Scissorhands utworzono 7 grudnia 2015 utworzono 7 grudnia 2015 Dobry wieczór, 5 grudnia wykazałam się chwilowym zaćmieniem umysłowym i ściągnęłam sobie krocie wirusów. Po ściągnięciu plików komputer zwiarował, walczyłam z przeglądarką by pobrać skanery, karty włączały się i wyłączały, tak samo z różnymi programami. Mnóstwo rzeczy się ściągało. Udało sie to jakoś opanować - z OTLem i innymy skanerami większość bajzlu posprzątałam. Teraz jedyne widoczne objawy infekcji to reklamy w przeglądarce i wskakujące nieproszone nowe karty z ofertami wygrania iPhona etc. Również Hitman wykrywa mi jeszcze jakieś Malwary i Trojana, jednak pełnej wersji nie mam i mnie tego nie usunie. Malwarebytes już tego syfu nie znajduje. Dlatego zwracam się z prośbą o kontrolę logów i intrukcje, jak się pozbyć reszty paskudztwa. Dziękuję. Zaraz wrzucę skan z FRST'a. FRST : [log]Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:05-12-2015 Uruchomiony przez Karolina (administrator) KAROPC (07-12-2015 22:32:57) Uruchomiony z C:\Users\Karolina\Downloads Załadowane profile: Karolina (Dostępne profile: Karolina) Platform: Windows 8 Pro (X64) Język: Polski (Polska) Internet Explorer Wersja 10 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Windows\slsvc.exe () C:\Windows\PersonalizeEnabler.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\InstallServices.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-17] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD) HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\MountPoints2: {1f89e378-6144-11e5-be66-806e6f6e6963} - "F:\Autorun.exe" Startup: C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [2015-12-06] ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) AutoConfigURL: [S-1-5-21-1178724899-610248882-1494297913-1001] => hxxp://unstopp.me/wpad.dat?2a0ecaa1c86e0b1054c2d8d0b0db70132268388 Tcpip\Parameters: [DhcpNameServer] 62.179.1.60 62.179.1.61 Tcpip\..\Interfaces\{DA4A796B-E567-49A4-AEFB-A51878073EAA}: [DhcpNameServer] 62.179.1.60 62.179.1.61 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-1178724899-610248882-1494297913-1001 -> {cf34d395-9ff1-49a0-98a5-8db1636431b1} URL = hxxp://houmpage.com/search/?src=ds&q={searchTerms}&ssid=1449335988&a=1024132&uuid=4378d0e5-d307-4c5f-8329-0b8dfa8b4bc1 BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> D:\Arc\Plugins\ArcPluginIE.dll [2015-09-15] (Perfect World Entertainment Inc) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-10-10] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default FF DefaultSearchEngine: FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-11] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-10-10] (Microsoft Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> D:\Arc\Plugins\npArcPluginFF.dll [2015-09-15] (Perfect World Entertainment Inc) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1178724899-610248882-1494297913-1001: @my.com/Games -> C:\Users\Karolina\AppData\Local\MyComGames\NPMyComDetector.dll [2015-09-30] (My.com, Inc) FF Extension: Lightbeam - C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default\Extensions\[email protected]<script data-cfhash='f9e31' type="text/javascript"> /* */</script> [2015-12-04] FF Extension: Adblock Plus - C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-25] StartMenuInternet: FIREFOX.EXE - firefox.exe FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!B2D8848D1D10351E8E31E38D48DB08BFB2D8.js [2015-12-05] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-17] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] S3 ArcService; D:\Arc\ArcService.exe [88400 2015-09-15] (Perfect World Entertainment Inc) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2797752 2015-10-13] (Microsoft Corporation) R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2505472 2015-10-09] (ESET) R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [127752 2015-11-03] (SurfRight B.V.) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-09-22] (IObit) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2099720 2015-11-13] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2015-10-27] () R2 slsvc; C:\Windows\slsvc.exe [10240 2012-09-25] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [1055008 2015-08-26] (IObit) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Corporation) S2 Keugd; "C:\Users\Karolina\AppData\Roaming\RandaVap\Inaxo.exe" -cms [X] ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [215040 2013-12-19] (Advanced Micro Devices) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264040 2015-09-23] (ESET) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3265256 2012-09-20] (Broadcom Corporation) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [186784 2015-09-23] (ESET) R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [170792 2015-09-23] (ESET) R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-06] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [281944 2015-07-06] (Microsoft Corporation) U3 DfSdkS; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-07 22:32 - 2015-12-07 22:33 - 00009433 _____ C:\Users\Karolina\Downloads\FRST.txt 2015-12-07 22:29 - 2015-12-07 22:32 - 00000000 ____D C:\FRST 2015-12-07 22:28 - 2015-12-07 22:28 - 02369024 _____ (Farbar) C:\Users\Karolina\Downloads\FRST64.exe 2015-12-07 22:27 - 2015-12-07 22:27 - 00311094 _____ C:\Users\Karolina\Desktop\OTL.Txt 2015-12-07 22:27 - 2015-12-07 22:27 - 00095544 _____ C:\Users\Karolina\Desktop\Extras.Txt 2015-12-07 22:26 - 2015-12-07 22:26 - 00095544 _____ C:\Users\Karolina\Downloads\Extras.Txt 2015-12-07 22:25 - 2015-12-07 22:25 - 00311094 _____ C:\Users\Karolina\Downloads\OTL.Txt 2015-12-07 22:18 - 2015-12-07 22:18 - 00602112 _____ (OldTimer Tools) C:\Users\Karolina\Downloads\OTL.exe 2015-12-07 18:59 - 2015-12-07 18:59 - 00036752 _____ C:\Users\Karolina\AppData\Local\recently-used.xbel 2015-12-07 17:16 - 2015-12-07 17:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2015-12-07 17:16 - 2015-12-07 17:16 - 00000000 ____D C:\ProgramData\ESET 2015-12-07 17:15 - 2015-12-07 17:15 - 00000000 ____D C:\Program Files\ESET 2015-12-07 17:14 - 2015-12-07 17:14 - 02837704 _____ (ESET) C:\Users\Karolina\Downloads\eset_nod32_antivirus_live_installer_.exe 2015-12-06 22:21 - 2015-12-06 22:42 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-12-05 20:49 - 2015-12-06 22:43 - 00000000 ____D C:\AdwCleaner 2015-12-05 19:29 - 2015-12-05 19:29 - 00000000 ____D C:\Windows\system32\tuph 2015-12-05 19:26 - 2015-12-05 19:26 - 00000000 ____D C:\Windows\system32\vikw 2015-12-05 19:04 - 2015-12-05 19:04 - 19387592 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2015-12-05 19:00 - 2015-12-05 19:00 - 00000017 _____ C:\Windows\SysWOW64\history.dat 2015-12-05 18:59 - 2015-12-05 19:45 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\ZepuLidcamr 2015-12-05 18:59 - 2015-12-05 19:40 - 00000000 ____D C:\KVRT_Data 2015-12-05 18:59 - 2015-12-05 18:59 - 00004656 _____ C:\Windows\SysWOW64\Zefdovc.ini 2015-12-05 18:59 - 2015-12-05 18:59 - 00002376 _____ C:\Windows\SysWOW64\ZefdovcOff.ini 2015-12-05 18:59 - 2015-12-05 18:59 - 00002376 _____ C:\Windows\system32\ZefdovcOff.ini 2015-12-05 18:57 - 2015-12-05 18:57 - 00003342 _____ C:\Windows\System32\Tasks\Lybxoq 2015-12-05 18:56 - 2015-12-05 18:56 - 00000000 _____ C:\Windows\SysWOW64\Number of results 2015-12-05 18:55 - 2015-12-05 19:45 - 00000000 ____D C:\ProgramData\Airtop 2015-12-05 18:54 - 2015-12-06 22:21 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-12-05 18:54 - 2015-12-06 22:20 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-12-05 18:54 - 2015-12-05 18:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-12-05 18:54 - 2015-12-05 18:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-12-05 18:54 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-12-05 18:54 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2015-12-05 18:50 - 2015-12-05 19:26 - 00000000 ____D C:\ProgramData\Tmp0x0x 2015-12-05 18:47 - 2015-12-05 18:47 - 00000000 ____D C:\Windows\system32\oki 2015-12-05 18:32 - 2015-12-06 22:50 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Opera Software 2015-12-05 18:32 - 2015-12-06 22:50 - 00000000 ____D C:\Users\Karolina\AppData\Local\Opera Software 2015-12-05 18:32 - 2015-12-06 22:50 - 00000000 ____D C:\Program Files (x86)\Opera 2015-12-05 18:31 - 2015-12-05 19:21 - 00000000 ____D C:\Users\Karolina\AppData\LocalLow\Company 2015-12-05 18:31 - 2015-12-05 18:59 - 00000000 ____D C:\Users\Karolina\AppData\Local\Tempfolder 2015-12-05 18:31 - 2015-12-05 18:49 - 00004656 _____ C:\Windows\SysWOW64\Biwvitsoou.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00002376 _____ C:\Windows\SysWOW64\BiwvitsoouOff.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00002376 _____ C:\Windows\system32\BiwvitsoouOff.ini 2015-12-05 18:31 - 2015-12-05 18:31 - 00003344 _____ C:\Windows\System32\Tasks\Fitcuek 2015-12-05 18:23 - 2015-12-05 18:23 - 00000000 ____D C:\ProgramData\boost_interprocess 2015-12-05 18:21 - 2015-09-22 20:28 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak 2015-12-05 18:20 - 2015-12-05 18:20 - 00003146 _____ C:\Windows\System32\Tasks\Rest Builder2 2015-12-03 14:30 - 2015-12-03 14:29 - 00043008 _____ C:\Users\Karolina\AppData\Roaming\Moses.dat 2015-12-01 18:05 - 2015-12-01 18:05 - 00000000 ____D C:\ProgramData\GG 2015-11-26 18:40 - 2015-11-19 14:27 - 00000428 _____ C:\Users\Karolina\AppData\Roaming\ham.txt 2015-11-26 18:39 - 2015-12-03 14:29 - 00005568 _____ C:\Users\Karolina\AppData\Roaming\md.xml 2015-11-26 10:34 - 2015-12-05 17:40 - 09545216 _____ C:\Users\Karolina\AppData\Roaming\agent.dat 2015-11-26 10:34 - 2015-12-05 17:40 - 00058272 _____ C:\Users\Karolina\AppData\Roaming\Config.xml 2015-11-26 10:34 - 2015-12-05 17:40 - 00017920 _____ C:\Users\Karolina\AppData\Roaming\Main.dat 2015-11-21 23:38 - 2015-12-06 22:50 - 00000000 ____D C:\Users\Karolina\AppData\Local\GG 2015-11-21 23:38 - 2015-12-06 22:45 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\GG 2015-11-15 22:12 - 2015-11-15 22:12 - 00073680 _____ C:\Users\Karolina\AppData\Local\GDIPFONTCACHEV1.DAT 2015-11-15 18:51 - 2015-11-15 18:51 - 00000000 ____D C:\Users\Karolina\Documents\Amnesia 2015-11-13 21:07 - 2015-11-13 21:07 - 00000000 ____D C:\Users\Karolina\Documents\EA Games 2015-11-13 21:06 - 2015-11-13 21:06 - 00000000 ____D C:\Users\Karolina\AppData\Local\EA Games 2015-11-12 14:02 - 2015-11-03 01:20 - 00809944 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-11-12 14:02 - 2015-11-03 01:20 - 00176088 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-11-11 19:04 - 2015-10-01 14:10 - 00869568 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-11-11 19:04 - 2015-10-01 14:09 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-11-11 11:04 - 2015-10-27 15:46 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-11-11 11:04 - 2015-10-27 15:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-11-11 11:04 - 2015-10-27 15:46 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-11-11 11:04 - 2015-10-27 14:55 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-11-11 11:04 - 2015-10-27 14:54 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-11-11 11:04 - 2015-10-27 14:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-11-11 11:04 - 2015-10-17 14:28 - 04063744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-11-11 11:04 - 2015-10-13 14:16 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-11-11 11:04 - 2015-10-13 14:16 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-11-11 11:04 - 2015-10-11 07:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-11-11 11:04 - 2015-10-11 07:45 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-11-11 11:04 - 2015-09-23 14:10 - 00377552 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-11-11 11:04 - 2015-09-23 14:10 - 00332576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-11-11 11:04 - 2015-09-12 14:09 - 00414559 _____ C:\Windows\system32\ApnDatabase.xml 2015-11-11 11:03 - 2015-10-28 17:46 - 06970704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-11-11 11:03 - 2015-10-28 15:59 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-11-11 11:03 - 2015-10-28 15:59 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-11-11 11:03 - 2015-10-28 15:37 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-11-11 11:03 - 2015-10-20 16:00 - 14292992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-11-11 11:03 - 2015-10-20 14:53 - 19283456 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-11-11 11:03 - 2015-09-23 14:10 - 00570256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-11-11 11:02 - 2015-10-20 16:01 - 01763328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-11-11 11:02 - 2015-10-20 16:01 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 13775360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 02866176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 02056704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00737280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00715776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-11-11 11:02 - 2015-10-20 14:54 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-11-11 11:02 - 2015-10-20 14:54 - 01409024 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-11-11 11:02 - 2015-10-20 14:54 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 15416320 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 03960832 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 02657280 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 00949760 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-11-10 22:41 - 2015-11-10 22:41 - 00000000 ____D C:\Users\Karolina\Documents\Electronic Arts 2015-11-10 22:41 - 2015-11-10 22:41 - 00000000 ____D C:\ProgramData\EA Core 2015-11-10 22:40 - 2015-11-13 20:44 - 00000000 ____D C:\Program Files (x86)\Origin Games 2015-11-10 22:38 - 2015-11-13 21:06 - 00000000 ____D C:\Users\Karolina\AppData\Local\Origin 2015-11-10 22:38 - 2015-11-13 20:30 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Origin 2015-11-10 22:37 - 2015-11-21 23:50 - 00000000 ____D C:\ProgramData\Origin 2015-11-10 22:37 - 2015-11-13 20:30 - 00000000 ____D C:\Program Files (x86)\Origin 2015-11-10 22:37 - 2015-11-10 22:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-11-10 22:37 - 2015-11-10 22:37 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-11-10 18:52 - 2015-11-10 18:52 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE 2015-11-10 18:52 - 2008-09-04 19:17 - 00447752 ____R (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2015-11-09 16:47 - 2015-11-09 16:47 - 00000000 ____D C:\Users\Karolina\Documents\Notesy programu OneNote 2015-11-09 16:19 - 2015-11-13 16:06 - 00000000 ____D C:\Users\Karolina\Desktop\album 2015-11-08 10:54 - 2015-11-22 12:13 - 00000000 ____D C:\Users\Karolina\Desktop\Nowy folder 2015-11-07 20:27 - 2015-11-07 20:32 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\.minecraft 2015-11-07 20:27 - 2015-11-07 20:27 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\java 2015-11-07 16:51 - 2015-12-05 18:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-11-01 16:48 - 2015-11-01 16:48 - 00000000 ____D C:\Users\Karolina\AppData\Local\webkit 2015-10-27 17:55 - 2015-10-27 17:55 - 00189248 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2015-10-27 17:55 - 2015-10-27 17:55 - 00075136 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2015-10-27 17:54 - 2015-10-27 17:55 - 00000000 ____D C:\Users\Karolina\Documents\Assassin's Creed III 2015-10-27 17:32 - 2015-10-27 17:32 - 00000000 ____D C:\Users\Karolina\Documents\Assassin's Creed IV Black Flag 2015-10-27 17:31 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2015-10-27 17:31 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-10-27 17:31 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-10-27 17:31 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-10-27 17:31 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-10-27 17:31 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-10-27 17:31 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-10-27 17:31 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-10-27 17:31 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-10-27 17:31 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-10-27 17:31 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-10-27 17:31 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-10-27 17:31 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-10-27 17:31 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-10-27 17:31 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-10-27 17:31 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-10-27 17:31 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-10-27 17:31 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-10-27 17:31 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-10-27 17:31 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-10-27 17:31 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-10-27 17:31 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-10-27 17:31 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-10-27 17:31 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-10-27 17:31 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2015-10-27 17:31 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-10-27 17:31 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-10-27 17:31 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-10-27 17:31 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-10-27 17:31 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-10-27 17:31 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-10-27 17:31 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-10-27 17:31 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-10-27 17:31 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-10-27 17:31 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-10-27 17:31 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-10-27 17:31 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-10-27 17:31 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-10-27 17:31 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-10-27 17:31 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-10-27 17:31 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-10-27 17:31 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-10-27 17:31 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-10-27 17:31 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-10-27 17:31 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-10-27 17:31 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-10-27 17:31 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-10-27 17:31 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-10-27 17:31 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-10-27 17:31 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-10-27 17:31 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-10-27 17:31 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-10-27 17:31 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-10-27 17:31 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-10-27 17:31 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-10-27 17:31 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-10-27 17:31 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-10-27 17:31 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-10-27 17:31 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-10-27 17:31 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-10-27 17:31 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-10-27 17:31 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-10-27 17:31 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-10-27 17:31 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-10-27 17:31 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-10-27 17:31 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-10-27 17:31 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-10-27 17:31 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-10-27 17:31 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-10-27 17:31 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-10-27 17:31 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-10-27 17:31 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-10-27 17:31 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-10-27 17:31 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-10-27 17:31 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-10-27 17:31 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-10-27 17:31 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-10-27 17:31 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-10-27 17:31 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-10-27 17:31 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-10-27 17:31 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-10-27 17:31 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-10-27 17:31 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-10-27 17:31 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-10-27 17:31 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-10-27 17:31 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-10-27 17:31 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-10-27 17:31 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-10-27 17:31 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-10-27 17:31 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-10-27 17:31 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-10-27 17:31 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-10-27 17:31 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-10-27 17:31 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-10-27 17:31 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-10-27 17:31 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-10-27 17:31 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-10-27 17:31 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-10-27 17:31 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-10-27 17:31 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-10-27 17:31 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-10-27 17:31 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-10-27 17:31 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-10-27 17:31 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-10-27 17:31 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-10-27 17:31 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-10-27 17:31 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-10-27 17:31 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-10-27 17:31 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-10-27 17:31 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-10-27 17:31 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-10-27 17:31 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-10-27 17:31 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-10-27 17:31 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-10-27 17:30 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-10-27 17:30 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-10-27 17:30 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-10-27 17:30 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-10-27 17:30 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-10-27 17:30 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-10-27 17:30 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-10-27 17:30 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-10-27 17:30 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-10-27 17:30 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-10-27 17:30 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-10-27 17:30 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-10-27 17:30 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-10-27 17:30 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-10-27 17:30 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-10-27 17:30 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-10-27 17:30 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-10-27 17:30 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-10-27 17:30 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-10-27 17:30 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-10-27 17:30 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-10-27 17:30 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-10-27 17:30 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-10-27 17:30 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-10-27 17:30 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-10-27 17:30 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-10-27 17:30 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-10-27 17:30 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-10-27 17:30 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-10-27 17:30 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-10-27 17:30 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-10-27 17:30 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-10-27 17:30 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-10-27 17:30 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-10-27 17:30 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-10-27 17:30 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-10-20 17:18 - 2015-10-20 17:18 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-10-20 17:18 - 2015-10-20 17:18 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-10-19 17:58 - 2015-10-20 17:18 - 00000000 ____D C:\Program Files (x86)\Microsoft Works 2015-10-19 17:58 - 2015-10-19 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-10-19 17:57 - 2015-10-19 17:57 - 00000000 ____D C:\Windows\PCHEALTH 2015-10-19 17:55 - 2015-10-19 17:55 - 00000000 __RHD C:\MSOCache 2015-10-19 17:55 - 2015-10-19 17:55 - 00000000 ____D C:\Users\Karolina\AppData\Local\Microsoft Help 2015-10-19 17:55 - 2015-10-19 17:55 - 00000000 ____D C:\Program Files\Microsoft Office 2015-10-15 15:39 - 2015-09-18 16:09 - 00032432 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-10-15 15:39 - 2015-09-18 14:30 - 01290752 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-10-15 15:39 - 2015-09-18 14:30 - 00766464 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-10-15 15:39 - 2015-09-18 14:30 - 00699904 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-10-15 15:39 - 2015-09-18 14:30 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-10-15 15:39 - 2015-09-18 14:30 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-10-15 15:39 - 2015-09-18 14:10 - 01163776 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-10-13 19:55 - 2015-10-02 00:55 - 01043968 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2015-10-13 19:55 - 2015-10-02 00:55 - 00588800 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-10-13 19:55 - 2015-09-29 03:02 - 00961536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2015-10-13 19:55 - 2015-09-29 03:02 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-10-13 19:55 - 2015-09-22 18:53 - 01405408 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-10-13 19:55 - 2015-09-22 18:53 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-10-13 19:55 - 2015-09-18 14:30 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-10-13 19:52 - 2015-08-01 15:50 - 17562112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-10-13 19:52 - 2015-08-01 14:56 - 19778048 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00984448 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00901264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-13 19:52 - 2015-07-22 23:09 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-10-10 19:16 - 2015-10-10 19:16 - 00000468 _____ C:\Windows\system32\.crusader 2015-10-09 19:51 - 2015-10-09 19:51 - 00000000 ____D C:\Users\Karolina\Documents\My Games 2015-10-09 19:09 - 2015-10-09 20:02 - 00000000 ____D C:\Users\Karolina\AppData\Local\Ubisoft Game Launcher 2015-10-09 19:09 - 2015-10-09 19:09 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-09 17:54 - 2015-10-09 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro 2015-10-09 17:54 - 2015-10-09 17:54 - 00000000 ____D C:\Program Files\HitmanPro 2015-10-09 17:53 - 2015-10-10 19:16 - 00000000 ____D C:\ProgramData\HitmanPro 2015-10-08 18:25 - 2015-10-19 17:58 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2015-10-08 18:25 - 2015-10-08 18:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-10-08 18:24 - 2015-11-24 19:26 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-10-07 18:57 - 2015-10-07 18:58 - 00000000 ____D C:\Users\Karolina\AppData\Local\PAYDAY 2 2015-10-07 18:57 - 2015-10-07 18:57 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-10-07 18:57 - 2015-10-07 18:57 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2015-10-07 15:16 - 2015-10-07 15:16 - 00000000 ____D C:\Users\Karolina\AppData\Local\Steam 2015-10-07 14:17 - 2015-10-07 14:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-06 22:34 - 2015-12-05 18:24 - 00000000 ____D C:\Users\Karolina\AppData\Local\Chromium 2015-10-01 15:58 - 2015-11-18 21:35 - 00000000 ____D C:\Users\Karolina\Desktop\whatt3v3r 2015-09-30 18:56 - 2015-09-30 18:56 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allods (EN) 2015-09-30 18:38 - 2015-10-12 20:41 - 00000000 ____D C:\Users\Karolina\AppData\Local\MyComGames 2015-09-30 18:38 - 2015-09-30 18:38 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games 2015-09-29 15:13 - 2015-09-29 15:13 - 00000000 ____D C:\Users\Karolina\.thumbnails 2015-09-29 15:02 - 2015-12-07 18:53 - 00000000 ____D C:\Users\Karolina\AppData\Local\gtk-2.0 2015-09-29 13:39 - 2015-12-07 19:00 - 00000000 ____D C:\Users\Karolina\.gimp-2.8 2015-09-29 13:39 - 2015-09-29 13:39 - 00000000 ____D C:\Users\Karolina\AppData\Local\gegl-0.2 2015-09-29 13:39 - 2015-09-29 13:39 - 00000000 ____D C:\Users\Karolina\AppData\Local\fontconfig 2015-09-29 13:38 - 2015-12-06 22:18 - 00000926 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2015-09-29 13:37 - 2015-09-29 13:38 - 00000000 ____D C:\Program Files\GIMP 2 2015-09-28 19:52 - 2015-09-28 20:00 - 00000000 ____D C:\Users\Karolina\Desktop\Mr.Robot season 1 2015-09-27 14:45 - 2015-09-27 14:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-09-27 09:13 - 2015-09-28 17:21 - 00000000 ____D C:\Windows\system32\AutoUpdateLicense 2015-09-26 20:31 - 2015-11-12 14:01 - 00321984 _____ C:\Windows\system32\FNTCACHE.DAT 2015-09-26 20:29 - 2012-07-26 04:07 - 00415232 _____ (Microsoft Corporation) C:\Windows\system32\GenuineCenter.dll 2015-09-26 20:29 - 2012-07-26 04:05 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll 2015-09-25 23:19 - 2015-10-15 23:02 - 00000000 ____D C:\Windows\system32\appraiser 2015-09-25 23:19 - 2015-09-25 23:19 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-09-25 21:40 - 2015-03-04 08:26 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\AutoUpdate.exe 2015-09-25 21:40 - 2015-03-04 08:26 - 00467952 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe 2015-09-25 21:40 - 2015-03-04 08:26 - 00011105 _____ C:\Windows\system32\AutoconfigV2.cab 2015-09-25 21:40 - 2015-03-04 07:41 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-09-25 21:40 - 2015-03-04 07:41 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-25 21:40 - 2015-03-04 05:53 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-09-25 21:40 - 2015-03-04 05:53 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-25 21:40 - 2014-10-22 02:01 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-09-25 21:40 - 2014-10-22 02:00 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-09-25 17:50 - 2014-10-09 05:00 - 01519104 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2015-09-25 17:50 - 2014-10-09 05:00 - 01484288 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-09-25 17:50 - 2014-10-09 05:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll 2015-09-25 17:50 - 2014-10-09 04:59 - 01195520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll 2015-09-25 17:50 - 2014-10-09 04:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll 2015-09-25 17:50 - 2012-09-20 07:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll 2015-09-25 17:50 - 2012-09-20 06:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll 2015-09-25 17:30 - 2015-01-09 07:43 - 00951808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-09-25 17:30 - 2015-01-09 06:03 - 00601088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-09-25 17:28 - 2014-07-15 23:51 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-09-25 17:08 - 2013-06-16 23:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-09-25 17:08 - 2013-06-01 12:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-09-25 17:08 - 2013-06-01 11:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-09-25 17:08 - 2013-06-01 10:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2015-09-25 17:08 - 2013-06-01 10:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-09-25 17:08 - 2013-06-01 10:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2015-09-25 17:08 - 2013-06-01 10:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2015-09-25 17:08 - 2013-06-01 10:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-09-25 17:08 - 2013-06-01 10:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2015-09-25 17:08 - 2013-06-01 10:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2015-09-25 17:08 - 2013-06-01 10:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2015-09-25 17:08 - 2013-06-01 10:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2015-09-25 17:08 - 2013-06-01 10:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2015-09-25 17:08 - 2013-06-01 10:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-09-25 17:08 - 2013-06-01 10:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-09-25 17:08 - 2013-06-01 10:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2015-09-25 17:08 - 2013-06-01 10:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2015-09-25 17:08 - 2013-06-01 10:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2015-09-25 17:08 - 2013-06-01 04:08 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2015-09-25 17:07 - 2015-07-01 14:00 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-09-25 17:07 - 2015-07-01 13:58 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-09-25 17:07 - 2015-07-01 12:42 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-09-25 17:07 - 2015-07-01 12:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-09-25 17:07 - 2014-02-04 00:56 - 00332632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-09-25 17:07 - 2014-02-04 00:56 - 00278872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-09-25 17:07 - 2014-02-01 07:55 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll 2015-09-25 17:07 - 2014-01-31 01:48 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll 2015-09-25 17:07 - 2014-01-31 01:06 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll 2015-09-25 17:07 - 2014-01-27 04:39 - 01939288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-09-25 17:07 - 2014-01-16 00:42 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-09-25 17:07 - 2014-01-03 00:35 - 00365568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-09-25 17:07 - 2014-01-03 00:32 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-09-25 17:06 - 2015-03-12 06:31 - 01688576 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2015-09-25 17:06 - 2012-10-10 08:04 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2015-09-25 17:06 - 2012-10-10 07:31 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2015-09-25 17:05 - 2015-07-03 14:33 - 01303040 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-09-25 17:05 - 2015-07-03 14:23 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-09-25 17:05 - 2015-06-27 14:46 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-09-25 17:05 - 2015-06-27 14:23 - 00694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-09-25 17:05 - 2013-01-10 00:26 - 01752064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll 2015-09-25 17:05 - 2013-01-10 00:26 - 01611776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe 2015-09-25 17:05 - 2013-01-10 00:26 - 00436736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL 2015-09-25 17:05 - 2013-01-10 00:26 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-09-25 17:05 - 2013-01-10 00:26 - 00083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaacmgr.exe 2015-09-25 17:04 - 2015-04-30 14:44 - 00478296 _____ C:\Windows\SysWOW64\locale.nls 2015-09-25 17:04 - 2015-04-30 14:44 - 00478296 _____ C:\Windows\system32\locale.nls 2015-09-25 17:04 - 2014-09-03 03:48 - 00510464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-09-25 17:04 - 2014-09-03 03:21 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-09-25 17:04 - 2014-06-13 02:57 - 01453400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-09-25 17:04 - 2014-06-13 02:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-09-25 17:04 - 2013-01-10 02:53 - 00028904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys 2015-09-25 17:04 - 2013-01-10 02:29 - 00091880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2015-09-25 17:04 - 2013-01-10 00:23 - 02094592 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe 2015-09-25 17:04 - 2013-01-10 00:23 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll 2015-09-25 17:04 - 2013-01-10 00:23 - 01886208 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2015-09-25 17:04 - 2013-01-10 00:23 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-09-25 17:04 - 2013-01-10 00:23 - 00256000 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-09-25 17:04 - 2013-01-10 00:23 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe 2015-09-25 17:04 - 2013-01-10 00:22 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-09-25 17:04 - 2013-01-10 00:22 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL 2015-09-25 17:04 - 2013-01-10 00:22 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2015-09-25 17:04 - 2012-11-02 06:19 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll 2015-09-25 17:04 - 2012-11-02 06:18 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-09-25 17:04 - 2012-11-02 06:18 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-09-25 17:04 - 2012-11-02 06:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll 2015-09-25 17:04 - 2012-11-02 06:18 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll 2015-09-25 17:04 - 2012-11-02 06:18 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll 2015-09-25 17:03 - 2015-07-06 17:16 - 00044560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-09-25 17:03 - 2015-07-06 15:32 - 00281944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-09-25 17:03 - 2015-01-24 07:42 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-09-25 17:03 - 2015-01-24 06:00 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll 2015-09-25 17:03 - 2014-03-25 00:42 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-09-25 17:03 - 2014-03-24 23:56 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-09-25 17:02 - 2013-08-16 06:41 - 00058200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2015-09-25 17:02 - 2013-08-16 06:39 - 02371728 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2015-09-25 17:02 - 2013-08-16 06:22 - 04917760 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2015-09-25 17:02 - 2013-08-16 06:21 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2015-09-25 17:02 - 2013-08-16 06:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2015-09-25 17:02 - 2013-08-16 06:21 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll 2015-09-25 17:02 - 2013-08-16 06:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2015-09-25 17:02 - 2013-08-16 06:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2015-09-25 17:02 - 2013-08-15 23:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2015-09-25 17:02 - 2013-08-15 23:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll 2015-09-25 17:02 - 2013-08-15 23:43 - 00083968 _____ C:\Windows\SysWOW64\OEMLicense.dll 2015-09-25 17:02 - 2013-08-15 23:42 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2015-09-25 17:02 - 2013-08-15 23:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2015-09-25 17:01 - 2015-07-13 22:05 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-09-25 17:01 - 2015-07-13 22:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-09-25 17:01 - 2012-09-27 08:17 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\newdev.exe 2015-09-25 17:01 - 2012-09-27 08:17 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\ndadmin.exe 2015-09-25 17:01 - 2012-09-27 08:15 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll 2015-09-25 17:01 - 2012-09-27 07:35 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.exe 2015-09-25 17:01 - 2012-09-27 07:35 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndadmin.exe 2015-09-25 17:01 - 2012-09-27 07:34 - 00275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll 2015-09-25 17:00 - 2012-09-20 10:08 - 00027280 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll 2015-09-25 17:00 - 2012-09-20 09:40 - 00389360 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll 2015-09-25 17:00 - 2012-09-20 09:31 - 00425192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2015-09-25 17:00 - 2012-09-20 08:55 - 03265256 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys 2015-09-25 17:00 - 2012-09-20 08:55 - 00533224 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys 2015-09-25 17:00 - 2012-09-20 07:47 - 00307192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 03964416 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 01304064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00866304 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00699392 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00588800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00545280 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00420352 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00110592 _____ C:\Windows\system32\OEMLicense.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe 2015-09-25 17:00 - 2012-09-20 07:33 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll 2015-09-25 17:00 - 2012-09-20 07:33 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe 2015-09-25 17:00 - 2012-09-20 07:32 - 01739264 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 01019392 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\provcore.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00256512 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\perfos.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\RpcEpMap.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\perfctrs.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll 2015-09-25 17:00 - 2012-09-20 07:32 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00755200 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\mfh264enc.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL 2015-09-25 17:00 - 2012-09-20 07:31 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll 2015-09-25 17:00 - 2012-09-20 07:31 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll 2015-09-25 17:00 - 2012-09-20 07:30 - 02016256 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll 2015-09-25 17:00 - 2012-09-20 07:30 - 01743872 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll 2015-09-25 17:00 - 2012-09-20 07:30 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2015-09-25 17:00 - 2012-09-20 07:30 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2015-09-25 17:00 - 2012-09-20 07:30 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll 2015-09-25 17:00 - 2012-09-20 07:30 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll 2015-09-25 17:00 - 2012-09-20 07:13 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-power-events.dll 2015-09-25 17:00 - 2012-09-20 07:13 - 00023656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avrt.dll 2015-09-25 17:00 - 2012-09-20 07:09 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys 2015-09-25 17:00 - 2012-09-20 07:08 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys 2015-09-25 17:00 - 2012-09-20 06:55 - 00995328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-09-25 17:00 - 2012-09-20 06:55 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll 2015-09-25 17:00 - 2012-09-20 06:55 - 00417280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2015-09-25 17:00 - 2012-09-20 06:55 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe 2015-09-25 17:00 - 2012-09-20 06:55 - 00303616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll 2015-09-25 17:00 - 2012-09-20 06:55 - 00263168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll 2015-09-25 17:00 - 2012-09-20 06:55 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe 2015-09-25 17:00 - 2012-09-20 06:55 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe 2015-09-25 17:00 - 2012-09-20 06:55 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-09-25 17:00 - 2012-09-20 06:55 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe 2015-09-25 17:00 - 2012-09-20 06:54 - 01369600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 01137152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00533504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00480768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00449024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00413184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfctrs.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfos.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfdisk.dll 2015-09-25 17:00 - 2012-09-20 06:54 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfnet.dll 2015-09-25 17:00 - 2012-09-20 06:53 - 02007040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll 2015-09-25 17:00 - 2012-09-20 06:53 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll 2015-09-25 17:00 - 2012-09-20 06:53 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2015-09-25 17:00 - 2012-09-20 06:53 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-09-25 17:00 - 2012-09-20 06:53 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL 2015-09-25 16:57 - 2013-10-19 06:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2015-09-25 16:57 - 2013-10-19 05:04 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2015-09-25 16:56 - 2014-11-15 04:54 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-09-25 16:56 - 2014-11-15 04:53 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-09-25 16:56 - 2014-11-15 04:53 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-09-25 16:56 - 2014-11-15 04:53 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-09-25 16:56 - 2014-11-05 07:40 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-09-25 16:56 - 2014-11-05 07:39 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-09-25 16:56 - 2014-10-29 15:21 - 00499008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2015-09-25 16:56 - 2014-08-28 07:01 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll 2015-09-25 16:55 - 2015-08-01 17:21 - 00073352 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2015-09-25 16:55 - 2015-08-01 16:22 - 00063992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2015-09-25 16:55 - 2015-08-01 14:56 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2015-09-25 16:55 - 2015-08-01 14:56 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2015-09-25 16:55 - 2015-08-01 14:56 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2015-09-25 16:55 - 2015-07-30 14:11 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-09-25 16:55 - 2015-07-30 14:10 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-09-25 16:55 - 2014-11-15 07:06 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-09-25 16:55 - 2014-11-15 06:13 - 03286016 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-09-25 16:55 - 2014-11-15 06:13 - 01623552 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-09-25 16:55 - 2014-11-15 06:13 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-09-25 16:55 - 2014-11-15 06:13 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-09-25 16:55 - 2014-11-15 06:13 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-09-25 16:55 - 2014-11-15 06:13 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-09-25 16:55 - 2014-11-15 06:13 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-09-25 16:55 - 2014-11-15 06:12 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-09-25 16:55 - 2014-06-18 00:27 - 01440256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-09-25 16:55 - 2014-06-18 00:24 - 01557504 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-09-25 16:55 - 2014-06-04 00:12 - 00536776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll 2015-09-25 16:54 - 2014-12-11 07:51 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-09-25 16:54 - 2014-06-05 02:12 - 00678600 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll 2015-09-25 16:53 - 2015-07-09 22:46 - 05982208 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-09-25 16:53 - 2015-07-09 22:44 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2015-09-25 16:53 - 2015-07-09 21:17 - 05095424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-09-25 16:53 - 2015-07-09 21:16 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2015-09-25 16:53 - 2015-06-17 15:13 - 01150264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-09-25 16:53 - 2015-06-17 14:44 - 01567560 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-09-25 16:53 - 2015-04-13 06:32 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-09-25 16:53 - 2013-10-05 07:10 - 00285016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-09-25 16:53 - 2013-08-30 06:19 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-09-25 16:53 - 2013-08-30 06:18 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-09-25 16:53 - 2013-08-30 00:48 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-09-25 16:53 - 2013-08-30 00:47 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-09-25 16:52 - 2015-09-02 14:49 - 02341376 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-09-25 16:52 - 2015-09-02 14:49 - 01850880 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-09-25 16:52 - 2015-09-02 14:38 - 01744384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-09-25 16:52 - 2015-09-02 14:38 - 01422336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-09-25 16:51 - 2015-08-05 14:52 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-09-25 16:51 - 2014-09-13 07:24 - 02233152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-09-25 16:51 - 2014-09-03 03:48 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-09-25 16:51 - 2014-09-03 03:22 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-09-25 16:51 - 2014-08-29 05:17 - 02043392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-09-25 16:51 - 2014-08-29 05:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll 2015-09-25 16:51 - 2014-08-29 05:04 - 02837504 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-09-25 16:51 - 2014-08-29 05:04 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-09-25 16:51 - 2014-08-28 07:04 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOMEX.dll 2015-09-25 16:51 - 2014-08-28 07:04 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-09-25 16:51 - 2014-08-28 06:59 - 00616448 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-09-25 16:51 - 2014-08-28 06:59 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-09-25 16:51 - 2014-08-28 06:59 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll 2015-09-25 16:51 - 2014-08-28 06:59 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll 2015-09-25 16:51 - 2014-07-24 14:12 - 00328512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-09-25 16:50 - 2015-03-27 09:07 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\cryptcatsvc.dll 2015-09-25 16:50 - 2013-08-30 06:43 - 00061784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys 2015-09-25 16:50 - 2013-08-30 06:20 - 01173504 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2015-09-25 16:50 - 2013-08-30 00:48 - 00914432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll 2015-09-25 16:50 - 2013-08-21 07:39 - 00465240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-09-25 16:50 - 2013-08-10 07:30 - 00151896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys 2015-09-25 16:50 - 2013-07-25 00:10 - 10799104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-09-25 16:50 - 2013-07-25 00:07 - 13661696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-09-25 16:50 - 2012-09-20 07:48 - 00062488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys 2015-09-25 16:49 - 2015-04-21 14:53 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-09-25 16:48 - 2015-08-04 15:42 - 08858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-09-25 16:48 - 2015-08-04 15:42 - 02038784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-09-25 16:48 - 2015-08-04 15:42 - 01229824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2015-09-25 16:48 - 2015-08-04 15:42 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-09-25 16:48 - 2015-08-04 15:42 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncInfo.dll 2015-09-25 16:48 - 2015-08-04 14:53 - 02307584 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-09-25 16:48 - 2015-08-04 14:53 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-09-25 16:48 - 2015-08-04 14:53 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncInfo.dll 2015-09-25 16:48 - 2015-01-29 09:05 - 01627648 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-09-25 16:48 - 2015-01-29 07:19 - 01339392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-09-25 16:48 - 2013-07-01 23:14 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys 2015-09-25 16:48 - 2013-06-22 06:45 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2015-09-25 16:48 - 2013-06-22 06:45 - 00054488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2015-09-25 16:48 - 2012-10-07 01:32 - 10094592 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-09-25 16:48 - 2012-09-26 13:39 - 01357312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2015-09-25 16:47 - 2013-07-05 23:02 - 00121984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys 2015-09-25 16:47 - 2013-07-05 23:02 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2015-09-25 16:47 - 2013-07-05 23:01 - 00210560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2015-09-25 16:45 - 2012-08-31 01:53 - 00017888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll 2015-09-25 16:43 - 2012-08-31 01:52 - 00017888 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100_clr0400.dll 2015-09-25 16:42 - 2014-10-09 04:58 - 00458240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-09-25 16:42 - 2014-09-22 04:56 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-09-25 16:42 - 2014-09-18 00:24 - 00987136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmclient.dll 2015-09-25 16:42 - 2014-09-18 00:24 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmscan.dll 2015-09-25 16:42 - 2014-09-18 00:24 - 00278528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srm.dll 2015-09-25 16:42 - 2014-09-18 00:24 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adrclient.dll 2015-09-25 16:42 - 2013-01-10 00:26 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmstormod.dll 2015-09-25 16:41 - 2014-10-09 04:59 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-09-25 16:41 - 2014-10-09 04:59 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-09-25 16:41 - 2014-09-22 06:38 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-09-25 16:41 - 2014-09-17 23:57 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\srmclient.dll 2015-09-25 16:41 - 2014-09-17 23:57 - 00652800 _____ (Microsoft Corporation) C:\Windows\system32\srmscan.dll 2015-09-25 16:41 - 2014-09-17 23:57 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\srm.dll 2015-09-25 16:41 - 2014-09-17 23:57 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\adrclient.dll 2015-09-25 16:41 - 2013-07-09 09:04 - 00120144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-09-25 16:41 - 2013-07-09 04:57 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-09-25 16:41 - 2013-07-08 23:46 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-09-25 16:41 - 2013-07-08 23:46 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-09-25 16:41 - 2013-07-08 23:46 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanadvui.dll 2015-09-25 16:41 - 2013-07-08 23:45 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-09-25 16:41 - 2013-07-03 01:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2015-09-25 16:41 - 2013-07-03 01:22 - 02839552 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-09-25 16:41 - 2013-07-03 01:11 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2015-09-25 16:41 - 2013-07-03 01:10 - 02273792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-09-25 16:41 - 2013-06-30 23:30 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe 2015-09-25 16:41 - 2013-06-30 23:29 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe 2015-09-25 16:41 - 2013-06-29 07:15 - 00195416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-09-25 16:41 - 2013-06-29 07:15 - 00125784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-09-25 16:41 - 2013-06-26 04:01 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2015-09-25 16:41 - 2013-06-26 03:59 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys 2015-09-25 16:41 - 2013-06-24 23:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2015-09-25 16:41 - 2013-06-19 06:36 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-09-25 16:41 - 2013-06-19 06:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-09-25 16:41 - 2013-06-18 23:38 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-09-25 16:41 - 2013-06-18 23:38 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-09-25 16:41 - 2013-06-12 00:43 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2015-09-25 16:41 - 2013-06-12 00:26 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2015-09-25 16:41 - 2013-06-06 09:03 - 00119040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-09-25 16:41 - 2013-01-10 00:23 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\srmstormod.dll 2015-09-25 16:41 - 2012-10-02 08:34 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2015-09-25 16:40 - 2013-03-02 11:57 - 00077544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys 2015-09-25 16:40 - 2013-03-02 09:23 - 00893952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-09-25 16:40 - 2013-03-02 09:23 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2015-09-25 16:40 - 2013-03-02 09:22 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-09-25 16:40 - 2013-03-02 09:21 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll 2015-09-25 16:40 - 2013-03-02 09:21 - 00145408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-09-25 16:40 - 2013-03-02 09:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll 2015-09-25 16:40 - 2013-03-02 03:45 - 01149952 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-09-25 16:40 - 2013-03-02 03:45 - 01101824 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-09-25 16:40 - 2013-03-02 03:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-09-25 16:40 - 2013-03-02 03:15 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2015-09-25 16:40 - 2013-03-01 05:56 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys 2015-09-25 16:39 - 2015-05-22 21:44 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-09-25 16:39 - 2015-02-24 08:58 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2015-09-25 16:39 - 2013-03-02 03:45 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll 2015-09-25 16:39 - 2013-03-02 03:45 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-09-25 16:39 - 2013-03-02 03:45 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-09-25 16:39 - 2013-03-02 03:45 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerServer.dll 2015-09-25 16:39 - 2013-03-02 03:45 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\WSDPrintProxy.DLL 2015-09-25 16:39 - 2013-03-02 03:44 - 00703488 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2015-09-25 16:39 - 2013-03-02 03:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-09-25 16:39 - 2013-03-02 03:44 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll 2015-09-25 16:39 - 2013-03-02 03:44 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\NdisImPlatform.dll 2015-09-25 16:39 - 2013-03-02 03:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\DevDispItemProvider.dll 2015-09-25 16:39 - 2013-03-02 03:43 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-09-25 16:38 - 2014-07-12 05:41 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL 2015-09-25 16:38 - 2014-07-12 05:41 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-09-25 16:38 - 2014-07-12 05:41 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-09-25 16:38 - 2014-07-12 05:41 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-09-25 16:38 - 2014-07-12 05:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-09-25 16:38 - 2014-07-12 05:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-09-25 16:38 - 2014-07-12 05:16 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL 2015-09-25 16:38 - 2014-07-12 05:16 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-09-25 16:38 - 2014-07-12 05:16 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-09-25 16:38 - 2014-07-12 05:16 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-09-25 16:38 - 2014-07-12 05:16 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-09-25 16:38 - 2014-07-12 05:15 - 00006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-09-25 16:38 - 2014-07-08 23:33 - 00181248 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-09-25 16:38 - 2014-07-08 23:32 - 01539584 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-09-25 16:38 - 2014-07-08 23:32 - 00340480 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-09-25 16:38 - 2014-07-08 23:30 - 01220608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-09-25 16:38 - 2014-07-07 06:52 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2015-09-25 16:38 - 2014-07-07 06:52 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-09-25 16:38 - 2014-07-04 11:52 - 00328000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-09-25 16:38 - 2014-06-28 08:01 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-09-25 16:38 - 2014-06-28 07:56 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-09-25 16:38 - 2014-06-18 00:27 - 02032640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-09-25 16:38 - 2014-06-18 00:23 - 02238464 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-09-25 16:38 - 2014-06-11 15:47 - 02842112 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-09-25 16:38 - 2014-06-11 05:40 - 02620928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-09-25 16:38 - 2013-05-24 23:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-09-25 16:38 - 2013-05-24 23:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-09-25 16:37 - 2014-07-07 06:53 - 01125376 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-09-25 16:37 - 2014-07-07 06:52 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-09-25 16:37 - 2014-07-07 06:52 - 00300544 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2015-09-25 16:37 - 2014-07-07 05:01 - 01049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-09-25 16:37 - 2014-07-07 05:01 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2015-09-25 16:35 - 2015-06-09 14:57 - 03248640 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-09-25 16:35 - 2015-01-24 05:31 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-09-25 16:35 - 2014-12-08 07:48 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-09-25 16:35 - 2014-12-08 06:04 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-09-25 16:35 - 2013-04-24 00:13 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2015-09-25 16:35 - 2013-04-24 00:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-09-25 16:35 - 2013-04-23 23:56 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2015-09-25 16:35 - 2013-04-23 23:55 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-09-25 16:35 - 2012-11-01 05:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-09-25 16:35 - 2012-11-01 05:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-09-25 16:35 - 2012-11-01 05:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-09-25 16:35 - 2012-11-01 05:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-09-25 16:34 - 2012-10-24 05:54 - 00396008 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-09-25 16:34 - 2012-10-17 05:32 - 01172992 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll 2015-09-25 16:34 - 2012-10-17 05:32 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll 2015-09-25 16:34 - 2012-10-17 04:57 - 00929792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll 2015-09-25 16:34 - 2012-10-17 04:57 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll 2015-09-25 16:34 - 2012-10-12 07:14 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\srmshell.dll 2015-09-25 16:34 - 2012-10-12 07:14 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\srmtrace.dll 2015-09-25 16:34 - 2012-10-12 07:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\srm_ps.dll 2015-09-25 16:34 - 2012-10-12 07:13 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll 2015-09-25 16:34 - 2012-10-12 06:41 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmshell.dll 2015-09-25 16:34 - 2012-10-12 06:41 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmtrace.dll 2015-09-25 16:34 - 2012-10-12 06:41 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srm_ps.dll 2015-09-25 16:34 - 2012-10-12 06:39 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll 2015-09-25 16:33 - 2015-03-14 09:07 - 01120256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-09-25 16:33 - 2015-03-14 07:33 - 00891904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-09-25 16:33 - 2015-03-04 08:29 - 00361280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-09-25 16:33 - 2015-03-04 07:39 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll 2015-09-25 16:33 - 2015-03-04 05:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll 2015-09-25 16:33 - 2012-10-11 08:47 - 00793200 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-09-25 16:33 - 2012-10-11 08:25 - 00056552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys 2015-09-25 16:33 - 2012-10-11 08:23 - 00441576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-09-25 16:33 - 2012-10-11 08:13 - 00033512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\battc.sys 2015-09-25 16:33 - 2012-10-11 06:46 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Compression.dll 2015-09-25 16:33 - 2012-10-11 06:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe 2015-09-25 16:33 - 2012-10-11 06:45 - 00579584 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2015-09-25 16:33 - 2012-10-11 06:45 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll 2015-09-25 16:33 - 2012-10-11 06:45 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll 2015-09-25 16:33 - 2012-10-11 06:44 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2015-09-25 16:33 - 2012-10-11 06:44 - 00264704 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll 2015-09-25 16:33 - 2012-10-11 06:44 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2015-09-25 16:33 - 2012-10-11 06:43 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-09-25 16:33 - 2012-10-11 06:43 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-09-25 16:33 - 2012-10-11 06:43 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-09-25 16:33 - 2012-10-11 06:43 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-09-25 16:33 - 2012-10-11 06:43 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-09-25 16:33 - 2012-10-11 06:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-09-25 16:33 - 2012-10-11 06:42 - 00612416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-09-25 16:33 - 2012-10-11 06:23 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-pdc.dll 2015-09-25 16:33 - 2012-10-11 06:23 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\kbdhebl3.dll 2015-09-25 16:33 - 2012-10-11 06:07 - 00414720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2015-09-25 16:33 - 2012-10-11 06:07 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll 2015-09-25 16:33 - 2012-10-11 06:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll 2015-09-25 16:33 - 2012-10-11 06:06 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2015-09-25 16:33 - 2012-10-11 06:06 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-09-25 16:33 - 2012-10-11 06:06 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2015-09-25 16:33 - 2012-10-11 06:06 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-09-25 16:33 - 2012-10-11 06:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-09-25 16:33 - 2012-10-11 06:06 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-09-25 16:33 - 2012-10-11 06:05 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-09-25 16:33 - 2012-10-11 05:42 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdhebl3.dll 2015-09-25 16:31 - 2015-06-15 16:22 - 02416640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-09-25 16:31 - 2015-06-15 16:22 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-09-25 16:31 - 2015-05-09 00:39 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-09-25 16:31 - 2015-05-08 21:05 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-09-25 16:31 - 2014-10-11 06:57 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-09-25 16:31 - 2012-10-06 05:53 - 02893824 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2015-09-25 16:31 - 2012-10-06 05:15 - 02400256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2015-09-25 16:30 - 2015-06-15 16:21 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-09-25 16:30 - 2015-06-15 16:20 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-09-25 16:30 - 2014-12-06 08:52 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-09-25 16:30 - 2014-12-06 08:52 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-09-25 16:30 - 2014-12-06 08:52 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-09-25 16:30 - 2014-12-06 07:09 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-09-25 16:30 - 2014-10-11 08:44 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-09-25 16:29 - 2015-09-02 14:48 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-09-25 16:29 - 2015-09-02 14:38 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-09-25 16:29 - 2015-08-28 22:59 - 00304128 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-09-25 16:29 - 2015-08-27 19:41 - 00366592 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-09-25 16:29 - 2014-04-29 23:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-09-25 16:29 - 2014-04-29 23:32 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-09-25 16:29 - 2014-01-31 01:48 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-09-25 16:29 - 2013-03-02 09:23 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-09-25 16:29 - 2013-03-02 03:44 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-09-25 16:29 - 2012-12-15 05:55 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-09-25 16:29 - 2012-11-03 06:26 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\sysreset.exe 2015-09-25 16:29 - 2012-11-03 06:25 - 00945152 _____ (Microsoft Corporation) C:\Windows\system32\resetengmig.dll 2015-09-25 16:29 - 2012-10-24 04:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2015-09-25 16:29 - 2012-10-24 03:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2015-09-25 16:28 - 2013-10-31 06:56 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2015-09-25 16:28 - 2013-10-31 06:56 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2015-09-25 16:28 - 2013-10-31 05:01 - 00550400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll 2015-09-25 16:28 - 2013-10-31 04:42 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys 2015-09-25 16:28 - 2013-10-13 21:49 - 00100696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys 2015-09-25 16:28 - 2012-11-27 07:39 - 01122768 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe 2015-09-25 16:28 - 2012-11-27 05:49 - 01027152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe 2015-09-25 16:28 - 2012-11-27 05:20 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll 2015-09-25 16:28 - 2012-11-27 05:20 - 00560128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll 2015-09-25 16:28 - 2012-11-27 05:20 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll 2015-09-25 16:28 - 2012-11-27 05:19 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll 2015-09-25 16:28 - 2012-11-27 05:19 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll 2015-09-25 16:28 - 2012-11-27 05:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll 2015-09-25 16:28 - 2012-10-11 06:46 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll 2015-09-25 16:28 - 2012-10-11 06:44 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll 2015-09-25 16:28 - 2012-10-11 06:07 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll 2015-09-25 16:27 - 2012-11-27 05:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll 2015-09-25 16:27 - 2012-09-11 06:28 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe 2015-09-25 16:27 - 2012-09-11 06:27 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll 2015-09-25 16:26 - 2014-07-24 14:50 - 00447296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-09-25 16:26 - 2014-07-17 00:28 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll 2015-09-25 16:26 - 2014-07-16 23:59 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-09-25 16:26 - 2014-07-16 23:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll 2015-09-25 16:26 - 2014-07-12 07:45 - 01549824 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll 2015-09-25 16:26 - 2014-07-12 05:36 - 00674304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-09-25 16:26 - 2014-07-12 05:34 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-09-25 16:26 - 2014-06-28 07:57 - 01341952 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-09-25 16:26 - 2014-06-28 03:23 - 01126400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-09-25 16:26 - 2014-06-13 00:34 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-09-25 16:26 - 2014-06-13 00:29 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-09-25 16:26 - 2014-06-05 18:56 - 00112984 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-09-25 16:25 - 2013-08-03 07:40 - 01374208 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2015-09-25 16:25 - 2013-08-03 07:40 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2015-09-25 16:25 - 2013-08-03 07:40 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx 2015-09-25 16:25 - 2013-08-03 06:14 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx 2015-09-25 16:25 - 2013-08-03 06:13 - 01245696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2015-09-25 16:25 - 2013-08-03 06:13 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll 2015-09-25 16:25 - 2013-08-02 07:28 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2015-09-25 16:25 - 2013-08-02 06:08 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2015-09-25 16:25 - 2013-07-25 00:10 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll 2015-09-25 16:25 - 2013-07-25 00:06 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll 2015-09-25 16:25 - 2013-07-13 07:15 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll 2015-09-25 16:25 - 2013-07-13 05:23 - 00366592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll 2015-09-25 16:25 - 2012-11-20 06:24 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-09-25 16:25 - 2012-11-20 06:17 - 01184256 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-09-25 16:25 - 2012-11-20 06:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDKURD.DLL 2015-09-25 16:25 - 2012-11-20 05:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDKURD.DLL 2015-09-25 16:25 - 2012-11-06 05:20 - 00883712 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2015-09-25 16:25 - 2012-11-06 05:20 - 00516608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2015-09-25 16:25 - 2012-11-06 05:20 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-09-25 16:25 - 2012-11-06 05:20 - 00375296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll 2015-09-25 16:25 - 2012-11-06 05:20 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe 2015-09-25 16:25 - 2012-11-06 05:19 - 08552448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2015-09-25 16:25 - 2012-11-06 05:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-09-25 16:25 - 2012-11-06 05:19 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2015-09-25 16:25 - 2012-11-06 05:19 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-09-25 16:25 - 2012-11-06 05:19 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-09-25 16:25 - 2012-11-06 05:19 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-09-25 16:25 - 2012-11-06 05:18 - 11459584 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2015-09-25 16:25 - 2012-11-06 05:18 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl 2015-09-25 16:25 - 2012-11-06 05:18 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-09-25 16:25 - 2012-11-06 05:17 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2015-09-25 16:25 - 2012-11-06 05:17 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll 2015-09-25 16:24 - 2012-11-06 05:20 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-09-25 16:24 - 2012-11-06 05:20 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll 2015-09-25 16:24 - 2012-11-06 05:20 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll 2015-09-25 16:24 - 2012-11-06 05:19 - 00466944 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2015-09-25 16:24 - 2012-11-06 05:19 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll 2015-09-25 16:24 - 2012-11-06 05:19 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-09-25 16:24 - 2012-11-06 05:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll 2015-09-25 16:24 - 2012-11-06 05:19 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll 2015-09-25 16:24 - 2012-11-06 05:19 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll 2015-09-25 16:24 - 2012-11-06 05:18 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2015-09-25 16:24 - 2012-11-06 05:18 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll 2015-09-25 16:24 - 2012-11-06 05:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll 2015-09-25 16:24 - 2012-11-06 04:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-09-25 16:24 - 2012-11-06 04:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-09-25 16:24 - 2012-11-06 04:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys 2015-09-25 16:24 - 2012-11-06 04:55 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys 2015-09-25 16:24 - 2012-11-06 04:55 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys 2015-09-25 16:24 - 2012-11-06 04:55 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys 2015-09-25 16:24 - 2012-11-06 04:55 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fxppm.sys 2015-09-25 16:21 - 2014-03-01 10:47 - 01258496 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-09-25 16:21 - 2014-03-01 10:47 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-09-25 16:21 - 2014-03-01 09:07 - 01075200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-09-25 16:21 - 2014-03-01 07:59 - 00974848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-09-25 16:21 - 2014-02-15 05:15 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-09-25 16:21 - 2013-11-26 00:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-09-25 16:21 - 2013-06-29 04:08 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2015-09-24 14:34 - 2014-06-10 23:44 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-09-24 14:34 - 2014-06-10 23:43 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-09-23 22:21 - 2015-09-23 22:21 - 00000000 ____D C:\Users\Karolina\AppData\Local\CEF 2015-09-23 20:47 - 2015-09-12 14:29 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-09-23 20:47 - 2015-09-12 14:29 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2015-09-23 20:47 - 2015-09-12 14:29 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\appserverai.dll 2015-09-23 20:47 - 2015-09-12 14:29 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\RDWebAI.dll 2015-09-23 20:47 - 2015-09-12 14:29 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VmHostAI.dll 2015-09-23 20:47 - 2012-11-10 05:23 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-09-23 19:35 - 2015-11-12 14:15 - 00000000 ____D C:\Windows\system32\MRT 2015-09-23 19:35 - 2015-11-12 14:12 - 145617392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-09-23 18:16 - 2015-07-05 11:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-09-23 18:10 - 2013-02-02 09:40 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlroamextension.dll 2015-09-23 18:10 - 2013-02-02 09:40 - 00370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll 2015-09-23 18:10 - 2013-02-02 09:40 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 2015-09-23 18:10 - 2013-02-02 09:40 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe 2015-09-23 18:10 - 2013-02-02 09:40 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe 2015-09-23 18:10 - 2013-02-02 09:38 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll 2015-09-23 18:10 - 2013-02-02 09:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2015-09-23 18:10 - 2013-02-02 09:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2015-09-23 18:10 - 2013-02-02 09:23 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2015-09-23 18:10 - 2013-02-02 09:23 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\wlroamextension.dll 2015-09-23 18:10 - 2013-02-02 09:23 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll 2015-09-23 18:10 - 2013-02-02 09:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll 2015-09-23 18:10 - 2013-02-02 09:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2015-09-23 18:10 - 2013-02-02 09:20 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2015-09-23 18:10 - 2013-02-02 09:20 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll 2015-09-23 18:10 - 2013-02-02 08:25 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-09-23 18:10 - 2012-11-27 04:57 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys 2015-09-23 18:10 - 2012-11-27 04:55 - 00029952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthhfHid.sys 2015-09-23 18:09 - 2014-03-11 01:41 - 00559104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2015-09-23 18:09 - 2014-03-11 01:41 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2015-09-23 18:09 - 2014-03-11 01:38 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2015-09-23 18:09 - 2014-03-11 01:38 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-09-23 18:09 - 2014-03-11 01:38 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2015-09-23 18:09 - 2013-02-02 06:41 - 01437184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-09-23 18:09 - 2013-02-02 06:31 - 01690624 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-09-23 18:08 - 2014-12-06 08:53 - 00458240 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-09-23 18:08 - 2014-12-06 08:53 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-09-23 18:08 - 2014-12-06 08:51 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-09-23 18:08 - 2014-12-06 08:51 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-09-23 18:08 - 2014-12-06 08:50 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-09-23 18:08 - 2014-12-06 07:10 - 00355840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-09-23 18:08 - 2014-12-06 07:10 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-09-23 18:08 - 2014-12-06 07:09 - 00332800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-09-23 18:08 - 2014-11-26 07:43 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-09-23 18:08 - 2014-11-26 05:50 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-09-23 18:08 - 2014-10-03 02:21 - 00522728 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-09-23 18:08 - 2014-10-02 23:29 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-09-23 18:08 - 2013-07-09 07:18 - 00439488 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-09-23 18:08 - 2013-07-09 05:25 - 00385768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-09-23 18:08 - 2013-07-01 02:42 - 00623448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-09-23 18:08 - 2013-07-01 02:42 - 00498008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-09-23 18:08 - 2013-07-01 02:42 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-09-23 18:08 - 2013-07-01 02:42 - 00021848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-09-23 18:08 - 2013-06-29 04:07 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-09-23 18:08 - 2013-06-29 04:06 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-09-23 18:08 - 2012-11-20 05:56 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2015-09-23 18:08 - 2012-10-12 09:08 - 00027880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-09-23 18:08 - 2012-10-12 07:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-09-23 18:07 - 2013-05-04 08:58 - 00120736 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe 2015-09-23 18:07 - 2013-05-04 07:59 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe 2015-09-23 18:07 - 2013-05-04 07:58 - 00470528 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2015-09-23 18:07 - 2013-05-04 07:58 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-09-23 18:07 - 2013-05-04 07:58 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2015-09-23 18:07 - 2013-05-04 07:58 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2015-09-23 18:07 - 2013-05-04 07:58 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00820736 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00708096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00501760 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll 2015-09-23 18:07 - 2013-05-04 07:57 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll 2015-09-23 18:07 - 2013-05-04 07:56 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2015-09-23 18:07 - 2013-05-04 05:58 - 00758784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe 2015-09-23 18:07 - 2013-05-04 05:57 - 00303616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-09-23 18:07 - 2013-05-04 05:57 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll 2015-09-23 18:07 - 2013-05-04 05:57 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll 2015-09-23 18:07 - 2013-05-04 05:57 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll 2015-09-23 18:07 - 2013-05-04 05:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll 2015-09-23 18:07 - 2013-05-04 05:56 - 00582144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2015-09-23 18:07 - 2013-05-04 05:56 - 00449536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll 2015-09-23 18:07 - 2013-05-04 05:56 - 00411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-09-23 18:07 - 2013-05-04 05:56 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll 2015-09-23 18:07 - 2013-05-04 05:56 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll 2015-09-23 18:07 - 2013-05-04 05:55 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2015-09-23 18:07 - 2013-05-04 05:51 - 00014848 _____ (Microsoft) C:\Windows\system32\rars.rs 2015-09-23 18:07 - 2013-05-04 05:48 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-09-23 18:07 - 2013-05-04 05:47 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys 2015-09-23 18:07 - 2013-05-04 05:10 - 00014848 _____ (Microsoft) C:\Windows\SysWOW64\rars.rs 2015-09-23 18:07 - 2013-03-06 07:29 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-09-23 18:07 - 2013-03-02 03:45 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2015-09-23 18:07 - 2013-03-02 03:45 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\taskhostex.exe 2015-09-23 18:07 - 2013-02-12 01:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2015-09-23 18:07 - 2013-02-02 09:39 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll 2015-09-23 18:06 - 2013-05-15 03:25 - 00888320 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2015-09-23 18:06 - 2013-05-15 03:25 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-09-23 18:06 - 2013-05-15 03:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe 2015-09-23 18:06 - 2013-05-15 03:24 - 00482816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-09-23 18:06 - 2013-02-02 09:39 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll 2015-09-23 18:05 - 2015-07-29 15:45 - 01412608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-09-23 18:05 - 2015-07-29 14:52 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-09-23 18:05 - 2015-07-29 14:52 - 01280000 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-09-23 18:05 - 2013-12-05 00:43 - 00583680 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2015-09-23 18:05 - 2013-12-05 00:37 - 00451072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2015-09-23 18:05 - 2013-10-10 10:32 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2015-09-23 18:05 - 2013-10-10 10:30 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll 2015-09-23 18:05 - 2013-10-10 10:30 - 00156160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2015-09-23 18:05 - 2013-10-10 10:24 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2015-09-23 18:05 - 2013-10-10 10:23 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2015-09-23 18:05 - 2013-10-10 10:22 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll 2015-09-23 18:05 - 2013-10-10 10:22 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2015-09-23 18:05 - 2012-11-08 05:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-09-23 18:05 - 2012-11-08 05:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-09-23 18:05 - 2012-11-08 05:20 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-09-23 18:05 - 2012-11-08 05:20 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-09-23 18:05 - 2012-11-08 05:02 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-09-23 18:05 - 2012-11-08 05:01 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-09-23 18:04 - 2015-03-12 06:31 - 02048000 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2015-09-23 18:04 - 2015-03-12 06:31 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll 2015-09-23 18:04 - 2015-03-12 04:52 - 01933312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2015-09-23 18:04 - 2014-12-18 09:51 - 00096576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-09-23 18:04 - 2014-12-18 07:52 - 00889344 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-09-23 18:04 - 2014-12-18 07:20 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-09-23 18:04 - 2013-11-20 01:15 - 03842560 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-09-23 18:04 - 2013-11-20 00:57 - 03288576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2015-09-23 18:04 - 2013-07-13 07:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-09-23 18:04 - 2013-07-13 07:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-09-23 18:04 - 2013-07-13 07:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2015-09-23 18:04 - 2013-07-13 07:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2015-09-23 18:04 - 2013-07-13 05:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-09-23 18:04 - 2013-07-13 05:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2015-09-23 18:04 - 2013-07-13 05:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2015-09-23 18:04 - 2013-07-02 02:41 - 00337752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2015-09-23 18:04 - 2013-07-02 02:41 - 00213336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2015-09-23 18:04 - 2013-06-10 20:15 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-09-23 18:04 - 2013-06-10 20:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-09-23 18:04 - 2012-11-03 06:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2015-09-23 18:04 - 2012-11-03 06:26 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe 2015-09-23 18:04 - 2012-11-03 06:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll 2015-09-23 18:04 - 2012-11-03 06:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll 2015-09-23 18:04 - 2012-11-03 06:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll 2015-09-23 18:04 - 2012-11-03 06:04 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2015-09-23 18:04 - 2012-11-03 06:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll 2015-09-23 18:04 - 2012-11-03 06:00 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2015-09-23 18:04 - 2012-10-24 04:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2015-09-23 18:04 - 2012-10-24 04:24 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2015-09-23 18:04 - 2012-10-24 04:24 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2015-09-23 18:04 - 2012-10-24 04:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2015-09-23 18:03 - 2015-03-04 07:41 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2015-09-23 18:03 - 2015-03-04 07:39 - 00632832 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2015-09-23 18:03 - 2015-03-04 07:39 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2015-09-23 18:03 - 2015-03-04 05:53 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe 2015-09-23 18:03 - 2015-03-04 05:52 - 00676864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2015-09-23 18:03 - 2013-08-23 08:22 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-09-23 18:03 - 2013-08-23 02:44 - 01711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-09-23 18:03 - 2012-09-20 07:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2015-09-23 18:03 - 2012-09-20 06:54 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll 2015-09-23 18:02 - 2015-07-15 17:09 - 00095064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-09-23 18:02 - 2015-07-15 17:06 - 01824296 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-09-23 18:02 - 2015-07-15 14:49 - 01410000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-09-23 18:02 - 2015-07-15 14:29 - 01333248 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-09-23 18:02 - 2015-06-27 14:55 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-09-23 18:02 - 2015-06-27 14:46 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-09-23 18:02 - 2015-06-25 19:29 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-09-23 18:02 - 2015-06-25 19:27 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-09-23 18:02 - 2015-01-07 05:25 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-09-23 18:02 - 2013-03-22 04:49 - 02382336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2015-09-23 18:02 - 2013-03-21 23:47 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2015-09-23 18:01 - 2015-05-02 07:28 - 00100184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-09-23 18:01 - 2015-01-15 12:43 - 01282560 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-09-23 18:01 - 2015-01-15 10:38 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-09-23 18:01 - 2015-01-15 10:09 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-09-23 18:01 - 2014-12-19 05:35 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-09-23 18:01 - 2014-03-11 01:39 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-09-23 18:01 - 2014-03-11 01:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-09-23 18:01 - 2014-03-11 01:38 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-09-23 18:01 - 2014-03-10 02:27 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-09-23 18:00 - 2015-07-09 22:47 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-09-23 18:00 - 2015-07-09 22:47 - 00243712 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-09-23 18:00 - 2015-07-09 21:18 - 00233984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-09-23 18:00 - 2015-01-24 07:43 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-09-23 18:00 - 2015-01-24 06:00 - 00368640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2015-09-23 18:00 - 2014-06-06 15:06 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-09-23 18:00 - 2014-06-06 11:17 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-09-23 18:00 - 2013-04-03 00:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2015-09-23 18:00 - 2013-04-03 00:12 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2015-09-23 18:00 - 2013-03-02 10:59 - 00411880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-09-23 17:59 - 2013-04-09 06:33 - 00489576 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-09-23 17:59 - 2013-04-09 06:33 - 00446792 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-09-23 17:59 - 2013-04-09 06:33 - 00253544 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-09-23 17:59 - 2013-04-09 06:20 - 00306952 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_10ec.dll 2015-09-23 17:59 - 2013-04-09 06:20 - 00086280 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll 2015-09-23 17:59 - 2013-04-09 06:18 - 00077960 _____ (Microsoft Corporation) C:\Windows\system32\kdvm.dll 2015-09-23 17:59 - 2013-04-09 05:52 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-09-23 17:59 - 2013-04-09 05:52 - 00804352 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe 2015-09-23 17:59 - 2013-04-09 05:52 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-09-23 17:59 - 2013-04-09 05:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2015-09-23 17:59 - 2013-04-09 05:51 - 14267904 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-09-23 17:59 - 2013-04-09 05:51 - 03552768 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-09-23 17:59 - 2013-04-09 05:51 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-09-23 17:59 - 2013-04-09 05:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2015-09-23 17:59 - 2013-04-09 05:51 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-09-23 17:59 - 2013-04-09 05:51 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-09-23 17:59 - 2013-04-09 05:50 - 02107904 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-09-23 17:59 - 2013-04-09 05:50 - 00745984 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-09-23 17:59 - 2013-04-09 05:50 - 00435200 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2015-09-23 17:59 - 2013-04-09 05:50 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2015-09-23 17:59 - 2013-04-09 05:50 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2015-09-23 17:59 - 2013-04-09 05:50 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 01444864 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\fhengine.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2015-09-23 17:59 - 2013-04-09 05:49 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll 2015-09-23 17:59 - 2013-04-09 03:34 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2015-09-23 17:59 - 2013-04-09 03:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2015-09-23 17:59 - 2013-04-09 03:32 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys 2015-09-23 17:59 - 2013-04-09 03:31 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2015-09-23 17:59 - 2013-04-09 00:44 - 00123880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll 2015-09-23 17:59 - 2013-04-09 00:37 - 00426024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-09-23 17:59 - 2013-04-09 00:37 - 00324368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-09-23 17:59 - 2013-04-08 22:52 - 11878912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-09-23 17:59 - 2013-04-08 22:52 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2015-09-23 17:59 - 2013-04-08 22:52 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2015-09-23 17:59 - 2013-04-08 22:52 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2015-09-23 17:59 - 2013-04-08 22:51 - 02767360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 01113600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00659456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll 2015-09-23 17:59 - 2013-04-08 22:51 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll 2015-09-23 17:59 - 2013-04-05 00:30 - 00503080 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-09-23 17:59 - 2013-03-15 23:05 - 00298456 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-09-23 17:59 - 2013-03-15 23:05 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-09-23 17:59 - 2013-03-02 11:39 - 00069864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-09-23 17:59 - 2013-02-02 09:40 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2015-09-23 17:59 - 2013-02-02 09:23 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2015-09-23 17:59 - 2013-01-10 02:40 - 00303848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-09-23 17:59 - 2012-12-13 05:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2015-09-23 17:59 - 2012-12-13 04:59 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2015-09-23 17:59 - 2012-11-20 05:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys 2015-09-23 17:59 - 2012-11-06 06:00 - 00463768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-09-23 17:59 - 2012-10-11 06:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2015-09-23 17:59 - 2012-10-11 06:44 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2015-09-23 17:59 - 2012-10-11 06:06 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll 2015-09-23 17:59 - 2012-10-11 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2015-09-23 17:59 - 2012-09-20 07:33 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\fhmanagew.exe 2015-09-23 17:59 - 2012-09-20 07:33 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp 2015-09-23 17:59 - 2012-09-20 07:33 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp 2015-09-23 17:59 - 2012-09-20 07:32 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2015-09-23 17:59 - 2012-09-20 07:32 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll 2015-09-23 17:59 - 2012-09-20 07:32 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll 2015-09-23 17:59 - 2012-09-20 07:32 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll 2015-09-23 17:59 - 2012-09-20 07:32 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2015-09-23 17:59 - 2012-09-20 07:32 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2015-09-23 17:59 - 2012-09-20 07:32 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\fhcat.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\fhshl.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\fhsvc.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchapi.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchph.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\fhlisten.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\fhautoplay.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\fhcleanup.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\fhtask.dll 2015-09-23 17:59 - 2012-09-20 07:31 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll 2015-09-23 17:59 - 2012-09-20 07:12 - 09374208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2015-09-23 17:59 - 2012-09-20 07:09 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2015-09-23 17:59 - 2012-09-20 06:55 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp 2015-09-23 17:59 - 2012-09-20 06:55 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp 2015-09-23 17:59 - 2012-09-20 06:54 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll 2015-09-23 17:59 - 2012-09-20 06:54 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll 2015-09-23 17:59 - 2012-09-20 06:54 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll 2015-09-23 17:59 - 2012-09-20 06:54 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll 2015-09-23 17:59 - 2012-09-20 06:54 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2015-09-23 17:59 - 2012-09-20 06:54 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2015-09-23 17:59 - 2012-09-20 06:54 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2015-09-23 17:59 - 2012-09-20 06:32 - 09374208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2015-09-23 17:58 - 2015-08-13 11:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-09-23 17:58 - 2015-08-13 11:44 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-09-23 17:58 - 2015-06-15 16:22 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-09-23 17:58 - 2015-06-15 16:22 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-09-23 17:58 - 2015-06-15 16:20 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-09-23 17:58 - 2015-06-15 16:19 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-09-23 17:58 - 2015-06-15 16:19 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-09-23 17:58 - 2015-05-28 03:04 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-09-23 17:58 - 2015-05-28 03:03 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2015-09-23 17:58 - 2015-05-28 03:03 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-09-23 17:58 - 2015-05-28 03:02 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-09-23 17:58 - 2015-05-28 03:01 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-09-23 17:58 - 2015-05-28 03:01 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-09-23 17:58 - 2015-05-28 03:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-09-23 17:58 - 2015-05-28 03:01 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-09-23 17:58 - 2015-05-28 03:01 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-09-23 17:58 - 2015-05-28 01:45 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-09-23 17:58 - 2015-05-28 01:44 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-09-23 17:58 - 2015-05-28 01:43 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-09-23 17:58 - 2015-05-28 01:43 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-09-23 17:58 - 2015-05-28 01:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-09-23 17:58 - 2015-05-28 01:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-09-23 17:58 - 2015-05-28 01:43 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-09-23 17:58 - 2015-05-28 01:22 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2015-09-23 17:58 - 2015-05-28 01:20 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2015-09-23 17:58 - 2015-05-28 01:00 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-09-23 17:58 - 2015-05-28 00:55 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-09-23 17:58 - 2015-05-27 23:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2015-09-23 17:56 - 2013-09-28 04:35 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2015-09-23 17:56 - 2012-10-11 06:45 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll 2015-09-23 17:56 - 2012-10-11 06:19 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2015-09-23 17:56 - 2012-10-11 06:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2015-09-23 17:55 - 2014-11-08 12:22 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-09-23 17:55 - 2014-11-08 07:57 - 00187904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-09-23 17:54 - 2015-04-25 04:41 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2015-09-23 17:54 - 2015-04-25 00:13 - 00652288 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2015-09-23 17:54 - 2014-12-19 07:48 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-09-23 17:54 - 2014-10-23 13:47 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-09-23 17:54 - 2014-10-23 12:04 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-09-23 17:53 - 2015-04-06 06:36 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2015-09-23 17:53 - 2015-04-06 05:08 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll 2015-09-23 17:53 - 2014-10-11 06:41 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-09-23 17:53 - 2014-10-11 06:05 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-09-23 17:53 - 2014-05-30 00:02 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2015-09-23 17:53 - 2014-04-12 10:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-09-23 17:53 - 2014-04-12 10:09 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-09-23 17:53 - 2014-04-12 10:09 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-09-23 17:53 - 2014-04-12 10:07 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-09-23 17:53 - 2014-04-12 08:23 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-09-23 17:53 - 2014-04-12 08:23 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-09-23 17:53 - 2014-04-12 08:22 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-09-23 17:53 - 2014-04-12 07:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\workerdd.dll 2015-09-23 17:52 - 2015-09-23 17:52 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-23 17:52 - 2014-10-30 08:20 - 01890816 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-09-23 17:52 - 2014-10-30 06:22 - 01569792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-09-23 17:52 - 2014-06-02 23:33 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2015-09-23 17:52 - 2013-11-01 06:38 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2015-09-23 17:52 - 2013-11-01 04:49 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2015-09-23 17:17 - 2015-09-23 17:17 - 00000000 ____D C:\Users\Public\Documents\Arc 2015-09-23 17:17 - 2015-09-23 17:17 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Arc 2015-09-23 17:16 - 2015-11-10 22:33 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-09-23 17:16 - 2015-09-23 17:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2015-09-23 17:10 - 2015-12-05 19:22 - 00000000 ___RD C:\Users\Karolina\Desktop\gry 2015-09-23 16:41 - 2015-12-07 18:53 - 01633792 ___SH C:\Users\Karolina\Desktop\Thumbs.db 2015-09-23 09:30 - 2015-09-23 09:30 - 00264040 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys 2015-09-23 09:30 - 2015-09-23 09:30 - 00186784 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys 2015-09-23 09:30 - 2015-09-23 09:30 - 00170792 _____ (ESET) C:\Windows\system32\Drivers\epfwwfpr.sys 2015-09-23 07:01 - 2015-09-23 07:01 - 00000000 ____D C:\Users\Karolina\AppData\LocalLow\Adobe 2015-09-23 06:59 - 2015-12-06 22:18 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-09-23 06:59 - 2015-11-01 21:57 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-09-23 06:59 - 2015-09-23 07:01 - 00000000 ____D C:\ProgramData\Adobe 2015-09-23 06:59 - 2015-09-23 06:59 - 00000000 ____D C:\Program Files (x86)\Adobe 2015-09-22 20:28 - 2015-09-22 20:20 - 00000030 _____ C:\AVScanner.ini 2015-09-22 20:21 - 2015-09-24 14:43 - 00000000 ___RD C:\Users\Karolina\Desktop\zdjęcia 2015-09-22 20:20 - 2015-12-07 22:04 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-09-22 20:20 - 2015-12-05 19:04 - 00003818 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-09-22 20:20 - 2015-09-22 20:20 - 00000000 ____D C:\Users\Karolina\AppData\Local\Macromedia 2015-09-22 20:20 - 2015-09-22 20:20 - 00000000 ____D C:\ProgramData\McAfee 2015-09-22 20:19 - 2015-10-19 18:12 - 00000000 ___RD C:\Users\Karolina\Desktop\muzz 2015-09-22 20:19 - 2015-09-23 07:01 - 00000000 ____D C:\Users\Karolina\AppData\Local\Adobe 2015-09-22 20:14 - 2015-09-22 20:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2015-09-22 20:14 - 2015-09-22 20:14 - 00000000 ____D C:\Program Files (x86)\Guild Wars 2 2015-09-22 20:13 - 2015-09-22 20:14 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Guild Wars 2 2015-09-22 20:08 - 2015-10-08 17:32 - 00000000 ____D C:\Users\Karolina\Desktop\Teoria 2015-09-22 20:08 - 2015-10-08 17:31 - 00000000 ____D C:\Users\Karolina\Desktop\Technika 2015-09-22 20:08 - 2015-04-26 15:04 - 02598675 _____ C:\Users\Karolina\Desktop\..pdf 2015-09-22 20:07 - 2015-12-04 19:23 - 00000000 ___RD C:\Users\Karolina\Desktop\multi 2015-09-22 20:07 - 2015-11-02 21:16 - 00000000 ___RD C:\Users\Karolina\Desktop\fora 2015-09-22 20:06 - 2015-09-22 20:06 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-09-22 20:05 - 2015-12-05 22:39 - 00000000 ____D C:\Users\Karolina\Desktop\programy 2015-09-22 20:01 - 2015-09-30 15:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8 2015-09-22 19:55 - 2015-09-22 19:55 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\ProductData 2015-09-22 19:54 - 2015-09-22 19:54 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\IObit 2015-09-22 19:53 - 2015-12-02 17:11 - 00000000 ____D C:\ProgramData\ProductData 2015-09-22 19:53 - 2015-09-22 19:55 - 00000000 ____D C:\ProgramData\IObit 2015-09-22 19:53 - 2015-09-22 19:54 - 00000000 ____D C:\Users\Karolina\AppData\LocalLow\IObit 2015-09-22 19:53 - 2015-09-22 19:54 - 00000000 ____D C:\Program Files (x86)\IObit 2015-09-22 19:37 - 2015-09-22 19:37 - 00000117 _____ C:\Windows\system32\netcfg-28142.txt 2015-09-22 19:36 - 2015-10-10 19:16 - 00000000 _RSHD C:\Windows Activation Technologies 2015-09-22 19:36 - 2012-09-28 02:26 - 00087040 _____ C:\Windows\PersonalizeEnabler.exe 2015-09-22 19:36 - 2012-09-27 00:31 - 00084992 _____ C:\Windows\SLCHook.dll 2015-09-22 19:36 - 2012-09-25 13:32 - 00010240 _____ (Microsoft Corporation) C:\Windows\slsvc.exe 2015-09-22 19:36 - 2009-03-07 06:02 - 00102912 _____ C:\Windows\EasyHook64.dll 2015-09-22 19:29 - 2015-09-22 19:29 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer 2015-09-22 19:29 - 2015-09-22 19:29 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-09-22 19:29 - 2015-09-22 19:29 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-09-22 19:28 - 2015-09-22 19:28 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-09-22 19:28 - 2015-09-22 19:28 - 00000000 ____D C:\Program Files\MSBuild 2015-09-22 19:28 - 2012-07-06 03:02 - 01166440 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2015-09-22 19:28 - 2012-07-06 03:02 - 00778856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2015-09-22 19:24 - 2015-09-22 19:24 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\WinRAR 2015-09-22 19:23 - 2015-09-22 19:23 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-22 19:23 - 2015-09-22 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-22 19:23 - 2015-09-22 19:23 - 00000000 ____D C:\Program Files (x86)\WinRAR 2015-09-22 19:20 - 2015-09-22 19:20 - 00000000 ____D C:\Users\Karolina\AppData\LocalLow\uTorrent 2015-09-22 19:06 - 2015-09-22 19:06 - 00000117 _____ C:\Windows\system32\netcfg-6971591.txt 2015-09-22 19:06 - 2015-09-22 19:06 - 00000117 _____ C:\Windows\system32\netcfg-6969500.txt 2015-09-22 18:19 - 2015-12-05 22:43 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Skype 2015-09-22 18:19 - 2015-11-23 20:46 - 00000000 ____D C:\ProgramData\Skype 2015-09-22 18:19 - 2015-09-22 18:19 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-09-22 18:19 - 2015-09-22 18:19 - 00000000 ____D C:\Users\Karolina\Tracing 2015-09-22 18:19 - 2015-09-22 18:19 - 00000000 ____D C:\Users\Karolina\AppData\Local\Skype 2015-09-22 18:19 - 2015-09-22 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-09-22 18:07 - 2015-09-22 18:07 - 00000000 ____D C:\ProgramData\Ashampoo 2015-09-22 18:07 - 2015-09-22 17:19 - 00000000 ____D C:\Windows\Panther 2015-09-22 18:00 - 2015-09-22 19:36 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\uTorrent 2015-09-22 17:44 - 2015-09-22 17:44 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\ATI 2015-09-22 17:44 - 2015-09-22 17:44 - 00000000 ____D C:\Users\Karolina\AppData\Local\ATI 2015-09-22 17:44 - 2015-09-22 17:44 - 00000000 ____D C:\Users\Karolina\AppData\Local\AMD 2015-09-22 17:44 - 2015-09-22 17:44 - 00000000 ____D C:\ProgramData\ATI 2015-09-22 17:42 - 2015-09-22 17:42 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\library_dir 2015-09-22 17:42 - 2015-09-22 17:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-09-22 17:42 - 2015-09-22 17:42 - 00000000 ____D C:\ProgramData\AMD 2015-09-22 17:42 - 2015-09-22 17:42 - 00000000 ____D C:\Program Files\AMD 2015-09-22 17:42 - 2015-09-22 17:42 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2015-09-22 17:41 - 2015-11-10 22:38 - 00000000 ____D C:\ProgramData\Package Cache 2015-09-22 17:41 - 2015-10-06 15:35 - 00000000 ____D C:\Program Files (x86)\ATI Technologies 2015-09-22 17:41 - 2015-09-22 17:42 - 00000000 ____D C:\Program Files\ATI Technologies 2015-09-22 17:41 - 2015-09-22 17:41 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies 2015-09-22 17:41 - 2015-09-22 17:41 - 00000000 ____D C:\Program Files\ATI 2015-09-22 17:39 - 2015-10-06 15:31 - 00000000 ____D C:\AMD 2015-09-22 17:37 - 2013-08-16 06:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-09-22 17:37 - 2013-08-16 06:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-09-22 17:37 - 2013-08-15 23:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-09-22 17:37 - 2012-11-06 05:00 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wushareduxresources.dll 2015-09-22 17:34 - 2015-09-22 17:34 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Macromedia 2015-09-22 17:25 - 2015-12-07 17:28 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1178724899-610248882-1494297913-1001 2015-09-22 17:24 - 2015-12-06 22:18 - 00001049 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-09-22 17:24 - 2015-11-08 09:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-09-22 17:24 - 2015-09-22 17:30 - 00000000 ____D C:\Users\Karolina\AppData\Local\Mozilla 2015-09-22 17:24 - 2015-09-22 17:24 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Mozilla 2015-09-22 17:20 - 2015-12-06 22:18 - 00000949 _____ C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-09-22 17:20 - 2015-09-23 07:01 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Adobe 2015-09-22 17:19 - 2015-11-21 23:37 - 00000000 ____D C:\Users\Karolina\AppData\Local\Packages 2015-09-22 17:19 - 2015-10-08 19:22 - 00000000 ____D C:\Users\Karolina 2015-09-22 17:19 - 2015-09-22 17:20 - 00000000 ____D C:\ProgramData\PRICache 2015-09-22 17:19 - 2015-09-22 17:19 - 00000020 ___SH C:\Users\Karolina\ntuser.ini 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Ustawienia lokalne 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Szablony 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Moje dokumenty 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Menu Start 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Documents\Moje wideo 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Documents\Moje obrazy 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Documents\Moja muzyka 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\Dane aplikacji 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\AppData\Local\Historia 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 _SHDL C:\Users\Karolina\AppData\Local\Dane aplikacji 2015-09-22 17:19 - 2015-09-22 17:19 - 00000000 ____D C:\Users\Karolina\AppData\Local\VirtualStore 2015-09-22 17:14 - 2015-09-22 17:14 - 00000000 ____D C:\Windows\CSC 2015-09-22 17:12 - 2015-09-22 17:12 - 00000117 _____ C:\Windows\system32\netcfg-140806.txt 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Public\Documents\Moje wideo 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Public\Documents\Moje obrazy 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Public\Documents\Moja muzyka 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Szablony 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Moje dokumenty 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Menu Start 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\Dane aplikacji 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\ProgramData\Szablony 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\ProgramData\Pulpit 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\ProgramData\Menu Start 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\ProgramData\Dokumenty 2015-09-22 17:10 - 2015-09-22 17:10 - 00000000 _SHDL C:\ProgramData\Dane aplikacji 2015-09-22 17:09 - 2015-09-22 17:09 - 00001136 _____ C:\Windows\system32\netcfg-53617.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000185 _____ C:\Windows\system32\netcfg-52041.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000161 _____ C:\Windows\system32\netcfg-51792.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000160 _____ C:\Windows\system32\netcfg-51464.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000160 _____ C:\Windows\system32\netcfg-50934.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000159 _____ C:\Windows\system32\netcfg-50513.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000157 _____ C:\Windows\system32\netcfg-51246.txt 2015-09-22 17:09 - 2015-09-22 17:09 - 00000000 _____ C:\Windows\ativpsrm.bin 2015-09-22 17:08 - 2015-09-22 17:08 - 00000164 _____ C:\Windows\system32\netcfg-46753.txt 2015-09-22 17:08 - 2015-09-22 17:08 - 00000160 _____ C:\Windows\system32\netcfg-47018.txt 2015-09-22 17:08 - 2015-09-22 17:08 - 00000157 _____ C:\Windows\system32\netcfg-46082.txt 2015-09-22 17:08 - 2015-09-22 17:08 - 00000150 _____ C:\Windows\system32\netcfg-45817.txt ==================== Trzy miesiące - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-07 22:29 - 2012-07-26 06:37 - 00000000 ____D C:\Windows 2015-12-07 17:18 - 2012-07-26 10:50 - 00793704 _____ C:\Windows\system32\perfh015.dat 2015-12-07 17:18 - 2012-07-26 10:50 - 00159324 _____ C:\Windows\system32\perfc015.dat 2015-12-07 17:18 - 2012-07-26 08:28 - 01793398 _____ C:\Windows\system32\PerfStringBackup.INI 2015-12-07 17:18 - 2012-07-26 06:37 - 00000000 ____D C:\Windows\Inf 2015-12-07 17:13 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-06 22:43 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-12-06 22:16 - 2012-07-26 10:53 - 00000000 ____D C:\Windows\SKB 2015-12-05 19:26 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System 2015-11-24 19:26 - 2012-07-26 09:12 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2015-11-23 14:10 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent 2015-11-21 23:37 - 2012-07-26 09:12 - 00000000 ___HD C:\Program Files\WindowsApps 2015-11-12 18:54 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache 2015-11-11 19:10 - 2012-07-26 08:59 - 00000000 ____D C:\Windows\CbsTemp ==================== Pliki w katalogu głównym wybranych folderów ======= 2012-10-20 11:18 - 2012-10-20 11:18 - 37017251 _____ () C:\Program Files (x86)\Common Files\K.J_121021E.exe 2015-11-26 10:34 - 2015-12-05 17:40 - 9545216 _____ () C:\Users\Karolina\AppData\Roaming\agent.dat 2015-11-26 10:34 - 2015-12-05 17:40 - 0058272 _____ () C:\Users\Karolina\AppData\Roaming\Config.xml 2015-11-26 18:40 - 2015-11-19 14:27 - 0000428 _____ () C:\Users\Karolina\AppData\Roaming\ham.txt 2015-11-26 10:34 - 2015-12-05 17:40 - 0017920 _____ () C:\Users\Karolina\AppData\Roaming\Main.dat 2015-11-26 18:39 - 2015-12-03 14:29 - 0005568 _____ () C:\Users\Karolina\AppData\Roaming\md.xml 2015-12-03 14:30 - 2015-12-03 14:29 - 0043008 _____ () C:\Users\Karolina\AppData\Roaming\Moses.dat 2015-11-26 18:40 - 2015-11-19 14:26 - 0004134 _____ () C:\Users\Karolina\AppData\Roaming\shem.jpg 2015-12-07 18:59 - 2015-12-07 18:59 - 0036752 _____ () C:\Users\Karolina\AppData\Local\recently-used.xbel Niektóre pliki w TEMP: ==================== C:\Users\Karolina\AppData\Local\Temp\fnz4YpuvPB.exe C:\Users\Karolina\AppData\Local\Temp\ggdrive-menu.exe C:\Users\Karolina\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\Karolina\AppData\Local\Temp\installstats.exe C:\Users\Karolina\AppData\Local\Temp\OfficeSetup.exe C:\Users\Karolina\AppData\Local\Temp\SpOrder.dll C:\Users\Karolina\AppData\Local\Temp\sqlite3.dll C:\Users\Karolina\AppData\Local\Temp\tmp1209.exe C:\Users\Karolina\AppData\Local\Temp\tmp22ED.tmp.exe C:\Users\Karolina\AppData\Local\Temp\tmp4614.exe C:\Users\Karolina\AppData\Local\Temp\tmpA39E.exe C:\Users\Karolina\AppData\Local\Temp\tmpA44A.exe C:\Users\Karolina\AppData\Local\Temp\tmpE3AA.exe C:\Users\Karolina\AppData\Local\Temp\Uninstall.exe ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-12-03 17:55 ==================== Koniec FRST.txt ============================[/log] [log]Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-12-2015 Uruchomiony przez Karolina (2015-12-07 22:33:33) Uruchomiony z C:\Users\Karolina\Downloads Windows 8 Pro (X64) (2015-09-22 16:19:36) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1178724899-610248882-1494297913-500 - Administrator - Disabled) Gość (S-1-5-21-1178724899-610248882-1494297913-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1178724899-610248882-1494297913-1003 - Limited - Enabled) Karolina (S-1-5-21-1178724899-610248882-1494297913-1001 - Administrator - Enabled) => C:\Users\Karolina ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: ESET NOD32 Antivirus 9.0.318.20 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET NOD32 Antivirus 9.0.318.20 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\uTorrent) (Version: 3.4.5.41073 - BitTorrent Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 19 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Allods Online EN (HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\Allods Online EN) (Version: 1.74 - My.com B.V.) AMD Catalyst Install Manager (HKLM\...\{6119B3A6-3603-9695-0398-CDF2AF0A13F8}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Amnesia: The Dark Descent (HKLM-x32\...\Steam App 57300) (Version: - Frictional Games) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Assassin's Creed II (HKLM-x32\...\Uplay Install 4) (Version: - Ubisoft) Assassin's Creed III (HKLM-x32\...\Uplay Install 54) (Version: - Ubisoft) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Assassin's Creed Liberation HD (HKLM-x32\...\Uplay Install 625) (Version: - Ubisoft) Assassin's Creed Rogue (HKLM-x32\...\Uplay Install 895) (Version: - Ubisoft) Assassin's Creed Unity (HKLM-x32\...\Uplay Install 720) (Version: - Ubisoft) Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.) ESET NOD32 Antivirus (HKLM\...\{B5F4D153-9CA3-4D14-8B94-132E3C1262AC}) (Version: 9.0.318.20 - ESET, spol. s r.o.) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.10.251 - SurfRight B.V.) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Word 2013 - pl-pl (HKLM\...\WordRetail - pl-pl) (Version: 15.0.4771.1004 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mozilla Firefox 42.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 pl)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla) My.com Game Center (HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\MyComGames) (Version: 3.147 - My.com B.V.) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Skype™ 7.15 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.15.102 - Skype Technologies S.A.) Start Menu 8 (HKLM-x32\...\IObit_StartMenu8_is1) (Version: 2.3.0.200 - IObit) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) The Sims Średniowiecze (HKLM-x32\...\{83BEEFB4-8C28-4F4F-8A9D-E0D1ADCE335B}) (Version: 1.0.0 - Electronic Arts) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) The Sims™ 3 Cztery pory roku (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) The Sims™ 3 Impreza w plenerze Akcesoria (HKLM-x32\...\{117B6BF6-82C3-420C-B284-9247C8568E53}) (Version: 7.0.55 - Electronic Arts) The Sims™ 3 Kariera (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) The Sims™ 3 Nie z tego świata (HKLM-x32\...\{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}) (Version: 15.0.135 - Electronic Arts) The Sims™ 3 Nowoczesny apartament Akcesoria (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts) The Sims™ 3 Po zmroku (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts) The Sims™ 3 Pokolenia (HKLM-x32\...\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}) (Version: 8.0.152 - Electronic Arts) The Sims™ 3 Rajska Wyspa (HKLM-x32\...\{DB21639E-FE55-432C-BCA2-0C5249E3F79E}) (Version: 19.0.101 - Electronic Arts) The Sims™ 3 Studenckie życie (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) The Sims™ 3 Szybka jazda Akcesoria (HKLM-x32\...\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}) (Version: 5.0.44 - Electronic Arts) The Sims™ 3 Wymarzone Podróże (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) The Sims™ 3 Zwierzaki (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 10.0 - Ubisoft) Watch_Dogs (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1178724899-610248882-1494297913-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Karolina\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku ==================== Punkty Przywracania systemu ========================= 17-11-2015 15:14:20 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 25-11-2015 17:18:25 Zaplanowany punkt kontrolny 04-12-2015 22:12:02 Zaplanowany punkt kontrolny 06-12-2015 21:57:09 Punkt przywracania stworzony przez HitmanPro ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2012-07-26 06:26 - 2015-09-22 20:28 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {22262D15-7606-4D91-8E7B-78FF5D4E7385} - System32\Tasks\Lybxoq => C:\PROGRA~1\GROOVE~1\Bislh.bat Task: {2E264246-49EF-4833-9C5F-B5575BBF25F7} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) Task: {318659DA-606A-49DB-AE58-BEFBEE7EF0D7} - \SmartWeb Upgrade Trigger Task -> Brak pliku <==== UWAGA Task: {35A9A84C-197F-4865-8C5A-3981F9CD430C} - \Microsoft\Windows\Windows Activation Technologies\WatTask -> Brak pliku <==== UWAGA Task: {65DB6395-9E0E-4F94-A027-05CF15F40D8F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-27] (Microsoft Corporation) Task: {6E01FAD5-A69A-4170-B467-84C2AEAC5F87} - \LuckyBrowse -> Brak pliku <==== UWAGA Task: {71ADF8C5-EA00-4687-8D4A-C179D8B2903C} - \SwiftSearch Auto Updater 1.10.0.25 Core -> Brak pliku <==== UWAGA Task: {7823DD15-5645-476A-9C3B-37B1F9BD566C} - System32\Tasks\Rest Builder2 => Rundll32.exe "C:\Users\Karolina\AppData\Local\Rest Builder\{D9ED49A9-A01E-B283-7508-A57AC19304BC}\xaxqbl.dll",#1 Task: {8DE68EF9-CA0D-4901-8CDD-8263B959FFDF} - \SwiftSearch Auto Updater 1.10.0.25 Pending Update -> Brak pliku <==== UWAGA Task: {91BC7339-5C5C-48B2-AFD6-80FBEF687576} - System32\Tasks\Fitcuek => C:\PROGRA~1\SHOPPE~1\Qigbul.bat Task: {94EE8524-3C37-4EEA-9663-474B213B7347} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {A55B8ADB-CCBF-4C7D-A532-1ABC5941ACA5} - \Rest Builder -> Brak pliku <==== UWAGA Task: {B65FE228-B255-4C0A-B4BD-7913258E36A2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-11-12] (Microsoft Corporation) Task: {C8595AC7-5D9C-48E4-9537-A18D88D4B554} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-05] (Adobe Systems Incorporated) Task: {ED0F3DCB-A03B-4DE5-914F-5828679C2FA7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-27] (Microsoft Corporation) Task: {EE44910E-5F77-4ABF-8DE4-54FA6843CC57} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-10-08 20:37 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2015-10-27 17:55 - 2015-10-27 17:55 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-09-22 19:36 - 2012-09-28 02:26 - 00087040 _____ () C:\Windows\PersonalizeEnabler.exe 2015-09-22 19:36 - 2012-09-27 00:31 - 00084992 _____ () C:\Windows\SLCHook.dll 2015-09-22 19:36 - 2009-03-07 06:02 - 00102912 _____ () C:\Windows\EasyHook64.dll 2012-07-26 10:56 - 2012-07-26 10:54 - 00170864 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\ModernShared\ErrorReporting\ErrorReporting.dll 2014-04-17 21:29 - 2014-04-17 21:29 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2015-09-22 19:54 - 2015-05-20 18:03 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2015-09-22 20:01 - 2015-08-26 17:44 - 00348960 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madExcept_.bpl 2015-09-22 20:01 - 2015-08-26 17:44 - 00183584 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madBasic_.bpl 2015-09-22 20:01 - 2015-08-26 17:44 - 00050976 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madDisAsm_.bpl 2015-09-22 20:01 - 2015-08-26 17:45 - 00268920 _____ () C:\Program Files (x86)\IObit\Start Menu 8\sqlite3.dll 2015-09-22 20:01 - 2015-08-26 17:44 - 00053024 _____ () C:\Program Files (x86)\IObit\Start Menu 8\parseAuto.dll 2015-09-22 20:01 - 2015-08-26 17:44 - 00622880 _____ () C:\Program Files (x86)\IObit\Start Menu 8\ProductStatistics.dll 2015-09-22 20:01 - 2015-08-26 17:45 - 00041248 _____ () C:\Program Files (x86)\IObit\Start Menu 8\winkey.dll 2014-04-17 21:13 - 2014-04-17 21:13 - 00080896 _____ () C:\Program Files (x86)\ATI Technologies\HydraVision\HydraPlk.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\52140442.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\52140442.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Biwvitsoou => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Zefdovc => ""="service" ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1178724899-610248882-1494297913-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Karolina\Desktop\multi\Grafiki\wallpapers\FTHappy.png DNS Servers: 62.179.1.60 - 62.179.1.61 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{AE9429A9-53DC-411B-B7D6-1E17E8A43F5E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{16AF1E99-4506-4AA3-A3BE-3C62CC4C5036}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{005709B5-7071-4222-8FEB-4E3D92C2364D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{8DBAAC83-F293-4B20-8E15-B5E4B2871A10}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{B651546D-1E43-43CD-8F06-DA1FE6708199}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{CD98C98B-2EF3-45E8-815C-57DB97F32049}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{EA202A0B-5864-4053-89DC-ECC25BBA7F3C}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B3671F0E-AED8-4AAC-81BD-10279365706E}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{ABC5A9F1-914B-4D51-B716-4C0191DFE26D}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{2666C1FF-A9CF-4105-A4D0-A922BBAF28D5}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B0D7F67A-F3CD-4240-A6E9-57E20E7BAF82}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CE7C9A28-9893-4B8E-B77F-1FACACC04BF0}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{22E7BB1F-E74C-4827-BBC9-73FE1FA2E183}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{CFC476CD-E332-4A0D-8520-2C2AC1A2D0CD}C:\users\karolina\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\karolina\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{EDAF4CDB-447E-4D19-8454-641EC5F7D0EF}C:\users\karolina\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\karolina\appdata\local\mycomgames\mycomgames.exe FirewallRules: [{50EBAB1F-BA10-4FAC-B8D0-765D259610D5}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{C8BF8827-3C2A-44ED-B2FE-5B5BDAC54E9C}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{557FC14B-CB92-4DE5-AF90-50F92AADA729}] => (Allow) E:\Steam\bin\steamwebhelper.exe FirewallRules: [{E7DC41D5-23D6-4CE7-8689-59D6124531E4}] => (Allow) E:\Steam\bin\steamwebhelper.exe FirewallRules: [{BCB41C45-686E-4CFF-932A-E5A945181BA2}] => (Allow) E:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{E3067489-8CCF-4CE1-BD51-704D3DAEDCAA}] => (Allow) E:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{1423BA3D-A137-47AE-A5B6-5F732C1400E4}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe FirewallRules: [{6E398A0B-4487-48C0-8D9F-1B59E834B72D}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe FirewallRules: [{6E2A2B05-DA47-4EE2-B968-92CAFB0BF4E9}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{9818BBB0-445A-4FBC-9F66-B4D77F57E475}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{5E270BC9-2797-4BD6-A672-6750BF6BB097}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{88229FEF-7710-489B-9381-E2DF66B888DE}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{EF4E5A1C-5612-41A2-9D5D-EB326D0958EE}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3SP.exe FirewallRules: [{7C9284AE-B835-4E13-868A-D5CADBC8E1F8}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3SP.exe FirewallRules: [{FEAE279C-8777-415E-A5F1-111F670F16B8}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3MP.exe FirewallRules: [{34DA2C44-946C-4571-93D9-A8F971EDEBF7}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3MP.exe FirewallRules: [{E7265C93-8E5E-426E-BD30-965971C34C14}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9EAED151-2FF5-4878-8D40-469B3F3697E0}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{C51CB13E-9DFA-4403-8B91-78907B7CFC89}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{108C6608-ADF7-4A89-B214-DBEA67422BF0}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{396BB787-4302-4C99-AE87-FFD3B6625ECA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{60CEC14A-E0EC-4C0D-BA8F-EBDE788095E9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CBBF6962-FBEF-4E08-88A8-B2C2C3A63D23}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe FirewallRules: [{FEF3558B-1D91-4E83-B71D-786059C92C67}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe FirewallRules: [{50AF1C06-6EB1-4442-891B-0050A7D5A7A4}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{238365C9-C98E-45FB-8B23-C7B9A4E72E60}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{D726203B-305E-453B-8A18-8DF53F7CC6CB}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{6FA90B41-B881-4348-B274-917EFBA6D13E}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Launcher.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/07/2015 05:17:37 PM) (Source: Windows Search Service) (EventID: 3079) (User: ) Description: Powiadomienia dla woluminu C:\ są nieaktywne. Kontekst: aplikacja Windows Szczegóły: Parametr jest niepoprawny. (HRESULT : 0x80070057) (0x80070057) Error: (12/07/2015 05:13:33 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/07/2015 05:13:23 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/06/2015 11:39:44 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/06/2015 11:18:30 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/06/2015 10:44:54 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/06/2015 10:44:51 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/06/2015 10:18:09 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/06/2015 10:17:50 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/06/2015 09:52:56 PM) (Source: Windows Search Service) (EventID: 3079) (User: ) Description: Powiadomienia dla woluminu C:\ są nieaktywne. Kontekst: aplikacja Windows Szczegóły: Parametr jest niepoprawny. (HRESULT : 0x80070057) (0x80070057) Dziennik System: ============= Error: (12/07/2015 09:52:17 PM) (Source: Schannel) (EventID: 4102) (User: ZARZĄDZANIE NT) Description: Podczas próby uzyskania dostępu do prywatnego klucza uwierzytelnień SSL serwer wystąpił błąd krytyczny. Kod błędu zwrócony przez moduł kryptograficzny: 0x8009030d. Stan błędu wewnętrznego: 10001. Error: (12/07/2015 05:16:16 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Usługa ESET Service jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (12/07/2015 05:13:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/06/2015 11:18:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/06/2015 10:44:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/06/2015 10:43:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Karta wydajności WMI niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/06/2015 10:43:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/06/2015 10:43:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/06/2015 10:43:40 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Software Licensing Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/06/2015 10:43:40 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa PnkBstrA niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. CodeIntegrity: =================================== Date: 2015-12-05 18:31:40.430 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:40.320 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:40.216 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:40.105 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:39.841 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:24.976 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:24.879 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-15 16:22:18.138 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2015-10-13 20:39:42.584 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2015-10-13 16:10:55.147 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. ==================== Statystyki pamięci =========================== Procesor: AMD Phenom(tm) II X6 1055T Processor Procent pamięci w użyciu: 27% Całkowita pamięć fizyczna: 8190.11 MB Dostępna pamięć fizyczna: 5925.37 MB Całkowita pamięć wirtualna: 9406.11 MB Dostępna pamięć wirtualna: 6906.41 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:195.21 GB) (Free:72.87 GB) NTFS Drive d: () (Fixed) (Total:328.12 GB) (Free:285.43 GB) NTFS Drive e: () (Fixed) (Total:408.07 GB) (Free:242 GB) NTFS Drive f: (Sims3EP10) (CDROM) (Total:4.37 GB) (Free:0 GB) UDF ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: F2313BFC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=328.1 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=408.1 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================[/log]
Twój_Anioł_Stróż komentarz 7 grudnia 2015 komentarz 7 grudnia 2015 (edytowane) 1) Otwórz Notatnik i wklej w nim: HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\52140442.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\52140442.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Biwvitsoou => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Zefdovc => ""="service" Task: {A55B8ADB-CCBF-4C7D-A532-1ABC5941ACA5} - \Rest Builder -> Brak pliku <==== UWAGA Task: {91BC7339-5C5C-48B2-AFD6-80FBEF687576} - System32\Tasks\Fitcuek => C:\PROGRA~1\SHOPPE~1\Qigbul.bat Task: {6E01FAD5-A69A-4170-B467-84C2AEAC5F87} - \LuckyBrowse -> Brak pliku <==== UWAGA Task: {71ADF8C5-EA00-4687-8D4A-C179D8B2903C} - \SwiftSearch Auto Updater 1.10.0.25 Core -> Brak pliku <==== UWAGA Task: {7823DD15-5645-476A-9C3B-37B1F9BD566C} - System32\Tasks\Rest Builder2 => Rundll32.exe "C:\Users\Karolina\AppData\Local\Rest Builder\{D9ED49A9-A01E-B283-7508-A57AC19304BC}\xaxqbl.dll",#1 Task: {8DE68EF9-CA0D-4901-8CDD-8263B959FFDF} - \SwiftSearch Auto Updater 1.10.0.25 Pending Update -> Brak pliku <==== UWAGA Task: {318659DA-606A-49DB-AE58-BEFBEE7EF0D7} - \SmartWeb Upgrade Trigger Task -> Brak pliku <==== UWAGA Task: {35A9A84C-197F-4865-8C5A-3981F9CD430C} - \Microsoft\Windows\Windows Activation Technologies\WatTask -> Brak pliku <==== UWAGA Task: {22262D15-7606-4D91-8E7B-78FF5D4E7385} - System32\Tasks\Lybxoq => C:\PROGRA~1\GROOVE~1\Bislh.bat C:\ProgramData\Tmp0x0x C:\ProgramData\Airtop C:\Windows\System32\Tasks\Lybxoq C:\Users\Karolina\AppData\Roaming\ZepuLidcamr C:\Windows\system32\tuph C:\Windows\system32\vikw S2 Keugd; "C:\Users\Karolina\AppData\Roaming\RandaVap\Inaxo.exe" -cms [X] C:\Users\Karolina\AppData\Roaming\RandaVap FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!B2D8848D1D10351E8E31E38D48DB08BFB2D8.js [2015-12-05] FF Extension: Lightbeam - C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default\Extensions\[email protected]<script data-cfhash='f9e31' type="text/javascript"> /* */</script> [2015-12-04] SearchScopes: HKU\S-1-5-21-1178724899-610248882-1494297913-1001 -> {cf34d395-9ff1-49a0-98a5-8db1636431b1} URL = hxxp://houmpage.com/search/?src=ds&q={searchTerms}&ssid=1449335988&a=1024132&uuid=4378d0e5-d307-4c5f-8329-0b8dfa8b4bc1 EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). Powstanie plik fixlog.txt. Daj ten log. 2) Zrób nowe logi FRST - już bez Shortcut. 3) Napisz, czy problem znikł? .
Scissorhands komentarz 8 grudnia 2015 Autor komentarz 8 grudnia 2015 Pod fixie: [log]Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:05-12-2015 Uruchomiony przez Karolina (administrator) KAROPC (08-12-2015 14:50:20) Uruchomiony z C:\Users\Karolina\Downloads Załadowane profile: Karolina (Dostępne profile: Karolina) Platform: Windows 8 Pro (X64) Język: Polski (Polska) Internet Explorer Wersja 10 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (SurfRight B.V.) C:\Program Files\HitmanPro\HitmanPro.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Windows\slsvc.exe () C:\Windows\PersonalizeEnabler.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe (IObit) C:\Program Files (x86)\IObit\Start Menu 8\InstallServices.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-17] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD) HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\MountPoints2: {1f89e378-6144-11e5-be66-806e6f6e6963} - "F:\Autorun.exe" Startup: C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [2015-12-06] ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) AutoConfigURL: [S-1-5-21-1178724899-610248882-1494297913-1001] => hxxp://unstopp.me/wpad.dat?2a0ecaa1c86e0b1054c2d8d0b0db70132268388 Tcpip\Parameters: [DhcpNameServer] 62.179.1.60 62.179.1.61 Tcpip\..\Interfaces\{DA4A796B-E567-49A4-AEFB-A51878073EAA}: [DhcpNameServer] 62.179.1.60 62.179.1.61 Internet Explorer: ================== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> D:\Arc\Plugins\ArcPluginIE.dll [2015-09-15] (Perfect World Entertainment Inc) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-10-10] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default FF DefaultSearchEngine: FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-11] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-10-10] (Microsoft Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> D:\Arc\Plugins\npArcPluginFF.dll [2015-09-15] (Perfect World Entertainment Inc) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1178724899-610248882-1494297913-1001: @my.com/Games -> C:\Users\Karolina\AppData\Local\MyComGames\NPMyComDetector.dll [2015-09-30] (My.com, Inc) FF Extension: Lightbeam - C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default\Extensions\[email protected]<script data-cfhash='f9e31' type="text/javascript"> /* */</script> [2015-12-04] FF Extension: Adblock Plus - C:\Users\Karolina\AppData\Roaming\Mozilla\Firefox\Profiles\8etgvauo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-25] StartMenuInternet: FIREFOX.EXE - firefox.exe ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-17] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] S3 ArcService; D:\Arc\ArcService.exe [88400 2015-09-15] (Perfect World Entertainment Inc) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2797752 2015-10-13] (Microsoft Corporation) R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2505472 2015-10-09] (ESET) R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [127752 2015-11-03] (SurfRight B.V.) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-09-22] (IObit) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2099720 2015-11-13] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2015-10-27] () R2 slsvc; C:\Windows\slsvc.exe [10240 2012-09-25] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [1055008 2015-08-26] (IObit) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [215040 2013-12-19] (Advanced Micro Devices) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264040 2015-09-23] (ESET) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3265256 2012-09-20] (Broadcom Corporation) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [186784 2015-09-23] (ESET) R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [170792 2015-09-23] (ESET) R3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [41080 2015-12-08] () R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-06] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [281944 2015-07-06] (Microsoft Corporation) U3 DfSdkS; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-08 14:47 - 2015-12-08 14:47 - 00041080 _____ C:\Windows\system32\Drivers\hitmanpro37.sys 2015-12-08 14:42 - 2015-12-08 14:42 - 00008315 _____ C:\Users\Karolina\Downloads\Fixlog.txt 2015-12-07 22:33 - 2015-12-07 22:33 - 00034596 _____ C:\Users\Karolina\Downloads\Addition.txt 2015-12-07 22:32 - 2015-12-08 14:50 - 00009146 _____ C:\Users\Karolina\Downloads\FRST.txt 2015-12-07 22:29 - 2015-12-08 14:50 - 00000000 ____D C:\FRST 2015-12-07 22:28 - 2015-12-07 22:28 - 02369024 _____ (Farbar) C:\Users\Karolina\Downloads\FRST64.exe 2015-12-07 22:26 - 2015-12-07 22:26 - 00095544 _____ C:\Users\Karolina\Downloads\Extras.Txt 2015-12-07 22:25 - 2015-12-07 22:25 - 00311094 _____ C:\Users\Karolina\Downloads\OTL.Txt 2015-12-07 22:18 - 2015-12-07 22:18 - 00602112 _____ (OldTimer Tools) C:\Users\Karolina\Downloads\OTL.exe 2015-12-07 18:59 - 2015-12-07 18:59 - 00036752 _____ C:\Users\Karolina\AppData\Local\recently-used.xbel 2015-12-07 17:16 - 2015-12-07 17:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2015-12-07 17:16 - 2015-12-07 17:16 - 00000000 ____D C:\ProgramData\ESET 2015-12-07 17:15 - 2015-12-07 17:15 - 00000000 ____D C:\Program Files\ESET 2015-12-07 17:14 - 2015-12-07 17:14 - 02837704 _____ (ESET) C:\Users\Karolina\Downloads\eset_nod32_antivirus_live_installer_.exe 2015-12-06 22:21 - 2015-12-06 22:42 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-12-05 20:49 - 2015-12-06 22:43 - 00000000 ____D C:\AdwCleaner 2015-12-05 19:04 - 2015-12-05 19:04 - 19387592 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2015-12-05 19:00 - 2015-12-05 19:00 - 00000017 _____ C:\Windows\SysWOW64\history.dat 2015-12-05 18:59 - 2015-12-05 19:40 - 00000000 ____D C:\KVRT_Data 2015-12-05 18:59 - 2015-12-05 18:59 - 00004656 _____ C:\Windows\SysWOW64\Zefdovc.ini 2015-12-05 18:59 - 2015-12-05 18:59 - 00002376 _____ C:\Windows\SysWOW64\ZefdovcOff.ini 2015-12-05 18:59 - 2015-12-05 18:59 - 00002376 _____ C:\Windows\system32\ZefdovcOff.ini 2015-12-05 18:56 - 2015-12-05 18:56 - 00000000 _____ C:\Windows\SysWOW64\Number of results 2015-12-05 18:54 - 2015-12-06 22:21 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-12-05 18:54 - 2015-12-06 22:20 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-12-05 18:54 - 2015-12-05 18:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-12-05 18:54 - 2015-12-05 18:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-12-05 18:54 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-12-05 18:54 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2015-12-05 18:47 - 2015-12-05 18:47 - 00000000 ____D C:\Windows\system32\oki 2015-12-05 18:32 - 2015-12-06 22:50 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Opera Software 2015-12-05 18:32 - 2015-12-06 22:50 - 00000000 ____D C:\Users\Karolina\AppData\Local\Opera Software 2015-12-05 18:32 - 2015-12-06 22:50 - 00000000 ____D C:\Program Files (x86)\Opera 2015-12-05 18:31 - 2015-12-05 19:21 - 00000000 ____D C:\Users\Karolina\AppData\LocalLow\Company 2015-12-05 18:31 - 2015-12-05 18:59 - 00000000 ____D C:\Users\Karolina\AppData\Local\Tempfolder 2015-12-05 18:31 - 2015-12-05 18:49 - 00004656 _____ C:\Windows\SysWOW64\Biwvitsoou.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00002376 _____ C:\Windows\SysWOW64\BiwvitsoouOff.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00002376 _____ C:\Windows\system32\BiwvitsoouOff.ini 2015-12-05 18:23 - 2015-12-05 18:23 - 00000000 ____D C:\ProgramData\boost_interprocess 2015-12-05 18:21 - 2015-09-22 20:28 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak 2015-12-03 14:30 - 2015-12-03 14:29 - 00043008 _____ C:\Users\Karolina\AppData\Roaming\Moses.dat 2015-12-01 18:05 - 2015-12-01 18:05 - 00000000 ____D C:\ProgramData\GG 2015-11-26 18:40 - 2015-11-19 14:27 - 00000428 _____ C:\Users\Karolina\AppData\Roaming\ham.txt 2015-11-26 18:39 - 2015-12-03 14:29 - 00005568 _____ C:\Users\Karolina\AppData\Roaming\md.xml 2015-11-26 10:34 - 2015-12-05 17:40 - 09545216 _____ C:\Users\Karolina\AppData\Roaming\agent.dat 2015-11-26 10:34 - 2015-12-05 17:40 - 00058272 _____ C:\Users\Karolina\AppData\Roaming\Config.xml 2015-11-26 10:34 - 2015-12-05 17:40 - 00017920 _____ C:\Users\Karolina\AppData\Roaming\Main.dat 2015-11-21 23:38 - 2015-12-06 22:50 - 00000000 ____D C:\Users\Karolina\AppData\Local\GG 2015-11-21 23:38 - 2015-12-06 22:45 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\GG 2015-11-15 22:12 - 2015-11-15 22:12 - 00073680 _____ C:\Users\Karolina\AppData\Local\GDIPFONTCACHEV1.DAT 2015-11-15 18:51 - 2015-11-15 18:51 - 00000000 ____D C:\Users\Karolina\Documents\Amnesia 2015-11-13 21:07 - 2015-11-13 21:07 - 00000000 ____D C:\Users\Karolina\Documents\EA Games 2015-11-13 21:06 - 2015-11-13 21:06 - 00000000 ____D C:\Users\Karolina\AppData\Local\EA Games 2015-11-12 14:02 - 2015-11-03 01:20 - 00809944 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-11-12 14:02 - 2015-11-03 01:20 - 00176088 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-11-11 19:04 - 2015-10-01 14:10 - 00869568 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-11-11 19:04 - 2015-10-01 14:09 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-11-11 11:04 - 2015-10-27 15:46 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-11-11 11:04 - 2015-10-27 15:46 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-11-11 11:04 - 2015-10-27 15:46 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-11-11 11:04 - 2015-10-27 14:55 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-11-11 11:04 - 2015-10-27 14:54 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-11-11 11:04 - 2015-10-27 14:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-11-11 11:04 - 2015-10-17 14:28 - 04063744 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-11-11 11:04 - 2015-10-13 14:16 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-11-11 11:04 - 2015-10-13 14:16 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-11-11 11:04 - 2015-10-11 07:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-11-11 11:04 - 2015-10-11 07:45 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-11-11 11:04 - 2015-09-23 14:10 - 00377552 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-11-11 11:04 - 2015-09-23 14:10 - 00332576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-11-11 11:04 - 2015-09-12 14:09 - 00414559 _____ C:\Windows\system32\ApnDatabase.xml 2015-11-11 11:03 - 2015-10-28 17:46 - 06970704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-11-11 11:03 - 2015-10-28 15:59 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-11-11 11:03 - 2015-10-28 15:59 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-11-11 11:03 - 2015-10-28 15:37 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-11-11 11:03 - 2015-10-20 16:00 - 14292992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-11-11 11:03 - 2015-10-20 14:53 - 19283456 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-11-11 11:03 - 2015-09-23 14:10 - 00570256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-11-11 11:02 - 2015-10-20 16:01 - 01763328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-11-11 11:02 - 2015-10-20 16:01 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 13775360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 02866176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 02056704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00737280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00715776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-11-11 11:02 - 2015-10-20 16:00 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-11-11 11:02 - 2015-10-20 14:54 - 02239488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-11-11 11:02 - 2015-10-20 14:54 - 01409024 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-11-11 11:02 - 2015-10-20 14:54 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 15416320 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 03960832 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 02657280 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 00949760 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-11-11 11:02 - 2015-10-20 14:53 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-11-10 22:41 - 2015-11-10 22:41 - 00000000 ____D C:\Users\Karolina\Documents\Electronic Arts 2015-11-10 22:41 - 2015-11-10 22:41 - 00000000 ____D C:\ProgramData\EA Core 2015-11-10 22:40 - 2015-11-13 20:44 - 00000000 ____D C:\Program Files (x86)\Origin Games 2015-11-10 22:38 - 2015-11-13 21:06 - 00000000 ____D C:\Users\Karolina\AppData\Local\Origin 2015-11-10 22:38 - 2015-11-13 20:30 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Origin 2015-11-10 22:37 - 2015-11-21 23:50 - 00000000 ____D C:\ProgramData\Origin 2015-11-10 22:37 - 2015-11-13 20:30 - 00000000 ____D C:\Program Files (x86)\Origin 2015-11-10 22:37 - 2015-11-10 22:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-11-10 22:37 - 2015-11-10 22:37 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-11-10 18:52 - 2015-11-10 18:52 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE 2015-11-10 18:52 - 2008-09-04 19:17 - 00447752 ____R (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2015-11-09 16:47 - 2015-11-09 16:47 - 00000000 ____D C:\Users\Karolina\Documents\Notesy programu OneNote 2015-11-09 16:19 - 2015-11-13 16:06 - 00000000 ____D C:\Users\Karolina\Desktop\album 2015-11-08 10:54 - 2015-11-22 12:13 - 00000000 ____D C:\Users\Karolina\Desktop\Nowy folder ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-08 14:50 - 2015-09-22 17:25 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1178724899-610248882-1494297913-1001 2015-12-08 14:49 - 2012-07-26 10:50 - 00793704 _____ C:\Windows\system32\perfh015.dat 2015-12-08 14:49 - 2012-07-26 10:50 - 00159324 _____ C:\Windows\system32\perfc015.dat 2015-12-08 14:49 - 2012-07-26 08:28 - 01793398 _____ C:\Windows\system32\PerfStringBackup.INI 2015-12-08 14:49 - 2012-07-26 06:37 - 00000000 ____D C:\Windows\Inf 2015-12-08 14:44 - 2012-07-26 08:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-08 14:43 - 2012-07-26 06:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-12-07 23:04 - 2015-09-22 20:20 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-12-07 22:33 - 2012-07-26 06:37 - 00000000 ____D C:\Windows 2015-12-07 19:00 - 2015-09-29 13:39 - 00000000 ____D C:\Users\Karolina\.gimp-2.8 2015-12-07 18:53 - 2015-09-29 15:02 - 00000000 ____D C:\Users\Karolina\AppData\Local\gtk-2.0 2015-12-07 18:53 - 2015-09-23 16:41 - 01633792 ___SH C:\Users\Karolina\Desktop\Thumbs.db 2015-12-06 22:18 - 2015-09-29 13:38 - 00000926 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2015-12-06 22:18 - 2015-09-23 06:59 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-12-06 22:18 - 2015-09-22 17:24 - 00001049 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-12-06 22:18 - 2015-09-22 17:20 - 00000949 _____ C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-12-06 22:16 - 2012-07-26 10:53 - 00000000 ____D C:\Windows\SKB 2015-12-05 22:43 - 2015-09-22 18:19 - 00000000 ____D C:\Users\Karolina\AppData\Roaming\Skype 2015-12-05 22:39 - 2015-09-22 20:05 - 00000000 ____D C:\Users\Karolina\Desktop\programy 2015-12-05 19:26 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System 2015-12-05 19:22 - 2015-09-23 17:10 - 00000000 ___RD C:\Users\Karolina\Desktop\gry 2015-12-05 19:04 - 2015-09-22 20:20 - 00003818 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-12-05 18:24 - 2015-10-06 22:34 - 00000000 ____D C:\Users\Karolina\AppData\Local\Chromium 2015-12-05 18:20 - 2015-11-07 16:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-12-04 19:23 - 2015-09-22 20:07 - 00000000 ___RD C:\Users\Karolina\Desktop\multi 2015-12-02 17:11 - 2015-09-22 19:53 - 00000000 ____D C:\ProgramData\ProductData 2015-11-24 19:26 - 2015-10-08 18:24 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-11-24 19:26 - 2012-07-26 09:12 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2015-11-23 20:46 - 2015-09-22 18:19 - 00000000 ____D C:\ProgramData\Skype 2015-11-23 14:10 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent 2015-11-21 23:37 - 2015-09-22 17:19 - 00000000 ____D C:\Users\Karolina\AppData\Local\Packages 2015-11-21 23:37 - 2012-07-26 09:12 - 00000000 ___HD C:\Program Files\WindowsApps 2015-11-18 21:35 - 2015-10-01 15:58 - 00000000 ____D C:\Users\Karolina\Desktop\whatt3v3r 2015-11-12 18:54 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache 2015-11-12 14:15 - 2015-09-23 19:35 - 00000000 ____D C:\Windows\system32\MRT 2015-11-12 14:12 - 2015-09-23 19:35 - 145617392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-11-12 14:01 - 2015-09-26 20:31 - 00321984 _____ C:\Windows\system32\FNTCACHE.DAT 2015-11-11 19:10 - 2015-10-19 17:55 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-11-11 19:10 - 2012-07-26 08:59 - 00000000 ____D C:\Windows\CbsTemp 2015-11-10 22:38 - 2015-09-22 17:41 - 00000000 ____D C:\ProgramData\Package Cache 2015-11-10 22:33 - 2015-09-23 17:16 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-11-08 09:57 - 2015-09-22 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service ==================== Pliki w katalogu głównym wybranych folderów ======= 2012-10-20 11:18 - 2012-10-20 11:18 - 37017251 _____ () C:\Program Files (x86)\Common Files\K.J_121021E.exe 2015-11-26 10:34 - 2015-12-05 17:40 - 9545216 _____ () C:\Users\Karolina\AppData\Roaming\agent.dat 2015-11-26 10:34 - 2015-12-05 17:40 - 0058272 _____ () C:\Users\Karolina\AppData\Roaming\Config.xml 2015-11-26 18:40 - 2015-11-19 14:27 - 0000428 _____ () C:\Users\Karolina\AppData\Roaming\ham.txt 2015-11-26 10:34 - 2015-12-05 17:40 - 0017920 _____ () C:\Users\Karolina\AppData\Roaming\Main.dat 2015-11-26 18:39 - 2015-12-03 14:29 - 0005568 _____ () C:\Users\Karolina\AppData\Roaming\md.xml 2015-12-03 14:30 - 2015-12-03 14:29 - 0043008 _____ () C:\Users\Karolina\AppData\Roaming\Moses.dat 2015-11-26 18:40 - 2015-11-19 14:26 - 0004134 _____ () C:\Users\Karolina\AppData\Roaming\shem.jpg 2015-12-07 18:59 - 2015-12-07 18:59 - 0036752 _____ () C:\Users\Karolina\AppData\Local\recently-used.xbel ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-12-03 17:55 ==================== Koniec FRST.txt ============================[/log] [log]Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-12-2015 Uruchomiony przez Karolina (2015-12-08 14:51:12) Uruchomiony z C:\Users\Karolina\Downloads Windows 8 Pro (X64) (2015-09-22 16:19:36) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1178724899-610248882-1494297913-500 - Administrator - Disabled) Gość (S-1-5-21-1178724899-610248882-1494297913-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1178724899-610248882-1494297913-1003 - Limited - Enabled) Karolina (S-1-5-21-1178724899-610248882-1494297913-1001 - Administrator - Enabled) => C:\Users\Karolina ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: ESET NOD32 Antivirus 9.0.318.20 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET NOD32 Antivirus 9.0.318.20 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\uTorrent) (Version: 3.4.5.41073 - BitTorrent Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 19 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Allods Online EN (HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\Allods Online EN) (Version: 1.74 - My.com B.V.) AMD Catalyst Install Manager (HKLM\...\{6119B3A6-3603-9695-0398-CDF2AF0A13F8}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Amnesia: The Dark Descent (HKLM-x32\...\Steam App 57300) (Version: - Frictional Games) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Assassin's Creed II (HKLM-x32\...\Uplay Install 4) (Version: - Ubisoft) Assassin's Creed III (HKLM-x32\...\Uplay Install 54) (Version: - Ubisoft) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Assassin's Creed Liberation HD (HKLM-x32\...\Uplay Install 625) (Version: - Ubisoft) Assassin's Creed Rogue (HKLM-x32\...\Uplay Install 895) (Version: - Ubisoft) Assassin's Creed Unity (HKLM-x32\...\Uplay Install 720) (Version: - Ubisoft) Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.) ESET NOD32 Antivirus (HKLM\...\{B5F4D153-9CA3-4D14-8B94-132E3C1262AC}) (Version: 9.0.318.20 - ESET, spol. s r.o.) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.10.251 - SurfRight B.V.) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Word 2013 - pl-pl (HKLM\...\WordRetail - pl-pl) (Version: 15.0.4771.1004 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mozilla Firefox 42.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 pl)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla) My.com Game Center (HKU\S-1-5-21-1178724899-610248882-1494297913-1001\...\MyComGames) (Version: 3.147 - My.com B.V.) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Skype™ 7.15 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.15.102 - Skype Technologies S.A.) Start Menu 8 (HKLM-x32\...\IObit_StartMenu8_is1) (Version: 2.3.0.200 - IObit) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) The Sims Średniowiecze (HKLM-x32\...\{83BEEFB4-8C28-4F4F-8A9D-E0D1ADCE335B}) (Version: 1.0.0 - Electronic Arts) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) The Sims™ 3 Cztery pory roku (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) The Sims™ 3 Impreza w plenerze Akcesoria (HKLM-x32\...\{117B6BF6-82C3-420C-B284-9247C8568E53}) (Version: 7.0.55 - Electronic Arts) The Sims™ 3 Kariera (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) The Sims™ 3 Nie z tego świata (HKLM-x32\...\{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}) (Version: 15.0.135 - Electronic Arts) The Sims™ 3 Nowoczesny apartament Akcesoria (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts) The Sims™ 3 Po zmroku (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts) The Sims™ 3 Pokolenia (HKLM-x32\...\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}) (Version: 8.0.152 - Electronic Arts) The Sims™ 3 Rajska Wyspa (HKLM-x32\...\{DB21639E-FE55-432C-BCA2-0C5249E3F79E}) (Version: 19.0.101 - Electronic Arts) The Sims™ 3 Studenckie życie (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) The Sims™ 3 Szybka jazda Akcesoria (HKLM-x32\...\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}) (Version: 5.0.44 - Electronic Arts) The Sims™ 3 Wymarzone Podróże (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) The Sims™ 3 Zwierzaki (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 10.0 - Ubisoft) Watch_Dogs (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1178724899-610248882-1494297913-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Karolina\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku ==================== Punkty Przywracania systemu ========================= 17-11-2015 15:14:20 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 25-11-2015 17:18:25 Zaplanowany punkt kontrolny 04-12-2015 22:12:02 Zaplanowany punkt kontrolny 06-12-2015 21:57:09 Punkt przywracania stworzony przez HitmanPro ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2012-07-26 06:26 - 2015-09-22 20:28 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {2E264246-49EF-4833-9C5F-B5575BBF25F7} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) Task: {65DB6395-9E0E-4F94-A027-05CF15F40D8F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-27] (Microsoft Corporation) Task: {90AAAA3C-EB2D-4BA2-BAB3-4AF136794182} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-11-12] (Microsoft Corporation) Task: {94EE8524-3C37-4EEA-9663-474B213B7347} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {C8595AC7-5D9C-48E4-9537-A18D88D4B554} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-05] (Adobe Systems Incorporated) Task: {ED0F3DCB-A03B-4DE5-914F-5828679C2FA7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-27] (Microsoft Corporation) Task: {EE44910E-5F77-4ABF-8DE4-54FA6843CC57} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2015-10-08 20:37 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2015-10-27 17:55 - 2015-10-27 17:55 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-09-22 19:36 - 2012-09-28 02:26 - 00087040 _____ () C:\Windows\PersonalizeEnabler.exe 2015-09-22 19:36 - 2012-09-27 00:31 - 00084992 _____ () C:\Windows\SLCHook.dll 2015-09-22 19:36 - 2009-03-07 06:02 - 00102912 _____ () C:\Windows\EasyHook64.dll 2014-04-17 21:29 - 2014-04-17 21:29 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2015-09-22 19:54 - 2015-05-20 18:03 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2015-09-22 20:01 - 2015-08-26 17:44 - 00348960 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madExcept_.bpl 2015-09-22 20:01 - 2015-08-26 17:44 - 00183584 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madBasic_.bpl 2015-09-22 20:01 - 2015-08-26 17:44 - 00050976 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madDisAsm_.bpl 2015-09-22 20:01 - 2015-08-26 17:45 - 00268920 _____ () C:\Program Files (x86)\IObit\Start Menu 8\sqlite3.dll 2015-09-22 20:01 - 2015-08-26 17:44 - 00053024 _____ () C:\Program Files (x86)\IObit\Start Menu 8\parseAuto.dll 2015-09-22 20:01 - 2015-08-26 17:44 - 00622880 _____ () C:\Program Files (x86)\IObit\Start Menu 8\ProductStatistics.dll 2015-09-22 20:01 - 2015-08-26 17:45 - 00041248 _____ () C:\Program Files (x86)\IObit\Start Menu 8\winkey.dll 2014-04-17 21:13 - 2014-04-17 21:13 - 00080896 _____ () C:\Program Files (x86)\ATI Technologies\HydraVision\HydraPlk.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== EXE - Powiązania (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1178724899-610248882-1494297913-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Karolina\Desktop\multi\Grafiki\wallpapers\FTHappy.png DNS Servers: 62.179.1.60 - 62.179.1.61 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Obecnie brak automatycznej naprawy dla tej sekcji.) ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{AE9429A9-53DC-411B-B7D6-1E17E8A43F5E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{16AF1E99-4506-4AA3-A3BE-3C62CC4C5036}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{005709B5-7071-4222-8FEB-4E3D92C2364D}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{8DBAAC83-F293-4B20-8E15-B5E4B2871A10}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{B651546D-1E43-43CD-8F06-DA1FE6708199}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{CD98C98B-2EF3-45E8-815C-57DB97F32049}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{EA202A0B-5864-4053-89DC-ECC25BBA7F3C}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B3671F0E-AED8-4AAC-81BD-10279365706E}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{ABC5A9F1-914B-4D51-B716-4C0191DFE26D}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{2666C1FF-A9CF-4105-A4D0-A922BBAF28D5}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B0D7F67A-F3CD-4240-A6E9-57E20E7BAF82}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CE7C9A28-9893-4B8E-B77F-1FACACC04BF0}] => (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{22E7BB1F-E74C-4827-BBC9-73FE1FA2E183}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{CFC476CD-E332-4A0D-8520-2C2AC1A2D0CD}C:\users\karolina\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\karolina\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{EDAF4CDB-447E-4D19-8454-641EC5F7D0EF}C:\users\karolina\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\karolina\appdata\local\mycomgames\mycomgames.exe FirewallRules: [{50EBAB1F-BA10-4FAC-B8D0-765D259610D5}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{C8BF8827-3C2A-44ED-B2FE-5B5BDAC54E9C}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{557FC14B-CB92-4DE5-AF90-50F92AADA729}] => (Allow) E:\Steam\bin\steamwebhelper.exe FirewallRules: [{E7DC41D5-23D6-4CE7-8689-59D6124531E4}] => (Allow) E:\Steam\bin\steamwebhelper.exe FirewallRules: [{BCB41C45-686E-4CFF-932A-E5A945181BA2}] => (Allow) E:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{E3067489-8CCF-4CE1-BD51-704D3DAEDCAA}] => (Allow) E:\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{1423BA3D-A137-47AE-A5B6-5F732C1400E4}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe FirewallRules: [{6E398A0B-4487-48C0-8D9F-1B59E834B72D}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe FirewallRules: [{6E2A2B05-DA47-4EE2-B968-92CAFB0BF4E9}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{9818BBB0-445A-4FBC-9F66-B4D77F57E475}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{5E270BC9-2797-4BD6-A672-6750BF6BB097}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{88229FEF-7710-489B-9381-E2DF66B888DE}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{EF4E5A1C-5612-41A2-9D5D-EB326D0958EE}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3SP.exe FirewallRules: [{7C9284AE-B835-4E13-868A-D5CADBC8E1F8}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3SP.exe FirewallRules: [{FEAE279C-8777-415E-A5F1-111F670F16B8}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3MP.exe FirewallRules: [{34DA2C44-946C-4571-93D9-A8F971EDEBF7}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed III\AC3MP.exe FirewallRules: [{E7265C93-8E5E-426E-BD30-965971C34C14}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9EAED151-2FF5-4878-8D40-469B3F3697E0}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{C51CB13E-9DFA-4403-8B91-78907B7CFC89}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{108C6608-ADF7-4A89-B214-DBEA67422BF0}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{396BB787-4302-4C99-AE87-FFD3B6625ECA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{60CEC14A-E0EC-4C0D-BA8F-EBDE788095E9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CBBF6962-FBEF-4E08-88A8-B2C2C3A63D23}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe FirewallRules: [{FEF3558B-1D91-4E83-B71D-786059C92C67}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe FirewallRules: [{50AF1C06-6EB1-4442-891B-0050A7D5A7A4}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{238365C9-C98E-45FB-8B23-C7B9A4E72E60}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{D726203B-305E-453B-8A18-8DF53F7CC6CB}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{6FA90B41-B881-4348-B274-917EFBA6D13E}] => (Allow) E:\Steam\steamapps\common\Amnesia The Dark Descent\Launcher.exe ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (12/08/2015 02:45:26 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/08/2015 02:45:21 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/08/2015 02:37:16 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: BITSC:\Windows\System32\bitsperf.dll8 Error: (12/08/2015 02:29:23 PM) (Source: Windows Search Service) (EventID: 3079) (User: ) Description: Powiadomienia dla woluminu C:\ są nieaktywne. Kontekst: aplikacja Windows Szczegóły: Parametr jest niepoprawny. (HRESULT : 0x80070057) (0x80070057) Error: (12/08/2015 02:26:12 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/08/2015 02:26:10 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/07/2015 05:17:37 PM) (Source: Windows Search Service) (EventID: 3079) (User: ) Description: Powiadomienia dla woluminu C:\ są nieaktywne. Kontekst: aplikacja Windows Szczegóły: Parametr jest niepoprawny. (HRESULT : 0x80070057) (0x80070057) Error: (12/07/2015 05:13:33 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (12/07/2015 05:13:23 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (12/06/2015 11:39:44 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007007B Argumenty wiersza polecenia: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Dziennik System: ============= Error: (12/08/2015 02:43:32 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Klient zasad grupy nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (12/08/2015 02:25:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/07/2015 09:52:17 PM) (Source: Schannel) (EventID: 4102) (User: ZARZĄDZANIE NT) Description: Podczas próby uzyskania dostępu do prywatnego klucza uwierzytelnień SSL serwer wystąpił błąd krytyczny. Kod błędu zwrócony przez moduł kryptograficzny: 0x8009030d. Stan błędu wewnętrznego: 10001. Error: (12/07/2015 05:16:16 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Usługa ESET Service jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (12/07/2015 05:13:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/06/2015 11:18:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/06/2015 10:44:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Keugd z powodu następującego błędu: %%2 Error: (12/06/2015 10:43:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Karta wydajności WMI niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/06/2015 10:43:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/06/2015 10:43:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. CodeIntegrity: =================================== Date: 2015-12-05 18:31:40.430 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:40.320 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:40.216 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:40.105 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:39.841 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:24.976 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-05 18:31:24.879 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\SpaceSoundPro\SpaceSoundPro.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-15 16:22:18.138 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2015-10-13 20:39:42.584 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2015-10-13 16:10:55.147 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. ==================== Statystyki pamięci =========================== Procesor: AMD Phenom(tm) II X6 1055T Processor Procent pamięci w użyciu: 23% Całkowita pamięć fizyczna: 8190.11 MB Dostępna pamięć fizyczna: 6225.26 MB Całkowita pamięć wirtualna: 9406.11 MB Dostępna pamięć wirtualna: 7338.14 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:195.21 GB) (Free:74.44 GB) NTFS Drive d: () (Fixed) (Total:328.12 GB) (Free:285.43 GB) NTFS Drive e: () (Fixed) (Total:408.07 GB) (Free:242 GB) NTFS Drive f: (Sims3EP10) (CDROM) (Total:4.37 GB) (Free:0 GB) UDF ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: F2313BFC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=328.1 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=408.1 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================[/log] Hitman poza FRST'em nic nie wykrył. Za to w przeglądarce wciąż mnie wyskakują samowolnie różne okna i reklamy. I jeszcze jedna rzecz - przy każdym uruchomieniu systemu automatycznie włacza mi się Microsoftowy OneNote. Też się to zaczęło dziać przy tych wirusach. Jak wyłaczyć tą opcję?
Twój_Anioł_Stróż komentarz 8 grudnia 2015 komentarz 8 grudnia 2015 (edytowane) 2012-10-20 11:18 - 2012-10-20 11:18 - 37017251 _____ () C:\Program Files (x86)\Common Files\K.J_121021E.exe znasz to? ------------ C:\Windows\PersonalizeEnabler.exe C:\Windows\SLCHook.dll C:\Windows\EasyHook64.dll Te pliki sprawdź na --> [url=http://virusscan.jotti.org/][b][color=blue][u]JOTTI/[/u][/color][/b][/url] albo na [url=http://www.virustotal.com/][b][color=blue][u]VIRUSTOTAL[/u][/color][/b][/url]
Scissorhands komentarz 8 grudnia 2015 Autor komentarz 8 grudnia 2015 Obie strony nic groźnego w nich nie wykryły.
Twój_Anioł_Stróż komentarz 8 grudnia 2015 komentarz 8 grudnia 2015 (edytowane) W takim razie na pewno nie masz żadnego "reklamiarza. Kosmetyka: twórz Notatnik i wklej w nim: Startup: C:\Users\Karolina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [2015-12-06] ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) AutoConfigURL: [S-1-5-21-1178724899-610248882-1494297913-1001] => hxxp://unstopp.me/wpad.dat?2a0ecaa1c86e0b1054c2d8d0b0db701322683882015-12-05 18:59 - 2015-12-05 18:59 - 00004656 _____ C:\Windows\SysWOW64\Zefdovc.ini 2015-12-05 18:59 - 2015-12-05 18:59 - 00002376 _____ C:\Windows\SysWOW64\ZefdovcOff.ini 2015-12-05 18:59 - 2015-12-05 18:59 - 00002376 _____ C:\Windows\system32\ZefdovcOff.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00004656 _____ C:\Windows\SysWOW64\Biwvitsoou.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00002376 _____ C:\Windows\SysWOW64\BiwvitsoouOff.ini 2015-12-05 18:31 - 2015-12-05 18:49 - 00002376 _____ C:\Windows\system32\BiwvitsoouOff.ini 2015-12-05 18:23 - 2015-12-05 18:23 - 00000000 ____D C:\ProgramData\boost_interprocess EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). Przeinstaluj przeglądarkę, na której masz problem. .
Scissorhands komentarz 9 grudnia 2015 Autor komentarz 9 grudnia 2015 Załatwione. Dziękuje pięknie! Wszystko wyczyszczone. (:
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.