=C:\Windows\SYSTEM32\DRIVERS\VGA.SYS
### VGA/Super VGA Video Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] VIDEOPRT.SYS=C:\Windows\SYSTEM32\DRIVERS\VIDEOPRT.SYS
### Video Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] watchdog.sys=C:\Windows\SYSTEM32\DRIVERS\WATCHDOG.SYS
### Watchdog Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] RDPCDD.sys=C:\Windows\SYSTEM32\DRIVERS\RDPCDD.SYS
### RDP Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] rdpencdd.sys=C:\Windows\SYSTEM32\DRIVERS\RDPENCDD.SYS
### RDP Encoder Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] rdprefmp.sys=C:\Windows\SYSTEM32\DRIVERS\RDPREFMP.SYS
### RDP Reflector Driver Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Msfs.SYS=C:\Windows\SYSTEM32\DRIVERS\MSFS.SYS
### Mailslot driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Npfs.SYS=C:\Windows\SYSTEM32\DRIVERS\NPFS.SYS
### NPFS Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] tdx.sys=C:\Windows\SYSTEM32\DRIVERS\TDX.SYS
### TDI Translation Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] TDI.SYS=C:\Windows\SYSTEM32\DRIVERS\TDI.SYS
### TDI Wrapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] aswTdi.SYS=C:\Windows\SYSTEM32\DRIVERS\ASWTDI.SYS
### avast! TDI Filter Driver AVAST Software avast! Antivirus System 6.0
[Drivers] afd.sys=C:\Windows\SYSTEM32\DRIVERS\AFD.SYS
### Ancillary Function Driver for WinSock Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] aswRdr.SYS=C:\Windows\SYSTEM32\DRIVERS\ASWRDR.SYS
### avast! TDI RDR Driver AVAST Software avast! Antivirus System 6.0
[Drivers] netbt.sys=C:\Windows\SYSTEM32\DRIVERS\NETBT.SYS
### MBT Transport driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] wfplwf.sys=C:\Windows\SYSTEM32\DRIVERS\WFPLWF.SYS
### WFP NDIS 6.20 Lightweight Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] pacer.sys=C:\Windows\SYSTEM32\DRIVERS\PACER.SYS
### Harmonogram pakietów QoS Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] vwififlt.sys=C:\Windows\SYSTEM32\DRIVERS\VWIFIFLT.SYS
### Virtual WiFi Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] netbios.sys=C:\Windows\SYSTEM32\DRIVERS\NETBIOS.SYS
### NetBIOS interface driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] wanarp.sys=C:\Windows\SYSTEM32\DRIVERS\WANARP.SYS
### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] termdd.sys=C:\Windows\SYSTEM32\DRIVERS\TERMDD.SYS
### Remote Desktop Server Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] rdbss.sys=C:\Windows\SYSTEM32\DRIVERS\RDBSS.SYS
### Sterownik podsystemu buforowania przekierowanego dysku Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] nsiproxy.sys=C:\Windows\SYSTEM32\DRIVERS\NSIPROXY.SYS
### NSI Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] mssmbios.sys=C:\Windows\SYSTEM32\DRIVERS\MSSMBIOS.SYS
### System Management BIOS Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] discache.sys=C:\Windows\SYSTEM32\DRIVERS\DISCACHE.SYS
### System Indexer/Cache Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] dfsc.sys=C:\Windows\SYSTEM32\DRIVERS\DFSC.SYS
### DFS Namespace Client Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] blbdrive.sys=C:\Windows\SYSTEM32\DRIVERS\BLBDRIVE.SYS
### BLB Drive Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] aswSP.SYS=C:\Windows\SYSTEM32\DRIVERS\ASWSP.SYS
### avast! self protection module AVAST Software avast! Antivirus System 6.0
[Drivers] tunnel.sys=C:\Windows\SYSTEM32\DRIVERS\TUNNEL.SYS
### Sterownik interfejsu tunelu firmy Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] igdkmd64.sys=C:\Windows\SYSTEM32\DRIVERS\IGDKMD64.SYS
### Intel Graphics Kernel Mode Driver Intel Corporation Intel Graphics Accelerator Drivers for Windows 7(R) 8.15.10.1883
[Drivers] dxgkrnl.sys=C:\Windows\SYSTEM32\DRIVERS\DXGKRNL.SYS
### DirectX Graphics Kernel Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] dxgmms1.sys=C:\Windows\SYSTEM32\DRIVERS\DXGMMS1.SYS
### DirectX Graphics MMS Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] usbuhci.sys=C:\Windows\SYSTEM32\DRIVERS\USBUHCI.SYS
### UHCI USB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] USBPORT.SYS=C:\Windows\SYSTEM32\DRIVERS\USBPORT.SYS
### Sterownik portów USB 1.1 i 2.0 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] usbehci.sys=C:\Windows\SYSTEM32\DRIVERS\USBEHCI.SYS
### EHCI eUSB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] HDAudBus.sys=C:\Windows\SYSTEM32\DRIVERS\HDAUDBUS.SYS
### High Definition Audio Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] Rt64win7.sys=C:\Windows\SYSTEM32\DRIVERS\RT64WIN7.SYS
### Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver Realtek Realtek 8136/8168/8169 PCI/PCIe Adapters 7.003.0522.2009
[Drivers] LPCFilter.sys=C:\Windows\SYSTEM32\DRIVERS\LPCFILTER.SYS
### LPCFilter COMPAL ELECTRONIC INC. 1, 0, 64, 5
[Drivers] tdcmdpst.sys=C:\Windows\SYSTEM32\DRIVERS\TDCMDPST.SYS
### TOSHIBA ODD Writing Driver for x64. TOSHIBA Corporation. 2, 0, 0, 3
[Drivers] TVALZFL.sys=C:\Windows\SYSTEM32\DRIVERS\TVALZFL.SYS
### TOSHIBA TVALZ Filter Driver for x64 TOSHIBA Corporation 1, 0, 0, 2
[Drivers] intelppm.sys=C:\Windows\SYSTEM32\DRIVERS\INTELPPM.SYS
### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] CompositeBus.sys=C:\Windows\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS
### Multi-Transport Composite Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] AgileVpn.sys=C:\Windows\SYSTEM32\DRIVERS\AGILEVPN.SYS
### RAS Agile Vpn Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] rasl2tp.sys=C:\Windows\SYSTEM32\DRIVERS\RASL2TP.SYS
### RAS L2TP mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] ndistapi.sys=C:\Windows\SYSTEM32\DRIVERS\NDISTAPI.SYS
### NDIS 3.0 connection wrapper driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] ndiswan.sys=C:\Windows\SYSTEM32\DRIVERS\NDISWAN.SYS
### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] raspppoe.sys=C:\Windows\SYSTEM32\DRIVERS\RASPPPOE.SYS
### RAS PPPoE mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] raspptp.sys=C:\Windows\SYSTEM32\DRIVERS\RASPPTP.SYS
### Peer-to-Peer Tunneling Protocol Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] rassstp.sys=C:\Windows\SYSTEM32\DRIVERS\RASSSTP.SYS
### RAS SSTP Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] kbdclass.sys=C:\Windows\SYSTEM32\DRIVERS\KBDCLASS.SYS
### Sterownik klasy klawiatury Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] mouclass.sys=C:\Windows\SYSTEM32\DRIVERS\MOUCLASS.SYS
### Sterownik klasy myszy Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] swenum.sys=C:\Windows\SYSTEM32\DRIVERS\SWENUM.SYS
### Plug and Play Software Device Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] ks.sys=C:\Windows\SYSTEM32\DRIVERS\KS.SYS
### Kernel CSA Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] umbus.sys=C:\Windows\SYSTEM32\DRIVERS\UMBUS.SYS
### User-Mode Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] usbhub.sys=C:\Windows\SYSTEM32\DRIVERS\USBHUB.SYS
### Default Hub Driver for USB Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] NDProxy.SYS=C:\Windows\SYSTEM32\DRIVERS\NDPROXY.SYS
### NDIS Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] RTKVHD64.sys=C:\Windows\SYSTEM32\DRIVERS\RTKVHD64.SYS
### Realtek(r) High Definition Audio Function Driver Realtek Semiconductor Corp. Realtek(r) High Definition Audio Function Driver 6.0.1.5904
[Drivers] portcls.sys=C:\Windows\SYSTEM32\DRIVERS\PORTCLS.SYS
### Port Class (Class Driver for Port/Miniport Devices) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] drmk.sys=C:\Windows\SYSTEM32\DRIVERS\DRMK.SYS
### Microsoft Trusted Audio Drivers Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] ksthunk.sys=C:\Windows\SYSTEM32\DRIVERS\KSTHUNK.SYS
### Kernel Streaming WOW Thunk Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] IntcHdmi.sys=C:\Windows\SYSTEM32\DRIVERS\INTCHDMI.SYS
### Intel(R) High Definition Audio HDMI Intel(R) Corporation Intel(R) High Definition Audio HDMI 6.10.01.2077
[Drivers] CmBatt.sys=C:\Windows\SYSTEM32\DRIVERS\CMBATT.SYS
### Control Method Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] i8042prt.sys=C:\Windows\SYSTEM32\DRIVERS\I8042PRT.SYS
### Sterownik portu i8042 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] SynTP.sys=C:\Windows\SYSTEM32\DRIVERS\SYNTP.SYS
### Synaptics Touchpad Driver Synaptics Incorporated Synaptics Pointing Device Driver 13.2.6.1 20Jul09
[Drivers] USBD.SYS=C:\Windows\SYSTEM32\DRIVERS\USBD.SYS
### Universal Serial Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] RTL8187B.sys=C:\Windows\SYSTEM32\DRIVERS\RTL8187B.SYS
### Realtek RTL8187B NDIS Driver Realtek Semiconductor Corporation Realtek RTL8187B Wireless USB 2.0 Adapter 62.1176.0812.2009
[Drivers] vwifibus.sys=C:\Windows\SYSTEM32\DRIVERS\VWIFIBUS.SYS
### Sterownik wirtualnej magistrali WiFi Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] usbccgp.sys=C:\Windows\SYSTEM32\DRIVERS\USBCCGP.SYS
### USB Common Class Generic Parent Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] hidusb.sys=C:\Windows\SYSTEM32\DRIVERS\HIDUSB.SYS
### USB Miniport Driver for Input Devices Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] HIDCLASS.SYS=C:\Windows\SYSTEM32\DRIVERS\HIDCLASS.SYS
### Hid Class Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] HIDPARSE.SYS=C:\Windows\SYSTEM32\DRIVERS\HIDPARSE.SYS
### Hid Parsing Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] usbvideo.sys=C:\Windows\SYSTEM32\DRIVERS\USBVIDEO.SYS
### USB Video Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] pgeffect.sys=C:\Windows\SYSTEM32\DRIVERS\PGEFFECT.SYS
### TOSHIBA Universal Camera Filter Driver TOSHIBA Corporation TOSHIBA Universal Camera Filter Driver 1,0,13,64
[Drivers] mouhid.sys=C:\Windows\SYSTEM32\DRIVERS\MOUHID.SYS
### Sterownik filtru myszy HID Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] win32k.sys=C:\Windows\SYSTEM32\WIN32K.SYS
### Współużytkowany sterownik Win32 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] Dxapi.sys=C:\Windows\SYSTEM32\DRIVERS\DXAPI.SYS
### DirectX API Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] crashdmp.sys=C:\Windows\SYSTEM32\DRIVERS\CRASHDMP.SYS
### Crash Dump Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] iaStor.sys=C:\Windows\SYSTEM32\DRIVERS\DUMP_IASTOR.SYS
[Drivers] dumpfve.sys=C:\Windows\SYSTEM32\DRIVERS\DUMP_DUMPFVE.SYS
[Drivers] monitor.sys=C:\Windows\SYSTEM32\DRIVERS\MONITOR.SYS
### Monitor Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] TSDDD.dll=C:\Windows\SYSTEM32\TSDDD.DLL
### Framebuffer Display Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] cdd.dll=C:\Windows\SYSTEM32\CDD.DLL
### Canonical Display Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] luafv.sys=C:\Windows\SYSTEM32\DRIVERS\LUAFV.SYS
### Sterownik filtru wirtualizacji plików LUA Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Drivers] aswMonFlt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ASWMONFLT.SYS
### avast! File System Minifilter for Windows 2003/Vista AVAST Software avast! Antivirus System 6.0
[Drivers] aswFsBlk.SYS=C:\Windows\SYSTEM32\DRIVERS\ASWFSBLK.SYS
### avast! File System Access Blocking Driver AVAST Software avast! Antivirus System 6.0
[Drivers] WudfPf.sys=C:\Windows\SYSTEM32\DRIVERS\WUDFPF.SYS
### Windows Driver Foundation - User-mode Driver Framework Platform Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] lltdio.sys=C:\Windows\SYSTEM32\DRIVERS\LLTDIO.SYS
### Link-Layer Topology Mapper I/O Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] nwifi.sys=C:\Windows\SYSTEM32\DRIVERS\NWIFI.SYS
### Sterownik NativeWiFi Miniport Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] ndisuio.sys=C:\Windows\SYSTEM32\DRIVERS\NDISUIO.SYS
### Sterownik NDIS I/O trybu użytkownika Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] rspndr.sys=C:\Windows\SYSTEM32\DRIVERS\RSPNDR.SYS
### Link-Layer Topology Responder Driver for NDIS 6 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] vwifimp.sys=C:\Windows\SYSTEM32\DRIVERS\VWIFIMP.SYS
### Virtual WiFi Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] HTTP.sys=C:\Windows\SYSTEM32\DRIVERS\HTTP.SYS
### Stos protokołu HTTP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] bowser.sys=C:\Windows\SYSTEM32\DRIVERS\BOWSER.SYS
### NT Lan Manager Datagram Receiver Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17565
[Drivers] mpsdrv.sys=C:\Windows\SYSTEM32\DRIVERS\MPSDRV.SYS
### Microsoft Protection Service Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] mrxsmb.sys=C:\Windows\SYSTEM32\DRIVERS\MRXSMB.SYS
### Windows NT SMB Minirdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17605
[Drivers] mrxsmb10.sys=C:\Windows\SYSTEM32\DRIVERS\MRXSMB10.SYS
### Longhorn SMB Downlevel SubRdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17605
[Drivers] mrxsmb20.sys=C:\Windows\SYSTEM32\DRIVERS\MRXSMB20.SYS
### Longhorn SMB 2.0 Redirector Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17605
[Drivers] peauth.sys=C:\Windows\SYSTEM32\DRIVERS\PEAUTH.SYS
### Protected Environment Authentication and Authorization Export Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] secdrv.SYS=C:\Windows\SYSTEM32\DRIVERS\SECDRV.SYS
### Macrovision SECURITY Driver Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. Macrovision SECURITY Driver SECURITY Driver 4.03.086 2006/09/13
[Drivers] srvnet.sys=C:\Windows\SYSTEM32\DRIVERS\SRVNET.SYS
### Server Network driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17608
[Drivers] tcpipreg.sys=C:\Windows\SYSTEM32\DRIVERS\TCPIPREG.SYS
### TCP/IP Registry Compatibility Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Drivers] srv2.sys=C:\Windows\SYSTEM32\DRIVERS\SRV2.SYS
### Smb 2.0 Server driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17608
[Drivers] srv.sys=C:\Windows\SYSTEM32\DRIVERS\SRV.SYS
### Server driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Drivers] ntdll.dll=C:\WINDOWS\SYSTEM32\NTDLL.DLL
### Biblioteka NT Layer DLL Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] smss.exe=C:\WINDOWS\SYSTEM32\SMSS.EXE
### Menedżer sesji systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Drivers] apisetschema.dll=C:\WINDOWS\SYSTEM32\APISETSCHEMA.DLL
### ApiSet Schema DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Codecs] :HKLM vidc.mrle=C:\Windows\system32\MSRLE32.DLL
### Microsoft RLE Compressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Codecs] :HKLM vidc.msvc=C:\Windows\system32\MSVIDC32.DLL
### Kompresor Microsoft Video 1 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM msacm.imaadpcm=C:\Windows\system32\IMAADP32.ACM
### IMA ADPCM CODEC dla MSACM Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM msacm.msg711=C:\Windows\system32\MSG711.ACM
### Microsoft CCITT G.711 (A-Law i u-Law) CODEC dla MSACM Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM msacm.msgsm610=C:\Windows\system32\MSGSM32.ACM
### Microsoft GSM 6.10 Audio CODEC dla MSACM Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM msacm.msadpcm=C:\Windows\system32\MSADP32.ACM
### Microsoft CODEC ADPCM dla MSACM Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM midimapper=C:\Windows\system32\MIDIMAP.DLL
### Microsoft MIDI Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Codecs] :HKLM wavemapper=C:\Windows\system32\MSACM32.DRV
### Mapowanie dźwięku Microsoft Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM vidc.uyvy=C:\Windows\system32\MSYUV.DLL
### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Codecs] :HKLM vidc.yuy2=C:\Windows\system32\MSYUV.DLL
### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Codecs] :HKLM vidc.yvyu=C:\Windows\system32\MSYUV.DLL
### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Codecs] :HKLM vidc.iyuv=C:\Windows\system32\IYUV_32.DLL
### Koder-dekoder Intel Indeo(R) Video YUV Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM vidc.i420=C:\Windows\system32\IYUV_32.DLL
### Koder-dekoder Intel Indeo(R) Video YUV Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM vidc.yvu9=C:\Windows\system32\TSBYUV.DLL
### Toshiba Video Codec Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Codecs] :HKLM msacm.l3acm=C:\WINDOWS\SYSWOW64\L3CODECA.ACM
### MPEG Layer-3 Audio Codec for MSACM Fraunhofer Institut Integrierte Schaltungen IIS Koder-dekoder audio MPEG Layer-3 dla MSACM 1, 0, 0, 0
[Codecs] :HKLM vidc.cvid=iccvid.dll
### File is deleted or hidden by rootkit or could not be located.
[Codecs] :HKLM msacm.siren=sirenacm.dll
### File is deleted or hidden by rootkit or could not be located.
[Codecs] :HKLM wave1=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM midi1=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM mixer1=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM aux1=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM wave=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM midi=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM mixer=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Codecs] :HKLM aux=C:\Windows\system32\WDMAUD.DRV
### Sterownik systemu audio Winmm Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Auto Start Apps]
[Registry Run] :HKCU Sidebar=C:\PROGRAM FILES\WINDOWS SIDEBAR\SIDEBAR.EXE
### Gadżety pulpitu systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 1.0.7600.16385
[Registry Run] :HKLM SVPWUTIL=C:\PROGRAM FILES (X86)\TOSHIBA\UTILITIES\SVPWUTIL.EXE
### SVPWUTIL Application TOSHIBA SVPWUTIL Application 1, 0, 50, 1
[Registry Run] :HKLM HWSetup=C:\PROGRAM FILES\TOSHIBA\UTILITIES\HWSETUP.EXE
### HWSetup TOSHIBA Electronics, Inc. HWSetup 2, 0, 50, 4
[Registry Run] :HKLM KeNotify=C:\PROGRAM FILES (X86)\TOSHIBA\UTILITIES\KENOTIFY.EXE
### KeNotify MFC Application TOSHIBA CORPORATION KeNotify Application 2, 0, 50, 5
[Registry Run] :HKLM Adobe Reader Speed Launcher=C:\PROGRAM FILES (X86)\ADOBE\READER 9.0\READER\READER_SL.EXE
### Adobe Acrobat SpeedLauncher Adobe Systems Incorporated Adobe Acrobat 9.1.0.2009022700
[Registry Run] :HKLM TWebCamera=C:\PROGRAM FILES (X86)\TOSHIBA\TOSHIBA WEB CAMERA APPLICATION\TWEBCAMERA.EXE
### TOSHIBA CORPORATION. TOSHIBA Web Camera Application 1, 1, 1, 4
[Registry Run] :HKLM ToshibaServiceStation=C:\PROGRAM FILES (X86)\TOSHIBA\TOSHIBA SERVICE STATION\TOSHIBASERVICESTATION.EXE
### TOSHIBA Service Station TOSHIBA Corporation TOSHIBA Service Station 2.1.0.13
[Registry Run] :HKLM GrooveMonitor=C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVEMONITOR.EXE
### GrooveMonitor Utility Microsoft Corporation GrooveMonitor Utility 4.2.2.2803
[Registry Run] :HKLM SunJavaUpdateSched=C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE
### Java(TM) Update Scheduler Sun Microsystems, Inc. Java(TM) Platform SE Auto Updater 2 0 2.0.5.1
[Registry Run] :HKLM avast=C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTUI.EXE
### avast! Antivirus AVAST Software avast! Antivirus 6.0.0.0
[Registry RunOnceEx] :HKLM @UnHackMe=D:\UnHackMe\UnHackMe.exe /p Partizan
### 1=D:\UnHackMe\UnHackMe.exe /p Partizan
[Win.ini] load=""
[Win.ini] run=""
[Common Startup Folder] Adobe Gamma Loader.lnk=C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\CALIBRATION\ADOBE GAMMA LOADER.EXE
### Adobe Gamma Loader Adobe Systems, Inc. Adobe Systems, Inc. Adobe Gamma Loader 1, 0, 0, 1
[Scheduled Tasks] GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA=C:\USERS\MAX-BUD\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
### Google Installer Google Inc. Google Update 1.2.183.21
[Scheduled Tasks] GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core=C:\USERS\MAX-BUD\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
### Google Installer Google Inc. Google Update 1.2.183.21
[In memory]
[Running Processes] D:\UNHACKME\HACKMON.EXE
### Detects Rootkits in background Greatis Software UnHackMe 5.9
[Running Processes] C:\PROGRAM FILES (X86)\TOSHIBA\UTILITIES\KENOTIFY.EXE
### KeNotify MFC Application TOSHIBA CORPORATION KeNotify Application 2, 0, 50, 5
[Running Processes] C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE
### Java(TM) Update Scheduler Sun Microsystems, Inc. Java(TM) Platform SE Auto Updater 2 0 2.0.5.1
[Running Processes] C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTUI.EXE
### avast! Antivirus AVAST Software avast! Antivirus 6.0.0.0
[Running Processes] D:\UNHACKME\UNHACKME.EXE
### Detects and removes rootkits Greatis Software UnHackMe 5.99
[Running Processes] D:\UNHACKME\REANIMATOR.EXE
### RegRun Start Control Greatis Software RegRun Security Suite 6.99 release
[Loaded DLLs] C:\Windows\system32\dhcpcsvc6.DLL
### Klient DHCPv6 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\dhcpcsvc.DLL
### Usługa klienta DHCP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\credssp.dll
### Credential Delegation Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\webio.dll
### Interfejs API protokołów transferu w sieci Web Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\WINHTTP.dll
### Usługi Windows HTTP Services Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\sxproxy.dll
### Biblioteka serwera proxy ochrony systemu Microsoft® Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\VssTrace.DLL
### Biblioteka śledzenia Usługi kopiowania woluminów w tle firmy Microsoft® Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\ATL.DLL
### ATL Module for Windows XP (Unicode) Microsoft Corporation Microsoft (R) Visual C++ 6.05.2284
[Loaded DLLs] C:\Windows\system32\VSSAPI.DLL
### Microsoft® Volume Shadow Copy Requestor/Writer Services API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\SPP.dll
### Biblioteka współużytkowanych punktów ochrony systemu Microsoft® Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\srclient.dll
### Microsoft® Windows System Restore Client Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\System32\mstask.dll
### DLL interfejsu Harmonogramu zadań Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\LINKINFO.dll
### Windows Volume Tracking Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\Cabinet.dll
### Microsoft® Cabinet File API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\SensApi.dll
### SENS Connectivity API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\cryptnet.dll
### Crypto Network Related API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\GPAPI.dll
### Interfejs API klienta zasad grupy Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\ncrypt.dll
### Biblioteka kryptograficzna systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\imagehlp.dll
### Windows NT Image Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\SysWOW64\bcryptprimitives.dll
### Windows Cryptographic Primitives Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\bcrypt.dll
### Windows Cryptographic Primitives Library (Wow64) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\rsaenh.dll
### Microsoft Enhanced Cryptographic Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\CRYPTSP.dll
### Cryptographic Service Provider API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\RICHED20.dll
### Rich Text Edit Control, v3.1 Microsoft Corporation Microsoft RichEdit Control, version 3.1 3.1
[Loaded DLLs] C:\Windows\system32\RICHED32.DLL
### Wrapper Dll for Richedit 1.0 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\WINSPOOL.DRV
### Windows Spooler Driver Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\wintrust.dll
### Microsoft Trust Verification APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\olepro32.dll
[Loaded DLLs] C:\Windows\system32\shfolder.dll
### Shell Folder Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\rasadhlp.dll
### Remote Access AutoDial Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\System32\fwpuclnt.dll
### Interfejs API trybu użytkownika funkcji FWP/IPSec Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\WINNSI.DLL
### Network Store Information RPC interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\IPHLPAPI.DLL
### IP Helper API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\System32\winrnr.dll
### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\System32\mswsock.dll
### Microsoft Windows Sockets 2.0 Dostawca usługi Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\wshbth.dll
### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\pnrpnsp.dll
### Dostawca obszaru nazw PNRP Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\CommonRes.dll
### Common UI resources AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\napinsp.dll
### Dostawca podkładek nazewnictwa poczty e-mail Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\1045\UILangRes.dll
### UILangRes AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\NLAapi.dll
### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\RpcRtRemote.dll
### Remote RPC Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\AavmRpch.dll
### avast! AAVM Remote Procedure Call Library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\Aavm4h.dll
### avast! Asynchronous Virus Monitor (AAVM) AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\ashTaskEx.dll
### avast! TaskEx library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswData.dll
### avast! UI Layer library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\cscapi.dll
### Offline Files Win32 API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\wkscli.dll
### Workstation Service Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\1045\Base.dll
### avast! Basic Polish Module, translated by Pawel Wawrzyszko AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\dbghelp.dll
### Windows Image Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\OLEACC.dll
### Active Accessibility Core Component Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\WINMM.dll
### MCI API DLL Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\MSIMG32.dll
### GDIEXT Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
### MFCDLL Shared Library - Retail Version Microsoft Corporation Microsoft® Visual Studio® 2008 9.00.30729.6161
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswProperty.dll
### avast! Property Storage library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswSqLt.dll
### avast! SQLite library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswLog.dll
### avast! Log library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\DNSAPI.dll
### Biblioteka DLL interfejsu API klienta usługi DNS Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswAux.dll
### avast! Auxiliary Library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\ashTask.dll
### Task Handling Module AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\USERENV.dll
### Userenv Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\PSAPI.DLL
### Process Status Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswCmnBS.dll
### Common functions AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll
### Microsoft® C++ Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2008 9.00.30729.6161
[Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2008 9.00.30729.6161
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswCmnIS.dll
### Antivirus independent functions AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswCmnOS.dll
### Antivirus HW dependent library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswEngLdr.dll
### Antivirus engine loader AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\VERSION.dll
### Version Checking and File Installation Libraries Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\NSI.dll
### NSI User-mode interface DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\WS2_32.dll
### Biblioteka DLL 32-bitowej wersji usługi Windows Socket 2.0 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\WSOCK32.dll
### Windows Socket 32-Bit DLL Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\ashBase.dll
### Basic Functionality Module AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\aswUtil.dll
### avast! Utility library AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\system32\odbcint.dll
### ODBC Resources Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\ODBC32.dll
### ODBC Driver Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\system32\MFC42.DLL
### Udostępniona biblioteka MFCDLL - wersja handlowa Microsoft Corporation Microsoft (R) Visual C++ 6.06.400
[Loaded DLLs] C:\Windows\system32\MPR.dll
### Multiple Provider Router DLL Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\DEVRTL.dll
### Device Management Run Time Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17621
[Loaded DLLs] C:\Windows\system32\apphelp.dll
### Biblioteka klienta zgodności aplikacji Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Loaded DLLs] C:\Windows\syswow64\DEVOBJ.dll
### Device Information Set DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17621
[Loaded DLLs] C:\Windows\syswow64\CFGMGR32.dll
### Configuration Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17621
[Loaded DLLs] C:\Windows\syswow64\SETUPAPI.dll
### Interfejs API Instalatora systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\MSASN1.dll
### ASN.1 Runtime APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\syswow64\CRYPT32.dll
### Crypto API32 Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\iertutil.dll
### Run time utility for Internet Explorer Microsoft Corporation Windows® Internet Explorer 8.00.7601.17608
[Loaded DLLs] C:\Windows\syswow64\WININET.dll
### Rozszerzenia internetowe Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Loaded DLLs] C:\Windows\SysWOW64\urlmon.dll
### Rozszerzenia OLE32 dla Win32 Microsoft Corporation Windows® Internet Explorer 8.00.7600.16385
[Loaded DLLs] C:\Windows\system32\profapi.dll
### User Profile Basic API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\WLDAP32.dll
### Win32 LDAP API DLL Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\ntmarta.dll
### Windows NT - dostawca MARTA Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\CLBCatQ.DLL
### COM+ Configuration Catalog Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\PROPSYS.dll
### System właściwości firmy Microsoft Microsoft Corporation Wyszukiwanie Windows® 7.00.7600.16385
[Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.DLL
### Biblioteka formantów czynności użytkownika Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\dwmapi.dll
### Interfejs API menedżera okien Microsoft Desktop Window Manager Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\uxtheme.dll
### Biblioteka Microsoft UxTheme Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\MSCTF.dll
### Biblioteka DLL serwera MSCTF Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\system32\IMM32.DLL
### Multi-User Windows IMM32 API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\syswow64\OLEAUT32.DLL
### Microsoft Corporation 6.1.7601.17567
[Loaded DLLs] C:\Windows\syswow64\OLE32.DLL
### Microsoft OLE for Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\SHELL32.dll
### Wspólna biblioteka DLL Powłoki systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Loaded DLLs] C:\Windows\syswow64\SHLWAPI.dll
### Biblioteka dodatkowych narzędzi powłoki Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\COMDLG32.DLL
### Plik DLL wspólnych okien dialogowych Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\USP10.dll
### Uniscribe Unicode script processor Microsoft Corporation Microsoft(R) Uniscribe Unicode script processor 1.0626.7601.17514
[Loaded DLLs] C:\Windows\syswow64\LPK.dll
### Language Pack Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\USER32.dll
### Współużytkowana biblioteka DLL klienta Windows USER API Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7601.17514
[Loaded DLLs] C:\Windows\syswow64\GDI32.dll
### GDI Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\COMCTL32.DLL
### Biblioteka standardowych formantów Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\CRYPTBASE.dll
### Base cryptographic API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\SspiCli.dll
### Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7601.17514
[Loaded DLLs] C:\Windows\syswow64\RPCRT4.dll
### Czas wykonania zdalnego wywoływania procedury Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\SysWOW64\sechost.dll
### Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\msvcrt.dll
### Windows NT CRT DLL Microsoft Corporation Microsoft® Windows® Operating System 7.0.7600.16385
[Loaded DLLs] C:\Windows\syswow64\ADVAPI32.DLL
### Advanced Windows 32 Base API Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Program Files\AVAST Software\Avast\snxhk.dll
### avast! snxhk AVAST Software avast! Antivirus 6.0.0.0
[Loaded DLLs] C:\Windows\syswow64\KERNELBASE.dll
### Biblioteka DLL klienta Windows NT BASE API Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\syswow64\kernel32.dll
### Biblioteka DLL klienta Windows NT BASE API Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Loaded DLLs] C:\Windows\SysWOW64\ntdll.dll
### Biblioteka NT Layer DLL Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Appinfo
### Internal Name: Appinfo. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Umożliwia uruchamianie aplikacji interaktywnych z dodatkowymi uprawnieniami administracyjnymi. Jeśli ta usługa zostanie zatrzymana, użytkownicy nie będą mogli uruchamiać aplikacji z dodatkowymi uprawnieniami administracyjnymi, których mogą wymagać do wykonywania żądanych zadań użytkownika. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] AudioEndpointBuilder
### Internal Name: AudioEndpointBuilder. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Zarządza urządzeniami audio dla usługi Audio systemu Windows. Jeśli ta usługa zostanie zatrzymana, urządzenia i efekty audio nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] AudioSrv
### Internal Name: AudioSrv. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Zarządza audio w programach dla systemu Windows. Jeśli ta usługa zostanie zatrzymana, urządzenia i efekty audio nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] avast! Antivirus
### Internal Name: avast! Antivirus. Status: service is running. Actual File: "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" * Instaluje i zarządza usługami antywirusowymi programu avast! na tym komputerze, co obejmuje rezydentny skaner, kwarantannę oraz harmonogram zadań. avast! Service AVAST Software avast! Antivirus 6.0.0.0
[Running Services] BFE
### Internal Name: BFE. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Podstawowy aparat filtrowania (BFE) jest usługą, która zarządza zasadami zapory i zabezpieczeniami protokołu internetowego (IPsec) oraz implementuje filtrowanie w trybie użytkownika. Zatrzymanie lub wyłączenie usługi BFE znacząco osłabi zabezpieczenia systemu. Doprowadzi także do nieprzewidywalnego zachowania aplikacji zarządzana IPsec i zapory. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Browser
### Internal Name: Browser. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Utrzymuje aktualną listę komputerów w sieci i dostarcza ją do komputerów wyznaczonych jako przeglądarki. Jeśli ta usługa zostanie zatrzymana, lista nie będzie aktualizowana ani zachowywana. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] cfWiMAXService
### Internal Name: cfWiMAXService. Status: service is running. Actual File: "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe" * This is WiMAX Control Service of ConfigFree. Please do not stop this servce when you are using ConfigFree with Intel WiMAX device. ConfigFree Service Process TOSHIBA CORPORATION ConfigFree(TM) 8, 0, 0, 12
[Running Services] ConfigFree Gadget Service
### Internal Name: ConfigFree Gadget Service. Status: service is running. Actual File: "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe" * It's called by ConfigFree Gadget (x64) ConfigFree Gadget Process Service TOSHIBA CORPORATION ConfigFree 7, 2, 0, 0
[Running Services] ConfigFree Service
### Internal Name: ConfigFree Service. Status: service is running. Actual File: "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe" * You can't stop this service, if you want to keep ConfigFree functionality fine. ConfigFree Service Process TOSHIBA CORPORATION ConfigFree(TM) 7, 3, 0, 0
[Running Services] CryptSvc
### Internal Name: CryptSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Zapewnia cztery usługi zarządzania: usługę bazy danych wykazu, która potwierdza podpisy plików systemu Windows i zezwala na instalowanie nowych programów; usługę chronionego magazynu głównego, która dodaje i usuwa certyfikaty zaufanego głównego urzędu certyfikacji z tego komputera; usługę automatycznego aktualizowania certyfikatów głównych, która pobiera certyfikaty główne z witryny Windows Update i umożliwia scenariusze, takie jak SSL, oraz usługę kluczy, która pomaga zarejestrować ten komputer dla certyfikatów. Jeśli ta usługa zostanie zatrzymana, te usługi zarządzania nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] DcomLaunch
### Internal Name: CryptSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Zapewnia cztery usługi zarządzania: usługę bazy danych wykazu, która potwierdza podpisy plików systemu Windows i zezwala na instalowanie nowych programów; usługę chronionego magazynu głównego, która dodaje i usuwa certyfikaty zaufanego głównego urzędu certyfikacji z tego komputera; usługę automatycznego aktualizowania certyfikatów głównych, która pobiera certyfikaty główne z witryny Windows Update i umożliwia scenariusze, takie jak SSL, oraz usługę kluczy, która pomaga zarejestrować ten komputer dla certyfikatów. Jeśli ta usługa zostanie zatrzymana, te usługi zarządzania nie będą działać poprawnie. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Dhcp
### Internal Name: Dhcp. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Rejestruje i aktualizuje adresy IP i rekordy DNS dla tego komputera. Jeśli ta usługa zostanie zatrzymana, ten komputer nie będzie odbierał dynamicznych adresów IP i aktualizacji DNS. Jeśli ta usługa zostanie wyłączona, uruchomienie usług jawnie od niej zależnych nie będzie możliwe. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Dnscache
### Internal Name: Dnscache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Usługa Klient DNS (dnscache) buforuje nazwy systemu DNS (Domain Name System) i rejestruje pełną nazwę komputera dla tego komputera. Jeśli usługa zostanie zatrzymana, nazwy DNS będą nadal rozpoznawane. Jednak wyniki kwerend nazw DNS nie będą buforowane i nazwa komputera nie będzie rejestrowana. Jeśli usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] DPS
### Internal Name: Dnscache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Usługa Klient DNS (dnscache) buforuje nazwy systemu DNS (Domain Name System) i rejestruje pełną nazwę komputera dla tego komputera. Jeśli usługa zostanie zatrzymana, nazwy DNS będą nadal rozpoznawane. Jednak wyniki kwerend nazw DNS nie będą buforowane i nazwa komputera nie będzie rejestrowana. Jeśli usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] EapHost
### Internal Name: EapHost. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Usługa Protokół uwierzytelniania rozszerzonego (EAP) zapewnia uwierzytelnianie sieci w sieciach przewodowych i bezprzewodowych 802.1x, sieciach VPN i funkcji ochrony dostępu do sieci (NAP). Protokół EAP zapewnia także interfejsy programowania aplikacji (API), które są używane przez klientów dostępu do sieci, w tym klientów dostępu do sieci bezprzewodowych i VPN, podczas procesu uwierzytelniania. Jeśli wyłączysz tę usługę, ten komputer nie będzie mógł uzyskać dostępu do sieci, które wymagają uwierzytelniania EAP. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] eventlog
### Internal Name: eventlog. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Ta usługa zarządza zdarzeniami i dziennikami zdarzeń. Obsługuje ona rejestrowanie zdarzeń, zapytania dotyczące zdarzeń, subskrybowanie zdarzeń, archiwizowanie dzienników zdarzeń i zarządzanie metadanymi zdarzeń. Umożliwia wyświetlanie zdarzeń w formacie XML i zwykłego tekstu. Zatrzymanie tej usługi może naruszyć zabezpieczenia systemu i zmniejszyć jego niezawodność. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] EventSystem
### Internal Name: EventSystem. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Obsługuje usługę powiadamiania o zdarzeniu systemowym (SENS, System Event Notification Service), która zapewnia automatyczną dystrybucję zdarzeń do subskrybujących składników modelu COM (Component Object Model). Jeżeli usługa zostanie zatrzymana, usługa SENS zostanie zamknięta i nie będzie mogła dostarczać informacji o logowaniu i wylogowaniu. Jeżeli usługa ta zostanie wyłączona, wszystkie usługi, które jawnie od niej zależą, nie będą mogły zostać uruchomione. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] fdPHost
### Internal Name: fdPHost. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Usługa FDPHOST udostępnia dostawców odnajdowania sieci dla odnajdowania funkcji. Ci dostawcy odnajdowania funkcji dostarczają usługi odnajdowania sieci na potrzeby protokołów Simple Services Discovery Protocol (SSDP) i Web Services – Discovery (WS-D). Zatrzymanie lub wyłączenie usługi FDPHOST wyłączy odnajdowanie sieci dla tych protokołów podczas korzystania z odnajdowania funkcji. Gdy ta usługa jest niedostępna, usługi sieciowe używające odnajdowania funkcji i polegające na tych protokołach odnajdowania nie będą mogły odnaleźć urządzeń i zasobów sieciowych. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] FDResPub
### Internal Name: FDResPub. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Publikuje ten komputer i dołączone do niego zasoby, dzięki czemu można je odnajdować w sieci. Jeśli ta usługa zostanie zatrzymana, zasoby sieciowe nie będą już publikowane i inne komputery w sieci nie będą mogły ich odnaleźć. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] FontCache
### Internal Name: FontCache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Poprawia wydajność aplikacji dzięki buforowaniu danych często używanych czcionek. Jeśli ta usługa jeszcze nie działa, zostanie uruchomiona przez aplikacje. Usługę można wyłączyć, ale zmniejszy to wydajność aplikacji. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] gpsvc
### Internal Name: FontCache. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Poprawia wydajność aplikacji dzięki buforowaniu danych często używanych czcionek. Jeśli ta usługa jeszcze nie działa, zostanie uruchomiona przez aplikacje. Usługę można wyłączyć, ale zmniejszy to wydajność aplikacji. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] HomeGroupListener
### Internal Name: HomeGroupListener. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Kojarzy zmiany lokalnego komputera z konfiguracją i konserwacją komputera, który dołączył do grupy domowej. Jeżeli ta usługa zostanie zatrzymana lub wyłączona, komputer nie będzie działał prawidłowo w grupie domowej, a grupa domowa może funkcjonować nieprawidłowo. Zalecane jest pozostawienie tej usługi włączonej. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] HomeGroupProvider
### Internal Name: HomeGroupProvider. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Wykonuje zadania sieciowe skojarzone z konfiguracją i konserwacją grup domowych. Jeżeli ta usługa zostanie zatrzymana lub wyłączona, komputer nie będzie mógł wykryć innych grup domowych, a grupa domowa może nie działać poprawnie. Zalecane jest zachowanie tej usługi włączonej. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] IKEEXT
### Internal Name: IKEEXT. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Usługa IKEEXT obejmuje moduły obsługi wymiany kluczy IKE (Internet Keying Exchange) i AuthIP (Authenticated Internet Protocol). Te moduły obsługi kluczy służą do uwierzytelniania i wymiany kluczy w protokole IPsec (Internet Protocol security). Zatrzymanie lub wyłączenie usługi IKEEXT spowoduje wyłączenie wymiany kluczy IKE i AuthIP z komputerami równorzędnymi. Typowa konfiguracja protokołu IPsec przewiduje korzystanie z modułu IKE lub AuthIP i dlatego zatrzymanie lub wyłączenie usługi IKEEXT może spowodować niepowodzenie protokołu IPsec i naruszenie zabezpieczeń systemu. Zdecydowanie zaleca się uruchomienie usługi IKEEXT. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] iphlpsvc
### Internal Name: iphlpsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetSvcs * Zapewnia łączność tunelową przy użyciu technologii przejściowych IPv6 (6to4, ISATAP, Port Proxy i Teredo) oraz protokołu IP-HTTPS. Jeśli usługa ta jest zatrzymana, komputer nie będzie korzystać z rozszerzonej łączności oferowanej przez te technologie. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] KeyIso
### Internal Name: KeyIso. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * Usługa izolacji klucza CNG jest obsługiwana w procesie LSA. Ta usługa zapewnia izolację procesu klucza dla kluczy prywatnych i skojarzonych operacji kryptograficznych zgodnie z wymaganiami kryteriów wspólnych. Usługa przechowuje długotrwałe klucze i używa ich w bezpiecznym procesie zgodnym z wymaganiami kryteriów wspólnych. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Running Services] LanmanServer
### Internal Name: LanmanServer. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Oferuje udostępnianie w sieci plików, drukarek i potoków dla tego komputera. Jeśli ta usługa zostanie zatrzymana, te funkcje staną się niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] LanmanWorkstation
### Internal Name: LanmanWorkstation. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Tworzy klienckie połączenia sieciowe z serwerami zdalnymi za pomocą protokołu SMB i zarządza nimi. Jeśli ta usługa zostanie zatrzymana, te połączenia będą niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] lmhosts
### Internal Name: lmhosts. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Zapewnia obsługę systemu NetBIOS w usłudze TCP/IP (NetBT) i rozpoznawanie nazw systemu NetBIOS dla klientów w sieci, umożliwiając użytkownikom udostępnianie plików, drukarek i logowanie w sieci. Jeśli ta usługa zostanie zatrzymana, funkcje te mogą być niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] MMCSS
### Internal Name: MMCSS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Umożliwia nadawanie względnych priorytetów jednostkom pracy na podstawie systemowych priorytetów zadań. Usługa ta przeznaczona jest głównie dla aplikacji multimedialnych. Jeśli zostanie ona zatrzymana, poszczególne zadania powrócą do domyślnych priorytetów. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] MpsSvc
### Internal Name: MpsSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Zapora systemu Windows pomaga chronić ten komputer, uniemożliwiając nieautoryzowanym użytkownikom uzyskiwanie dostępu do tego komputera za pośrednictwem Internetu lub sieci. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Netman
### Internal Name: Netman. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Zarządza obiektami w folderze Połączenia sieciowe i telefoniczne, w którym można wyświetlać zarówno połączenia sieci lokalnej (LAN), jak i połączenia zdalne. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] netprofm
### Internal Name: netprofm. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalService * Identyfikuje sieci, do których komputer jest podłączony, zbiera i przechowuje właściwości tych sieci oraz powiadamia aplikacje o zmianie tych właściwości. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] NlaSvc
### Internal Name: NlaSvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Zbiera i magazynuje informacje o konfiguracji sieci i powiadamia pogramy o zmianach tych informacji. Jeśli ta usługa zostanie zatrzymana, informacje o konfiguracji mogą być niedostępne. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] nsi
### Internal Name: nsi. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Ta usługa dostarcza powiadomienia sieciowe (np. o dodaniu/usunięciu interfejsu itp.) dla klientów działających w trybie użytkownika. Zatrzymanie tej usługi może spowodować utratę łączności sieciowej. Jeśli ta usługa zostanie wyłączona, wszystkie inne usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] p2pimsvc
### Internal Name: p2pimsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServicePeerNet * Zapewnia usługi tożsamości protokołu rozpoznawania nazw równorzędnych (PNRP) i usług grupowania w sieci równorzędnej. Jeśli ta opcja jest wyłączona, protokół rozpoznawania nazw równorzędnych (PNRP) i usługi grupowania równorzędnego mogą nie działać, a niektóre aplikacje, takie jak Grupa domowa i Pomoc zdalna mogą działać nieprawidłowo. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] p2psvc
### Internal Name: p2psvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServicePeerNet * Pozwala na wielostronną komunikację przy użyciu grupowania w sieci równorzędnej. Po wyłączeniu tej opcji niektóre aplikacje, takie jak grupa domowa, mogą przestać działać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] PcaSvc
### Internal Name: PcaSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Ta usługa zapewnia obsługę Asystenta zgodności programów. Asystent zgodności programów monitoruje programy instalowane i uruchamiane przez użytkownika oraz wykrywa znane problemy ze zgodnością. Jeśli ta usługa zostanie zatrzymana, Asystent zgodności programów nie będzie działał prawidłowo. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] PlugPlay
### Internal Name: PlugPlay. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Umożliwia komputerowi rozpoznawanie i adaptowanie zmian sprzętu bez udziału lub przy nieznacznym udziale użytkownika. Zatrzymanie lub wyłączenie tej usługi spowoduje niestabilność systemu. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] PNRPsvc
### Internal Name: PNRPsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServicePeerNet * Umożliwia bezserwerowe rozpoznawanie nazw węzłów równorzędnych przez Internet przy użyciu protokołu rozpoznawania nazw równorzędnych (PNRP). Jeśli ta opcja jest wyłączona, niektóre aplikacje służące do współpracy w sieci równorzędnej, na przykład Pomoc zdalna, mogą nie działać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Power
### Internal Name: Power. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Zarządza zasadami zasilania i dostarczaniem powiadomień zasad zasilania. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] ProfSvc
### Internal Name: ProfSvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Ta usługa odpowiada za ładowanie i zwalnianie profilów użytkowników. Jeśli ta usługa będzie zatrzymana lub wyłączona, użytkownicy nie będą mogli pomyślnie logować się i wylogowywać, aplikacje będą mogły mieć problemy z uzyskiwaniem danych użytkowników, a składniki zarejestrowane w celu odbierania powiadomień o zdarzeniach profilów nie będą ich odbierać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] RapiMgr
### Internal Name: RapiMgr. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Umożliwia zdalne wykonywanie poleceń i zdalne sterowanie urządzeniami z systemem Windows Mobile. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] RpcEptMapper
### Internal Name: RapiMgr. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Umożliwia zdalne wykonywanie poleceń i zdalne sterowanie urządzeniami z systemem Windows Mobile. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] RpcSs
### Internal Name: RapiMgr. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Umożliwia zdalne wykonywanie poleceń i zdalne sterowanie urządzeniami z systemem Windows Mobile. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] SamSs
### Internal Name: SamSs. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * Uruchomienie tej usługi informuje inne usługi, że Menedżer kont zabezpieczeń jest gotowy do akceptowania żądań. Wyłączenie tej usługi spowoduje, że inne usługi w systemie nie będą powiadamiane o gotowości Menedżera kont zabezpieczeń, przez co te usługi mogą być uruchamiane nieprawidłowo. Tej usługi nie należy wyłączać. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Running Services] Schedule
### Internal Name: SamSs. Status: service is running. Actual File: C:\Windows\system32\lsass.exe * Uruchomienie tej usługi informuje inne usługi, że Menedżer kont zabezpieczeń jest gotowy do akceptowania żądań. Wyłączenie tej usługi spowoduje, że inne usługi w systemie nie będą powiadamiane o gotowości Menedżera kont zabezpieczeń, przez co te usługi mogą być uruchamiane nieprawidłowo. Tej usługi nie należy wyłączać. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385
[Running Services] SDRSVC
### Internal Name: SDRSVC. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k SDRSVC * Zapewnia możliwości kopii zapasowej i przywracania systemu Windows. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] SENS
### Internal Name: SENS. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Monitoruje zdarzenia systemowe i powiadamia o nich subskrybentów systemu zdarzeń COM+. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] ShellHWDetection
### Internal Name: ShellHWDetection. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Zapewnia powiadomienia o zdarzeniach sprzętowych Autoodtwarzania. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Spooler
### Internal Name: Spooler. Status: service is running. Actual File: C:\Windows\System32\spoolsv.exe * Ładuje pliki do pamięci w celu późniejszego wydrukowania. Spooler SubSystem App Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] SSDPSRV
### Internal Name: SSDPSRV. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Wykrywa urządzenia i usługi sieciowe, które korzystają z protokołu odnajdywania SSDP, na przykład urządzenia UPnP. Zgłasza także urządzenia i usługi SSDP działające na komputerze lokalnym. Po zatrzymaniu tej usługi urządzenia działające na podstawie protokołu SSDP nie będą odnajdywane. Gdy ta usługa będzie wyłączona, nie będzie można uruchomić żadnych usług bezpośrednio od niej zależnych. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] stisvc
### Internal Name: stisvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k imgsvc * Zapewnia usługi pozyskiwania obrazów dla skanerów i aparatów fotograficznych. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] SysMain
### Internal Name: SysMain. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Utrzymuje wydajność systemu i poprawia ją w dłuższym czasie. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] TemproMonitoringService
### Internal Name: TemproMonitoringService. Status: service is running. Actual File: "C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe" * Toshiba Notebook Performance Tuning Service Toshiba TEMPRO Toshiba Europe GmbH Toshiba TEMPRO 3.0.5.0
[Running Services] Themes
### Internal Name: Themes. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Zapewnia zarządzanie kompozycjami obsługiwanymi przez użytkownika. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] TMachInfo
### Internal Name: TMachInfo. Status: service is running. Actual File: C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe * TOSHIBA Machine Information Service TSS TMachInfo Service TOSHIBA Corporation TOSHIBA Service Station 2.1.0.4
[Running Services] TODDSrv
### Internal Name: TODDSrv. Status: service is running. Actual File: C:\Windows\system32\TODDSrv.exe * TDCSrv Application TOSHIBA Corporation TDCSrv Application 1, 0, 0, 7
[Running Services] TosCoSrv
### Internal Name: TosCoSrv. Status: service is running. Actual File: "C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe" * Program Toshiba Power Saver zarządza ustawieniami oszczędzania energii obsługiwanymi przez firmę Toshiba. Te ustawienia nie będą działać, jeżeli usługa została zatrzymana. TOSHIBA Power Saver TOSHIBA Corporation TOSHIBA Power Saver V8.07.01
[Running Services] TOSHIBA eco Utility Service
### Internal Name: TOSHIBA eco Utility Service. Status: service is running. Actual File: "C:\Program Files\TOSHIBA\TECO\TecoService.exe" * TOSHIBA eco Utility Service TOSHIBA eco Utility Service TOSHIBA Corporation TOSHIBA eco Utility V1.1.5.0
[Running Services] TOSHIBA HDD SSD Alert Service
### Internal Name: TOSHIBA HDD SSD Alert Service. Status: service is running. Actual File: "C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe" * TOSHIBA HDD SSD Alert TosSmartSrv.exe TOSHIBA Corporation TOSHIBA HDD SSD Alert 3, 0, 0, 3
[Running Services] TPCHSrv
### Internal Name: TPCHSrv. Status: service is running. Actual File: "C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe" * TOSHIBA PC Health Monitor TOSHIBA PC Health Monitor TOSHIBA Corporation TOSHIBA PC Health Monitor V1.4.0.0
[Running Services] TrkWks
### Internal Name: TrkWks. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Utrzymuje łącza między plikami systemu NTFS na komputerze lub między komputerami w sieci. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] upnphost
### Internal Name: upnphost. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Umożliwia obsługiwanie urządzeń UPnP na tym komputerze. Jeśli ta usługa zostanie zatrzymana, wszystkie obsługiwane urządzenia UPnP przestaną działać i nie będzie można dodać żadnych nowych obsługiwanych urządzeń. Jeśli ta usługa zostanie wyłączona, wszelkie usługi jawnie od niej zależne przestaną się uruchamiać. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] UxSms
### Internal Name: UxSms. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Zapewnia usługi uruchamiania i obsługi Menedżera okien pulpitu Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WcesComm
### Internal Name: WcesComm. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Zapewnia łączność dla urządzeń z systemem Windows Mobile 2003 Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WdiServiceHost
### Internal Name: WcesComm. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Zapewnia łączność dla urządzeń z systemem Windows Mobile 2003 Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WdiSystemHost
### Internal Name: WcesComm. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k WindowsMobile * Zapewnia łączność dla urządzeń z systemem Windows Mobile 2003 Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WinDefend
### Internal Name: WinDefend. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k secsvcs * Ochrona przed szpiegującym i niechcianym oprogramowaniem Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WinHttpAutoProxySvc
### Internal Name: WinHttpAutoProxySvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Usługi WinHTTP implementują stos HTTP klienta i udostępniają deweloperom interfejs Win32 API oraz składnik automatyzacji COM, które służą do wysyłania żądań i odbierania odpowiedzi HTTP. Ponadto usługi WinHTTP obsługują autowykrywanie konfiguracji serwera proxy dzięki implementacji protokołu autowykrywania serwera proxy w sieci Web (WPAD, Web Proxy Auto-Discovery). Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Winmgmt
### Internal Name: Winmgmt. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Dostarcza interfejs i model obiektowy w celu uzyskiwania dostępu do informacji zarządzania o systemie operacyjnym, urządzeniach, aplikacjach i usługach. Jeśli ta usługa zostanie zatrzymana, większość oprogramowania opartego na systemie Windows nie będzie działać właściwie. Jeśli ta usługa zostanie wyłączona, uruchomienie usług od niej zależnych nie powiedzie się. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] Wlansvc
### Internal Name: Wlansvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Usługa WLANSVC zapewnia logikę niezbędną do konfigurowania, odnajdowania, łączenia i rozłączania z bezprzewodową siecią lokalną (WLAN) zgodnie ze standardami IEEE 802.11. Zawiera także logikę umożliwiającą przekształcenie komputera w programowy punkt dostępu, dzięki któremu inne urządzenia lub komputery mogą połączyć się z komputerem bezprzewodowo za pośrednictwem karty WLAN obsługującej taką funkcję. Zatrzymanie lub wyłączenie usługi WLANSVC spowoduje, że wszystkie karty WLAN w komputerze będą niedostępne z poziomu sieciowego interfejsu użytkownika systemu Windows. Jeżeli komputer jest wyposażony w kartę WLAN, zdecydowanie zalecane jest pozostawienie usługi WLANSVC działającej. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WMPNetworkSvc
### Internal Name: WMPNetworkSvc. Status: service is running. Actual File: "C:\Program Files\Windows Media Player\wmpnetwk.exe" * Udostępnia biblioteki programu Windows Media Player innym odtwarzaczom i urządzeniom multimedialnym w sieci przy użyciu technologii Universal Plug and Play Usługa udostępniania w sieci programu Windows Media Player Microsoft Corporation System operacyjny Microsoft® Windows® 12.0.7600.16385
[Running Services] wscsvc
### Internal Name: wscsvc. Status: service is running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Usługa WSCSVC (Windows Security Center) monitoruje ustawienia kondycji zabezpieczeń komputera i raportuje ich stan. Ustawienia kondycji dotyczą zapory (włączona/wyłączona), oprogramowania antywirusowego (włączone/wyłączone/nieaktualne), oprogramowania antyszpiegowskiego (włączone/wyłączone/nieaktualne), usługi Windows Update (automatyczne/ręczne pobieranie i instalowanie aktualizacji), kontroli konta użytkownika (włączona/wyłączona) i ustawień internetowych (zalecane/niezalecane). Usługa udostępnia niezależnym dostawcom oprogramowania interfejsy API COM służące do rejestracji i zapisywania stanu ich produktów w usłudze Centrum zabezpieczeń. Interfejs użytkownika Centrum akcji używa tej usługi do przekazywania alertów usługi Systray i wyświetlania w postaci graficznej stanów kondycji zabezpieczeń w panelu sterowania Centrum akcji. Ochrona dostępu do sieci używa tej usługi do wysyłania raportów o stanach kondycji zabezpieczeń klientów do serwera zasad sieciowych ochrony dostępu do sieci dla potrzeb podejmowania decyzji dotyczących kwarantanny w sieci. Usługa ta ma również publiczny interfejs API, który umożliwia zewnętrznym użytkownikom programowe pobieranie skumulowanego stanu kondycji zabezpieczeń systemu. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] WSearch
### Internal Name: WSearch. Status: service is running. Actual File: C:\Windows\system32\SearchIndexer.exe /Embedding * Zapewnia indeksowanie zawartości, buforowanie właściwości i wyniki wyszukiwania plików, wiadomości e-mail i innej zawartości. Indeksator programu Microsoft Windows Search Microsoft Corporation Wyszukiwanie Windows® 7.00.7600.16385
[Running Services] wuauserv
### Internal Name: wuauserv. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Umożliwia wykrywanie, pobieranie i instalowanie aktualizacji systemu Windows i innych programów. Wyłączenie tej usługi spowoduje, że użytkownicy tego komputera nie będą mogli używać rozszerzenia Windows Update ani funkcji automatycznego aktualizowania, a programy nie będą mogły używać funkcji API Windows Update Agent (WUA). Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Running Services] wudfsvc
### Internal Name: wudfsvc. Status: service is running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Zarządza procesami hosta sterowników trybu użytkownika. Proces hosta dla usług systemu Windows Microsoft Corporation System operacyjny Microsoft® Windows® 6.1.7600.16385
[Uninstall]
[Applications] :HKLM AddressBook
### AddressBook
[Applications] :HKLM Adobe AIR=c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
### Adobe AIR
[Applications] :HKLM Adobe Flash Player 10 ActiveX=C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
### Adobe Flash Player ActiveX Adobe® Flash® Player ActiveX Installer Adobe Systems Incorporated Adobe® Flash® Player ActiveX 10.0.45.2
[Applications] :HKLM Adobe Flash Player 10 Plugin=C:\Windows\SysWOW64\Macromed\Flash\uninstall_plugin.exe
### Adobe Flash Player Plugin Adobe® Flash® Player Plugin Installer Adobe Systems Incorporated Adobe® Flash® Player Plugin 10.0.42.34
[Applications] :HKLM Adobe Photoshop 7.0 CE=C:\WINDOWS\ISUN0415.EXE -f"C:\Program Files (x86)\Adobe\Photoshop 7.0 CE\Uninst.isu" -c"C:\Program Files (x86)\Adobe\Photoshop 7.0 CE\Uninst.dll"
### Adobe Photoshop 7.0 CE InstallShield® unInstaller InstallShield Software Corporation InstallShield® unInstaller 5, 51
[Applications] :HKLM Adobe Shockwave Player 11.5="C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
### Adobe Shockwave Player
[Applications] :HKLM Ashampoo Burning Studio 2010="C:\Program Files (x86)\Ashampoo\Ashampoo Burning Studio 2010\unins000.exe"
### Ashampoo Burning Studio 2010_is1 Setup/Uninstall
[Applications] :HKLM avast! Free Antivirus=C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
### avast
[Applications] :HKLM Connection Manager
### Connection Manager
[Applications] :HKLM DirectDrawEx
### DirectDrawEx
[Applications] :HKLM Microsoft Office Enterprise 2007="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
### ENTERPRISE Microsoft Setup Bootstrapper Microsoft Corporation Microsoft Setup Bootstrapper 12.0.6425.1000
[Applications] :HKLM ESET Online Scanner v3=C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
### ESET Online Scanner OnlineScannerUninstaller OnlineScannerUninstaller 1, 0, 0, 6447
[Applications] :HKLM Toshiba Photo Service - powered by myphotobook=msiexec /qb /x {0823A2E3-69DD-A37A-7CD9-1CBEB037545C}
### eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1 Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Fontcore
### Fontcore
[Applications] :HKLM Microsoft Office Home and Student 2007="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
### HOMESTUDENTR Microsoft Setup Bootstrapper Microsoft Corporation Microsoft Setup Bootstrapper 12.0.6425.1000
[Applications] :HKLM IE40
### IE40
[Applications] :HKLM IE4Data
### IE4Data
[Applications] :HKLM IE5BAKEX
### IE5BAKEX
[Applications] :HKLM IEData
### IEData
[Applications] :HKLM InstallShield Uninstall Information
### InstallShield Uninstall Information
[Applications] :HKLM TOSHIBA Value Added Package=C:\Program Files\TOSHIBA\TVAP\Setup.exe
### InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} TOSHIBA Value Added Package setup launcher TOSHIBA Corporation TOSHIBA Value Added Package setup launcher 2, 0, 9, 64
[Applications] :HKLM InstallShield_{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}
### InstallShield_{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}
[Applications] :HKLM TOSHIBA Bulletin Board="C:\Program Files (x86)\InstallShield Installation Information\{1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}\setup.exe" -runfromtemp -l0x0415 -removeonly
### InstallShield_{1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}
[Applications] :HKLM TOSHIBA Hasło administratora=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} /l1045
### InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} InstallDriver Module InstallDriver Module 7.07
[Applications] :HKLM Sprzęt instalacyjny TOSHIBA=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{5279374D-87FE-4879-9385-F17278EBB9D3} /l1045
### InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3} InstallDriver Module InstallDriver Module 7.07
[Applications] :HKLM TOSHIBA Extended Tiles for Windows Mobility Center=C:\Program Files (x86)\InstallShield Installation Information\{617C36FD-0CBE-4600-84B2-441CEB12FADF}\setup.exe -runfromtemp -l0x0415
### InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF} Setup Launcher TOSHIBA Corporation TOSHIBA Extended Tiles for Windows Mobility Center 1.01.00
[Applications] :HKLM TOSHIBA Flash Cards Support Utility=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{620BBA5E-F848-4D56-8BDA-584E44584C5E}
### InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E} InstallDriver Module InstallDriver Module 7.07
[Applications] :HKLM TOSHIBA Recovery Media Creator Reminder=C:\Program Files (x86)\InstallShield Installation Information\{773970F1-5EBA-4474-ADEE-1EA3B0A59492}\setup.exe -runfromtemp -l0x0415
### InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492} Setup Launcher TOSHIBA TOSHIBA Recovery Media Creator Reminder 1.00.0019
[Applications] :HKLM TOSHIBA eco Utility=C:\Program Files (x86)\InstallShield Installation Information\{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}\setup.exe -runfromtemp -l0x0415
### InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} Setup Launcher TOSHIBA Corporation TOSHIBA eco Utility 1.1.10.64
[Applications] :HKLM TOSHIBA ReelTime="C:\Program Files (x86)\InstallShield Installation Information\{C2DDF845-7107-40E8-8D2A-8719F1799570}\setup.exe" -runfromtemp -l0x0415 -removeonly
### InstallShield_{C2DDF845-7107-40E8-8D2A-8719F1799570}
[Applications] :HKLM Program TOSHIBA HDD/SSD Alert=C:\Program Files (x86)\InstallShield Installation Information\{D4322448-B6AF-4316-B859-D8A0E84DCB38}\setup.exe -runfromtemp -l0x0415
### InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38} Setup Launcher TOSHIBA Corporation TOSHIBA HDD/SSD Alert 3.1.64.0
[Applications] :HKLM TRORMCLauncher=C:\Program Files (x86)\InstallShield Installation Information\{E65C7D8E-186D-484B-BEA8-DEF0331CE600}\setup.exe -runfromtemp -l0x0415
### InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600} Setup Launcher TOSHIBA TRORMCLauncher 1.0.0.7
[Applications] :HKLM TOSHIBA Face Recognition="C:\Program Files (x86)\InstallShield Installation Information\{F67FA545-D8E5-4209-86B1-AEE045D1003F}\setup.exe" -runfromtemp -l0x0415 -removeonly
### InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F} Setup Launcher TOSHIBA Corporation TOSHIBA Face 3.1.
[Applications] :HKLM Kadu 0.9.2=D:\Kadu\uninst.exe
### Kadu
[Applications] :HKLM K-Lite Codec Pack 6.2.0 (Basic)="C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
### KLiteCodecPack_is1 Setup/Uninstall
[Applications] :HKLM MobileOptionPack
### MobileOptionPack
[Applications] :HKLM Moje Gimnazjum 2011 Profil Humanistyczny="C:\Windows\Moje Gimnazjum 2011 Profil Humanistyczny\uninstall.exe" "/U:D:\\Uninstall\uninstall.xml"
### Moje Gimnazjum 2011 Profil Humanistyczny1.0 Setup Application Setup Factory 7.0 Runtime 7.0.6.1
[Applications] :HKLM NSS (remove only)=C:\Program Files (x86)\NSS\uninstall.exe
### NSS
[Applications] :HKLM Picasa 3="C:\Program Files (x86)\Google\Picasa3\Uninstall.exe"
### Picasa 3
[Applications] :HKLM PIT 2010 z Gazetą Wyborczą ver. 7.0.1.1="C:\Program Files (x86)\PIT z Gazetą Wyborczą\PIT2010\unins000.exe"
### PIT 2010 z Gazetą Wyborczą_is1 Setup/Uninstall
[Applications] :HKLM PITy 2009 dla Windows kompilacja:1.1.2.11="C:\Program Files (x86)\PITy\PITy2009NG\unins000.exe"
### PITy 2009_is1
[Applications] :HKLM PROHYBRID2R
### PROHYBRID2R
[Applications] :HKLM PROHYBRIDR
### PROHYBRIDR
[Applications] :HKLM Quake III Arena Point Release 1.32=C:\Windows\unvise32.exe d:\Quake\uninstal5.log
### Quake III Arena Point Release 1.32 Uninstall application file MindVision Software Installer VISE 3.1.1
[Applications] :HKLM SchedulingAgent
### SchedulingAgent
[Applications] :HKLM Shockwave
### Shockwave
[Applications] :HKLM SMALLBUSINESSR
### SMALLBUSINESSR
[Applications] :HKLM TC PowerPack 1.7=C:\Program Files (x86)\TC PowerPack\uninstall.exe
### TC PowerPack Total Commander PowerPack 1.7 Total Commander PowerPack 1.7
[Applications] :HKLM Total Commander (Remove or Repair)=c:\totalcmd\tcuninst.exe
### Totalcmd
[Applications] :HKLM UnHackMe 5.99 release="D:\UnHackMe\unins000.exe"
### UnHackMe_is1 Setup/Uninstall Inno Setup 0.0.0.0
[Applications] :HKLM WIC
### WIC
[Applications] :HKLM Podstawowe programy Windows Live=C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
### WinLiveSuite_Wave3 Windows Live Installer Microsoft Corporation Windows Live 14.0.8089.0726
[Applications] :HKLM Archiwizator WinRAR=C:\Program Files (x86)\WinRAR\uninstall.exe
### WinRAR archiver Rozszerzenie powłoki Alexander Roshal WinRAR
[Applications] :HKLM TOSHIBA Value Added Package
### {066CFFF8-12BF-4390-A673-75F95EFF188E}
[Applications] :HKLM Toshiba Photo Service - powered by myphotobook=MsiExec.exe /I{0823A2E3-69DD-A37A-7CD9-1CBEB037545C}
### {0823A2E3-69DD-A37A-7CD9-1CBEB037545C} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Realtek WLAN Driver=MsiExec.exe /X{0FB630AB-7BD8-40AE-B223-60397D57C3C9}
### {0FB630AB-7BD8-40AE-B223-60397D57C3C9} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Utility Common Driver
### {12688FD7-CB92-4A5B-BEE4-5C8E0574434F}
[Applications] :HKLM Toshiba Assist=C:\Program Files (x86)\InstallShield Installation Information\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}\setup.exe -runfromtemp -l0x0015 -removeonly
### {1B87C40B-A60B-4EF3-9A68-706CF4B69978} Setup.exe Macrovision Corporation InstallShield 12.0
[Applications] :HKLM {1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}
### {1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}
[Applications] :HKLM Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148=MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
### {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Narzędzie do przekazywania usługi Windows Live=MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
### {205C6BDD-7B73-42DE-8505-9A093F35A238} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Toshiba Online Product Information=C:\Program Files (x86)\InstallShield Installation Information\{2290A680-4083-410A-ADCC-7092C67FC052}\setup.exe -runfromtemp -l0x0015 -removeonly
### {2290A680-4083-410A-ADCC-7092C67FC052} Setup.exe Macrovision Corporation InstallShield 12.0
[Applications] :HKLM MSVCRT=MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
### {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Java(TM) 6 Update 26=MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
### {26A24AE4-039D-4CA4-87B4-2F83216014FF} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM {26A24AE4-039D-4CA4-87B4-2F83216025FB}
### {26A24AE4-039D-4CA4-87B4-2F83216025FB}
[Applications] :HKLM {26A24AE4-039D-4CA4-87B4-2F83216026FB}
### {26A24AE4-039D-4CA4-87B4-2F83216026FB}
[Applications] :HKLM PC Connectivity Solution=MsiExec.exe /I{29F563F4-8807-4496-8463-441EAA0E96AB}
### {29F563F4-8807-4496-8463-441EAA0E96AB} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Windows Live Sync=MsiExec.exe /X{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}
### {2E522ED6-01E2-4207-82D5-B3BFB31B8BD4} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Works=MsiExec.exe /I{306B39C9-3AB1-4161-8567-9C7E50B41AE3}
### {306B39C9-3AB1-4161-8567-9C7E50B41AE3} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Java(TM) 6 Update 5=MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
### {3248F0A8-6813-11D6-A77B-00B0D0160050} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Windows Live Communications Platform=MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
### {3B4E636E-9D65-4D67-BA61-189800823F52} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM HiJackThis=MsiExec.exe /X{45A66726-69BC-466B-A7A4-12FCBA4883D7}
### {45A66726-69BC-466B-A7A4-12FCBA4883D7} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Java Auto Updater
### {4A03706F-666A-4037-7777-5F2748764D10}
[Applications] :HKLM Asystent rejestracji usługi Windows Live=MsiExec.exe /I{51958BA7-21E4-4A8B-9098-CD8375BD17B2}
### {51958BA7-21E4-4A8B-9098-CD8375BD17B2} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM TOSHIBA Supervisor Password=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} /l1045
### {51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} InstallDriver Module InstallDriver Module 7.07
[Applications] :HKLM TOSHIBA Hardware Setup=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{5279374D-87FE-4879-9385-F17278EBB9D3} /l1045
### {5279374D-87FE-4879-9385-F17278EBB9D3} InstallDriver Module InstallDriver Module 7.07
[Applications] :HKLM Skype™ 5.3=MsiExec.exe /X{5335DADB-34BA-4AE8-A519-648D78498846}
### {5335DADB-34BA-4AE8-A519-648D78498846} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM TOSHIBA Web Camera Application=C:\Program Files (x86)\InstallShield Installation Information\{5E6F6CF3-BACC-4144-868C-E14622C658F3}\setup.exe -runfromtemp -l0x0015 -removeonly
### {5E6F6CF3-BACC-4144-868C-E14622C658F3} Setup.exe Macrovision Corporation InstallShield 12.0
[Applications] :HKLM TOSHIBA Flash Cards Support Utility=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{620BBA5E-F848-4D56-8BDA-584E44584C5E}
### {620BBA5E-F848-4D56-8BDA-584E44584C5E} InstallDriver Module InstallDriver Module 7.07
[Applications] :HKLM ABC z Reksiem=MsiExec.exe /I{65600762-F5A9-4835-8B98-3F972F524D8D}
### {65600762-F5A9-4835-8B98-3F972F524D8D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM TOSHIBA DVD PLAYER=C:\Program Files (x86)\InstallShield Installation Information\{6C5F3BDC-0A1B-4436-A696-5939629D5C31}\setup.exe -runfromtemp -l0x0015 -ADDREMOVE -removeonly
### {6C5F3BDC-0A1B-4436-A696-5939629D5C31} Setup.exe Macrovision Corporation InstallShield 12.0
[Applications] :HKLM MSVC80_x86_v2=MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
### {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Visual C++ 2005 Redistributable=MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
### {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM TOSHIBA Recovery Media Creator Reminder
### {773970F1-5EBA-4474-ADEE-1EA3B0A59492}
[Applications] :HKLM MSXML 4.0 SP2 (KB954430)=MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
### {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Realtek 8136 8168 8169 Ethernet Driver=C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
### {8833FFB6-5B0C-4764-81AA-06DFEED9A476} Setup.exe Acresso Software Inc. InstallShield 15.0
[Applications] :HKLM Microsoft Silverlight=MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
### {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Access MUI (Polish) 2007=MsiExec.exe /X{90120000-0015-0415-0000-0000000FF1CE}
### {90120000-0015-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0015-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Excel MUI (Polish) 2007=MsiExec.exe /X{90120000-0016-0415-0000-0000000FF1CE}
### {90120000-0016-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office PowerPoint MUI (Polish) 2007=MsiExec.exe /X{90120000-0018-0415-0000-0000000FF1CE}
### {90120000-0018-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Publisher MUI (Polish) 2007=MsiExec.exe /X{90120000-0019-0415-0000-0000000FF1CE}
### {90120000-0019-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0019-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Outlook MUI (Polish) 2007=MsiExec.exe /X{90120000-001A-0415-0000-0000000FF1CE}
### {90120000-001A-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001A-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Word MUI (Polish) 2007=MsiExec.exe /X{90120000-001B-0415-0000-0000000FF1CE}
### {90120000-001B-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proof (German) 2007=MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
### {90120000-001F-0407-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
### {90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
### {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proof (English) 2007=MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
### {90120000-001F-0409-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
### {90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
### {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proof (Polish) 2007=MsiExec.exe /X{90120000-001F-0415-0000-0000000FF1CE}
### {90120000-001F-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0415-0000-0000000FF1CE} /uninstall {E9EA2604-8AC9-47D2-8F4B-6BF60787A357}
### {90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0415-0000-0000000FF1CE} /uninstall {E9EA2604-8AC9-47D2-8F4B-6BF60787A357}
### {90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Pakiet zgodności dla systemu Office 2007=MsiExec.exe /X{90120000-0020-0415-0000-0000000FF1CE}
### {90120000-0020-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {E64BA721-2310-4B55-BE5A-2925F9706192}
### {90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for 2007 Microsoft Office System (KB2284654)=msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {FB166E7C-8AA6-48C8-B726-1F25BEE7825A}
### {90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {E64BA721-2310-4B55-BE5A-2925F9706192}
### {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for 2007 Microsoft Office System (KB2284654)=msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {FB166E7C-8AA6-48C8-B726-1F25BEE7825A}
### {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-002A-0415-1000-0000000FF1CE} /uninstall {D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}
### {90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-002A-0415-1000-0000000FF1CE} /uninstall {D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}
### {90120000-002A-0415-1000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Proofing (Polish) 2007=MsiExec.exe /X{90120000-002C-0415-0000-0000000FF1CE}
### {90120000-002C-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Enterprise 2007=MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
### {90120000-0030-0000-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office 2007 System (KB2539530)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office 2007 (KB2508958)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office InfoPath 2007 (KB979441)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1109D0B3-EFA3-4553-AAED-4C3E9AD130E8} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Access 2007 (KB979440)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1142CCEC-ACA9-484B-BA90-C3A5CA1988C5} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office Outlook 2007 (KB2509470)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1365864D-4C58-489D-9982-844D75691CCC}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1365864D-4C58-489D-9982-844D75691CCC} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office OneNote 2007 (KB980729)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{329050A9-EF80-40F9-B633-74508F54C1FF} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Publisher 2007 (KB2284697)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3A4CDE54-2403-483D-8D9A-15E3264410DF}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A4CDE54-2403-483D-8D9A-15E3264410DF} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office system 2007 (972581)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2345043)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {536FB502-775F-4494-BACE-C02CC90B7A5B}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{536FB502-775F-4494-BACE-C02CC90B7A5B} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Access 2007 (KB979440)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5A4E43D5-858F-49BD-BA72-8F30E1793060}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5A4E43D5-858F-49BD-BA72-8F30E1793060} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2288621)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5C497F0B-2061-4CC9-A61C-6B45B867354D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office InfoPath 2007 (KB2510061)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5D930261-AA5B-48D1-931F-425C9D767490}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5D930261-AA5B-48D1-931F-425C9D767490} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB969559)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Visio Viewer 2007 (KB973709)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Word 2007 (KB2344993)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB976321)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7F207DCA-3399-40CB-A968-6E5991B1421A} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office PowerPoint 2007 (KB2535818)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8588DD11-6BD7-4400-B55C-DD5AB74B43E1}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8588DD11-6BD7-4400-B55C-DD5AB74B43E1} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office InfoPath 2007 (KB979441)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Outlook 2007 Junk Email Filter (KB2536413)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {95DF5260-331D-4FFD-A2D5-C64164751945}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{95DF5260-331D-4FFD-A2D5-C64164751945} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Excel 2007 (KB2541007)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A0173254-F442-4D04-9154-43FA157B83D0}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A0173254-F442-4D04-9154-43FA157B83D0} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2509488)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AD0DE453-0804-4495-9C91-33D0F9AA5463}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{AD0DE453-0804-4495-9C91-33D0F9AA5463} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Groove 2007 (KB2494047)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B91E2AEC-7F93-4E33-ACF6-EC90640CBE4F}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{B91E2AEC-7F93-4E33-ACF6-EC90640CBE4F} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for 2007 Microsoft Office System (KB967642)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2288931)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CD769337-C8AC-46DB-A7DC-643E50089263}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CD769337-C8AC-46DB-A7DC-643E50089263} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office 2007 System (KB2541012)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CD907315-705A-4475-A1A0-2A1245803E4D}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CD907315-705A-4475-A1A0-2A1245803E4D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {D75E6D0C-BADF-4F41-98B2-0C0F02C15062}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{D75E6D0C-BADF-4F41-98B2-0C0F02C15062} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB974234)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
### {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{FCD742B9-7A55-44BC-A776-F795F21FEDDC} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office InfoPath MUI (Polish) 2007=MsiExec.exe /X{90120000-0044-0415-0000-0000000FF1CE}
### {90120000-0044-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0044-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Shared MUI (Polish) 2007=MsiExec.exe /X{90120000-006E-0415-0000-0000000FF1CE}
### {90120000-006E-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-006E-0415-0000-0000000FF1CE} /uninstall {D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}
### {90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-006E-0415-0000-0000000FF1CE} /uninstall {D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}
### {90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office OneNote MUI (Polish) 2007=MsiExec.exe /X{90120000-00A1-0415-0000-0000000FF1CE}
### {90120000-00A1-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00A1-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00A1-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007=MsiExec.exe /X{90120000-00B2-0415-0000-0000000FF1CE}
### {90120000-00B2-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Groove MUI (Polish) 2007=MsiExec.exe /X{90120000-00BA-0415-0000-0000000FF1CE}
### {90120000-00BA-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00BA-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
### {90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Toshiba Manuals="C:\Program Files (x86)\InstallShield Installation Information\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}\setup.exe" -runfromtemp -l0x0015 -removeonly
### {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173} Setup.exe Macrovision Corporation InstallShield 14.0
[Applications] :HKLM Microsoft Office Home and Student 2007=MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
### {91120000-002F-0000-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office 2007 System (KB2539530)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office 2007 (KB2508958)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for Microsoft Office OneNote 2007 (KB980729)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{329050A9-EF80-40F9-B633-74508F54C1FF} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office system 2007 (972581)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2345043)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {536FB502-775F-4494-BACE-C02CC90B7A5B}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{536FB502-775F-4494-BACE-C02CC90B7A5B} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2288621)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{5C497F0B-2061-4CC9-A61C-6B45B867354D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB969559)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Visio Viewer 2007 (KB973709)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Word 2007 (KB2344993)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB976321)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{7F207DCA-3399-40CB-A968-6E5991B1421A} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office PowerPoint 2007 (KB2535818)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {8588DD11-6BD7-4400-B55C-DD5AB74B43E1}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8588DD11-6BD7-4400-B55C-DD5AB74B43E1} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office InfoPath 2007 (KB979441)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office Excel 2007 (KB2541007)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {A0173254-F442-4D04-9154-43FA157B83D0}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A0173254-F442-4D04-9154-43FA157B83D0} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2509488)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {AD0DE453-0804-4495-9C91-33D0F9AA5463}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{AD0DE453-0804-4495-9C91-33D0F9AA5463} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Update for 2007 Microsoft Office System (KB967642)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB2288931)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {CD769337-C8AC-46DB-A7DC-643E50089263}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD769337-C8AC-46DB-A7DC-643E50089263} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office 2007 System (KB2541012)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {CD907315-705A-4475-A1A0-2A1245803E4D}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CD907315-705A-4475-A1A0-2A1245803E4D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {D75E6D0C-BADF-4F41-98B2-0C0F02C15062}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{D75E6D0C-BADF-4F41-98B2-0C0F02C15062} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB974234)=msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
### {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{FCD742B9-7A55-44BC-A776-F795F21FEDDC} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office PowerPoint Viewer 2007 (Polish)=MsiExec.exe /X{95120000-00AF-0415-0000-0000000FF1CE}
### {95120000-00AF-0415-0000-0000000FF1CE} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Realtek USB 2.0 Card Reader="C:\Program Files (x86)\InstallShield Installation Information\{96AE7E41-E34E-47D0-AC07-1091A8127911}\Setup.exe" -runfromtemp -l0x0015 -removeonly
### {96AE7E41-E34E-47D0-AC07-1091A8127911} Setup.exe Macrovision Corporation InstallShield 14.0
[Applications] :HKLM Skype Toolbars=MsiExec.exe /I{981029E0-7FC9-4CF3-AB39-6F133621921A}
### {981029E0-7FC9-4CF3-AB39-6F133621921A} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Podstawowe programy Windows Live=MsiExec.exe /I{9862473C-E063-4C68-A161-2CDE0E8048A5}
### {9862473C-E063-4C68-A161-2CDE0E8048A5} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Windows Live Writer=MsiExec.exe /X{9AB614A6-719C-4A6E-A63E-831E0A35F62A}
### {9AB614A6-719C-4A6E-A63E-831E0A35F62A} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161=MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
### {9BE518E6-ECC6-35A9-88E4-87755C07200F} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Galeria fotografii usługi Windows Live=MsiExec.exe /X{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}
### {9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Toshiba TEMPRO=MsiExec.exe /X{9E4FF410-471F-49E3-9358-74FF0D5E9901}
### {9E4FF410-471F-49E3-9358-74FF0D5E9901} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Adobe AIR=MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
### {A2BCA9F1-566C-4805-97D1-7FDC93386723} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Need for Speed™ Most Wanted=D:\Nowy folder\EAUninstall.exe
### {A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}
[Applications] :HKLM TOSHIBA Service Station=C:\Program Files (x86)\InstallShield Installation Information\{AC6569FA-6919-442A-8552-073BE69E247A}\setup.exe -runfromtemp -l0x0015 -removeonly
### {AC6569FA-6919-442A-8552-073BE69E247A} Setup.exe Macrovision Corporation InstallShield 12.0
[Applications] :HKLM Adobe Reader 9.1 - Polish=MsiExec.exe /I{AC76BA86-7AD7-1045-7B44-A91000000001}
### {AC76BA86-7AD7-1045-7B44-A91000000001} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM MSVC90_x86=MsiExec.exe /I{AF111648-99A1-453E-81DD-80DBBF6DAD0D}
### {AF111648-99A1-453E-81DD-80DBBF6DAD0D} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM TOSHIBA eco Utility
### {B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}
[Applications] :HKLM {BB8B979E-E336-47E7-96BC-1031C1B94561}
### {BB8B979E-E336-47E7-96BC-1031C1B94561}
[Applications] :HKLM Google Earth=MsiExec.exe /X{C084BC61-E537-11DE-8616-005056806466}
### {C084BC61-E537-11DE-8616-005056806466} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM {C2DDF845-7107-40E8-8D2A-8719F1799570}
### {C2DDF845-7107-40E8-8D2A-8719F1799570}
[Applications] :HKLM Poczta usługi Windows Live=MsiExec.exe /I{C35FE07E-24B5-410F-85B7-122087A0C7DD}
### {C35FE07E-24B5-410F-85B7-122087A0C7DD} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM PlayReady PC Runtime x86=MsiExec.exe /X{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}
### {CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Windows Live Messenger=MsiExec.exe /X{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}
### {D1803CD4-0CE7-4484-98E3-88D7A2D629A4} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Program TOSHIBA HDD/SSD Alert
### {D4322448-B6AF-4316-B859-D8A0E84DCB38}
[Applications] :HKLM Junk Mail filter update=MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
### {E2DFE069-083E-4631-9B6C-43C48E991DE5} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Office Suite Activation Assistant=MsiExec.exe /X{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
### {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft SQL Server 2005 Compact Edition [ENU]=MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
### {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Microsoft Choice Guard=MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
### {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM Realtek High Definition Audio Driver=RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
### {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} InstallShield (R) Ctor DLL Macrovision Corporation InstallShield 11.50
[Applications] :HKLM TOSHIBA ConfigFree=MsiExec.exe /X{F3529665-D75E-4D6D-98F0-745C78C68E9B}
### {F3529665-D75E-4D6D-98F0-745C78C68E9B} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[Applications] :HKLM MSXML 4.0 SP2 (KB973688)=MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
### {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} Instalator systemu Windows® Microsoft Corporation Instalator Windows — Unicode 5.0.7600.16385
[MD5]
[40F9FC39CCF5445F3075083380BD5421][1 44408 ]C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
[9BBA1351FCA721098980ECF4AAD72946][1 2254216 ]C:\PROGRA~2\COMMON~1\SKYPE\SKYPE4~1.DLL
[AEF204E782BFA2C8448CB43A58960744][1 39464 ]C:\PROGRA~2\MICROS~2\OFFICE12\REFIEBAR.DLL
[61B0C981F7C10B8861809ADC1B31E8E5][1 61264 ]C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
[452FA961163EF4AEE4815796A13AB2CF][1 35696 ]C:\PROGRAM FILES (X86)\ADOBE\READER 9.0\READER\READER_SL.EXE
[5CF6190CD875DA6B35256FEE573E7908][1 75128 ]C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ACROBAT\ACTIVEX\ACROIEHELPERSHIM.DLL
[C2FF17734176CD15221C10044EF0BA1A][2 113664 ]C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\CALIBRATION\ADOBE GAMMA LOADER.EXE
[13E7CFE8E269ED15E7FC9C3EBBCB7E2B][1 254696 EA103D7B5A7E32A12C0AEBF62B0B6AB402C895C9 ]C:\PROGRAM FILES (X86)\COMMON FILES\JAVA\JAVA UPDATE\JUSCHED.EXE
[9E7370CC3D6A43942433F85D0E2BBDD8][1 873216 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\HELP\HXDS.DLL
[BBFF7F0AC61F8A29241BC00B3785CCB0][1 230760 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\INFORMATION RETRIEVAL\MSITSS.DLL
[1F0E05DFF4F5A833168E49BE1256F002][1 441712 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\OFFICE12\ODSERV.EXE
[5A432A042DAE460ABE7199B758E8606C][1 145184 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE
[B7899C3E21B299D7A3C0DA96CAE340BD][1 408448 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE\WINDOWSLIVELOGIN.DLL
[2D5EC51B2416E470F591679A6C6462D6][1 74392 41A548E8C2FB7C9ED53920A51475DF31B2311917 ]C:\PROGRAM FILES (X86)\COMMON FILES\SURETHING SHARED\STLLSSVR.EXE
[CC839E8D766CC31A7710C9F38CF3E375][1 182768 ]C:\PROGRAM FILES (X86)\GOOGLE\COMMON\GOOGLE UPDATER\GOOGLEUPDATERSERVICE.EXE
[E7D55E121FF1951CB86C7E0DC6A33877][1 42272 8991C4ADFB468DC795D482C68B87A2BD880BDEA7 ]C:\PROGRAM FILES (X86)\JAVA\JRE6\BIN\JP2SSV.DLL
[7C4C76B39D5525C4A465E0BE32528E19][1 65888 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVEAUDITSERVICE.EXE
[644795F6985C740F5E36E9336B837D0B][1 31072 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVEMONITOR.EXE
[A6B5A41C0ED007AB6C43CAD899E533D8][1 2217848 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
[68747446F9D982938DB6B110F2908271][1 178040 ]C:\PROGRAM FILES (X86)\MICROSOFT OFFICE\OFFICE12\GROOVESYSTEMSERVICES.DLL
[2D841B7B7F6DEC32162EDFCC69D61F42][2 615936 ]C:\PROGRAM FILES (X86)\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE
[7D52D1B380C1231FCEC11A707726A781][1 804136 ]C:\PROGRAM FILES (X86)\SKYPE\TOOLBARS\INTERNET EXPLORER\SKYPEIEPLUGIN.DLL
[63B4F544664DC5154FDA4213E2AF09D0][1 116104 5B9E794483AF30350B1AE68BF5C39801303BF80A ]C:\PROGRAM FILES (X86)\TOSHIBA TEMPRO\TEMPROSVC.EXE
[837FF2D497880198C918E6954DBD170C][1 248688 ]C:\PROGRAM FILES (X86)\TOSHIBA\CONFIGFREE\CFIWMXSVCS64.EXE
[D252C53BCDFC199BBA55EEB10CDB266E][1 42368 ]C:\PROGRAM FILES (X86)\TOSHIBA\CONFIGFREE\CFPROCSRVC.EXE
[CAB0EEAF5295FC96DDD3E19DCE27E131][1 46448 ]C:\PROGRAM FILES (X86)\TOSHIBA\CONFIGFREE\CFSVCS.EXE
[32577B987AE5401038451BB392CB8D89][1 51512 ]C:\PROGRAM FILES (X86)\TOSHIBA\TOSHIBA SERVICE STATION\TMACHINFO.EXE
[0683803970A1375A2A632FEEA62D8D99][1 1294136 ]C:\PROGRAM FILES (X86)\TOSHIBA\TOSHIBA SERVICE STATION\TOSHIBASERVICESTATION.EXE
[1079D6DA23EEE32E846BADEED77B4E9C][1 2446648 ]C:\PROGRAM FILES (X86)\TOSHIBA\TOSHIBA WEB CAMERA APPLICATION\TWEBCAMERA.EXE
[C5B2679B0AE204FDD0415199B7AFEF20][1 34088 ]C:\PROGRAM FILES (X86)\TOSHIBA\UTILITIES\KENOTIFY.EXE
[96E8146A1107387EDA800CA9CA36CDB0][2 352256 ]C:\PROGRAM FILES (X86)\TOSHIBA\UTILITIES\SVPWUTIL.EXE
[021E1FA87DAB47ACE09F900B00074774][1 789824 ]C:\PROGRAM FILES (X86)\WINDOWS LIVE\MAIL\MAILCOMM.DLL
[ -2][0 -1 ]C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMPNETWK.EXE
[B3DD214F23037E3D3C27D6C9447B40B5][1 4247040 ]C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE
[6D8CCFA462CC4C9316959FA93728C49E][2 142336 ]C:\PROGRAM FILES (X86)\WINRAR\RAREXT.DLL
[F24BDD5C07249766E15078D6A7BF9055][1 122512 8A44B330E99E9401478DC39E4D08B43A692FA1FE ]C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASHSHELL.DLL
[75D85BD73B985DD443EA640C0A907B4F][1 820864 29C7CD67FA8F45DEC24683450C18354E132B3897 ]C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\ASWWEBREPIE.DLL
[D16C826F375A44802BF317982E81A7E2][1 42184 BA485C94A634C0CDCB362F4048D7E630FACA3A73 ]C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTSVC.EXE
[E7CF222185411C6A3E68273C452B3283][1 3493720 41CF707C95B411244C8AB1192A38E7E27C83836E ]C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\AVASTUI.EXE
[86257731DDB311FBC283534CC0091634][1 695056 ]C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
[4DB8C79BCEA76063B83B13410366A1F7][1 488800 ]C:\PROGRAM FILES\TOSHIBA\POWER SAVER\TOSCOSRV.EXE
[707800855AFBD7648375EFB1519B8D6D][1 251760 ]C:\PROGRAM FILES\TOSHIBA\TECO\TECOSERVICE.EXE
[DD58E1250F604CBBADDA04575E5E2376][1 137560 ]C:\PROGRAM FILES\TOSHIBA\TOSHIBA HDD SSD ALERT\TOSSMARTSRV.EXE
[DE64C52BD0671165CF2EEBF2A728A3E2][1 826224 ]C:\PROGRAM FILES\TOSHIBA\TPHM\TPCHSRV.EXE
[8107E3A186C034DDEB14718D71332714][2 423936 ]C:\PROGRAM FILES\TOSHIBA\UTILITIES\HWSETUP.EXE
[CF318F60A84F15AF352439465A8D05F4][1 1011712 ]C:\PROGRAM FILES\WINDOWS DEFENDER\MPSVC.DLL
[A9F3BFC9345F49614D5859EC95B9E994][6 1525248 ]C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE
[254EEFA92A3438879E2A80BD76B0378F][1 1727488 ]C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\PHOTOVIEWER.DLL
[E3BF29CED96790CDAAFA981FFDDF53A3][1 1475584 ]C:\PROGRAM FILES\WINDOWS SIDEBAR\SIDEBAR.EXE
[F02A533F517EB38333CB12A9E8963773][1 136176 ]C:\USERS\MAX-BUD\APPDATA\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
[61FB16B6016BCC9AA42E02F787DC87FC][1 1955384 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\FP_AX_CAB_INSTALLER.EXE
[C4002B6B41975F057D98C439030CEA07][1 696832 ]C:\WINDOWS\EHOME\EHRECVR.EXE
[4705E8EF9934482C5BB488CE28AFC681][1 127488 ]C:\WINDOWS\EHOME\EHSCHED.EXE
[D88040F816FDA31C3B466F0FA0918F29][1 66384 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\MSCORSVW.EXE
[D1CEEA2B47CB998321C579651CE3E4F8][1 89920 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V2.0.50727\MSCORSVW.EXE
[5988FC40F8DB5B0739CD1E3A5D0D78BD][1 856400 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\INFOCARD.EXE
[3E5A36127E201DDF663176B66828FAFE][1 116560 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SMSVCHOST.EXE
[A8B7F3818AB65695E3A0BB3279F6DCE6][1 42856 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE
[773212B2AAA24C1E31F10246B15B276C][1 194048 ]C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE
[4B78B431F225FD8624C5655CB1DE7B61][1 72192 ]C:\WINDOWS\SYSTEM32\AELUPSVC.DLL
[3290D6946B5E30E70414990574883DDB][1 79360 ]C:\WINDOWS\SYSTEM32\ALG.EXE
[316663537A203220F15B9D426D5B44F8][1 6656 ]C:\WINDOWS\SYSTEM32\APISETSCHEMA.DLL
[0BC381A15355A3982216F7172F545DE1][1 32256 ]C:\WINDOWS\SYSTEM32\APPIDSVC.DLL
[3977D4A871CA0D4F2ED1E7DB46829731][1 70656 ]C:\WINDOWS\SYSTEM32\APPINFO.DLL
[F23FEF6D569FCE88671949894A8BECF1][1 679424 ]C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL
[A6BF31A71B409DFA8CAC83159E1E2AFF][1 114688 ]C:\WINDOWS\SYSTEM32\AXINSTSV.DLL
[FDE360167101B4E45A96F939F388AEB0][1 100864 ]C:\WINDOWS\SYSTEM32\BDESVC.DLL
[82974D6A2FD19445CC5171FC378668A4][1 705024 ]C:\WINDOWS\SYSTEM32\BFE.DLL
[8EF0D5C41EC907751B8429162B1239ED][1 136192 ]C:\WINDOWS\SYSTEM32\BROWSER.DLL
[95F9C2976059462CBBF227F7AAB10DE9][1 83968 ]C:\WINDOWS\SYSTEM32\BTHSERV.DLL
[05569A79BF4693670B709144382D02D4][1 144384 ]C:\WINDOWS\SYSTEM32\CDD.DLL
[F17D1D393BBC69C5322FBFAFACA28C7F][1 80384 ]C:\WINDOWS\SYSTEM32\CERTPROP.DLL
[11338E0557B07BC32CDB980B6EDB35AA][1 780008 ]C:\WINDOWS\SYSTEM32\CI.DLL
[FE1EC06F2253F691FE36217C592A0206][1 367696 ]C:\WINDOWS\SYSTEM32\CLFS.SYS
[1A47D52E303B7543E4E6026595B95422][1 1297408 ]C:\WINDOWS\SYSTEM32\COMRES.DLL
[15597883FBE9B056F276ADA3AD87D9AF][1 177152 ]C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL
[3044D07ABDF4BBEA27E2EE7B1E0C0C65][1 12288 ]C:\WINDOWS\SYSTEM32\D3D8THK.DLL
[A6C09924C6730DE8DEED9890A12AA691][1 569344 ]C:\WINDOWS\SYSTEM32\DDRAW.DLL
[3CEC7631A84943677AA8FA8EE5B6B43D][1 291328 ]C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL
[43D808F5D9E1A18E5EEB5EBC83969E4E][1 317952 ]C:\WINDOWS\SYSTEM32\DHCPCORE.DLL
[A8EDB86FC2A4D6D1285E4C70384AC35A][1 9728 ]C:\WINDOWS\SYSTEM32\DLLHOST.EXE
[16835866AAA693C7D7FCEBA8FFF706E4][1 183296 ]C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL
[B1FB3DDCA0FDF408750D5843591AFBC6][1 252416 ]C:\WINDOWS\SYSTEM32\DOT3SVC.DLL
[B26F4F737E8F9DF4F31AF6CF31D05820][1 162816 ]C:\WINDOWS\SYSTEM32\DPS.DLL
[A87D604AEA360176311474C87A63BB88][1 229888 ]C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS
[D81D9E70B8A6DD14D42D7B4EFA65D5F2][1 334208 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS
[99F8E788246D495CE3794D7E7821D2CA][1 12800 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPMI.SYS
[2F6B34B83843F0C5118B63AC634F5BF4][1 491088 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADP94XX.SYS
[597F78224EE9224EA1A13D6350CED962][1 339536 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADPAHCI.SYS
[E109549C90F62FB570B9540C4B148E54][1 182864 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADPU320.SYS
[D5B031C308A409A0A576BFF4CF083D30][1 499200 19B22477C5708EEDDEF09513D6327C1B37F47555 ]C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[7ECFF9B22276B73F43A99A15A6094E90][1 60416 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS
[608C14DBA7299D8CB6ED035A68A15799][1 61008 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGP440.SYS
[5812713A477A3AD7363C7438CA2EE038][1 15440 ]C:\WINDOWS\SYSTEM32\DRIVERS\ALIIDE.SYS
[1FF8B4431C353CE385C875F194924C0C][1 15440 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDIDE.SYS
[7024F087CFF1833A806193EF9D22CDA9][1 64512 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS
[1E56388B3FE0D031C44144EB8C4D6217][1 60928 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS
[6EC6D772EAE38DC17C14AED9B178D24B][1 107904 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS
[F67F933E79241ED32FF46A4F29B5120B][1 194128 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS
[1142A21DB581A84EA5597B03A26EBAA0][1 27008 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS
[89A69C3F2F319B43379399547526D952][1 61440 ]C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS
[C484F8CEB1717C540242531DB7845C4E][1 87632 ]C:\WINDOWS\SYSTEM32\DRIVERS\ARC.SYS
[019AF6924AEFE7839F61C830227FE79C][1 97856 ]C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS
[55353CD0DA287B2C3782485740965B54][1 22360 00B2844BA939BB4342CFAE73F348FC281A135B6F ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWFSBLK.SYS
[B38061CDEFB71361E0C7547AC60527E8][1 64856 1DA5C2CFA263782AD15CD64DEFF0CACB30D2E7E1 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWMONFLT.SYS
[91E7ACA95933633B2557F47CDFDB74C3][1 31064 7FA7ABD29FBDE593897308139FDEC64DB93FE8ED ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWRDR.SYS
[2B15499F68FAD60CE69264A327E9B0F0][1 600920 B72A335206F035809A3490033A93FDB54855B0B1 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWSNX.SYS
[4D939ECB19DC930056593390D1C87C43][1 288088 C0D640F9F1613E6610DB68D6E9D107481BAEF75A ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWSP.SYS
[D633426C5A207CE21767569AA4946891][1 45400 F26E2750CB23122B52A23EEC96ADBC6033112A60 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWTDI.SYS
[769765CE2CC62867468CEA93969B2242][1 23040 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS
[02062C0B390B7729EDC9E69C680A6F3C][1 24128 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS
[A34FE1E025E88798E746F484956C0720][1 155520 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPORT.SYS
[E857EEE6B92AAA473EBB3465ADD8F7E7][1 1394688 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATHRX.SYS
[B5ACE6968304A3900EEB1EBFD9622DF2][1 270848 ]C:\WINDOWS\SYSTEM32\DRIVERS\B57ND60A.SYS
[F4DE2AE7A9E1BADAC70BC71EA2C17612][1 28240 ]C:\WINDOWS\SYSTEM32\DRIVERS\BATTC.SYS
[16A47CE2DECC9B099349A5F840654746][1 6656 ]C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[61583EE3C3A17003C4ACD0475646B4D3][1 45056 ]C:\WINDOWS\SYSTEM32\DRIVERS\BLBDRIVE.SYS
[6C02A83164F5CC0A262F4199F0871CF5][1 90624 ]C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS
[F09EEE9EDC320B5E1501F749FDE686C8][1 18432 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTLO.SYS
[B114D3098E9BDB8BEA8B053685831BE6][1 8704 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTUP.SYS
[43BEA8D483BF1870F018E2D02E06A5BD][1 286720 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRSERID.SYS
[A6ECA2151B08A09CACECA35C07F05B42][1 47104 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRSERWDM.SYS
[B79968002C277E869CF38BD22CD61524][1 14976 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBMDM.SYS
[A87528880231C54E75EA7A44943B38BF][1 14720 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBSER.SYS
[832B121E4532919CC49F2438F1DCAA21][1 29184 A82594C28CF65E0FDFFCBB29E49419A6985801E5 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHAVRCP.SYS
[CF98190A94F62E405C8CB255018B2315][1 41984 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHENUM.SYS
[9DA669F11D1F894AB4EB69BF546A42E8][1 72192 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS
[02DD601B708DD0667E1331FA8518E9FF][1 118784 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHPAN.SYS
[0D25B6D300BA26A5F2C3B2A8E96B158B][1 552448 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHPORT.SYS
[1F9912F8EC5BFA53432E71E150636A8A][1 80384 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHUSB.SYS
[3E5B191307609F7514148C6832BB0842][1 468480 ]C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS
[B8BD2BB284668C84865658C77574381A][1 92160 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[F036CE71586E93D94DAB220D7BDF4416][1 147456 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[D7CD5C4E1B71FA62050515314CFB52CF][1 45568 ]C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS
[ACFAD0B512226C7A83C7CB09FD55A9AD][1 179072 ]C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[0840155D0BDDF1190F84A663C284BD33][1 17664 ]C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS
[E19D3F095812725D88F9001985B94EDD][1 17488 ]C:\WINDOWS\SYSTEM32\DRIVERS\CMDIDE.SYS
[D5FEA92400F12412B3922087C09DA6A5][1 459248 ]C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS
[102DE219C3F61415F964C88E9085AD14][1 21584 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPBATT.SYS
[03EDB043586CCEBA243D689BDDA370A8][1 38912 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS
[3E588B60EC061686BA05D33574A344C6][1 39504 ]C:\WINDOWS\SYSTEM32\DRIVERS\CRASHDMP.SYS
[1C827878A998C18847245FE1F34EE597][1 24144 ]C:\WINDOWS\SYSTEM32\DRIVERS\CRCDISK.SYS
[9BB2EF44EAA163B29C4A4587887A0FE4][1 102400 ]C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS
[13096B05847EC78F0977F2C0F79E9AB3][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISCACHE.SYS
[9819EEE8B5EA3784EC4AF3B137A5244C][1 73280 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS
[21D26064AEDB4988F785BB4A3A2C051E][1 116224 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[9B19F34400D24DF84C858A421C205754][1 5632 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS
[BF24D6F2ED97FE830BFD52B246F98E67][1 16896 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[F5BEE30450E18E6B83A5012C100616FD][1 982912 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS
[9CD68BDDF322535C02ADC8331013D13D][1 258048 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGMMS1.SYS
[0E5DA5369A0FCAEA12456DD852545184][1 530496 ]C:\WINDOWS\SYSTEM32\DRIVERS\ELXSTOR.SYS
[34A3C54752046E79A126E15C51DB409B][1 9728 ]C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS
[DC5D737F51BE844D8C82C695EB17372F][1 3286016 ]C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS
[D765D19CD8EF61F650C384F62FAC00AB][1 29696 ]C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS
[655661BE46B5F5F3FD454E2C3095B930][1 70224 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS
[5F671AB5BC87EEA04EC38A6CD5962A47][1 34304 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS
[C172A0F53008EAEB8EA33FE10E177AF5][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS
[DA6B67270FD9DB3697B20FCE94950741][1 289664 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS
[E95EF8547DE20CF0603557C0CF7A9462][1 23104 ]C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[D43703496149971890703B4B1B723EAC][1 55376 ]C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS
[1F7B25B858FA27015169FE95E54108ED][1 223248 ]C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS
[63B5129D7127E7757FCC9EA9D3763963][1 288640 ]C:\WINDOWS\SYSTEM32\DRIVERS\FWPKCLNT.SYS
[8C778D335C9D272CFD3298AB02ABE3B6][1 65088 ]C:\WINDOWS\SYSTEM32\DRIVERS\GAGP30KX.SYS
[F2523EF6460FC42405B12248338AB2F0][1 31232 ]C:\WINDOWS\SYSTEM32\DRIVERS\HCW85CIR.SYS
[97BFED39B6B79EB12CDDBFEED51F56BB][1 122368 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS
[975761C778E33CD22498059B91E7373A][1 350208 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS
[78E86380454A7B10A5EB255DC44A355F][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS
[7FD2A313F7AFE5C4DAB14798C48DD104][1 100864 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS
[8B0E40E7E8BBF5ACF390465609D89FF1][1 76800 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[0A77D29F311B88CFAE3B13F9C1A73825][1 46592 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS
[49EE2E52E6CD03947DAD72F65367BE06][1 32896 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[9592090A7E2B61CD582B612B6DF70536][1 30208 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[39D2ABCD392F3D8A6DCE7B60AE7B8EFC][1 78720 ]C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS
[0EA7DE1ACB728DD5A369FD742D6EEE28][1 753664 ]C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
[A5462BD6884960C9DC85ED49D34FF392][1 14720 ]C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS
[FA55C73D4AFFA7EE23AC4BE53B4592D3][1 105472 ]C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS
[1D004CB1DA6323B1F55CAEF7F94B61D9][1 408600 ]C:\WINDOWS\SYSTEM32\DRIVERS\IASTOR.SYS
[3DF4395A7CF8B7A72A5F4606366B8C2D][1 410496 ]C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS
[3C3F27002ABC69C5AFE29CBE6CF7ADDF][1 7369600 ]C:\WINDOWS\SYSTEM32\DRIVERS\IGDKMD64.SYS
[5C18831C61933628F5BB0EA2675B9D21][1 44112 ]C:\WINDOWS\SYSTEM32\DRIVERS\IIRSP.SYS
[88A20FA54C73DED4E8DAC764E9130AE9][1 139264 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTCHDMI.SYS
[F00F20E70C6EC3AA366910083A0518AA][1 16960 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS
[ADA036632C664CAA754079041CF1F8C1][1 62464 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
[C9F0E1BD74365A8771590E9008D22AB6][1 82944 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS
[0FC1AEA580957AA8817B8F305D18CA3A][1 78848 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS
[AF9B39A7E7B6CAA203B3862582E9F2D0][1 116224 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
[3ABF5E7213EB28966D55D58B515D5CE9][1 17920 ]C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS
[2F7B28DC3E1183E5EB418DF55C204F38][1 20544 ]C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS
[BC02336F1CBA7DCC7D1213BB588A68A5][1 50768 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[0705EFF5B42A9DB58548EEC3B26BB484][1 33280 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS
[24FBF5CC5C04150073C315A7C83521EE][1 243712 ]C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[CCD53B5BD33CE0C889E830D839C8B66E][1 95616 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS
[9FF918A261752C12639E8AD4208D2C2F][1 152960 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS
[6869281E78CB31A43E969F06B57347C4][1 20992 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS
[1538831CF8AD2979A04C423779465827][1 60928 ]C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS
[41E122F6D1448C94CC05196BC41D6BFB][1 44912 ]C:\WINDOWS\SYSTEM32\DRIVERS\LPCFILTER.SYS
[1A93E54EB0ECE102495A51266DCDB6A6][1 114752 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_FC.SYS
[1047184A9FDC8BDBFF857175875EE810][1 106560 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS
[30F5C0DE1EE8B5BC9306C1F0E4A75F93][1 65600 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2.SYS
[0504EACAFF0D3C8AED161C4B0D369D4A][1 115776 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SCSI.SYS
[43D0F98E1D56CCDDB0D5254CFF7B356E][1 113152 ]C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS
[A55805F747C6EDB6A9080D7C633BD0F4][1 35392 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS.SYS
[BAF74CE0072480C3B6B7C13B2A94D6B3][1 284736 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS
[800BA92F7010378B09F9ED9270F07137][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS
[B03D591DC7DA45ECE20B3B467E6AADAA][1 30208 ]C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS
[7D27EA49F3C1F687D357E77A470AEA99][1 49216 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[D3BF052C40B0C4166D9FD86A4288C1E6][1 31232 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[32E7A3D591D671A6DF2DB515A5CBE0FA][1 94592 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS
[A44B420D30BD56E145D6A2BC8768EC58][1 155008 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPIO.SYS
[6C38C9E45AE0EA2FA5E551F2ED5E978F][1 77312 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS
[DC722758B8261E1ABAFD31A3C0A66380][1 140800 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
[A5D9106A73DC88564C825D317CAC68AC][1 158208 70BEE8B4A21071BB4F543D08C3289A01B2C2D02F ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[2086D463BD371D8A37D153897430916D][1 289280 8EB7386492E313DD13E94BB898A9D4AE975E1717 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB10.SYS
[9423E9D355C8D303E76B8CFBD8A5C30C][1 128000 E2580BA853FE9AC5D6CE83A15CBFE5B956BAEE22 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS
[C25F0BAFA182CBCA2DD3C851C2E75796][1 31104 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSAHCI.SYS
[DB801A638D011B9633829EB6F663C900][1 140672 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSDSM.SYS
[AA3FB40E17CE1388FA1BEDAB50EA8F96][1 26112 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[F9D215A46A8B9753F61767FA72A20326][1 8192 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS
[D916874BBD4F8B07BFB7FA9B3CCAE29D][1 15424 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS
[D931D7309DEB2317035B07C9F9E6B0BD][1 273792 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS
[49CCF2C4FEA34FFAD8B1B59D49439366][1 11136 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS
[BDD71ACE35A232104DDD349EE70E1AB3][1 7168 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS
[4ED981241DB27C3383D72092B618A1D0][1 6784 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS
[759A9EEB0FA9ED79DA1FB7D4EF78866D][1 366976 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSRPC.SYS
[0EED230E37515A0EAEE3C2E1BC97B288][1 32320 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
[2E66F9ECB30B4221A318C92AC2250779][1 8064 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS
[7EA404308934E675BFFDE8EDF0757BCD][1 15360 ]C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS
[F9A18612FD3526FE473C1BDA678D61C8][1 60496 ]C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS
[79B47FD40D9A817E932F9D26FAC0A81C][1 951680 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS
[9F9A1F53AAD7DA4D6FEF5BB73AB811AC][1 35328 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS
[30639C932D9FEF22B31268FE25A1B6E5][1 24064 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[136185F9FB2CC61E573E676AA5402356][1 56832 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[53F7305169863F0A2BDDC49E116C2E11][1 164352 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[015C0D8E0E0421B4CFD48CFFE2825879][1 57856 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[86743D9F5D2B1048062B14B1D84501C4][1 44544 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[09594D1089C523423B32A4229263F068][1 261632 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[C8E033EA95337FDCE489D1D0348B9A23][1 376192 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETIO.SYS
[77889813BE4D166CDAB78DDBA990DA92][1 51264 ]C:\WINDOWS\SYSTEM32\DRIVERS\NFRD960.SYS
[1E4C4AB5C9B8DD13179BBDC75A2A01F7][1 44032 ]C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[E7F5AE18AF4168178A642A9247C63001][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS
[05D78AA5CB5F3F5C31160BDB955D0B7C][1 1659776 ]C:\WINDOWS\SYSTEM32\DRIVERS\NTFS.SYS
[9899284589F75FA8724FF3D16AED75C1][1 6144 ]C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[270D7CD42D6E3979F6DD0146650F0E05][1 122960 ]C:\WINDOWS\SYSTEM32\DRIVERS\NV_AGP.SYS
[5D9FD91F3D38DC9DA01E3CB5FA89CD48][1 148352 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS
[F7CD50FE7139F07E77DA8AC8033D1832][1 166272 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS
[1EA3749C4114DB3E3161156FFFFA6B33][1 318976 ]C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS
[3589478E4B22CE21B41FA1BFC0B8B8A0][1 72832 ]C:\WINDOWS\SYSTEM32\DRIVERS\OHCI1394.SYS
[0557CF5A2556BD58E26384169D72438D][1 131584 ]C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS
[0086431C29C35BE1DBC43F52CC273887][1 97280 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTIZAN.SYS
[871EADAC56B0A4C6512BBE32753CCF79][1 75136 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS
[BC0018C2D29F655188A0ED3FA94FDB24][1 25600 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCCSMCFDX64.SYS
[94575C0571D1462A0F70BDE6BD6EE6B3][1 184704 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS
[B5B8B5EF2E5CB34DF8DCF8831E3534FA][1 12352 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS
[144497DAA145BA0F7BE896064146C058][1 48720 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[B2E81D4E87CE48589F98CB8C05B01F2F][1 220752 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS
[D6B9C2E1A11A3A4B26A182FFEF18F603][1 50768 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS
[68769C3356B3BE5D1C732C97B9A80D6E][1 651264 ]C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS
[663962900E7FEA522126BA287715BB4A][1 35008 ]C:\WINDOWS\SYSTEM32\DRIVERS\PGEFFECT.SYS
[32E11315B5126921FFD9074840EF13D3][1 230400 ]C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[0D922E23C041EFB1C3FAC2A6F943C9BF][1 60416 ]C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS
[A53A15A11EBFD21077463EE2C7AFEEF0][1 1524816 ]C:\WINDOWS\SYSTEM32\DRIVERS\QL2300.SYS
[4F6D12B51DE1AAEFF7DC58C4D75423C8][1 128592 ]C:\WINDOWS\SYSTEM32\DRIVERS\QL40XX.SYS
[76707BB36430888D9CE9D705398ADB6C][1 46592 ]C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS
[5A0DA8AD5762FA2D91678A8A01311704][1 14848 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[471815800AE33E6F1C32FB1B97C490CA][1 129536 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[855C9B1CD4756C5E9A2AA58A15F58C25][1 92672 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[F92A2C41117A11A00BE01CA01A7FCDE9][1 111104 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[E8B1E447B008D07FF47D016C2B0EEECB][1 83968 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS
[77F665941019A1594D887A74F301FA2F][1 309248 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[302DA2A0539F2CF54D7C6CC30C1F2D8D][1 24064 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS
[CEA6CC257FC9B7715F1C2B4849286D24][1 7680 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[BB5971A4F00659529A5C44831AF22365][1 7680 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPENCDD.SYS
[216F3FA57533D98E1F74DED70113177A][1 8192 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPREFMP.SYS
[34ED295FA0121C241BFEF24764FC4520][1 213888 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS
[ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\REGGUARD.SYS
[3DD798846E2C28102B922C56E71B7932][1 158720 ]C:\WINDOWS\SYSTEM32\DRIVERS\RFCOMM.SYS
[DDC86E4F8E7456261E637E3552E804FF][1 76800 ]C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS
[B49DC435AE3695BAC5623DD94B05732D][1 215040 ]C:\WINDOWS\SYSTEM32\DRIVERS\RT64WIN7.SYS
[0C3CF4B3BAE28E121A1689E3538F8712][1 1966624 ]C:\WINDOWS\SYSTEM32\DRIVERS\RTKVHD64.SYS
[A36805E60282B1753C28001269D725E7][1 446976 F124F0F99455CC3EA97E1BBA4BAD4DD8FC8DE10D ]C:\WINDOWS\SYSTEM32\DRIVERS\RTL8187B.SYS
[8C22F21C924413D4E109995F748E18BB][1 222208 ]C:\WINDOWS\SYSTEM32\DRIVERS\RTSUSTOR.SYS
[AC03AF3329579FFFB455AA2DAABBE22B][1 103808 ]C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS
[253F38D0D7074C02FF8DEB9836C97D2B][1 29696 ]C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS
[3EA8A16169C26AFBEB544E0E48421186][1 23040 ]C:\WINDOWS\SYSTEM32\DRIVERS\SECDRV.SYS
[CB624C0035412AF0DEBEC78C41F5CA1B][1 23552 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
[C1D8E28B2C2ADFAEC4BA89E9FDA69BD6][1 94208 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS
[1C545A7D0691CC4A027396535691C3E3][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS
[A554811BCD09279536440C964AE35BBF][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFDISK.SYS
[FF414F0BAEFEBA59BC6C04B3DB0B87BF][1 13824 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_MMC.SYS
[DD85B78243A19B59F0637DCF284DA63C][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_SD.SYS
[A9D601643A1647211A1EE2EC4E433FF4][1 16896 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS
[843CAF1E5FDE1FFD5FF768F23A51E2E1][1 43584 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS
[6A6C106D42E9FFFF8B9FCB4F754F6DA4][1 80464 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS
[548260A7B8654E024DC30BF8A7C5BAA4][1 93184 ]C:\WINDOWS\SYSTEM32\DRIVERS\SMB.SYS
[B9E31E5CACDFE584F34F730A677803F9][1 19008 ]C:\WINDOWS\SYSTEM32\DRIVERS\SPLDR.SYS
[441FBA48BFF01FDB9D5969EBC1838F0B][1 467456 96AA994D918D6F75795C7DC1A026F6BBDF2C1453 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[B4ADEBBF5E3677CCE9651E0F01F7CC28][1 410112 801E894BB9293079C8D501C75302CD4EB26EC9B3 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS
[27E461F0BE5BFF5FC737328F749538C3][1 168448 2DBBC6C665CB2DFC34FCE54C9E78C7979C9B727D ]C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS
[F3817967ED533D08327DC73BC4D5542A][1 24656 ]C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS
[D01EC09B6711A5F8E7E6564A4D0FBC90][1 12496 ]C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[BE7311DA9D6833FA69ED04B744A1C8F8][1 274480 ]C:\WINDOWS\SYSTEM32\DRIVERS\SYNTP.SYS
[92CE29D95AC9DD2D0EE9061D551BA250][1 1923968 6C67E4BA69F656E1EB3A7B1BA70218C7160DF152 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[DF687E3D8836BFB04FCC0615BF15A519][1 45056 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS
[FD542B661BD22FA69CA789AD0AC58C29][1 27784 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDCMDPST.SYS
[6F020A220388ECA0AB6062DC27BD16B6][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[3371D21011695B16333A3934340C4E7C][1 15872 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDPIPE.SYS
[E4245BDA3190A582D55ED09E137401A9][1 23552 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDTCP.SYS
[DDAD5A7AB24D8B65F8D724F5C20FD806][1 119296 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS
[561E7E1F06895D78DE991E01DD0FB6E5][1 63360 ]C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[09FF7B0B1B5C3D225495CB6F5A9B39F8][1 482384 ]C:\WINDOWS\SYSTEM32\DRIVERS\TOS_SPS64.SYS
[CE18B2CDFC837C99E5FAE9CA6CBA5D30][1 39424 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSSECSRV.SYS
[D11C783E3EF9A3C52C0EBE83CC5000E9][1 59392 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS
[3566A8DAAFA27AF944F5D705EAA64894][1 125440 ]C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS
[550B567F9364D8F7684C3FB3EA665A72][1 26840 ]C:\WINDOWS\SYSTEM32\DRIVERS\TVALZ_O.SYS
[9C7191F4B2E49BFF47A6C1144B5923FA][1 14472 ]C:\WINDOWS\SYSTEM32\DRIVERS\TVALZFL.SYS
[B4DD609BD7E282BFC683CEC7EAAAAD67][1 64080 ]C:\WINDOWS\SYSTEM32\DRIVERS\UAGP35.SYS
[FF4232A1A64012BAA1FD97C7B67DF593][1 328192 ]C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS
[4BFE1BC28391222894CBF1E7D0E42320][1 64592 ]C:\WINDOWS\SYSTEM32\DRIVERS\ULIAGPKX.SYS
[DC54A574663A895C8763AF0FA1FF7561][1 48640 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMBUS.SYS
[B2E8E8CB557B156DA5493BBDDCC1474D][1 9728 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMPASS.SYS
[ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\UnHackMeDrv.sys
[481DFF26B4DCA8F4CBAC1F7DCE1D6829][1 98816 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS
[AF0892A803FDDA7492F595368E3B68E7][1 100352 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS
[63C8D74BED9F80F4DD0AA7A3101EB639][1 7936 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[74EE782B1D9C241EFE425565854C661C][1 52224 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[DC96BD9CCB8403251BCF25047573558E][1 343040 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[58E546BBAF87664FC57E0F6081E4F609][1 25600 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS
[B6D64EE607637301FF8C33139B4950DE][1 325120 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[73188F58FB384E75C4063D29413CEE3D][1 25088 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS
[AAA2513C8AED8B54B189FD0C6B1634C0][1 41984 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSCAN.SYS
[0F0C72A657C622286013788B886968AD][1 32768 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSER.SYS
[D76510CFA0FC09023077F22C2F979D86][1 91648 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS
[81FB2216D3A60D1284455D511797DB3D][1 30720 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS
[454800C2BC7F3927CE030141EE4F4C50][1 184960 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS
[C5C876CCFC083FF3B128F933823E87BD][1 36432 ]C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS
[53E92A310193CB3C03BEA963DE7D9CFC][1 29184 ]C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[DA4DA3F5E02943C2DC8C6ED875DE68DD][1 29184 ]C:\WINDOWS\SYSTEM32\DRIVERS\VGAPNP.SYS
[2CE2DF28C83AEAF30084E1B1EB253CBB][1 215936 ]C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS
[E5689D93FFE4E5D66C0178761240DD54][1 17488 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIAIDE.SYS
[E7353D59C9842BC7299FAEB7E7E09340][1 129024 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[D2AAFD421940F640B407AEFAAEBD91B0][1 71552 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS
[A255814907C89BE58B79EF2F189B843B][1 363392 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS
[0D08D2F3B3FF84E433346669B5E0F639][1 295808 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS
[5E2016EA6EBACA03C04FEAC5F330D997][1 161872 ]C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS
[36D4720B72B5C5D9CB2B9C29E9DF67A1][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIBUS.SYS
[6A3D66263414FF0D6FA754C646612F3F][1 59904 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS
[6A638FC4BFDDC4D9B186C28C91BD1A01][1 17920 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIMP.SYS
[4E9440F4F152A7B944CB1663D3935A3E][1 27776 ]C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS
[356AFD78A6ED4457169241AC3965230C][1 88576 ]C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[FC438D1430B28618E2D0C7C332A710AD][1 42496 ]C:\WINDOWS\SYSTEM32\DRIVERS\WATCHDOG.SYS
[72889E16FF12BA0F235467D6091B17DC][1 21056 ]C:\WINDOWS\SYSTEM32\DRIVERS\WD.SYS
[441BD2D7B4F98134C3A4F9FA570FD250][1 654928 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS
[1B409454D7A00110FDB06F7E0F155A88][1 42064 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDFLDR.SYS
[611B23304BF067451A9FDEE01FBDD725][1 12800 ]C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWF.SYS
[05ECAEC3E4529A7153B3136CEB49F0EC][1 22096 ]C:\WINDOWS\SYSTEM32\DRIVERS\wimmount.sys
[FE88B288356E7B47B74B13372ADD906D][1 41984 ]C:\WINDOWS\SYSTEM32\DRIVERS\WINUSB.SYS
[F6FF8944478594D0E414D3F048F0D778][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS
[FC146F46872D4C5B529B89A5131FD1E6][1 16464 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[6BCC1D7D2FD2453957C5479A32364E52][1 21504 ]C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS
[8D918B1DB190A4D9B1753A66FA8C96E8][1 23040 ]C:\WINDOWS\SYSTEM32\DRIVERS\WSDPRINT.SYS
[D3381DC54C34D79B22CEE0D65BA91B7C][1 112128 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS
[CF8D590BE3373029D57AF80914190682][1 172544 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS
[9110FFAD124283F37D38771BB60556AF][1 540672 ]C:\WINDOWS\SYSTEM32\DSOUND.DLL
[E2DDA8726DA9CB5B2C4000C9018A9633][1 111104 ]C:\WINDOWS\SYSTEM32\EAPSVC.DLL
[024352FEEC9042260BB4CFB4D79A206B][1 203264 ]C:\WINDOWS\SYSTEM32\EHSTORSHELL.DLL
[4166F82BE4D24938977DD1746BE9B8A0][1 402944 ]C:\WINDOWS\SYSTEM32\ES.DLL
[0438CAB2E03F4FB61455A7956026FE86][1 16384 ]C:\WINDOWS\SYSTEM32\FDPHOST.DLL
[802496CB59A30349F9A6DD22D6947644][1 34816 ]C:\WINDOWS\SYSTEM32\FDRESPUB.DLL
[B4447F606BB19FD8AD0BAFB59B90F5D9][1 1137664 ]C:\WINDOWS\SYSTEM32\FNTCACHE.DLL
[19E41CCCEE697CC9465396B370929792][1 41984 ]C:\WINDOWS\SYSTEM32\FXSMON.DLL
[DBEFD454F8318A0EF691FDD2EAAB44EB][1 689152 ]C:\WINDOWS\SYSTEM32\FXSSVC.EXE
[277BBC7E1AA1EE957F573A10ECA7EF3A][1 777728 ]C:\WINDOWS\SYSTEM32\GPSVC.DLL
[CFB8C673F9188F99466E76C6972191E0][1 263040 ]C:\WINDOWS\SYSTEM32\HAL.DLL
[BD9EB3958F213F96B97B1D897DEE006D][1 38912 ]C:\WINDOWS\SYSTEM32\HIDSERV.DLL
[3B367397320C26DBA890B260F80D1B1B][1 424448 ]C:\WINDOWS\SYSTEM32\HNETCFG.DLL
[FCD84C381E0140AF901E58D48882D26B][1 853504 ]C:\WINDOWS\SYSTEM32\IKEEXT.DLL
[DA6C4B5FEEEA4DC7162B5D0C055EB967][1 22016 ]C:\WINDOWS\SYSTEM32\IMAADP32.ACM
[AA2C08CE85653B1A0D2E4AB407FA176C][1 167424 ]C:\WINDOWS\SYSTEM32\IMM32.DLL
[142E90CF1A4C5B6E7505810E38B07B9F][1 976896 D571496D97A30DB741DE07ADADB7C0C4D012E474 ]C:\WINDOWS\SYSTEM32\INETCOMM.DLL
[098A91C54546A3B878DAD6A7E90A455B][1 101888 ]C:\WINDOWS\SYSTEM32\IPBUSENUM.DLL
[A34A587FFFD45FA649FBA6D03784D257][1 569344 ]C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL
[B95F6501A2F8B2E78C697FEC401970CE][1 359424 ]C:\WINDOWS\SYSTEM32\IPNATHLP.DLL
[4F15D75ADF6156BF56ECED6D4A55C389][1 501248 ]C:\WINDOWS\SYSTEM32\IPSECSVC.DLL
[808E98FF49B155C522E6400953177B08][1 156672 ]C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL
[06DC527364A8CF48E472ECF2BA3F8403][1 170496 ]C:\WINDOWS\SYSTEM32\ITSS.DLL
[5CE9241C030C004FF92037DF8F7401B0][1 54272 ]C:\WINDOWS\SYSTEM32\IYUV_32.DLL
[CDD0C92A653CAC881D780003E0C4E813][1 17792 ]C:\WINDOWS\SYSTEM32\KDCOM.DLL
[16ECE8BD6734CC170B9AE74176E89A9B][1 715776 ]C:\WINDOWS\SYSTEM32\KERBEROS.DLL
[387E72E739E15E3D37907A86D9FF98E2][1 90624 ]C:\WINDOWS\SYSTEM32\KMSVC.DLL
[8560FFFC8EB3A806DCD4F82252CFC8C6][1 5120 7562BBB63B0DB6E4986EBDB86495C4FE284A1EAA ]C:\WINDOWS\SYSTEM32\KSUSER.DLL
[EFDFB3DD38A4376F93E7985173813ABD][1 232448 ]C:\WINDOWS\SYSTEM32\LISTSVC.DLL
[C1185803384AB3FEED115F79F109427F][1 300032 ]C:\WINDOWS\SYSTEM32\LLTDSVC.DLL
[F993A32249B66C9D622EA5592A8B76B8][1 23552 ]C:\WINDOWS\SYSTEM32\LMHSVC.DLL
[89B89AE23491F5D4E338499A3D568269][1 955904 ]C:\WINDOWS\SYSTEM32\LOCALSPL.DLL
[D5BA242D4CF8E384DB90E6A8ED850B8C][1 10240 ]C:\WINDOWS\SYSTEM32\LOCATOR.EXE
[D202223587518B13D72D68937B7E3F70][1 41984 ]C:\WINDOWS\SYSTEM32\LPK.DLL
[0793F40B9B8A1BDD266296409DBD91EA][1 31232 ]C:\WINDOWS\SYSTEM32\LSASS.EXE
[06CBA28981689B96B1E6A16F463F2260][1 299392 ]C:\WINDOWS\SYSTEM32\MCUPDATE_GENUINEINTEL.DLL
[0BE09CD858ABF9DF6ED259D57A1A1663][1 84992 ]C:\WINDOWS\SYSTEM32\MCX2SVC.DLL
[CA2A0750ED830678997695FF61B04C30][1 20480 ]C:\WINDOWS\SYSTEM32\MIDIMAP.DLL
[E40E80D0304A73E8D269F7141D77250B][1 67584 ]C:\WINDOWS\SYSTEM32\MMCSS.DLL
[254FB7A22D74E5511C73A3F6D802F192][1 97792 ]C:\WINDOWS\SYSTEM32\MPRDIM.DLL
[54FFC9C8898113ACE189D4AA7199D2C1][1 828416 ]C:\WINDOWS\SYSTEM32\MPSSVC.DLL
[1B7C3A37362C7B2890168C5FC61C8D9B][1 25600 ]C:\WINDOWS\SYSTEM32\MSACM32.DRV
[329FEB3452982A377726DEDAFE9BBDF0][1 24064 ]C:\WINDOWS\SYSTEM32\MSADP32.ACM
[A08C010D859F8EB42BDD7E1D55B8CA27][1 444752 ]C:\WINDOWS\SYSTEM32\MSCOREE.DLL
[DE0ECE52236CFA3ED2DBFC03F28253A8][1 141824 ]C:\WINDOWS\SYSTEM32\MSDTC.EXE
[6AB66E16AA859232F64DEB66887A8C9C][1 368640 ]C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL
[1C81E1BEA4847F406BBDB74D19721CE6][1 14848 ]C:\WINDOWS\SYSTEM32\MSG711.ACM
[E5B9A2FA94D21C44DA2B898DC326B0C2][1 29184 ]C:\WINDOWS\SYSTEM32\MSGSM32.ACM
[A190DA6546501CB4146BBCC0B6A3F48B][1 128000 ]C:\WINDOWS\SYSTEM32\MSIEXEC.EXE
[45989C268EC2CC9EEA80030AF96CDA5A][1 16384 ]C:\WINDOWS\SYSTEM32\MSRLE32.DLL
[EF12B8385AA2849999008A977918F96B][1 312320 ]C:\WINDOWS\SYSTEM32\MSV1_0.DLL
[69A4347A8EAD86185EFF2F75755176E6][1 38912 ]C:\WINDOWS\SYSTEM32\MSVIDC32.DLL
[1D5185A4C7E6695431AE4B55C3D7D333][1 326144 ]C:\WINDOWS\SYSTEM32\MSWSOCK.DLL
[B94D3DACCF5882B697A1C53D00BE643A][1 25600 ]C:\WINDOWS\SYSTEM32\MSYUV.DLL
[58A0CDABEA255616827B1C22C9994466][1 68096 ]C:\WINDOWS\SYSTEM32\NAPINSP.DLL
[847D3AE376C0817161A14A82C8922A9E][1 360448 ]C:\WINDOWS\SYSTEM32\NETMAN.DLL
[5F28111C648F1E24F7DBC87CDEB091B8][1 459776 ]C:\WINDOWS\SYSTEM32\NETPROFM.DLL
[2DF36F15B2BC1571A6A542A3C2107920][1 70656 ]C:\WINDOWS\SYSTEM32\NLAAPI.DLL
[1EE99A89CC788ADA662441D1E9830529][1 303616 ]C:\WINDOWS\SYSTEM32\NLASVC.DLL
[D54BFDF3E0C953F823B3D0BFE4732528][1 25600 ]C:\WINDOWS\SYSTEM32\NSISVC.DLL
[3556D5A8BF2CC508BDAB51DEC38D7C61][1 1731936 ]C:\WINDOWS\SYSTEM32\NTDLL.DLL
[D60D9BCEAE5870A67E6C167F4681877B][1 5562240 C05620B2A60C874B5DDAE94543106A4EE78BC5E1 ]C:\WINDOWS\SYSTEM32\NTOSKRNL.EXE
[7BBF670114373CE6A203FA155A9E0D0A][1 509952 ]C:\WINDOWS\SYSTEM32\NTSHRUI.DLL
[927463ECB02179F88E4B9A17568C63C3][1 438784 ]C:\WINDOWS\SYSTEM32\P2PSVC.DLL
[3AEAA8B561E63452C655DC0584922257][1 186368 ]C:\WINDOWS\SYSTEM32\PCASVC.DLL
[E08088A97F95345E181C3DFCE2C615EF][1 240640 ]C:\WINDOWS\SYSTEM32\PKU2U.DLL
[C7CF6A6E137463219E1259E3F0F0DD6C][1 1389056 ]C:\WINDOWS\SYSTEM32\PLA.DLL
[613C8CE10A5FDE582BA5FA64C4D56AAA][1 86016 ]C:\WINDOWS\SYSTEM32\PNRPNSP.DLL
[3EAC4455472CC2C97107B5291E0DCAFE][1 327168 ]C:\WINDOWS\SYSTEM32\PNRPSVC.DLL
[5C78838B4D166D1A27DB3A8A820C799A][1 209920 ]C:\WINDOWS\SYSTEM32\PROFSVC.DLL
[908ACB1F594274965A53926B10C81E89][1 187904 ]C:\WINDOWS\SYSTEM32\PROVSVC.DLL
[A3DB3C17EE6CAE65D53602B4E80BCCBC][1 57424 ]C:\WINDOWS\SYSTEM32\PSHED.DLL
[582AC6D9873E31DFA28A4547270862DD][1 476160 ]C:\WINDOWS\SYSTEM32\QAGENTRT.DLL
[1EA7969E3271CBC59E1730697DC74682][1 849920 ]C:\WINDOWS\SYSTEM32\QMGR.DLL
[906191634E99AEA92C4816150BDA3732][1 242688 ]C:\WINDOWS\SYSTEM32\QWAVE.DLL
[88351B29B622B30962D2FEB6CA8D860B][1 16384 ]C:\WINDOWS\SYSTEM32\RASADHLP.DLL
[8F26510C5383B8DBE976DE1CD00FC8C7][1 99328 ]C:\WINDOWS\SYSTEM32\RASAUTO.DLL
[EE867A0870FC9E4972BA9EAAD35651E2][1 344064 ]C:\WINDOWS\SYSTEM32\RASMANS.DLL
[E4D94F24081440B5FC5AA556C7C62702][1 159232 ]C:\WINDOWS\SYSTEM32\REGSVC.DLL
[E4DC58CF7B3EA515AE917FF0D402A7BB][1 67072 ]C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL
[5C627D1B1138676C0A7AB2C2C190D123][1 512000 ]C:\WINDOWS\SYSTEM32\RPCSS.DLL
[DD81D91FF3B0763C392422865C9AC12E][1 45568 ]C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
[9B7395789E3791A3B6D000FE6F8B131E][1 190976 ]C:\WINDOWS\SYSTEM32\SCARDSVR.DLL
[ED78427259134C63ED69804D2132B86C][1 232960 ]C:\WINDOWS\SYSTEM32\SCECLI.DLL
[A199DE544BF5C61C134B22C7592226FC][1 340992 ]C:\WINDOWS\SYSTEM32\SCHANNEL.DLL
[262F6592C3299C005FD6BEC90FC4463A][1 1110016 ]C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL
[6EA4234DC55346E0709560FE7C2C1972][1 170496 ]C:\WINDOWS\SYSTEM32\SDRSVC.DLL
[AD31942BDF3D594C404874613BC2FE4D][1 593408 ]C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE
[BC617A4E1B4FA8DF523A061739A0BD87][1 30720 ]C:\WINDOWS\SYSTEM32\SECLOGON.DLL
[C32AB8FA018EF34C0F113BD501436D21][1 64512 ]C:\WINDOWS\SYSTEM32\SENS.DLL
[0336CFFAFAAB87A11541F1CF1594B2B2][1 29184 ]C:\WINDOWS\SYSTEM32\SENSRSVC.DLL
[0B6231BF38174A1628C4AC812CC75804][1 121856 ]C:\WINDOWS\SYSTEM32\SESSENV.DLL
[26E716ED95DC48CF6E5AC046089366AF][1 14174208 ]C:\WINDOWS\SYSTEM32\SHELL32.DLL
[AAF932B4011D14052955D4B212A4DA8D][1 370688 ]C:\WINDOWS\SYSTEM32\SHSVCS.DLL
[1911A3356FA3F77CCC825CCBAC038C2A][1 112640 ]C:\WINDOWS\SYSTEM32\SMSS.EXE
[6313F223E817CC09AA41811DAA7F541D][1 14336 ]C:\WINDOWS\SYSTEM32\SNMPTRAP.EXE
[B96C17B5DC1424D56EEA3A99E97428CD][1 559104 ]C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[E17E0188BB90FAE42D83E98707EFA59C][1 3524608 ]C:\WINDOWS\SYSTEM32\SPPSVC.EXE
[93D7D61317F3D4BC4F4E9F8A96A7DE45][1 65536 ]C:\WINDOWS\SYSTEM32\SPPUINOTIFY.DLL
[D9F42719019740BAA6D1C6D536CBDAA6][1 236032 ]C:\WINDOWS\SYSTEM32\SRVSVC.DLL
[51B52FBD583CDE8AA9BA62B8B4298F33][1 193024 ]C:\WINDOWS\SYSTEM32\SSDPSRV.DLL
[AB7AEBF58DAD8DAAB7A6C45E6A8885CB][1 75264 ]C:\WINDOWS\SYSTEM32\SSTPSVC.DLL
[C78655BC80301D76ED4FEF1C1EA40A7D][1 27136 ]C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[E08E46FDD841B7184194011CA1955A0B][1 524288 ]C:\WINDOWS\SYSTEM32\SWPRV.DLL
[A10B048B681C38E26CA90CD1BC123604][1 200192 ]C:\WINDOWS\SYSTEM32\SYNCUI.DLL
[BF9CCC0BF39B418C8D0AE8B05CF95B7D][1 1743360 ]C:\WINDOWS\SYSTEM32\SYSMAIN.DLL
[870726CDCC241A92785572628B89CC07][1 82432 ]C:\WINDOWS\SYSTEM32\SYSTEMPROPERTIESPERFORMANCE.EXE
[E3C61FD7B7C2557E1F1B0B4CEC713585][1 92672 ]C:\WINDOWS\SYSTEM32\TABSVC.DLL
[40F0849F65D13EE87B9A9AE3C1DD6823][1 316928 ]C:\WINDOWS\SYSTEM32\TAPISRV.DLL
[09F7401D56F2393C6CA534FF0241A590][1 257024 E8B4D84A28E5EA17272416EC45726964FDF25883 ]C:\WINDOWS\SYSTEM32\TASKMGR.EXE
[1BE03AC720F4D302EA01D40F588162F6][1 65536 ]C:\WINDOWS\SYSTEM32\TBSSVC.DLL
[32A3C8600AF124CBAAD845F13CFAE3CB][6 195072 ]C:\WINDOWS\SYSTEM32\TCPMON.DLL
[2E648163254233755035B46DD7B89123][1 680960 ]C:\WINDOWS\SYSTEM32\TERMSRV.DLL
[F0344071948D1A1FA732231785A0664C][1 44544 ]C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL
[ED32035BDFECED1AD66D459FD9CC1140][1 140632 ]C:\WINDOWS\SYSTEM32\TODDSRV.EXE
[7E7AFD841694F6AC397E99D75CEAD49D][1 119808 ]C:\WINDOWS\SYSTEM32\TRKWKS.DLL
[CEED624D1291081B1B7D921FBB9C61D9][1 14848 ]C:\WINDOWS\SYSTEM32\TSBYUV.DLL
[F29FE765E1448EF371CFE05BFAC74ADB][1 17408 ]C:\WINDOWS\SYSTEM32\TSDDD.DLL
[8A25506B6948EFBD5A7F37E53CCD36D9][1 86016 ]C:\WINDOWS\SYSTEM32\TSPKG.DLL
[3CBDEC8D06B9968ABA702EBA076364A1][1 40960 ]C:\WINDOWS\SYSTEM32\UI0DETECT.EXE
[25FBDEF06C4D92815B353F6E792C8129][1 404480 919B3248572E6AE839B2C6F9864F1869CB2800BB ]C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL
[6BA9D927DDED70BD1A9CADED45F8B184][1 163840 ]C:\WINDOWS\SYSTEM32\UMPO.DLL
[64B328D52DFC8CDA123093E3F6E4C37C][1 323584 ]C:\WINDOWS\SYSTEM32\UNREGMP2.EXE
[D47EC6A8E81633DD18D2436B19BAF6DE][1 353792 ]C:\WINDOWS\SYSTEM32\UPNPHOST.DLL
[DF72A9936D0C3F517083119648814B09][6 45056 ]C:\WINDOWS\SYSTEM32\USBMON.DLL
[FE70103391A64039A921DBFFF9C7AB1B][1 1008128 ]C:\WINDOWS\SYSTEM32\USER32.DLL
[BAFE84E637BF7388C96EF48D4D3FDD53][1 30720 ]C:\WINDOWS\SYSTEM32\USERINIT.EXE
[EDBB23CBCF2CDF727D64FF9B51A6070E][1 38912 ]C:\WINDOWS\SYSTEM32\UXSMS.DLL
[D29E998E8277666982B4F0303BF4E7AF][1 332288 ]C:\WINDOWS\SYSTEM32\UXTHEME.DLL
[8D6B481601D01A456E75C3210F1830BE][1 533504 ]C:\WINDOWS\SYSTEM32\VDS.EXE
[B60BA0BC31B0CB414593E169F6F21CC2][1 1600512 ]C:\WINDOWS\SYSTEM32\VSSVC.EXE
[1C9D80CC3849B3788048078C26486E1A][1 381952 ]C:\WINDOWS\SYSTEM32\W32TIME.DLL
[3CEC96DE223E49EAAE3651FCF8FAEA6C][1 1255736 ]C:\WINDOWS\SYSTEM32\WAT\WATADMINSVC.EXE
[38B84C94C5A8AF291ADFEA478AE54F93][1 203264 ]C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE
[19B07E7E8915D701225DA41CB3877306][1 242688 ]C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL
[78F4E7F5C56CB9716238EB57DA4B6A75][1 1504256 ]C:\WINDOWS\SYSTEM32\WBENGINE.EXE
[3AA101E8EDAB2DB4131333F4325C76A3][1 202240 ]C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL
[7368A2AFD46E5A4481D1DE9D14848EDD][1 367104 ]C:\WINDOWS\SYSTEM32\WCNCSVC.DLL
[20F7441334B18CEE52027661DF4A6129][1 40960 ]C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL
[BF1FC3F79B863C914687A737C2F3D681][1 90624 ]C:\WINDOWS\SYSTEM32\WDI.DLL
[95FB6CA4374E343DDD653FCC43F9D26B][1 210432 ]C:\WINDOWS\SYSTEM32\WDIGEST.DLL
[1473768973453DE50DC738C2955FC4DD][1 217088 ]C:\WINDOWS\SYSTEM32\WDMAUD.DRV
[3DB6D04E1C64272F8B14EB8BC4616280][1 258560 ]C:\WINDOWS\SYSTEM32\WEBCLNT.DLL
[C749025A679C5103E575E3B48E092C43][1 237568 ]C:\WINDOWS\SYSTEM32\WECSVC.DLL
[7E591867422DC788B9E5BD337A669A08][1 84480 ]C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL
[6D137963730144698CBD10F202E9F251][1 76800 ]C:\WINDOWS\SYSTEM32\WERSVC.DLL
[8DD52E8E6128F4B2DA92CE27402871C1][1 580096 ]C:\WINDOWS\SYSTEM32\WIASERVC.DLL
[A8BB4C5B9D529FBE01C90024E0A7820E][1 3135488 035AB0FD1E349FEEAFCB01EEF26A6E38C2618BD5 ]C:\WINDOWS\SYSTEM32\WIN32K.SYS
[58F4493BF748A3A89689997B7BD00E95][1 444416 ]C:\WINDOWS\SYSTEM32\WINHTTP.DLL
[2E2072EB48238FCA8FBB7A9F5FABAC45][1 28672 ]C:\WINDOWS\SYSTEM32\WINRNR.DLL
[851A1382EED3E3A7476DB004F4EE3E1A][1 118784 ]C:\WINDOWS\SYSTEM32\WKSSVC.DLL
[4FADA86E62F18A1B2F42BA18AE24E6AA][1 886784 ]C:\WINDOWS\SYSTEM32\WLANSVC.DLL
[96C6E7100D724C69FCF9E7BF590D1DCA][1 12288 ]C:\WINDOWS\SYSTEM32\WPCSVC.DLL
[93221146D4EBBF314C29B23CD6CC391D][1 117248 ]C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL
[8886E0697B0A93C521F99099EF643450][1 168960 ]C:\WINDOWS\SYSTEM32\WSCRIPT.EXE
[E8B1FE6669397D1772D8196DF0E57A9E][1 97280 ]C:\WINDOWS\SYSTEM32\WSCSVC.DLL
[A1D7E3ADCDB07DDB6F423862DCB1A52B][6 224768 ]C:\WINDOWS\SYSTEM32\WSDMON.DLL
[748849C42DEA24C723048E24BCA1BD55][1 47104 ]C:\WINDOWS\SYSTEM32\WSHBTH.DLL
[BCB1310604AA415C4508708975B3931E][1 2018304 ]C:\WINDOWS\SYSTEM32\WSMSVC.DLL
[9DF12EDBC698B0BC353B3EF84861E430][1 2420736 ]C:\WINDOWS\SYSTEM32\WUAUENG.DLL
[7A95C95B6C4CF292D689106BCAE49543][1 78848 ]C:\WINDOWS\SYSTEM32\WUDFSVC.DLL
[9A3452B3C2A46C073166C5CF49FAD1AE][1 229888 ]C:\WINDOWS\SYSTEM32\WWANSVC.DLL
[43F966BCD94DC323A8FEF49376A2932D][1 22016 ]C:\WINDOWS\SYSTEM32\XRXS1L6.DLL
[241A1900C52DCBA38B20A4F3671444E0][1 1036800 ]C:\WINDOWS\SYSWOW64\D3D8.DLL
[2DFB999E4052060173EF60121931BC83][1 10990592 6D5AF65C933B62D5A30470F87F440C938781A633 ]C:\WINDOWS\SYSWOW64\IEFRAME.DLL
[1C7F1C3EA5894995E6C563E9AE9F029F][1 64000 ]C:\WINDOWS\SYSWOW64\L3CODECA.ACM
[F5B7C30075207A165FF2EED1FF89AB8D][1 5984768 0D52144D95EAADCA31BB31369602E938692C0386 ]C:\WINDOWS\SYSWOW64\MSHTML.DLL
[59D16C3D5CC0D573256A01783ED5CCB4][1 2291712 ]C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL
[703FFD301AB900B047337C5D40FD6F96][1 90112 ]C:\WINDOWS\SYSWOW64\OLEPRO32.DLL
[E495E408C93141E8FC72DC0C6046DDFA][1 20992 ]C:\WINDOWS\SYSWOW64\PERFHOST.EXE
[1973A8AC903115B3B60E1A53C1B014E6][1 1230848 E368A29B88F3BF18DE449CCECF3F9EAD1192F02E ]C:\WINDOWS\SYSWOW64\URLMON.DLL
[A55E7D0D873B2C97585B3B5926AC6ADE][1 225672 ]C:\WINDOWS\WINDOWSMOBILE\RAPIMGR.DLL
[8BDA6DB43AA54E8BB5E0794541DDC209][1 443784 ]C:\WINDOWS\WINDOWSMOBILE\WCESCOMM.DLL
[B430E89B1E00A6B1C8058908C3AFE580][1 594200 8517ACDC7620784DBD732A6F2727A404BAA37DD2 ]D:\UNHACKME\HACKMON.EXE
[692F3B313ED3304D82EC2146D0BC556F][1 8158016 5C84341FC3473EAE6AB5ABF23BCE87E50A60BE29 ]D:\UNHACKME\REANIMATOR.EXE
[54876E78ACCCA41A44005785EF020E87][1 1398040 DABE2070F0B0AD4D997D5FC5F9A9952A962BF69C ]D:\UNHACKME\UNHACKME.EXE
[ -2][0 -1 ]ICCVID.DLL
[ -2][0 -1 ]SIRENACM.DLL
[ -2][0 -1 ]TWORZENIE ELEMENTU LISTY PRZENOŚNE — ULUBIONE
[ -2][0 -1 ]UTWÓRZ ELEMENT LISTY PRZENOŚNE — ULUBIONE...
===
[MBR]
[MD5=004BC502E8A0AB7DDDB5C2C67E1CDFEE]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===
[/log]

Wklejać log z OTL?

wirusolog
komentarz
komentarz

Skanowałeś płytą ratunkową od Kasperskiego?
Pokaż te logi z OTL.

elsaper
komentarz
komentarz

LOG OTL:

[log]OTL logfile created on: 2011-07-12 23:56:23 - Run 2
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,30 Gb Available Physical Memory | 45,31% Memory free
5,73 Gb Paging File | 3,94 Gb Available in Paging File | 68,72% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 93,95 Gb Free Space | 63,04% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 121,33 Gb Free Space | 81,62% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
PRC - [2011-07-04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011-06-24 08:25:50 | 001,012,792 | ---- | M] (Google Inc.) -- C:\Users\MAX-BUD\AppData\Local\Google\Chrome\Application\chrome.exe
PRC - [2011-05-18 10:53:10 | 000,594,200 | ---- | M] (Greatis Software) -- D:\UnHackMe\hackmon.exe
PRC - [2011-05-10 21:00:04 | 000,328,206 | ---- | M] (Kadu Team) -- D:\Kadu\kadu.exe
PRC - [2011-04-08 12:59:52 | 000,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
PRC - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
PRC - [2009-07-14 03:14:31 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rundll32.exe
PRC - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
PRC - [2009-01-13 21:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
MOD - [2011-07-04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2011-05-24 12:40:05 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dll
MOD - [2011-05-24 12:39:38 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dll
MOD - [2011-02-25 07:34:36 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dll
MOD - [2010-11-20 14:24:35 | 001,292,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dll
MOD - [2010-11-20 14:21:36 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dll
MOD - [2010-11-20 14:21:34 | 001,128,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dll
MOD - [2010-11-20 14:21:33 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dll
MOD - [2010-11-20 14:21:24 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dll
MOD - [2010-11-20 14:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dll
MOD - [2010-11-20 14:21:19 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dll
MOD - [2010-11-20 14:21:15 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dll
MOD - [2010-11-20 14:21:14 | 001,667,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dll
MOD - [2010-11-20 14:21:07 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dll
MOD - [2010-11-20 14:20:57 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dll
MOD - [2010-11-20 14:20:49 | 001,414,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dll
MOD - [2010-11-20 14:20:49 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dll
MOD - [2010-11-20 14:18:23 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll
MOD - [2010-11-20 14:18:03 | 000,295,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dll
MOD - [2010-11-20 14:18:02 | 000,640,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dll
MOD - [2010-11-20 14:16:50 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drv
MOD - [2010-11-20 14:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dll
MOD - [2010-11-20 14:08:57 | 000,663,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dll
MOD - [2010-11-20 14:08:57 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dll
MOD - [2010-11-20 14:08:56 | 000,837,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dll
MOD - [2010-11-20 14:08:56 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dll
MOD - [2010-11-20 14:08:51 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dll
MOD - [2010-11-20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dll
MOD - [2010-11-20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dll
MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dll
MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dll
MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dll
MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dll
MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dll
MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dll
MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dll
MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dll
MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dll
MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dll
MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dll
MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dll
MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msscript.ocx
MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dll
MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2009-08-27 13:38:22 | 000,251,760 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:[b]64bit:[/b] - [2009-08-05 14:20:12 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:[b]64bit:[/b] - [2009-08-04 11:15:06 | 000,826,224 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:[b]64bit:[/b] - [2009-08-03 18:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:[b]64bit:[/b] - [2009-07-28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009-08-17 10:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009-08-10 19:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO)
SRV - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2007-05-31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2009-08-27 08:07:06 | 007,369,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2009-08-20 16:04:06 | 000,446,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187B.sys -- (RTL8187B)
DRV:[b]64bit:[/b] - [2009-08-13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp)
DRV:[b]64bit:[/b] - [2009-07-30 21:02:36 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:[b]64bit:[/b] - [2009-07-30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:[b]64bit:[/b] - [2009-07-30 17:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:[b]64bit:[/b] - [2009-07-24 15:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:[b]64bit:[/b] - [2009-07-20 17:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009-07-14 15:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2009-07-14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009-07-10 06:45:12 | 000,139,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R)
DRV:[b]64bit:[/b] - [2009-06-22 17:06:38 | 000,035,008 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:[b]64bit:[/b] - [2009-06-20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2009-06-19 19:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-06-04 18:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009-05-22 22:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2011-07-12 22:33:21 | 000,035,816 | ---- | M] (Greatis Software) [Kernel | Boot | Stopped] -- C:\Windows\system32\drivers\Partizan.sys -- (Partizan)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSEH&bmod=TSEH
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://174.37.200.81
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\URLSearchHook: {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Users\MAX-BUD\AppData\Local\Google\Update\1.2.183.23\npGoogleOneClick8.dll (Google Inc.)


[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Extensions
[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Firefox\Profiles\62mh5x8i.default\extensions
File not found (No name found) -- C:\PROGRAM FILES (X86)\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION

O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\Toolbar\WebBrowser: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - No CLSID value found.
O3 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\Toolbar\WebBrowser: (no name) - {C86EB8A9-CCC2-4B6C-B75D-73576ED591BF} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [SmartFaceVWatcher] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TWebCamera] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] File not found
O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 62.179.1.62
O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-02-02 01:51:14 | 000,018,366 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O33 - MountPoints2\{8409af20-4b3a-11e0-91dc-0026223e77bd}\Shell - "" = AutoRun
O33 - MountPoints2\{8409af20-4b3a-11e0-91dc-0026223e77bd}\Shell\AutoRun\command - "" = F:\NokiaPCIA_Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (Partizan) - C:\Windows\SysWow64\Partizan.exe (Greatis Software)
O34 - HKLM BootExecute: (ootExecute settings...) - File not found
O34 - HKLM BootExecute: (ount) - File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*



SafeBootMin:[b]64bit:[/b] AppMgmt - Service
SafeBootMin:[b]64bit:[/b] Base - Driver Group
SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group
SafeBootMin:[b]64bit:[/b] File system - Driver Group
SafeBootMin:[b]64bit:[/b] Filter - Driver Group
SafeBootMin:[b]64bit:[/b] HelpSvc - Service
SafeBootMin:[b]64bit:[/b] mcmscsvc - Service
SafeBootMin:[b]64bit:[/b] MCODS - Service
SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group
SafeBootMin:[b]64bit:[/b] sacsvr - Service
SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] vmms - Service
SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: mcmscsvc - Service
SafeBootMin: MCODS - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:[b]64bit:[/b] AppMgmt - Service
SafeBootNet:[b]64bit:[/b] Base - Driver Group
SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group
SafeBootNet:[b]64bit:[/b] File system - Driver Group
SafeBootNet:[b]64bit:[/b] Filter - Driver Group
SafeBootNet:[b]64bit:[/b] HelpSvc - Service
SafeBootNet:[b]64bit:[/b] mcmscsvc - Service
SafeBootNet:[b]64bit:[/b] MCODS - Service
SafeBootNet:[b]64bit:[/b] MpfService - Service
SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group
SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group
SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group
SafeBootNet:[b]64bit:[/b] Network - Driver Group
SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group
SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group
SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group
SafeBootNet:[b]64bit:[/b] rdsessmgr - Service
SafeBootNet:[b]64bit:[/b] sacsvr - Service
SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group
SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] TDI - Driver Group
SafeBootNet:[b]64bit:[/b] vmms - Service
SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver
SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: mcmscsvc - Service
SafeBootNet: MCODS - Service
SafeBootNet: MpfService - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-07-12 22:33:21 | 000,035,816 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-12 22:10:34 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-12 22:07:35 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-12 22:07:08 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\RegRun2
[2011-07-12 22:07:06 | 000,012,808 | ---- | C] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\regruninfo
[2011-07-12 20:40:00 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\323302159318639.exe
[2011-07-12 20:39:49 | 000,516,096 | -H-- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\edbdtbht.exe
[2011-07-12 20:38:56 | 000,012,288 | RHS- | C] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\2557944966991.exe
[2011-07-12 20:20:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2011-07-12 20:13:40 | 000,012,288 | -H-- | C] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\msndhf.exe
[2011-07-12 20:13:39 | 000,012,288 | RHS- | C] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\16641158213571.exe
[2011-07-12 18:14:32 | 000,012,288 | RHS- | C] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\235412431228693.exe
[2011-07-12 16:35:30 | 000,012,288 | RHS- | C] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\15081827522510.exe
[2011-07-12 16:35:25 | 000,012,288 | RHS- | C] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\16529306315699.exe
[2011-07-12 09:30:28 | 000,101,889 | -H-- | C] (India Balinese Enrico Friday) -- C:\Users\MAX-BUD\AppData\Roaming\u.exe
[2011-07-12 09:27:23 | 000,107,009 | -H-- | C] (Garth Ginsburg Haley Arkansas) -- C:\Users\MAX-BUD\AppData\Roaming\ubrber.exe
[2011-07-12 08:33:10 | 000,012,289 | RHS- | C] (Alvarez Lynchburg Helen Ecuador Platte) -- C:\Users\MAX-BUD\AppData\Roaming\209632443018749.exe
[2011-07-12 08:33:06 | 000,012,289 | -H-- | C] (Alvarez Lynchburg Helen Ecuador Platte) -- C:\Users\MAX-BUD\AppData\Roaming\dvbrn.exe
[2011-07-11 18:23:40 | 000,012,289 | RHS- | C] (Roentgen Doria Dirac Batavia Helen) -- C:\Users\MAX-BUD\AppData\Roaming\15248247081066.exe
[2011-07-11 18:23:24 | 000,954,369 | -H-- | C] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\mdbserby.exe
[2011-07-11 17:16:39 | 000,012,289 | -H-- | C] (Roentgen Doria Dirac Batavia Helen) -- C:\Users\MAX-BUD\AppData\Roaming\wsvwsvdtjkbh.exe
[2011-07-11 17:16:34 | 000,012,289 | RHS- | C] (Roentgen Doria Dirac Batavia Helen) -- C:\Users\MAX-BUD\AppData\Roaming\1310412926391.exe
[2011-07-11 14:54:23 | 000,175,617 | -H-- | C] (Longfellow Ferdinand Stanhope Carolina) -- C:\Users\MAX-BUD\AppData\Roaming\grghooh.exe
[2011-07-11 14:54:18 | 000,012,289 | RHS- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\604824228528.exe
[2011-07-11 14:20:20 | 000,012,289 | RHS- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\1267817344621.exe
[2011-07-11 14:20:16 | 000,954,369 | -H-- | C] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\dbljkyh.exe
[2011-07-11 14:20:12 | 000,954,369 | RHS- | C] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\28116274407000.exe
[2011-07-11 14:18:16 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011-07-11 13:29:00 | 000,513,537 | -H-- | C] (Akers Jackman Hanover Rhodesia) -- C:\Users\MAX-BUD\AppData\Roaming\bsbklr.exe
[2011-07-11 13:28:25 | 000,012,289 | RHS- | C] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\113792238620881.exe
[2011-07-10 23:54:06 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1669950157977.exe
[2011-07-10 22:39:52 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\158371156010143.exe
[2011-07-10 22:21:51 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\120252480421057.exe
[2011-07-10 22:21:48 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\12138303659490.exe
[2011-07-10 19:16:53 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\243042037119215.exe
[2011-07-10 19:16:51 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\17266792813307.exe
[2011-07-10 19:16:49 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\24011113144647.exe
[2011-07-10 18:05:27 | 000,516,096 | -H-- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\654654.exe
[2011-07-10 17:11:55 | 000,516,096 | RHS- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\19267523121528.exe
[2011-07-10 17:01:38 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1846132183427.exe
[2011-07-10 14:55:48 | 000,516,096 | -H-- | C] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\btmc.exe
[2011-07-09 22:41:37 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\31304257522626.exe
[2011-07-09 21:19:10 | 000,510,465 | -H-- | C] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\berfge.exe
[2011-07-09 21:19:09 | 000,000,000 | -H-D | C] -- C:\Cache
[2011-07-09 21:18:57 | 000,012,289 | RHS- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\179672163715022.exe
[2011-07-09 21:18:51 | 000,012,289 | -H-- | C] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\fdns.exe
[2011-07-09 19:56:14 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\220981598027753.exe
[2011-07-09 19:38:43 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\1287165150.exe
[2011-07-09 18:04:42 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\11094890622125.exe
[2011-07-09 18:04:35 | 000,012,289 | -H-- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\gdns.exe
[2011-07-08 23:30:35 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\32681281584145.exe
[2011-07-08 22:54:39 | 000,012,289 | RHS- | C] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\93221794810267.exe
[2011-07-08 12:14:53 | 000,012,289 | RHS- | C] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\16367310928888.exe
[2011-07-08 11:46:48 | 000,012,289 | RHS- | C] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\185513254030552.exe
[2011-07-07 19:37:48 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\182441095326510.exe
[2011-07-07 13:16:50 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\7821220125876.exe
[2011-07-07 10:55:40 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\99211623310306.exe
[2011-07-07 10:49:12 | 000,012,289 | RHS- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\60811860520586.exe
[2011-07-07 10:49:10 | 000,012,289 | -H-- | C] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\dh.exe
[2011-07-06 15:29:32 | 000,012,289 | RHS- | C] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\63151208611676.exe
[2011-07-06 15:29:21 | 000,012,289 | -H-- | C] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\dn.exe
[2011-07-05 16:30:09 | 000,012,289 | RHS- | C] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\23766359119203.exe
[2011-07-05 14:31:17 | 000,012,289 | -H-- | C] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\down.exe
[2011-07-02 15:17:20 | 000,012,289 | RHS- | C] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13481650225252.exe
[2011-07-02 13:28:59 | 000,012,289 | RHS- | C] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13333279027201.exe
[2011-07-02 13:28:40 | 000,012,289 | -H-- | C] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\djklhjhr.exe
[2011-07-01 20:14:44 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011-07-01 20:13:20 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011-07-01 19:54:18 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Odebrane pliki
[2011-07-01 19:13:11 | 000,012,289 | RHS- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2517217418876.exe
[2011-07-01 15:34:14 | 000,012,289 | RHS- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\1601846773014.exe
[2011-07-01 14:14:22 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011-07-01 14:13:18 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011-07-01 10:49:15 | 000,012,289 | RHS- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2604740433041.exe
[2011-06-30 19:53:55 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94533097315523.exe
[2011-06-30 17:34:48 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\127861323819012.exe
[2011-06-30 14:06:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegCleaner
[2011-06-30 13:56:54 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\210111278612278.exe
[2011-06-30 13:47:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-30 13:47:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Error Fix
[2011-06-30 13:44:26 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\194732620126686.exe
[2011-06-30 13:24:12 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94281359224605.exe
[2011-06-30 12:09:59 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27283287722729.exe
[2011-06-30 10:36:53 | 000,012,289 | RHS- | C] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27358809210311.exe
[2011-06-30 09:42:42 | 000,012,289 | -H-- | C] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\dl.exe
[2011-06-30 09:31:09 | 000,057,344 | RHS- | C] ( ) -- C:\Users\MAX-BUD\AppData\Roaming\MSNMessengerAPI.dll
[2011-06-30 09:31:07 | 000,192,000 | -H-- | C] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\ircbot123.exe
[2011-06-30 09:26:41 | 000,192,000 | -H-- | C] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\Bot2324.exe
[2011-06-29 22:30:13 | 000,000,000 | RHSD | C] -- C:\Users\MAX-BUD\AppData\Roaming\Google Update
[2011-06-29 09:33:51 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cfgmgr32.dll
[2011-06-29 09:33:50 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-06-29 09:33:50 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-06-28 15:35:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011-06-28 15:35:22 | 000,288,088 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-06-28 15:35:22 | 000,022,360 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-06-28 15:35:18 | 000,031,064 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-06-28 15:35:16 | 000,045,400 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-06-28 15:35:13 | 000,600,920 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-06-28 15:34:58 | 000,064,856 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-06-28 15:34:55 | 000,253,888 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-06-28 15:33:02 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-06-28 15:33:01 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011-06-27 13:24:06 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2011-06-26 18:48:19 | 000,000,000 | ---D | C] -- C:\Windupdt
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Ytuby
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2011-06-26 15:06:11 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\WINSYS32
[2011-06-25 22:13:41 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\nvidia
[2011-06-22 20:40:55 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Favorites
[2011-06-16 17:10:50 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011-06-16 17:10:30 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011-06-16 17:10:30 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011-06-16 17:10:27 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011-06-16 17:10:27 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011-06-16 17:10:19 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011-06-12 19:06:05 | 000,086,016 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 13:33:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Cutter
[2011-06-12 13:33:03 | 000,140,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx
[2011-06-12 11:48:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Mortal Kombat 3
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Downloads
[2011-06-06 17:56:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 14:57:39 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\EurekaLog
[2011-06-06 14:57:34 | 008,989,184 | -H-- | C] (Creative Team S.A.) -- C:\Users\MAX-BUD\Desktop\AQQ.exe
[2011-06-04 17:31:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011-06-02 00:36:37 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2011-06-02 00:36:37 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2011-06-02 00:36:28 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011-06-02 00:36:23 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011-06-02 00:36:23 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2011-06-02 00:36:23 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011-06-02 00:36:23 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011-06-02 00:36:21 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011-06-02 00:36:17 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011-06-02 00:36:17 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011-06-02 00:36:17 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011-06-02 00:36:15 | 001,465,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2011-06-02 00:36:14 | 002,314,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011-06-02 00:36:13 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2011-06-02 00:36:12 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011-06-02 00:36:12 | 000,902,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2011-06-02 00:36:11 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmcndmgr.dll
[2011-06-02 00:36:11 | 001,731,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011-06-02 00:36:11 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2011-06-02 00:36:10 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2011-06-02 00:36:10 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2011-06-02 00:36:10 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2011-06-02 00:36:10 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2011-06-02 00:36:09 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xpsservices.dll
[2011-06-02 00:36:09 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2011-06-02 00:36:09 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011-06-02 00:36:09 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2011-06-02 00:36:08 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2011-06-02 00:36:08 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011-06-02 00:36:08 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011-06-02 00:36:07 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
[2011-06-02 00:36:07 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011-06-02 00:36:06 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizui.dll
[2011-06-02 00:36:05 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2011-06-02 00:36:05 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RacEngn.dll
[2011-06-02 00:36:05 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagperf.dll
[2011-06-02 00:36:05 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskschd.dll
[2011-06-02 00:36:04 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011-06-02 00:36:04 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2011-06-02 00:36:03 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vssapi.dll
[2011-06-02 00:36:03 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011-06-02 00:36:03 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011-06-02 00:36:03 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NaturalLanguage6.dll
[2011-06-02 00:36:02 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2011-06-02 00:36:02 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011-06-02 00:36:01 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011-06-02 00:36:01 | 002,872,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2011-06-02 00:35:59 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVCORE.DLL
[2011-06-02 00:35:59 | 001,698,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2011-06-02 00:35:59 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011-06-02 00:35:59 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011-06-02 00:35:58 | 001,544,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2011-06-02 00:35:58 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spinstall.exe
[2011-06-02 00:35:58 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2011-06-02 00:35:58 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spreview.exe
[2011-06-02 00:35:58 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpdd.dll
[2011-06-02 00:35:58 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011-06-02 00:35:57 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSAT.exe
[2011-06-02 00:35:57 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2011-06-02 00:35:57 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011-06-02 00:35:56 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll
[2011-06-02 00:35:56 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2011-06-02 00:35:55 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011-06-02 00:35:55 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011-06-02 00:35:53 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll
[2011-06-02 00:35:53 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2011-06-02 00:35:52 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2011-06-02 00:35:51 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011-06-02 00:35:51 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2011-06-02 00:35:51 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2011-06-02 00:35:51 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2011-06-02 00:35:51 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011-06-02 00:35:49 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2011-06-02 00:35:49 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2011-06-02 00:35:49 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqmapi.dll
[2011-06-02 00:35:48 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2fs.dll
[2011-06-02 00:35:48 | 001,076,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011-06-02 00:35:48 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2011-06-02 00:35:48 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netlogon.dll
[2011-06-02 00:35:47 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2011-06-02 00:35:47 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupapi.dll
[2011-06-02 00:35:47 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011-06-02 00:35:47 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll
[2011-06-02 00:35:47 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011-06-02 00:35:46 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2011-06-02 00:35:46 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\werconcpl.dll
[2011-06-02 00:35:46 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbc32.dll
[2011-06-02 00:35:46 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskeng.exe
[2011-06-02 00:35:45 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certmgr.dll
[2011-06-02 00:35:45 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011-06-02 00:35:45 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2011-06-02 00:35:45 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011-06-02 00:35:44 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2011-06-02 00:35:44 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011-06-02 00:35:44 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2011-06-02 00:35:44 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011-06-02 00:35:44 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011-06-02 00:35:44 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2011-06-02 00:35:43 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdtctm.dll
[2011-06-02 00:35:43 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011-06-02 00:35:43 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2011-06-02 00:35:43 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shlwapi.dll
[2011-06-02 00:35:43 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll
[2011-06-02 00:35:43 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedynos.dll
[2011-06-02 00:35:43 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2011-06-02 00:35:42 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netshell.dll
[2011-06-02 00:35:42 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011-06-02 00:35:42 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011-06-02 00:35:41 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2011-06-02 00:35:41 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011-06-02 00:35:41 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2011-06-02 00:35:41 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2011-06-02 00:35:41 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2011-06-02 00:35:41 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2011-06-02 00:35:41 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2011-06-02 00:35:41 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.exe
[2011-06-02 00:35:41 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ws2_32.dll
[2011-06-02 00:35:40 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011-06-02 00:35:40 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpps.dll
[2011-06-02 00:35:40 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
[2011-06-02 00:35:40 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2011-06-02 00:35:39 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
[2011-06-02 00:35:39 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Query.dll
[2011-06-02 00:35:39 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroles.dll
[2011-06-02 00:35:39 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011-06-02 00:35:39 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011-06-02 00:35:39 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QAGENT.DLL
[2011-06-02 00:35:39 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011-06-02 00:35:38 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Vault.dll
[2011-06-02 00:35:38 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll
[2011-06-02 00:35:38 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmd.exe
[2011-06-02 00:35:38 | 000,281,600 | ---- | C] (Microsoft) -- C:\Windows\SysNative\DShowRdpFilter.dll
[2011-06-02 00:35:37 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011-06-02 00:35:37 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011-06-02 00:35:37 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2011-06-02 00:35:37 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpksetup.exe
[2011-06-02 00:35:37 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011-06-02 00:35:35 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011-06-02 00:35:35 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011-06-02 00:35:35 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2011-06-02 00:35:35 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sxs.dll
[2011-06-02 00:35:35 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011-06-02 00:35:35 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011-06-02 00:35:34 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskcomp.dll
[2011-06-02 00:35:34 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2011-06-02 00:35:34 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wldap32.dll
[2011-06-02 00:35:34 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcbuilder.exe
[2011-06-02 00:35:33 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011-06-02 00:35:33 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pnidui.dll
[2011-06-02 00:35:33 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipsmsnap.dll
[2011-06-02 00:35:33 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011-06-02 00:35:33 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgprint.dll
[2011-06-02 00:35:33 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011-06-02 00:35:33 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2011-06-02 00:35:29 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011-06-02 00:35:29 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webservices.dll
[2011-06-02 00:35:29 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlsrv32.dll
[2011-06-02 00:35:29 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011-06-02 00:35:29 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011-06-02 00:35:29 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2011-06-02 00:35:29 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011-06-02 00:35:28 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011-06-02 00:35:28 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2011-06-02 00:35:28 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fveapi.dll
[2011-06-02 00:35:28 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011-06-02 00:35:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011-06-02 00:35:28 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3api.dll
[2011-06-02 00:35:27 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011-06-02 00:35:27 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanpref.dll
[2011-06-02 00:35:27 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMNetMgr.dll
[2011-06-02 00:35:27 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcmde.dll
[2011-06-02 00:35:27 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2011-06-02 00:35:27 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2011-06-02 00:35:27 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schtasks.exe
[2011-06-02 00:35:27 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prncache.dll
[2011-06-02 00:35:26 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011-06-02 00:35:26 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2011-06-02 00:35:26 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2011-06-02 00:35:26 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnike.dll
[2011-06-02 00:35:26 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2011-06-02 00:35:26 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011-06-02 00:35:26 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\userenv.dll
[2011-06-02 00:35:25 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncCenter.dll
[2011-06-02 00:35:25 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppobjs.dll
[2011-06-02 00:35:25 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll
[2011-06-02 00:35:25 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2011-06-02 00:35:25 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011-06-02 00:35:25 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2011-06-02 00:35:25 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedyn.dll
[2011-06-02 00:35:24 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPEncEn.dll
[2011-06-02 00:35:24 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpeffects.dll
[2011-06-02 00:35:24 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2011-06-02 00:35:24 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2011-06-02 00:35:23 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localsec.dll
[2011-06-02 00:35:23 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011-06-02 00:35:23 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSATAPI.dll
[2011-06-02 00:35:23 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011-06-02 00:35:23 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011-06-02 00:35:23 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2011-06-02 00:35:23 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011-06-02 00:35:23 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fde.dll
[2011-06-02 00:35:22 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netdiagfx.dll
[2011-06-02 00:35:22 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2011-06-02 00:35:22 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2011-06-02 00:35:22 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2011-06-02 00:35:22 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netid.dll
[2011-06-02 00:35:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011-06-02 00:35:21 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2011-06-02 00:35:21 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011-06-02 00:35:21 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\biocpl.dll
[2011-06-02 00:35:21 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msinfo32.exe
[2011-06-02 00:35:21 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tcpipcfg.dll
[2011-06-02 00:35:21 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spp.dll
[2011-06-02 00:35:21 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSHVHOST.DLL
[2011-06-02 00:35:21 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011-06-02 00:35:21 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011-06-02 00:35:20 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011-06-02 00:35:20 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2011-06-02 00:35:20 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mspbda.dll
[2011-06-02 00:35:20 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scansetting.dll
[2011-06-02 00:35:20 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011-06-02 00:35:19 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2011-06-02 00:35:19 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PhotoScreensaver.scr
[2011-06-02 00:35:19 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011-06-02 00:35:19 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wusa.exe
[2011-06-02 00:35:19 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IPHLPAPI.DLL
[2011-06-02 00:35:19 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitagent.exe
[2011-06-02 00:35:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011-06-02 00:35:18 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011-06-02 00:35:18 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscms.dll
[2011-06-02 00:35:18 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011-06-02 00:35:18 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2011-06-02 00:35:18 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011-06-02 00:35:18 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2011-06-02 00:35:18 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011-06-02 00:35:18 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011-06-02 00:35:17 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2011-06-02 00:35:17 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FirewallControlPanel.dll
[2011-06-02 00:35:17 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011-06-02 00:35:17 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppwinob.dll
[2011-06-02 00:35:17 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisptis.exe
[2011-06-02 00:35:17 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011-06-02 00:35:17 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2011-06-02 00:35:17 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetup.exe
[2011-06-02 00:35:16 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2011-06-02 00:35:16 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011-06-02 00:35:16 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXP.dll
[2011-06-02 00:35:16 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011-06-02 00:35:16 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetapi.dll
[2011-06-02 00:35:15 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011-06-02 00:35:15 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmsys.cpl
[2011-06-02 00:35:15 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
[2011-06-02 00:35:15 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011-06-02 00:35:15 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2011-06-02 00:35:15 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2011-06-02 00:35:15 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2011-06-02 00:35:15 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011-06-02 00:35:15 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprapi.dll
[2011-06-02 00:35:15 | 000,128,000 | ---- | C] (Microsoft) -- C:\Windows\SysNative\Robocopy.exe
[2011-06-02 00:35:14 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011-06-02 00:35:14 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DxpTaskSync.dll
[2011-06-02 00:35:14 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PerfCenterCPL.dll
[2011-06-02 00:35:14 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll
[2011-06-02 00:35:14 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011-06-02 00:35:14 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2011-06-02 00:35:14 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\thumbcache.dll
[2011-06-02 00:35:13 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themeui.dll
[2011-06-02 00:35:13 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011-06-02 00:35:13 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXPTaskRingtone.dll
[2011-06-02 00:35:13 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2011-06-02 00:35:13 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onex.dll
[2011-06-02 00:35:13 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scecli.dll
[2011-06-02 00:35:13 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys
[2011-06-02 00:35:13 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2011-06-02 00:35:13 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll
[2011-06-02 00:35:13 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011-06-02 00:35:13 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2011-06-02 00:35:12 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011-06-02 00:35:12 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011-06-02 00:35:12 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011-06-02 00:35:12 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2011-06-02 00:35:12 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011-06-02 00:35:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011-06-02 00:35:11 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdc.dll
[2011-06-02 00:35:11 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlangpui.dll
[2011-06-02 00:35:11 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2011-06-02 00:35:11 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2011-06-02 00:35:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011-06-02 00:35:11 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011-06-02 00:35:10 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcenter.dll
[2011-06-02 00:35:10 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdengin2.dll
[2011-06-02 00:35:10 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2011-06-02 00:35:10 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2011-06-02 00:35:10 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StructuredQuery.dll
[2011-06-02 00:35:10 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiadefui.dll
[2011-06-02 00:35:10 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2011-06-02 00:35:10 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dskquoui.dll
[2011-06-02 00:35:10 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011-06-02 00:35:10 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011-06-02 00:35:10 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samcli.dll
[2011-06-02 00:35:10 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011-06-02 00:35:09 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2011-06-02 00:35:09 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011-06-02 00:35:09 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011-06-02 00:35:09 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011-06-02 00:35:09 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011-06-02 00:35:09 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srchadmin.dll
[2011-06-02 00:35:09 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011-06-02 00:35:09 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011-06-02 00:35:09 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2011-06-02 00:35:09 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011-06-02 00:35:09 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QUTIL.DLL
[2011-06-02 00:35:09 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\regapi.dll
[2011-06-02 00:35:08 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011-06-02 00:35:08 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011-06-02 00:35:08 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appwiz.cpl
[2011-06-02 00:35:08 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TabletPC.cpl
[2011-06-02 00:35:08 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011-06-02 00:35:08 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2011-06-02 00:35:08 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2011-06-02 00:35:08 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2011-06-02 00:35:08 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011-06-02 00:35:08 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011-06-02 00:35:08 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupcl.exe
[2011-06-02 00:35:08 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2011-06-02 00:35:08 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011-06-02 00:35:07 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgcpl.dll
[2011-06-02 00:35:07 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msconfig.exe
[2011-06-02 00:35:07 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netiohlp.dll
[2011-06-02 00:35:07 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011-06-02 00:35:07 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mimefilt.dll
[2011-06-02 00:35:06 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2011-06-02 00:35:06 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\basecsp.dll
[2011-06-02 00:35:06 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdeploy.dll
[2011-06-02 00:35:06 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsmproxy.dll
[2011-06-02 00:35:05 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011-06-02 00:35:05 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011-06-02 00:35:05 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011-06-02 00:35:05 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011-06-02 00:35:05 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011-06-02 00:35:05 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mtxclu.dll
[2011-06-02 00:35:05 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011-06-02 00:35:05 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011-06-02 00:35:05 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011-06-02 00:35:05 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011-06-02 00:35:05 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2011-06-02 00:35:04 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011-06-02 00:35:04 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched20.dll
[2011-06-02 00:35:04 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011-06-02 00:35:04 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscmmc.dll
[2011-06-02 00:35:03 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themecpl.dll
[2011-06-02 00:35:03 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011-06-02 00:35:03 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011-06-02 00:35:03 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercpl.dll
[2011-06-02 00:35:03 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eudcedit.exe
[2011-06-02 00:35:03 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sharemediacpl.dll
[2011-06-02 00:35:03 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011-06-02 00:35:03 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoncli.dll
[2011-06-02 00:35:03 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nci.dll
[2011-06-02 00:35:03 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RpcRtRemote.dll
[2011-06-02 00:35:02 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SensorsCpl.dll
[2011-06-02 00:35:02 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Narrator.exe
[2011-06-02 00:35:02 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011-06-02 00:35:02 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011-06-02 00:35:02 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll
[2011-06-02 00:35:02 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netjoin.dll
[2011-06-02 00:35:02 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011-06-02 00:35:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011-06-02 00:35:02 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011-06-02 00:35:02 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011-06-02 00:35:02 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnikeapi.dll
[2011-06-02 00:35:01 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoconv.exe
[2011-06-02 00:35:01 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autochk.exe
[2011-06-02 00:35:01 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autofmt.exe
[2011-06-02 00:35:01 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011-06-02 00:35:01 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2011-06-02 00:35:01 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshipsec.dll
[2011-06-02 00:35:01 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011-06-02 00:35:01 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011-06-02 00:35:01 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll
[2011-06-02 00:35:01 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011-06-02 00:35:01 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011-06-02 00:35:01 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2011-06-02 00:35:01 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2011-06-02 00:35:01 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2011-06-02 00:35:01 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011-06-02 00:35:01 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011-06-02 00:35:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011-06-02 00:35:00 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdclt.exe
[2011-06-02 00:35:00 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpd_ci.dll
[2011-06-02 00:35:00 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011-06-02 00:35:00 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanui.dll
[2011-06-02 00:35:00 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011-06-02 00:35:00 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011-06-02 00:35:00 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2011-06-02 00:35:00 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011-06-02 00:35:00 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011-06-02 00:35:00 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011-06-02 00:35:00 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011-06-02 00:35:00 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys
[2011-06-02 00:35:00 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdsrv.dll
[2011-06-02 00:35:00 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prntvpt.dll
[2011-06-02 00:35:00 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll
[2011-06-02 00:34:59 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011-06-02 00:34:59 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2011-06-02 00:34:59 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011-06-02 00:34:59 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontext.dll
[2011-06-02 00:34:59 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011-06-02 00:34:59 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2011-06-02 00:34:59 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011-06-02 00:34:59 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprddm.dll
[2011-06-02 00:34:59 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011-06-02 00:34:59 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011-06-02 00:34:59 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011-06-02 00:34:59 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2011-06-02 00:34:59 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011-06-02 00:34:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2011-06-02 00:34:58 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011-06-02 00:34:58 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mblctr.exe
[2011-06-02 00:34:58 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\batmeter.dll
[2011-06-02 00:34:57 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011-06-02 00:34:57 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DiagCpl.dll
[2011-06-02 00:34:57 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011-06-02 00:34:57 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011-06-02 00:34:57 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usercpl.dll
[2011-06-02 00:34:57 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011-06-02 00:34:57 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011-06-02 00:34:57 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011-06-02 00:34:57 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpsrcwp.dll
[2011-06-02 00:34:57 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011-06-02 00:34:57 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rtutils.dll
[2011-06-02 00:34:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011-06-02 00:34:56 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bootres.dll
[2011-06-02 00:34:56 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:56 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksproxy.ax
[2011-06-02 00:34:56 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011-06-02 00:34:56 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSTPager.ax
[2011-06-02 00:34:55 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011-06-02 00:34:55 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011-06-02 00:34:55 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpccpl.dll
[2011-06-02 00:34:55 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011-06-02 00:34:55 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxdiagn.dll
[2011-06-02 00:34:55 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011-06-02 00:34:55 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2011-06-02 00:34:55 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rasppp.dll
[2011-06-02 00:34:55 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3cfg.dll
[2011-06-02 00:34:54 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnfldr.dll
[2011-06-02 00:34:54 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011-06-02 00:34:54 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011-06-02 00:34:54 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pdh.dll
[2011-06-02 00:34:54 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011-06-02 00:34:54 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskmgr.exe
[2011-06-02 00:34:54 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011-06-02 00:34:54 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2011-06-02 00:34:54 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011-06-02 00:34:54 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hbaapi.dll
[2011-06-02 00:34:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\proquota.exe
[2011-06-02 00:34:53 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\accessibilitycpl.dll
[2011-06-02 00:34:53 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011-06-02 00:34:53 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\untfs.dll
[2011-06-02 00:34:53 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAC3ENC.DLL
[2011-06-02 00:34:53 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011-06-02 00:34:53 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011-06-02 00:34:53 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2011-06-02 00:34:53 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2011-06-02 00:34:53 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011-06-02 00:34:53 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011-06-02 00:34:53 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDShServiceObj.dll
[2011-06-02 00:34:53 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011-06-02 00:34:52 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011-06-02 00:34:52 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011-06-02 00:34:52 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011-06-02 00:34:52 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011-06-02 00:34:51 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011-06-02 00:34:51 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\zipfldr.dll
[2011-06-02 00:34:51 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slui.exe
[2011-06-02 00:34:51 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2011-06-02 00:34:51 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011-06-02 00:34:51 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\defaultlocationcpl.dll
[2011-06-02 00:34:51 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011-06-02 00:34:51 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011-06-02 00:34:50 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011-06-02 00:34:50 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sud.dll
[2011-06-02 00:34:50 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DeviceCenter.dll
[2011-06-02 00:34:50 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011-06-02 00:34:50 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011-06-02 00:34:50 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011-06-02 00:34:50 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mpeg2Data.ax
[2011-06-02 00:34:50 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011-06-02 00:34:49 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkmap.dll
[2011-06-02 00:34:49 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2011-06-02 00:34:49 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2011-06-02 00:34:49 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011-06-02 00:34:49 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011-06-02 00:34:49 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2011-06-02 00:34:49 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2011-06-02 00:34:49 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011-06-02 00:34:49 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskbarcpl.dll
[2011-06-02 00:34:49 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OnLineIDCpl.dll
[2011-06-02 00:34:49 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011-06-02 00:34:49 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twext.dll
[2011-06-02 00:34:49 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011-06-02 00:34:48 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011-06-02 00:34:48 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OobeFldr.dll
[2011-06-02 00:34:48 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011-06-02 00:34:48 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011-06-02 00:34:48 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011-06-02 00:34:48 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011-06-02 00:34:48 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroleui.dll
[2011-06-02 00:34:48 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011-06-02 00:34:48 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl
[2011-06-02 00:34:48 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdedit.exe
[2011-06-02 00:34:48 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011-06-02 00:34:48 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxlib.dll
[2011-06-02 00:34:48 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recovery.dll
[2011-06-02 00:34:48 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011-06-02 00:34:48 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2011-06-02 00:34:48 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011-06-02 00:34:47 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011-06-02 00:34:47 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdcpl.dll
[2011-06-02 00:34:47 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bthprops.cpl
[2011-06-02 00:34:47 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsuiext.dll
[2011-06-02 00:34:47 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011-06-02 00:34:47 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MediaMetadataHandler.dll
[2011-06-02 00:34:47 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011-06-02 00:34:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011-06-02 00:34:47 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\efscore.dll
[2011-06-02 00:34:47 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syncui.dll
[2011-06-02 00:34:47 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VBICodec.ax
[2011-06-02 00:34:47 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cca.dll
[2011-06-02 00:34:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\isoburn.exe
[2011-06-02 00:34:47 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011-06-02 00:34:47 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tzutil.exe
[2011-06-02 00:34:47 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sisbkup.dll
[2011-06-02 00:34:46 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011-06-02 00:34:46 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011-06-02 00:34:46 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011-06-02 00:34:46 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2011-06-02 00:34:46 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shwebsvc.dll
[2011-06-02 00:34:46 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\systemcpl.dll
[2011-06-02 00:34:46 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2011-06-02 00:34:46 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recdisc.exe
[2011-06-02 00:34:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011-06-02 00:34:46 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysclass.dll
[2011-06-02 00:34:46 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netplwiz.dll
[2011-06-02 00:34:46 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011-06-02 00:34:46 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011-06-02 00:34:46 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoplay.dll
[2011-06-02 00:34:46 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptui.dll
[2011-06-02 00:34:46 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpapi.dll
[2011-06-02 00:34:46 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2011-06-02 00:34:45 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011-06-02 00:34:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011-06-02 00:34:45 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenterCPL.dll
[2011-06-02 00:34:45 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizeng.dll
[2011-06-02 00:34:45 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011-06-02 00:34:45 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011-06-02 00:34:45 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011-06-02 00:34:45 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:45 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFPlay.dll
[2011-06-02 00:34:45 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011-06-02 00:34:45 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011-06-02 00:34:45 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksxbar.ax
[2011-06-02 00:34:44 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysmon.ocx
[2011-06-02 00:34:44 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\termmgr.dll
[2011-06-02 00:34:44 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011-06-02 00:34:44 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011-06-02 00:34:44 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011-06-02 00:34:44 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsutil.dll
[2011-06-02 00:34:44 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011-06-02 00:34:43 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011-06-02 00:34:43 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2011-06-02 00:34:43 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011-06-02 00:34:43 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll
[2011-06-02 00:34:43 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2011-06-02 00:34:43 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sethc.exe
[2011-06-02 00:34:43 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011-06-02 00:34:43 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011-06-02 00:34:43 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011-06-02 00:34:43 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011-06-02 00:34:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011-06-02 00:34:43 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntlanman.dll
[2011-06-02 00:34:43 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011-06-02 00:34:43 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2011-06-02 00:34:43 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011-06-02 00:34:42 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011-06-02 00:34:42 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlcese30.dll
[2011-06-02 00:34:42 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011-06-02 00:34:42 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011-06-02 00:34:42 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ssText3d.scr
[2011-06-02 00:34:42 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdm.tsp
[2011-06-02 00:34:42 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011-06-02 00:34:42 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iTVData.dll
[2011-06-02 00:34:42 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iprtrmgr.dll
[2011-06-02 00:34:42 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011-06-02 00:34:42 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011-06-02 00:34:42 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011-06-02 00:34:42 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011-06-02 00:34:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011-06-02 00:34:42 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011-06-02 00:34:42 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UserAccountControlSettings.dll
[2011-06-02 00:34:42 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpd3d.dll
[2011-06-02 00:34:42 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2011-06-02 00:34:42 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2011-06-02 00:34:42 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011-06-02 00:34:41 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011-06-02 00:34:41 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2011-06-02 00:34:41 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011-06-02 00:34:41 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2011-06-02 00:34:41 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011-06-02 00:34:41 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wavemsp.dll
[2011-06-02 00:34:41 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011-06-02 00:34:41 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srvcli.dll
[2011-06-02 00:34:41 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nslookup.exe
[2011-06-02 00:34:41 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011-06-02 00:34:41 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011-06-02 00:34:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011-06-02 00:34:41 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011-06-02 00:34:40 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011-06-02 00:34:40 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011-06-02 00:34:40 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011-06-02 00:34:40 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011-06-02 00:34:40 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2011-06-02 00:34:40 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011-06-02 00:34:40 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srrstr.dll
[2011-06-02 00:34:40 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011-06-02 00:34:40 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DevicePairingFolder.dll
[2011-06-02 00:34:40 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011-06-02 00:34:40 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdboot.exe
[2011-06-02 00:34:40 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2011-06-02 00:34:40 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011-06-02 00:34:40 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppnp.dll
[2011-06-02 00:34:40 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acppage.dll
[2011-06-02 00:34:39 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkexplorer.dll
[2011-06-02 00:34:39 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011-06-02 00:34:39 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsquirt.exe
[2011-06-02 00:34:39 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011-06-02 00:34:39 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011-06-02 00:34:39 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011-06-02 00:34:39 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\remotepg.dll
[2011-06-02 00:34:39 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011-06-02 00:34:39 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabinet.dll
[2011-06-02 00:34:39 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011-06-02 00:34:39 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wkscli.dll
[2011-06-02 00:34:39 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011-06-02 00:34:38 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2011-06-02 00:34:38 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfrgui.exe
[2011-06-02 00:34:38 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011-06-02 00:34:38 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011-06-02 00:34:38 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011-06-02 00:34:38 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011-06-02 00:34:38 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011-06-02 00:34:38 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSCard.dll
[2011-06-02 00:34:38 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kstvtune.ax
[2011-06-02 00:34:38 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011-06-02 00:34:38 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe
[2011-06-02 00:34:37 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2011-06-02 00:34:37 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011-06-02 00:34:37 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmdev.dll
[2011-06-02 00:34:37 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wvc.dll
[2011-06-02 00:34:37 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011-06-02 00:34:37 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpdxm.dll
[2011-06-02 00:34:37 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011-06-02 00:34:37 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsqmcons.exe
[2011-06-02 00:34:37 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011-06-02 00:34:37 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2011-06-02 00:34:37 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011-06-02 00:34:37 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\net1.exe
[2011-06-02 00:34:37 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsnmp32.dll
[2011-06-02 00:34:37 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011-06-02 00:34:37 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFaultSecure.exe
[2011-06-02 00:34:36 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OpcServices.dll
[2011-06-02 00:34:36 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Bubbles.scr
[2011-06-02 00:34:36 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011-06-02 00:34:36 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011-06-02 00:34:36 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011-06-02 00:34:36 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011-06-02 00:34:36 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011-06-02 00:34:36 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2011-06-02 00:34:36 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapistub.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapi32.dll
[2011-06-02 00:34:36 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011-06-02 00:34:36 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011-06-02 00:34:35 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\main.cpl
[2011-06-02 00:34:35 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskraid.exe
[2011-06-02 00:34:35 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011-06-02 00:34:35 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mystify.scr
[2011-06-02 00:34:35 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Ribbons.scr
[2011-06-02 00:34:35 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011-06-02 00:34:35 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011-06-02 00:34:35 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011-06-02 00:34:35 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2011-06-02 00:34:35 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ifsutil.dll
[2011-06-02 00:34:35 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011-06-02 00:34:35 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011-06-02 00:34:35 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011-06-02 00:34:35 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdmat.dll
[2011-06-02 00:34:35 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsium.dll
[2011-06-02 00:34:35 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011-06-02 00:34:34 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011-06-02 00:34:34 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2011-06-02 00:34:34 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011-06-02 00:34:34 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011-06-02 00:34:34 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011-06-02 00:34:34 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll
[2011-06-02 00:34:34 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011-06-02 00:34:34 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perfmon.exe
[2011-06-02 00:34:34 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpshell.dll
[2011-06-02 00:34:34 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011-06-02 00:34:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011-06-02 00:34:34 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011-06-02 00:34:34 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011-06-02 00:34:34 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\muifontsetup.dll
[2011-06-02 00:34:33 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll
[2011-06-02 00:34:33 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSAPI.dll
[2011-06-02 00:34:33 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011-06-02 00:34:33 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011-06-02 00:34:33 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011-06-02 00:34:33 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qasf.dll
[2011-06-02 00:34:33 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionQueue.dll
[2011-06-02 00:34:33 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011-06-02 00:34:33 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011-06-02 00:34:33 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011-06-02 00:34:33 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2011-06-02 00:34:33 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tlscsp.dll
[2011-06-02 00:34:33 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\umb.dll
[2011-06-02 00:34:33 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\runonce.exe
[2011-06-02 00:34:33 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPCRYPT.DLL
[2011-06-02 00:34:33 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011-06-02 00:34:33 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AzSqlExt.dll
[2011-06-02 00:34:33 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netutils.dll
[2011-06-02 00:34:32 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMADMOD.DLL
[2011-06-02 00:34:32 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011-06-02 00:34:32 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\raschap.dll
[2011-06-02 00:34:32 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011-06-02 00:34:32 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011-06-02 00:34:32 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdwcn.dll
[2011-06-02 00:34:32 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011-06-02 00:34:32 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsbas.dll
[2011-06-02 00:34:32 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011-06-02 00:34:32 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MdSched.exe
[2011-06-02 00:34:32 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiavideo.dll
[2011-06-02 00:34:32 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011-06-02 00:34:32 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011-06-02 00:34:32 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011-06-02 00:34:32 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011-06-02 00:34:32 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintIsolationProxy.dll
[2011-06-02 00:34:32 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011-06-02 00:34:32 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011-06-02 00:34:32 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syssetup.dll
[2011-06-02 00:34:31 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011-06-02 00:34:31 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVSDECD.DLL
[2011-06-02 00:34:31 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nltest.exe
[2011-06-02 00:34:31 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstask.dll
[2011-06-02 00:34:31 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsadmin.exe
[2011-06-02 00:34:31 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011-06-02 00:34:31 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011-06-02 00:34:31 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011-06-02 00:34:31 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011-06-02 00:34:31 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
[2011-06-02 00:34:31 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Kswdmcap.ax
[2011-06-02 00:34:31 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011-06-02 00:34:31 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011-06-02 00:34:31 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-06-02 00:34:31 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011-06-02 00:34:30 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011-06-02 00:34:30 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmnet.dll
[2011-06-02 00:34:30 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011-06-02 00:34:30 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011-06-02 00:34:30 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDSp.dll
[2011-06-02 00:34:30 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2011-06-02 00:34:30 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011-06-02 00:34:30 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011-06-02 00:34:30 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011-06-02 00:34:30 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qcap.dll
[2011-06-02 00:34:30 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011-06-02 00:34:30 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shacct.dll
[2011-06-02 00:34:30 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSVRMGMT.DLL
[2011-06-02 00:34:30 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011-06-02 00:34:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011-06-02 00:34:30 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011-06-02 00:34:30 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
[2011-06-02 00:34:30 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2011-06-02 00:34:30 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011-06-02 00:34:30 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tabcal.exe
[2011-06-02 00:34:30 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vss_ps.dll
[2011-06-02 00:34:30 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011-06-02 00:34:30 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscapi.dll
[2011-06-02 00:34:30 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011-06-02 00:34:30 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011-06-02 00:34:29 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011-06-02 00:34:29 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011-06-02 00:34:29 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011-06-02 00:34:29 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3ui.dll
[2011-06-02 00:34:29 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011-06-02 00:34:29 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdv.dll
[2011-06-02 00:34:29 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011-06-02 00:34:29 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011-06-02 00:34:29 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2011-06-02 00:34:29 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fphc.dll
[2011-06-02 00:34:29 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011-06-02 00:34:29 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011-06-02 00:34:29 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011-06-02 00:34:29 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spbcd.dll
[2011-06-02 00:34:29 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011-06-02 00:34:29 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011-06-02 00:34:29 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011-06-02 00:34:28 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10.IME
[2011-06-02 00:34:28 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011-06-02 00:34:28 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2011-06-02 00:34:28 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011-06-02 00:34:28 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011-06-02 00:34:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011-06-02 00:34:28 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011-06-02 00:34:28 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011-06-02 00:34:28 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EhStorAPI.dll
[2011-06-02 00:34:28 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011-06-02 00:34:28 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\desk.cpl
[2011-06-02 00:34:28 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011-06-02 00:34:28 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011-06-02 00:34:28 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011-06-02 00:34:28 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011-06-02 00:34:28 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011-06-02 00:34:28 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011-06-02 00:34:28 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\amstream.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011-06-02 00:34:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011-06-02 00:34:28 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011-06-02 00:34:28 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\takeown.exe
[2011-06-02 00:34:28 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PnPUnattend.exe
[2011-06-02 00:34:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011-06-02 00:34:28 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011-06-02 00:34:28 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011-06-02 00:34:27 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2011-06-02 00:34:27 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011-06-02 00:34:27 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011-06-02 00:34:27 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011-06-02 00:34:27 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011-06-02 00:34:27 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2011-06-02 00:34:27 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011-06-02 00:34:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011-06-02 00:34:27 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011-06-02 00:34:27 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011-06-02 00:34:27 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmstp.exe
[2011-06-02 00:34:27 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QCLIPROV.DLL
[2011-06-02 00:34:27 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011-06-02 00:34:27 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2011-06-02 00:34:27 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertPolEng.dll
[2011-06-02 00:34:27 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WavDest.dll
[2011-06-02 00:34:27 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\djoin.exe
[2011-06-02 00:34:27 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimgvw.dll
[2011-06-02 00:34:27 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\HotStartUserAgent.dll
[2011-06-02 00:34:27 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nrpsrv.dll
[2011-06-02 00:34:26 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011-06-02 00:34:26 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSDvbNP.ax
[2011-06-02 00:34:26 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdProxy.dll
[2011-06-02 00:34:26 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011-06-02 00:34:26 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011-06-02 00:34:26 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011-06-02 00:34:25 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011-06-02 00:34:25 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011-06-02 00:34:25 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MultiDigiMon.exe
[2011-06-02 00:34:25 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011-06-02 00:34:24 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mydocs.dll
[2011-06-02 00:34:24 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\g711codc.ax
[2011-06-02 00:34:23 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011-06-02 00:34:23 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\itircl.dll
[2011-06-02 00:34:23 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011-06-02 00:34:23 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskpart.exe
[2011-06-02 00:34:23 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsicli.exe
[2011-06-02 00:34:23 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011-06-02 00:34:23 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011-06-02 00:34:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011-06-02 00:34:23 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3msm.dll
[2011-06-02 00:34:23 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mobsync.exe
[2011-06-02 00:34:23 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011-06-02 00:34:23 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011-06-02 00:34:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2011-06-02 00:34:23 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2011-06-02 00:34:23 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011-06-02 00:34:23 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbisurf.ax
[2011-06-02 00:34:23 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
[2011-06-02 00:34:23 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011-06-02 00:34:23 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdmo.dll
[2011-06-02 00:34:23 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011-06-02 00:34:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011-06-02 00:34:23 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BWUnpairElevated.dll
[2011-06-02 00:34:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sscore.dll
[2011-06-02 00:34:22 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011-06-02 00:34:22 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSTIFF.dll
[2011-06-02 00:34:22 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011-06-02 00:34:22 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011-06-02 00:34:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011-06-02 00:34:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011-06-02 00:34:22 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011-06-02 00:34:22 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\findstr.exe
[2011-06-02 00:34:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011-06-02 00:34:22 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011-06-02 00:34:22 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011-06-02 00:34:22 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciqtz32.dll
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\choice.exe
[2011-06-02 00:34:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011-06-02 00:34:22 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2011-06-02 00:34:22 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011-06-02 00:34:22 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011-06-02 00:34:22 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011-06-02 00:34:21 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onexui.dll
[2011-06-02 00:34:21 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011-06-02 00:34:21 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011-06-02 00:34:21 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppc.dll
[2011-06-02 00:34:21 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011-06-02 00:34:21 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011-06-02 00:34:21 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\manage-bde.exe
[2011-06-02 00:34:21 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011-06-02 00:34:21 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011-06-02 00:34:21 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetmib1.dll
[2011-06-02 00:34:21 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011-06-02 00:34:21 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011-06-02 00:34:21 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\luainstall.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdiasqmmodule.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011-06-02 00:34:21 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schedcli.dll
[2011-06-02 00:34:21 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011-06-02 00:34:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011-06-02 00:34:20 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RDPENCDD.dll
[2011-06-02 00:34:20 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011-06-02 00:34:20 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbcconf.dll
[2011-06-02 00:34:20 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011-06-02 00:34:20 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\repair-bde.exe
[2011-06-02 00:34:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011-06-02 00:34:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2011-06-02 00:34:20 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011-06-02 00:34:20 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011-06-02 00:34:20 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\profprov.dll
[2011-06-02 00:34:20 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2011-06-02 00:34:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011-06-02 00:34:20 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011-06-02 00:34:20 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011-06-02 00:34:20 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spopk.dll
[2011-06-02 00:34:20 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fixmapi.exe
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSMON.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011-06-02 00:34:19 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011-06-02 00:34:19 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011-06-02 00:34:19 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys
[2011-06-02 00:34:19 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elsTrans.dll
[2011-06-02 00:34:19 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TRAPI.dll
[2011-06-02 00:34:19 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011-06-02 00:34:19 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011-06-02 00:34:18 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\napdsnap.dll
[2011-06-02 00:34:18 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011-06-02 00:34:18 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsauth.dll
[2011-06-02 00:34:18 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscdll.dll
[2011-06-02 00:34:18 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LogonUI.exe
[2011-06-02 00:34:18 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsperf.dll
[2011-06-02 00:34:18 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdprefdrvapi.dll
[2011-06-02 00:34:18 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011-06-02 00:34:18 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011-06-02 00:34:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011-06-02 00:34:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSUNATD.exe
[2011-06-02 00:34:18 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011-06-02 00:34:18 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011-06-02 00:34:17 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011-06-02 00:34:17 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imkr80.ime
[2011-06-02 00:34:17 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011-06-02 00:34:17 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2011-06-02 00:34:17 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2011-06-02 00:34:17 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shgina.dll
[2011-06-02 00:34:17 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsdchngr.dll
[2011-06-02 00:34:17 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011-06-02 00:34:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011-06-02 00:34:16 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011-06-02 00:34:16 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011-06-02 00:34:16 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011-06-02 00:34:16 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011-06-02 00:34:16 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshirda.dll
[2011-06-02 00:34:16 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011-06-02 00:34:16 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011-06-02 00:34:15 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011-06-02 00:34:15 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched32.dll
[2011-06-02 00:34:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcfgex.dll
[2011-06-02 00:34:15 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2011-06-02 00:34:14 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2011-06-02 00:34:13 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shunimpl.dll
[2011-06-02 00:34:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011-06-02 00:34:11 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSG.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGKL.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDPO.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDNEPR.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTAM.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINBEN.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011-06-02 00:34:10 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011-06-02 00:34:09 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
[2011-06-02 00:34:09 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BlbEvents.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pifmgr.dll
[2011-06-02 00:34:09 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUS.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMON.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnaddr.dll
[2011-06-02 00:34:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011-06-02 00:33:54 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011-06-02 00:33:54 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011-06-02 00:33:51 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011-06-02 00:33:51 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011-06-02 00:32:23 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wbemcomn.dll
[2011-06-02 00:32:23 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmicmiplugin.dll
[2011-06-02 00:32:15 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmiEngine.dll
[2011-06-02 00:32:13 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PkgMgr.exe
[2011-06-02 00:32:04 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drvstore.dll
[2011-06-02 00:32:04 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpx.dll
[2011-06-01 20:58:17 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Marcin
[2011-05-31 17:59:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Last.fm
[2011-05-31 17:58:32 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\Last.fm
[2011-05-31 17:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Last.fm
[2011-05-31 17:03:29 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2011-05-31 17:03:28 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2011-05-31 17:02:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2011-05-31 17:02:54 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Winamp
[2011-05-31 14:18:06 | 000,000,000 | ---D | C] -- C:\Max -bud i inne
[2011-05-22 08:31:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady
[2011-05-22 08:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\RDRM
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla
[2011-05-22 08:04:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011-05-22 08:04:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
[2011-05-22 08:03:31 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-07-13 00:01:26 | 008,650,752 | -HS- | M] () -- C:\Users\MAX-BUD\NTUSER.DAT
[2011-07-12 23:39:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA.job
[2011-07-12 22:40:20 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-07-12 22:40:20 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-07-12 22:33:21 | 000,035,816 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-12 22:32:44 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2011-07-12 22:32:31 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-07-12 22:32:28 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-12 22:31:47 | 001,583,555 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Local\IconCache.db
[2011-07-12 22:10:34 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-12 22:07:35 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\winstart.bat
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:31:27 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\amsfh.exe
[2011-07-12 21:19:24 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\msvuiet.exe
[2011-07-12 21:19:20 | 000,000,539 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\18921434225788.exe
[2011-07-12 21:17:58 | 000,516,096 | -H-- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\edbdtbht.exe
[2011-07-12 21:12:03 | 000,007,625 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 20:40:00 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\323302159318639.exe
[2011-07-12 20:38:56 | 000,012,288 | RHS- | M] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\2557944966991.exe
[2011-07-12 20:38:08 | 000,012,288 | -H-- | M] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\msndhf.exe
[2011-07-12 20:13:39 | 000,012,288 | RHS- | M] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\16641158213571.exe
[2011-07-12 18:14:33 | 000,012,288 | RHS- | M] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\235412431228693.exe
[2011-07-12 17:00:49 | 000,031,232 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\21466544531486.exe
[2011-07-12 16:39:01 | 000,001,014 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core.job
[2011-07-12 16:35:30 | 000,012,288 | RHS- | M] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\15081827522510.exe
[2011-07-12 16:35:28 | 000,031,232 | ---- | M] () -- C:\Users\MAX-BUD\ojztp.exe
[2011-07-12 16:35:25 | 000,012,288 | RHS- | M] (McMullen Abernathy Bertie Memphis) -- C:\Users\MAX-BUD\AppData\Roaming\16529306315699.exe
[2011-07-12 15:19:03 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\189052276619832.exe
[2011-07-12 15:09:02 | 000,000,539 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\43711973721996.exe
[2011-07-12 14:54:28 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\6985885219473.exe
[2011-07-12 14:43:16 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\149161630520953.exe
[2011-07-12 14:30:18 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\gikjc.exe
[2011-07-12 14:30:18 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\46923005931929.exe
[2011-07-12 14:24:19 | 000,000,539 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\24341124769761.exe
[2011-07-12 14:19:06 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\18745270782678.exe
[2011-07-12 14:10:53 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\elroo.exe
[2011-07-12 14:10:53 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\2562927451486.exe
[2011-07-12 14:00:29 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\43251715424742.exe
[2011-07-12 10:07:50 | 000,031,233 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\heverfg.exe
[2011-07-12 10:07:28 | 000,031,233 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\21909299779505.exe
[2011-07-12 09:53:45 | 000,031,232 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\herpf.exe
[2011-07-12 09:53:43 | 000,031,232 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\3142142235755.exe
[2011-07-12 09:32:21 | 000,031,232 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\149393104413688.exe
[2011-07-12 09:32:05 | 000,031,232 | -H-- | M] () -- C:\Users\MAX-BUD\lxbrb.exe
[2011-07-12 09:31:21 | 000,101,889 | -H-- | M] (India Balinese Enrico Friday) -- C:\Users\MAX-BUD\AppData\Roaming\u.exe
[2011-07-12 09:27:24 | 000,107,009 | -H-- | M] (Garth Ginsburg Haley Arkansas) -- C:\Users\MAX-BUD\AppData\Roaming\ubrber.exe
[2011-07-12 09:01:11 | 000,031,232 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\19920203763738.exe
[2011-07-12 09:01:09 | 000,031,232 | -H-- | M] () -- C:\Users\MAX-BUD\gpxda.exe
[2011-07-12 09:00:13 | 000,070,104 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-12 08:33:10 | 000,012,289 | RHS- | M] (Alvarez Lynchburg Helen Ecuador Platte) -- C:\Users\MAX-BUD\AppData\Roaming\209632443018749.exe
[2011-07-12 08:33:06 | 000,012,289 | -H-- | M] (Alvarez Lynchburg Helen Ecuador Platte) -- C:\Users\MAX-BUD\AppData\Roaming\dvbrn.exe
[2011-07-11 18:23:42 | 000,012,289 | -H-- | M] (Roentgen Doria Dirac Batavia Helen) -- C:\Users\MAX-BUD\AppData\Roaming\wsvwsvdtjkbh.exe
[2011-07-11 18:23:40 | 000,012,289 | RHS- | M] (Roentgen Doria Dirac Batavia Helen) -- C:\Users\MAX-BUD\AppData\Roaming\15248247081066.exe
[2011-07-11 18:23:24 | 000,954,369 | -H-- | M] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\mdbserby.exe
[2011-07-11 17:17:04 | 000,513,537 | -H-- | M] (Akers Jackman Hanover Rhodesia) -- C:\Users\MAX-BUD\AppData\Roaming\bsbklr.exe
[2011-07-11 17:16:59 | 000,175,617 | -H-- | M] (Longfellow Ferdinand Stanhope Carolina) -- C:\Users\MAX-BUD\AppData\Roaming\grghooh.exe
[2011-07-11 17:16:34 | 000,012,289 | RHS- | M] (Roentgen Doria Dirac Batavia Helen) -- C:\Users\MAX-BUD\AppData\Roaming\1310412926391.exe
[2011-07-11 16:56:59 | 000,000,539 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\153931646125128.exe
[2011-07-11 16:56:56 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 16:31:21 | 000,000,539 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\169331579214395.exe
[2011-07-11 15:20:55 | 000,000,539 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\17530183810593.exe
[2011-07-11 14:54:18 | 000,012,289 | RHS- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\604824228528.exe
[2011-07-11 14:20:20 | 000,012,289 | RHS- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\1267817344621.exe
[2011-07-11 14:20:17 | 000,954,369 | -H-- | M] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\dbljkyh.exe
[2011-07-11 14:20:12 | 000,954,369 | RHS- | M] (Varitype Verlag Earthman Irene) -- C:\Users\MAX-BUD\AppData\Roaming\28116274407000.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-11 13:28:26 | 000,012,289 | RHS- | M] (Pearson Beecham Ghent Peterson Gerald) -- C:\Users\MAX-BUD\AppData\Roaming\113792238620881.exe
[2011-07-10 23:54:06 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1669950157977.exe
[2011-07-10 23:54:04 | 000,012,289 | -H-- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\fdns.exe
[2011-07-10 22:39:52 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\158371156010143.exe
[2011-07-10 22:21:54 | 000,516,096 | -H-- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\654654.exe
[2011-07-10 22:21:51 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\120252480421057.exe
[2011-07-10 22:21:48 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\12138303659490.exe
[2011-07-10 19:16:53 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\243042037119215.exe
[2011-07-10 19:16:51 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\17266792813307.exe
[2011-07-10 19:16:49 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\24011113144647.exe
[2011-07-10 17:11:55 | 000,516,096 | RHS- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\19267523121528.exe
[2011-07-10 17:11:54 | 000,516,096 | -H-- | M] (Company) -- C:\Users\MAX-BUD\AppData\Roaming\btmc.exe
[2011-07-10 17:01:53 | 000,510,465 | -H-- | M] (Bismarck Oxonian Marcia Jacqueline) -- C:\Users\MAX-BUD\AppData\Roaming\berfge.exe
[2011-07-10 17:01:39 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\1846132183427.exe
[2011-07-09 22:41:37 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\31304257522626.exe
[2011-07-09 21:18:57 | 000,012,289 | RHS- | M] (Steuben Styrofoam Bernardo Doric Bizet) -- C:\Users\MAX-BUD\AppData\Roaming\179672163715022.exe
[2011-07-09 19:56:14 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\220981598027753.exe
[2011-07-09 19:53:32 | 000,012,289 | -H-- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\gdns.exe
[2011-07-09 19:38:43 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\1287165150.exe
[2011-07-09 18:04:42 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\11094890622125.exe
[2011-07-09 12:38:22 | 000,073,551 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-09 00:38:07 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-07-09 00:38:07 | 000,687,828 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-07-09 00:38:07 | 000,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-07-09 00:38:07 | 000,131,382 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-07-09 00:38:07 | 000,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-07-08 23:30:35 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\32681281584145.exe
[2011-07-08 22:54:39 | 000,012,289 | RHS- | M] (Schiller Riviera Frederic Bennett Mississippian) -- C:\Users\MAX-BUD\AppData\Roaming\93221794810267.exe
[2011-07-08 20:14:00 | 000,000,688 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\107011213622616.exe
[2011-07-08 12:14:53 | 000,012,289 | RHS- | M] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\16367310928888.exe
[2011-07-08 11:46:48 | 000,012,289 | RHS- | M] (Nazism Angola Diocletian Northampton) -- C:\Users\MAX-BUD\AppData\Roaming\185513254030552.exe
[2011-07-07 19:37:48 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\182441095326510.exe
[2011-07-07 13:16:51 | 000,012,289 | -H-- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\dh.exe
[2011-07-07 13:16:50 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\7821220125876.exe
[2011-07-07 10:55:40 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\99211623310306.exe
[2011-07-07 10:49:12 | 000,012,289 | RHS- | M] (Heuser Shulman Alger Haines Burundi) -- C:\Users\MAX-BUD\AppData\Roaming\60811860520586.exe
[2011-07-06 15:29:32 | 000,012,289 | RHS- | M] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\63151208611676.exe
[2011-07-06 15:29:22 | 000,012,289 | -H-- | M] (Nestor Oneida Ahmadabad Islamabad Pittsburgh) -- C:\Users\MAX-BUD\AppData\Roaming\dn.exe
[2011-07-05 16:30:09 | 000,012,289 | RHS- | M] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\23766359119203.exe
[2011-07-05 16:29:55 | 000,012,289 | -H-- | M] (Hesperus Bess Lysenko Rosalie) -- C:\Users\MAX-BUD\AppData\Roaming\down.exe
[2011-07-04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-07-04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-07-04 13:43:42 | 000,253,888 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-07-04 13:36:56 | 000,600,920 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-07-04 13:36:54 | 000,288,088 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-07-04 13:35:28 | 000,045,400 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-07-04 13:32:35 | 000,031,064 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-07-04 13:32:14 | 000,022,360 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-07-03 01:33:08 | 005,794,489 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-02 15:17:20 | 000,012,289 | RHS- | M] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13481650225252.exe
[2011-07-02 15:17:14 | 000,012,289 | -H-- | M] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\djklhjhr.exe
[2011-07-02 13:28:59 | 000,012,289 | RHS- | M] (Agatha Alden Ludwig Rafael Greenwich) -- C:\Users\MAX-BUD\AppData\Roaming\13333279027201.exe
[2011-07-01 20:16:38 | 001,590,098 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 19:13:11 | 000,012,289 | RHS- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2517217418876.exe
[2011-07-01 19:13:07 | 000,012,289 | -H-- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\dl.exe
[2011-07-01 15:34:14 | 000,012,289 | RHS- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\1601846773014.exe
[2011-07-01 14:39:06 | 000,467,528 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011-07-01 14:28:20 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011-07-01 14:28:19 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011-07-01 12:58:15 | 000,000,000 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\92203030914209.exe
[2011-07-01 10:49:15 | 000,012,289 | RHS- | M] (Aldrich Vida Poseidon Francis Rhea) -- C:\Users\MAX-BUD\AppData\Roaming\2604740433041.exe
[2011-07-01 10:42:26 | 000,000,522 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-30 19:53:55 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94533097315523.exe
[2011-06-30 17:34:48 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\127861323819012.exe
[2011-06-30 13:56:54 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\210111278612278.exe
[2011-06-30 13:44:26 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\194732620126686.exe
[2011-06-30 13:24:12 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\94281359224605.exe
[2011-06-30 12:09:59 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27283287722729.exe
[2011-06-30 10:36:53 | 000,012,289 | RHS- | M] (Vaudois Haney Ditzel Janos Burch) -- C:\Users\MAX-BUD\AppData\Roaming\27358809210311.exe
[2011-06-30 09:37:02 | 000,192,000 | -H-- | M] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\Bot2324.exe
[2011-06-30 09:31:09 | 000,057,344 | RHS- | M] ( ) -- C:\Users\MAX-BUD\AppData\Roaming\MSNMessengerAPI.dll
[2011-06-30 09:31:08 | 000,192,000 | -H-- | M] (Microsoft® Windows® Operating System) -- C:\Users\MAX-BUD\AppData\Roaming\ircbot123.exe
[2011-06-28 15:35:23 | 000,001,848 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-27 14:08:43 | 000,000,688 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-27 10:34:28 | 000,000,985 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\logs.dat
[2011-06-26 19:03:21 | 000,584,153 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\ctfmon.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
[2011-05-26 20:56:21 | 000,000,000 | ---- | M] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-26 16:38:12 | 000,000,698 | ---- | M] () -- C:\Windows\Thps3.INI
[2011-05-24 12:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-05-24 12:37:54 | 000,252,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-05-22 08:03:31 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2011-05-18 10:53:18 | 000,012,808 | ---- | M] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-07-12 22:07:10 | 000,000,002 | RHS- | C] () -- C:\Windows\winstart.bat
[2011-07-12 22:07:10 | 000,000,002 | RHS- | C] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:39:31 | 001,583,555 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Local\IconCache.db
[2011-07-12 21:19:20 | 000,000,539 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\18921434225788.exe
[2011-07-12 21:12:03 | 000,007,625 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 20:38:53 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\msvuiet.exe
[2011-07-12 20:10:12 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\amsfh.exe
[2011-07-12 17:00:49 | 000,031,232 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\21466544531486.exe
[2011-07-12 16:35:29 | 000,031,232 | ---- | C] () -- C:\Users\MAX-BUD\ojztp.exe
[2011-07-12 15:19:03 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\189052276619832.exe
[2011-07-12 15:09:02 | 000,000,539 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\43711973721996.exe
[2011-07-12 14:54:28 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\6985885219473.exe
[2011-07-12 14:43:16 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\149161630520953.exe
[2011-07-12 14:30:17 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\gikjc.exe
[2011-07-12 14:30:17 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\46923005931929.exe
[2011-07-12 14:24:19 | 000,000,539 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\24341124769761.exe
[2011-07-12 14:19:06 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\18745270782678.exe
[2011-07-12 14:10:53 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\elroo.exe
[2011-07-12 14:10:53 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\2562927451486.exe
[2011-07-12 14:00:29 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\43251715424742.exe
[2011-07-12 10:07:50 | 000,031,233 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\heverfg.exe
[2011-07-12 10:07:27 | 000,031,233 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\21909299779505.exe
[2011-07-12 09:53:43 | 000,031,232 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\3142142235755.exe
[2011-07-12 09:32:21 | 000,031,232 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\149393104413688.exe
[2011-07-12 09:32:05 | 000,031,232 | -H-- | C] () -- C:\Users\MAX-BUD\lxbrb.exe
[2011-07-12 09:01:11 | 000,031,232 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\19920203763738.exe
[2011-07-12 09:01:09 | 000,031,232 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\herpf.exe
[2011-07-12 09:01:09 | 000,031,232 | -H-- | C] () -- C:\Users\MAX-BUD\gpxda.exe
[2011-07-12 09:00:13 | 000,070,104 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 16:56:59 | 000,000,539 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\153931646125128.exe
[2011-07-11 16:31:21 | 000,000,539 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\169331579214395.exe
[2011-07-11 15:20:55 | 000,000,539 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\17530183810593.exe
[2011-07-11 14:20:17 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:21 | 000,073,551 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-08 20:14:00 | 000,000,688 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\107011213622616.exe
[2011-07-03 01:33:36 | 005,794,489 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:29 | 001,590,098 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 12:58:15 | 000,000,000 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\92203030914209.exe
[2011-07-01 10:42:26 | 000,000,522 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-28 15:35:23 | 000,001,848 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-27 14:08:43 | 000,000,688 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-26 19:03:19 | 000,584,153 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\ctfmon.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
[2011-06-02 00:35:59 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2011-06-02 00:35:44 | 000,419,880 | ---- | C] () -- C:\Windows\SysWow64\locale.nls
[2011-06-02 00:35:44 | 000,419,880 | ---- | C] () -- C:\Windows\SysNative\locale.nls
[2011-06-02 00:34:21 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2011-06-02 00:33:54 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011-05-31 15:57:34 | 000,002,691 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Microsoft Office Word 2007.lnk
[2011-05-26 20:56:21 | 000,000,000 | ---- | C] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-22 08:04:08 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011-04-08 23:29:17 | 000,000,698 | ---- | C] () -- C:\Windows\Thps3.INI
[2011-02-18 16:28:45 | 000,000,617 | ---- | C] () -- C:\Windows\eReg.dat
[2010-06-15 09:58:05 | 000,002,181 | ---- | C] () -- C:\Windows\Helicon Debug Window.ini
[2010-05-05 11:56:58 | 000,021,504 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-26 10:23:36 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010-02-26 00:00:07 | 000,127,696 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\GDIPFONTCACHEV1.DAT
[2009-10-04 23:59:37 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2009-08-27 08:05:12 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009-08-27 08:05:12 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009-08-27 08:05:12 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009-08-27 08:05:12 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini
[2009-07-14 04:34:57 | 000,000,510 | ---- | C] () -- C:\Windows\win.ini
[2009-07-14 04:34:57 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009-04-28 04:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll
[2005-03-25 10:31:14 | 000,000,985 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\logs.dat
[2002-10-03 14:42:27 | 000,000,034 | ---- | C] () -- C:\Windows\Q3version.ini

[color=#E56717]========== LOP Check ==========[/color]

[2011-07-12 22:12:44 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2010-03-18 09:49:42 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ashampoo
[2011-06-30 13:20:38 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\CrazyKeys
[2011-06-30 14:13:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-06 15:01:30 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\EurekaLog
[2010-11-15 01:53:49 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Gadu-Gadu 10
[2011-06-09 16:23:10 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2010-06-12 12:09:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GHISLER
[2011-05-31 15:53:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-07-12 22:58:25 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-04-29 14:31:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Lexis Rex
[2010-06-08 00:29:14 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia
[2010-05-05 12:11:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia Ovi Suite
[2010-10-16 12:23:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PC Suite
[2011-05-01 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PITy2010
[2011-07-07 11:36:29 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\System32
[2010-04-25 12:56:07 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Toshiba
[2010-10-23 08:26:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\uTorrent
[2011-06-30 15:09:57 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2010-03-21 21:57:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Windows Live Writer
[2011-06-29 11:58:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\WINSYS32
[2011-06-26 15:11:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ytuby
[2011-07-11 14:39:41 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2011-02-02 01:51:14 | 000,018,366 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2011-07-12 22:32:28 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-12 22:32:29 | 3079,536,640 | -HS- | M] () -- C:\pagefile.sys
[2009-10-04 23:48:13 | 000,002,942 | ---- | M] () -- C:\RHDSetup.log
[2009-09-09 09:26:52 | 000,000,070 | -H-- | M] () -- C:\SWSTAMP.TXT


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\SysNative\drivers\beep.sys
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SysNative\drivers\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009-07-14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009-07-14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009-10-28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009-10-28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2010-07-04 00:10:59 | 000,230,725 | ---- | M] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:06:24 | 000,230,725 | ---- | C] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:05:48 | 000,012,796 | ---- | M] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx
[2010-07-02 14:53:54 | 000,012,796 | ---- | C] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 400 bytes -> C:\Users\MAX-BUD\AppData\Local\desktop.ini:bf5af20ce7a419b1178ece347eddc338
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:DFC5A2B2

< End of report >
[/log]

i Extras
[log]OTL Extras logfile created on: 2011-07-12 23:56:23 - Run 2
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,30 Gb Available Physical Memory | 45,31% Memory free
5,73 Gb Paging File | 3,94 Gb Available in Paging File | 68,72% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 93,95 Gb Free Space | 63,04% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 121,33 Gb Free Space | 81,62% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" File not found
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}" = TOSHIBA Bulletin Board
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C2DDF845-7107-40E8-8D2A-8719F1799570}" = TOSHIBA ReelTime
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert
"{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORMCLauncher
"{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}" = TOSHIBA SD Memory Utilities
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{0823A2E3-69DD-A37A-7CD9-1CBEB037545C}" = Toshiba Photo Service - powered by myphotobook
"{0FB630AB-7BD8-40AE-B223-60397D57C3C9}" = Realtek WLAN Driver
"{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}" = Utility Common Driver
"{1B87C40B-A60B-4EF3-9A68-706CF4B69978}" = Toshiba Assist
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
"{2290A680-4083-410A-ADCC-7092C67FC052}" = Toshiba Online Product Information
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 26
"{29F563F4-8807-4496-8463-441EAA0E96AB}" = PC Connectivity Solution
"{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync
"{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live
"{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password
"{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{5E6F6CF3-BACC-4144-868C-E14622C658F3}" = TOSHIBA Web Camera Application
"{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility
"{65600762-F5A9-4835-8B98-3F972F524D8D}" = ABC z Reksiem
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0415-1000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00B2-0415-0000-0000000FF1CE}" = Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}" = Toshiba Manuals
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Polish)
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live
"{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live
"{9E4FF410-471F-49E3-9358-74FF0D5E9901}" = Toshiba TEMPRO
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}" = Need for Speed™ Most Wanted
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-1045-7B44-A91000000001}" = Adobe Reader 9.1 - Polish
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{C084BC61-E537-11DE-8616-005056806466}" = Google Earth
"{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3529665-D75E-4D6D-98F0-745C78C68E9B}" = TOSHIBA ConfigFree
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop 7.0 CE" = Adobe Photoshop 7.0 CE
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010
"avast" = avast! Free Antivirus
"ENTERPRISE" = Microsoft Office Enterprise 2007
"ESET Online Scanner" = ESET Online Scanner v3
"eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1" = Toshiba Photo Service - powered by myphotobook
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}" = TOSHIBA Bulletin Board
"InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Hasło administratora
"InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}" = Sprzęt instalacyjny TOSHIBA
"InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility
"InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder
"InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"InstallShield_{C2DDF845-7107-40E8-8D2A-8719F1799570}" = TOSHIBA ReelTime
"InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert
"InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORMCLauncher
"InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"Kadu" = Kadu 0.9.2
"KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic)
"Moje Gimnazjum 2011 Profil Humanistyczny1.0" = Moje Gimnazjum 2011 Profil Humanistyczny
"NSS" = NSS (remove only)
"Picasa 3" = Picasa 3
"PIT 2010 z Gazetą Wyborczą_is1" = PIT 2010 z Gazetą Wyborczą ver. 7.0.1.1
"PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.2.11
"Quake III Arena Point Release 1.32" = Quake III Arena Point Release 1.32
"TC PowerPack" = TC PowerPack 1.7
"Totalcmd" = Total Commander (Remove or Repair)
"UnHackMe_is1" = UnHackMe 5.99 release
"WinLiveSuite_Wave3" = Podstawowe programy Windows Live
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2011-07-11 15:48:05 | Computer Name = MAX-BUD-007 | Source = Application Hang | ID = 1002
Description = Program ToDisc.exe w wersji 2.1.0.1 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji. Identyfikator procesu: 22f8 Godzina rozpoczęcia: 01cc4003412d5ad6 Godzina zakończenia:
6802 Ścieżka aplikacji: C:\Program Files (x86)\Toshiba\TOSHIBA Disc Creator\ToDisc.exe

Identyfikator
raportu: a9fc754e-abf6-11e0-b7ad-0026223e77bd

Error - 2011-07-12 02:53:15 | Computer Name = MAX-BUD-007 | Source = Application Hang | ID = 1002
Description = Program ToDisc.exe w wersji 2.1.0.1 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji. Identyfikator procesu: 1274 Godzina rozpoczęcia: 01cc405fafa00f95 Godzina zakończenia:
6287 Ścieżka aplikacji: C:\Program Files (x86)\Toshiba\TOSHIBA Disc Creator\ToDisc.exe

Identyfikator
raportu: 91400f2f-ac53-11e0-b3b3-0026223e77bd

Error - 2011-07-12 12:15:25 | Computer Name = MAX-BUD-007 | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 8.0.7601.17514,
sygnatura czasowa: 0x4ce79912 Nazwa modułu powodującego błąd: msxml3.dll, wersja:
8.110.7601.17514, sygnatura czasowa: 0x4ce7b8e9 Kod wyjątku: 0xc0000005 Przesunięcie
błędu: 0x0002e64f Identyfikator procesu powodującego błąd: 0x16d8 Godzina uruchomienia
aplikacji powodującej błąd: 0x01cc40aee66890d8 Ścieżka aplikacji powodującej błąd:
C:\Program Files (x86)\Internet Explorer\iexplore.exe Ścieżka modułu powodującego
błąd: C:\Windows\System32\msxml3.dll Identyfikator raportu: 2664a24a-aca2-11e0-8b52-0026223e77bd

Error - 2011-07-12 13:57:21 | Computer Name = MAX-BUD-007 | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 8.0.7601.17514,
sygnatura czasowa: 0x4ce79912 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0,
sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000094 Przesunięcie błędu: 0x7ed7054a
Identyfikator
procesu powodującego błąd: 0xae0 Godzina uruchomienia aplikacji powodującej błąd:
0x01cc40bc9e32efe4 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Internet
Explorer\iexplore.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu:
634e2e4e-acb0-11e0-986e-0026223e77bd

Error - 2011-07-12 14:20:38 | Computer Name = MAX-BUD-007 | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\MAX-BUD\Downloads\esetsmartinstaller_plk.exe”.
Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana
przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Składnik
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2011-07-12 15:50:31 | Computer Name = MAX-BUD-007 | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\MAX-BUD\Downloads\esetsmartinstaller_plk.exe”.
Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana
przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Składnik
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2011-07-12 15:51:00 | Computer Name = MAX-BUD-007 | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\MAX-BUD\Downloads\SoftonicDownloader_for_mortal-kombat-project.exe”.
Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana
przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Składnik
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 2011-07-12 15:57:42 | Computer Name = MAX-BUD-007 | Source = MsiInstaller | ID = 1013
Description =

Error - 2011-07-12 15:57:48 | Computer Name = MAX-BUD-007 | Source = MsiInstaller | ID = 1013
Description =

Error - 2011-07-12 15:59:40 | Computer Name = MAX-BUD-007 | Source = MsiInstaller | ID = 1013
Description =

[ Media Center Events ]
Error - 2010-03-28 03:47:43 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:47:43 - Błąd podczas nawiązywania połączenia z Internetem. 09:47:43
- Nie można skontaktować się z serwerem..

Error - 2010-03-28 03:47:53 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:47:48 - Błąd podczas nawiązywania połączenia z Internetem. 09:47:48
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 02:11:56 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 08:11:56 - Błąd podczas nawiązywania połączenia z Internetem. 08:11:56
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 02:12:05 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 08:12:01 - Błąd podczas nawiązywania połączenia z Internetem. 08:12:01
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 03:12:10 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:12:10 - Błąd podczas nawiązywania połączenia z Internetem. 09:12:10
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 03:12:16 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:12:15 - Błąd podczas nawiązywania połączenia z Internetem. 09:12:15
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 06:53:19 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 12:53:19 - Błąd podczas nawiązywania połączenia z Internetem. 12:53:19
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 06:53:25 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 12:53:24 - Błąd podczas nawiązywania połączenia z Internetem. 12:53:24
- Nie można skontaktować się z serwerem..

[ System Events ]
Error - 2011-07-12 13:59:28 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7001
Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji
w sieci, której nie można uruchomić z powodu następującego błędu: %%1068

Error - 2011-07-12 13:59:28 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7001
Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji
w sieci, której nie można uruchomić z powodu następującego błędu: %%1068

Error - 2011-07-12 13:59:28 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7001
Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji
w sieci, której nie można uruchomić z powodu następującego błędu: %%1068

Error - 2011-07-12 14:03:02 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7001
Description = Usługa Usługa listy sieci zależy od usługi Rozpoznawanie lokalizacji
w sieci, której nie można uruchomić z powodu następującego błędu: %%1068

Error - 2011-07-12 14:12:36 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7011
Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji
z usługi sppsvc.

Error - 2011-07-12 16:14:56 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan

Error - 2011-07-12 16:16:35 | Computer Name = MAX-BUD-007 | Source = Application Popup | ID = 1060
Description = Ładowanie sterownika \??\C:\Windows\SysWow64\Drivers\regguard.sys
zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą
oprogramowania w celu uzyskania zgodnej wersji sterownika.

Error - 2011-07-12 16:17:12 | Computer Name = MAX-BUD-007 | Source = WMPNetworkSvc | ID = 866300
Description =

Error - 2011-07-12 16:20:59 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan

Error - 2011-07-12 16:33:09 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan


< End of report >
[/log]

wirusolog
komentarz
komentarz

Tyle. ile było wirusów, tyle jest.
Pokaż log z ComboFixa.

elsaper
komentarz
komentarz

ComboFix:
[log]ComboFix 11-07-12.09 - MAX-BUD 2011-07-13 12:15:24.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.48.1045.18.2937.1267 [GMT 2:00]
Uruchomiony z: c:\users\MAX-BUD\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Error Fix
c:\program files (x86)\Error Fix\PW\general.html
c:\program files (x86)\Error Fix\PW\optimizations.html
c:\program files (x86)\Error Fix\PW\privacy.html
c:\program files (x86)\Error Fix\PW\scheduler.html
c:\program files (x86)\Error Fix\PW\startup.html
c:\program files (x86)\Error Fix\PW\wizard.css
c:\programdata\xp
c:\programdata\xp\EBLib.dll
c:\programdata\xp\TPwSav.sys
c:\users\MAX-BUD\AppData\Roaming\107011213622616.exe
c:\users\MAX-BUD\AppData\Roaming\11094890622125.exe
c:\users\MAX-BUD\AppData\Roaming\113792238620881.exe
c:\users\MAX-BUD\AppData\Roaming\120252480421057.exe
c:\users\MAX-BUD\AppData\Roaming\12138303659490.exe
c:\users\MAX-BUD\AppData\Roaming\1267817344621.exe
c:\users\MAX-BUD\AppData\Roaming\127861323819012.exe
c:\users\MAX-BUD\AppData\Roaming\1287165150.exe
c:\users\MAX-BUD\AppData\Roaming\1310412926391.exe
c:\users\MAX-BUD\AppData\Roaming\13333279027201.exe
c:\users\MAX-BUD\AppData\Roaming\13481650225252.exe
c:\users\MAX-BUD\AppData\Roaming\149161630520953.exe
c:\users\MAX-BUD\AppData\Roaming\149393104413688.exe
c:\users\MAX-BUD\AppData\Roaming\15081827522510.exe
c:\users\MAX-BUD\AppData\Roaming\15248247081066.exe
c:\users\MAX-BUD\AppData\Roaming\153931646125128.exe
c:\users\MAX-BUD\AppData\Roaming\158371156010143.exe
c:\users\MAX-BUD\AppData\Roaming\1601846773014.exe
c:\users\MAX-BUD\AppData\Roaming\16367310928888.exe
c:\users\MAX-BUD\AppData\Roaming\16529306315699.exe
c:\users\MAX-BUD\AppData\Roaming\16641158213571.exe
c:\users\MAX-BUD\AppData\Roaming\1669950157977.exe
c:\users\MAX-BUD\AppData\Roaming\169331579214395.exe
c:\users\MAX-BUD\AppData\Roaming\17266792813307.exe
c:\users\MAX-BUD\AppData\Roaming\17530183810593.exe
c:\users\MAX-BUD\AppData\Roaming\179672163715022.exe
c:\users\MAX-BUD\AppData\Roaming\182441095326510.exe
c:\users\MAX-BUD\AppData\Roaming\1846132183427.exe
c:\users\MAX-BUD\AppData\Roaming\185513254030552.exe
c:\users\MAX-BUD\AppData\Roaming\18745270782678.exe
c:\users\MAX-BUD\AppData\Roaming\189052276619832.exe
c:\users\MAX-BUD\AppData\Roaming\18921434225788.exe
c:\users\MAX-BUD\AppData\Roaming\19267523121528.exe
c:\users\MAX-BUD\AppData\Roaming\194732620126686.exe
c:\users\MAX-BUD\AppData\Roaming\19920203763738.exe
c:\users\MAX-BUD\AppData\Roaming\209632443018749.exe
c:\users\MAX-BUD\AppData\Roaming\210111278612278.exe
c:\users\MAX-BUD\AppData\Roaming\21466544531486.exe
c:\users\MAX-BUD\AppData\Roaming\21909299779505.exe
c:\users\MAX-BUD\AppData\Roaming\220981598027753.exe
c:\users\MAX-BUD\AppData\Roaming\235412431228693.exe
c:\users\MAX-BUD\AppData\Roaming\23766359119203.exe
c:\users\MAX-BUD\AppData\Roaming\24011113144647.exe
c:\users\MAX-BUD\AppData\Roaming\243042037119215.exe
c:\users\MAX-BUD\AppData\Roaming\24341124769761.exe
c:\users\MAX-BUD\AppData\Roaming\2517217418876.exe
c:\users\MAX-BUD\AppData\Roaming\2557944966991.exe
c:\users\MAX-BUD\AppData\Roaming\2562927451486.exe
c:\users\MAX-BUD\AppData\Roaming\2604740433041.exe
c:\users\MAX-BUD\AppData\Roaming\27283287722729.exe
c:\users\MAX-BUD\AppData\Roaming\27358809210311.exe
c:\users\MAX-BUD\AppData\Roaming\28116274407000.exe
c:\users\MAX-BUD\AppData\Roaming\31304257522626.exe
c:\users\MAX-BUD\AppData\Roaming\3142142235755.exe
c:\users\MAX-BUD\AppData\Roaming\323302159318639.exe
c:\users\MAX-BUD\AppData\Roaming\32681281584145.exe
c:\users\MAX-BUD\AppData\Roaming\43251715424742.exe
c:\users\MAX-BUD\AppData\Roaming\43711973721996.exe
c:\users\MAX-BUD\AppData\Roaming\46923005931929.exe
c:\users\MAX-BUD\AppData\Roaming\604824228528.exe
c:\users\MAX-BUD\AppData\Roaming\60811860520586.exe
c:\users\MAX-BUD\AppData\Roaming\63151208611676.exe
c:\users\MAX-BUD\AppData\Roaming\654654.exe
c:\users\MAX-BUD\AppData\Roaming\6985885219473.exe
c:\users\MAX-BUD\AppData\Roaming\7821220125876.exe
c:\users\MAX-BUD\AppData\Roaming\92203030914209.exe
c:\users\MAX-BUD\AppData\Roaming\93221794810267.exe
c:\users\MAX-BUD\AppData\Roaming\94281359224605.exe
c:\users\MAX-BUD\AppData\Roaming\94533097315523.exe
c:\users\MAX-BUD\AppData\Roaming\99211623310306.exe
c:\users\MAX-BUD\AppData\Roaming\berfge.exe
c:\users\MAX-BUD\AppData\Roaming\Bot2324.exe
c:\users\MAX-BUD\AppData\Roaming\bsbklr.exe
c:\users\MAX-BUD\AppData\Roaming\btmc.exe
c:\users\MAX-BUD\AppData\Roaming\ctfmon.exe
c:\users\MAX-BUD\AppData\Roaming\dbljkyh.exe
c:\users\MAX-BUD\AppData\Roaming\dh.exe
c:\users\MAX-BUD\AppData\Roaming\djklhjhr.exe
c:\users\MAX-BUD\AppData\Roaming\dl.exe
c:\users\MAX-BUD\AppData\Roaming\dn.exe
c:\users\MAX-BUD\AppData\Roaming\down.exe
c:\users\MAX-BUD\AppData\Roaming\dvbrn.exe
c:\users\MAX-BUD\AppData\Roaming\edbdtbht.exe
c:\users\MAX-BUD\AppData\Roaming\EurekaLog
c:\users\MAX-BUD\AppData\Roaming\fdns.exe
c:\users\MAX-BUD\AppData\Roaming\gdns.exe
c:\users\MAX-BUD\AppData\Roaming\grghooh.exe
c:\users\MAX-BUD\AppData\Roaming\herpf.exe
c:\users\MAX-BUD\AppData\Roaming\heverfg.exe
c:\users\MAX-BUD\AppData\Roaming\ircbot123.exe
c:\users\MAX-BUD\AppData\Roaming\logs.dat
c:\users\MAX-BUD\AppData\Roaming\mdbserby.exe
c:\users\MAX-BUD\AppData\Roaming\msndhf.exe
c:\users\MAX-BUD\AppData\Roaming\MSNMessengerAPI.dll
c:\users\MAX-BUD\AppData\Roaming\system32
c:\users\MAX-BUD\AppData\Roaming\u.exe
c:\users\MAX-BUD\AppData\Roaming\ubrber.exe
c:\users\MAX-BUD\AppData\Roaming\WINSYS32
c:\users\MAX-BUD\AppData\Roaming\wsvwsvdtjkbh.exe
c:\users\MAX-BUD\AppData\Roaming\Ytuby
c:\users\MAX-BUD\AppData\Roaming\Ytuby\zege.und
c:\users\MAX-BUD\elroo.exe
c:\users\MAX-BUD\gikjc.exe
c:\users\MAX-BUD\gpxda.exe
c:\users\MAX-BUD\lxbrb.exe
c:\users\MAX-BUD\ojztp.exe
c:\windows\IsUn0415.exe
C:\Windupdt
.
.
((((((((((((((((((((((((( Pliki utworzone od 2011-06-13 do 2011-07-13 )))))))))))))))))))))))))))))))
.
.
2011-07-12 20:33 . 2011-07-12 20:33 35816 ----a-w- c:\windows\SysWow64\drivers\Partizan.sys
2011-07-12 20:10 . 2011-07-12 20:10 39192 ----a-w- c:\windows\system32\Partizan.exe
2011-07-12 20:07 . 2011-07-12 20:07 39192 ----a-w- c:\windows\SysWow64\Partizan.exe
2011-07-12 20:07 . 2011-07-12 20:07 2 --shatr- c:\windows\winstart.bat
2011-07-12 20:07 . 2011-05-18 08:53 12808 ----a-w- c:\windows\SysWow64\drivers\UnHackMeDrv.sys
2011-07-12 18:38 . 2011-07-12 19:19 539 ---ha-w- c:\users\MAX-BUD\AppData\Roaming\msvuiet.exe
2011-07-12 18:20 . 2011-07-12 18:20 -------- d-----w- c:\program files (x86)\ESET
2011-07-12 18:10 . 2011-07-12 19:31 539 ---ha-w- c:\users\MAX-BUD\AppData\Roaming\amsfh.exe
2011-07-12 06:45 . 2011-06-07 17:10 8873296 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{A58E57B6-0373-49D8-9A68-D131EB1868B9}\mpengine.dll
2011-07-11 12:20 . 2011-07-11 14:56 539 ---ha-w- c:\users\MAX-BUD\AppData\Roaming\vverber.exe
2011-07-11 12:18 . 2011-07-11 12:18 388096 ----a-r- c:\users\MAX-BUD\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-07-09 19:19 . 2011-07-12 19:24 -------- d-----w- C:\Cache
2011-07-01 18:13 . 2011-07-01 18:36 -------- d-----w- c:\programdata\PC Tools
2011-07-01 12:14 . 2011-07-01 12:14 -------- d-----w- c:\windows\system32\SPReview
2011-07-01 12:13 . 2011-07-01 12:13 -------- d-----w- c:\windows\system32\EventProviders
2011-06-30 12:06 . 2011-07-01 11:57 -------- d-----w- c:\program files (x86)\RegCleaner
2011-06-30 11:47 . 2011-06-30 12:13 -------- d-----w- c:\users\MAX-BUD\AppData\Roaming\Error Fix
2011-06-29 20:30 . 2011-07-05 08:39 -------- d-sh--r- c:\users\MAX-BUD\AppData\Roaming\Google Update
2011-06-29 07:33 . 2011-05-24 11:42 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-06-29 07:33 . 2011-05-24 10:39 145920 ----a-w- c:\windows\SysWow64\cfgmgr32.dll
2011-06-29 07:33 . 2010-11-20 13:25 207872 ----a-w- c:\windows\system32\cfgmgr32.dll
2011-06-29 07:33 . 2011-05-24 10:40 64512 ----a-w- c:\windows\SysWow64\devobj.dll
2011-06-29 07:33 . 2011-05-24 10:40 44544 ----a-w- c:\windows\SysWow64\devrtl.dll
2011-06-29 07:33 . 2011-05-24 10:37 252928 ----a-w- c:\windows\SysWow64\drvinst.exe
2011-06-28 13:35 . 2011-07-04 11:36 288088 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-06-28 13:35 . 2011-07-04 11:32 22360 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-06-28 13:35 . 2011-07-04 11:32 31064 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-06-28 13:35 . 2011-07-04 11:35 45400 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-06-28 13:35 . 2011-07-04 11:36 600920 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-06-28 13:34 . 2011-07-04 11:32 64856 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-06-28 13:34 . 2011-07-04 11:43 253888 ----a-w- c:\windows\system32\aswBoot.exe
2011-06-28 13:33 . 2011-07-04 11:43 40112 ----a-w- c:\windows\avastSS.scr
2011-06-28 13:33 . 2011-07-04 11:43 199304 ----a-w- c:\windows\SysWow64\aswBoot.exe
2011-06-28 13:32 . 2011-06-28 13:32 -------- d-----w- c:\programdata\AVAST Software
2011-06-28 13:32 . 2011-06-28 13:32 -------- d-----w- c:\program files\AVAST Software
2011-06-27 12:08 . 2011-06-27 12:08 688 ---ha-w- c:\users\MAX-BUD\AppData\Roaming\servercryptde.exe
2011-06-27 11:24 . 2011-07-12 20:12 -------- d-----w- c:\users\MAX-BUD\AppData\Roaming\Addobe
2011-06-26 13:11 . 2011-06-30 13:09 -------- d-----w- c:\users\MAX-BUD\AppData\Roaming\Vyafka
2011-06-25 20:13 . 2011-06-30 08:32 -------- d-----w- c:\users\MAX-BUD\AppData\Roaming\nvidia
2011-06-25 18:42 . 2011-06-25 18:42 193 ---ha-w- c:\users\MAX-BUD\AppData\Roaming\dsang.exe
2011-06-23 14:46 . 2011-06-23 14:46 193 ---ha-w- c:\users\MAX-BUD\AppData\Roaming\bmersd.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-01 12:28 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-07-01 12:28 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-05-24 17:14 . 2010-02-26 07:37 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-05-22 06:03 . 2011-05-22 06:03 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2011-05-22 06:03 . 2011-05-22 06:03 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2011-05-04 02:52 . 2011-06-04 15:31 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
.
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SVPWUTIL"="c:\program files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe" [2009-08-12 352256]
"HWSetup"="c:\program files\TOSHIBA\Utilities\HWSetup.exe" [2009-06-02 423936]
"KeNotify"="c:\program files (x86)\TOSHIBA\Utilities\KeNotify.exe" [2009-01-13 34088]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"TWebCamera"="c:\program files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" [2009-08-11 2446648]
"ToshibaServiceStation"="c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" [2009-08-17 1294136]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-07-04 3493720]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"TOSHIBA Online Product Information"="c:\program files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe" [2009-08-12 6203296]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2010-6-21 113664]
.
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0Partizan\0
.
R3 BthAvrcp;Profil AVRCP Bluetooth;c:\windows\system32\DRIVERS\BthAvrcp.sys [x]
R3 nmwcdcx64;Nokia USB Generic; [x]
R3 nmwcdnsucx64;Nokia USB Flashing Generic; [x]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent; [x]
R3 nmwcdx64;Nokia USB Phone Parent; [x]
R3 RegGuard;RegGuard;c:\windows\system32\Drivers\regguard.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 RtsUIR;Realtek IR Driver; [x]
R3 SureThing Labelflash service;SureThing Labelflash service;c:\program files (x86)\Common Files\SureThing Shared\stllssvr.exe [2009-01-29 74392]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R3 WSDPrintDevice;Obsługa drukowania WSD za pośrednictwem bloku pamięci górnej;c:\windows\system32\DRIVERS\WSDPrint.sys [x]
S0 tos_sps64;TOSHIBA tos_sps64 Service;c:\windows\system32\DRIVERS\tos_sps64.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2009-08-10 248688]
S2 ConfigFree Gadget Service;ConfigFree Gadget Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe [2009-07-14 42368]
S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [2009-08-06 116104]
S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe [2009-08-27 251760]
S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys [x]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [x]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 RTL8187B;Realtek RTL8187B Wireless 802.11bg 54Mbps USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8187B.sys [x]
S3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2009-08-17 51512]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2009-08-03 137560]
S3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [2009-08-04 826224]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
Zawartość folderu 'Zaplanowane zadania'
.
2011-07-12 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core.job
- c:\users\MAX-BUD\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-10 17:51]
.
2011-07-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA.job
- c:\users\MAX-BUD\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-10 17:51]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-07-04 11:43 134384 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2009-08-03 709976]
"Toshiba TEMPRO"="c:\program files (x86)\Toshiba TEMPRO\TemproTray.exe" [2009-08-06 1050000]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-09-02 165912]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-02 387608]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-02 365592]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-28 7982112]
"Toshiba Registration"="c:\program files\Toshiba\Registration\ToshibaReminder.exe" [2009-07-30 134032]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 660360]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Skan uzupełniający -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://174.37.200.81
uDefault_Search_URL = hxxp://www.google.com/ie
mLocal Page = c:\windows\SysWOW64\blank.htm
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&ksportuj do programu Microsoft Excel - c:\progra~2\MICROS~2\Office12\EXCEL.EXE/3000
IE: Funkcja Google Sidewiki - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
TCP: DhcpNameServer = 62.179.1.63 62.179.1.62
.
- - - - USUNIĘTO PUSTE WPISY - - - -
.
URLSearchHooks-{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - (no file)
SafeBoot-mcmscsvc
SafeBoot-MCODS
WebBrowser-{C86EB8A9-CCC2-4B6C-B75D-73576ED591BF} - (no file)
WebBrowser-{30F9B915-B755-4826-820B-08FBA6BD249D} - (no file)
HKLM-Run-TosNC - c:\program files (x86)\Toshiba\BulletinBoard\TosNcCore.exe
HKLM-Run-TosReelTimeMonitor - c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
HKLM-Run-SmoothView - c:\program files (x86)\Toshiba\SmoothView\SmoothView.exe
HKLM-Run-TPwrMain - c:\program files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE
HKLM-Run-00TCrdMain - c:\program files (x86)\TOSHIBA\FlashCards\TCrdMain.exe
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
HKLM-Run-SmartFaceVWatcher - c:\program files (x86)\Toshiba\SmartFaceV\SmartFaceVWatcher.exe
HKLM-Run-Teco - c:\program files (x86)\TOSHIBA\TECO\Teco.exe
HKLM-Run-TosWaitSrv - c:\program files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe
AddRemove-Adobe Photoshop 7.0 CE - c:\windows\ISUN0415.EXE
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-PITy 2009_is1 - c:\program files (x86)\PITy\PITy2009NG\unins000.exe
AddRemove-{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF} - d:\nowy folder\EAUninstall.exe
.
.
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10e.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10e.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Czas ukończenia: 2011-07-13 12:39:56
ComboFix-quarantined-files.txt 2011-07-13 10:39
.
Przed: 101 369 438 208 bajtów wolnych
Po: 100 689 600 512 bajtów wolnych
.
- - End Of File - - 6B7487B3EBCF57580D9ACCA28568BA4B[/log]

wirusolog
komentarz
komentarz

ComboFix usunął sporą część infekcji.
Wklej nowe logi z OTL.

elsaper
komentarz
komentarz

nowy log OTL:

[log]OTL logfile created on: 2011-07-13 15:28:16 - Run 3
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,47 Gb Available Physical Memory | 51,26% Memory free
5,73 Gb Paging File | 4,11 Gb Available in Paging File | 71,63% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 93,85 Gb Free Space | 62,97% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 121,33 Gb Free Space | 81,62% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
PRC - [2011-07-04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011-06-24 08:25:50 | 001,012,792 | ---- | M] (Google Inc.) -- C:\Users\MAX-BUD\AppData\Local\Google\Chrome\Application\chrome.exe
PRC - [2011-05-18 10:53:10 | 000,594,200 | ---- | M] (Greatis Software) -- D:\UnHackMe\hackmon.exe
PRC - [2011-05-10 21:00:04 | 000,328,206 | ---- | M] (Kadu Team) -- D:\Kadu\kadu.exe
PRC - [2011-04-08 12:59:52 | 000,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
PRC - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
PRC - [2009-07-14 03:14:31 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rundll32.exe
PRC - [2009-07-14 03:14:21 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Internet Explorer\IELowutil.exe
PRC - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
PRC - [2009-01-13 21:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
MOD - [2011-07-04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2011-05-24 12:40:05 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dll
MOD - [2011-05-24 12:39:38 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dll
MOD - [2011-02-25 07:34:36 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dll
MOD - [2010-11-20 14:24:35 | 001,292,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dll
MOD - [2010-11-20 14:21:36 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dll
MOD - [2010-11-20 14:21:34 | 001,128,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dll
MOD - [2010-11-20 14:21:33 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dll
MOD - [2010-11-20 14:21:24 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dll
MOD - [2010-11-20 14:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dll
MOD - [2010-11-20 14:21:19 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dll
MOD - [2010-11-20 14:21:15 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dll
MOD - [2010-11-20 14:21:14 | 001,667,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dll
MOD - [2010-11-20 14:21:07 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dll
MOD - [2010-11-20 14:20:57 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dll
MOD - [2010-11-20 14:20:49 | 001,414,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dll
MOD - [2010-11-20 14:20:49 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dll
MOD - [2010-11-20 14:18:23 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll
MOD - [2010-11-20 14:18:03 | 000,295,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dll
MOD - [2010-11-20 14:18:02 | 000,640,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dll
MOD - [2010-11-20 14:16:50 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drv
MOD - [2010-11-20 14:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dll
MOD - [2010-11-20 14:08:57 | 000,663,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dll
MOD - [2010-11-20 14:08:57 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dll
MOD - [2010-11-20 14:08:56 | 000,837,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dll
MOD - [2010-11-20 14:08:56 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dll
MOD - [2010-11-20 14:08:51 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dll
MOD - [2010-11-20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dll
MOD - [2010-11-20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dll
MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dll
MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dll
MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dll
MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dll
MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dll
MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dll
MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dll
MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dll
MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dll
MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dll
MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dll
MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dll
MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msscript.ocx
MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dll
MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2009-08-27 13:38:22 | 000,251,760 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:[b]64bit:[/b] - [2009-08-05 14:20:12 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:[b]64bit:[/b] - [2009-08-04 11:15:06 | 000,826,224 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:[b]64bit:[/b] - [2009-08-03 18:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:[b]64bit:[/b] - [2009-07-28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009-08-17 10:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009-08-10 19:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO)
SRV - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2007-05-31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2009-08-27 08:07:06 | 007,369,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2009-08-20 16:04:06 | 000,446,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187B.sys -- (RTL8187B)
DRV:[b]64bit:[/b] - [2009-08-13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp)
DRV:[b]64bit:[/b] - [2009-07-30 21:02:36 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:[b]64bit:[/b] - [2009-07-30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:[b]64bit:[/b] - [2009-07-30 17:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:[b]64bit:[/b] - [2009-07-24 15:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:[b]64bit:[/b] - [2009-07-20 17:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009-07-14 15:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2009-07-14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009-07-10 06:45:12 | 000,139,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R)
DRV:[b]64bit:[/b] - [2009-06-22 17:06:38 | 000,035,008 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:[b]64bit:[/b] - [2009-06-20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2009-06-19 19:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-06-04 18:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009-05-22 22:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2011-07-12 22:33:21 | 000,035,816 | ---- | M] (Greatis Software) [Kernel | Boot | Stopped] -- C:\Windows\system32\drivers\Partizan.sys -- (Partizan)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://174.37.200.81
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Users\MAX-BUD\AppData\Local\Google\Update\1.2.183.23\npGoogleOneClick8.dll (Google Inc.)


[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Extensions
[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Firefox\Profiles\62mh5x8i.default\extensions
File not found (No name found) -- C:\PROGRAM FILES (X86)\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION

O1 HOSTS File: ([2011-07-13 12:37:11 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:[b]64bit:[/b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\Toolbar\WebBrowser: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [SmartFaceVWatcher] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TWebCamera] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] File not found
O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 62.179.1.62
O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-02-02 01:51:14 | 000,018,366 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (Partizan) - C:\Windows\SysWow64\Partizan.exe (Greatis Software)
O34 - HKLM BootExecute: (ootExecute settings...) - File not found
O34 - HKLM BootExecute: (ldCo) - File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = ComFile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*



SafeBootMin:[b]64bit:[/b] Base - Driver Group
SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group
SafeBootMin:[b]64bit:[/b] File system - Driver Group
SafeBootMin:[b]64bit:[/b] Filter - Driver Group
SafeBootMin:[b]64bit:[/b] HelpSvc - Service
SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group
SafeBootMin:[b]64bit:[/b] sacsvr - Service
SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] vmms - Service
SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:[b]64bit:[/b] Base - Driver Group
SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group
SafeBootNet:[b]64bit:[/b] File system - Driver Group
SafeBootNet:[b]64bit:[/b] Filter - Driver Group
SafeBootNet:[b]64bit:[/b] HelpSvc - Service
SafeBootNet:[b]64bit:[/b] Messenger - Service
SafeBootNet:[b]64bit:[/b] MpfService - Service
SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group
SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group
SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group
SafeBootNet:[b]64bit:[/b] Network - Driver Group
SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group
SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group
SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group
SafeBootNet:[b]64bit:[/b] rdsessmgr - Service
SafeBootNet:[b]64bit:[/b] sacsvr - Service
SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group
SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] TDI - Driver Group
SafeBootNet:[b]64bit:[/b] vmms - Service
SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver
SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: MpfService - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-07-13 12:39:59 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011-07-13 12:39:59 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\temp
[2011-07-13 12:13:52 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011-07-13 12:13:52 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011-07-13 12:13:52 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011-07-13 12:13:46 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011-07-13 12:12:29 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011-07-12 22:33:21 | 000,035,816 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-12 22:10:34 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-12 22:07:35 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-12 22:07:08 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\RegRun2
[2011-07-12 22:07:06 | 000,012,808 | ---- | C] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\regruninfo
[2011-07-12 20:20:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2011-07-11 14:18:16 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011-07-09 21:19:09 | 000,000,000 | ---D | C] -- C:\Cache
[2011-07-01 20:14:44 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011-07-01 20:13:20 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011-07-01 19:54:18 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Odebrane pliki
[2011-07-01 14:14:22 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011-07-01 14:13:18 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011-06-30 14:06:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegCleaner
[2011-06-30 13:47:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-29 22:30:13 | 000,000,000 | RHSD | C] -- C:\Users\MAX-BUD\AppData\Roaming\Google Update
[2011-06-29 09:33:51 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cfgmgr32.dll
[2011-06-29 09:33:50 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-06-29 09:33:50 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-06-28 15:35:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011-06-28 15:35:22 | 000,288,088 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-06-28 15:35:22 | 000,022,360 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-06-28 15:35:18 | 000,031,064 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-06-28 15:35:16 | 000,045,400 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-06-28 15:35:13 | 000,600,920 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-06-28 15:34:58 | 000,064,856 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-06-28 15:34:55 | 000,253,888 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-06-28 15:33:02 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-06-28 15:33:01 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011-06-27 13:24:06 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2011-06-26 15:20:19 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011-06-26 15:20:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011-06-26 15:20:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2011-06-25 22:13:41 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\nvidia
[2011-06-22 20:40:55 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Favorites
[2011-06-16 17:10:50 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011-06-16 17:10:30 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011-06-16 17:10:30 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011-06-16 17:10:27 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011-06-16 17:10:27 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011-06-16 17:10:19 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011-06-12 19:06:05 | 000,086,016 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 13:33:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Cutter
[2011-06-12 13:33:03 | 000,140,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx
[2011-06-12 11:48:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Mortal Kombat 3
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Downloads
[2011-06-06 17:56:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-04 17:31:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011-06-04 17:31:30 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2011-06-02 00:36:37 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2011-06-02 00:36:37 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2011-06-02 00:36:28 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011-06-02 00:36:23 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011-06-02 00:36:23 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2011-06-02 00:36:23 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011-06-02 00:36:23 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011-06-02 00:36:21 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011-06-02 00:36:17 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011-06-02 00:36:17 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011-06-02 00:36:17 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011-06-02 00:36:15 | 001,465,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2011-06-02 00:36:14 | 002,314,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011-06-02 00:36:13 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2011-06-02 00:36:12 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011-06-02 00:36:12 | 000,902,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2011-06-02 00:36:11 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmcndmgr.dll
[2011-06-02 00:36:11 | 001,731,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011-06-02 00:36:11 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2011-06-02 00:36:10 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2011-06-02 00:36:10 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2011-06-02 00:36:10 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2011-06-02 00:36:10 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2011-06-02 00:36:09 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xpsservices.dll
[2011-06-02 00:36:09 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2011-06-02 00:36:09 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011-06-02 00:36:09 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2011-06-02 00:36:08 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2011-06-02 00:36:08 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011-06-02 00:36:08 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011-06-02 00:36:07 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
[2011-06-02 00:36:07 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011-06-02 00:36:06 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizui.dll
[2011-06-02 00:36:05 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2011-06-02 00:36:05 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RacEngn.dll
[2011-06-02 00:36:05 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagperf.dll
[2011-06-02 00:36:05 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskschd.dll
[2011-06-02 00:36:04 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011-06-02 00:36:04 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2011-06-02 00:36:03 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vssapi.dll
[2011-06-02 00:36:03 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011-06-02 00:36:03 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011-06-02 00:36:03 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NaturalLanguage6.dll
[2011-06-02 00:36:02 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2011-06-02 00:36:02 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011-06-02 00:36:01 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011-06-02 00:36:01 | 002,872,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2011-06-02 00:35:59 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVCORE.DLL
[2011-06-02 00:35:59 | 001,698,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2011-06-02 00:35:59 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011-06-02 00:35:59 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011-06-02 00:35:58 | 001,544,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2011-06-02 00:35:58 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spinstall.exe
[2011-06-02 00:35:58 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2011-06-02 00:35:58 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spreview.exe
[2011-06-02 00:35:58 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpdd.dll
[2011-06-02 00:35:58 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011-06-02 00:35:57 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSAT.exe
[2011-06-02 00:35:57 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2011-06-02 00:35:57 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011-06-02 00:35:56 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll
[2011-06-02 00:35:56 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2011-06-02 00:35:55 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011-06-02 00:35:55 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011-06-02 00:35:53 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll
[2011-06-02 00:35:53 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2011-06-02 00:35:52 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2011-06-02 00:35:51 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011-06-02 00:35:51 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2011-06-02 00:35:51 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2011-06-02 00:35:51 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2011-06-02 00:35:51 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011-06-02 00:35:49 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2011-06-02 00:35:49 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2011-06-02 00:35:49 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqmapi.dll
[2011-06-02 00:35:48 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2fs.dll
[2011-06-02 00:35:48 | 001,076,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011-06-02 00:35:48 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2011-06-02 00:35:48 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netlogon.dll
[2011-06-02 00:35:47 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2011-06-02 00:35:47 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupapi.dll
[2011-06-02 00:35:47 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011-06-02 00:35:47 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll
[2011-06-02 00:35:47 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011-06-02 00:35:46 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2011-06-02 00:35:46 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\werconcpl.dll
[2011-06-02 00:35:46 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbc32.dll
[2011-06-02 00:35:46 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskeng.exe
[2011-06-02 00:35:45 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certmgr.dll
[2011-06-02 00:35:45 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011-06-02 00:35:45 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2011-06-02 00:35:45 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011-06-02 00:35:44 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2011-06-02 00:35:44 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011-06-02 00:35:44 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2011-06-02 00:35:44 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011-06-02 00:35:44 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011-06-02 00:35:44 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2011-06-02 00:35:43 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdtctm.dll
[2011-06-02 00:35:43 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011-06-02 00:35:43 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2011-06-02 00:35:43 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shlwapi.dll
[2011-06-02 00:35:43 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll
[2011-06-02 00:35:43 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedynos.dll
[2011-06-02 00:35:43 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2011-06-02 00:35:42 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netshell.dll
[2011-06-02 00:35:42 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011-06-02 00:35:42 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011-06-02 00:35:41 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2011-06-02 00:35:41 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011-06-02 00:35:41 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2011-06-02 00:35:41 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2011-06-02 00:35:41 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2011-06-02 00:35:41 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2011-06-02 00:35:41 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2011-06-02 00:35:41 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.exe
[2011-06-02 00:35:41 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ws2_32.dll
[2011-06-02 00:35:40 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011-06-02 00:35:40 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpps.dll
[2011-06-02 00:35:40 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
[2011-06-02 00:35:40 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2011-06-02 00:35:40 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
[2011-06-02 00:35:39 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
[2011-06-02 00:35:39 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Query.dll
[2011-06-02 00:35:39 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroles.dll
[2011-06-02 00:35:39 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011-06-02 00:35:39 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011-06-02 00:35:39 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QAGENT.DLL
[2011-06-02 00:35:39 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011-06-02 00:35:38 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Vault.dll
[2011-06-02 00:35:38 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll
[2011-06-02 00:35:38 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmd.exe
[2011-06-02 00:35:38 | 000,281,600 | ---- | C] (Microsoft) -- C:\Windows\SysNative\DShowRdpFilter.dll
[2011-06-02 00:35:37 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011-06-02 00:35:37 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011-06-02 00:35:37 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2011-06-02 00:35:37 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpksetup.exe
[2011-06-02 00:35:37 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011-06-02 00:35:35 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011-06-02 00:35:35 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011-06-02 00:35:35 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2011-06-02 00:35:35 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sxs.dll
[2011-06-02 00:35:35 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011-06-02 00:35:35 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011-06-02 00:35:34 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskcomp.dll
[2011-06-02 00:35:34 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2011-06-02 00:35:34 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wldap32.dll
[2011-06-02 00:35:34 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcbuilder.exe
[2011-06-02 00:35:33 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011-06-02 00:35:33 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pnidui.dll
[2011-06-02 00:35:33 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipsmsnap.dll
[2011-06-02 00:35:33 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011-06-02 00:35:33 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgprint.dll
[2011-06-02 00:35:33 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011-06-02 00:35:33 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2011-06-02 00:35:29 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011-06-02 00:35:29 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webservices.dll
[2011-06-02 00:35:29 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlsrv32.dll
[2011-06-02 00:35:29 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011-06-02 00:35:29 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011-06-02 00:35:29 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2011-06-02 00:35:29 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011-06-02 00:35:28 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011-06-02 00:35:28 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2011-06-02 00:35:28 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fveapi.dll
[2011-06-02 00:35:28 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011-06-02 00:35:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011-06-02 00:35:28 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3api.dll
[2011-06-02 00:35:27 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011-06-02 00:35:27 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanpref.dll
[2011-06-02 00:35:27 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMNetMgr.dll
[2011-06-02 00:35:27 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcmde.dll
[2011-06-02 00:35:27 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2011-06-02 00:35:27 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2011-06-02 00:35:27 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schtasks.exe
[2011-06-02 00:35:27 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prncache.dll
[2011-06-02 00:35:26 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011-06-02 00:35:26 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2011-06-02 00:35:26 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2011-06-02 00:35:26 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnike.dll
[2011-06-02 00:35:26 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2011-06-02 00:35:26 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011-06-02 00:35:26 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\userenv.dll
[2011-06-02 00:35:25 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncCenter.dll
[2011-06-02 00:35:25 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppobjs.dll
[2011-06-02 00:35:25 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll
[2011-06-02 00:35:25 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2011-06-02 00:35:25 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011-06-02 00:35:25 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2011-06-02 00:35:25 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedyn.dll
[2011-06-02 00:35:24 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPEncEn.dll
[2011-06-02 00:35:24 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpeffects.dll
[2011-06-02 00:35:24 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2011-06-02 00:35:24 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2011-06-02 00:35:23 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localsec.dll
[2011-06-02 00:35:23 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011-06-02 00:35:23 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSATAPI.dll
[2011-06-02 00:35:23 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011-06-02 00:35:23 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011-06-02 00:35:23 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2011-06-02 00:35:23 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011-06-02 00:35:23 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fde.dll
[2011-06-02 00:35:22 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netdiagfx.dll
[2011-06-02 00:35:22 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2011-06-02 00:35:22 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2011-06-02 00:35:22 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2011-06-02 00:35:22 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netid.dll
[2011-06-02 00:35:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011-06-02 00:35:21 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2011-06-02 00:35:21 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011-06-02 00:35:21 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\biocpl.dll
[2011-06-02 00:35:21 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msinfo32.exe
[2011-06-02 00:35:21 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tcpipcfg.dll
[2011-06-02 00:35:21 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spp.dll
[2011-06-02 00:35:21 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSHVHOST.DLL
[2011-06-02 00:35:21 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011-06-02 00:35:21 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011-06-02 00:35:20 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011-06-02 00:35:20 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2011-06-02 00:35:20 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mspbda.dll
[2011-06-02 00:35:20 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scansetting.dll
[2011-06-02 00:35:20 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011-06-02 00:35:19 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2011-06-02 00:35:19 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PhotoScreensaver.scr
[2011-06-02 00:35:19 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011-06-02 00:35:19 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wusa.exe
[2011-06-02 00:35:19 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IPHLPAPI.DLL
[2011-06-02 00:35:19 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitagent.exe
[2011-06-02 00:35:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011-06-02 00:35:18 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011-06-02 00:35:18 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscms.dll
[2011-06-02 00:35:18 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011-06-02 00:35:18 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2011-06-02 00:35:18 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011-06-02 00:35:18 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2011-06-02 00:35:18 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011-06-02 00:35:18 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011-06-02 00:35:17 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2011-06-02 00:35:17 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FirewallControlPanel.dll
[2011-06-02 00:35:17 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011-06-02 00:35:17 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppwinob.dll
[2011-06-02 00:35:17 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisptis.exe
[2011-06-02 00:35:17 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011-06-02 00:35:17 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2011-06-02 00:35:17 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetup.exe
[2011-06-02 00:35:16 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2011-06-02 00:35:16 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011-06-02 00:35:16 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXP.dll
[2011-06-02 00:35:16 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011-06-02 00:35:16 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetapi.dll
[2011-06-02 00:35:15 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011-06-02 00:35:15 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmsys.cpl
[2011-06-02 00:35:15 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
[2011-06-02 00:35:15 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011-06-02 00:35:15 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2011-06-02 00:35:15 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2011-06-02 00:35:15 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2011-06-02 00:35:15 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011-06-02 00:35:15 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprapi.dll
[2011-06-02 00:35:15 | 000,128,000 | ---- | C] (Microsoft) -- C:\Windows\SysNative\Robocopy.exe
[2011-06-02 00:35:14 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011-06-02 00:35:14 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DxpTaskSync.dll
[2011-06-02 00:35:14 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PerfCenterCPL.dll
[2011-06-02 00:35:14 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll
[2011-06-02 00:35:14 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011-06-02 00:35:14 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2011-06-02 00:35:14 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\thumbcache.dll
[2011-06-02 00:35:14 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys
[2011-06-02 00:35:13 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themeui.dll
[2011-06-02 00:35:13 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011-06-02 00:35:13 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXPTaskRingtone.dll
[2011-06-02 00:35:13 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2011-06-02 00:35:13 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onex.dll
[2011-06-02 00:35:13 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scecli.dll
[2011-06-02 00:35:13 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys
[2011-06-02 00:35:13 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2011-06-02 00:35:13 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll
[2011-06-02 00:35:13 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011-06-02 00:35:13 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2011-06-02 00:35:13 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
[2011-06-02 00:35:12 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011-06-02 00:35:12 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011-06-02 00:35:12 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011-06-02 00:35:12 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2011-06-02 00:35:12 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011-06-02 00:35:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011-06-02 00:35:11 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdc.dll
[2011-06-02 00:35:11 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlangpui.dll
[2011-06-02 00:35:11 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2011-06-02 00:35:11 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2011-06-02 00:35:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011-06-02 00:35:11 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011-06-02 00:35:10 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcenter.dll
[2011-06-02 00:35:10 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdengin2.dll
[2011-06-02 00:35:10 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2011-06-02 00:35:10 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2011-06-02 00:35:10 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StructuredQuery.dll
[2011-06-02 00:35:10 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiadefui.dll
[2011-06-02 00:35:10 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2011-06-02 00:35:10 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dskquoui.dll
[2011-06-02 00:35:10 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011-06-02 00:35:10 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011-06-02 00:35:10 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samcli.dll
[2011-06-02 00:35:10 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011-06-02 00:35:09 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2011-06-02 00:35:09 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011-06-02 00:35:09 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011-06-02 00:35:09 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011-06-02 00:35:09 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011-06-02 00:35:09 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srchadmin.dll
[2011-06-02 00:35:09 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011-06-02 00:35:09 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011-06-02 00:35:09 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2011-06-02 00:35:09 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011-06-02 00:35:09 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QUTIL.DLL
[2011-06-02 00:35:09 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\regapi.dll
[2011-06-02 00:35:08 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011-06-02 00:35:08 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011-06-02 00:35:08 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appwiz.cpl
[2011-06-02 00:35:08 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TabletPC.cpl
[2011-06-02 00:35:08 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011-06-02 00:35:08 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2011-06-02 00:35:08 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2011-06-02 00:35:08 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2011-06-02 00:35:08 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011-06-02 00:35:08 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011-06-02 00:35:08 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupcl.exe
[2011-06-02 00:35:08 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2011-06-02 00:35:08 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011-06-02 00:35:07 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgcpl.dll
[2011-06-02 00:35:07 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msconfig.exe
[2011-06-02 00:35:07 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netiohlp.dll
[2011-06-02 00:35:07 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011-06-02 00:35:07 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mimefilt.dll
[2011-06-02 00:35:06 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2011-06-02 00:35:06 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\basecsp.dll
[2011-06-02 00:35:06 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdeploy.dll
[2011-06-02 00:35:06 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsmproxy.dll
[2011-06-02 00:35:05 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011-06-02 00:35:05 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011-06-02 00:35:05 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011-06-02 00:35:05 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011-06-02 00:35:05 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011-06-02 00:35:05 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mtxclu.dll
[2011-06-02 00:35:05 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011-06-02 00:35:05 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011-06-02 00:35:05 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011-06-02 00:35:05 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011-06-02 00:35:05 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2011-06-02 00:35:04 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011-06-02 00:35:04 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched20.dll
[2011-06-02 00:35:04 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011-06-02 00:35:04 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscmmc.dll
[2011-06-02 00:35:03 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themecpl.dll
[2011-06-02 00:35:03 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011-06-02 00:35:03 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011-06-02 00:35:03 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercpl.dll
[2011-06-02 00:35:03 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eudcedit.exe
[2011-06-02 00:35:03 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sharemediacpl.dll
[2011-06-02 00:35:03 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011-06-02 00:35:03 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoncli.dll
[2011-06-02 00:35:03 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nci.dll
[2011-06-02 00:35:03 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RpcRtRemote.dll
[2011-06-02 00:35:02 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SensorsCpl.dll
[2011-06-02 00:35:02 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Narrator.exe
[2011-06-02 00:35:02 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011-06-02 00:35:02 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011-06-02 00:35:02 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll
[2011-06-02 00:35:02 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netjoin.dll
[2011-06-02 00:35:02 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011-06-02 00:35:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011-06-02 00:35:02 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011-06-02 00:35:02 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011-06-02 00:35:02 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnikeapi.dll
[2011-06-02 00:35:01 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoconv.exe
[2011-06-02 00:35:01 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autochk.exe
[2011-06-02 00:35:01 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autofmt.exe
[2011-06-02 00:35:01 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011-06-02 00:35:01 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2011-06-02 00:35:01 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshipsec.dll
[2011-06-02 00:35:01 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011-06-02 00:35:01 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011-06-02 00:35:01 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll
[2011-06-02 00:35:01 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011-06-02 00:35:01 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011-06-02 00:35:01 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2011-06-02 00:35:01 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2011-06-02 00:35:01 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2011-06-02 00:35:01 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011-06-02 00:35:01 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011-06-02 00:35:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011-06-02 00:35:00 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdclt.exe
[2011-06-02 00:35:00 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpd_ci.dll
[2011-06-02 00:35:00 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011-06-02 00:35:00 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanui.dll
[2011-06-02 00:35:00 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011-06-02 00:35:00 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011-06-02 00:35:00 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2011-06-02 00:35:00 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011-06-02 00:35:00 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011-06-02 00:35:00 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011-06-02 00:35:00 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011-06-02 00:35:00 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys
[2011-06-02 00:35:00 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdsrv.dll
[2011-06-02 00:35:00 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prntvpt.dll
[2011-06-02 00:35:00 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll
[2011-06-02 00:34:59 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011-06-02 00:34:59 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2011-06-02 00:34:59 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011-06-02 00:34:59 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontext.dll
[2011-06-02 00:34:59 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011-06-02 00:34:59 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2011-06-02 00:34:59 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011-06-02 00:34:59 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprddm.dll
[2011-06-02 00:34:59 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011-06-02 00:34:59 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011-06-02 00:34:59 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011-06-02 00:34:59 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2011-06-02 00:34:59 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011-06-02 00:34:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2011-06-02 00:34:58 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011-06-02 00:34:58 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mblctr.exe
[2011-06-02 00:34:58 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\batmeter.dll
[2011-06-02 00:34:57 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011-06-02 00:34:57 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DiagCpl.dll
[2011-06-02 00:34:57 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011-06-02 00:34:57 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011-06-02 00:34:57 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usercpl.dll
[2011-06-02 00:34:57 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011-06-02 00:34:57 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011-06-02 00:34:57 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011-06-02 00:34:57 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpsrcwp.dll
[2011-06-02 00:34:57 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011-06-02 00:34:57 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rtutils.dll
[2011-06-02 00:34:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011-06-02 00:34:56 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bootres.dll
[2011-06-02 00:34:56 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:56 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksproxy.ax
[2011-06-02 00:34:56 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011-06-02 00:34:56 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSTPager.ax
[2011-06-02 00:34:55 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011-06-02 00:34:55 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011-06-02 00:34:55 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpccpl.dll
[2011-06-02 00:34:55 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011-06-02 00:34:55 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxdiagn.dll
[2011-06-02 00:34:55 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011-06-02 00:34:55 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2011-06-02 00:34:55 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rasppp.dll
[2011-06-02 00:34:55 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3cfg.dll
[2011-06-02 00:34:54 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnfldr.dll
[2011-06-02 00:34:54 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011-06-02 00:34:54 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011-06-02 00:34:54 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pdh.dll
[2011-06-02 00:34:54 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011-06-02 00:34:54 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskmgr.exe
[2011-06-02 00:34:54 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011-06-02 00:34:54 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2011-06-02 00:34:54 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011-06-02 00:34:54 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hbaapi.dll
[2011-06-02 00:34:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\proquota.exe
[2011-06-02 00:34:53 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\accessibilitycpl.dll
[2011-06-02 00:34:53 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011-06-02 00:34:53 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\untfs.dll
[2011-06-02 00:34:53 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAC3ENC.DLL
[2011-06-02 00:34:53 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011-06-02 00:34:53 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011-06-02 00:34:53 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2011-06-02 00:34:53 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2011-06-02 00:34:53 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011-06-02 00:34:53 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011-06-02 00:34:53 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDShServiceObj.dll
[2011-06-02 00:34:53 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011-06-02 00:34:52 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011-06-02 00:34:52 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011-06-02 00:34:52 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011-06-02 00:34:52 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011-06-02 00:34:51 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011-06-02 00:34:51 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\zipfldr.dll
[2011-06-02 00:34:51 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slui.exe
[2011-06-02 00:34:51 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2011-06-02 00:34:51 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011-06-02 00:34:51 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\defaultlocationcpl.dll
[2011-06-02 00:34:51 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011-06-02 00:34:51 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011-06-02 00:34:50 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011-06-02 00:34:50 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sud.dll
[2011-06-02 00:34:50 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DeviceCenter.dll
[2011-06-02 00:34:50 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011-06-02 00:34:50 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011-06-02 00:34:50 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011-06-02 00:34:50 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mpeg2Data.ax
[2011-06-02 00:34:50 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011-06-02 00:34:49 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkmap.dll
[2011-06-02 00:34:49 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2011-06-02 00:34:49 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2011-06-02 00:34:49 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011-06-02 00:34:49 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011-06-02 00:34:49 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2011-06-02 00:34:49 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2011-06-02 00:34:49 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011-06-02 00:34:49 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskbarcpl.dll
[2011-06-02 00:34:49 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OnLineIDCpl.dll
[2011-06-02 00:34:49 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011-06-02 00:34:49 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twext.dll
[2011-06-02 00:34:49 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011-06-02 00:34:48 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011-06-02 00:34:48 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OobeFldr.dll
[2011-06-02 00:34:48 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011-06-02 00:34:48 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011-06-02 00:34:48 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011-06-02 00:34:48 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011-06-02 00:34:48 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroleui.dll
[2011-06-02 00:34:48 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011-06-02 00:34:48 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl
[2011-06-02 00:34:48 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdedit.exe
[2011-06-02 00:34:48 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011-06-02 00:34:48 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxlib.dll
[2011-06-02 00:34:48 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recovery.dll
[2011-06-02 00:34:48 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011-06-02 00:34:48 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2011-06-02 00:34:48 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011-06-02 00:34:47 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011-06-02 00:34:47 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdcpl.dll
[2011-06-02 00:34:47 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bthprops.cpl
[2011-06-02 00:34:47 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsuiext.dll
[2011-06-02 00:34:47 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011-06-02 00:34:47 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MediaMetadataHandler.dll
[2011-06-02 00:34:47 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011-06-02 00:34:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011-06-02 00:34:47 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\efscore.dll
[2011-06-02 00:34:47 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syncui.dll
[2011-06-02 00:34:47 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VBICodec.ax
[2011-06-02 00:34:47 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cca.dll
[2011-06-02 00:34:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\isoburn.exe
[2011-06-02 00:34:47 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011-06-02 00:34:47 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tzutil.exe
[2011-06-02 00:34:47 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sisbkup.dll
[2011-06-02 00:34:46 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011-06-02 00:34:46 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011-06-02 00:34:46 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011-06-02 00:34:46 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2011-06-02 00:34:46 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shwebsvc.dll
[2011-06-02 00:34:46 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\systemcpl.dll
[2011-06-02 00:34:46 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2011-06-02 00:34:46 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recdisc.exe
[2011-06-02 00:34:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011-06-02 00:34:46 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysclass.dll
[2011-06-02 00:34:46 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netplwiz.dll
[2011-06-02 00:34:46 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011-06-02 00:34:46 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011-06-02 00:34:46 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoplay.dll
[2011-06-02 00:34:46 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptui.dll
[2011-06-02 00:34:46 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpapi.dll
[2011-06-02 00:34:46 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2011-06-02 00:34:45 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011-06-02 00:34:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011-06-02 00:34:45 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenterCPL.dll
[2011-06-02 00:34:45 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizeng.dll
[2011-06-02 00:34:45 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011-06-02 00:34:45 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011-06-02 00:34:45 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011-06-02 00:34:45 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:45 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFPlay.dll
[2011-06-02 00:34:45 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011-06-02 00:34:45 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011-06-02 00:34:45 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksxbar.ax
[2011-06-02 00:34:44 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysmon.ocx
[2011-06-02 00:34:44 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\termmgr.dll
[2011-06-02 00:34:44 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011-06-02 00:34:44 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011-06-02 00:34:44 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011-06-02 00:34:44 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsutil.dll
[2011-06-02 00:34:44 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011-06-02 00:34:43 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011-06-02 00:34:43 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2011-06-02 00:34:43 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011-06-02 00:34:43 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll
[2011-06-02 00:34:43 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2011-06-02 00:34:43 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sethc.exe
[2011-06-02 00:34:43 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011-06-02 00:34:43 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011-06-02 00:34:43 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011-06-02 00:34:43 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011-06-02 00:34:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011-06-02 00:34:43 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntlanman.dll
[2011-06-02 00:34:43 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011-06-02 00:34:43 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2011-06-02 00:34:43 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011-06-02 00:34:42 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011-06-02 00:34:42 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlcese30.dll
[2011-06-02 00:34:42 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011-06-02 00:34:42 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011-06-02 00:34:42 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ssText3d.scr
[2011-06-02 00:34:42 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdm.tsp
[2011-06-02 00:34:42 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011-06-02 00:34:42 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iTVData.dll
[2011-06-02 00:34:42 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iprtrmgr.dll
[2011-06-02 00:34:42 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011-06-02 00:34:42 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011-06-02 00:34:42 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011-06-02 00:34:42 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011-06-02 00:34:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011-06-02 00:34:42 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011-06-02 00:34:42 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UserAccountControlSettings.dll
[2011-06-02 00:34:42 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpd3d.dll
[2011-06-02 00:34:42 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2011-06-02 00:34:42 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2011-06-02 00:34:42 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011-06-02 00:34:41 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011-06-02 00:34:41 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2011-06-02 00:34:41 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011-06-02 00:34:41 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2011-06-02 00:34:41 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011-06-02 00:34:41 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wavemsp.dll
[2011-06-02 00:34:41 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011-06-02 00:34:41 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srvcli.dll
[2011-06-02 00:34:41 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nslookup.exe
[2011-06-02 00:34:41 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011-06-02 00:34:41 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011-06-02 00:34:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011-06-02 00:34:41 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011-06-02 00:34:40 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011-06-02 00:34:40 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011-06-02 00:34:40 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011-06-02 00:34:40 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011-06-02 00:34:40 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2011-06-02 00:34:40 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011-06-02 00:34:40 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srrstr.dll
[2011-06-02 00:34:40 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011-06-02 00:34:40 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DevicePairingFolder.dll
[2011-06-02 00:34:40 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011-06-02 00:34:40 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdboot.exe
[2011-06-02 00:34:40 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2011-06-02 00:34:40 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011-06-02 00:34:40 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppnp.dll
[2011-06-02 00:34:40 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acppage.dll
[2011-06-02 00:34:39 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkexplorer.dll
[2011-06-02 00:34:39 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011-06-02 00:34:39 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsquirt.exe
[2011-06-02 00:34:39 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011-06-02 00:34:39 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011-06-02 00:34:39 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011-06-02 00:34:39 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\remotepg.dll
[2011-06-02 00:34:39 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011-06-02 00:34:39 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabinet.dll
[2011-06-02 00:34:39 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011-06-02 00:34:39 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wkscli.dll
[2011-06-02 00:34:39 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011-06-02 00:34:38 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2011-06-02 00:34:38 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfrgui.exe
[2011-06-02 00:34:38 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011-06-02 00:34:38 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011-06-02 00:34:38 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011-06-02 00:34:38 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011-06-02 00:34:38 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011-06-02 00:34:38 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSCard.dll
[2011-06-02 00:34:38 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kstvtune.ax
[2011-06-02 00:34:38 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011-06-02 00:34:38 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe
[2011-06-02 00:34:37 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2011-06-02 00:34:37 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011-06-02 00:34:37 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmdev.dll
[2011-06-02 00:34:37 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wvc.dll
[2011-06-02 00:34:37 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011-06-02 00:34:37 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpdxm.dll
[2011-06-02 00:34:37 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011-06-02 00:34:37 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsqmcons.exe
[2011-06-02 00:34:37 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011-06-02 00:34:37 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2011-06-02 00:34:37 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011-06-02 00:34:37 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\net1.exe
[2011-06-02 00:34:37 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsnmp32.dll
[2011-06-02 00:34:37 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011-06-02 00:34:37 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFaultSecure.exe
[2011-06-02 00:34:36 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OpcServices.dll
[2011-06-02 00:34:36 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Bubbles.scr
[2011-06-02 00:34:36 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011-06-02 00:34:36 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011-06-02 00:34:36 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011-06-02 00:34:36 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011-06-02 00:34:36 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011-06-02 00:34:36 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2011-06-02 00:34:36 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapistub.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapi32.dll
[2011-06-02 00:34:36 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\Windows\twain_32.dll
[2011-06-02 00:34:36 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011-06-02 00:34:36 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011-06-02 00:34:35 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\main.cpl
[2011-06-02 00:34:35 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskraid.exe
[2011-06-02 00:34:35 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011-06-02 00:34:35 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mystify.scr
[2011-06-02 00:34:35 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Ribbons.scr
[2011-06-02 00:34:35 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011-06-02 00:34:35 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011-06-02 00:34:35 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011-06-02 00:34:35 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2011-06-02 00:34:35 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ifsutil.dll
[2011-06-02 00:34:35 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011-06-02 00:34:35 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011-06-02 00:34:35 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011-06-02 00:34:35 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdmat.dll
[2011-06-02 00:34:35 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsium.dll
[2011-06-02 00:34:35 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011-06-02 00:34:34 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011-06-02 00:34:34 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2011-06-02 00:34:34 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011-06-02 00:34:34 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011-06-02 00:34:34 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011-06-02 00:34:34 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll
[2011-06-02 00:34:34 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011-06-02 00:34:34 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perfmon.exe
[2011-06-02 00:34:34 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpshell.dll
[2011-06-02 00:34:34 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011-06-02 00:34:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011-06-02 00:34:34 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011-06-02 00:34:34 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011-06-02 00:34:34 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\muifontsetup.dll
[2011-06-02 00:34:33 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll
[2011-06-02 00:34:33 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSAPI.dll
[2011-06-02 00:34:33 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011-06-02 00:34:33 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011-06-02 00:34:33 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011-06-02 00:34:33 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qasf.dll
[2011-06-02 00:34:33 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionQueue.dll
[2011-06-02 00:34:33 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011-06-02 00:34:33 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011-06-02 00:34:33 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011-06-02 00:34:33 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2011-06-02 00:34:33 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tlscsp.dll
[2011-06-02 00:34:33 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\umb.dll
[2011-06-02 00:34:33 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\runonce.exe
[2011-06-02 00:34:33 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPCRYPT.DLL
[2011-06-02 00:34:33 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011-06-02 00:34:33 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AzSqlExt.dll
[2011-06-02 00:34:33 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netutils.dll
[2011-06-02 00:34:32 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMADMOD.DLL
[2011-06-02 00:34:32 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011-06-02 00:34:32 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\raschap.dll
[2011-06-02 00:34:32 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011-06-02 00:34:32 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011-06-02 00:34:32 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdwcn.dll
[2011-06-02 00:34:32 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011-06-02 00:34:32 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsbas.dll
[2011-06-02 00:34:32 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011-06-02 00:34:32 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MdSched.exe
[2011-06-02 00:34:32 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiavideo.dll
[2011-06-02 00:34:32 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011-06-02 00:34:32 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011-06-02 00:34:32 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011-06-02 00:34:32 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011-06-02 00:34:32 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintIsolationProxy.dll
[2011-06-02 00:34:32 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011-06-02 00:34:32 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011-06-02 00:34:32 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syssetup.dll
[2011-06-02 00:34:31 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011-06-02 00:34:31 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVSDECD.DLL
[2011-06-02 00:34:31 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nltest.exe
[2011-06-02 00:34:31 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstask.dll
[2011-06-02 00:34:31 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsadmin.exe
[2011-06-02 00:34:31 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011-06-02 00:34:31 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011-06-02 00:34:31 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011-06-02 00:34:31 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011-06-02 00:34:31 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
[2011-06-02 00:34:31 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Kswdmcap.ax
[2011-06-02 00:34:31 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011-06-02 00:34:31 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011-06-02 00:34:31 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-06-02 00:34:31 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011-06-02 00:34:30 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011-06-02 00:34:30 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmnet.dll
[2011-06-02 00:34:30 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011-06-02 00:34:30 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011-06-02 00:34:30 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDSp.dll
[2011-06-02 00:34:30 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2011-06-02 00:34:30 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011-06-02 00:34:30 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011-06-02 00:34:30 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011-06-02 00:34:30 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qcap.dll
[2011-06-02 00:34:30 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011-06-02 00:34:30 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shacct.dll
[2011-06-02 00:34:30 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSVRMGMT.DLL
[2011-06-02 00:34:30 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011-06-02 00:34:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011-06-02 00:34:30 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011-06-02 00:34:30 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
[2011-06-02 00:34:30 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2011-06-02 00:34:30 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011-06-02 00:34:30 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tabcal.exe
[2011-06-02 00:34:30 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vss_ps.dll
[2011-06-02 00:34:30 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011-06-02 00:34:30 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscapi.dll
[2011-06-02 00:34:30 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011-06-02 00:34:30 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011-06-02 00:34:29 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011-06-02 00:34:29 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011-06-02 00:34:29 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011-06-02 00:34:29 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3ui.dll
[2011-06-02 00:34:29 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011-06-02 00:34:29 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdv.dll
[2011-06-02 00:34:29 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011-06-02 00:34:29 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011-06-02 00:34:29 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2011-06-02 00:34:29 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fphc.dll
[2011-06-02 00:34:29 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011-06-02 00:34:29 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011-06-02 00:34:29 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011-06-02 00:34:29 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spbcd.dll
[2011-06-02 00:34:29 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011-06-02 00:34:29 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011-06-02 00:34:29 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011-06-02 00:34:28 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10.IME
[2011-06-02 00:34:28 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011-06-02 00:34:28 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2011-06-02 00:34:28 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011-06-02 00:34:28 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011-06-02 00:34:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011-06-02 00:34:28 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011-06-02 00:34:28 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011-06-02 00:34:28 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EhStorAPI.dll
[2011-06-02 00:34:28 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011-06-02 00:34:28 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\desk.cpl
[2011-06-02 00:34:28 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011-06-02 00:34:28 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011-06-02 00:34:28 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011-06-02 00:34:28 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011-06-02 00:34:28 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011-06-02 00:34:28 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011-06-02 00:34:28 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\amstream.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011-06-02 00:34:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011-06-02 00:34:28 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011-06-02 00:34:28 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\takeown.exe
[2011-06-02 00:34:28 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PnPUnattend.exe
[2011-06-02 00:34:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011-06-02 00:34:28 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011-06-02 00:34:28 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011-06-02 00:34:27 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2011-06-02 00:34:27 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011-06-02 00:34:27 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011-06-02 00:34:27 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011-06-02 00:34:27 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011-06-02 00:34:27 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2011-06-02 00:34:27 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011-06-02 00:34:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011-06-02 00:34:27 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011-06-02 00:34:27 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011-06-02 00:34:27 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmstp.exe
[2011-06-02 00:34:27 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QCLIPROV.DLL
[2011-06-02 00:34:27 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011-06-02 00:34:27 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2011-06-02 00:34:27 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertPolEng.dll
[2011-06-02 00:34:27 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WavDest.dll
[2011-06-02 00:34:27 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\djoin.exe
[2011-06-02 00:34:27 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimgvw.dll
[2011-06-02 00:34:27 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\HotStartUserAgent.dll
[2011-06-02 00:34:27 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nrpsrv.dll
[2011-06-02 00:34:26 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011-06-02 00:34:26 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSDvbNP.ax
[2011-06-02 00:34:26 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdProxy.dll
[2011-06-02 00:34:26 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011-06-02 00:34:26 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011-06-02 00:34:26 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011-06-02 00:34:25 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011-06-02 00:34:25 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011-06-02 00:34:25 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MultiDigiMon.exe
[2011-06-02 00:34:25 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011-06-02 00:34:24 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mydocs.dll
[2011-06-02 00:34:24 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\g711codc.ax
[2011-06-02 00:34:23 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011-06-02 00:34:23 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\itircl.dll
[2011-06-02 00:34:23 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011-06-02 00:34:23 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskpart.exe
[2011-06-02 00:34:23 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsicli.exe
[2011-06-02 00:34:23 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011-06-02 00:34:23 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011-06-02 00:34:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011-06-02 00:34:23 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3msm.dll
[2011-06-02 00:34:23 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mobsync.exe
[2011-06-02 00:34:23 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011-06-02 00:34:23 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011-06-02 00:34:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2011-06-02 00:34:23 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2011-06-02 00:34:23 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011-06-02 00:34:23 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbisurf.ax
[2011-06-02 00:34:23 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
[2011-06-02 00:34:23 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011-06-02 00:34:23 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdmo.dll
[2011-06-02 00:34:23 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011-06-02 00:34:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011-06-02 00:34:23 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BWUnpairElevated.dll
[2011-06-02 00:34:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sscore.dll
[2011-06-02 00:34:22 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011-06-02 00:34:22 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSTIFF.dll
[2011-06-02 00:34:22 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011-06-02 00:34:22 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011-06-02 00:34:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011-06-02 00:34:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011-06-02 00:34:22 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011-06-02 00:34:22 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\findstr.exe
[2011-06-02 00:34:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011-06-02 00:34:22 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011-06-02 00:34:22 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011-06-02 00:34:22 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciqtz32.dll
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\choice.exe
[2011-06-02 00:34:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011-06-02 00:34:22 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2011-06-02 00:34:22 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011-06-02 00:34:22 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011-06-02 00:34:22 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011-06-02 00:34:21 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onexui.dll
[2011-06-02 00:34:21 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011-06-02 00:34:21 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011-06-02 00:34:21 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppc.dll
[2011-06-02 00:34:21 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011-06-02 00:34:21 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011-06-02 00:34:21 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\manage-bde.exe
[2011-06-02 00:34:21 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011-06-02 00:34:21 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011-06-02 00:34:21 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetmib1.dll
[2011-06-02 00:34:21 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011-06-02 00:34:21 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011-06-02 00:34:21 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\luainstall.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdiasqmmodule.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011-06-02 00:34:21 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schedcli.dll
[2011-06-02 00:34:21 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011-06-02 00:34:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011-06-02 00:34:20 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RDPENCDD.dll
[2011-06-02 00:34:20 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011-06-02 00:34:20 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2011-06-02 00:34:20 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbcconf.dll
[2011-06-02 00:34:20 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011-06-02 00:34:20 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\repair-bde.exe
[2011-06-02 00:34:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011-06-02 00:34:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2011-06-02 00:34:20 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011-06-02 00:34:20 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011-06-02 00:34:20 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\profprov.dll
[2011-06-02 00:34:20 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2011-06-02 00:34:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011-06-02 00:34:20 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011-06-02 00:34:20 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011-06-02 00:34:20 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spopk.dll
[2011-06-02 00:34:20 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fixmapi.exe
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSMON.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011-06-02 00:34:19 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011-06-02 00:34:19 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011-06-02 00:34:19 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys
[2011-06-02 00:34:19 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elsTrans.dll
[2011-06-02 00:34:19 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TRAPI.dll
[2011-06-02 00:34:19 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011-06-02 00:34:19 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011-06-02 00:34:18 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\napdsnap.dll
[2011-06-02 00:34:18 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011-06-02 00:34:18 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsauth.dll
[2011-06-02 00:34:18 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscdll.dll
[2011-06-02 00:34:18 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LogonUI.exe
[2011-06-02 00:34:18 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsperf.dll
[2011-06-02 00:34:18 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdprefdrvapi.dll
[2011-06-02 00:34:18 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011-06-02 00:34:18 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011-06-02 00:34:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011-06-02 00:34:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSUNATD.exe
[2011-06-02 00:34:18 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011-06-02 00:34:18 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011-06-02 00:34:17 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011-06-02 00:34:17 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imkr80.ime
[2011-06-02 00:34:17 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011-06-02 00:34:17 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2011-06-02 00:34:17 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2011-06-02 00:34:17 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shgina.dll
[2011-06-02 00:34:17 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsdchngr.dll
[2011-06-02 00:34:17 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011-06-02 00:34:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011-06-02 00:34:16 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011-06-02 00:34:16 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011-06-02 00:34:16 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011-06-02 00:34:16 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011-06-02 00:34:16 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshirda.dll
[2011-06-02 00:34:16 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011-06-02 00:34:16 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011-06-02 00:34:15 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011-06-02 00:34:15 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched32.dll
[2011-06-02 00:34:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcfgex.dll
[2011-06-02 00:34:15 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2011-06-02 00:34:14 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2011-06-02 00:34:13 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shunimpl.dll
[2011-06-02 00:34:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011-06-02 00:34:11 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSG.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGKL.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDPO.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDNEPR.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTAM.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINBEN.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011-06-02 00:34:10 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011-06-02 00:34:09 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
[2011-06-02 00:34:09 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BlbEvents.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pifmgr.dll
[2011-06-02 00:34:09 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUS.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMON.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnaddr.dll
[2011-06-02 00:34:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011-06-02 00:33:54 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011-06-02 00:33:54 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011-06-02 00:33:51 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011-06-02 00:33:51 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011-06-02 00:32:23 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wbemcomn.dll
[2011-06-02 00:32:23 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmicmiplugin.dll
[2011-06-02 00:32:15 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmiEngine.dll
[2011-06-02 00:32:13 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PkgMgr.exe
[2011-06-02 00:32:04 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drvstore.dll
[2011-06-02 00:32:04 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpx.dll
[2011-06-01 20:58:17 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Marcin
[2011-05-31 17:59:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Last.fm
[2011-05-31 17:58:32 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\Last.fm
[2011-05-31 17:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Last.fm
[2011-05-31 17:03:29 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2011-05-31 17:03:28 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2011-05-31 17:02:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2011-05-31 17:02:54 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Winamp
[2011-05-31 14:18:06 | 000,000,000 | ---D | C] -- C:\Max -bud i inne
[2011-05-22 08:31:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady
[2011-05-22 08:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\RDRM
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla
[2011-05-22 08:04:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011-05-22 08:04:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
[2011-05-22 08:03:31 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-07-13 15:33:27 | 008,650,752 | -HS- | M] () -- C:\Users\MAX-BUD\NTUSER.DAT
[2011-07-13 14:39:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA.job
[2011-07-13 12:37:17 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini
[2011-07-13 12:37:11 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011-07-13 11:39:14 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-07-13 11:39:14 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-07-13 11:31:40 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2011-07-13 11:31:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-07-13 11:31:25 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-13 01:41:12 | 001,857,706 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Local\IconCache.db
[2011-07-12 22:33:21 | 000,035,816 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-12 22:10:34 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-12 22:07:35 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\winstart.bat
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:31:27 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\amsfh.exe
[2011-07-12 21:19:24 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\msvuiet.exe
[2011-07-12 21:12:03 | 000,007,625 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 16:39:01 | 000,001,014 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core.job
[2011-07-12 09:00:13 | 000,070,104 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 16:56:56 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:22 | 000,073,551 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-09 00:38:07 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-07-09 00:38:07 | 000,687,828 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-07-09 00:38:07 | 000,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-07-09 00:38:07 | 000,131,382 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-07-09 00:38:07 | 000,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-07-04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-07-04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-07-04 13:43:42 | 000,253,888 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-07-04 13:36:56 | 000,600,920 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-07-04 13:36:54 | 000,288,088 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-07-04 13:35:28 | 000,045,400 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-07-04 13:32:35 | 000,031,064 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-07-04 13:32:14 | 000,022,360 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-07-03 01:33:08 | 005,794,489 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:38 | 001,590,098 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 14:39:06 | 000,467,528 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011-07-01 14:28:20 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011-07-01 14:28:19 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011-07-01 10:42:26 | 000,000,522 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-28 15:35:23 | 000,001,848 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-27 14:08:43 | 000,000,688 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-26 08:45:56 | 000,256,000 | ---- | M] () -- C:\Windows\PEV.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
[2011-05-26 20:56:21 | 000,000,000 | ---- | M] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-26 16:38:12 | 000,000,698 | ---- | M] () -- C:\Windows\Thps3.INI
[2011-05-24 12:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-05-24 12:37:54 | 000,252,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-05-22 08:03:31 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2011-05-18 10:53:18 | 000,012,808 | ---- | M] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-07-13 12:13:52 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011-07-13 12:13:52 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011-07-13 12:13:52 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011-07-13 12:13:52 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011-07-13 12:13:52 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011-07-12 22:07:10 | 000,000,002 | RHS- | C] () -- C:\Windows\winstart.bat
[2011-07-12 22:07:10 | 000,000,002 | RHS- | C] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:39:31 | 001,857,706 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Local\IconCache.db
[2011-07-12 21:12:03 | 000,007,625 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 20:38:53 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\msvuiet.exe
[2011-07-12 20:10:12 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\amsfh.exe
[2011-07-12 09:00:13 | 000,070,104 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 14:20:17 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:21 | 000,073,551 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-03 01:33:36 | 005,794,489 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:29 | 001,590,098 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 10:42:26 | 000,000,522 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-28 15:35:23 | 000,001,848 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-27 14:08:43 | 000,000,688 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
[2011-06-02 00:35:59 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2011-06-02 00:35:44 | 000,419,880 | ---- | C] () -- C:\Windows\SysWow64\locale.nls
[2011-06-02 00:35:44 | 000,419,880 | ---- | C] () -- C:\Windows\SysNative\locale.nls
[2011-06-02 00:34:21 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2011-06-02 00:33:54 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011-05-31 15:57:34 | 000,002,691 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Microsoft Office Word 2007.lnk
[2011-05-26 20:56:21 | 000,000,000 | ---- | C] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-22 08:04:08 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011-04-08 23:29:17 | 000,000,698 | ---- | C] () -- C:\Windows\Thps3.INI
[2011-02-18 16:28:45 | 000,000,617 | ---- | C] () -- C:\Windows\eReg.dat
[2010-06-15 09:58:05 | 000,002,181 | ---- | C] () -- C:\Windows\Helicon Debug Window.ini
[2010-05-05 11:56:58 | 000,021,504 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-26 10:23:36 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010-02-26 00:00:07 | 000,127,696 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\GDIPFONTCACHEV1.DAT
[2009-10-04 23:59:37 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2009-08-27 08:05:12 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009-08-27 08:05:12 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009-08-27 08:05:12 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009-08-27 08:05:12 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini
[2009-07-14 04:34:57 | 000,000,510 | ---- | C] () -- C:\Windows\win.ini
[2009-07-14 04:34:57 | 000,000,215 | ---- | C] () -- C:\Windows\system.ini
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009-04-28 04:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll
[2002-10-03 14:42:27 | 000,000,034 | ---- | C] () -- C:\Windows\Q3version.ini

[color=#E56717]========== LOP Check ==========[/color]

[2011-07-12 22:12:44 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2010-03-18 09:49:42 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ashampoo
[2011-06-30 13:20:38 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\CrazyKeys
[2011-06-30 14:13:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2010-11-15 01:53:49 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Gadu-Gadu 10
[2011-06-09 16:23:10 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2010-06-12 12:09:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GHISLER
[2011-05-31 15:53:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-07-13 13:16:33 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-04-29 14:31:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Lexis Rex
[2010-06-08 00:29:14 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia
[2010-05-05 12:11:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia Ovi Suite
[2010-10-16 12:23:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PC Suite
[2011-05-01 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PITy2010
[2010-04-25 12:56:07 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Toshiba
[2010-10-23 08:26:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\uTorrent
[2011-06-30 15:09:57 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2010-03-21 21:57:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Windows Live Writer
[2011-07-11 14:39:41 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2011-02-02 01:51:14 | 000,018,366 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2011-07-13 12:39:57 | 000,024,757 | ---- | M] () -- C:\ComboFix.txt
[2011-07-13 11:31:25 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-13 11:31:25 | 3079,536,640 | -HS- | M] () -- C:\pagefile.sys
[2009-10-04 23:48:13 | 000,002,942 | ---- | M] () -- C:\RHDSetup.log
[2009-09-09 09:26:52 | 000,000,070 | -H-- | M] () -- C:\SWSTAMP.TXT


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\ERDNT\cache64\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\SysNative\drivers\beep.sys
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\ERDNT\cache64\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SysNative\drivers\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009-07-14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\ERDNT\cache64\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009-07-14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009-10-28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009-10-28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2010-07-04 00:10:59 | 000,230,725 | ---- | M] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:06:24 | 000,230,725 | ---- | C] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:05:48 | 000,012,796 | ---- | M] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx
[2010-07-02 14:53:54 | 000,012,796 | ---- | C] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 400 bytes -> C:\Users\MAX-BUD\AppData\Local\desktop.ini:bf5af20ce7a419b1178ece347eddc338
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:DFC5A2B2

< End of report >
[/log]

i EXTRAS:
[log]OTL Extras logfile created on: 2011-07-13 15:28:16 - Run 3
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,47 Gb Available Physical Memory | 51,26% Memory free
5,73 Gb Paging File | 4,11 Gb Available in Paging File | 71,63% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 93,85 Gb Free Space | 62,97% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 121,33 Gb Free Space | 81,62% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" File not found
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L"
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[color=#E56717]========== Firewall Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}" = TOSHIBA Bulletin Board
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum obsługi urządzeń z systemem Windows Mobile
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C2DDF845-7107-40E8-8D2A-8719F1799570}" = TOSHIBA ReelTime
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert
"{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORMCLauncher
"{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}" = TOSHIBA SD Memory Utilities
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{0823A2E3-69DD-A37A-7CD9-1CBEB037545C}" = Toshiba Photo Service - powered by myphotobook
"{0FB630AB-7BD8-40AE-B223-60397D57C3C9}" = Realtek WLAN Driver
"{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}" = Utility Common Driver
"{1B87C40B-A60B-4EF3-9A68-706CF4B69978}" = Toshiba Assist
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
"{2290A680-4083-410A-ADCC-7092C67FC052}" = Toshiba Online Product Information
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 26
"{29F563F4-8807-4496-8463-441EAA0E96AB}" = PC Connectivity Solution
"{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync
"{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live
"{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password
"{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup
"{5335DADB-34BA-4AE8-A519-648D78498846}" = Skype™ 5.3
"{5E6F6CF3-BACC-4144-868C-E14622C658F3}" = TOSHIBA Web Camera Application
"{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility
"{65600762-F5A9-4835-8B98-3F972F524D8D}" = ABC z Reksiem
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0415-1000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00B2-0415-0000-0000000FF1CE}" = Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}" = Toshiba Manuals
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Polish)
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live
"{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live
"{9E4FF410-471F-49E3-9358-74FF0D5E9901}" = Toshiba TEMPRO
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}" = Need for Speed™ Most Wanted
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-1045-7B44-A91000000001}" = Adobe Reader 9.1 - Polish
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3529665-D75E-4D6D-98F0-745C78C68E9B}" = TOSHIBA ConfigFree
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop 7.0 CE" = Adobe Photoshop 7.0 CE
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010
"avast" = avast! Free Antivirus
"ENTERPRISE" = Microsoft Office Enterprise 2007
"ESET Online Scanner" = ESET Online Scanner v3
"eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1" = Toshiba Photo Service - powered by myphotobook
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{1E9E8BA6-FD0B-465D-AFA2-ECE10BF095F9}" = TOSHIBA Bulletin Board
"InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Hasło administratora
"InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}" = Sprzęt instalacyjny TOSHIBA
"InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility
"InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}" = TOSHIBA Recovery Media Creator Reminder
"InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}" = TOSHIBA eco Utility
"InstallShield_{C2DDF845-7107-40E8-8D2A-8719F1799570}" = TOSHIBA ReelTime
"InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = Program TOSHIBA HDD/SSD Alert
"InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}" = TRORMCLauncher
"InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"Kadu" = Kadu 0.9.2
"KLiteCodecPack_is1" = K-Lite Codec Pack 6.2.0 (Basic)
"Moje Gimnazjum 2011 Profil Humanistyczny1.0" = Moje Gimnazjum 2011 Profil Humanistyczny
"NSS" = NSS (remove only)
"Picasa 3" = Picasa 3
"PIT 2010 z Gazetą Wyborczą_is1" = PIT 2010 z Gazetą Wyborczą ver. 7.0.1.1
"PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.2.11
"Quake III Arena Point Release 1.32" = Quake III Arena Point Release 1.32
"TC PowerPack" = TC PowerPack 1.7
"Totalcmd" = Total Commander (Remove or Repair)
"UnHackMe_is1" = UnHackMe 5.99 release
"WinLiveSuite_Wave3" = Podstawowe programy Windows Live
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2011-07-11 15:48:05 | Computer Name = MAX-BUD-007 | Source = Application Hang | ID = 1002
Description = Program ToDisc.exe w wersji 2.1.0.1 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji. Identyfikator procesu: 22f8 Godzina rozpoczęcia: 01cc4003412d5ad6 Godzina zakończenia:
6802 Ścieżka aplikacji: C:\Program Files (x86)\Toshiba\TOSHIBA Disc Creator\ToDisc.exe

Identyfikator
raportu: a9fc754e-abf6-11e0-b7ad-0026223e77bd

Error - 2011-07-12 02:53:15 | Computer Name = MAX-BUD-007 | Source = Application Hang | ID = 1002
Description = Program ToDisc.exe w wersji 2.1.0.1 zatrzymał interakcję z systemem
Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji
dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum
akcji. Identyfikator procesu: 1274 Godzina rozpoczęcia: 01cc405fafa00f95 Godzina zakończenia:
6287 Ścieżka aplikacji: C:\Program Files (x86)\Toshiba\TOSHIBA Disc Creator\ToDisc.exe

Identyfikator
raportu: 91400f2f-ac53-11e0-b3b3-0026223e77bd

Error - 2011-07-12 12:15:25 | Computer Name = MAX-BUD-007 | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 8.0.7601.17514,
sygnatura czasowa: 0x4ce79912 Nazwa modułu powodującego błąd: msxml3.dll, wersja:
8.110.7601.17514, sygnatura czasowa: 0x4ce7b8e9 Kod wyjątku: 0xc0000005 Przesunięcie
błędu: 0x0002e64f Identyfikator procesu powodującego błąd: 0x16d8 Godzina uruchomienia
aplikacji powodującej błąd: 0x01cc40aee66890d8 Ścieżka aplikacji powodującej błąd:
C:\Program Files (x86)\Internet Explorer\iexplore.exe Ścieżka modułu powodującego
błąd: C:\Windows\System32\msxml3.dll Identyfikator raportu: 2664a24a-aca2-11e0-8b52-0026223e77bd

Error - 2011-07-12 13:57:21 | Computer Name = MAX-BUD-007 | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 8.0.7601.17514,
sygnatura czasowa: 0x4ce79912 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0,
sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000094 Przesunięcie błędu: 0x7ed7054a
Identyfikator
procesu powodującego błąd: 0xae0 Godzina uruchomienia aplikacji powodującej błąd:
0x01cc40bc9e32efe4 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Internet
Explorer\iexplore.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu:
634e2e4e-acb0-11e0-986e-0026223e77bd

Error - 2011-07-12 14:20:38 | Computer Name = MAX-BUD-007 | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\MAX-BUD\Downloads\esetsmartinstaller_plk.exe”.
Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana
przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Składnik
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2011-07-12 15:50:31 | Computer Name = MAX-BUD-007 | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\MAX-BUD\Downloads\esetsmartinstaller_plk.exe”.
Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana
przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Składnik
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error - 2011-07-12 15:51:00 | Computer Name = MAX-BUD-007 | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „C:\Users\MAX-BUD\Downloads\SoftonicDownloader_for_mortal-kombat-project.exe”.
Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana
przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Składnik
2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error - 2011-07-12 15:57:42 | Computer Name = MAX-BUD-007 | Source = MsiInstaller | ID = 1013
Description =

Error - 2011-07-12 15:57:48 | Computer Name = MAX-BUD-007 | Source = MsiInstaller | ID = 1013
Description =

Error - 2011-07-12 15:59:40 | Computer Name = MAX-BUD-007 | Source = MsiInstaller | ID = 1013
Description =

[ Media Center Events ]
Error - 2010-03-28 03:47:43 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:47:43 - Błąd podczas nawiązywania połączenia z Internetem. 09:47:43
- Nie można skontaktować się z serwerem..

Error - 2010-03-28 03:47:53 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:47:48 - Błąd podczas nawiązywania połączenia z Internetem. 09:47:48
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 02:11:56 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 08:11:56 - Błąd podczas nawiązywania połączenia z Internetem. 08:11:56
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 02:12:05 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 08:12:01 - Błąd podczas nawiązywania połączenia z Internetem. 08:12:01
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 03:12:10 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:12:10 - Błąd podczas nawiązywania połączenia z Internetem. 09:12:10
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 03:12:16 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 09:12:15 - Błąd podczas nawiązywania połączenia z Internetem. 09:12:15
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 06:53:19 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 12:53:19 - Błąd podczas nawiązywania połączenia z Internetem. 12:53:19
- Nie można skontaktować się z serwerem..

Error - 2010-04-25 06:53:25 | Computer Name = MAX-BUD-007 | Source = MCUpdate | ID = 0
Description = 12:53:24 - Błąd podczas nawiązywania połączenia z Internetem. 12:53:24
- Nie można skontaktować się z serwerem..

[ System Events ]
Error - 2011-07-12 14:12:36 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7011
Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji
z usługi sppsvc.

Error - 2011-07-12 16:14:56 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan

Error - 2011-07-12 16:16:35 | Computer Name = MAX-BUD-007 | Source = Application Popup | ID = 1060
Description = Ładowanie sterownika \??\C:\Windows\SysWow64\Drivers\regguard.sys
zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą
oprogramowania w celu uzyskania zgodnej wersji sterownika.

Error - 2011-07-12 16:17:12 | Computer Name = MAX-BUD-007 | Source = WMPNetworkSvc | ID = 866300
Description =

Error - 2011-07-12 16:20:59 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan

Error - 2011-07-12 16:33:09 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan

Error - 2011-07-13 05:31:59 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Partizan

Error - 2011-07-13 06:18:27 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7030
Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System
jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego
ta usługa może nie działać właściwie.

Error - 2011-07-13 06:20:48 | Computer Name = MAX-BUD-007 | Source = Application Popup | ID = 1060
Description = Ładowanie sterownika \??\C:\ComboFix\catchme.sys zostało zablokowane
z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania
w celu uzyskania zgodnej wersji sterownika.

Error - 2011-07-13 06:37:13 | Computer Name = MAX-BUD-007 | Source = Service Control Manager | ID = 7030
Description = Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System
jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego
ta usługa może nie działać właściwie.


< End of report >
[/log]

wirusolog
komentarz
komentarz (edytowane)

[b]1.[/b] Uruchom OTL i w oknie [b]Własne opcje skanowania/Skrypt[/b] wklej następujący tekst:

[code]:OTL
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] File not found
O3 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\Toolbar\WebBrowser: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - No CLSID value found.
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - Reg Error: Key error. File not found
[2011-07-12 22:33:21 | 000,035,816 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-12 22:10:34 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-12 22:07:35 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\winstart.bat
[2011-07-12 21:31:27 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\amsfh.exe
[2011-07-12 21:19:24 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\msvuiet.exe
[2011-06-27 14:08:43 | 000,000,688 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe
[2011-06-25 20:42:54 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\dsang.exe
[2011-06-23 16:46:24 | 000,000,193 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe
@Alternate Data Stream - 400 bytes -> C:\Users\MAX-BUD\AppData\Local\desktop.ini:bf5af20ce7a419b1178ece347eddc338
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:DFC5A2B2

:Commands
[emptyflash]
[emptytemp][/code]
Kliknij w [b]Wykonaj skrypt[/b]. Zatwierdź restart komputera.

[b]2.[/b] Po tem uruchamiasz OTL ponownie, tym razem wywołujesz opcję [b]Skanuj[/b]. [u]Pokazujesz nowe logi z OTL + raport z usuwania OTLem.[/u]

elsaper
komentarz
komentarz

Zrobiłem tak jak mówiłeś, ale w pewnym momencie został mi sam pusty ekran. Mam jakoś w OTL zmieniać opcje, czy włączyć wrzucić to i czekac?

wirusolog
komentarz
komentarz

Tak, masz wrzucić ten skrypt. wcisnąć przycisk i czekać na potwierdzenie restartu.

elsaper
komentarz
komentarz (edytowane)

ok już:

[log]All processes killed
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx\\Flags deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx\\Title deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{30F9B915-B755-4826-820B-08FBA6BD249D} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{472734EA-242A-422b-ADF8-83D1E48CC825} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{472734EA-242A-422b-ADF8-83D1E48CC825}\ not found.
C:\Windows\SysWOW64\drivers\Partizan.sys moved successfully.
C:\Windows\SysNative\Partizan.exe moved successfully.
C:\Windows\SysWOW64\Partizan.exe moved successfully.
C:\Windows\winstart.bat moved successfully.
C:\Users\MAX-BUD\AppData\Roaming\amsfh.exe moved successfully.
C:\Users\MAX-BUD\AppData\Roaming\msvuiet.exe moved successfully.
C:\Users\MAX-BUD\AppData\Roaming\servercryptde.exe moved successfully.
C:\Users\MAX-BUD\AppData\Roaming\dsang.exe moved successfully.
C:\Users\MAX-BUD\AppData\Roaming\bmersd.exe moved successfully.
ADS C:\Users\MAX-BUD\AppData\Local\desktop.ini:bf5af20ce7a419b1178ece347eddc338 deleted successfully.
ADS C:\ProgramData\TEMP:DFC5A2B2 deleted successfully.
========== COMMANDS ==========

[EMPTYFLASH]

User: All Users

User: AppData

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: MAX-BUD
->Flash cache emptied: 2320 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: AppData
->Temp folder emptied: 0 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: MAX-BUD
->Temp folder emptied: 1962577 bytes
->Temporary Internet Files folder emptied: 2062745 bytes
->Java cache emptied: 177967 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 420206506 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 17 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 405,00 mb


OTL by OldTimer - Version 3.2.26.1 log created on 07132011_183132

Files\Folders moved on Reboot...
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\api[1].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\api[2].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\background_banner_stripe3[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\list-item-plus[1].png scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KQGQCZXD\background_banner_newbox[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B3BA2E5L\background-banner-right-v9[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B3BA2E5L\background_banner-right-part[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B3BA2E5L\background_button_green_full[1].png scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\api[1].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\api[2].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\background-banner-middle-v9[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\background_banner_green_50_v9[1].jpg scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Files\Folders moved on Reboot...
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\api[1].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\api[2].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\background_banner_stripe3[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4PSWAL2\list-item-plus[1].png scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KQGQCZXD\background_banner_newbox[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B3BA2E5L\background-banner-right-v9[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B3BA2E5L\background_banner-right-part[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B3BA2E5L\background_button_green_full[1].png scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\api[1].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\api[2].htm scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\background-banner-middle-v9[1].jpg scheduled to be moved on reboot.
File move failed. C:\Users\MAX-BUD\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\91O2JLXM\background_banner_green_50_v9[1].jpg scheduled to be moved on reboot.

Registry entries deleted on Reboot...
[/log]

Zaraz wrzucę log ogólny.

[log]
OTL logfile created on: 2011-07-13 19:52:45 - Run 4
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,48 Gb Available Physical Memory | 51,67% Memory free
5,73 Gb Paging File | 4,32 Gb Available in Paging File | 75,26% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 94,04 Gb Free Space | 63,10% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 121,33 Gb Free Space | 81,62% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
PRC - [2011-07-04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011-05-18 10:53:10 | 000,594,200 | ---- | M] (Greatis Software) -- D:\UnHackMe\hackmon.exe
PRC - [2011-05-10 21:00:04 | 000,328,206 | ---- | M] (Kadu Team) -- D:\Kadu\kadu.exe
PRC - [2011-04-08 12:59:52 | 000,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
PRC - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
PRC - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
PRC - [2009-01-13 21:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
MOD - [2011-05-24 12:40:05 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dll
MOD - [2011-05-24 12:39:38 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dll
MOD - [2011-02-25 07:34:36 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dll
MOD - [2010-11-20 14:24:35 | 001,292,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dll
MOD - [2010-11-20 14:21:36 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dll
MOD - [2010-11-20 14:21:34 | 001,128,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dll
MOD - [2010-11-20 14:21:33 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dll
MOD - [2010-11-20 14:21:24 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dll
MOD - [2010-11-20 14:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dll
MOD - [2010-11-20 14:21:19 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dll
MOD - [2010-11-20 14:21:15 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dll
MOD - [2010-11-20 14:21:14 | 001,667,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dll
MOD - [2010-11-20 14:21:07 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dll
MOD - [2010-11-20 14:20:57 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dll
MOD - [2010-11-20 14:20:49 | 001,414,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dll
MOD - [2010-11-20 14:20:49 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dll
MOD - [2010-11-20 14:18:23 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll
MOD - [2010-11-20 14:18:03 | 000,295,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dll
MOD - [2010-11-20 14:18:02 | 000,640,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dll
MOD - [2010-11-20 14:16:50 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drv
MOD - [2010-11-20 14:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dll
MOD - [2010-11-20 14:08:57 | 000,663,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dll
MOD - [2010-11-20 14:08:57 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dll
MOD - [2010-11-20 14:08:56 | 000,837,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dll
MOD - [2010-11-20 14:08:56 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dll
MOD - [2010-11-20 14:08:51 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dll
MOD - [2010-11-20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dll
MOD - [2010-11-20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dll
MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dll
MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dll
MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dll
MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dll
MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dll
MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dll
MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dll
MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dll
MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dll
MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dll
MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dll
MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dll
MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msscript.ocx
MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dll
MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2009-08-27 13:38:22 | 000,251,760 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:[b]64bit:[/b] - [2009-08-05 14:20:12 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:[b]64bit:[/b] - [2009-08-04 11:15:06 | 000,826,224 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:[b]64bit:[/b] - [2009-08-03 18:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:[b]64bit:[/b] - [2009-07-28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009-08-17 10:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009-08-10 19:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO)
SRV - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2007-05-31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2009-08-27 08:07:06 | 007,369,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2009-08-20 16:04:06 | 000,446,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187B.sys -- (RTL8187B)
DRV:[b]64bit:[/b] - [2009-08-13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp)
DRV:[b]64bit:[/b] - [2009-07-30 21:02:36 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:[b]64bit:[/b] - [2009-07-30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:[b]64bit:[/b] - [2009-07-30 17:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:[b]64bit:[/b] - [2009-07-24 15:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:[b]64bit:[/b] - [2009-07-20 17:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009-07-14 15:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2009-07-14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009-07-10 06:45:12 | 000,139,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R)
DRV:[b]64bit:[/b] - [2009-06-22 17:06:38 | 000,035,008 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:[b]64bit:[/b] - [2009-06-20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2009-06-19 19:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-06-04 18:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009-05-22 22:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2011-07-13 18:37:40 | 000,035,816 | ---- | M] (Greatis Software) [Kernel | Boot | Stopped] -- C:\Windows\system32\drivers\Partizan.sys -- (Partizan)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://174.37.200.81
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Users\MAX-BUD\AppData\Local\Google\Update\1.2.183.23\npGoogleOneClick8.dll (Google Inc.)


[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Extensions
[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Firefox\Profiles\62mh5x8i.default\extensions
File not found (No name found) -- C:\PROGRAM FILES (X86)\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION

O1 HOSTS File: ([2011-07-13 18:31:34 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:[b]64bit:[/b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:[b]64bit:[/b] - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [SmartFaceVWatcher] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TWebCamera] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] File not found
O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 62.179.1.62
O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-02-02 01:51:14 | 000,018,366 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (Partizan) - C:\Windows\SysWow64\Partizan.exe (Greatis Software)
O34 - HKLM BootExecute: (ootExecute settings...) - File not found
O34 - HKLM BootExecute: (on\E) - File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = ComFile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-07-13 18:37:40 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-13 18:37:40 | 000,035,816 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-13 18:32:34 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011-07-13 18:31:32 | 000,000,000 | ---D | C] -- C:\_OTL
[2011-07-13 12:39:59 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011-07-13 12:39:59 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\temp
[2011-07-13 12:13:52 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011-07-13 12:13:52 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011-07-13 12:13:52 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011-07-13 12:13:46 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011-07-13 12:12:29 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011-07-12 22:07:08 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\RegRun2
[2011-07-12 22:07:06 | 000,012,808 | ---- | C] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\regruninfo
[2011-07-12 20:20:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2011-07-11 14:18:16 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011-07-09 21:19:09 | 000,000,000 | ---D | C] -- C:\Cache
[2011-07-01 20:14:44 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011-07-01 20:13:20 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011-07-01 19:54:18 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Odebrane pliki
[2011-07-01 14:14:22 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011-07-01 14:13:18 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011-06-30 14:06:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegCleaner
[2011-06-30 13:47:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-29 22:30:13 | 000,000,000 | RHSD | C] -- C:\Users\MAX-BUD\AppData\Roaming\Google Update
[2011-06-29 09:33:51 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cfgmgr32.dll
[2011-06-29 09:33:50 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-06-29 09:33:50 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-06-28 15:35:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011-06-28 15:35:22 | 000,288,088 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-06-28 15:35:22 | 000,022,360 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-06-28 15:35:18 | 000,031,064 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-06-28 15:35:16 | 000,045,400 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-06-28 15:35:13 | 000,600,920 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-06-28 15:34:58 | 000,064,856 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-06-28 15:34:55 | 000,253,888 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-06-28 15:33:02 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-06-28 15:33:01 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011-06-27 13:24:06 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2011-06-26 15:20:19 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011-06-26 15:20:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011-06-26 15:20:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2011-06-25 22:13:41 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\nvidia
[2011-06-22 20:40:55 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Favorites
[2011-06-16 17:10:50 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011-06-16 17:10:30 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011-06-16 17:10:30 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011-06-16 17:10:27 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011-06-16 17:10:27 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011-06-16 17:10:19 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011-06-12 19:06:05 | 000,086,016 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 13:33:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Cutter
[2011-06-12 13:33:03 | 000,140,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx
[2011-06-12 11:48:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Mortal Kombat 3
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Downloads
[2011-06-06 17:56:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-04 17:31:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011-06-04 17:31:30 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2011-06-02 00:36:37 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2011-06-02 00:36:37 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2011-06-02 00:36:28 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011-06-02 00:36:23 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011-06-02 00:36:23 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2011-06-02 00:36:23 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011-06-02 00:36:23 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011-06-02 00:36:21 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011-06-02 00:36:17 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011-06-02 00:36:17 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011-06-02 00:36:17 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011-06-02 00:36:15 | 001,465,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2011-06-02 00:36:14 | 002,314,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011-06-02 00:36:13 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2011-06-02 00:36:12 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011-06-02 00:36:12 | 000,902,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2011-06-02 00:36:11 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmcndmgr.dll
[2011-06-02 00:36:11 | 001,731,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011-06-02 00:36:11 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2011-06-02 00:36:10 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2011-06-02 00:36:10 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2011-06-02 00:36:10 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2011-06-02 00:36:10 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2011-06-02 00:36:09 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xpsservices.dll
[2011-06-02 00:36:09 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2011-06-02 00:36:09 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011-06-02 00:36:09 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2011-06-02 00:36:08 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2011-06-02 00:36:08 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011-06-02 00:36:08 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011-06-02 00:36:07 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
[2011-06-02 00:36:07 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011-06-02 00:36:06 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizui.dll
[2011-06-02 00:36:05 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2011-06-02 00:36:05 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RacEngn.dll
[2011-06-02 00:36:05 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagperf.dll
[2011-06-02 00:36:05 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskschd.dll
[2011-06-02 00:36:04 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011-06-02 00:36:04 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2011-06-02 00:36:03 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vssapi.dll
[2011-06-02 00:36:03 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011-06-02 00:36:03 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011-06-02 00:36:03 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NaturalLanguage6.dll
[2011-06-02 00:36:02 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2011-06-02 00:36:02 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011-06-02 00:36:01 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011-06-02 00:36:01 | 002,872,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2011-06-02 00:35:59 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVCORE.DLL
[2011-06-02 00:35:59 | 001,698,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2011-06-02 00:35:59 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011-06-02 00:35:59 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011-06-02 00:35:58 | 001,544,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2011-06-02 00:35:58 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spinstall.exe
[2011-06-02 00:35:58 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2011-06-02 00:35:58 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spreview.exe
[2011-06-02 00:35:58 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpdd.dll
[2011-06-02 00:35:58 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011-06-02 00:35:57 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSAT.exe
[2011-06-02 00:35:57 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2011-06-02 00:35:57 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011-06-02 00:35:56 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll
[2011-06-02 00:35:56 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2011-06-02 00:35:55 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011-06-02 00:35:55 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011-06-02 00:35:53 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll
[2011-06-02 00:35:53 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2011-06-02 00:35:52 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2011-06-02 00:35:51 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011-06-02 00:35:51 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2011-06-02 00:35:51 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2011-06-02 00:35:51 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2011-06-02 00:35:51 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011-06-02 00:35:49 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2011-06-02 00:35:49 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2011-06-02 00:35:49 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqmapi.dll
[2011-06-02 00:35:48 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2fs.dll
[2011-06-02 00:35:48 | 001,076,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011-06-02 00:35:48 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2011-06-02 00:35:48 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netlogon.dll
[2011-06-02 00:35:47 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2011-06-02 00:35:47 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupapi.dll
[2011-06-02 00:35:47 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011-06-02 00:35:47 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll
[2011-06-02 00:35:47 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011-06-02 00:35:46 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2011-06-02 00:35:46 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\werconcpl.dll
[2011-06-02 00:35:46 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbc32.dll
[2011-06-02 00:35:46 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskeng.exe
[2011-06-02 00:35:45 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certmgr.dll
[2011-06-02 00:35:45 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011-06-02 00:35:45 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2011-06-02 00:35:45 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011-06-02 00:35:44 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2011-06-02 00:35:44 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011-06-02 00:35:44 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2011-06-02 00:35:44 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011-06-02 00:35:44 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011-06-02 00:35:44 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2011-06-02 00:35:43 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdtctm.dll
[2011-06-02 00:35:43 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011-06-02 00:35:43 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2011-06-02 00:35:43 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shlwapi.dll
[2011-06-02 00:35:43 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll
[2011-06-02 00:35:43 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedynos.dll
[2011-06-02 00:35:43 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2011-06-02 00:35:42 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netshell.dll
[2011-06-02 00:35:42 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011-06-02 00:35:42 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011-06-02 00:35:41 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2011-06-02 00:35:41 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011-06-02 00:35:41 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2011-06-02 00:35:41 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2011-06-02 00:35:41 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2011-06-02 00:35:41 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2011-06-02 00:35:41 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2011-06-02 00:35:41 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.exe
[2011-06-02 00:35:41 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ws2_32.dll
[2011-06-02 00:35:40 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011-06-02 00:35:40 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpps.dll
[2011-06-02 00:35:40 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
[2011-06-02 00:35:40 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2011-06-02 00:35:40 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
[2011-06-02 00:35:39 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
[2011-06-02 00:35:39 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Query.dll
[2011-06-02 00:35:39 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroles.dll
[2011-06-02 00:35:39 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011-06-02 00:35:39 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011-06-02 00:35:39 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QAGENT.DLL
[2011-06-02 00:35:39 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011-06-02 00:35:38 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Vault.dll
[2011-06-02 00:35:38 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll
[2011-06-02 00:35:38 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmd.exe
[2011-06-02 00:35:38 | 000,281,600 | ---- | C] (Microsoft) -- C:\Windows\SysNative\DShowRdpFilter.dll
[2011-06-02 00:35:37 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011-06-02 00:35:37 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011-06-02 00:35:37 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2011-06-02 00:35:37 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpksetup.exe
[2011-06-02 00:35:37 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011-06-02 00:35:35 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011-06-02 00:35:35 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011-06-02 00:35:35 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2011-06-02 00:35:35 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sxs.dll
[2011-06-02 00:35:35 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011-06-02 00:35:35 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011-06-02 00:35:34 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskcomp.dll
[2011-06-02 00:35:34 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2011-06-02 00:35:34 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wldap32.dll
[2011-06-02 00:35:34 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcbuilder.exe
[2011-06-02 00:35:33 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011-06-02 00:35:33 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pnidui.dll
[2011-06-02 00:35:33 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipsmsnap.dll
[2011-06-02 00:35:33 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011-06-02 00:35:33 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgprint.dll
[2011-06-02 00:35:33 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011-06-02 00:35:33 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2011-06-02 00:35:29 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011-06-02 00:35:29 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webservices.dll
[2011-06-02 00:35:29 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlsrv32.dll
[2011-06-02 00:35:29 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011-06-02 00:35:29 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011-06-02 00:35:29 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2011-06-02 00:35:29 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011-06-02 00:35:28 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011-06-02 00:35:28 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2011-06-02 00:35:28 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fveapi.dll
[2011-06-02 00:35:28 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011-06-02 00:35:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011-06-02 00:35:28 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3api.dll
[2011-06-02 00:35:27 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011-06-02 00:35:27 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanpref.dll
[2011-06-02 00:35:27 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMNetMgr.dll
[2011-06-02 00:35:27 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcmde.dll
[2011-06-02 00:35:27 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2011-06-02 00:35:27 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2011-06-02 00:35:27 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schtasks.exe
[2011-06-02 00:35:27 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prncache.dll
[2011-06-02 00:35:26 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011-06-02 00:35:26 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2011-06-02 00:35:26 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2011-06-02 00:35:26 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnike.dll
[2011-06-02 00:35:26 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2011-06-02 00:35:26 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011-06-02 00:35:26 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\userenv.dll
[2011-06-02 00:35:25 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncCenter.dll
[2011-06-02 00:35:25 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppobjs.dll
[2011-06-02 00:35:25 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll
[2011-06-02 00:35:25 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2011-06-02 00:35:25 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011-06-02 00:35:25 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2011-06-02 00:35:25 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedyn.dll
[2011-06-02 00:35:24 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPEncEn.dll
[2011-06-02 00:35:24 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpeffects.dll
[2011-06-02 00:35:24 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2011-06-02 00:35:24 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2011-06-02 00:35:23 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localsec.dll
[2011-06-02 00:35:23 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011-06-02 00:35:23 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSATAPI.dll
[2011-06-02 00:35:23 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011-06-02 00:35:23 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011-06-02 00:35:23 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2011-06-02 00:35:23 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011-06-02 00:35:23 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fde.dll
[2011-06-02 00:35:22 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netdiagfx.dll
[2011-06-02 00:35:22 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2011-06-02 00:35:22 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2011-06-02 00:35:22 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2011-06-02 00:35:22 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netid.dll
[2011-06-02 00:35:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011-06-02 00:35:21 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2011-06-02 00:35:21 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011-06-02 00:35:21 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\biocpl.dll
[2011-06-02 00:35:21 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msinfo32.exe
[2011-06-02 00:35:21 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tcpipcfg.dll
[2011-06-02 00:35:21 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spp.dll
[2011-06-02 00:35:21 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSHVHOST.DLL
[2011-06-02 00:35:21 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011-06-02 00:35:21 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011-06-02 00:35:20 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011-06-02 00:35:20 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2011-06-02 00:35:20 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mspbda.dll
[2011-06-02 00:35:20 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scansetting.dll
[2011-06-02 00:35:20 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011-06-02 00:35:19 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2011-06-02 00:35:19 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PhotoScreensaver.scr
[2011-06-02 00:35:19 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011-06-02 00:35:19 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wusa.exe
[2011-06-02 00:35:19 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IPHLPAPI.DLL
[2011-06-02 00:35:19 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitagent.exe
[2011-06-02 00:35:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011-06-02 00:35:18 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011-06-02 00:35:18 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscms.dll
[2011-06-02 00:35:18 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011-06-02 00:35:18 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2011-06-02 00:35:18 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011-06-02 00:35:18 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2011-06-02 00:35:18 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011-06-02 00:35:18 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011-06-02 00:35:17 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2011-06-02 00:35:17 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FirewallControlPanel.dll
[2011-06-02 00:35:17 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011-06-02 00:35:17 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppwinob.dll
[2011-06-02 00:35:17 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisptis.exe
[2011-06-02 00:35:17 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011-06-02 00:35:17 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2011-06-02 00:35:17 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetup.exe
[2011-06-02 00:35:16 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2011-06-02 00:35:16 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011-06-02 00:35:16 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXP.dll
[2011-06-02 00:35:16 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011-06-02 00:35:16 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetapi.dll
[2011-06-02 00:35:15 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011-06-02 00:35:15 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmsys.cpl
[2011-06-02 00:35:15 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
[2011-06-02 00:35:15 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011-06-02 00:35:15 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2011-06-02 00:35:15 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2011-06-02 00:35:15 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2011-06-02 00:35:15 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011-06-02 00:35:15 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprapi.dll
[2011-06-02 00:35:15 | 000,128,000 | ---- | C] (Microsoft) -- C:\Windows\SysNative\Robocopy.exe
[2011-06-02 00:35:14 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011-06-02 00:35:14 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DxpTaskSync.dll
[2011-06-02 00:35:14 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PerfCenterCPL.dll
[2011-06-02 00:35:14 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll
[2011-06-02 00:35:14 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011-06-02 00:35:14 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2011-06-02 00:35:14 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\thumbcache.dll
[2011-06-02 00:35:14 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys
[2011-06-02 00:35:13 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themeui.dll
[2011-06-02 00:35:13 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011-06-02 00:35:13 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXPTaskRingtone.dll
[2011-06-02 00:35:13 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2011-06-02 00:35:13 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onex.dll
[2011-06-02 00:35:13 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scecli.dll
[2011-06-02 00:35:13 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys
[2011-06-02 00:35:13 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2011-06-02 00:35:13 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll
[2011-06-02 00:35:13 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011-06-02 00:35:13 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2011-06-02 00:35:13 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
[2011-06-02 00:35:12 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011-06-02 00:35:12 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011-06-02 00:35:12 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011-06-02 00:35:12 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2011-06-02 00:35:12 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011-06-02 00:35:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011-06-02 00:35:11 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdc.dll
[2011-06-02 00:35:11 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlangpui.dll
[2011-06-02 00:35:11 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2011-06-02 00:35:11 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2011-06-02 00:35:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011-06-02 00:35:11 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011-06-02 00:35:10 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcenter.dll
[2011-06-02 00:35:10 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdengin2.dll
[2011-06-02 00:35:10 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2011-06-02 00:35:10 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2011-06-02 00:35:10 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StructuredQuery.dll
[2011-06-02 00:35:10 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiadefui.dll
[2011-06-02 00:35:10 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2011-06-02 00:35:10 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dskquoui.dll
[2011-06-02 00:35:10 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011-06-02 00:35:10 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011-06-02 00:35:10 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samcli.dll
[2011-06-02 00:35:10 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011-06-02 00:35:09 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2011-06-02 00:35:09 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011-06-02 00:35:09 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011-06-02 00:35:09 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011-06-02 00:35:09 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011-06-02 00:35:09 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srchadmin.dll
[2011-06-02 00:35:09 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011-06-02 00:35:09 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011-06-02 00:35:09 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2011-06-02 00:35:09 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011-06-02 00:35:09 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QUTIL.DLL
[2011-06-02 00:35:09 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\regapi.dll
[2011-06-02 00:35:08 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011-06-02 00:35:08 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011-06-02 00:35:08 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appwiz.cpl
[2011-06-02 00:35:08 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TabletPC.cpl
[2011-06-02 00:35:08 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011-06-02 00:35:08 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2011-06-02 00:35:08 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2011-06-02 00:35:08 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2011-06-02 00:35:08 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011-06-02 00:35:08 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011-06-02 00:35:08 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupcl.exe
[2011-06-02 00:35:08 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2011-06-02 00:35:08 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011-06-02 00:35:07 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgcpl.dll
[2011-06-02 00:35:07 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msconfig.exe
[2011-06-02 00:35:07 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netiohlp.dll
[2011-06-02 00:35:07 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011-06-02 00:35:07 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mimefilt.dll
[2011-06-02 00:35:06 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2011-06-02 00:35:06 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\basecsp.dll
[2011-06-02 00:35:06 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdeploy.dll
[2011-06-02 00:35:06 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsmproxy.dll
[2011-06-02 00:35:05 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011-06-02 00:35:05 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011-06-02 00:35:05 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011-06-02 00:35:05 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011-06-02 00:35:05 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011-06-02 00:35:05 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mtxclu.dll
[2011-06-02 00:35:05 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011-06-02 00:35:05 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011-06-02 00:35:05 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011-06-02 00:35:05 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011-06-02 00:35:05 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2011-06-02 00:35:04 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011-06-02 00:35:04 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched20.dll
[2011-06-02 00:35:04 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011-06-02 00:35:04 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscmmc.dll
[2011-06-02 00:35:03 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themecpl.dll
[2011-06-02 00:35:03 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011-06-02 00:35:03 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011-06-02 00:35:03 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercpl.dll
[2011-06-02 00:35:03 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eudcedit.exe
[2011-06-02 00:35:03 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sharemediacpl.dll
[2011-06-02 00:35:03 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011-06-02 00:35:03 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoncli.dll
[2011-06-02 00:35:03 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nci.dll
[2011-06-02 00:35:03 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RpcRtRemote.dll
[2011-06-02 00:35:02 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SensorsCpl.dll
[2011-06-02 00:35:02 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Narrator.exe
[2011-06-02 00:35:02 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011-06-02 00:35:02 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011-06-02 00:35:02 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll
[2011-06-02 00:35:02 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netjoin.dll
[2011-06-02 00:35:02 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011-06-02 00:35:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011-06-02 00:35:02 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011-06-02 00:35:02 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011-06-02 00:35:02 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnikeapi.dll
[2011-06-02 00:35:01 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoconv.exe
[2011-06-02 00:35:01 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autochk.exe
[2011-06-02 00:35:01 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autofmt.exe
[2011-06-02 00:35:01 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011-06-02 00:35:01 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2011-06-02 00:35:01 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshipsec.dll
[2011-06-02 00:35:01 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011-06-02 00:35:01 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011-06-02 00:35:01 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll
[2011-06-02 00:35:01 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011-06-02 00:35:01 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011-06-02 00:35:01 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2011-06-02 00:35:01 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2011-06-02 00:35:01 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2011-06-02 00:35:01 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011-06-02 00:35:01 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011-06-02 00:35:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011-06-02 00:35:00 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdclt.exe
[2011-06-02 00:35:00 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpd_ci.dll
[2011-06-02 00:35:00 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011-06-02 00:35:00 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanui.dll
[2011-06-02 00:35:00 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011-06-02 00:35:00 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011-06-02 00:35:00 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2011-06-02 00:35:00 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011-06-02 00:35:00 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011-06-02 00:35:00 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011-06-02 00:35:00 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011-06-02 00:35:00 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys
[2011-06-02 00:35:00 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdsrv.dll
[2011-06-02 00:35:00 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prntvpt.dll
[2011-06-02 00:35:00 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll
[2011-06-02 00:34:59 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011-06-02 00:34:59 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2011-06-02 00:34:59 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011-06-02 00:34:59 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontext.dll
[2011-06-02 00:34:59 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011-06-02 00:34:59 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2011-06-02 00:34:59 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011-06-02 00:34:59 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprddm.dll
[2011-06-02 00:34:59 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011-06-02 00:34:59 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011-06-02 00:34:59 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011-06-02 00:34:59 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2011-06-02 00:34:59 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011-06-02 00:34:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2011-06-02 00:34:58 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011-06-02 00:34:58 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mblctr.exe
[2011-06-02 00:34:58 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\batmeter.dll
[2011-06-02 00:34:57 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011-06-02 00:34:57 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DiagCpl.dll
[2011-06-02 00:34:57 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011-06-02 00:34:57 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011-06-02 00:34:57 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usercpl.dll
[2011-06-02 00:34:57 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011-06-02 00:34:57 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011-06-02 00:34:57 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011-06-02 00:34:57 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpsrcwp.dll
[2011-06-02 00:34:57 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011-06-02 00:34:57 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rtutils.dll
[2011-06-02 00:34:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011-06-02 00:34:56 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bootres.dll
[2011-06-02 00:34:56 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:56 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksproxy.ax
[2011-06-02 00:34:56 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011-06-02 00:34:56 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSTPager.ax
[2011-06-02 00:34:55 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011-06-02 00:34:55 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011-06-02 00:34:55 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpccpl.dll
[2011-06-02 00:34:55 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011-06-02 00:34:55 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxdiagn.dll
[2011-06-02 00:34:55 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011-06-02 00:34:55 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2011-06-02 00:34:55 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rasppp.dll
[2011-06-02 00:34:55 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3cfg.dll
[2011-06-02 00:34:54 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnfldr.dll
[2011-06-02 00:34:54 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011-06-02 00:34:54 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011-06-02 00:34:54 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pdh.dll
[2011-06-02 00:34:54 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011-06-02 00:34:54 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskmgr.exe
[2011-06-02 00:34:54 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011-06-02 00:34:54 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2011-06-02 00:34:54 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011-06-02 00:34:54 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hbaapi.dll
[2011-06-02 00:34:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\proquota.exe
[2011-06-02 00:34:53 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\accessibilitycpl.dll
[2011-06-02 00:34:53 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011-06-02 00:34:53 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\untfs.dll
[2011-06-02 00:34:53 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAC3ENC.DLL
[2011-06-02 00:34:53 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011-06-02 00:34:53 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011-06-02 00:34:53 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2011-06-02 00:34:53 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2011-06-02 00:34:53 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011-06-02 00:34:53 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011-06-02 00:34:53 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDShServiceObj.dll
[2011-06-02 00:34:53 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011-06-02 00:34:52 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011-06-02 00:34:52 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011-06-02 00:34:52 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011-06-02 00:34:52 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011-06-02 00:34:51 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011-06-02 00:34:51 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\zipfldr.dll
[2011-06-02 00:34:51 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slui.exe
[2011-06-02 00:34:51 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2011-06-02 00:34:51 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011-06-02 00:34:51 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\defaultlocationcpl.dll
[2011-06-02 00:34:51 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011-06-02 00:34:51 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011-06-02 00:34:50 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011-06-02 00:34:50 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sud.dll
[2011-06-02 00:34:50 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DeviceCenter.dll
[2011-06-02 00:34:50 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011-06-02 00:34:50 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011-06-02 00:34:50 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011-06-02 00:34:50 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mpeg2Data.ax
[2011-06-02 00:34:50 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011-06-02 00:34:49 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkmap.dll
[2011-06-02 00:34:49 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2011-06-02 00:34:49 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2011-06-02 00:34:49 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011-06-02 00:34:49 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011-06-02 00:34:49 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2011-06-02 00:34:49 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2011-06-02 00:34:49 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011-06-02 00:34:49 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskbarcpl.dll
[2011-06-02 00:34:49 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OnLineIDCpl.dll
[2011-06-02 00:34:49 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011-06-02 00:34:49 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twext.dll
[2011-06-02 00:34:49 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011-06-02 00:34:48 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011-06-02 00:34:48 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OobeFldr.dll
[2011-06-02 00:34:48 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011-06-02 00:34:48 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011-06-02 00:34:48 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011-06-02 00:34:48 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011-06-02 00:34:48 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroleui.dll
[2011-06-02 00:34:48 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011-06-02 00:34:48 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl
[2011-06-02 00:34:48 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdedit.exe
[2011-06-02 00:34:48 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011-06-02 00:34:48 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxlib.dll
[2011-06-02 00:34:48 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recovery.dll
[2011-06-02 00:34:48 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011-06-02 00:34:48 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2011-06-02 00:34:48 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011-06-02 00:34:47 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011-06-02 00:34:47 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdcpl.dll
[2011-06-02 00:34:47 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bthprops.cpl
[2011-06-02 00:34:47 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsuiext.dll
[2011-06-02 00:34:47 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011-06-02 00:34:47 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MediaMetadataHandler.dll
[2011-06-02 00:34:47 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011-06-02 00:34:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011-06-02 00:34:47 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\efscore.dll
[2011-06-02 00:34:47 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syncui.dll
[2011-06-02 00:34:47 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VBICodec.ax
[2011-06-02 00:34:47 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cca.dll
[2011-06-02 00:34:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\isoburn.exe
[2011-06-02 00:34:47 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011-06-02 00:34:47 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tzutil.exe
[2011-06-02 00:34:47 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sisbkup.dll
[2011-06-02 00:34:46 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011-06-02 00:34:46 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011-06-02 00:34:46 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011-06-02 00:34:46 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2011-06-02 00:34:46 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shwebsvc.dll
[2011-06-02 00:34:46 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\systemcpl.dll
[2011-06-02 00:34:46 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2011-06-02 00:34:46 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recdisc.exe
[2011-06-02 00:34:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011-06-02 00:34:46 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysclass.dll
[2011-06-02 00:34:46 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netplwiz.dll
[2011-06-02 00:34:46 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011-06-02 00:34:46 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011-06-02 00:34:46 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoplay.dll
[2011-06-02 00:34:46 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptui.dll
[2011-06-02 00:34:46 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpapi.dll
[2011-06-02 00:34:46 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2011-06-02 00:34:45 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011-06-02 00:34:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011-06-02 00:34:45 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenterCPL.dll
[2011-06-02 00:34:45 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizeng.dll
[2011-06-02 00:34:45 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011-06-02 00:34:45 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011-06-02 00:34:45 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011-06-02 00:34:45 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:45 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFPlay.dll
[2011-06-02 00:34:45 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011-06-02 00:34:45 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011-06-02 00:34:45 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksxbar.ax
[2011-06-02 00:34:44 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysmon.ocx
[2011-06-02 00:34:44 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\termmgr.dll
[2011-06-02 00:34:44 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011-06-02 00:34:44 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011-06-02 00:34:44 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011-06-02 00:34:44 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsutil.dll
[2011-06-02 00:34:44 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011-06-02 00:34:43 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011-06-02 00:34:43 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2011-06-02 00:34:43 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011-06-02 00:34:43 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll
[2011-06-02 00:34:43 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2011-06-02 00:34:43 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sethc.exe
[2011-06-02 00:34:43 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011-06-02 00:34:43 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011-06-02 00:34:43 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011-06-02 00:34:43 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011-06-02 00:34:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011-06-02 00:34:43 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntlanman.dll
[2011-06-02 00:34:43 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011-06-02 00:34:43 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2011-06-02 00:34:43 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011-06-02 00:34:42 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011-06-02 00:34:42 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlcese30.dll
[2011-06-02 00:34:42 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011-06-02 00:34:42 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011-06-02 00:34:42 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ssText3d.scr
[2011-06-02 00:34:42 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdm.tsp
[2011-06-02 00:34:42 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011-06-02 00:34:42 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iTVData.dll
[2011-06-02 00:34:42 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iprtrmgr.dll
[2011-06-02 00:34:42 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011-06-02 00:34:42 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011-06-02 00:34:42 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011-06-02 00:34:42 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011-06-02 00:34:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011-06-02 00:34:42 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011-06-02 00:34:42 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UserAccountControlSettings.dll
[2011-06-02 00:34:42 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpd3d.dll
[2011-06-02 00:34:42 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2011-06-02 00:34:42 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2011-06-02 00:34:42 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011-06-02 00:34:41 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011-06-02 00:34:41 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2011-06-02 00:34:41 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011-06-02 00:34:41 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2011-06-02 00:34:41 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011-06-02 00:34:41 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wavemsp.dll
[2011-06-02 00:34:41 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011-06-02 00:34:41 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srvcli.dll
[2011-06-02 00:34:41 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nslookup.exe
[2011-06-02 00:34:41 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011-06-02 00:34:41 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011-06-02 00:34:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011-06-02 00:34:41 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011-06-02 00:34:40 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011-06-02 00:34:40 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011-06-02 00:34:40 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011-06-02 00:34:40 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011-06-02 00:34:40 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2011-06-02 00:34:40 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011-06-02 00:34:40 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srrstr.dll
[2011-06-02 00:34:40 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011-06-02 00:34:40 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DevicePairingFolder.dll
[2011-06-02 00:34:40 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011-06-02 00:34:40 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdboot.exe
[2011-06-02 00:34:40 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2011-06-02 00:34:40 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011-06-02 00:34:40 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppnp.dll
[2011-06-02 00:34:40 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acppage.dll
[2011-06-02 00:34:39 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkexplorer.dll
[2011-06-02 00:34:39 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011-06-02 00:34:39 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsquirt.exe
[2011-06-02 00:34:39 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011-06-02 00:34:39 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011-06-02 00:34:39 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011-06-02 00:34:39 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\remotepg.dll
[2011-06-02 00:34:39 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011-06-02 00:34:39 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabinet.dll
[2011-06-02 00:34:39 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011-06-02 00:34:39 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wkscli.dll
[2011-06-02 00:34:39 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011-06-02 00:34:38 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2011-06-02 00:34:38 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfrgui.exe
[2011-06-02 00:34:38 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011-06-02 00:34:38 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011-06-02 00:34:38 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011-06-02 00:34:38 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011-06-02 00:34:38 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011-06-02 00:34:38 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSCard.dll
[2011-06-02 00:34:38 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kstvtune.ax
[2011-06-02 00:34:38 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011-06-02 00:34:38 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe
[2011-06-02 00:34:37 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2011-06-02 00:34:37 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011-06-02 00:34:37 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmdev.dll
[2011-06-02 00:34:37 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wvc.dll
[2011-06-02 00:34:37 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011-06-02 00:34:37 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpdxm.dll
[2011-06-02 00:34:37 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011-06-02 00:34:37 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsqmcons.exe
[2011-06-02 00:34:37 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011-06-02 00:34:37 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2011-06-02 00:34:37 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011-06-02 00:34:37 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\net1.exe
[2011-06-02 00:34:37 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsnmp32.dll
[2011-06-02 00:34:37 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011-06-02 00:34:37 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFaultSecure.exe
[2011-06-02 00:34:36 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OpcServices.dll
[2011-06-02 00:34:36 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Bubbles.scr
[2011-06-02 00:34:36 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011-06-02 00:34:36 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011-06-02 00:34:36 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011-06-02 00:34:36 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011-06-02 00:34:36 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011-06-02 00:34:36 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2011-06-02 00:34:36 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapistub.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapi32.dll
[2011-06-02 00:34:36 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\Windows\twain_32.dll
[2011-06-02 00:34:36 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011-06-02 00:34:36 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011-06-02 00:34:35 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\main.cpl
[2011-06-02 00:34:35 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskraid.exe
[2011-06-02 00:34:35 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011-06-02 00:34:35 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mystify.scr
[2011-06-02 00:34:35 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Ribbons.scr
[2011-06-02 00:34:35 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011-06-02 00:34:35 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011-06-02 00:34:35 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011-06-02 00:34:35 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2011-06-02 00:34:35 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ifsutil.dll
[2011-06-02 00:34:35 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011-06-02 00:34:35 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011-06-02 00:34:35 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011-06-02 00:34:35 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdmat.dll
[2011-06-02 00:34:35 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsium.dll
[2011-06-02 00:34:35 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011-06-02 00:34:34 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011-06-02 00:34:34 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2011-06-02 00:34:34 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011-06-02 00:34:34 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011-06-02 00:34:34 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011-06-02 00:34:34 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll
[2011-06-02 00:34:34 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011-06-02 00:34:34 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perfmon.exe
[2011-06-02 00:34:34 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpshell.dll
[2011-06-02 00:34:34 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011-06-02 00:34:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011-06-02 00:34:34 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011-06-02 00:34:34 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011-06-02 00:34:34 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\muifontsetup.dll
[2011-06-02 00:34:33 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll
[2011-06-02 00:34:33 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSAPI.dll
[2011-06-02 00:34:33 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011-06-02 00:34:33 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011-06-02 00:34:33 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011-06-02 00:34:33 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qasf.dll
[2011-06-02 00:34:33 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionQueue.dll
[2011-06-02 00:34:33 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011-06-02 00:34:33 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011-06-02 00:34:33 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011-06-02 00:34:33 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2011-06-02 00:34:33 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tlscsp.dll
[2011-06-02 00:34:33 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\umb.dll
[2011-06-02 00:34:33 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\runonce.exe
[2011-06-02 00:34:33 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPCRYPT.DLL
[2011-06-02 00:34:33 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011-06-02 00:34:33 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AzSqlExt.dll
[2011-06-02 00:34:33 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netutils.dll
[2011-06-02 00:34:32 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMADMOD.DLL
[2011-06-02 00:34:32 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011-06-02 00:34:32 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\raschap.dll
[2011-06-02 00:34:32 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011-06-02 00:34:32 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011-06-02 00:34:32 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdwcn.dll
[2011-06-02 00:34:32 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011-06-02 00:34:32 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsbas.dll
[2011-06-02 00:34:32 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011-06-02 00:34:32 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MdSched.exe
[2011-06-02 00:34:32 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiavideo.dll
[2011-06-02 00:34:32 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011-06-02 00:34:32 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011-06-02 00:34:32 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011-06-02 00:34:32 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011-06-02 00:34:32 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintIsolationProxy.dll
[2011-06-02 00:34:32 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011-06-02 00:34:32 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011-06-02 00:34:32 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syssetup.dll
[2011-06-02 00:34:31 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011-06-02 00:34:31 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVSDECD.DLL
[2011-06-02 00:34:31 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nltest.exe
[2011-06-02 00:34:31 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstask.dll
[2011-06-02 00:34:31 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsadmin.exe
[2011-06-02 00:34:31 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011-06-02 00:34:31 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011-06-02 00:34:31 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011-06-02 00:34:31 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011-06-02 00:34:31 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
[2011-06-02 00:34:31 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Kswdmcap.ax
[2011-06-02 00:34:31 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011-06-02 00:34:31 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011-06-02 00:34:31 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-06-02 00:34:31 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011-06-02 00:34:30 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011-06-02 00:34:30 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmnet.dll
[2011-06-02 00:34:30 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011-06-02 00:34:30 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011-06-02 00:34:30 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDSp.dll
[2011-06-02 00:34:30 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2011-06-02 00:34:30 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011-06-02 00:34:30 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011-06-02 00:34:30 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011-06-02 00:34:30 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qcap.dll
[2011-06-02 00:34:30 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011-06-02 00:34:30 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shacct.dll
[2011-06-02 00:34:30 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSVRMGMT.DLL
[2011-06-02 00:34:30 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011-06-02 00:34:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011-06-02 00:34:30 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011-06-02 00:34:30 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
[2011-06-02 00:34:30 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2011-06-02 00:34:30 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011-06-02 00:34:30 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tabcal.exe
[2011-06-02 00:34:30 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vss_ps.dll
[2011-06-02 00:34:30 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011-06-02 00:34:30 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscapi.dll
[2011-06-02 00:34:30 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011-06-02 00:34:30 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011-06-02 00:34:29 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011-06-02 00:34:29 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011-06-02 00:34:29 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011-06-02 00:34:29 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3ui.dll
[2011-06-02 00:34:29 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011-06-02 00:34:29 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdv.dll
[2011-06-02 00:34:29 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011-06-02 00:34:29 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011-06-02 00:34:29 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2011-06-02 00:34:29 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fphc.dll
[2011-06-02 00:34:29 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011-06-02 00:34:29 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011-06-02 00:34:29 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011-06-02 00:34:29 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spbcd.dll
[2011-06-02 00:34:29 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011-06-02 00:34:29 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011-06-02 00:34:29 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011-06-02 00:34:28 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10.IME
[2011-06-02 00:34:28 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011-06-02 00:34:28 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2011-06-02 00:34:28 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011-06-02 00:34:28 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011-06-02 00:34:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011-06-02 00:34:28 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011-06-02 00:34:28 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011-06-02 00:34:28 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EhStorAPI.dll
[2011-06-02 00:34:28 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011-06-02 00:34:28 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\desk.cpl
[2011-06-02 00:34:28 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011-06-02 00:34:28 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011-06-02 00:34:28 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011-06-02 00:34:28 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011-06-02 00:34:28 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011-06-02 00:34:28 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011-06-02 00:34:28 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\amstream.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011-06-02 00:34:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011-06-02 00:34:28 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011-06-02 00:34:28 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\takeown.exe
[2011-06-02 00:34:28 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PnPUnattend.exe
[2011-06-02 00:34:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011-06-02 00:34:28 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011-06-02 00:34:28 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011-06-02 00:34:27 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2011-06-02 00:34:27 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011-06-02 00:34:27 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011-06-02 00:34:27 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011-06-02 00:34:27 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011-06-02 00:34:27 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2011-06-02 00:34:27 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011-06-02 00:34:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011-06-02 00:34:27 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011-06-02 00:34:27 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011-06-02 00:34:27 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmstp.exe
[2011-06-02 00:34:27 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QCLIPROV.DLL
[2011-06-02 00:34:27 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011-06-02 00:34:27 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2011-06-02 00:34:27 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertPolEng.dll
[2011-06-02 00:34:27 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WavDest.dll
[2011-06-02 00:34:27 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\djoin.exe
[2011-06-02 00:34:27 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimgvw.dll
[2011-06-02 00:34:27 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\HotStartUserAgent.dll
[2011-06-02 00:34:27 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nrpsrv.dll
[2011-06-02 00:34:26 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011-06-02 00:34:26 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSDvbNP.ax
[2011-06-02 00:34:26 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdProxy.dll
[2011-06-02 00:34:26 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011-06-02 00:34:26 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011-06-02 00:34:26 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011-06-02 00:34:25 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011-06-02 00:34:25 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011-06-02 00:34:25 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MultiDigiMon.exe
[2011-06-02 00:34:25 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011-06-02 00:34:24 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mydocs.dll
[2011-06-02 00:34:24 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\g711codc.ax
[2011-06-02 00:34:23 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011-06-02 00:34:23 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\itircl.dll
[2011-06-02 00:34:23 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011-06-02 00:34:23 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskpart.exe
[2011-06-02 00:34:23 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsicli.exe
[2011-06-02 00:34:23 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011-06-02 00:34:23 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011-06-02 00:34:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011-06-02 00:34:23 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3msm.dll
[2011-06-02 00:34:23 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mobsync.exe
[2011-06-02 00:34:23 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011-06-02 00:34:23 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011-06-02 00:34:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2011-06-02 00:34:23 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2011-06-02 00:34:23 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011-06-02 00:34:23 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbisurf.ax
[2011-06-02 00:34:23 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
[2011-06-02 00:34:23 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011-06-02 00:34:23 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdmo.dll
[2011-06-02 00:34:23 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011-06-02 00:34:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011-06-02 00:34:23 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BWUnpairElevated.dll
[2011-06-02 00:34:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sscore.dll
[2011-06-02 00:34:22 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011-06-02 00:34:22 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSTIFF.dll
[2011-06-02 00:34:22 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011-06-02 00:34:22 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011-06-02 00:34:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011-06-02 00:34:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011-06-02 00:34:22 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011-06-02 00:34:22 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\findstr.exe
[2011-06-02 00:34:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011-06-02 00:34:22 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011-06-02 00:34:22 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011-06-02 00:34:22 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciqtz32.dll
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\choice.exe
[2011-06-02 00:34:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011-06-02 00:34:22 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2011-06-02 00:34:22 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011-06-02 00:34:22 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011-06-02 00:34:22 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011-06-02 00:34:21 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onexui.dll
[2011-06-02 00:34:21 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011-06-02 00:34:21 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011-06-02 00:34:21 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppc.dll
[2011-06-02 00:34:21 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011-06-02 00:34:21 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011-06-02 00:34:21 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\manage-bde.exe
[2011-06-02 00:34:21 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011-06-02 00:34:21 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011-06-02 00:34:21 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetmib1.dll
[2011-06-02 00:34:21 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011-06-02 00:34:21 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011-06-02 00:34:21 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\luainstall.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdiasqmmodule.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011-06-02 00:34:21 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schedcli.dll
[2011-06-02 00:34:21 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011-06-02 00:34:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011-06-02 00:34:20 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RDPENCDD.dll
[2011-06-02 00:34:20 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011-06-02 00:34:20 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2011-06-02 00:34:20 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbcconf.dll
[2011-06-02 00:34:20 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011-06-02 00:34:20 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\repair-bde.exe
[2011-06-02 00:34:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011-06-02 00:34:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2011-06-02 00:34:20 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011-06-02 00:34:20 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011-06-02 00:34:20 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\profprov.dll
[2011-06-02 00:34:20 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2011-06-02 00:34:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011-06-02 00:34:20 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011-06-02 00:34:20 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011-06-02 00:34:20 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spopk.dll
[2011-06-02 00:34:20 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fixmapi.exe
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSMON.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011-06-02 00:34:19 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011-06-02 00:34:19 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011-06-02 00:34:19 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys
[2011-06-02 00:34:19 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elsTrans.dll
[2011-06-02 00:34:19 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TRAPI.dll
[2011-06-02 00:34:19 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011-06-02 00:34:19 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011-06-02 00:34:18 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\napdsnap.dll
[2011-06-02 00:34:18 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011-06-02 00:34:18 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsauth.dll
[2011-06-02 00:34:18 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscdll.dll
[2011-06-02 00:34:18 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LogonUI.exe
[2011-06-02 00:34:18 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsperf.dll
[2011-06-02 00:34:18 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdprefdrvapi.dll
[2011-06-02 00:34:18 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011-06-02 00:34:18 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011-06-02 00:34:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011-06-02 00:34:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSUNATD.exe
[2011-06-02 00:34:18 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011-06-02 00:34:18 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011-06-02 00:34:17 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011-06-02 00:34:17 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imkr80.ime
[2011-06-02 00:34:17 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011-06-02 00:34:17 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2011-06-02 00:34:17 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2011-06-02 00:34:17 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shgina.dll
[2011-06-02 00:34:17 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsdchngr.dll
[2011-06-02 00:34:17 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011-06-02 00:34:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011-06-02 00:34:16 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011-06-02 00:34:16 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011-06-02 00:34:16 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011-06-02 00:34:16 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011-06-02 00:34:16 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshirda.dll
[2011-06-02 00:34:16 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011-06-02 00:34:16 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011-06-02 00:34:15 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011-06-02 00:34:15 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched32.dll
[2011-06-02 00:34:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcfgex.dll
[2011-06-02 00:34:15 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2011-06-02 00:34:14 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2011-06-02 00:34:13 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shunimpl.dll
[2011-06-02 00:34:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011-06-02 00:34:11 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSG.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGKL.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDPO.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDNEPR.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTAM.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINBEN.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011-06-02 00:34:10 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011-06-02 00:34:09 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
[2011-06-02 00:34:09 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BlbEvents.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pifmgr.dll
[2011-06-02 00:34:09 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUS.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMON.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnaddr.dll
[2011-06-02 00:34:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011-06-02 00:33:54 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011-06-02 00:33:54 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011-06-02 00:33:51 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011-06-02 00:33:51 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011-06-02 00:32:23 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wbemcomn.dll
[2011-06-02 00:32:23 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmicmiplugin.dll
[2011-06-02 00:32:15 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmiEngine.dll
[2011-06-02 00:32:13 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PkgMgr.exe
[2011-06-02 00:32:04 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drvstore.dll
[2011-06-02 00:32:04 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpx.dll
[2011-06-01 20:58:17 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Marcin
[2011-05-31 17:59:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Last.fm
[2011-05-31 17:58:32 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\Last.fm
[2011-05-31 17:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Last.fm
[2011-05-31 17:03:29 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2011-05-31 17:03:28 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2011-05-31 17:02:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2011-05-31 17:02:54 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Winamp
[2011-05-31 14:18:06 | 000,000,000 | ---D | C] -- C:\Max -bud i inne
[2011-05-22 08:31:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady
[2011-05-22 08:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\RDRM
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla
[2011-05-22 08:04:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011-05-22 08:04:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
[2011-05-22 08:03:31 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-07-13 19:39:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA.job
[2011-07-13 19:21:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-07-13 18:37:40 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-13 18:37:40 | 000,035,816 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-13 18:31:34 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2011-07-13 16:39:00 | 000,001,014 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core.job
[2011-07-13 11:39:14 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-07-13 11:39:14 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-07-13 11:31:25 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:12:03 | 000,007,625 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 09:00:13 | 000,070,104 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 16:56:56 | 000,000,539 | -H-- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:22 | 000,073,551 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-09 00:38:07 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-07-09 00:38:07 | 000,687,828 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-07-09 00:38:07 | 000,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-07-09 00:38:07 | 000,131,382 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-07-09 00:38:07 | 000,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-07-04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-07-04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-07-04 13:43:42 | 000,253,888 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-07-04 13:36:56 | 000,600,920 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-07-04 13:36:54 | 000,288,088 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-07-04 13:35:28 | 000,045,400 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-07-04 13:32:35 | 000,031,064 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-07-04 13:32:14 | 000,022,360 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-07-03 01:33:08 | 005,794,489 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:38 | 001,590,098 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 14:39:06 | 000,467,528 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011-07-01 14:28:20 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011-07-01 14:28:19 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011-07-01 10:42:26 | 000,000,522 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-28 15:35:23 | 000,001,848 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-26 08:45:56 | 000,256,000 | ---- | M] () -- C:\Windows\PEV.exe
[2011-05-26 20:56:21 | 000,000,000 | ---- | M] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-26 16:38:12 | 000,000,698 | ---- | M] () -- C:\Windows\Thps3.INI
[2011-05-24 12:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-05-24 12:37:54 | 000,252,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-05-22 08:03:31 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2011-05-18 10:53:18 | 000,012,808 | ---- | M] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-07-13 12:13:52 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011-07-13 12:13:52 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011-07-13 12:13:52 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011-07-13 12:13:52 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011-07-13 12:13:52 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011-07-12 22:07:10 | 000,000,002 | RHS- | C] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:12:03 | 000,007,625 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 09:00:13 | 000,070,104 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 14:20:17 | 000,000,539 | -H-- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
[2011-07-11 14:18:16 | 000,002,959 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:21 | 000,073,551 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-03 01:33:36 | 005,794,489 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:29 | 001,590,098 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 10:42:26 | 000,000,522 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-06-28 15:35:23 | 000,001,848 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-02 00:35:59 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2011-06-02 00:34:21 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2011-06-02 00:33:54 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011-05-31 15:57:34 | 000,002,691 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Microsoft Office Word 2007.lnk
[2011-05-26 20:56:21 | 000,000,000 | ---- | C] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-22 08:04:08 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011-04-08 23:29:17 | 000,000,698 | ---- | C] () -- C:\Windows\Thps3.INI
[2011-02-18 16:28:45 | 000,000,617 | ---- | C] () -- C:\Windows\eReg.dat
[2010-06-15 09:58:05 | 000,002,181 | ---- | C] () -- C:\Windows\Helicon Debug Window.ini
[2010-05-05 11:56:58 | 000,021,504 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-26 10:23:36 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009-10-04 23:59:37 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2009-08-27 08:05:12 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009-08-27 08:05:12 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009-08-27 08:05:12 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009-08-27 08:05:12 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009-04-28 04:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll
[2002-10-03 14:42:27 | 000,000,034 | ---- | C] () -- C:\Windows\Q3version.ini

[color=#E56717]========== LOP Check ==========[/color]

[2011-07-12 22:12:44 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2010-03-18 09:49:42 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ashampoo
[2011-06-30 13:20:38 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\CrazyKeys
[2011-06-30 14:13:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2010-11-15 01:53:49 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Gadu-Gadu 10
[2011-06-09 16:23:10 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2010-06-12 12:09:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GHISLER
[2011-05-31 15:53:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-07-13 19:28:49 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-04-29 14:31:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Lexis Rex
[2010-06-08 00:29:14 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia
[2010-05-05 12:11:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia Ovi Suite
[2010-10-16 12:23:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PC Suite
[2011-05-01 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PITy2010
[2010-04-25 12:56:07 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Toshiba
[2010-10-23 08:26:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\uTorrent
[2011-06-30 15:09:57 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2010-03-21 21:57:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Windows Live Writer
[2011-07-11 14:39:41 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2010-07-04 00:10:59 | 000,230,725 | ---- | M] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:06:24 | 000,230,725 | ---- | C] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:05:48 | 000,012,796 | ---- | M] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx
[2010-07-02 14:53:54 | 000,012,796 | ---- | C] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx

< End of report >

[/log]

wirusolog
komentarz
komentarz

[b]1.[/b] Uruchom OTL i w oknie [b]Własne opcje skanowania/Skrypt[/b] wklej następujący tekst:

[code]:OTL
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] File not found

:Files
C:\Users\MAX-BUD\AppData\Roaming\vverber.exe
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2575066711-25147781-4187868282-1000Core.job

:Commands
[Reboot][/code]
Kliknij w [b]Wykonaj skrypt[/b]. Zatwierdź restart komputera.

[b]2.[/b] Po tych czynnościach uruchamiasz OTL ponownie, tym razem wywołujesz opcję [b]Skanuj[/b]. [u]Pokazujesz nowe logi z OTL + raport z usuwanie OTLem[/u].

  • Dobra wypowiedź 1
elsaper
komentarz
komentarz (edytowane)

[log]OTL logfile created on: 2011-07-14 13:19:44 - Run 5
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\MAX-BUD\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,87 Gb Total Physical Memory | 1,58 Gb Available Physical Memory | 55,07% Memory free
5,73 Gb Paging File | 4,31 Gb Available in Paging File | 75,19% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 149,04 Gb Total Space | 92,60 Gb Free Space | 62,13% Space Free | Partition Type: NTFS
Drive D: | 148,65 Gb Total Space | 121,33 Gb Free Space | 81,62% Space Free | Partition Type: NTFS

Computer Name: MAX-BUD-007 | User Name: MAX-BUD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
PRC - [2011-07-04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011-06-24 08:25:50 | 001,012,792 | ---- | M] (Google Inc.) -- C:\Users\MAX-BUD\AppData\Local\Google\Chrome\Application\chrome.exe
PRC - [2011-05-18 10:53:10 | 000,594,200 | ---- | M] (Greatis Software) -- D:\UnHackMe\hackmon.exe
PRC - [2011-04-08 12:59:52 | 000,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
PRC - [2009-07-28 20:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
PRC - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
PRC - [2009-07-14 03:14:31 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rundll32.exe
PRC - [2009-07-13 15:24:00 | 000,304,496 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
PRC - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
PRC - [2009-02-27 17:10:28 | 000,035,696 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
PRC - [2009-01-13 21:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe


[color=#E56717]========== Modules (SafeList) ==========[/color]

MOD - [2011-07-11 14:59:27 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\MAX-BUD\Downloads\OTL.exe
MOD - [2011-07-04 13:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll
MOD - [2010-11-20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2009-08-27 13:38:22 | 000,251,760 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:[b]64bit:[/b] - [2009-08-05 14:20:12 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:[b]64bit:[/b] - [2009-08-04 11:15:06 | 000,826,224 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:[b]64bit:[/b] - [2009-08-03 18:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:[b]64bit:[/b] - [2009-07-28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009-08-17 10:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009-08-10 19:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO)
SRV - [2009-07-14 19:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009-03-10 18:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2007-05-31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010-11-20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2009-08-27 08:07:06 | 007,369,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2009-08-20 16:04:06 | 000,446,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187B.sys -- (RTL8187B)
DRV:[b]64bit:[/b] - [2009-08-13 08:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcp.sys -- (BthAvrcp)
DRV:[b]64bit:[/b] - [2009-07-30 21:02:36 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:[b]64bit:[/b] - [2009-07-30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:[b]64bit:[/b] - [2009-07-30 17:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:[b]64bit:[/b] - [2009-07-24 15:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:[b]64bit:[/b] - [2009-07-20 17:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009-07-14 15:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2009-07-14 02:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2009-07-10 06:45:12 | 000,139,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R)
DRV:[b]64bit:[/b] - [2009-06-22 17:06:38 | 000,035,008 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:[b]64bit:[/b] - [2009-06-20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2009-06-19 19:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-06-04 18:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009-05-22 22:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2011-07-13 20:25:10 | 000,024,416 | ---- | M] (Greatis Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\regguard.sys -- (RegGuard)
DRV - [2011-07-13 18:37:40 | 000,035,816 | ---- | M] (Greatis Software) [Kernel | Boot | Stopped] -- C:\Windows\system32\drivers\Partizan.sys -- (Partizan)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://174.37.200.81
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.3.42

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Users\MAX-BUD\AppData\Local\Google\Update\1.2.183.23\npGoogleOneClick8.dll (Google Inc.)


[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Extensions
[2010-10-02 14:22:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\MAX-BUD\AppData\Roaming\mozilla\Firefox\Profiles\62mh5x8i.default\extensions
File not found (No name found) -- C:\PROGRAM FILES (X86)\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION

O1 HOSTS File: ([2011-07-13 18:31:34 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:[b]64bit:[/b] - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:[b]64bit:[/b] - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [SmartFaceVWatcher] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Toshiba Europe GmbH)
O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TWebCamera] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2575066711-25147781-4187868282-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 62.179.1.62
O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011-02-02 01:51:14 | 000,018,366 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (Partizan) - C:\Windows\SysWow64\Partizan.exe (Greatis Software)
O34 - HKLM BootExecute: (ootExecute settings...) - File not found
O34 - HKLM BootExecute: (on\E) - File not found
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = ComFile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*



SafeBootMin:[b]64bit:[/b] Base - Driver Group
SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group
SafeBootMin:[b]64bit:[/b] File system - Driver Group
SafeBootMin:[b]64bit:[/b] Filter - Driver Group
SafeBootMin:[b]64bit:[/b] HelpSvc - Service
SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group
SafeBootMin:[b]64bit:[/b] sacsvr - Service
SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootMin:[b]64bit:[/b] vmms - Service
SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet:[b]64bit:[/b] Base - Driver Group
SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group
SafeBootNet:[b]64bit:[/b] File system - Driver Group
SafeBootNet:[b]64bit:[/b] Filter - Driver Group
SafeBootNet:[b]64bit:[/b] HelpSvc - Service
SafeBootNet:[b]64bit:[/b] Messenger - Service
SafeBootNet:[b]64bit:[/b] MpfService - Service
SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group
SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group
SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group
SafeBootNet:[b]64bit:[/b] Network - Driver Group
SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group
SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group
SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group
SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group
SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group
SafeBootNet:[b]64bit:[/b] rdsessmgr - Service
SafeBootNet:[b]64bit:[/b] sacsvr - Service
SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group
SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group
SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group
SafeBootNet:[b]64bit:[/b] TDI - Driver Group
SafeBootNet:[b]64bit:[/b] vmms - Service
SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver
SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: MpfService - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-07-13 23:32:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kadu
[2011-07-13 20:25:12 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-13 20:25:10 | 000,024,416 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\drivers\regguard.sys
[2011-07-13 18:37:40 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-13 18:37:40 | 000,035,816 | ---- | C] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-13 18:32:34 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011-07-13 18:31:44 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011-07-13 18:31:44 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011-07-13 18:31:44 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011-07-13 18:31:44 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011-07-13 18:31:44 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011-07-13 18:31:44 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011-07-13 18:31:44 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2011-07-13 18:31:44 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2011-07-13 18:31:44 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2011-07-13 18:31:44 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011-07-13 18:31:44 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2011-07-13 18:31:44 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2011-07-13 18:31:43 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2011-07-13 18:31:43 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2011-07-13 18:31:43 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2011-07-13 18:31:43 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2011-07-13 18:31:43 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2011-07-13 18:31:43 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2011-07-13 18:31:43 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2011-07-13 18:31:43 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2011-07-13 18:31:43 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2011-07-13 18:31:43 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2011-07-13 18:31:32 | 000,000,000 | ---D | C] -- C:\_OTL
[2011-07-13 12:39:59 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011-07-13 12:39:59 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\temp
[2011-07-13 12:13:52 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011-07-13 12:13:52 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011-07-13 12:13:52 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011-07-13 12:13:46 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011-07-13 12:12:29 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011-07-12 22:07:08 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\RegRun2
[2011-07-12 22:07:06 | 000,012,808 | ---- | C] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
[2011-07-12 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\regruninfo
[2011-07-12 20:20:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2011-07-11 14:18:16 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011-07-09 21:19:09 | 000,000,000 | ---D | C] -- C:\Cache
[2011-07-01 20:14:44 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2011-07-01 20:13:20 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011-07-01 19:54:18 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Odebrane pliki
[2011-07-01 14:14:22 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011-07-01 14:13:18 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011-06-30 14:06:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegCleaner
[2011-06-30 13:47:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2011-06-29 22:30:13 | 000,000,000 | RHSD | C] -- C:\Users\MAX-BUD\AppData\Roaming\Google Update
[2011-06-29 09:33:51 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cfgmgr32.dll
[2011-06-29 09:33:50 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-06-29 09:33:50 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-06-28 15:35:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2011-06-28 15:35:22 | 000,288,088 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-06-28 15:35:22 | 000,022,360 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-06-28 15:35:18 | 000,031,064 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-06-28 15:35:16 | 000,045,400 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-06-28 15:35:13 | 000,600,920 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-06-28 15:34:58 | 000,064,856 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-06-28 15:34:55 | 000,253,888 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-06-28 15:33:02 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-06-28 15:33:01 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011-06-28 15:32:52 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011-06-27 13:24:06 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2011-06-26 15:20:19 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011-06-26 15:20:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011-06-26 15:20:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011-06-26 15:11:28 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2011-06-25 22:13:41 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\nvidia
[2011-06-22 20:40:55 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Favorites
[2011-06-16 17:10:50 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011-06-16 17:10:30 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011-06-16 17:10:30 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011-06-16 17:10:27 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011-06-16 17:10:27 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011-06-16 17:10:19 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011-06-12 19:06:05 | 000,086,016 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 19:06:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake III Arena
[2011-06-12 13:33:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP3 Cutter
[2011-06-12 13:33:03 | 000,140,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comdlg32.ocx
[2011-06-12 11:48:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimate Mortal Kombat 3
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2011-06-09 16:22:46 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\Documents\Downloads
[2011-06-06 17:56:05 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-06 17:50:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kadu
[2011-06-04 17:31:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011-06-04 17:31:30 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2011-06-02 00:36:37 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2011-06-02 00:36:37 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2011-06-02 00:36:28 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011-06-02 00:36:23 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011-06-02 00:36:23 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2011-06-02 00:36:23 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011-06-02 00:36:23 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011-06-02 00:36:21 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011-06-02 00:36:17 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011-06-02 00:36:17 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011-06-02 00:36:17 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011-06-02 00:36:15 | 001,465,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2011-06-02 00:36:14 | 002,314,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011-06-02 00:36:13 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2011-06-02 00:36:12 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011-06-02 00:36:12 | 000,902,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2011-06-02 00:36:11 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmcndmgr.dll
[2011-06-02 00:36:11 | 001,731,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011-06-02 00:36:11 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2011-06-02 00:36:10 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2011-06-02 00:36:10 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d2d1.dll
[2011-06-02 00:36:10 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2011-06-02 00:36:10 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2011-06-02 00:36:09 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xpsservices.dll
[2011-06-02 00:36:09 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2011-06-02 00:36:09 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011-06-02 00:36:09 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2011-06-02 00:36:08 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2011-06-02 00:36:08 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011-06-02 00:36:08 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011-06-02 00:36:07 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
[2011-06-02 00:36:07 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011-06-02 00:36:06 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizui.dll
[2011-06-02 00:36:05 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2011-06-02 00:36:05 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RacEngn.dll
[2011-06-02 00:36:05 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagperf.dll
[2011-06-02 00:36:05 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskschd.dll
[2011-06-02 00:36:04 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011-06-02 00:36:04 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2011-06-02 00:36:03 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vssapi.dll
[2011-06-02 00:36:03 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011-06-02 00:36:03 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011-06-02 00:36:03 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NaturalLanguage6.dll
[2011-06-02 00:36:02 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2011-06-02 00:36:02 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011-06-02 00:36:01 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011-06-02 00:36:01 | 002,872,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2011-06-02 00:35:59 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVCORE.DLL
[2011-06-02 00:35:59 | 001,698,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2011-06-02 00:35:59 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011-06-02 00:35:59 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011-06-02 00:35:58 | 001,544,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2011-06-02 00:35:58 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spinstall.exe
[2011-06-02 00:35:58 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2011-06-02 00:35:58 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spreview.exe
[2011-06-02 00:35:58 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpdd.dll
[2011-06-02 00:35:58 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011-06-02 00:35:57 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSAT.exe
[2011-06-02 00:35:57 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2011-06-02 00:35:57 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011-06-02 00:35:56 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll
[2011-06-02 00:35:56 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2011-06-02 00:35:55 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011-06-02 00:35:55 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011-06-02 00:35:54 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuthFWSnapin.dll
[2011-06-02 00:35:53 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll
[2011-06-02 00:35:53 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2011-06-02 00:35:52 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2011-06-02 00:35:51 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011-06-02 00:35:51 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2011-06-02 00:35:51 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2011-06-02 00:35:51 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2011-06-02 00:35:49 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2011-06-02 00:35:49 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2011-06-02 00:35:49 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqmapi.dll
[2011-06-02 00:35:48 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2fs.dll
[2011-06-02 00:35:48 | 001,076,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWrite.dll
[2011-06-02 00:35:48 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2011-06-02 00:35:48 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netlogon.dll
[2011-06-02 00:35:47 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2011-06-02 00:35:47 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupapi.dll
[2011-06-02 00:35:47 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011-06-02 00:35:47 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll
[2011-06-02 00:35:47 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011-06-02 00:35:46 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2011-06-02 00:35:46 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\werconcpl.dll
[2011-06-02 00:35:46 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbc32.dll
[2011-06-02 00:35:46 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskeng.exe
[2011-06-02 00:35:45 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certmgr.dll
[2011-06-02 00:35:45 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011-06-02 00:35:45 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2011-06-02 00:35:45 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011-06-02 00:35:44 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2011-06-02 00:35:44 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011-06-02 00:35:44 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2011-06-02 00:35:44 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011-06-02 00:35:44 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011-06-02 00:35:44 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2011-06-02 00:35:43 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdtctm.dll
[2011-06-02 00:35:43 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011-06-02 00:35:43 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2011-06-02 00:35:43 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shlwapi.dll
[2011-06-02 00:35:43 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll
[2011-06-02 00:35:43 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedynos.dll
[2011-06-02 00:35:43 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2011-06-02 00:35:42 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netshell.dll
[2011-06-02 00:35:42 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011-06-02 00:35:42 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011-06-02 00:35:41 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2011-06-02 00:35:41 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011-06-02 00:35:41 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2011-06-02 00:35:41 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2011-06-02 00:35:41 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2011-06-02 00:35:41 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2011-06-02 00:35:41 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2011-06-02 00:35:41 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.exe
[2011-06-02 00:35:41 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ws2_32.dll
[2011-06-02 00:35:40 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011-06-02 00:35:40 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpps.dll
[2011-06-02 00:35:40 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
[2011-06-02 00:35:40 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2011-06-02 00:35:40 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
[2011-06-02 00:35:39 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
[2011-06-02 00:35:39 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Query.dll
[2011-06-02 00:35:39 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroles.dll
[2011-06-02 00:35:39 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011-06-02 00:35:39 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011-06-02 00:35:39 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QAGENT.DLL
[2011-06-02 00:35:39 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011-06-02 00:35:38 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Vault.dll
[2011-06-02 00:35:38 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll
[2011-06-02 00:35:38 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmd.exe
[2011-06-02 00:35:38 | 000,281,600 | ---- | C] (Microsoft) -- C:\Windows\SysNative\DShowRdpFilter.dll
[2011-06-02 00:35:37 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011-06-02 00:35:37 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011-06-02 00:35:37 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2011-06-02 00:35:37 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpksetup.exe
[2011-06-02 00:35:37 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011-06-02 00:35:35 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011-06-02 00:35:35 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011-06-02 00:35:35 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2011-06-02 00:35:35 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sxs.dll
[2011-06-02 00:35:35 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011-06-02 00:35:35 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011-06-02 00:35:34 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskcomp.dll
[2011-06-02 00:35:34 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2011-06-02 00:35:34 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wldap32.dll
[2011-06-02 00:35:34 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcbuilder.exe
[2011-06-02 00:35:33 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011-06-02 00:35:33 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pnidui.dll
[2011-06-02 00:35:33 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipsmsnap.dll
[2011-06-02 00:35:33 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011-06-02 00:35:33 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgprint.dll
[2011-06-02 00:35:33 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011-06-02 00:35:33 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2011-06-02 00:35:29 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011-06-02 00:35:29 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webservices.dll
[2011-06-02 00:35:29 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlsrv32.dll
[2011-06-02 00:35:29 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011-06-02 00:35:29 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011-06-02 00:35:29 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2011-06-02 00:35:29 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011-06-02 00:35:28 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011-06-02 00:35:28 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2011-06-02 00:35:28 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fveapi.dll
[2011-06-02 00:35:28 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011-06-02 00:35:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011-06-02 00:35:28 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3api.dll
[2011-06-02 00:35:27 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011-06-02 00:35:27 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanpref.dll
[2011-06-02 00:35:27 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMNetMgr.dll
[2011-06-02 00:35:27 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcmde.dll
[2011-06-02 00:35:27 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2011-06-02 00:35:27 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2011-06-02 00:35:27 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schtasks.exe
[2011-06-02 00:35:27 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prncache.dll
[2011-06-02 00:35:26 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011-06-02 00:35:26 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2011-06-02 00:35:26 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2011-06-02 00:35:26 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnike.dll
[2011-06-02 00:35:26 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2011-06-02 00:35:26 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011-06-02 00:35:26 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\userenv.dll
[2011-06-02 00:35:25 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncCenter.dll
[2011-06-02 00:35:25 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppobjs.dll
[2011-06-02 00:35:25 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll
[2011-06-02 00:35:25 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2011-06-02 00:35:25 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011-06-02 00:35:25 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2011-06-02 00:35:25 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedyn.dll
[2011-06-02 00:35:24 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPEncEn.dll
[2011-06-02 00:35:24 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpeffects.dll
[2011-06-02 00:35:24 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2011-06-02 00:35:24 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2011-06-02 00:35:23 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localsec.dll
[2011-06-02 00:35:23 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011-06-02 00:35:23 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSATAPI.dll
[2011-06-02 00:35:23 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011-06-02 00:35:23 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011-06-02 00:35:23 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2011-06-02 00:35:23 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011-06-02 00:35:23 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fde.dll
[2011-06-02 00:35:22 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netdiagfx.dll
[2011-06-02 00:35:22 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2011-06-02 00:35:22 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2011-06-02 00:35:22 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2011-06-02 00:35:22 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netid.dll
[2011-06-02 00:35:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011-06-02 00:35:21 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2011-06-02 00:35:21 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011-06-02 00:35:21 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\biocpl.dll
[2011-06-02 00:35:21 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msinfo32.exe
[2011-06-02 00:35:21 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tcpipcfg.dll
[2011-06-02 00:35:21 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spp.dll
[2011-06-02 00:35:21 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSHVHOST.DLL
[2011-06-02 00:35:21 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011-06-02 00:35:21 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011-06-02 00:35:20 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011-06-02 00:35:20 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2011-06-02 00:35:20 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mspbda.dll
[2011-06-02 00:35:20 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scansetting.dll
[2011-06-02 00:35:20 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011-06-02 00:35:19 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2011-06-02 00:35:19 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PhotoScreensaver.scr
[2011-06-02 00:35:19 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wusa.exe
[2011-06-02 00:35:19 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IPHLPAPI.DLL
[2011-06-02 00:35:19 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitagent.exe
[2011-06-02 00:35:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011-06-02 00:35:18 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011-06-02 00:35:18 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscms.dll
[2011-06-02 00:35:18 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011-06-02 00:35:18 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2011-06-02 00:35:18 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011-06-02 00:35:18 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2011-06-02 00:35:18 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011-06-02 00:35:18 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011-06-02 00:35:17 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2011-06-02 00:35:17 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FirewallControlPanel.dll
[2011-06-02 00:35:17 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011-06-02 00:35:17 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppwinob.dll
[2011-06-02 00:35:17 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisptis.exe
[2011-06-02 00:35:17 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011-06-02 00:35:17 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2011-06-02 00:35:17 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetup.exe
[2011-06-02 00:35:16 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2011-06-02 00:35:16 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011-06-02 00:35:16 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXP.dll
[2011-06-02 00:35:16 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011-06-02 00:35:16 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetapi.dll
[2011-06-02 00:35:15 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011-06-02 00:35:15 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmsys.cpl
[2011-06-02 00:35:15 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
[2011-06-02 00:35:15 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011-06-02 00:35:15 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2011-06-02 00:35:15 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2011-06-02 00:35:15 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2011-06-02 00:35:15 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011-06-02 00:35:15 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprapi.dll
[2011-06-02 00:35:15 | 000,128,000 | ---- | C] (Microsoft) -- C:\Windows\SysNative\Robocopy.exe
[2011-06-02 00:35:14 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011-06-02 00:35:14 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DxpTaskSync.dll
[2011-06-02 00:35:14 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PerfCenterCPL.dll
[2011-06-02 00:35:14 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll
[2011-06-02 00:35:14 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011-06-02 00:35:14 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2011-06-02 00:35:14 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\thumbcache.dll
[2011-06-02 00:35:14 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys
[2011-06-02 00:35:13 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themeui.dll
[2011-06-02 00:35:13 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011-06-02 00:35:13 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXPTaskRingtone.dll
[2011-06-02 00:35:13 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2011-06-02 00:35:13 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onex.dll
[2011-06-02 00:35:13 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scecli.dll
[2011-06-02 00:35:13 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys
[2011-06-02 00:35:13 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2011-06-02 00:35:13 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll
[2011-06-02 00:35:13 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011-06-02 00:35:13 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2011-06-02 00:35:13 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
[2011-06-02 00:35:12 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011-06-02 00:35:12 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011-06-02 00:35:12 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011-06-02 00:35:12 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2011-06-02 00:35:12 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011-06-02 00:35:12 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011-06-02 00:35:11 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdc.dll
[2011-06-02 00:35:11 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlangpui.dll
[2011-06-02 00:35:11 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2011-06-02 00:35:11 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2011-06-02 00:35:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011-06-02 00:35:10 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcenter.dll
[2011-06-02 00:35:10 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdengin2.dll
[2011-06-02 00:35:10 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2011-06-02 00:35:10 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2011-06-02 00:35:10 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StructuredQuery.dll
[2011-06-02 00:35:10 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiadefui.dll
[2011-06-02 00:35:10 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2011-06-02 00:35:10 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dskquoui.dll
[2011-06-02 00:35:10 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011-06-02 00:35:10 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011-06-02 00:35:10 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samcli.dll
[2011-06-02 00:35:10 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011-06-02 00:35:09 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2011-06-02 00:35:09 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011-06-02 00:35:09 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011-06-02 00:35:09 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011-06-02 00:35:09 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011-06-02 00:35:09 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srchadmin.dll
[2011-06-02 00:35:09 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011-06-02 00:35:09 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011-06-02 00:35:09 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2011-06-02 00:35:09 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011-06-02 00:35:09 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QUTIL.DLL
[2011-06-02 00:35:09 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\regapi.dll
[2011-06-02 00:35:08 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011-06-02 00:35:08 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011-06-02 00:35:08 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appwiz.cpl
[2011-06-02 00:35:08 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TabletPC.cpl
[2011-06-02 00:35:08 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011-06-02 00:35:08 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2011-06-02 00:35:08 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2011-06-02 00:35:08 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2011-06-02 00:35:08 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011-06-02 00:35:08 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011-06-02 00:35:08 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupcl.exe
[2011-06-02 00:35:08 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2011-06-02 00:35:08 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011-06-02 00:35:07 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgcpl.dll
[2011-06-02 00:35:07 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msconfig.exe
[2011-06-02 00:35:07 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netiohlp.dll
[2011-06-02 00:35:07 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011-06-02 00:35:07 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mimefilt.dll
[2011-06-02 00:35:06 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2011-06-02 00:35:06 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\basecsp.dll
[2011-06-02 00:35:06 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdeploy.dll
[2011-06-02 00:35:06 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsmproxy.dll
[2011-06-02 00:35:05 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011-06-02 00:35:05 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011-06-02 00:35:05 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011-06-02 00:35:05 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011-06-02 00:35:05 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011-06-02 00:35:05 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mtxclu.dll
[2011-06-02 00:35:05 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011-06-02 00:35:05 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011-06-02 00:35:05 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011-06-02 00:35:05 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2011-06-02 00:35:04 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011-06-02 00:35:04 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched20.dll
[2011-06-02 00:35:04 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011-06-02 00:35:04 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscmmc.dll
[2011-06-02 00:35:03 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themecpl.dll
[2011-06-02 00:35:03 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011-06-02 00:35:03 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011-06-02 00:35:03 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercpl.dll
[2011-06-02 00:35:03 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eudcedit.exe
[2011-06-02 00:35:03 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sharemediacpl.dll
[2011-06-02 00:35:03 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011-06-02 00:35:03 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoncli.dll
[2011-06-02 00:35:03 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nci.dll
[2011-06-02 00:35:03 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RpcRtRemote.dll
[2011-06-02 00:35:02 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SensorsCpl.dll
[2011-06-02 00:35:02 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Narrator.exe
[2011-06-02 00:35:02 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011-06-02 00:35:02 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011-06-02 00:35:02 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll
[2011-06-02 00:35:02 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netjoin.dll
[2011-06-02 00:35:02 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011-06-02 00:35:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011-06-02 00:35:02 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011-06-02 00:35:02 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011-06-02 00:35:02 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnikeapi.dll
[2011-06-02 00:35:01 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoconv.exe
[2011-06-02 00:35:01 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autochk.exe
[2011-06-02 00:35:01 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autofmt.exe
[2011-06-02 00:35:01 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011-06-02 00:35:01 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2011-06-02 00:35:01 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshipsec.dll
[2011-06-02 00:35:01 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011-06-02 00:35:01 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011-06-02 00:35:01 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll
[2011-06-02 00:35:01 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011-06-02 00:35:01 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011-06-02 00:35:01 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2011-06-02 00:35:01 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2011-06-02 00:35:01 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2011-06-02 00:35:01 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011-06-02 00:35:01 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011-06-02 00:35:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011-06-02 00:35:00 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdclt.exe
[2011-06-02 00:35:00 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpd_ci.dll
[2011-06-02 00:35:00 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011-06-02 00:35:00 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanui.dll
[2011-06-02 00:35:00 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011-06-02 00:35:00 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011-06-02 00:35:00 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2011-06-02 00:35:00 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011-06-02 00:35:00 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011-06-02 00:35:00 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011-06-02 00:35:00 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011-06-02 00:35:00 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys
[2011-06-02 00:35:00 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdsrv.dll
[2011-06-02 00:35:00 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prntvpt.dll
[2011-06-02 00:35:00 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll
[2011-06-02 00:34:59 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011-06-02 00:34:59 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2011-06-02 00:34:59 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011-06-02 00:34:59 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontext.dll
[2011-06-02 00:34:59 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011-06-02 00:34:59 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2011-06-02 00:34:59 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011-06-02 00:34:59 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprddm.dll
[2011-06-02 00:34:59 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011-06-02 00:34:59 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011-06-02 00:34:59 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011-06-02 00:34:59 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2011-06-02 00:34:59 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011-06-02 00:34:59 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2011-06-02 00:34:58 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011-06-02 00:34:58 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mblctr.exe
[2011-06-02 00:34:58 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\batmeter.dll
[2011-06-02 00:34:57 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011-06-02 00:34:57 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DiagCpl.dll
[2011-06-02 00:34:57 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011-06-02 00:34:57 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011-06-02 00:34:57 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usercpl.dll
[2011-06-02 00:34:57 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011-06-02 00:34:57 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011-06-02 00:34:57 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011-06-02 00:34:57 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpsrcwp.dll
[2011-06-02 00:34:57 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011-06-02 00:34:57 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rtutils.dll
[2011-06-02 00:34:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011-06-02 00:34:56 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bootres.dll
[2011-06-02 00:34:56 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:56 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksproxy.ax
[2011-06-02 00:34:56 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011-06-02 00:34:56 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSTPager.ax
[2011-06-02 00:34:55 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011-06-02 00:34:55 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011-06-02 00:34:55 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpccpl.dll
[2011-06-02 00:34:55 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011-06-02 00:34:55 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxdiagn.dll
[2011-06-02 00:34:55 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011-06-02 00:34:55 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2011-06-02 00:34:55 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rasppp.dll
[2011-06-02 00:34:55 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3cfg.dll
[2011-06-02 00:34:54 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnfldr.dll
[2011-06-02 00:34:54 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011-06-02 00:34:54 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011-06-02 00:34:54 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pdh.dll
[2011-06-02 00:34:54 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011-06-02 00:34:54 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskmgr.exe
[2011-06-02 00:34:54 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011-06-02 00:34:54 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2011-06-02 00:34:54 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011-06-02 00:34:54 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hbaapi.dll
[2011-06-02 00:34:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\proquota.exe
[2011-06-02 00:34:53 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\accessibilitycpl.dll
[2011-06-02 00:34:53 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011-06-02 00:34:53 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\untfs.dll
[2011-06-02 00:34:53 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAC3ENC.DLL
[2011-06-02 00:34:53 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011-06-02 00:34:53 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011-06-02 00:34:53 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2011-06-02 00:34:53 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2011-06-02 00:34:53 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011-06-02 00:34:53 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011-06-02 00:34:53 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDShServiceObj.dll
[2011-06-02 00:34:53 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011-06-02 00:34:52 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011-06-02 00:34:52 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011-06-02 00:34:52 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011-06-02 00:34:52 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011-06-02 00:34:51 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011-06-02 00:34:51 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\zipfldr.dll
[2011-06-02 00:34:51 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slui.exe
[2011-06-02 00:34:51 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2011-06-02 00:34:51 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011-06-02 00:34:51 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\defaultlocationcpl.dll
[2011-06-02 00:34:51 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011-06-02 00:34:51 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011-06-02 00:34:50 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011-06-02 00:34:50 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sud.dll
[2011-06-02 00:34:50 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DeviceCenter.dll
[2011-06-02 00:34:50 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011-06-02 00:34:50 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011-06-02 00:34:50 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011-06-02 00:34:50 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mpeg2Data.ax
[2011-06-02 00:34:50 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011-06-02 00:34:49 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkmap.dll
[2011-06-02 00:34:49 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2011-06-02 00:34:49 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2011-06-02 00:34:49 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011-06-02 00:34:49 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011-06-02 00:34:49 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2011-06-02 00:34:49 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2011-06-02 00:34:49 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011-06-02 00:34:49 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskbarcpl.dll
[2011-06-02 00:34:49 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OnLineIDCpl.dll
[2011-06-02 00:34:49 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011-06-02 00:34:49 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twext.dll
[2011-06-02 00:34:49 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011-06-02 00:34:48 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011-06-02 00:34:48 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OobeFldr.dll
[2011-06-02 00:34:48 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011-06-02 00:34:48 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011-06-02 00:34:48 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011-06-02 00:34:48 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011-06-02 00:34:48 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroleui.dll
[2011-06-02 00:34:48 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011-06-02 00:34:48 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl
[2011-06-02 00:34:48 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdedit.exe
[2011-06-02 00:34:48 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011-06-02 00:34:48 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxlib.dll
[2011-06-02 00:34:48 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recovery.dll
[2011-06-02 00:34:48 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011-06-02 00:34:48 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2011-06-02 00:34:48 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011-06-02 00:34:47 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011-06-02 00:34:47 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdcpl.dll
[2011-06-02 00:34:47 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bthprops.cpl
[2011-06-02 00:34:47 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsuiext.dll
[2011-06-02 00:34:47 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011-06-02 00:34:47 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MediaMetadataHandler.dll
[2011-06-02 00:34:47 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011-06-02 00:34:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011-06-02 00:34:47 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\efscore.dll
[2011-06-02 00:34:47 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syncui.dll
[2011-06-02 00:34:47 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VBICodec.ax
[2011-06-02 00:34:47 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cca.dll
[2011-06-02 00:34:47 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\isoburn.exe
[2011-06-02 00:34:47 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011-06-02 00:34:47 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tzutil.exe
[2011-06-02 00:34:47 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sisbkup.dll
[2011-06-02 00:34:46 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011-06-02 00:34:46 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011-06-02 00:34:46 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011-06-02 00:34:46 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2011-06-02 00:34:46 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shwebsvc.dll
[2011-06-02 00:34:46 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\systemcpl.dll
[2011-06-02 00:34:46 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2011-06-02 00:34:46 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recdisc.exe
[2011-06-02 00:34:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011-06-02 00:34:46 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysclass.dll
[2011-06-02 00:34:46 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netplwiz.dll
[2011-06-02 00:34:46 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011-06-02 00:34:46 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011-06-02 00:34:46 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoplay.dll
[2011-06-02 00:34:46 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptui.dll
[2011-06-02 00:34:46 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpapi.dll
[2011-06-02 00:34:46 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2011-06-02 00:34:45 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011-06-02 00:34:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011-06-02 00:34:45 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenterCPL.dll
[2011-06-02 00:34:45 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizeng.dll
[2011-06-02 00:34:45 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011-06-02 00:34:45 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011-06-02 00:34:45 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011-06-02 00:34:45 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011-06-02 00:34:45 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFPlay.dll
[2011-06-02 00:34:45 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011-06-02 00:34:45 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011-06-02 00:34:45 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksxbar.ax
[2011-06-02 00:34:44 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysmon.ocx
[2011-06-02 00:34:44 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\termmgr.dll
[2011-06-02 00:34:44 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011-06-02 00:34:44 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011-06-02 00:34:44 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011-06-02 00:34:44 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsutil.dll
[2011-06-02 00:34:44 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011-06-02 00:34:43 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011-06-02 00:34:43 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2011-06-02 00:34:43 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011-06-02 00:34:43 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll
[2011-06-02 00:34:43 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2011-06-02 00:34:43 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sethc.exe
[2011-06-02 00:34:43 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011-06-02 00:34:43 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011-06-02 00:34:43 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011-06-02 00:34:43 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011-06-02 00:34:43 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011-06-02 00:34:43 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntlanman.dll
[2011-06-02 00:34:43 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011-06-02 00:34:43 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2011-06-02 00:34:43 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011-06-02 00:34:42 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011-06-02 00:34:42 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlcese30.dll
[2011-06-02 00:34:42 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011-06-02 00:34:42 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011-06-02 00:34:42 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ssText3d.scr
[2011-06-02 00:34:42 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdm.tsp
[2011-06-02 00:34:42 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011-06-02 00:34:42 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iTVData.dll
[2011-06-02 00:34:42 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iprtrmgr.dll
[2011-06-02 00:34:42 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011-06-02 00:34:42 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011-06-02 00:34:42 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011-06-02 00:34:42 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011-06-02 00:34:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011-06-02 00:34:42 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011-06-02 00:34:42 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UserAccountControlSettings.dll
[2011-06-02 00:34:42 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpd3d.dll
[2011-06-02 00:34:42 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2011-06-02 00:34:42 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2011-06-02 00:34:42 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011-06-02 00:34:41 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011-06-02 00:34:41 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2011-06-02 00:34:41 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011-06-02 00:34:41 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2011-06-02 00:34:41 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011-06-02 00:34:41 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wavemsp.dll
[2011-06-02 00:34:41 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011-06-02 00:34:41 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srvcli.dll
[2011-06-02 00:34:41 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nslookup.exe
[2011-06-02 00:34:41 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011-06-02 00:34:41 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011-06-02 00:34:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011-06-02 00:34:41 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011-06-02 00:34:40 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011-06-02 00:34:40 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011-06-02 00:34:40 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011-06-02 00:34:40 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011-06-02 00:34:40 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2011-06-02 00:34:40 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011-06-02 00:34:40 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srrstr.dll
[2011-06-02 00:34:40 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011-06-02 00:34:40 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DevicePairingFolder.dll
[2011-06-02 00:34:40 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011-06-02 00:34:40 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdboot.exe
[2011-06-02 00:34:40 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2011-06-02 00:34:40 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011-06-02 00:34:40 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011-06-02 00:34:40 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppnp.dll
[2011-06-02 00:34:40 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acppage.dll
[2011-06-02 00:34:39 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkexplorer.dll
[2011-06-02 00:34:39 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011-06-02 00:34:39 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsquirt.exe
[2011-06-02 00:34:39 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011-06-02 00:34:39 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011-06-02 00:34:39 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011-06-02 00:34:39 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\remotepg.dll
[2011-06-02 00:34:39 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011-06-02 00:34:39 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabinet.dll
[2011-06-02 00:34:39 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011-06-02 00:34:39 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wkscli.dll
[2011-06-02 00:34:39 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011-06-02 00:34:38 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2011-06-02 00:34:38 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfrgui.exe
[2011-06-02 00:34:38 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011-06-02 00:34:38 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011-06-02 00:34:38 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011-06-02 00:34:38 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011-06-02 00:34:38 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011-06-02 00:34:38 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSCard.dll
[2011-06-02 00:34:38 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kstvtune.ax
[2011-06-02 00:34:38 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011-06-02 00:34:38 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe
[2011-06-02 00:34:37 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2011-06-02 00:34:37 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011-06-02 00:34:37 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmdev.dll
[2011-06-02 00:34:37 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wvc.dll
[2011-06-02 00:34:37 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011-06-02 00:34:37 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpdxm.dll
[2011-06-02 00:34:37 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011-06-02 00:34:37 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsqmcons.exe
[2011-06-02 00:34:37 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011-06-02 00:34:37 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2011-06-02 00:34:37 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011-06-02 00:34:37 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\net1.exe
[2011-06-02 00:34:37 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsnmp32.dll
[2011-06-02 00:34:37 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011-06-02 00:34:37 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFaultSecure.exe
[2011-06-02 00:34:36 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OpcServices.dll
[2011-06-02 00:34:36 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Bubbles.scr
[2011-06-02 00:34:36 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011-06-02 00:34:36 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011-06-02 00:34:36 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011-06-02 00:34:36 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011-06-02 00:34:36 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011-06-02 00:34:36 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2011-06-02 00:34:36 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapistub.dll
[2011-06-02 00:34:36 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapi32.dll
[2011-06-02 00:34:36 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\Windows\twain_32.dll
[2011-06-02 00:34:36 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011-06-02 00:34:36 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011-06-02 00:34:35 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\main.cpl
[2011-06-02 00:34:35 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskraid.exe
[2011-06-02 00:34:35 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011-06-02 00:34:35 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mystify.scr
[2011-06-02 00:34:35 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Ribbons.scr
[2011-06-02 00:34:35 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011-06-02 00:34:35 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011-06-02 00:34:35 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011-06-02 00:34:35 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2011-06-02 00:34:35 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ifsutil.dll
[2011-06-02 00:34:35 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011-06-02 00:34:35 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011-06-02 00:34:35 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011-06-02 00:34:35 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdmat.dll
[2011-06-02 00:34:35 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsium.dll
[2011-06-02 00:34:35 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011-06-02 00:34:34 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011-06-02 00:34:34 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2011-06-02 00:34:34 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011-06-02 00:34:34 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011-06-02 00:34:34 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011-06-02 00:34:34 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll
[2011-06-02 00:34:34 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011-06-02 00:34:34 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perfmon.exe
[2011-06-02 00:34:34 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpshell.dll
[2011-06-02 00:34:34 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011-06-02 00:34:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011-06-02 00:34:34 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011-06-02 00:34:34 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011-06-02 00:34:34 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\muifontsetup.dll
[2011-06-02 00:34:33 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll
[2011-06-02 00:34:33 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSAPI.dll
[2011-06-02 00:34:33 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011-06-02 00:34:33 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011-06-02 00:34:33 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011-06-02 00:34:33 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qasf.dll
[2011-06-02 00:34:33 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionQueue.dll
[2011-06-02 00:34:33 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011-06-02 00:34:33 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011-06-02 00:34:33 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011-06-02 00:34:33 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2011-06-02 00:34:33 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tlscsp.dll
[2011-06-02 00:34:33 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\umb.dll
[2011-06-02 00:34:33 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\runonce.exe
[2011-06-02 00:34:33 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPCRYPT.DLL
[2011-06-02 00:34:33 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011-06-02 00:34:33 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AzSqlExt.dll
[2011-06-02 00:34:33 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netutils.dll
[2011-06-02 00:34:32 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMADMOD.DLL
[2011-06-02 00:34:32 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011-06-02 00:34:32 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\raschap.dll
[2011-06-02 00:34:32 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011-06-02 00:34:32 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011-06-02 00:34:32 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdwcn.dll
[2011-06-02 00:34:32 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011-06-02 00:34:32 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsbas.dll
[2011-06-02 00:34:32 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011-06-02 00:34:32 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MdSched.exe
[2011-06-02 00:34:32 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiavideo.dll
[2011-06-02 00:34:32 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011-06-02 00:34:32 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011-06-02 00:34:32 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011-06-02 00:34:32 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011-06-02 00:34:32 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintIsolationProxy.dll
[2011-06-02 00:34:32 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011-06-02 00:34:32 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011-06-02 00:34:32 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syssetup.dll
[2011-06-02 00:34:31 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011-06-02 00:34:31 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVSDECD.DLL
[2011-06-02 00:34:31 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nltest.exe
[2011-06-02 00:34:31 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstask.dll
[2011-06-02 00:34:31 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsadmin.exe
[2011-06-02 00:34:31 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011-06-02 00:34:31 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011-06-02 00:34:31 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011-06-02 00:34:31 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011-06-02 00:34:31 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
[2011-06-02 00:34:31 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Kswdmcap.ax
[2011-06-02 00:34:31 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011-06-02 00:34:31 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011-06-02 00:34:31 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-06-02 00:34:31 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011-06-02 00:34:30 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011-06-02 00:34:30 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmnet.dll
[2011-06-02 00:34:30 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011-06-02 00:34:30 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011-06-02 00:34:30 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDSp.dll
[2011-06-02 00:34:30 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2011-06-02 00:34:30 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011-06-02 00:34:30 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011-06-02 00:34:30 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011-06-02 00:34:30 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qcap.dll
[2011-06-02 00:34:30 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011-06-02 00:34:30 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shacct.dll
[2011-06-02 00:34:30 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSVRMGMT.DLL
[2011-06-02 00:34:30 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011-06-02 00:34:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011-06-02 00:34:30 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011-06-02 00:34:30 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
[2011-06-02 00:34:30 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2011-06-02 00:34:30 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011-06-02 00:34:30 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tabcal.exe
[2011-06-02 00:34:30 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vss_ps.dll
[2011-06-02 00:34:30 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011-06-02 00:34:30 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscapi.dll
[2011-06-02 00:34:30 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011-06-02 00:34:30 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011-06-02 00:34:29 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011-06-02 00:34:29 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011-06-02 00:34:29 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011-06-02 00:34:29 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011-06-02 00:34:29 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3ui.dll
[2011-06-02 00:34:29 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011-06-02 00:34:29 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdv.dll
[2011-06-02 00:34:29 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011-06-02 00:34:29 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011-06-02 00:34:29 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011-06-02 00:34:29 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2011-06-02 00:34:29 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fphc.dll
[2011-06-02 00:34:29 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011-06-02 00:34:29 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011-06-02 00:34:29 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011-06-02 00:34:29 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spbcd.dll
[2011-06-02 00:34:29 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011-06-02 00:34:29 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011-06-02 00:34:29 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011-06-02 00:34:28 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10.IME
[2011-06-02 00:34:28 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011-06-02 00:34:28 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2011-06-02 00:34:28 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011-06-02 00:34:28 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011-06-02 00:34:28 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011-06-02 00:34:28 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011-06-02 00:34:28 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011-06-02 00:34:28 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EhStorAPI.dll
[2011-06-02 00:34:28 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011-06-02 00:34:28 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\desk.cpl
[2011-06-02 00:34:28 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011-06-02 00:34:28 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011-06-02 00:34:28 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011-06-02 00:34:28 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011-06-02 00:34:28 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011-06-02 00:34:28 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011-06-02 00:34:28 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\amstream.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011-06-02 00:34:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011-06-02 00:34:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011-06-02 00:34:28 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011-06-02 00:34:28 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\takeown.exe
[2011-06-02 00:34:28 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PnPUnattend.exe
[2011-06-02 00:34:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011-06-02 00:34:28 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011-06-02 00:34:28 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011-06-02 00:34:27 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2011-06-02 00:34:27 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011-06-02 00:34:27 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011-06-02 00:34:27 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011-06-02 00:34:27 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011-06-02 00:34:27 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2011-06-02 00:34:27 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011-06-02 00:34:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011-06-02 00:34:27 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011-06-02 00:34:27 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011-06-02 00:34:27 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmstp.exe
[2011-06-02 00:34:27 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QCLIPROV.DLL
[2011-06-02 00:34:27 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011-06-02 00:34:27 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2011-06-02 00:34:27 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertPolEng.dll
[2011-06-02 00:34:27 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WavDest.dll
[2011-06-02 00:34:27 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\djoin.exe
[2011-06-02 00:34:27 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimgvw.dll
[2011-06-02 00:34:27 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\HotStartUserAgent.dll
[2011-06-02 00:34:27 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nrpsrv.dll
[2011-06-02 00:34:26 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011-06-02 00:34:26 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSDvbNP.ax
[2011-06-02 00:34:26 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdProxy.dll
[2011-06-02 00:34:26 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011-06-02 00:34:26 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011-06-02 00:34:26 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011-06-02 00:34:25 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011-06-02 00:34:25 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011-06-02 00:34:25 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011-06-02 00:34:25 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MultiDigiMon.exe
[2011-06-02 00:34:25 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011-06-02 00:34:24 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mydocs.dll
[2011-06-02 00:34:24 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\g711codc.ax
[2011-06-02 00:34:23 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011-06-02 00:34:23 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\itircl.dll
[2011-06-02 00:34:23 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011-06-02 00:34:23 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskpart.exe
[2011-06-02 00:34:23 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsicli.exe
[2011-06-02 00:34:23 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011-06-02 00:34:23 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011-06-02 00:34:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011-06-02 00:34:23 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3msm.dll
[2011-06-02 00:34:23 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mobsync.exe
[2011-06-02 00:34:23 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011-06-02 00:34:23 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011-06-02 00:34:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2011-06-02 00:34:23 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2011-06-02 00:34:23 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011-06-02 00:34:23 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbisurf.ax
[2011-06-02 00:34:23 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
[2011-06-02 00:34:23 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011-06-02 00:34:23 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdmo.dll
[2011-06-02 00:34:23 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011-06-02 00:34:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011-06-02 00:34:23 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BWUnpairElevated.dll
[2011-06-02 00:34:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sscore.dll
[2011-06-02 00:34:22 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011-06-02 00:34:22 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSTIFF.dll
[2011-06-02 00:34:22 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011-06-02 00:34:22 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011-06-02 00:34:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011-06-02 00:34:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011-06-02 00:34:22 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011-06-02 00:34:22 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011-06-02 00:34:22 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011-06-02 00:34:22 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\findstr.exe
[2011-06-02 00:34:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011-06-02 00:34:22 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011-06-02 00:34:22 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011-06-02 00:34:22 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciqtz32.dll
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2011-06-02 00:34:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\choice.exe
[2011-06-02 00:34:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011-06-02 00:34:22 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2011-06-02 00:34:22 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011-06-02 00:34:22 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011-06-02 00:34:22 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011-06-02 00:34:21 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onexui.dll
[2011-06-02 00:34:21 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011-06-02 00:34:21 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011-06-02 00:34:21 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppc.dll
[2011-06-02 00:34:21 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011-06-02 00:34:21 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011-06-02 00:34:21 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\manage-bde.exe
[2011-06-02 00:34:21 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011-06-02 00:34:21 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011-06-02 00:34:21 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetmib1.dll
[2011-06-02 00:34:21 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011-06-02 00:34:21 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011-06-02 00:34:21 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\luainstall.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdiasqmmodule.dll
[2011-06-02 00:34:21 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011-06-02 00:34:21 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schedcli.dll
[2011-06-02 00:34:21 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011-06-02 00:34:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011-06-02 00:34:20 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RDPENCDD.dll
[2011-06-02 00:34:20 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011-06-02 00:34:20 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2011-06-02 00:34:20 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbcconf.dll
[2011-06-02 00:34:20 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011-06-02 00:34:20 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\repair-bde.exe
[2011-06-02 00:34:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011-06-02 00:34:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2011-06-02 00:34:20 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011-06-02 00:34:20 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011-06-02 00:34:20 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011-06-02 00:34:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\profprov.dll
[2011-06-02 00:34:20 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2011-06-02 00:34:20 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011-06-02 00:34:20 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011-06-02 00:34:20 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011-06-02 00:34:20 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spopk.dll
[2011-06-02 00:34:20 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fixmapi.exe
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011-06-02 00:34:19 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSMON.dll
[2011-06-02 00:34:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011-06-02 00:34:19 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011-06-02 00:34:19 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011-06-02 00:34:19 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys
[2011-06-02 00:34:19 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elsTrans.dll
[2011-06-02 00:34:19 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TRAPI.dll
[2011-06-02 00:34:19 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011-06-02 00:34:19 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011-06-02 00:34:18 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\napdsnap.dll
[2011-06-02 00:34:18 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011-06-02 00:34:18 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsauth.dll
[2011-06-02 00:34:18 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011-06-02 00:34:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscdll.dll
[2011-06-02 00:34:18 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LogonUI.exe
[2011-06-02 00:34:18 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsperf.dll
[2011-06-02 00:34:18 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdprefdrvapi.dll
[2011-06-02 00:34:18 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011-06-02 00:34:18 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011-06-02 00:34:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011-06-02 00:34:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSUNATD.exe
[2011-06-02 00:34:18 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011-06-02 00:34:18 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011-06-02 00:34:17 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011-06-02 00:34:17 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imkr80.ime
[2011-06-02 00:34:17 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011-06-02 00:34:17 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2011-06-02 00:34:17 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2011-06-02 00:34:17 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shgina.dll
[2011-06-02 00:34:17 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsdchngr.dll
[2011-06-02 00:34:17 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011-06-02 00:34:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011-06-02 00:34:16 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011-06-02 00:34:16 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011-06-02 00:34:16 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011-06-02 00:34:16 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshirda.dll
[2011-06-02 00:34:16 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011-06-02 00:34:15 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011-06-02 00:34:15 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched32.dll
[2011-06-02 00:34:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcfgex.dll
[2011-06-02 00:34:15 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2011-06-02 00:34:14 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011-06-02 00:34:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2011-06-02 00:34:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2011-06-02 00:34:13 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shunimpl.dll
[2011-06-02 00:34:13 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011-06-02 00:34:12 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011-06-02 00:34:11 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSG.DLL
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGKL.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSF.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDPO.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDNEPR.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTAM.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINBEN.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGR1.DLL
[2011-06-02 00:34:11 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011-06-02 00:34:10 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011-06-02 00:34:09 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011-06-02 00:34:09 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
[2011-06-02 00:34:09 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BlbEvents.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011-06-02 00:34:09 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pifmgr.dll
[2011-06-02 00:34:09 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizres.dll
[2011-06-02 00:34:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUS.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMON.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINORI.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINMAR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINKAN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINHIN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGEO.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011-06-02 00:34:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011-06-02 00:34:09 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnaddr.dll
[2011-06-02 00:34:09 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011-06-02 00:33:54 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011-06-02 00:33:54 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011-06-02 00:33:51 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011-06-02 00:33:51 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011-06-02 00:32:23 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wbemcomn.dll
[2011-06-02 00:32:23 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmicmiplugin.dll
[2011-06-02 00:32:15 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmiEngine.dll
[2011-06-02 00:32:13 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PkgMgr.exe
[2011-06-02 00:32:04 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drvstore.dll
[2011-06-02 00:32:04 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpx.dll
[2011-06-01 20:58:17 | 000,000,000 | R--D | C] -- C:\Users\MAX-BUD\Desktop\Marcin
[2011-05-31 17:59:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Last.fm
[2011-05-31 17:58:32 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Local\Last.fm
[2011-05-31 17:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Last.fm
[2011-05-31 17:03:29 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2011-05-31 17:03:28 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2011-05-31 17:02:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2011-05-31 17:02:54 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\Winamp
[2011-05-31 14:18:06 | 000,000,000 | ---D | C] -- C:\Max -bud i inne
[2011-05-22 08:31:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady
[2011-05-22 08:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\RDRM
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-05-22 08:04:12 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla
[2011-05-22 08:04:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011-05-22 08:04:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
[2011-05-22 08:03:31 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-07-14 13:23:11 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-07-14 13:23:11 | 000,016,304 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-07-14 13:15:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-07-14 13:15:31 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-14 11:11:03 | 000,467,528 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011-07-13 23:33:12 | 000,000,972 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-07-13 20:25:12 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011-07-13 20:25:10 | 000,024,416 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\drivers\regguard.sys
[2011-07-13 20:21:41 | 000,031,232 | RHS- | M] () -- C:\Users\MAX-BUD\AppData\Roaming\624370674573.exe
[2011-07-13 20:10:48 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011-07-13 20:10:48 | 000,687,828 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2011-07-13 20:10:48 | 000,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011-07-13 20:10:48 | 000,131,382 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2011-07-13 20:10:48 | 000,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011-07-13 18:37:40 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\Partizan.exe
[2011-07-13 18:37:40 | 000,035,816 | ---- | M] (Greatis Software) -- C:\Windows\SysWow64\drivers\Partizan.sys
[2011-07-13 18:31:34 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2011-07-12 22:07:10 | 000,000,002 | RHS- | M] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:12:03 | 000,007,625 | ---- | M] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 09:00:13 | 000,070,104 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 14:18:16 | 000,002,959 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:22 | 000,073,551 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2011-07-04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2011-07-04 13:43:42 | 000,253,888 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2011-07-04 13:36:56 | 000,600,920 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2011-07-04 13:36:54 | 000,288,088 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2011-07-04 13:35:28 | 000,045,400 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2011-07-04 13:32:35 | 000,031,064 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys
[2011-07-04 13:32:24 | 000,064,856 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2011-07-04 13:32:14 | 000,022,360 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2011-07-03 01:33:08 | 005,794,489 | ---- | M] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:38 | 001,590,098 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-07-01 14:28:20 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011-07-01 14:28:19 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011-06-28 15:35:23 | 000,001,848 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-26 08:45:56 | 000,256,000 | ---- | M] () -- C:\Windows\PEV.exe
[2011-06-03 08:56:38 | 000,421,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011-06-03 08:44:54 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2011-06-03 08:44:54 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2011-06-03 08:44:54 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2011-06-03 08:44:54 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2011-06-03 08:44:54 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2011-06-03 08:44:54 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011-06-03 08:44:54 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2011-06-03 08:44:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2011-06-03 08:44:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2011-06-03 08:44:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2011-06-03 08:44:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2011-06-03 08:44:53 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2011-06-03 08:44:53 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2011-06-03 08:44:53 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2011-06-03 08:44:53 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2011-06-03 08:44:52 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2011-06-03 08:44:52 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2011-06-03 08:44:52 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2011-06-03 08:44:52 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2011-06-03 08:44:52 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2011-06-03 08:44:52 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2011-06-03 07:47:29 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2011-06-03 07:47:29 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2011-06-03 07:47:29 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2011-06-03 07:47:29 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2011-06-03 07:47:29 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011-06-03 07:47:29 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2011-06-03 07:47:28 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2011-06-03 07:47:28 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2011-06-03 07:47:28 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2011-06-03 07:47:28 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2011-06-03 07:47:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2011-06-03 05:48:32 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2011-06-03 05:48:31 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2011-06-03 05:48:31 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2011-06-03 05:48:31 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2011-05-26 20:56:21 | 000,000,000 | ---- | M] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-26 16:38:12 | 000,000,698 | ---- | M] () -- C:\Windows\Thps3.INI
[2011-05-24 12:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011-05-24 12:37:54 | 000,252,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011-05-22 08:03:31 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011-05-22 08:03:31 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2011-05-18 10:53:18 | 000,012,808 | ---- | M] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[1 C:\Users\MAX-BUD\Documents\*.tmp files -> C:\Users\MAX-BUD\Documents\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-07-13 23:33:12 | 000,000,972 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Kadu.lnk
[2011-07-13 20:21:41 | 000,031,232 | RHS- | C] () -- C:\Users\MAX-BUD\AppData\Roaming\624370674573.exe
[2011-07-13 12:13:52 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011-07-13 12:13:52 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011-07-13 12:13:52 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011-07-13 12:13:52 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011-07-13 12:13:52 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011-07-12 22:07:10 | 000,000,002 | RHS- | C] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011-07-12 21:12:03 | 000,007,625 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\Resmon.ResmonCfg
[2011-07-12 09:00:13 | 000,070,104 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\procek.png
[2011-07-11 14:18:16 | 000,002,959 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\HiJackThis.lnk
[2011-07-09 12:38:21 | 000,073,551 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\lol.jpg
[2011-07-03 01:33:36 | 005,794,489 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\ATB - Could You Believe.mp3
[2011-07-01 20:16:29 | 001,590,098 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011-06-28 15:35:23 | 000,001,848 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2011-06-02 00:35:59 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2011-06-02 00:34:21 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011-06-02 00:34:07 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2011-06-02 00:33:54 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011-05-31 15:57:34 | 000,002,691 | ---- | C] () -- C:\Users\MAX-BUD\Desktop\Microsoft Office Word 2007.lnk
[2011-05-26 20:56:21 | 000,000,000 | ---- | C] () -- C:\Users\MAX-BUD\Documents\DSC06290.JPG
[2011-05-22 08:04:08 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011-04-08 23:29:17 | 000,000,698 | ---- | C] () -- C:\Windows\Thps3.INI
[2011-02-18 16:28:45 | 000,000,617 | ---- | C] () -- C:\Windows\eReg.dat
[2010-06-15 09:58:05 | 000,002,181 | ---- | C] () -- C:\Windows\Helicon Debug Window.ini
[2010-05-05 11:56:58 | 000,021,504 | ---- | C] () -- C:\Users\MAX-BUD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-26 10:23:36 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009-10-04 23:59:37 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2009-08-27 08:05:12 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009-08-27 08:05:12 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009-08-27 08:05:12 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009-08-27 08:05:12 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2009-07-14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009-07-14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009-07-14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009-07-14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009-04-28 04:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll
[2002-10-03 14:42:27 | 000,000,034 | ---- | C] () -- C:\Windows\Q3version.ini

[color=#E56717]========== LOP Check ==========[/color]

[2011-07-12 22:12:44 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Addobe
[2010-03-18 09:49:42 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Ashampoo
[2011-06-30 13:20:38 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\CrazyKeys
[2011-06-30 14:13:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Error Fix
[2010-11-15 01:53:49 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Gadu-Gadu 10
[2011-06-09 16:23:10 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GetRightToGo
[2010-06-12 12:09:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\GHISLER
[2011-05-31 15:53:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\ipla
[2011-07-14 13:14:38 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Kadu
[2011-04-29 14:31:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Lexis Rex
[2010-06-08 00:29:14 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia
[2010-05-05 12:11:53 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Nokia Ovi Suite
[2010-10-16 12:23:47 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PC Suite
[2011-05-01 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\PITy2010
[2010-04-25 12:56:07 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Toshiba
[2010-10-23 08:26:28 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\uTorrent
[2011-06-30 15:09:57 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Vyafka
[2010-03-21 21:57:09 | 000,000,000 | ---D | M] -- C:\Users\MAX-BUD\AppData\Roaming\Windows Live Writer
[2011-07-11 14:39:41 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2011-02-02 01:51:14 | 000,018,366 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2011-07-13 12:39:57 | 000,024,757 | ---- | M] () -- C:\ComboFix.txt
[2011-07-14 13:15:31 | 2309,652,480 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-14 13:15:31 | 3079,536,640 | -HS- | M] () -- C:\pagefile.sys
[2009-10-04 23:48:13 | 000,002,942 | ---- | M] () -- C:\RHDSetup.log
[2009-09-09 09:26:52 | 000,000,070 | -H-- | M] () -- C:\SWSTAMP.TXT


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\ERDNT\cache64\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\SysNative\drivers\beep.sys
[2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\ERDNT\cache64\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\SysNative\drivers\ndis.sys
[2010-11-20 15:33:45 | 000,951,680 | ---- | M] (Microsoft Corporation) MD5=79B47FD40D9A817E932F9D26FAC0A81C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7601.17514_none_05ed313632ae9759\ndis.sys
[2009-07-14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\ERDNT\cache64\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010-11-20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009-07-14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009-10-28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009-10-28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2010-07-04 00:10:59 | 000,230,725 | ---- | M] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:06:24 | 000,230,725 | ---- | C] ()(C:\Users\MAX-BUD\Documents\??????_.docx) -- C:\Users\MAX-BUD\Documents\счемат_.docx
[2010-07-02 15:05:48 | 000,012,796 | ---- | M] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx
[2010-07-02 14:53:54 | 000,012,796 | ---- | C] ()(C:\Users\MAX-BUD\Documents\????? ???????????? ?? ??????? ???????.docx) -- C:\Users\MAX-BUD\Documents\Схемы предстаблены от внешней стороны.docx

< End of report >
[/log]

A raportu z usuwanie to nie mam, gdzie go mam miec? :>

wirusolog
komentarz
komentarz

Do zniszczenia idzie jeszcze jeden plik.

[b]1.[/b] Uruchom OTL i w oknie [b]Własne opcje skanowania/Skrypt[/b] wklej następujący tekst:

[code]
:Files
C:\Users\MAX-BUD\AppData\Roaming\624370674573.exe
[/code]
Klik w [b]Wykonaj Skrypt[/b]. Pokaż raport z usuwania, który odrazu się wyświetli.

elsaper
komentarz
komentarz

========== FILES ==========
C:\Users\MAX-BUD\AppData\Roaming\624370674573.exe moved successfully.

OTL by OldTimer - Version 3.2.26.1 log created on 07142011_190928

Wklejać log ogólny?

wirusolog
komentarz
komentarz

Nie, już nie wklejaj, plik został wyelminowany pomyślnie.
Teraz można już przejść do kroków końcowych.

[hr]

[b]1.[/b] Odinstaluj prawidłowo ComboFix'a:
Start>>>Uruchom>>>wklep tam to:
[b]"c:\users\MAX-BUD\Downloads\ComboFix.exe" /uninstall[/b]
wciśnij ENTER. ComboFix zostanie odinstalowany.

[b]2.[/b] Uruchom OTL i wciśnij przycisk [b]Sprzątanie[/b].

[b]3.[/b] Aktualizacja softu:
[quote]
Internet Explorer [b](Version = 8.0.7601.17514)[/b]
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = [b]Java™ 6 Update 5[/b]
"{AC76BA86-7AD7-1045-7B44-A91000000001}" = [b]Adobe Reader 9.1 - Polish[/b]
"Adobe Flash Player Plugin" = [b]Adobe Flash Player 10 Plugin[/b]
"Adobe Shockwave Player" = [b]Adobe Shockwave Player 11.5[/b]
"KLiteCodecPack_is1" = [b]K-Lite Codec Pack 6.2.0 (Basic)[/b]
[/quote]
[list]
[*]Aktulizacja IE do wersji [url=http://windows.microsoft.com/pl-PL/internet-explorer/products/ie/home][b][color=blue][u]IE 9[/url][/b][/color][/u]
[*]Java 5 do deinstalacji, dlatego, że w systemie jest aktualna wersja 26.
[*]Starszy Adobe Reader odinstaluj i wstaw najnowszy [url="http://get.adobe.com/reader/"][color="#0000FF"][b]Adobe Reader X (10.1)[/b][/color][/url] (nie zaznaczaj montażu sponsoringu McAfee).
[*]Do aktualizacji wtyczki Adobe: [url="http://get.adobe.com/flashplayer/"][color="#0000FF"][b]Adobe Flash Player 10.3.181.34[/b][/color][/url] + [url="http://get.adobe.com/shockwave/"][color="#0000FF"][b]Adobe Shockwave Player 11.6.0.626[/b][/color][/url].
[*]Kodeki też możesz zaaktualizować.[/list]

[b]4.[/b] Do wyczyszczenia punkty przywracania systemu: [url=http://www.searchengines.pl/Czyszczenie-punktow-przywracania-systemu-t141981.html][b][color="#0000FF"][u]LINK[/url][/b][/color][/u]

[b]5.[/b] Zalecam [b]pełne skanowanie[/b] [url=http://download.cnet.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html?part=dl-10804572&subj=dl&tag=button][b][color="#0000FF"][u]MBAM[/url][/b][/color][/u] (po instalacji zaaktualizuj ręczne baze wirusów, usuń to co znajdzie i wklej raport końcowy).

[b]6.[/b] Przeskanuj też cały system za pomocą [url=http://www.hotfix.pl/instrukcja-uzytkowania-dr-web-cureit--a193.htm][b][color=blue][u]Dr.Web CureIt![/url][/b][/color][/u]

  • Dobra wypowiedź 1
elsaper
komentarz
komentarz

Problem już przy pierwszym punkcie. Odinstalowuje ComboFixa tak jak mówisz a on nadal jest.

wirusolog
komentarz
komentarz

No i dobrze, dalej punkty wykonuj.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.