|
Log-Analyse und Auswertung: Qone8 Virus / Malware entfernen Log auswertenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
16.04.2014, 11:46 | #1 |
| Qone8 Virus / Malware entfernen Log auswerten Hallo liebe Forumgemeinde, Ich bin neu hier und muss mich direkt an euch wenden und um Hilfe bitten Ich habe mir vor kurzem haufenweise Programme installiert und dabei mein PC ordentlich infiziert. Mit dem Windows 7 Theme "Lion Skin Pack" hab ich mir Browser Malware eingefangen, u.a. "Qone 8" Desweiteren hatte ich Rootkits und Trojaner. Ich hab auf eigene Faust nach Anleitungen die man bei euch im Forum findet mein PC gereinigt. Jedoch weiß ich jetzt nicht ob alles sauber ist da die verschiedenen Programme unterschiedliche Funde zeigen. Den Qone8 bekomm ich einfach nicht weg. Habe schon CC Cleaner und Anti Browser Hijack tools probiert. Ich wäre echt dankbar wenn Ihr mir mein LOG File auswerten könntet und vielleicht raten könnt wo noch was verseucht ist und welche Progs ich benutzen sollte. Mfg DonJuanito |
16.04.2014, 11:48 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Qone8 Virus / Malware entfernen Log auswerten Hallo und
__________________Lesestoff: Bitte keine Hijackthis-Logfiles posten!!! Zitat:
Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
16.04.2014, 12:43 | #3 |
| Qone8 Virus / Malware entfernen Log auswerten Hallo, danke schon mal für die ICE - Antwort !
__________________Das mit den Log's in Code posten klappt nicht, zeigt mir Textlänge zu lang an Daher nochmal im Anhang gezipt die Logs... Mfg Edit: Die logs vom 29.03.14 wurden erstellt nachdem mehrmals ca. 10 Programme mein System gereinigt hatten !!! Aber wie schon erwähnt bin ich mir nicht sicher ob das System wirklich sauber ist. |
16.04.2014, 12:49 | #4 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Qone8 Virus / Malware entfernen Log auswerten Ich hab doch extra das geschrieben Zitat:
Warum bitte führst du auf eigene Faust combofix aus? Hier steht überall, dass es nur auf explizite Anweisung hin benutzt werden darf!
__________________ Logfiles bitte immer in CODE-Tags posten |
16.04.2014, 12:58 | #5 |
| Qone8 Virus / Malware entfernen Log auswerten Ok sorry, dann poste ich die Texte gleich in mehreren post's. Bin eben neu hier Was kann es denn für Auswirkungen haben das ich jetzt ComboFix ausgeführt hatte ? Hier die Log Files Adw Cleaner (29.03.14) Code:
ATTFilter # AdwCleaner v3.022 - Report created 29/03/2014 at 12:29:50 # Updated 13/03/2014 by Xplode # Operating System : Windows 7 Ultimate Service Pack 1 (64 bits) # Username : JuraJula - PCJURAJULA # Running from : C:\Users\JuraJula\Downloads\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Deleted : HKCU\Software\smarttweak ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16521 -\\ Mozilla Firefox v28.0 (de) [ File : C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\prefs.js ] ************************* AdwCleaner[R0].txt - [859 octets] - [29/03/2014 12:29:07] AdwCleaner[S0].txt - [739 octets] - [29/03/2014 12:29:50] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [798 octets] ########## Junkware Removal Tool (29.03.14) Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.3 (03.23.2014:1) OS: Windows 7 Ultimate x64 Ran by JuraJula on 29.03.2014 at 12:37:43,09 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\JuraJula\AppData\Roaming\microsoft\windows\start menu\programs\smarttweak software" ~~~ FireFox Emptied folder: C:\Users\JuraJula\AppData\Roaming\mozilla\firefox\profiles\w6098u8m.default\minidumps [1 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 29.03.2014 at 12:41:07,67 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 29.03.2014 Scan Time: 11:16:41 Logfile: VIRUS LOG 1.txt Administrator: Yes Version: 2.00.0.1000 Malware Database: v2014.03.29.01 Rootkit Database: v2014.03.27.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Chameleon: Disabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: JuraJula Scan Type: Threat Scan Result: Completed Objects Scanned: 241962 Time Elapsed: 5 min, 17 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Shuriken: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 28 Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\DrWatsonDisable\Instal.exe, Quarantined, [20e5ed1cb9c2d85e74709fca07facc34], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\DrWatsonDisable\Uninstal.exe, Quarantined, [0cf9fc0db7c459ddab395514bf4213ed], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\Hiber_off\Instal.exe, Quarantined, [0005a8615f1c86b0756f34352dd4cc34], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\Hiber_off\Uninstal.exe, Quarantined, [a85dde2b5b2038fe14d0f970bd44e020], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\IRQ8Priority\Instal.exe, Quarantined, [fb0a0efb4a3105317e669ccdd031fc04], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\IRQ8Priority\Uninstal.exe, Quarantined, [ba4b11f81f5c91a5885c91d8e31ed32d], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\LargeSystemCache\Instal.exe, Quarantined, [c045fa0f205b1224c61efe6b9e6321df], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\LargeSystemCache\Uninstal.exe, Quarantined, [d2336d9cb4c7102616ced2973cc5817f], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\NoReport\Instal.exe, Quarantined, [a85d20e9dd9e280e4e963831d03123dd], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\NoReport\Uninstal.exe, Quarantined, [966f1eebadcead89f3f1254450b1b749], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\PagingExecutive\Instal.exe, Quarantined, [61a4c544007b11250ada6ffaae5354ac], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\PagingExecutive\Uninstal.exe, Quarantined, [9a6bdb2e6219ec4ae9fbb7b2d22f9b65], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\UAC_off\Instal.exe, Quarantined, [ea1bc148abd09d99d01444252cd55ca4], Trojan.Dropped, C:\Users\Default\AppData\Local\Temp\RarSFX0\System speed\UAC_off\Uninstal.exe, Quarantined, [788d6c9d4b3075c1568e76f3867bbc44], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\DrWatsonDisable\Instal.exe, Quarantined, [ff068683a2d93df922c282e7f40d1de3], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\DrWatsonDisable\Uninstal.exe, Quarantined, [61a4dc2d43380333598b2b3e2cd52fd1], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\Hiber_off\Instal.exe, Quarantined, [44c1c8416417e155df0574f554ad4ab6], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\Hiber_off\Uninstal.exe, Quarantined, [eb1ab158d3a8d26424c084e5ce334cb4], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\IRQ8Priority\Instal.exe, Quarantined, [49bcea1f97e4c2748d57aebb8081c838], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\IRQ8Priority\Uninstal.exe, Quarantined, [9570a366aecdb2845b89a3c62cd5a759], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\LargeSystemCache\Instal.exe, Quarantined, [0ef748c1e7948aac3ba982e77f825aa6], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\LargeSystemCache\Uninstal.exe, Quarantined, [db2a0ffae09bd264a2425316c53c9a66], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\NoReport\Instal.exe, Quarantined, [7b8a13f6fb8042f4dc08f277e41de31d], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\NoReport\Uninstal.exe, Quarantined, [46bfc346e9929e98c32127428e73837d], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\PagingExecutive\Instal.exe, Quarantined, [20e5e425cdaefe38954f4b1e857c4fb1], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\PagingExecutive\Uninstal.exe, Quarantined, [b055e227f18aaf8700e4e287728fba46], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\UAC_off\Instal.exe, Quarantined, [33d267a2b1caac8a667e096047bafa06], Trojan.Dropped, C:\Users\JuraJula\AppData\Local\Temp\RarSFX0\System speed\UAC_off\Uninstal.exe, Quarantined, [02038683ef8c9e98a53fbeab20e121df], Physical Sectors: 0 (No malicious items detected) (end) Code:
ATTFilter ComboFix 14-03-24.01 - JuraJula 29.03.2014 12:05:56.1.4 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1251.7.1049.18.3959.2396 [GMT 0:00] Running from: c:\users\JuraJula\Downloads\ComboFix.exe SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Created a new restore point . . ((((((((((((((((((((((((( Files Created from 2014-02-28 to 2014-03-29 ))))))))))))))))))))))))))))))) . . 2014-03-29 11:41 . 2014-03-29 11:41 -------- d-----w- c:\programdata\HP 2014-03-29 11:08 . 2007-10-22 03:37 17928 ----a-w- c:\windows\SysWow64\X3DAudio1_2.dll 2014-03-29 01:38 . 2014-03-29 01:38 -------- d-----w- c:\program files (x86)\SmartDVB 2014-03-29 00:53 . 2014-03-29 00:53 -------- d-----w- c:\program files\CCleaner 2014-03-29 00:24 . 2014-03-29 00:24 -------- d-----w- c:\programdata\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 00:23 . 2014-03-29 00:23 -------- d-----w- c:\program files (x86)\DVBViewer Demo 2014-03-29 00:23 . 2014-03-29 00:23 -------- d-----w- c:\programdata\CMUV 2014-03-28 22:56 . 2014-03-28 22:56 164864 -c--a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe 2014-03-28 22:56 . 2014-03-28 22:56 167424 -c--a-w- c:\program files\Windows Media Player\wmplayer.exe 2014-03-28 22:56 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL 2014-03-28 22:56 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL 2014-03-28 22:56 . 2014-03-28 22:56 14631424 -c--a-w- c:\windows\system32\wmp.dll 2014-03-28 22:53 . 2014-03-28 22:53 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service 2014-03-28 22:50 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe 2014-03-28 22:49 . 2014-03-28 22:49 548864 -c--a-w- c:\windows\system32\vbscript.dll 2014-03-28 22:49 . 2014-03-28 22:49 454656 -c--a-w- c:\windows\SysWow64\vbscript.dll 2014-03-28 22:48 . 2014-03-28 22:48 -------- d-----w- c:\windows\de-DE 2014-03-28 22:47 . 2014-03-28 22:47 -------- d-----w- c:\windows\SysWow64\drivers\UMDF\de-DE 2014-03-28 22:47 . 2014-03-28 22:47 -------- d-----w- c:\windows\SysWow64\drivers\de-DE 2014-03-28 22:47 . 2014-03-28 22:47 -------- d-----w- c:\windows\SysWow64\0407 2014-03-28 22:47 . 2014-03-28 22:47 -------- d-----w- c:\windows\SysWow64\de 2014-03-28 22:47 . 2014-03-28 22:57 -------- d-----w- c:\windows\SysWow64\wbem\de-DE 2014-03-28 22:47 . 2014-03-28 22:47 -------- d-----w- c:\windows\system32\0407 2014-03-28 22:47 . 2014-03-28 22:57 -------- d-----w- c:\windows\system32\drivers\de-DE 2014-03-28 22:47 . 2014-03-28 22:47 -------- d-----w- c:\windows\system32\drivers\UMDF\de-DE 2014-03-28 22:46 . 2014-03-28 22:46 -------- d-----w- c:\windows\system32\de 2014-03-28 22:46 . 2014-03-28 22:57 -------- d-----w- c:\windows\system32\wbem\de-DE 2014-03-28 22:42 . 2014-03-28 22:50 3928064 -c--a-w- c:\windows\system32\d2d1.dll 2014-03-28 22:41 . 2014-03-28 22:49 202752 -c--a-w- c:\windows\system32\scrrun.dll 2014-03-28 22:41 . 2014-03-28 22:49 168960 -c--a-w- c:\windows\system32\wscript.exe 2014-03-28 22:41 . 2014-03-28 22:49 163840 -c--a-w- c:\windows\SysWow64\scrrun.dll 2014-03-28 22:41 . 2014-03-28 22:49 156160 -c--a-w- c:\windows\system32\cscript.exe 2014-03-28 22:41 . 2014-03-28 22:49 150016 -c--a-w- c:\windows\system32\wshom.ocx 2014-03-28 22:41 . 2014-03-28 22:49 141824 -c--a-w- c:\windows\SysWow64\wscript.exe 2014-03-28 22:41 . 2014-03-28 22:49 126976 -c--a-w- c:\windows\SysWow64\cscript.exe 2014-03-28 22:41 . 2014-03-28 22:49 121856 -c--a-w- c:\windows\SysWow64\wshom.ocx 2014-03-28 22:41 . 2014-03-28 22:49 1643520 -c--a-w- c:\windows\system32\DWrite.dll 2014-03-28 22:41 . 2014-03-28 22:49 1247744 -c--a-w- c:\windows\SysWow64\DWrite.dll 2014-03-28 22:40 . 2014-03-28 22:49 1424384 -c--a-w- c:\windows\system32\WindowsCodecs.dll 2014-03-28 22:40 . 2014-03-28 22:49 1230336 -c--a-w- c:\windows\SysWow64\WindowsCodecs.dll 2014-03-28 22:20 . 2014-03-28 22:20 -------- d-----w- C:\AWLCD_WORK 2014-03-28 19:15 . 2014-03-29 12:13 42496 ----a-w- c:\windows\system32\drivers\oem-drv64.sys 2014-03-28 19:15 . 2014-03-28 19:15 -------- d-----w- c:\windows\system32\OEM 2014-03-28 18:51 . 2014-03-28 18:51 -------- d-----w- c:\programdata\Intel 2014-03-28 18:49 . 2014-03-28 18:49 -------- d-----w- C:\Intel 2014-03-28 18:48 . 2012-09-19 03:57 881808 ----a-w- c:\windows\system32\RtkApi64.dll 2014-03-28 18:46 . 2012-09-19 03:57 62784 ----a-w- c:\windows\system32\drivers\HECIx64.sys 2014-03-28 18:45 . 2012-09-19 03:57 690832 ----a-w- c:\windows\system32\drivers\Rt630x64.sys 2014-03-28 18:45 . 2012-09-19 03:57 74344 ----a-w- c:\windows\system32\RtNicProp64.dll 2014-03-28 18:39 . 2014-03-28 18:48 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information 2014-03-28 18:39 . 2014-03-28 18:39 -------- d-----w- c:\programdata\Ralink Driver 2014-03-28 18:31 . 2014-03-28 18:31 -------- d-----w- c:\users\JuraJula 2014-03-28 18:31 . 2013-12-12 06:31 5549504 ----a-w- c:\windows\system32\xNtKrnl.exe 2014-03-28 18:31 . 2013-12-06 14:59 488584 ----a-w- c:\windows\system32\comparevers.exe 2014-03-28 18:31 . 2011-02-05 17:06 605552 ----a-w- c:\windows\system32\xOsLoad.exe 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\users\Default\Шаблоны 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\users\Default\Мои документы 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\users\Default\Главное меню 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\users\Все пользователи 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\programdata\Шаблоны 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\programdata\Избранное 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\programdata\Рабочий стол 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\programdata\Документы 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-sh--we c:\programdata\Главное меню 2014-03-28 18:30 . 2014-03-28 18:30 -------- d-----w- C:\Recovery 2014-03-28 18:29 . 2014-03-29 02:07 -------- d-----w- c:\windows\rescache 2014-03-28 18:19 . 2014-01-16 05:46 -------- d-----w- c:\users\Default\AppData\Roaming\Auslogics . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-01-16 13:54 . 2014-01-16 13:54 8338432 ----a-w- c:\windows\system32\spwizimg.dll 2014-01-16 13:53 . 2014-01-16 13:53 8338432 ----a-w- c:\windows\SysWow64\spwizimg.dll 2014-01-16 13:44 . 2014-01-16 13:44 27214336 ----a-w- c:\windows\SysWow64\imageres.dll 2014-01-16 13:43 . 2014-01-16 13:43 93944832 ----a-w- c:\windows\system32\imageres.dll 2014-01-16 04:25 . 2009-07-13 23:54 44544 ----a-w- c:\windows\system32\themeservice.dll 2014-01-16 04:25 . 2010-11-21 03:23 2851840 ----a-w- c:\windows\system32\themeui.dll 2014-01-16 04:25 . 2009-07-13 23:55 332288 ----a-w- c:\windows\system32\uxtheme.dll 2014-01-16 04:20 . 2014-01-16 04:20 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-01-16 04:20 . 2014-01-16 04:20 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl . . ------- Sigcheck ------- Note: Unsigned files aren't necessarily malware. . [-] 2013-11-24 . 54F3947A7F8F34BEBB95C356F29C3CFA . 3094528 . . [6.1.7600.16385] .. c:\windows\explorer.exe [7] 2013-11-24 . 332FEAB1435662FC6C672E25BEB37BE3 . 2871808 . . [6.1.7601.17567] .. c:\windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe [7] 2013-11-24 . 3B69712041F3D63605529BD66DC00C48 . 2871808 . . [6.1.7601.21669] .. c:\windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe [7] 2010-11-21 . AC4C51EB24AA95B77F705AB159189E24 . 2872320 . . [6.1.7601.17514] .. c:\windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled\ RocketDock.lnk - c:\program files (x86)\Racy Skin Pack\RocketDock\RocketDock.exe [2007-9-2 495616] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe [x] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x] R3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;c:\windows\system32\drivers\Synth3dVsc.sys;c:\windows\SYSNATIVE\drivers\Synth3dVsc.sys [x] R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 tsusbhub;Remote Deskotop USB Hub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x] S0 oem-drv64;OEM-SLP2.1 Driver (HPD64);c:\windows\system32\DRIVERS\oem-drv64.sys;c:\windows\SYSNATIVE\DRIVERS\oem-drv64.sys [x] S2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe;c:\program files (x86)\Microsoft\BingBar\7.1.362.0\BBSvc.exe [x] S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x] S3 IntcDAud;Аудио Intel(R) для дисплеев;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 IT9135BDA;IT9135 BDA Devices;c:\windows\system32\Drivers\IT9135BDA.sys;c:\windows\SYSNATIVE\Drivers\IT9135BDA.sys [x] S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x] . . --- Other Services/Drivers In Memory --- . *NewlyCreated* - MPSDRV *NewlyCreated* - WS2IFSL . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-09-19 13192848] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-09-19 170304] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-09-19 398656] "Persistence"="c:\windows\system32\igfxpers.exe" [2012-09-19 441152] . ------- Supplementary Scan ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm TCP: DhcpNameServer = 192.168.44.1 FF - ProfilePath - c:\users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\ FF - prefs.js: browser.startup.homepage - google.de . - - - - ORPHANS REMOVED - - - - . AddRemove-IT9130 DriverInstaller_12.2.3.1 - c:\temp\\DriverInstall64.exe . . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_38_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_38_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_38_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_38_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_38.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_38.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_38.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_38.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{6EF568F4-D437-4466-AA63-A3645136D93E}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}] @Denied: (A 2) (Everyone) @="IFlashBroker" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib] @="{6EF568F4-D437-4466-AA63-A3645136D93E}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}] @Denied: (A 2) (Everyone) @="IFlashBroker2" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\TypeLib] @="{6EF568F4-D437-4466-AA63-A3645136D93E}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Completion time: 2014-03-29 12:15:43 - machine was rebooted ComboFix-quarantined-files.txt 2014-03-29 12:15 . Pre-Run: 9 Verzeichnis(se), 124.618.416.128 Bytes frei Post-Run: 15 Verzeichnis(se), 124.476.764.160 Bytes frei . - - End Of File - - A3403DBC5A692B216C5808F86034831F A36C5E4F47E84449FF07ED3517B43A31 |
16.04.2014, 13:01 | #6 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Qone8 Virus / Malware entfernen Log auswertenZitat:
Wie bist du auf Combofix gekommen? Du musst ja einen unserer Bausteine gelesen haben, aber nicht vollständig. Wir posten immer diese Warnungen zu combofix! Was ist mit den FRST-Logs?
__________________ --> Qone8 Virus / Malware entfernen Log auswerten |
16.04.2014, 13:03 | #7 |
| Qone8 Virus / Malware entfernen Log auswerten Farbar (14.04.14) Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-04-2014 Ran by JuraJula (administrator) on PCJURAJULA on 16-04-2014 12:19:58 Running from C:\Users\JuraJula\Downloads Windows 7 Ultimate Service Pack 1 (X64) OS Language: Russian Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Blue Onion Software) C:\Windows\Lion Skin Pack\DeskDrive\DeskDrive.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Windows\Lion Skin Pack\RocketDock\RocketDock.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe () C:\Windows\Lion Skin Pack\WinLaunch\WinLaunch.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler64.exe (SHIROUZU Hiroaki) C:\Program Files\FastCopy\FastCopy.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-04-07] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1374936 2014-04-07] (Realtek Semiconductor) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [391152 2014-04-07] (Intel Corporation) HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe [771056 2014-04-07] (Intel Corporation) HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe [770032 2014-04-07] (Intel Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-25] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-08-16] (Intel Corporation) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-20] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [YouCam Service] => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [258576 2012-07-30] (CyberLink Corp.) HKLM-x32\...\Run: [HDD Regenerator] => "C:\Program Files (x86)\HDD Regenerator\Shell.exe" /1 HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [137352 2014-03-18] (Check Point Software Technologies Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1150701143-1759841707-2712710913-1000\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe [1475584 2010-11-21] (Microsoft Corporation) HKU\S-1-5-21-1150701143-1759841707-2712710913-1000\...\Run: [Power2GoExpress8] => C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [1707120 2012-07-20] (CyberLink Corp.) SSODL-x32: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - C:\Program Files (x86)\Stardock\Object Desktop\IconPackager\iprepair.dll (Stardock.net, Inc) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.zonealarm.com/?src=hp&tbid=HFA5&Lan=en&gu=fd97d3d839104a96a19da5253734eb4f&tu=10G9z00DO2D03M0&sku=&tstsId=&ver=& HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.qone8.com/web/?type=ds&ts=1396960268&from=smt&uid=TOSHIBAXDT01ACA100_82208ABHSXX82208ABHSX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.qone8.com/web/?type=ds&ts=1396960268&from=smt&uid=TOSHIBAXDT01ACA100_82208ABHSXX82208ABHSX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.qone8.com/web/?type=ds&ts=1396960268&from=smt&uid=TOSHIBAXDT01ACA100_82208ABHSXX82208ABHSX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.qone8.com/web/?type=ds&ts=1396960268&from=smt&uid=TOSHIBAXDT01ACA100_82208ABHSXX82208ABHSX&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {C6079CB8-BC7E-42C3-ABEA-7F72C7786263} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKLM - {C6079CB8-BC7E-42C3-ABEA-7F72C7786263} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKCU - DefaultScope {DFB7E3BE-F51A-4922-A211-81EC4536ECB8} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=HFA5&Lan=en&q={searchTerms}&gu=fd97d3d839104a96a19da5253734eb4f&tu=10G9z00DO2D03M0&sku=&tstsId=&ver=&&r=736 SearchScopes: HKCU - {C6079CB8-BC7E-42C3-ABEA-7F72C7786263} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKCU - {DFB7E3BE-F51A-4922-A211-81EC4536ECB8} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=HFA5&Lan=en&q={searchTerms}&gu=fd97d3d839104a96a19da5253734eb4f&tu=10G9z00DO2D03M0&sku=&tstsId=&ver=&&r=736 SearchScopes: HKCU - {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = hxxp://go.mail.ru/search?q={SearchTerms}&fr=ntg BHO-x32: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.29.17\bh\zonealarm.dll (Check Point Software Technologies LTD) Toolbar: HKLM-x32 - ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.29.17\zonealarmTlbr.dll (Check Point Software Technologies LTD) Tcpip\Parameters: [DhcpNameServer] 192.168.44.1 FireFox: ======== FF ProfilePath: C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default FF user.js: detected! => C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\user.js FF Homepage: hxxp://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\searchplugins\search_engine.xml FF SearchPlugin: C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\searchplugins\zonealarm.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-04-15] FF Extension: Adblock Plus - C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-08] FF StartMenuInternet: FIREFOX.EXE - firefox.exe ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG) R2 CyberLink PowerDVD 10 MS Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe [70952 2011-04-13] (CyberLink) R2 CyberLink PowerDVD 10 MS Service; C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe [312616 2011-04-13] (CyberLink) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [386344 2012-09-19] () R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [3558112 2014-03-18] (Check Point Software Technologies Ltd.) R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [81752 2014-02-23] (Check Point Software Technologies, Ltd.) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-25] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2014-02-25] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [27456 2012-08-16] (Intel Corporation) R3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [165504 2014-04-10] (ITE ) R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2013-12-24] (Kaspersky Lab ZAO) U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2013-12-24] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [489568 2013-12-24] (Kaspersky Lab ZAO) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99800 2014-04-07] (Intel Corporation) R0 oem-drv64; C:\Windows\System32\DRIVERS\oem-drv64.sys [42496 2014-04-16] (secr9tos) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [451480 2014-03-18] (Check Point Software Technologies Ltd.) S3 VGPU; System32\drivers\rdvgkmd.sys [X] Code:
ATTFilter ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-16 12:19 - 2014-04-16 12:20 - 00012653 _____ () C:\Users\JuraJula\Downloads\FRST.txt 2014-04-16 12:19 - 2014-04-16 12:19 - 02054144 _____ (Farbar) C:\Users\JuraJula\Downloads\FRST64.exe 2014-04-16 12:19 - 2014-04-16 12:19 - 00000000 ____D () C:\FRST 2014-04-16 11:09 - 2014-04-16 11:09 - 00007951 _____ () C:\Users\JuraJula\Desktop\hijackthis.log 2014-04-16 11:08 - 2014-04-16 11:08 - 00304857 _____ () C:\Users\JuraJula\Downloads\HijackThis_205.zip 2014-04-16 11:08 - 2013-11-29 14:14 - 00388608 _____ (Trend Micro Inc.) C:\Users\JuraJula\Desktop\HijackThis_205.exe 2014-04-16 10:43 - 2014-04-16 10:43 - 00000399 _____ () C:\Users\JuraJula\Desktop\Galaxy Micro SD (G) - 29,7GB (29,6).lnk 2014-04-15 21:16 - 2014-04-15 21:16 - 03782822 _____ (DownloadHelper ) C:\Users\JuraJula\Downloads\ConvertHelperSetup.exe 2014-04-15 21:16 - 2014-04-15 21:16 - 00000000 ____D () C:\Program Files (x86)\ConvertHelper 2014-04-15 21:15 - 2014-04-15 21:15 - 00000000 ____D () C:\Users\JuraJula\dwhelper 2014-04-11 10:00 - 2014-04-11 10:00 - 00007018 _____ () C:\Windows\PFRO.log 2014-04-11 02:36 - 2014-04-15 22:14 - 00003929 ____H () C:\Windows\SysWOW64\BTImages.dat 2014-04-11 01:04 - 2014-04-11 01:04 - 02236972 _____ () C:\Users\JuraJula\Downloads\PC-x512-Simple-copia.zip 2014-04-10 23:41 - 2014-04-10 23:48 - 00431135 _____ () C:\Windows\system32\Drivers\vsconfig.xml 2014-04-10 23:41 - 2013-12-24 23:33 - 07717984 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys 2014-04-10 23:40 - 2014-04-10 23:40 - 00000762 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk 2014-04-10 23:40 - 2014-04-10 23:40 - 00000634 _____ () C:\Windows\wmsetup.log 2014-04-10 23:40 - 2013-12-24 23:33 - 00489568 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2014-04-10 23:40 - 2013-12-24 23:33 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2014-04-10 23:39 - 2014-04-10 23:39 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\wmp11-windowsxp-x64-enu - CHIP-Downloader.exe 2014-04-10 23:36 - 2014-04-10 23:56 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Check Point Software Technologies LTD 2014-04-10 23:36 - 2014-04-10 23:40 - 00000000 ____D () C:\Program Files (x86)\CheckPoint 2014-04-10 23:36 - 2014-04-10 23:36 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\Users\Все пользователи\CheckPoint 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\ProgramData\CheckPoint 2014-04-10 23:34 - 2014-04-10 23:34 - 03356760 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zaSetupWeb_130_208_000.exe 2014-04-10 23:27 - 2014-04-10 23:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Windows SideBar 2014-04-10 23:22 - 2014-04-15 19:22 - 00003950 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-04-10 23:17 - 2014-04-15 21:44 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\vlc 2014-04-10 23:16 - 2014-04-10 23:16 - 00001080 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk 2014-04-10 23:16 - 2014-04-10 23:16 - 00000000 ____D () C:\Program Files\VideoLAN 2014-04-10 23:15 - 2014-04-10 23:15 - 25910056 _____ () C:\Users\JuraJula\Downloads\vlc-2.1.4-win64.exe 2014-04-10 22:20 - 2014-04-10 22:20 - 00000000 ____D () C:\Users\JuraJula\Documents\Avatar 2014-04-10 21:59 - 2014-04-10 21:59 - 00000000 ____D () C:\Users\JuraJula\Documents\CyberLink 2014-04-10 21:45 - 2014-04-16 10:43 - 00000312 _____ () C:\Users\JuraJula\Desktop\20053098 (F).lnk 2014-04-10 21:45 - 2014-04-15 19:19 - 00000397 _____ () C:\Users\JuraJula\Desktop\Speicherkarte (G) - 29,7GB (29,0).lnk 2014-04-10 21:44 - 2014-04-16 10:42 - 00000280 _____ () C:\Windows\setupact.log 2014-04-10 21:44 - 2014-04-10 21:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-10 21:43 - 2014-04-10 21:44 - 00296520 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-10 21:29 - 2014-04-10 22:04 - 00000000 ____D () C:\Program Files (x86)\HDD Regenerator 2014-04-10 21:27 - 2014-04-10 21:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\GetRightToGo 2014-04-10 21:27 - 2014-04-10 21:27 - 00368256 _____ (RegNow.com) C:\Users\JuraJula\Downloads\download_hr.exe 2014-04-10 21:19 - 2014-04-10 21:20 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo 2014-04-10 21:19 - 2014-04-10 21:19 - 02773064 _____ (Crystal Dew World ) C:\Users\JuraJula\Downloads\CrystalDiskInfo6_1_10-en.exe 2014-04-10 21:19 - 2014-04-10 21:19 - 00001190 _____ () C:\Users\JuraJula\Desktop\CrystalDiskInfo.lnk 2014-04-10 20:46 - 2014-04-10 22:48 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\FastCopy 2014-04-10 20:46 - 2014-04-10 20:46 - 00000999 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000969 _____ () C:\Users\JuraJula\Desktop\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Users\JuraJula\Desktop\Fast Copy 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Program Files\FastCopy 2014-04-10 20:45 - 2014-04-10 20:45 - 00427277 _____ () C:\Users\JuraJula\Downloads\FastCopy211_x64.zip 2014-04-10 20:36 - 2014-04-10 22:19 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\CyberLink 2014-04-10 20:36 - 2014-04-10 21:12 - 00000000 ____D () C:\Users\Public\CyberLink 2014-04-10 20:35 - 2014-04-10 20:35 - 26771088 _____ () C:\Users\JuraJula\Downloads\SeaToolsforWindowsSetup_1.2.0.10.exe 2014-04-10 20:35 - 2014-04-10 20:35 - 00000000 ____D () C:\Program Files (x86)\Seagate 2014-04-10 20:33 - 2014-04-10 20:33 - 15507456 _____ () C:\Users\JuraJula\Downloads\dban-2.2.8_i586.iso 2014-04-10 20:31 - 2014-04-10 20:32 - 147849216 _____ () C:\Users\JuraJula\Downloads\clonezilla-live-2.2.2-32-amd64.iso 2014-04-10 20:30 - 2014-04-16 10:43 - 00000000 ____D () C:\Users\JuraJula\Documents\Youcam 2014-04-10 20:30 - 2014-04-10 20:30 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\Clonezilla ISO Image 64 Bit - CHIP-Downloader.exe 2014-04-10 20:29 - 2014-04-10 20:29 - 00002040 _____ () C:\Users\Public\Desktop\HomeCinema.lnk 2014-04-10 20:27 - 2014-04-10 20:27 - 00001509 _____ () C:\Users\Public\Desktop\CyberLink PhotoDirector 3.lnk 2014-04-10 20:26 - 2014-04-10 21:44 - 00000000 ____D () C:\Users\Public\Documents\CyberLink 2014-04-10 20:25 - 2014-04-10 20:24 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-04-10 20:25 - 2014-04-10 20:24 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-04-10 20:25 - 2014-04-10 20:24 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-04-10 20:22 - 2014-04-10 20:24 - 00000000 ____D () C:\Program Files\CyberLink 2014-04-10 20:21 - 2014-04-10 20:29 - 00000000 ____D () C:\Users\Все пользователи\install_clap 2014-04-10 20:21 - 2014-04-10 20:29 - 00000000 ____D () C:\ProgramData\install_clap 2014-04-10 20:19 - 2014-04-10 20:30 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-04-10 20:18 - 2014-04-10 20:35 - 00000000 ____D () C:\Users\Все пользователи\CyberLink 2014-04-10 20:18 - 2014-04-10 20:35 - 00000000 ____D () C:\ProgramData\CyberLink 2014-04-10 20:18 - 2014-04-10 20:22 - 00000000 ____D () C:\Users\Все пользователи\CLSK 2014-04-10 20:18 - 2014-04-10 20:22 - 00000000 ____D () C:\ProgramData\CLSK 2014-04-10 20:18 - 2014-04-10 20:21 - 00000000 ____D () C:\Program Files (x86)\Medion MediaPack 3 2014-04-10 17:57 - 2014-04-10 17:57 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Intel Corporation 2014-04-10 17:49 - 2012-08-16 13:33 - 00645952 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys 2014-04-10 17:49 - 2012-08-16 13:33 - 00027456 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys 2014-04-10 17:44 - 2012-09-19 04:57 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2014-04-10 17:37 - 2014-04-10 17:37 - 00165504 _____ (ITE ) C:\Windows\system32\Drivers\IT9135BDA.sys 2014-04-10 17:05 - 2014-04-10 17:54 - 00000000 ____D () C:\Users\JuraJula\.aria2 2014-04-10 17:04 - 2014-04-10 17:04 - 00000000 ____D () C:\DriverPack Solution 2014-04-10 17:02 - 2014-04-10 17:02 - 10534760 _____ (Kuzyakov Artur ) C:\Users\JuraJula\Downloads\DRPSu13-Lite.exe 2014-04-10 16:52 - 2014-04-10 16:53 - 18207283 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\irst_int_aio7w8.exe 2014-04-10 16:52 - 2014-04-10 16:52 - 48584401 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\mnm_int_aio7w8.exe 2014-04-10 16:50 - 2014-04-10 16:50 - 02895209 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\cir_fin_aio7w8.exe 2014-04-10 16:39 - 2014-04-10 16:39 - 00229008 _____ () C:\Users\JuraJula\Downloads\MEDION_Treibersuche.exe 2014-04-10 16:38 - 2014-04-10 16:39 - 06879747 _____ () C:\Users\JuraJula\Downloads\USB3_Etron_Win7-64_Win7_Vista64_Vista_XP64_XP(v0.96_WHQL).zip 2014-04-10 16:29 - 2014-04-10 21:58 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Winamp 2014-04-10 16:29 - 2014-04-10 16:29 - 00000983 _____ () C:\Users\Public\Desktop\Winamp.lnk 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp Detect 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-04-10 16:25 - 2014-04-10 16:25 - 12855384 _____ (Nullsoft, Inc.) C:\Users\JuraJula\Downloads\winamp5666_full_de-de_b3516.exe 2014-04-09 23:45 - 2014-04-09 23:45 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TrojanHunter 2014-04-09 23:04 - 2014-04-09 23:04 - 23181137 _____ () C:\Users\JuraJula\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-09 22:43 - 2014-04-09 22:45 - 232528879 _____ () C:\Users\JuraJula\Downloads\antibotcd0112_chip.zip 2014-04-09 22:22 - 2014-04-09 22:22 - 01100288 _____ (Xara Group Ltd) C:\Windows\system32\xaradraw.dll 2014-04-09 22:13 - 2014-04-09 22:13 - 00532480 _____ (Trend Micro Incorporated) C:\Users\JuraJula\Downloads\cwshredder.exe 2014-04-09 22:02 - 2014-04-09 22:02 - 00388608 _____ (Trend Micro Inc.) C:\Users\JuraJula\Downloads\HijackThis.exe 2014-04-09 22:01 - 2014-04-09 22:01 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\JuraJula\Downloads\tdsskiller.exe 2014-04-09 22:00 - 2014-04-09 22:00 - 12589848 _____ (Malwarebytes Corp.) C:\Users\JuraJula\Downloads\mbar-1.07.0.1009.exe 2014-04-09 21:58 - 2014-04-09 21:58 - 04745728 _____ (AVAST Software) C:\Users\JuraJula\Downloads\aswMBR.exe 2014-04-09 21:53 - 2014-04-10 20:13 - 00000000 ____D () C:\Program Files (x86)\TrojanHunter 5.5 2014-04-09 21:53 - 2014-04-09 21:53 - 00059392 ____R () C:\Windows\SysWOW64\streamhlp.dll 2014-04-09 21:52 - 2014-04-09 21:52 - 05843488 _____ (Mischel Internet Security ) C:\Users\JuraJula\Downloads\TrojanHunterSetup_5.5_Build_1003.exe 2014-04-09 21:47 - 2014-04-09 21:47 - 01581384 _____ (ESET) C:\Users\JuraJula\Downloads\eset_smart_security_live_installer_.exe 2014-04-09 21:40 - 2014-04-09 21:44 - 00000000 ____D () C:\Windows\pss 2014-04-09 21:35 - 2014-04-09 21:35 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-04-09 21:34 - 2014-04-09 21:34 - 04787368 _____ (Piriform Ltd) C:\Users\JuraJula\Downloads\ccsetup412.exe 2014-04-09 21:34 - 2014-04-09 21:34 - 00709352 _____ ( ) C:\Users\JuraJula\Downloads\COMPUTER_BILD-Download-Manager_fuer_ccsetup412.exe 2014-04-09 21:07 - 2014-04-09 21:08 - 00000085 _____ () C:\Windows\wininit.ini 2014-04-09 20:58 - 2014-04-09 20:58 - 00000104 _____ () C:\Users\JuraJula\Desktop\System.lnk 2014-04-09 20:55 - 2014-04-09 20:55 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\LavasoftStatistics 2014-04-09 20:49 - 2014-04-10 22:18 - 00000000 ____D () C:\Users\JuraJula\Desktop\Anti-Spyware 2014-04-09 20:39 - 2014-04-09 20:47 - 00000000 ____D () C:\Users\JuraJula\Desktop\Browsers and Plugins 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\Users\Все пользователи\Lavasoft 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-04-09 20:33 - 2014-04-09 20:34 - 62689280 _____ () C:\Users\JuraJula\Downloads\eav_nt32_enu.msi 2014-04-09 20:32 - 2014-04-09 20:32 - 01725064 _____ () C:\Users\JuraJula\Downloads\Adaware_Installer_11.1.exe 2014-04-09 20:31 - 2014-04-09 20:32 - 43360992 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zafwSetup_130_208_000.exe 2014-04-09 20:16 - 2014-04-09 20:16 - 08989136 _____ () C:\Users\JuraJula\Downloads\VOXIP.zip 2014-04-09 20:09 - 2014-04-09 20:09 - 00001906 _____ () C:\Users\JuraJula\Desktop\IconPackager.lnk 2014-04-09 20:07 - 2014-04-09 20:07 - 01674242 _____ (Methlabs Productions ) C:\Users\JuraJula\Downloads\pg2-070130.exe 2014-04-09 20:04 - 2014-04-09 20:04 - 03098210 _____ () C:\Users\JuraJula\Downloads\tweaking.com_windows_repair_aio.zip 2014-04-09 20:04 - 2014-04-09 20:04 - 01933048 _____ (Bleeping Computer, LLC) C:\Users\JuraJula\Downloads\rkill.com 2014-04-09 20:03 - 2014-04-09 20:03 - 29393568 _____ (SUPERAntiSpyware) C:\Users\JuraJula\Downloads\SUPERAntiSpyware.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 23549440 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 17387008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 13551104 ____C (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 11745792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 05784064 ____C (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 04254720 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02767360 ____C (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02724864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-09 19:58 - 2014-04-09 19:59 - 02724864 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-09 19:58 - 2014-04-09 19:59 - 02260480 ____C (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02178048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02043904 ____C (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-09 19:58 - 2014-04-09 19:59 - 01967104 ____C (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-09 19:58 - 2014-04-09 19:59 - 01789440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 01400832 ____C (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 01143808 ____C (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00940032 ____C (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00846336 ____C (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00752640 ____C (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00704512 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00628736 ____C (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00592896 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00586240 ____C (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00574976 ____C (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00548352 ____C (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00524288 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00455168 ____C (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00453120 ____C (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00440832 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00367616 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00296960 ____C (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00244224 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00195584 ____C (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00164864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00139264 ____C (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00112128 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00111616 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00066048 ____C (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00061952 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00051200 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00051200 ____C (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00048640 ____C (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00043008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00038400 ____C (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00033792 ____C (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00032768 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00032256 ____C (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00004096 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-09 19:57 - 2014-04-09 19:58 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-09 19:56 - 2014-04-09 19:56 - 01163264 ____C (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 01114112 ____C (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00362496 ____C (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00243712 ____C (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00025600 ____C (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00016384 ____C (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00014336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00013312 ____C (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00007680 ____C (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00005120 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\Users\Все пользователи\Licenses 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\ProgramData\Licenses 2014-04-09 15:18 - 2011-11-04 05:13 - 01070352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX 2014-04-09 15:18 - 2009-03-24 12:52 - 00129872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTDFMT.DLL 2014-04-09 15:11 - 2014-04-09 15:11 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-04-09 15:10 - 2014-04-09 21:08 - 00000000 ____D () C:\Users\Все пользователи\Spybot - Search & Destroy 2014-04-09 15:10 - 2014-04-09 21:08 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-09 14:37 - 2014-04-09 15:34 - 00000000 ____D () C:\Users\JuraJula\Desktop\Theme Win 7 2014-04-09 14:36 - 2014-04-09 20:34 - 00000000 ____D () C:\Users\JuraJula\Desktop\Icon Win 7 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\Users\Все пользователи\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\ProgramData\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Users\Public\Documents\Stardock 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Program Files (x86)\Stardock 2014-04-09 14:29 - 2014-04-15 22:25 - 00000000 ____D () C:\Users\JuraJula\Desktop\AntiVIRUS 2014-04-09 13:53 - 2014-04-09 21:03 - 00000000 ____D () C:\Users\JuraJula\Documents\xwidget 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\Все пользователи\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\Documents\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\ProgramData\DonationCoder 2014-04-09 13:20 - 2014-04-09 15:10 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\maComfort 2014-04-09 13:18 - 2014-03-30 22:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-04-09 13:18 - 2014-03-28 23:55 - 01533440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-04-09 13:18 - 2013-11-24 06:29 - 00475136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-04-09 13:18 - 2010-11-21 04:25 - 02059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 00820224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 00749056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2014-04-09 13:18 - 2010-11-21 04:25 - 00256512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 02823168 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 02163712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 01590272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 01216000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 01187328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pmcsnap.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00997376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl 2014-04-09 13:18 - 2010-11-21 04:24 - 00839680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00419328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2014-04-09 13:18 - 2010-11-21 04:24 - 00294400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe 2014-04-09 13:18 - 2010-11-21 04:23 - 01471488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll 2014-04-09 13:18 - 2010-11-21 04:23 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2014-04-09 13:18 - 2009-07-14 02:16 - 01205760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2014-04-09 13:18 - 2009-07-14 02:16 - 00345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mycomput.dll 2014-04-09 13:18 - 2009-07-14 02:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miguiresource.dll 2014-04-09 13:18 - 2009-07-14 02:14 - 06333440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00614912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00577536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplaySwitch.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\control.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorcpl.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\telephon.cpl 2014-04-09 13:18 - 2009-07-14 02:09 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcint.dll 2014-04-09 13:17 - 2014-04-09 13:55 - 00000000 ___HD () C:\Windows\Lion Skin Pack 2014-04-09 13:17 - 2014-01-16 14:44 - 20008960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imageres.dll 2014-04-09 13:17 - 2013-11-24 08:07 - 01795584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-04-09 13:17 - 2013-11-24 07:04 - 02129920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-04-09 13:17 - 2010-11-21 04:25 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2014-04-09 13:17 - 2010-11-21 04:25 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 02430976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 01687040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 01369600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00991744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00844800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00462848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll 2014-04-09 13:17 - 2010-11-21 04:23 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll 2014-04-09 13:17 - 2010-11-21 04:23 - 00544256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 05139456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDORes.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 00534016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devmgr.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 00512000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\filemgmt.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.dll 2014-04-09 13:17 - 2009-07-14 02:14 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWGP.dll 2014-04-09 13:17 - 2009-07-14 02:06 - 09096704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmres.dll 2014-04-09 13:17 - 2009-07-14 02:06 - 00777216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagesp1.dll 2014-04-09 13:17 - 2009-07-14 02:04 - 01383424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comres.dll 2014-04-09 13:06 - 2014-04-09 13:06 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TuneUp Software 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\Users\Все пользователи\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\ProgramData\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 11:09 - 2014-04-09 11:09 - 00003148 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-04-08 17:03 - 2014-04-08 17:03 - 00000000 ____D () C:\Windows\Tasks\TaskDisabled 2014-04-08 16:55 - 2014-04-08 16:55 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00028672 _____ () C:\Windows\system32\config\SAM.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default\AppData\Roaming\IObit 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\IObit 2014-04-08 16:54 - 2014-04-08 16:54 - 00000000 _____ () C:\asc_rdflag 2014-04-08 16:50 - 2014-04-08 16:50 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00028672 _____ () C:\Windows\system32\config\SAM.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iobit 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\Users\Все пользователи\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 15:51 - 2014-04-08 17:25 - 00000000 ____D () C:\Users\Все пользователи\ProductData 2014-04-08 15:51 - 2014-04-08 17:25 - 00000000 ____D () C:\ProgramData\ProductData 2014-04-08 14:31 - 2013-11-24 08:07 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-04-08 14:31 - 2010-11-21 04:23 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2014-04-08 13:55 - 2014-04-08 13:55 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled 2014-04-08 13:34 - 2014-04-08 13:34 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\MetroSidebar 2014-04-08 13:31 - 2014-04-08 17:26 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\qone8 2014-04-08 13:31 - 2014-04-08 17:25 - 00000000 ___HD () C:\W7P_Backups 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\Users\Все пользователи\Start Orb Manager 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\ProgramData\Start Orb Manager 2014-04-08 10:27 - 2010-11-21 04:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer_backup.exe 2014-04-07 00:59 - 2014-04-07 16:15 - 00000418 _____ () C:\Windows\Tasks\AWC Update.job 2014-04-07 00:59 - 2014-04-07 01:00 - 00003764 _____ () C:\Windows\System32\Tasks\AWC Update 2014-04-07 00:35 - 2014-04-07 00:35 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-04-07 00:34 - 2014-04-07 00:34 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-04-07 00:34 - 2014-04-07 00:34 - 00099800 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-04-07 00:33 - 2014-04-07 00:33 - 00000000 ____D () C:\Program Files\Intel 2014-04-07 00:31 - 2014-04-07 00:31 - 25948160 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 20921344 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13856768 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13241856 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 12148224 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 11433984 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07784448 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07594992 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 06139904 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04448256 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04208640 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-04-07 00:31 - 2014-04-07 00:31 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03535872 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03202048 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02876416 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-04-07 00:31 - 2014-04-07 00:31 - 02384896 _____ () C:\Windows\system32\GfxRes.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02065920 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01815040 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00906224 _____ (Intel Corporation) C:\Windows\system32\igfxstarter.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00845296 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00770032 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00530928 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00527872 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00517632 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00514048 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00493056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00397808 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00396784 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00347136 _____ () C:\Windows\system32\igdmd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00280064 _____ () C:\Windows\SysWOW64\igdmd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-04-07 00:31 - 2014-04-07 00:31 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00266841 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00253021 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00234948 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00222208 _____ () C:\Windows\system32\igdde64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00200948 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00198502 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00192523 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3355.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00182272 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00180852 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00180758 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00178398 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178118 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178103 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00176743 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175734 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175481 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175231 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175005 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00174216 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173582 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173251 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173071 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172778 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172518 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00171658 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00168169 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166889 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166210 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00161534 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00160768 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00154816 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00153088 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00153043 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00135680 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00131584 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00029696 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00025600 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00002932 _____ () C:\Windows\system32\iglhxs64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\Users\Все пользователи\DP45977C.lfl 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-04-07 00:30 - 2014-04-07 00:30 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-04-07 00:30 - 2014-04-07 00:30 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 02100312 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-04-07 00:30 - 2014-04-07 00:30 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 48657408 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-04-07 00:29 - 2014-04-07 00:29 - 14715992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 03849304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-04-07 00:29 - 2014-04-07 00:29 - 02787032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02037336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01920600 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01022680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01014360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00732833 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-04-07 00:29 - 2014-04-07 00:29 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00378000 _____ (Realtek Semiconductor) C:\Windows\system32\RtkGuiCompLib.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00156888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-04-07 00:26 - 2014-04-07 00:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-04-07 00:22 - 2013-11-19 16:52 - 00034080 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe 2014-04-07 00:21 - 2014-03-10 18:17 - 00128288 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll 2014-04-07 00:20 - 2014-04-09 21:41 - 00002864 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (система) 2014-04-07 00:20 - 2014-04-08 17:26 - 00000000 ____D () C:\Users\Все пользователи\IObit 2014-04-07 00:20 - 2014-04-08 17:26 - 00000000 ____D () C:\ProgramData\IObit 2014-04-07 00:20 - 2014-04-08 16:41 - 00004855 _____ () C:\ASCInit.log 2014-04-07 00:07 - 2014-04-16 10:42 - 00000406 _____ () C:\Windows\Tasks\AWC AutoSweep.job 2014-04-07 00:07 - 2014-04-07 00:07 - 00002774 _____ () C:\Windows\System32\Tasks\AWC AutoSweep 2014-04-07 00:03 - 2014-04-07 00:03 - 00002768 _____ () C:\Windows\System32\Tasks\AWC Startup 2014-04-07 00:02 - 2014-04-16 10:42 - 00000400 _____ () C:\Windows\Tasks\AWC Startup.job 2014-04-07 00:02 - 2014-04-09 21:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\IObit 2014-04-04 19:16 - 2014-04-08 15:51 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iPod 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-04-04 19:16 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-03-31 12:53 - 2014-03-31 12:53 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice.lnk 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\OpenOffice 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Users\Все пользователи\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\ProgramData\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2014-03-31 11:05 - 2011-04-20 03:03 - 00120320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHJE.DLL 2014-03-31 11:05 - 2011-03-15 03:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BHJE.DLL 2014-03-31 11:05 - 2007-04-10 01:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2014-03-30 22:23 - 2014-04-09 20:30 - 20765696 _____ (Microsoft Corporation) C:\Windows\system32\imageres.dll 2014-03-30 22:23 - 2013-11-24 07:54 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32_temp.dll 2014-03-30 22:23 - 2013-11-24 06:05 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer_temp.exe 2014-03-30 22:23 - 2010-11-21 04:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer.old 2014-03-30 22:23 - 2010-11-21 04:24 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2014-03-30 22:23 - 2010-11-21 04:23 - 14174208 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-03-30 22:23 - 2009-07-14 02:39 - 06676480 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2014-03-30 22:23 - 2009-07-14 02:39 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2014-03-30 22:23 - 2009-07-14 02:38 - 00918528 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2014-03-30 22:23 - 2009-07-14 02:28 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\imagesp1.dll 2014-03-30 22:22 - 2010-11-21 04:24 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll.backup 2014-03-30 22:22 - 2010-11-21 04:24 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2014-03-30 22:22 - 2010-11-21 04:24 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2014-03-30 22:22 - 2010-11-21 04:24 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll 2014-03-30 22:22 - 2010-11-21 04:23 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2014-03-30 22:22 - 2009-07-14 02:11 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll.backup 2014-03-30 22:13 - 2014-03-30 22:13 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-03-30 22:12 - 2014-03-30 22:12 - 00001091 _____ () C:\DelFix.txt 2014-03-30 22:10 - 2014-03-30 22:11 - 06574592 ____C (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-03-30 22:10 - 2014-03-30 22:11 - 05694464 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Thunderbird 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-03-29 22:14 - 2014-03-29 22:14 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Avira 2014-03-29 22:12 - 2014-03-29 22:11 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-03-29 22:10 - 2014-03-29 22:10 - 00000000 ____D () C:\Users\Все пользователи\Avira 2014-03-29 22:10 - 2014-03-29 22:10 - 00000000 ____D () C:\ProgramData\Avira 2014-03-29 22:10 - 2014-03-29 22:10 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-03-29 22:10 - 2014-02-25 12:41 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-03-29 22:10 - 2014-02-25 12:41 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-03-29 22:10 - 2014-02-25 12:41 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-03-29 17:21 - 2014-03-29 17:21 - 06000640 _____ () C:\Program Files (x86)\GUT33C1.tmp 2014-03-29 17:21 - 2014-03-29 17:21 - 00000000 ____D () C:\Program Files (x86)\GUM33C0.tmp 2014-03-29 17:16 - 2014-03-29 17:16 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-03-29 17:15 - 2014-04-10 16:17 - 00000972 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-29 17:15 - 2014-04-10 16:17 - 00000968 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-29 17:15 - 2014-04-09 21:41 - 00003980 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-03-29 17:15 - 2014-04-09 21:41 - 00003728 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-03-29 17:15 - 2014-03-30 22:15 - 00000000 ____D () C:\Program Files (x86)\Google 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\Users\Все пользователи\mxnhytee.feu 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\ProgramData\mxnhytee.feu 2014-03-29 15:48 - 2014-03-30 22:13 - 00000000 ____D () C:\Users\Все пользователи\ProgDVB 2014-03-29 15:48 - 2014-03-30 22:13 - 00000000 ____D () C:\ProgramData\ProgDVB 2014-03-29 15:48 - 2014-03-30 22:13 - 00000000 ____D () C:\Program Files\ProgDVB 2014-03-29 13:41 - 2014-03-29 13:41 - 00000886 _____ () C:\Users\JuraJula\Documents\JRT.txt 2014-03-29 13:37 - 2014-04-08 17:27 - 00000000 ____D () C:\Windows\ERUNT 2014-03-29 13:18 - 2014-04-09 23:12 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes' Anti-Malware (portable) 2014-03-29 13:18 - 2014-04-09 23:12 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-03-29 13:15 - 2014-03-29 13:15 - 00018582 _____ () C:\Users\JuraJula\Documents\ComboFix.txt 2014-03-29 13:05 - 2014-04-08 17:27 - 00000000 ____D () C:\Windows\erdnt 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\Users\Все пользователи\HP 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\ProgramData\HP 2014-03-29 12:09 - 2014-04-11 00:00 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-29 12:09 - 2014-04-09 22:00 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-29 12:09 - 2014-04-07 00:01 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes.lnk 2014-03-29 12:09 - 2014-04-07 00:01 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-03-29 12:09 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-03-29 12:09 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-29 12:09 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-03-29 12:09 - 2008-07-31 11:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-03-29 12:09 - 2008-07-31 11:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-03-29 12:09 - 2008-07-10 12:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-03-29 12:09 - 2008-05-30 15:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-03-29 12:09 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-03-29 12:09 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-03-29 12:09 - 2008-05-30 15:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-03-29 12:09 - 2008-05-30 15:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-03-29 12:09 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-03-29 12:09 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-03-29 12:09 - 2008-05-30 15:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-03-29 12:09 - 2008-03-05 17:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-03-29 12:09 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-03-29 12:09 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-03-29 12:09 - 2008-03-05 17:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-03-29 12:09 - 2008-03-05 17:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-03-29 12:09 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-03-29 12:09 - 2008-02-06 00:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-03-29 12:09 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-03-29 12:09 - 2007-10-22 04:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-03-29 12:09 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-03-29 12:09 - 2007-10-12 16:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-03-29 12:09 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-03-29 12:09 - 2007-10-02 10:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-03-29 12:09 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-03-29 12:08 - 2007-10-22 04:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-03-29 12:08 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-03-29 12:08 - 2007-10-12 16:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-03-29 12:08 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-03-29 12:08 - 2007-07-20 01:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-03-29 12:08 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-03-29 12:08 - 2007-06-20 21:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-03-29 12:08 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-03-29 12:08 - 2007-04-04 19:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-03-29 12:08 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-03-29 12:08 - 2007-04-04 19:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-03-29 12:08 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-03-29 12:08 - 2007-03-15 17:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-03-29 12:08 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-03-29 12:08 - 2007-03-05 13:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-03-29 12:08 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-03-29 12:08 - 2007-01-24 16:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-03-29 12:08 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-03-29 12:08 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-03-29 12:08 - 2006-12-08 13:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-03-29 12:08 - 2006-09-28 17:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-03-29 12:08 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-03-29 12:08 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-03-29 12:08 - 2006-09-28 17:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-03-29 12:08 - 2006-07-28 10:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-03-29 12:08 - 2006-07-28 10:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-03-29 12:08 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-03-29 12:08 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-03-29 12:08 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-03-29 12:08 - 2006-05-31 08:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-03-29 12:08 - 2006-03-31 13:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-03-29 12:08 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-03-29 12:08 - 2006-03-31 13:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-03-29 12:08 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-03-29 12:08 - 2006-03-31 13:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-03-29 12:08 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-03-29 12:08 - 2006-02-03 09:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-03-29 12:08 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-03-29 12:08 - 2006-02-03 09:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-03-29 12:08 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-03-29 12:08 - 2006-02-03 09:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-03-29 12:08 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-03-29 12:08 - 2005-12-05 19:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-03-29 12:08 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-03-29 12:08 - 2005-07-22 20:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-03-29 12:08 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-03-29 12:08 - 2005-05-26 16:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-03-29 12:08 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-03-29 12:08 - 2005-03-18 18:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-03-29 12:08 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-03-29 12:08 - 2005-02-05 20:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-03-29 12:08 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-03-29 12:05 - 2014-03-29 12:09 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-03-29 11:35 - 2014-03-29 15:58 - 00000000 ____D () C:\Windows\Minidump 2014-03-29 01:53 - 2014-04-09 21:35 - 00000000 ____D () C:\Program Files\CCleaner 2014-03-29 01:53 - 2014-03-29 01:53 - 00002778 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-03-29 01:37 - 2014-03-30 22:12 - 01030144 ____C (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-03-29 01:37 - 2014-03-29 02:57 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-03-29 01:37 - 2014-03-29 02:57 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00658432 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00626176 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00594944 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00572416 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00553984 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00552960 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00528384 ____C (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00510976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00508928 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00488448 ____C (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00485888 ____C (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00428032 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00423936 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00390144 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\Все пользователи\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\ProgramData\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:23 - 2014-03-30 22:15 - 00000000 ____D () C:\Users\Все пользователи\CMUV 2014-03-29 01:23 - 2014-03-30 22:15 - 00000000 ____D () C:\ProgramData\CMUV 2014-03-28 23:56 - 2014-03-28 23:56 - 14631424 ____C (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-03-28 23:56 - 2014-03-28 23:56 - 11410432 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-03-28 23:56 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-03-28 23:56 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-03-28 23:55 - 2014-03-28 23:55 - 01147392 ____C (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00420864 ____C (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00083968 ____C (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00062976 ____C (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-03-28 23:55 - 2014-03-28 23:55 - 00053248 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00050176 ____C (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00044544 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00018944 ____C (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00017920 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00013824 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00012800 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-03-28 23:55 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2014-03-28 23:55 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2014-03-28 23:53 - 2014-03-30 22:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-03-28 23:53 - 2014-03-28 23:54 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Users\Все пользователи\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\ProgramData\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-28 23:50 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-03-28 23:49 - 2014-04-16 10:48 - 00689442 _____ () C:\Windows\system32\perfh007.dat 2014-03-28 23:49 - 2014-04-16 10:48 - 00148912 _____ () C:\Windows\system32\perfc007.dat 2014-03-28 23:49 - 2014-03-28 23:46 - 00295922 _____ () C:\Windows\system32\perfi007.dat 2014-03-28 23:49 - 2014-03-28 23:46 - 00038104 _____ () C:\Windows\system32\perfd007.dat 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\de 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\0407 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\system32\0407 2014-03-28 23:46 - 2014-03-28 23:46 - 00000000 ____D () C:\Windows\system32\de 2014-03-28 23:42 - 2014-03-29 00:09 - 00142336 ____C (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-03-28 23:42 - 2014-03-29 00:09 - 00123904 ____C (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-03-28 23:42 - 2014-03-28 23:55 - 00335360 ____C (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-03-28 23:42 - 2014-03-28 23:55 - 00301568 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-03-28 23:42 - 2014-03-28 23:55 - 00228864 ____C (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 01882112 ____C (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 01237504 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00484864 ____C (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00465920 ____C (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00420008 ____C () C:\Windows\SysWOW64\locale.nls 2014-03-28 23:42 - 2014-03-28 23:54 - 00420008 ____C () C:\Windows\system32\locale.nls 2014-03-28 23:42 - 2014-03-28 23:54 - 00417792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00381440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00159232 ____C (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00081408 ____C (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-03-28 23:42 - 2014-03-28 23:51 - 03156480 ____C (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-28 23:42 - 2014-03-28 23:50 - 03928064 ____C (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 03419136 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 02565120 ____C (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 01987584 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 00376768 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-03-28 23:42 - 2014-03-28 23:49 - 00624128 ____C (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-28 23:42 - 2014-03-28 23:49 - 00509440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-28 23:42 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-03-28 23:42 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-03-28 23:42 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-03-28 23:41 - 2014-03-28 23:49 - 01643520 ____C (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 01247744 ____C (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 00202752 ____C (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 00168960 ____C (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00163840 ____C (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 00156160 ____C (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00150016 ____C (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-03-28 23:41 - 2014-03-28 23:49 - 00141824 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00126976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00121856 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-03-28 23:40 - 2014-03-28 23:49 - 01424384 ____C (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-28 23:40 - 2014-03-28 23:49 - 01230336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-28 23:22 - 2014-03-28 23:22 - 00000000 ___HD () C:\Windows\Tasks\AutorunsDisabled 2014-03-28 23:20 - 2014-03-28 23:20 - 00000000 ____D () C:\AWLCD_WORK 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\WinBatch 2014-03-28 20:15 - 2014-04-16 10:42 - 00042496 _____ (secr9tos) C:\Windows\system32\Drivers\oem-drv64.sys 2014-03-28 20:03 - 2014-03-28 20:03 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-03-28 19:56 - 2014-03-28 19:56 - 00015786 _____ () C:\Windows\system32\results.xml 2014-03-28 19:51 - 2014-04-10 17:55 - 00000000 ____D () C:\Users\Все пользователи\Intel 2014-03-28 19:51 - 2014-04-10 17:55 - 00000000 ____D () C:\ProgramData\Intel 2014-03-28 19:50 - 2014-04-10 17:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-03-28 19:50 - 2014-04-07 00:31 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00624640 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00224256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-03-28 19:50 - 2014-04-07 00:31 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-03-28 19:50 - 2014-03-28 19:50 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-03-28 19:50 - 2012-09-19 04:57 - 12833280 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 12601856 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 11155968 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 11038208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 05899072 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2014-03-28 19:50 - 2012-09-19 04:57 - 00755048 _____ () C:\Windows\SysWOW64\igcodeckrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00755048 _____ () C:\Windows\system32\igcodeckrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00598780 _____ () C:\Windows\SysWOW64\igvpkrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00598780 _____ () C:\Windows\system32\igvpkrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00342528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-03-28 19:50 - 2012-09-19 04:57 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2843.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 00016896 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll 2014-03-28 19:49 - 2014-04-07 00:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Program Files\Realtek 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Intel 2014-03-28 19:49 - 2012-09-19 04:57 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00000029 ____R () C:\Windows\system32\Drivers\VERSION.DAT 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Users\Все пользователи\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\ProgramData\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\AmUStor 2014-03-28 19:48 - 2012-09-19 04:57 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 01706640 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00537456 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00524656 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00449392 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-03-28 19:46 - 2012-09-19 04:57 - 00062784 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-03-28 19:45 - 2012-09-19 04:57 - 00690832 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys 2014-03-28 19:41 - 2014-03-28 23:28 - 00005639 _____ () C:\Windows\system32\RaCoInst.log 2014-03-28 19:39 - 2014-04-10 20:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\Все пользователи\Ralink Driver 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\InstallShield 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\ProgramData\Ralink Driver 2014-03-28 19:31 - 2014-04-15 21:15 - 00000000 ____D () C:\Users\JuraJula 2014-03-28 19:31 - 2014-04-09 15:38 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-28 19:31 - 2014-04-09 11:14 - 00001178 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-28 19:31 - 2014-04-07 00:04 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-03-28 19:31 - 2014-03-28 19:31 - 00002784 _____ () C:\Windows\System32\Tasks\cvc 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Шаблоны 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Мои документы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Главное меню 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Моя музыка 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои рисунки 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои видеозаписи 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:31 - 2014-01-16 06:46 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Auslogics 2014-03-28 19:31 - 2014-01-16 05:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\WinRAR 2014-03-28 19:31 - 2014-01-16 05:22 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Macromedia 2014-03-28 19:31 - 2014-01-16 04:35 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Adobe 2014-03-28 19:31 - 2013-12-12 07:31 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\xNtKrnl.exe 2014-03-28 19:31 - 2011-02-05 18:06 - 02952704 _____ (Microsoft Corporation) C:\Windows\system32\xOsLoad.exe 2014-03-28 19:31 - 2011-02-05 18:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\xOsLoad~1.exe 2014-03-28 19:31 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\JuraJula\ntuser.ini 2014-03-28 19:31 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-03-28 19:31 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Мои документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 ____D () C:\Recovery 2014-03-28 19:29 - 2014-04-11 02:43 - 00000000 ____D () C:\Windows\rescache 2014-03-28 19:19 - 2014-04-16 10:46 - 01970257 _____ () C:\Windows\WindowsUpdate.log 2014-03-28 19:19 - 2014-04-07 00:18 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-03-28 19:19 - 2014-04-07 00:18 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-03-28 19:19 - 2014-01-16 07:29 - 00001405 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-28 19:19 - 2014-01-16 07:29 - 00001405 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-28 19:19 - 2014-01-16 06:46 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Auslogics 2014-03-28 19:19 - 2014-01-16 06:46 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Auslogics 2014-03-28 19:19 - 2014-01-16 05:33 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-03-28 19:19 - 2014-01-16 05:33 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-03-28 19:19 - 2014-01-16 05:23 - 00000000 ____D () C:\Users\Default\AppData\Roaming\WinRAR 2014-03-28 19:19 - 2014-01-16 05:23 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\WinRAR 2014-03-28 19:19 - 2014-01-16 05:22 - 00000229 _____ () C:\Users\Default\Desktop\Главная ddgroupclub.ru.url 2014-03-28 19:19 - 2014-01-16 05:22 - 00000229 _____ () C:\Users\Default User\Desktop\Главная ddgroupclub.ru.url 2014-03-28 19:19 - 2014-01-16 05:22 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-03-28 19:19 - 2014-01-16 05:22 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Adobe 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Adobe 2014-03-28 19:19 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Default\ntuser.ini 2014-03-28 19:17 - 2014-03-28 19:17 - 00000000 ____D () C:\Windows\CSC 2014-03-18 02:24 - 2014-03-18 02:24 - 00451480 _____ (Check Point Software Technologies Ltd.) C:\Windows\system32\Drivers\vsdatant.sys Geändert von DonJuanito (16.04.2014 um 13:12 Uhr) |
16.04.2014, 13:07 | #8 | |
| Qone8 Virus / Malware entfernen Log auswertenCode:
ATTFilter ==================== One Month Modified Files and Folders ======= 2014-04-16 12:20 - 2014-04-16 12:19 - 00012653 _____ () C:\Users\JuraJula\Downloads\FRST.txt 2014-04-16 12:19 - 2014-04-16 12:19 - 02054144 _____ (Farbar) C:\Users\JuraJula\Downloads\FRST64.exe 2014-04-16 12:19 - 2014-04-16 12:19 - 00000000 ____D () C:\FRST 2014-04-16 11:09 - 2014-04-16 11:09 - 00007951 _____ () C:\Users\JuraJula\Desktop\hijackthis.log 2014-04-16 11:08 - 2014-04-16 11:08 - 00304857 _____ () C:\Users\JuraJula\Downloads\HijackThis_205.zip 2014-04-16 10:50 - 2009-07-14 05:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-16 10:50 - 2009-07-14 05:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-16 10:48 - 2014-03-28 23:49 - 00689442 _____ () C:\Windows\system32\perfh007.dat 2014-04-16 10:48 - 2014-03-28 23:49 - 00148912 _____ () C:\Windows\system32\perfc007.dat 2014-04-16 10:48 - 2010-11-21 13:28 - 00724980 _____ () C:\Windows\system32\perfh019.dat 2014-04-16 10:48 - 2010-11-21 13:28 - 00150794 _____ () C:\Windows\system32\perfc019.dat 2014-04-16 10:48 - 2009-07-14 06:13 - 02489488 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-16 10:46 - 2014-03-28 19:19 - 01970257 _____ () C:\Windows\WindowsUpdate.log 2014-04-16 10:43 - 2014-04-16 10:43 - 00000399 _____ () C:\Users\JuraJula\Desktop\Galaxy Micro SD (G) - 29,7GB (29,6).lnk 2014-04-16 10:43 - 2014-04-10 21:45 - 00000312 _____ () C:\Users\JuraJula\Desktop\20053098 (F).lnk 2014-04-16 10:43 - 2014-04-10 20:30 - 00000000 ____D () C:\Users\JuraJula\Documents\Youcam 2014-04-16 10:42 - 2014-04-10 21:44 - 00000280 _____ () C:\Windows\setupact.log 2014-04-16 10:42 - 2014-04-07 00:07 - 00000406 _____ () C:\Windows\Tasks\AWC AutoSweep.job 2014-04-16 10:42 - 2014-04-07 00:02 - 00000400 _____ () C:\Windows\Tasks\AWC Startup.job 2014-04-16 10:42 - 2014-03-28 20:15 - 00042496 _____ (secr9tos) C:\Windows\system32\Drivers\oem-drv64.sys 2014-04-16 10:42 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-15 22:25 - 2014-04-09 14:29 - 00000000 ____D () C:\Users\JuraJula\Desktop\AntiVIRUS 2014-04-15 22:14 - 2014-04-11 02:36 - 00003929 ____H () C:\Windows\SysWOW64\BTImages.dat 2014-04-15 21:44 - 2014-04-10 23:17 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\vlc 2014-04-15 21:16 - 2014-04-15 21:16 - 03782822 _____ (DownloadHelper ) C:\Users\JuraJula\Downloads\ConvertHelperSetup.exe 2014-04-15 21:16 - 2014-04-15 21:16 - 00000000 ____D () C:\Program Files (x86)\ConvertHelper 2014-04-15 21:15 - 2014-04-15 21:15 - 00000000 ____D () C:\Users\JuraJula\dwhelper 2014-04-15 21:15 - 2014-03-28 19:31 - 00000000 ____D () C:\Users\JuraJula 2014-04-15 19:22 - 2014-04-10 23:22 - 00003950 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-04-15 19:19 - 2014-04-10 21:45 - 00000397 _____ () C:\Users\JuraJula\Desktop\Speicherkarte (G) - 29,7GB (29,0).lnk 2014-04-11 10:00 - 2014-04-11 10:00 - 00007018 _____ () C:\Windows\PFRO.log 2014-04-11 02:43 - 2014-03-28 19:29 - 00000000 ____D () C:\Windows\rescache 2014-04-11 01:04 - 2014-04-11 01:04 - 02236972 _____ () C:\Users\JuraJula\Downloads\PC-x512-Simple-copia.zip 2014-04-11 00:00 - 2014-03-29 12:09 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-10 23:56 - 2014-04-10 23:36 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Check Point Software Technologies LTD 2014-04-10 23:48 - 2014-04-10 23:41 - 00431135 _____ () C:\Windows\system32\Drivers\vsconfig.xml 2014-04-10 23:40 - 2014-04-10 23:40 - 00000762 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk 2014-04-10 23:40 - 2014-04-10 23:40 - 00000634 _____ () C:\Windows\wmsetup.log 2014-04-10 23:40 - 2014-04-10 23:36 - 00000000 ____D () C:\Program Files (x86)\CheckPoint 2014-04-10 23:39 - 2014-04-10 23:39 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\wmp11-windowsxp-x64-enu - CHIP-Downloader.exe 2014-04-10 23:36 - 2014-04-10 23:36 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\Users\Все пользователи\CheckPoint 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\ProgramData\CheckPoint 2014-04-10 23:34 - 2014-04-10 23:34 - 03356760 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zaSetupWeb_130_208_000.exe 2014-04-10 23:27 - 2014-04-10 23:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Windows SideBar 2014-04-10 23:16 - 2014-04-10 23:16 - 00001080 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk 2014-04-10 23:16 - 2014-04-10 23:16 - 00000000 ____D () C:\Program Files\VideoLAN 2014-04-10 23:15 - 2014-04-10 23:15 - 25910056 _____ () C:\Users\JuraJula\Downloads\vlc-2.1.4-win64.exe 2014-04-10 22:48 - 2014-04-10 20:46 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\FastCopy 2014-04-10 22:20 - 2014-04-10 22:20 - 00000000 ____D () C:\Users\JuraJula\Documents\Avatar 2014-04-10 22:19 - 2014-04-10 20:36 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\CyberLink 2014-04-10 22:18 - 2014-04-09 20:49 - 00000000 ____D () C:\Users\JuraJula\Desktop\Anti-Spyware 2014-04-10 22:04 - 2014-04-10 21:29 - 00000000 ____D () C:\Program Files (x86)\HDD Regenerator 2014-04-10 21:59 - 2014-04-10 21:59 - 00000000 ____D () C:\Users\JuraJula\Documents\CyberLink 2014-04-10 21:58 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Winamp 2014-04-10 21:44 - 2014-04-10 21:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-10 21:44 - 2014-04-10 21:43 - 00296520 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-10 21:44 - 2014-04-10 20:26 - 00000000 ____D () C:\Users\Public\Documents\CyberLink 2014-04-10 21:29 - 2014-04-10 21:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\GetRightToGo 2014-04-10 21:27 - 2014-04-10 21:27 - 00368256 _____ (RegNow.com) C:\Users\JuraJula\Downloads\download_hr.exe 2014-04-10 21:20 - 2014-04-10 21:19 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo 2014-04-10 21:19 - 2014-04-10 21:19 - 02773064 _____ (Crystal Dew World ) C:\Users\JuraJula\Downloads\CrystalDiskInfo6_1_10-en.exe 2014-04-10 21:19 - 2014-04-10 21:19 - 00001190 _____ () C:\Users\JuraJula\Desktop\CrystalDiskInfo.lnk 2014-04-10 21:12 - 2014-04-10 20:36 - 00000000 ____D () C:\Users\Public\CyberLink 2014-04-10 20:46 - 2014-04-10 20:46 - 00000999 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000969 _____ () C:\Users\JuraJula\Desktop\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Users\JuraJula\Desktop\Fast Copy 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Program Files\FastCopy 2014-04-10 20:45 - 2014-04-10 20:45 - 00427277 _____ () C:\Users\JuraJula\Downloads\FastCopy211_x64.zip 2014-04-10 20:35 - 2014-04-10 20:35 - 26771088 _____ () C:\Users\JuraJula\Downloads\SeaToolsforWindowsSetup_1.2.0.10.exe 2014-04-10 20:35 - 2014-04-10 20:35 - 00000000 ____D () C:\Program Files (x86)\Seagate 2014-04-10 20:35 - 2014-04-10 20:18 - 00000000 ____D () C:\Users\Все пользователи\CyberLink 2014-04-10 20:35 - 2014-04-10 20:18 - 00000000 ____D () C:\ProgramData\CyberLink 2014-04-10 20:35 - 2014-01-16 05:13 - 00000000 ____D () C:\Users\Все пользователи\Package Cache 2014-04-10 20:35 - 2014-01-16 05:13 - 00000000 ____D () C:\ProgramData\Package Cache 2014-04-10 20:33 - 2014-04-10 20:33 - 15507456 _____ () C:\Users\JuraJula\Downloads\dban-2.2.8_i586.iso 2014-04-10 20:32 - 2014-04-10 20:31 - 147849216 _____ () C:\Users\JuraJula\Downloads\clonezilla-live-2.2.2-32-amd64.iso 2014-04-10 20:30 - 2014-04-10 20:30 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\Clonezilla ISO Image 64 Bit - CHIP-Downloader.exe 2014-04-10 20:30 - 2014-04-10 20:19 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-04-10 20:30 - 2014-03-28 19:39 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-04-10 20:29 - 2014-04-10 20:29 - 00002040 _____ () C:\Users\Public\Desktop\HomeCinema.lnk 2014-04-10 20:29 - 2014-04-10 20:21 - 00000000 ____D () C:\Users\Все пользователи\install_clap 2014-04-10 20:29 - 2014-04-10 20:21 - 00000000 ____D () C:\ProgramData\install_clap 2014-04-10 20:27 - 2014-04-10 20:27 - 00001509 _____ () C:\Users\Public\Desktop\CyberLink PhotoDirector 3.lnk 2014-04-10 20:24 - 2014-04-10 20:25 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-04-10 20:24 - 2014-04-10 20:25 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-04-10 20:24 - 2014-04-10 20:25 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-04-10 20:24 - 2014-04-10 20:22 - 00000000 ____D () C:\Program Files\CyberLink 2014-04-10 20:22 - 2014-04-10 20:18 - 00000000 ____D () C:\Users\Все пользователи\CLSK 2014-04-10 20:22 - 2014-04-10 20:18 - 00000000 ____D () C:\ProgramData\CLSK 2014-04-10 20:21 - 2014-04-10 20:18 - 00000000 ____D () C:\Program Files (x86)\Medion MediaPack 3 2014-04-10 20:13 - 2014-04-09 21:53 - 00000000 ____D () C:\Program Files (x86)\TrojanHunter 5.5 2014-04-10 18:02 - 2014-01-16 05:07 - 02517880 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-04-10 17:57 - 2014-04-10 17:57 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Intel Corporation 2014-04-10 17:55 - 2014-03-28 19:51 - 00000000 ____D () C:\Users\Все пользователи\Intel 2014-04-10 17:55 - 2014-03-28 19:51 - 00000000 ____D () C:\ProgramData\Intel 2014-04-10 17:54 - 2014-04-10 17:05 - 00000000 ____D () C:\Users\JuraJula\.aria2 2014-04-10 17:50 - 2014-03-28 19:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-04-10 17:37 - 2014-04-10 17:37 - 00165504 _____ (ITE ) C:\Windows\system32\Drivers\IT9135BDA.sys 2014-04-10 17:04 - 2014-04-10 17:04 - 00000000 ____D () C:\DriverPack Solution 2014-04-10 17:02 - 2014-04-10 17:02 - 10534760 _____ (Kuzyakov Artur ) C:\Users\JuraJula\Downloads\DRPSu13-Lite.exe 2014-04-10 16:53 - 2014-04-10 16:52 - 18207283 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\irst_int_aio7w8.exe 2014-04-10 16:52 - 2014-04-10 16:52 - 48584401 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\mnm_int_aio7w8.exe 2014-04-10 16:50 - 2014-04-10 16:50 - 02895209 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\cir_fin_aio7w8.exe 2014-04-10 16:39 - 2014-04-10 16:39 - 00229008 _____ () C:\Users\JuraJula\Downloads\MEDION_Treibersuche.exe 2014-04-10 16:39 - 2014-04-10 16:38 - 06879747 _____ () C:\Users\JuraJula\Downloads\USB3_Etron_Win7-64_Win7_Vista64_Vista_XP64_XP(v0.96_WHQL).zip 2014-04-10 16:29 - 2014-04-10 16:29 - 00000983 _____ () C:\Users\Public\Desktop\Winamp.lnk 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp Detect 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-04-10 16:25 - 2014-04-10 16:25 - 12855384 _____ (Nullsoft, Inc.) C:\Users\JuraJula\Downloads\winamp5666_full_de-de_b3516.exe 2014-04-10 16:17 - 2014-03-29 17:15 - 00000972 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-04-10 16:17 - 2014-03-29 17:15 - 00000968 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-04-09 23:45 - 2014-04-09 23:45 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TrojanHunter 2014-04-09 23:12 - 2014-03-29 13:18 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes' Anti-Malware (portable) 2014-04-09 23:12 - 2014-03-29 13:18 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-04-09 23:04 - 2014-04-09 23:04 - 23181137 _____ () C:\Users\JuraJula\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-09 22:45 - 2014-04-09 22:43 - 232528879 _____ () C:\Users\JuraJula\Downloads\antibotcd0112_chip.zip 2014-04-09 22:22 - 2014-04-09 22:22 - 01100288 _____ (Xara Group Ltd) C:\Windows\system32\xaradraw.dll 2014-04-09 22:13 - 2014-04-09 22:13 - 00532480 _____ (Trend Micro Incorporated) C:\Users\JuraJula\Downloads\cwshredder.exe 2014-04-09 22:02 - 2014-04-09 22:02 - 00388608 _____ (Trend Micro Inc.) C:\Users\JuraJula\Downloads\HijackThis.exe 2014-04-09 22:01 - 2014-04-09 22:01 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\JuraJula\Downloads\tdsskiller.exe 2014-04-09 22:00 - 2014-04-09 22:00 - 12589848 _____ (Malwarebytes Corp.) C:\Users\JuraJula\Downloads\mbar-1.07.0.1009.exe 2014-04-09 22:00 - 2014-03-29 12:09 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-09 21:58 - 2014-04-09 21:58 - 04745728 _____ (AVAST Software) C:\Users\JuraJula\Downloads\aswMBR.exe 2014-04-09 21:53 - 2014-04-09 21:53 - 00059392 ____R () C:\Windows\SysWOW64\streamhlp.dll 2014-04-09 21:52 - 2014-04-09 21:52 - 05843488 _____ (Mischel Internet Security ) C:\Users\JuraJula\Downloads\TrojanHunterSetup_5.5_Build_1003.exe 2014-04-09 21:47 - 2014-04-09 21:47 - 01581384 _____ (ESET) C:\Users\JuraJula\Downloads\eset_smart_security_live_installer_.exe 2014-04-09 21:44 - 2014-04-09 21:40 - 00000000 ____D () C:\Windows\pss 2014-04-09 21:41 - 2014-04-07 00:20 - 00002864 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (система) 2014-04-09 21:41 - 2014-03-29 17:15 - 00003980 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-04-09 21:41 - 2014-03-29 17:15 - 00003728 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-04-09 21:35 - 2014-04-09 21:35 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-04-09 21:35 - 2014-03-29 01:53 - 00000000 ____D () C:\Program Files\CCleaner 2014-04-09 21:34 - 2014-04-09 21:34 - 04787368 _____ (Piriform Ltd) C:\Users\JuraJula\Downloads\ccsetup412.exe 2014-04-09 21:34 - 2014-04-09 21:34 - 00709352 _____ ( ) C:\Users\JuraJula\Downloads\COMPUTER_BILD-Download-Manager_fuer_ccsetup412.exe 2014-04-09 21:27 - 2014-04-07 00:02 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\IObit 2014-04-09 21:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-04-09 21:08 - 2014-04-09 21:07 - 00000085 _____ () C:\Windows\wininit.ini 2014-04-09 21:08 - 2014-04-09 15:10 - 00000000 ____D () C:\Users\Все пользователи\Spybot - Search & Destroy 2014-04-09 21:08 - 2014-04-09 15:10 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-09 21:03 - 2014-04-09 13:53 - 00000000 ____D () C:\Users\JuraJula\Documents\xwidget 2014-04-09 20:58 - 2014-04-09 20:58 - 00000104 _____ () C:\Users\JuraJula\Desktop\System.lnk 2014-04-09 20:55 - 2014-04-09 20:55 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\LavasoftStatistics 2014-04-09 20:47 - 2014-04-09 20:39 - 00000000 ____D () C:\Users\JuraJula\Desktop\Browsers and Plugins 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\Users\Все пользователи\Lavasoft 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-04-09 20:34 - 2014-04-09 20:33 - 62689280 _____ () C:\Users\JuraJula\Downloads\eav_nt32_enu.msi 2014-04-09 20:34 - 2014-04-09 14:36 - 00000000 ____D () C:\Users\JuraJula\Desktop\Icon Win 7 2014-04-09 20:32 - 2014-04-09 20:32 - 01725064 _____ () C:\Users\JuraJula\Downloads\Adaware_Installer_11.1.exe 2014-04-09 20:32 - 2014-04-09 20:31 - 43360992 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zafwSetup_130_208_000.exe 2014-04-09 20:30 - 2014-03-30 22:23 - 20765696 _____ (Microsoft Corporation) C:\Windows\system32\imageres.dll 2014-04-09 20:16 - 2014-04-09 20:16 - 08989136 _____ () C:\Users\JuraJula\Downloads\VOXIP.zip 2014-04-09 20:09 - 2014-04-09 20:09 - 00001906 _____ () C:\Users\JuraJula\Desktop\IconPackager.lnk 2014-04-09 20:07 - 2014-04-09 20:07 - 01674242 _____ (Methlabs Productions ) C:\Users\JuraJula\Downloads\pg2-070130.exe 2014-04-09 20:04 - 2014-04-09 20:04 - 03098210 _____ () C:\Users\JuraJula\Downloads\tweaking.com_windows_repair_aio.zip 2014-04-09 20:04 - 2014-04-09 20:04 - 01933048 _____ (Bleeping Computer, LLC) C:\Users\JuraJula\Downloads\rkill.com 2014-04-09 20:03 - 2014-04-09 20:03 - 29393568 _____ (SUPERAntiSpyware) C:\Users\JuraJula\Downloads\SUPERAntiSpyware.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 23549440 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 17387008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 13551104 ____C (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 11745792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 05784064 ____C (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 04254720 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02767360 ____C (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02724864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-09 19:59 - 2014-04-09 19:58 - 02724864 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-09 19:59 - 2014-04-09 19:58 - 02260480 ____C (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02178048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02043904 ____C (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-09 19:59 - 2014-04-09 19:58 - 01967104 ____C (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-09 19:59 - 2014-04-09 19:58 - 01789440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 01400832 ____C (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 01143808 ____C (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00940032 ____C (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00846336 ____C (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00752640 ____C (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00704512 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00628736 ____C (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00592896 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00586240 ____C (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00574976 ____C (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00548352 ____C (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00524288 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00455168 ____C (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00453120 ____C (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00440832 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00367616 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00296960 ____C (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00244224 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00195584 ____C (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00164864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00139264 ____C (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00112128 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00111616 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00066048 ____C (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00061952 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00051200 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00051200 ____C (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00048640 ____C (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00043008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00038400 ____C (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00033792 ____C (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00032768 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00032256 ____C (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00004096 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-09 19:58 - 2014-04-09 19:57 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-09 19:56 - 2014-04-09 19:56 - 01163264 ____C (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 01114112 ____C (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00362496 ____C (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00243712 ____C (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00025600 ____C (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00016384 ____C (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00014336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00013312 ____C (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00007680 ____C (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00005120 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-04-09 15:38 - 2014-03-28 19:31 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-09 15:34 - 2014-04-09 14:37 - 00000000 ____D () C:\Users\JuraJula\Desktop\Theme Win 7 2014-04-09 15:25 - 2010-11-21 13:39 - 00000000 ____D () C:\Windows\RemotePackages 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\Users\Все пользователи\Licenses 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\ProgramData\Licenses 2014-04-09 15:11 - 2014-04-09 15:11 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-04-09 15:10 - 2014-04-09 13:20 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\maComfort 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\Users\Все пользователи\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\ProgramData\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Users\Public\Documents\Stardock 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Program Files (x86)\Stardock 2014-04-09 13:55 - 2014-04-09 13:17 - 00000000 ___HD () C:\Windows\Lion Skin Pack 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\Все пользователи\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\Documents\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\ProgramData\DonationCoder 2014-04-09 13:20 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-04-09 13:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-04-09 13:18 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media 2014-04-09 13:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Cursors 2014-04-09 13:06 - 2014-04-09 13:06 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TuneUp Software 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\Users\Все пользователи\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\ProgramData\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 11:14 - 2014-03-28 19:31 - 00001178 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-09 11:09 - 2014-04-09 11:09 - 00003148 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-04-08 17:28 - 2014-01-16 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-04-08 17:28 - 2014-01-16 05:20 - 00000000 ____D () C:\Windows\system32\Macromed 2014-04-08 17:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Recovery 2014-04-08 17:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-04-08 17:27 - 2014-03-29 13:37 - 00000000 ____D () C:\Windows\ERUNT 2014-04-08 17:27 - 2014-03-29 13:05 - 00000000 ____D () C:\Windows\erdnt 2014-04-08 17:27 - 2009-07-14 05:45 - 00000000 ____D () C:\Windows\Setup 2014-04-08 17:26 - 2014-04-08 13:31 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\qone8 2014-04-08 17:26 - 2014-04-07 00:20 - 00000000 ____D () C:\Users\Все пользователи\IObit 2014-04-08 17:26 - 2014-04-07 00:20 - 00000000 ____D () C:\ProgramData\IObit 2014-04-08 17:25 - 2014-04-08 15:51 - 00000000 ____D () C:\Users\Все пользователи\ProductData 2014-04-08 17:25 - 2014-04-08 15:51 - 00000000 ____D () C:\ProgramData\ProductData 2014-04-08 17:25 - 2014-04-08 13:31 - 00000000 ___HD () C:\W7P_Backups 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Vss 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\spp 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Speech 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\spp 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\spool 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Speech 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\IME 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-04-08 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech 2014-04-08 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PLA 2014-04-08 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-04-08 17:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-04-08 17:03 - 2014-04-08 17:03 - 00000000 ____D () C:\Windows\Tasks\TaskDisabled 2014-04-08 16:55 - 2014-04-08 16:55 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00028672 _____ () C:\Windows\system32\config\SAM.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default\AppData\Roaming\IObit 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\IObit 2014-04-08 16:54 - 2014-04-08 16:54 - 00000000 _____ () C:\asc_rdflag 2014-04-08 16:50 - 2014-04-08 16:50 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00028672 _____ () C:\Windows\system32\config\SAM.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iobit 2014-04-08 16:44 - 2014-01-16 03:25 - 00000000 ____D () C:\Windows\Panther 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\Users\Все пользователи\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 16:41 - 2014-04-07 00:20 - 00004855 _____ () C:\ASCInit.log 2014-04-08 15:51 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Apple Computer 2014-04-08 13:55 - 2014-04-08 13:55 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled 2014-04-08 13:34 - 2014-04-08 13:34 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\MetroSidebar 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\Users\Все пользователи\Start Orb Manager 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\ProgramData\Start Orb Manager 2014-04-08 10:12 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-04-07 16:15 - 2014-04-07 00:59 - 00000418 _____ () C:\Windows\Tasks\AWC Update.job 2014-04-07 01:00 - 2014-04-07 00:59 - 00003764 _____ () C:\Windows\System32\Tasks\AWC Update 2014-04-07 00:54 - 2014-01-16 06:59 - 00000406 __RSH () C:\Users\Все пользователи\ntuser.pol 2014-04-07 00:54 - 2014-01-16 06:59 - 00000406 __RSH () C:\ProgramData\ntuser.pol 2014-04-07 00:35 - 2014-04-07 00:35 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-04-07 00:34 - 2014-04-07 00:34 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-04-07 00:34 - 2014-04-07 00:34 - 00099800 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-04-07 00:33 - 2014-04-07 00:33 - 00000000 ____D () C:\Program Files\Intel 2014-04-07 00:31 - 2014-04-07 00:31 - 25948160 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 20921344 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13856768 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13241856 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 12148224 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 11433984 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07784448 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07594992 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 06139904 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04448256 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04208640 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-04-07 00:31 - 2014-04-07 00:31 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03535872 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03202048 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02876416 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-04-07 00:31 - 2014-04-07 00:31 - 02384896 _____ () C:\Windows\system32\GfxRes.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02065920 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01815040 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00906224 _____ (Intel Corporation) C:\Windows\system32\igfxstarter.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00845296 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00770032 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00530928 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00527872 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00517632 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00514048 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00493056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00397808 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00396784 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00347136 _____ () C:\Windows\system32\igdmd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00280064 _____ () C:\Windows\SysWOW64\igdmd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-04-07 00:31 - 2014-04-07 00:31 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00266841 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00253021 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00234948 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00222208 _____ () C:\Windows\system32\igdde64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00200948 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00198502 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00192523 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3355.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00182272 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00180852 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00180758 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00178398 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178118 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178103 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00176743 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175734 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175481 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175231 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175005 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00174216 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173582 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173251 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173071 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172778 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172518 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00171658 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00168169 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166889 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166210 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00161534 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00160768 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00154816 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00153088 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00153043 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00135680 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00131584 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00029696 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00025600 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00002932 _____ () C:\Windows\system32\iglhxs64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\Users\Все пользователи\DP45977C.lfl 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-04-07 00:31 - 2014-03-28 19:50 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00624640 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00224256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-04-07 00:31 - 2014-03-28 19:50 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-04-07 00:30 - 2014-04-07 00:30 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-04-07 00:30 - 2014-04-07 00:30 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 02100312 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-04-07 00:30 - 2014-04-07 00:30 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-04-07 00:30 - 2014-03-28 19:49 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-04-07 00:29 - 2014-04-07 00:29 - 48657408 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-04-07 00:29 - 2014-04-07 00:29 - 14715992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 03849304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-04-07 00:29 - 2014-04-07 00:29 - 02787032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02037336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01920600 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01022680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01014360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00732833 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-04-07 00:29 - 2014-04-07 00:29 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00378000 _____ (Realtek Semiconductor) C:\Windows\system32\RtkGuiCompLib.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00156888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-04-07 00:26 - 2014-04-07 00:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-04-07 00:25 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-04-07 00:18 - 2014-03-28 19:19 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-07 00:18 - 2014-03-28 19:19 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-07 00:07 - 2014-04-07 00:07 - 00002774 _____ () C:\Windows\System32\Tasks\AWC AutoSweep 2014-04-07 00:04 - 2014-03-28 19:31 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-07 00:03 - 2014-04-07 00:03 - 00002768 _____ () C:\Windows\System32\Tasks\AWC Startup 2014-04-07 00:01 - 2014-03-29 12:09 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes.lnk 2014-04-07 00:01 - 2014-03-29 12:09 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iPod 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-04-03 09:51 - 2014-03-29 12:09 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-03 09:50 - 2014-03-29 12:09 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-04-02 14:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Branding 2014-03-31 12:53 - 2014-03-31 12:53 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice.lnk 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\OpenOffice 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Users\Все пользователи\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\ProgramData\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2014-03-31 03:51 - 2012-01-11 20:40 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-30 22:57 - 2014-03-28 23:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-03-30 22:15 - 2014-03-29 17:15 - 00000000 ____D () C:\Program Files (x86)\Google 2014-03-30 22:15 - 2014-03-29 01:23 - 00000000 ____D () C:\Users\Все пользователи\CMUV 2014-03-30 22:15 - 2014-03-29 01:23 - 00000000 ____D () C:\ProgramData\CMUV 2014-03-30 22:13 - 2014-03-30 22:13 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-03-30 22:13 - 2014-03-29 15:48 - 00000000 ____D () C:\Users\Все пользователи\ProgDVB 2014-03-30 22:13 - 2014-03-29 15:48 - 00000000 ____D () C:\ProgramData\ProgDVB 2014-03-30 22:13 - 2014-03-29 15:48 - 00000000 ____D () C:\Program Files\ProgDVB 2014-03-30 22:13 - 2014-01-16 05:14 - 00000000 ____D () C:\Program Files\Unlocker 2014-03-30 22:12 - 2014-04-09 13:18 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-03-30 22:12 - 2014-03-30 22:12 - 00001091 _____ () C:\DelFix.txt 2014-03-30 22:12 - 2014-03-29 01:37 - 01030144 ____C (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-03-30 22:11 - 2014-03-30 22:10 - 06574592 ____C (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-03-30 22:11 - 2014-03-30 22:10 - 05694464 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Thunderbird 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-03-29 22:14 - 2014-03-29 22:14 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Avira 2014-03-29 22:11 - 2014-03-29 22:12 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-03-29 22:10 - 2014-03-29 22:10 - 00000000 ____D () C:\Users\Все пользователи\Avira 2014-03-29 22:10 - 2014-03-29 22:10 - 00000000 ____D () C:\ProgramData\Avira 2014-03-29 22:10 - 2014-03-29 22:10 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-03-29 17:21 - 2014-03-29 17:21 - 06000640 _____ () C:\Program Files (x86)\GUT33C1.tmp 2014-03-29 17:21 - 2014-03-29 17:21 - 00000000 ____D () C:\Program Files (x86)\GUM33C0.tmp 2014-03-29 17:16 - 2014-03-29 17:16 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-03-29 15:58 - 2014-03-29 11:35 - 00000000 ____D () C:\Windows\Minidump 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\Users\Все пользователи\mxnhytee.feu 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\ProgramData\mxnhytee.feu 2014-03-29 13:41 - 2014-03-29 13:41 - 00000886 _____ () C:\Users\JuraJula\Documents\JRT.txt 2014-03-29 13:15 - 2014-03-29 13:15 - 00018582 _____ () C:\Users\JuraJula\Documents\ComboFix.txt 2014-03-29 13:15 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-03-29 13:13 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing 2014-03-29 13:13 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Globalization 2014-03-29 13:13 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\Users\Все пользователи\HP 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\ProgramData\HP 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-29 12:09 - 2014-03-29 12:05 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-03-29 02:57 - 2014-03-29 01:37 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-03-29 02:57 - 2014-03-29 01:37 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-03-29 01:53 - 2014-03-29 01:53 - 00002778 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-03-29 01:41 - 2014-03-29 01:37 - 00658432 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00626176 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00594944 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00572416 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00553984 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00552960 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00528384 ____C (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00510976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00508928 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00488448 ____C (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00485888 ____C (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00428032 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00423936 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00390144 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\Все пользователи\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\ProgramData\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 00:09 - 2014-03-28 23:42 - 00142336 ____C (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-03-29 00:09 - 2014-03-28 23:42 - 00123904 ____C (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-03-28 23:56 - 2014-03-28 23:56 - 14631424 ____C (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-03-28 23:56 - 2014-03-28 23:56 - 11410432 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-03-28 23:55 - 2014-04-09 13:18 - 01533440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 01147392 ____C (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00420864 ____C (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00083968 ____C (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00062976 ____C (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-03-28 23:55 - 2014-03-28 23:55 - 00053248 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00050176 ____C (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00044544 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00018944 ____C (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00017920 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00013824 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00012800 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-03-28 23:55 - 2014-03-28 23:42 - 00335360 ____C (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-03-28 23:55 - 2014-03-28 23:42 - 00301568 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-03-28 23:55 - 2014-03-28 23:42 - 00228864 ____C (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-28 23:54 - 2014-03-28 23:53 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Mozilla 2014-03-28 23:54 - 2014-03-28 23:42 - 01882112 ____C (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 01237504 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00484864 ____C (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00465920 ____C (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00420008 ____C () C:\Windows\SysWOW64\locale.nls 2014-03-28 23:54 - 2014-03-28 23:42 - 00420008 ____C () C:\Windows\system32\locale.nls 2014-03-28 23:54 - 2014-03-28 23:42 - 00417792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00381440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00159232 ____C (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00081408 ____C (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Users\Все пользователи\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\ProgramData\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-28 23:51 - 2014-03-28 23:42 - 03156480 ____C (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-28 23:50 - 2014-03-28 23:42 - 03928064 ____C (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 03419136 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 02565120 ____C (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 01987584 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 00376768 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-03-28 23:49 - 2014-03-28 23:42 - 00624128 ____C (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-28 23:49 - 2014-03-28 23:42 - 00509440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 01643520 ____C (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 01247744 ____C (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 00202752 ____C (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 00168960 ____C (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00163840 ____C (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 00156160 ____C (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00150016 ____C (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-03-28 23:49 - 2014-03-28 23:41 - 00141824 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00126976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00121856 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-03-28 23:49 - 2014-03-28 23:40 - 01424384 ____C (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-28 23:49 - 2014-03-28 23:40 - 01230336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-28 23:48 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-03-28 23:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-03-28 23:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing 2014-03-28 23:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\de 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\0407 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\system32\0407 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\winrm 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\WCN 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\slmgr 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-03-28 23:47 - 2009-07-14 06:37 - 00000000 ____D () C:\Windows\DigitalLocker 2014-03-28 23:47 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\IME 2014-03-28 23:46 - 2014-03-28 23:49 - 00295922 _____ () C:\Windows\system32\perfi007.dat 2014-03-28 23:46 - 2014-03-28 23:49 - 00038104 _____ () C:\Windows\system32\perfd007.dat 2014-03-28 23:46 - 2014-03-28 23:46 - 00000000 ____D () C:\Windows\system32\de 2014-03-28 23:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\com 2014-03-28 23:28 - 2014-03-28 19:41 - 00005639 _____ () C:\Windows\system32\RaCoInst.log 2014-03-28 23:22 - 2014-03-28 23:22 - 00000000 ___HD () C:\Windows\Tasks\AutorunsDisabled 2014-03-28 23:20 - 2014-03-28 23:20 - 00000000 ____D () C:\AWLCD_WORK 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\WinBatch 2014-03-28 20:16 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-03-28 20:16 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-03-28 20:03 - 2014-03-28 20:03 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-03-28 19:56 - 2014-03-28 19:56 - 00015786 _____ () C:\Windows\system32\results.xml 2014-03-28 19:50 - 2014-03-28 19:50 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Program Files\Realtek 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Intel 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Users\Все пользователи\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\ProgramData\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\AmUStor 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\Все пользователи\Ralink Driver 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\InstallShield 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\ProgramData\Ralink Driver 2014-03-28 19:31 - 2014-03-28 19:31 - 00002784 _____ () C:\Windows\System32\Tasks\cvc 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Шаблоны 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Мои документы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Главное меню 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Моя музыка 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои рисунки 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои видеозаписи 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Мои документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 ____D () C:\Recovery 2014-03-28 19:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-03-28 19:17 - 2014-03-28 19:17 - 00000000 ____D () C:\Windows\CSC 2014-03-18 02:24 - 2014-03-18 02:24 - 00451480 _____ (Check Point Software Technologies Ltd.) C:\Windows\system32\Drivers\vsdatant.sys ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2014-04-09 13:18] - [2010-11-21 04:24] - 2823168 ____A (Microsoft Corporation) B6CE2E64BDFED9A070A4D7D59C70AD2E C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit nointegritychecks: ==> Integrity Checks is disabled <===== ATTENTION! LastRegBack: 2014-04-09 12:06 ==================== End Of Log ============================ Zitat:
Mein System ist soweit in Ordnung denke ich. Nur bin ich besorgt ob nicht doch noch irgendwo was ist .. |
16.04.2014, 13:08 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Qone8 Virus / Malware entfernen Log auswerten Log ist unvollständig; vom ersten Teil fehlt der Header des Logs Außerdem fehlt die addition.txt
__________________ Logfiles bitte immer in CODE-Tags posten |
16.04.2014, 13:15 | #10 |
| Qone8 Virus / Malware entfernen Log auswerten Addition Text FRST Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-04-2014 Ran by JuraJula at 2014-04-16 12:21:14 Running from C:\Users\JuraJula\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: ZoneAlarm Antivirus (Enabled - Up to date) {DE038A5B-9EDD-18A9-2361-FF7D98D43730} AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ZoneAlarm Anti-Spyware (Enabled - Up to date) {65626BBF-B8E7-1727-19D1-C40FE3537D8D} FW: ZoneAlarm Firewall (Enabled) {E6380B7E-D4B2-19F1-083E-56486607704B} ==================== Installed Programs ====================== Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.38 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.43 - Adobe Systems Incorporated) Alcor Micro USB Card Reader Driver (HKLM-x32\...\InstallShield_{E2A88871-27CB-4643-AF5B-123F897D5C67}) (Version: 9.1716.6366.1700 - Alcor Micro Corp.) Alcor Micro USB Card Reader Driver (x32 Version: 9.1716.6366.1700 - Alcor Micro Corp.) Hidden Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Ashampoo AppLauncher (Medion) v.1.0.0 (HKLM-x32\...\Ashampoo AppLauncher (Medion)_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira) CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform) ConvertHelper 2.2 (HKLM-x32\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version: - DownloadHelper) CrystalDiskInfo 6.1.10 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.1.10 - Crystal Dew World) CyberLink LabelPrint 2.5 (x32 Version: 2.5.5415 - CyberLink Corp.) Hidden CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3111_44883 - CyberLink Corp.) Hidden CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.3124 - CyberLink Corp.) CyberLink PhotoDirector 3 (x32 Version: 3.0.3124 - CyberLink Corp.) Hidden CyberLink PhotoNow (HKLM-x32\...\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.7717 - CyberLink Corp.) CyberLink PhotoNow (x32 Version: 1.1.7717 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (x32 Version: 8.0.0.1920 - CyberLink Corp.) Hidden CyberLink PowerDirector (Version: 9.0.0.3815c - CyberLink Corp.) Hidden CyberLink PowerDVD 10 (x32 Version: 10.0.4125.02 - CyberLink Corp.) Hidden CyberLink PowerDVD Copy 1.5 (x32 Version: 1.5.2715b - CyberLink Corp.) Hidden CyberLink YouCam 5 (x32 Version: 5.0.1930 - CyberLink Corp.) Hidden Druckerdeinstallation für EPSON SX130 Series (HKLM\...\EPSON SX130 Series) (Version: - SEIKO EPSON Corporation) ExtendedRun Modern 1.8 (HKLM\...\W7Patcher) (Version: 1.8 - PainteR) Fintek_CIR (HKLM-x32\...\{7B732519-F534-4CD1-B0D3-FB2C70781444}) (Version: 2.00.0000 - Fintek_Inc) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden IconPackager (HKLM-x32\...\IconPackager) (Version: - Stardock Corporation) IconPackager (x32 Version: 5.00 - Stardock Corporation) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3355 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) IT9130 Driver v12.2.3.1 (HKLM-x32\...\IT9130 DriverInstaller_12.2.3.1) (Version: - ) iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.) Lion Skin Pack 13-X86 (HKLM-x32\...\Lion Skin Pack) (Version: 13-X86 - Publisher) Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Medion Home Cinema 10 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) Medion Home Cinema 10 (x32 Version: 10.1924 - CyberLink Corp.) Hidden Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (RUS) (Version: 4.5.50938 - Корпорация Майкрософт) Hidden Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Русский) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1049) (Version: 4.5.50938 - Корпорация Майкрософт) Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.42 False (Version: 8.0.50727.42 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.51011 False (Version: 8.0.51011 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.56336 False (Version: 8.0.56336 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.58298 False (Version: 8.0.58298 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.59192 False (Version: 8.0.59192 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False (x32 Version: 8.0.50727.42 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False (x32 Version: 8.0.51011 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False (x32 Version: 8.0.56336 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False (x32 Version: 8.0.58299 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False (x32 Version: 8.0.59193 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 False (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.0 False (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.218 False (Version: 9.0.21022.218 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30411 False (Version: 9.0.30411 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 False (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 False (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 False (Version: 9.0.30729.4048 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 False (Version: 9.0.30729.4148 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.5570 False (Version: 9.0.30729.5570 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False (x32 Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False (x32 Version: 9.0.21022.218 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False (x32 Version: 9.0.30411 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False (x32 Version: 9.0.30729.4048 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False (x32 Version: 9.0.30729.5570 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.30319 False (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.30319 False (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 False (x32 Version: 11.0.50727.1 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 False (x32 Version: 11.0.51106.1 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{dde2682b-961a-41ea-8d44-6005991b7947}) (Version: 11.0.60610.1 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 False (x32 Version: 11.0.51106.1 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{01db25f3-1b76-4d97-88c8-1c90634d88fb}) (Version: 11.0.60610.1 - Корпорация Майкрософт) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 False (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 False (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 False (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 False (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 False (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 False (x32 Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Mozilla Firefox 28.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 28.0 (x86 de)) (Version: 28.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.4.0 - Mozilla) Mozilla Thunderbird 24.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.4.0 (x86 de)) (Version: 24.4.0 - Mozilla) OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.40 - Ralink) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7161 - Realtek Semiconductor Corp.) SeaTools for Windows (HKLM-x32\...\SeaTools for Windows) (Version: - Seagate Technology) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) WinRAR 5.01 (64-разрядная) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ZoneAlarm Antivirus (x32 Version: 13.0.208.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Firewall (x32 Version: 13.0.208.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Free Antivirus + Firewall (HKLM-x32\...\ZoneAlarm Free Antivirus + Firewall) (Version: 13.0.208.000 - Check Point) ZoneAlarm Security (x32 Version: 13.0.208.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Security Toolbar (HKCU\...\zonealarm) (Version: 1.8.29.17 - Check Point Software Technologies LTD) ZoneAlarm Security Toolbar (HKLM-x32\...\zonealarm) (Version: 1.8.29.17 - Check Point Software Technologies LTD) ==================== Restore Points ========================= 10-04-2014 21:02:43 Removed HDD Regenerator. ==================== Hosts content: ========================== 2009-07-14 03:34 - 2014-03-29 13:13 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {1D8D946F-0368-4DCD-959D-17B05B926C97} - System32\Tasks\AWC Startup => C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe Task: {2612CB90-81CF-4C28-89A0-B2AAA459E086} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-03-18] (Piriform Ltd) Task: {27924D4E-94A6-43C3-9B14-4B5153F44752} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {2A455EB8-5EBE-4AE5-9C39-C696D4AB026A} - System32\Tasks\AWC Update => C:\Program Files (x86)\IObit\Advanced SystemCare 3\IObitUpdate.exe Task: {3C2B811C-993D-404B-A53A-26DAA0105D9A} - System32\Tasks\AWC AutoSweep => C:\Program Files (x86)\IObit\Advanced SystemCare 3\AutoSweep.exe Task: {78C03C59-3722-46E0-ACB7-AE361D1B7312} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.) Task: {A81EB099-CEFB-422A-8440-691816330145} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.) Task: {D6CB740F-75EC-4CA9-A43F-06C02D53E57E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-01-16] (Adobe Systems Incorporated) Task: {D869CB82-EDD9-461B-97C0-44882838F327} - System32\Tasks\Driver Booster SkipUAC (система) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe Task: {E9128345-320B-4BF4-A253-0815484796C2} - System32\Tasks\cvc => C:\Windows\System32\comparevers.exe Task: C:\Windows\Tasks\AWC AutoSweep.job => C:\Program Files (x86)\IObit\Advanced SystemCare 3\AutoSweep.exe Task: C:\Windows\Tasks\AWC Startup.job => C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe Task: C:\Windows\Tasks\AWC Update.job => C:\Program Files (x86)\IObit\Advanced SystemCare 3\IObitUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-10 20:24 - 2012-09-19 04:56 - 00386344 ____R () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2014-03-28 19:50 - 2012-09-19 04:57 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2007-09-02 11:28 - 2007-09-02 11:28 - 00495616 _____ () C:\Windows\Lion Skin Pack\RocketDock\RocketDock.exe 2012-01-06 10:38 - 2012-01-06 10:38 - 00485376 _____ () C:\Windows\Lion Skin Pack\WinLaunch\WinLaunch.exe 2014-03-29 22:10 - 2014-02-25 12:41 - 00394808 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2007-09-02 11:27 - 2007-09-02 11:27 - 00069632 _____ () C:\Windows\Lion Skin Pack\RocketDock\RocketDock.dll 2014-04-10 20:21 - 2012-06-08 04:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2014-04-10 17:50 - 2014-04-10 17:50 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\c2d51c14c3df104eccfffc7313d902b6\PSIClient.ni.dll 2014-03-28 23:53 - 2014-03-15 09:40 - 03642480 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData:$SS_DESCRIPTOR_LBP6VPVFLVGVTFB84LTSUTB92PFNPC7BPV4XFJDMNGTFB5V5NBJ5TBBJMT9Y0N96GV6PYM54U3M96HFNXH553Y8VPHKL606FVGEG1P6ERPVRDVT8JL9JJMPYV0PRUEF39P8XHH0TCFUL44FTBX4MLSWPBXRTF6VEKLFEJK35PNX0WHNGT9LSVEVV1VTVVTVMVV7 AlternateDataStreams: C:\Users\All Users:$SS_DESCRIPTOR_LBP6VPVFLVGVTFB84LTSUTB92PFNPC7BPV4XFJDMNGTFB5V5NBJ5TBBJMT9Y0N96GV6PYM54U3M96HFNXH553Y8VPHKL606FVGEG1P6ERPVRDVT8JL9JJMPYV0PRUEF39P8XHH0TCFUL44FTBX4MLSWPBXRTF6VEKLFEJK35PNX0WHNGT9LSVEVV1VTVVTVMVV7 AlternateDataStreams: C:\Users\Все пользователи:$SS_DESCRIPTOR_LBP6VPVFLVGVTFB84LTSUTB92PFNPC7BPV4XFJDMNGTFB5V5NBJ5TBBJMT9Y0N96GV6PYM54U3M96HFNXH553Y8VPHKL606FVGEG1P6ERPVRDVT8JL9JJMPYV0PRUEF39P8XHH0TCFUL44FTBX4MLSWPBXRTF6VEKLFEJK35PNX0WHNGT9LSVEVV1VTVVTVMVV7 AlternateDataStreams: C:\ProgramData\Application Data:$SS_DESCRIPTOR_LBP6VPVFLVGVTFB84LTSUTB92PFNPC7BPV4XFJDMNGTFB5V5NBJ5TBBJMT9Y0N96GV6PYM54U3M96HFNXH553Y8VPHKL606FVGEG1P6ERPVRDVT8JL9JJMPYV0PRUEF39P8XHH0TCFUL44FTBX4MLSWPBXRTF6VEKLFEJK35PNX0WHNGT9LSVEVV1VTVVTVMVV7 AlternateDataStreams: C:\ProgramData\TEMP:07BF512B AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 AlternateDataStreams: C:\ProgramData\TEMP:B755D674 AlternateDataStreams: C:\Users\Все пользователи\Application Data:$SS_DESCRIPTOR_LBP6VPVFLVGVTFB84LTSUTB92PFNPC7BPV4XFJDMNGTFB5V5NBJ5TBBJMT9Y0N96GV6PYM54U3M96HFNXH553Y8VPHKL606FVGEG1P6ERPVRDVT8JL9JJMPYV0PRUEF39P8XHH0TCFUL44FTBX4MLSWPBXRTF6VEKLFEJK35PNX0WHNGT9LSVEVV1VTVVTVMVV7 AlternateDataStreams: C:\Users\Все пользователи\TEMP:07BF512B AlternateDataStreams: C:\Users\Все пользователи\TEMP:5C321E34 AlternateDataStreams: C:\Users\Все пользователи\TEMP:B755D674 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Finderbar.lnk => C:\Windows\pss\Finderbar.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^maComfort.lnk => C:\Windows\pss\maComfort.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^UberIcon.lnk => C:\Windows\pss\UberIcon.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Winroll.lnk => C:\Windows\pss\Winroll.lnk.CommonStartup ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/16/2014 10:44:29 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2014 10:43:35 AM) (Source: Desk Drive) (User: ) Description: Das Objekt mit Nullwert muss einen Wert haben. Error: (04/15/2014 07:59:21 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (04/15/2014 07:20:30 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/11/2014 10:02:03 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/11/2014 02:38:26 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (04/11/2014 01:18:39 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: CLMSServer.exe, Version: 2.0.0.8731, Zeitstempel: 0x4d9440c5 Name des fehlerhaften Moduls: CLMediaServer.dll, Version: 2.0.0.8731, Zeitstempel: 0x4d94405f Ausnahmecode: 0xc0000005 Fehleroffset: 0x000165ad ID des fehlerhaften Prozesses: 0x604 Startzeit der fehlerhaften Anwendung: 0xCLMSServer.exe0 Pfad der fehlerhaften Anwendung: CLMSServer.exe1 Pfad des fehlerhaften Moduls: CLMSServer.exe2 Berichtskennung: CLMSServer.exe3 Error: (04/10/2014 10:04:10 PM) (Source: Microsoft-Windows-RestartManager) (User: PCJuraJula) Description: Die Anwendung oder der Dienst "hddrsrv" konnte nicht neu gestartet werden. Error: (04/10/2014 09:45:44 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/10/2014 08:18:30 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary SASKUTIL. System Error: Не удается найти указанный файл. . System errors: ============= Error: (04/16/2014 10:42:56 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Общий доступ к подключению к Интернету (ICS)" ist vom Dienst "Диспетчер подключений удаленного доступа" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (04/16/2014 10:42:54 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Диспетчер подключений удаленного доступа" ist vom Dienst "Telefonie" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (04/16/2014 10:42:41 AM) (Source: volmgr) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (04/16/2014 10:42:33 AM) (Source: volmgr) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (04/16/2014 10:42:33 AM) (Source: volmgr) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (04/15/2014 11:55:07 PM) (Source: DCOM) (User: ) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (04/15/2014 09:32:41 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR3. Error: (04/15/2014 09:32:34 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR3. Error: (04/15/2014 09:32:28 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR3. Error: (04/15/2014 09:32:22 PM) (Source: Disk) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR3. Microsoft Office Sessions: ========================= Error: (04/16/2014 10:44:29 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2014 10:43:35 AM) (Source: Desk Drive)(User: ) Description: Das Objekt mit Nullwert muss einen Wert haben. Error: (04/15/2014 07:59:21 PM) (Source: SideBySide)(User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\Temp\drivers\IT9130\IA64\DPInst.exe Error: (04/15/2014 07:20:30 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/11/2014 10:02:03 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/11/2014 02:38:26 AM) (Source: SideBySide)(User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\Temp\drivers\IT9130\IA64\DPInst.exe Error: (04/11/2014 01:18:39 AM) (Source: Application Error)(User: ) Description: CLMSServer.exe2.0.0.87314d9440c5CLMediaServer.dll2.0.0.87314d94405fc0000005000165ad60401cf54fda108f887C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exeC:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMediaServer.dlld3e8638e-c10e-11e3-aec6-eca86b230788 Error: (04/10/2014 10:04:10 PM) (Source: Microsoft-Windows-RestartManager)(User: PCJuraJula) Description: 0hrsrv.exehddrsrv03026217815960 Error: (04/10/2014 09:45:44 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/10/2014 08:18:30 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary SASKUTIL. System Error: Не удается найти указанный файл. CodeIntegrity Errors: =================================== Date: 2014-04-08 10:07:44.883 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:07:09.322 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:07:04.903 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:05:49.007 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:05:01.441 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:04:59.093 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:04:42.142 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:04:28.348 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:04:26.159 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-08 10:04:24.209 Description: Die Abbildintegritat der Datei "\Device\HarddiskVolume4\Windows\System32\shell32.dll" konnte nicht uberpruft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. |
16.04.2014, 13:32 | #11 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Qone8 Virus / Malware entfernen Log auswertenZitat:
Lesestoff: Warum wir Avira nicht mehr empfehlen Avira liefert seit einiger Zeit mit der Standardinstallation die Ask Toolbar mit aus. Diese Toolbar ist Voraussetzung dafür, dass der Webguard zuverlässig funktioniert. Die Ask Toolbar ist dafür bekannt, dass sie das Surfverhalten des Benutzers ausspioniert, um damit in letzter Konsequenz Geld zu verdienen. Daher wird diese Toolbar von uns als "schädlich" eingestuft. Mehr Informationen. Eine Sicherheitsfirma, die dem Benutzer praktisch ungefragt schädliche Software "unterjubelt", scheidet für uns daher aus. Wir empfehlen daher allen Nutzern von Avira aufgrund dieser Geschäftspraktik, der teilweise äußerst schlechten Erkennungsrate und der überaus nervtötenden Werbung Avira zu deinstallieren und auf ein alternatives Produkt auszuweichen. Solltest du dich zu einem Wechsel entscheiden, empfehlen wir dir nach der Deinstallation mit dem Avira-Cleaner alle Reste zu entfernen. Anti-Virusprogramme
__________________ Logfiles bitte immer in CODE-Tags posten |
16.04.2014, 14:06 | #12 |
| Qone8 Virus / Malware entfernen Log auswerten Ok die beiden Programme sind deinstalliert. Was kann ich den als alternative nehmen zusätzlich zu Malware Bytes Antimalware ? |
16.04.2014, 14:11 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Qone8 Virus / Malware entfernen Log auswerten Einfach mal meine Beiträge richtig und komplett lesen, dann erübrigt sich diese Frage. Adware/Junkware/Toolbars entfernen Alle Tools neu runterladen auf den Desktop! 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
16.04.2014, 14:50 | #14 |
| Qone8 Virus / Malware entfernen Log auswerten Alles nach Anleitung durchgeführt. Log FRST 16.04.14 Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-04-2014 01 Ran by JuraJula (administrator) on PCJURAJULA on 16-04-2014 14:47:58 Running from C:\Users\JuraJula\Desktop Windows 7 Ultimate Service Pack 1 (X64) OS Language: Russian Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe () C:\Windows\Lion Skin Pack\RocketDock\RocketDock.exe () C:\Windows\Lion Skin Pack\WinLaunch\WinLaunch.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-04-07] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1374936 2014-04-07] (Realtek Semiconductor) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-08-16] (Intel Corporation) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-20] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [YouCam Service] => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [258576 2012-07-30] (CyberLink Corp.) HKLM-x32\...\Run: [HDD Regenerator] => "C:\Program Files (x86)\HDD Regenerator\Shell.exe" /1 Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1150701143-1759841707-2712710913-1000\...\Run: [Power2GoExpress8] => C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [1707120 2012-07-20] (CyberLink Corp.) SSODL-x32: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - C:\Program Files (x86)\Stardock\Object Desktop\IconPackager\iprepair.dll (Stardock.net, Inc) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.zonealarm.com/?src=hp&tbid=HFA5&Lan=en&gu=fd97d3d839104a96a19da5253734eb4f&tu=10G9z00DO2D03M0&sku=&tstsId=&ver=& StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {C6079CB8-BC7E-42C3-ABEA-7F72C7786263} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKLM - {C6079CB8-BC7E-42C3-ABEA-7F72C7786263} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKCU - {C6079CB8-BC7E-42C3-ABEA-7F72C7786263} URL = hxxp://www.sm.de/?q={searchTerms} SearchScopes: HKCU - {DFB7E3BE-F51A-4922-A211-81EC4536ECB8} URL = hxxp://search.zonealarm.com/search?src=sp&tbid=HFA5&Lan=en&q={searchTerms}&gu=fd97d3d839104a96a19da5253734eb4f&tu=10G9z00DO2D03M0&sku=&tstsId=&ver=&&r=736 BHO-x32: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.29.17\bh\zonealarm.dll (Check Point Software Technologies LTD) Toolbar: HKLM-x32 - ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.29.17\zonealarmTlbr.dll (Check Point Software Technologies LTD) Tcpip\Parameters: [DhcpNameServer] 192.168.44.1 FireFox: ======== FF ProfilePath: C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default FF Homepage: hxxp://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\searchplugins\search_engine.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-04-15] FF Extension: Adblock Plus - C:\Users\JuraJula\AppData\Roaming\Mozilla\Firefox\Profiles\w6098u8m.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-08] FF StartMenuInternet: FIREFOX.EXE - firefox.exe ==================== Services (Whitelisted) ================= R2 CyberLink PowerDVD 10 MS Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe [70952 2011-04-13] (CyberLink) R2 CyberLink PowerDVD 10 MS Service; C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe [312616 2011-04-13] (CyberLink) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [386344 2012-09-19] () ==================== Drivers (Whitelisted) ==================== R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [27456 2012-08-16] (Intel Corporation) R3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [165504 2014-04-10] (ITE ) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99800 2014-04-07] (Intel Corporation) R0 oem-drv64; C:\Windows\System32\DRIVERS\oem-drv64.sys [42496 2014-04-16] (secr9tos) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-16 14:47 - 2014-04-16 14:47 - 02158080 _____ (Farbar) C:\Users\JuraJula\Desktop\FRST64.exe 2014-04-16 14:47 - 2014-04-16 14:47 - 00008525 _____ () C:\Users\JuraJula\Desktop\FRST.txt 2014-04-16 14:45 - 2014-04-16 14:45 - 00001084 _____ () C:\Users\JuraJula\Desktop\JRT.txt 2014-04-16 14:41 - 2014-04-16 14:41 - 01016261 _____ (Thisisu) C:\Users\JuraJula\Desktop\JRT.exe 2014-04-16 14:37 - 2014-04-16 14:37 - 00003518 _____ () C:\Users\JuraJula\Desktop\AdwCleaner 14.04.14.txt 2014-04-16 14:33 - 2014-04-16 14:34 - 00000000 ____D () C:\AdwCleaner 2014-04-16 14:32 - 2014-04-16 14:32 - 01426178 _____ () C:\Users\JuraJula\Desktop\adwcleaner.exe 2014-04-16 14:28 - 2014-04-16 14:36 - 00000399 _____ () C:\Users\JuraJula\Desktop\Galaxy Micro SD (G) - 29,7GB (29,6).lnk 2014-04-16 14:28 - 2014-04-16 14:36 - 00000312 _____ () C:\Users\JuraJula\Desktop\20053098 (F).lnk 2014-04-16 12:21 - 2014-04-16 12:21 - 00197305 _____ () C:\Users\JuraJula\Documents\FRST_16-04-2014_12-21-45.txt 2014-04-16 12:21 - 2014-04-16 12:21 - 00034001 _____ () C:\Users\JuraJula\Downloads\Addition.txt 2014-04-16 12:19 - 2014-04-16 14:47 - 00000000 ____D () C:\FRST 2014-04-16 12:19 - 2014-04-16 12:21 - 00197305 _____ () C:\Users\JuraJula\Downloads\FRST.txt 2014-04-16 12:19 - 2014-04-16 12:19 - 02054144 _____ (Farbar) C:\Users\JuraJula\Downloads\FRST64.exe 2014-04-16 11:09 - 2014-04-16 11:09 - 00007951 _____ () C:\Users\JuraJula\Desktop\hijackthis.log 2014-04-16 11:08 - 2014-04-16 11:08 - 00304857 _____ () C:\Users\JuraJula\Downloads\HijackThis_205.zip 2014-04-16 11:08 - 2013-11-29 14:14 - 00388608 _____ (Trend Micro Inc.) C:\Users\JuraJula\Desktop\HijackThis_205.exe 2014-04-15 21:16 - 2014-04-15 21:16 - 03782822 _____ (DownloadHelper ) C:\Users\JuraJula\Downloads\ConvertHelperSetup.exe 2014-04-15 21:16 - 2014-04-15 21:16 - 00000000 ____D () C:\Program Files (x86)\ConvertHelper 2014-04-15 21:15 - 2014-04-15 21:15 - 00000000 ____D () C:\Users\JuraJula\dwhelper 2014-04-11 10:00 - 2014-04-16 14:27 - 00017084 _____ () C:\Windows\PFRO.log 2014-04-11 02:36 - 2014-04-15 22:14 - 00003929 ____H () C:\Windows\SysWOW64\BTImages.dat 2014-04-11 01:04 - 2014-04-11 01:04 - 02236972 _____ () C:\Users\JuraJula\Downloads\PC-x512-Simple-copia.zip 2014-04-10 23:40 - 2014-04-10 23:40 - 00000634 _____ () C:\Windows\wmsetup.log 2014-04-10 23:39 - 2014-04-10 23:39 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\wmp11-windowsxp-x64-enu - CHIP-Downloader.exe 2014-04-10 23:36 - 2014-04-10 23:56 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Check Point Software Technologies LTD 2014-04-10 23:36 - 2014-04-10 23:36 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\Users\Все пользователи\CheckPoint 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\ProgramData\CheckPoint 2014-04-10 23:34 - 2014-04-10 23:34 - 03356760 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zaSetupWeb_130_208_000.exe 2014-04-10 23:27 - 2014-04-10 23:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Windows SideBar 2014-04-10 23:22 - 2014-04-15 19:22 - 00003950 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-04-10 23:17 - 2014-04-16 13:51 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\vlc 2014-04-10 23:16 - 2014-04-10 23:16 - 00000000 ____D () C:\Program Files\VideoLAN 2014-04-10 23:15 - 2014-04-10 23:15 - 25910056 _____ () C:\Users\JuraJula\Downloads\vlc-2.1.4-win64.exe 2014-04-10 22:20 - 2014-04-10 22:20 - 00000000 ____D () C:\Users\JuraJula\Documents\Avatar 2014-04-10 21:59 - 2014-04-10 21:59 - 00000000 ____D () C:\Users\JuraJula\Documents\CyberLink 2014-04-10 21:45 - 2014-04-15 19:19 - 00000397 _____ () C:\Users\JuraJula\Desktop\Speicherkarte (G) - 29,7GB (29,0).lnk 2014-04-10 21:44 - 2014-04-16 14:35 - 00000392 _____ () C:\Windows\setupact.log 2014-04-10 21:44 - 2014-04-10 21:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-10 21:43 - 2014-04-10 21:44 - 00296520 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-10 21:29 - 2014-04-10 22:04 - 00000000 ____D () C:\Program Files (x86)\HDD Regenerator 2014-04-10 21:27 - 2014-04-10 21:27 - 00368256 _____ (RegNow.com) C:\Users\JuraJula\Downloads\download_hr.exe 2014-04-10 21:19 - 2014-04-10 21:19 - 02773064 _____ (Crystal Dew World ) C:\Users\JuraJula\Downloads\CrystalDiskInfo6_1_10-en.exe 2014-04-10 20:46 - 2014-04-10 22:48 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\FastCopy 2014-04-10 20:46 - 2014-04-10 20:46 - 00000999 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000969 _____ () C:\Users\JuraJula\Desktop\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Users\JuraJula\Desktop\Fast Copy 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Program Files\FastCopy 2014-04-10 20:45 - 2014-04-10 20:45 - 00427277 _____ () C:\Users\JuraJula\Downloads\FastCopy211_x64.zip 2014-04-10 20:36 - 2014-04-10 22:19 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\CyberLink 2014-04-10 20:36 - 2014-04-10 21:12 - 00000000 ____D () C:\Users\Public\CyberLink 2014-04-10 20:35 - 2014-04-10 20:35 - 26771088 _____ () C:\Users\JuraJula\Downloads\SeaToolsforWindowsSetup_1.2.0.10.exe 2014-04-10 20:35 - 2014-04-10 20:35 - 00000000 ____D () C:\Program Files (x86)\Seagate 2014-04-10 20:33 - 2014-04-10 20:33 - 15507456 _____ () C:\Users\JuraJula\Downloads\dban-2.2.8_i586.iso 2014-04-10 20:31 - 2014-04-10 20:32 - 147849216 _____ () C:\Users\JuraJula\Downloads\clonezilla-live-2.2.2-32-amd64.iso 2014-04-10 20:30 - 2014-04-16 14:36 - 00000000 ____D () C:\Users\JuraJula\Documents\Youcam 2014-04-10 20:30 - 2014-04-10 20:30 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\Clonezilla ISO Image 64 Bit - CHIP-Downloader.exe 2014-04-10 20:29 - 2014-04-10 20:29 - 00002040 _____ () C:\Users\Public\Desktop\HomeCinema.lnk 2014-04-10 20:27 - 2014-04-10 20:27 - 00001509 _____ () C:\Users\Public\Desktop\CyberLink PhotoDirector 3.lnk 2014-04-10 20:26 - 2014-04-10 21:44 - 00000000 ____D () C:\Users\Public\Documents\CyberLink 2014-04-10 20:25 - 2014-04-10 20:24 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-04-10 20:25 - 2014-04-10 20:24 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-04-10 20:25 - 2014-04-10 20:24 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-04-10 20:22 - 2014-04-10 20:24 - 00000000 ____D () C:\Program Files\CyberLink 2014-04-10 20:21 - 2014-04-10 20:29 - 00000000 ____D () C:\Users\Все пользователи\install_clap 2014-04-10 20:21 - 2014-04-10 20:29 - 00000000 ____D () C:\ProgramData\install_clap 2014-04-10 20:19 - 2014-04-10 20:30 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-04-10 20:18 - 2014-04-10 20:35 - 00000000 ____D () C:\Users\Все пользователи\CyberLink 2014-04-10 20:18 - 2014-04-10 20:35 - 00000000 ____D () C:\ProgramData\CyberLink 2014-04-10 20:18 - 2014-04-10 20:22 - 00000000 ____D () C:\Users\Все пользователи\CLSK 2014-04-10 20:18 - 2014-04-10 20:22 - 00000000 ____D () C:\ProgramData\CLSK 2014-04-10 17:57 - 2014-04-10 17:57 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Intel Corporation 2014-04-10 17:49 - 2012-08-16 13:33 - 00645952 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys 2014-04-10 17:49 - 2012-08-16 13:33 - 00027456 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys 2014-04-10 17:44 - 2012-09-19 04:57 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2014-04-10 17:37 - 2014-04-10 17:37 - 00165504 _____ (ITE ) C:\Windows\system32\Drivers\IT9135BDA.sys 2014-04-10 17:05 - 2014-04-10 17:54 - 00000000 ____D () C:\Users\JuraJula\.aria2 2014-04-10 17:04 - 2014-04-10 17:04 - 00000000 ____D () C:\DriverPack Solution 2014-04-10 17:02 - 2014-04-10 17:02 - 10534760 _____ (Kuzyakov Artur ) C:\Users\JuraJula\Downloads\DRPSu13-Lite.exe 2014-04-10 16:52 - 2014-04-10 16:53 - 18207283 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\irst_int_aio7w8.exe 2014-04-10 16:52 - 2014-04-10 16:52 - 48584401 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\mnm_int_aio7w8.exe 2014-04-10 16:50 - 2014-04-10 16:50 - 02895209 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\cir_fin_aio7w8.exe 2014-04-10 16:39 - 2014-04-10 16:39 - 00229008 _____ () C:\Users\JuraJula\Downloads\MEDION_Treibersuche.exe 2014-04-10 16:38 - 2014-04-10 16:39 - 06879747 _____ () C:\Users\JuraJula\Downloads\USB3_Etron_Win7-64_Win7_Vista64_Vista_XP64_XP(v0.96_WHQL).zip 2014-04-10 16:29 - 2014-04-10 21:58 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Winamp 2014-04-10 16:29 - 2014-04-10 16:29 - 00000983 _____ () C:\Users\Public\Desktop\Winamp.lnk 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp Detect 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-04-10 16:25 - 2014-04-10 16:25 - 12855384 _____ (Nullsoft, Inc.) C:\Users\JuraJula\Downloads\winamp5666_full_de-de_b3516.exe 2014-04-09 23:45 - 2014-04-09 23:45 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TrojanHunter 2014-04-09 23:04 - 2014-04-09 23:04 - 23181137 _____ () C:\Users\JuraJula\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-09 22:43 - 2014-04-09 22:45 - 232528879 _____ () C:\Users\JuraJula\Downloads\antibotcd0112_chip.zip 2014-04-09 22:22 - 2014-04-09 22:22 - 01100288 _____ (Xara Group Ltd) C:\Windows\system32\xaradraw.dll 2014-04-09 22:13 - 2014-04-09 22:13 - 00532480 _____ (Trend Micro Incorporated) C:\Users\JuraJula\Downloads\cwshredder.exe 2014-04-09 22:02 - 2014-04-09 22:02 - 00388608 _____ (Trend Micro Inc.) C:\Users\JuraJula\Downloads\HijackThis.exe 2014-04-09 22:01 - 2014-04-09 22:01 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\JuraJula\Downloads\tdsskiller.exe 2014-04-09 22:00 - 2014-04-09 22:00 - 12589848 _____ (Malwarebytes Corp.) C:\Users\JuraJula\Downloads\mbar-1.07.0.1009.exe 2014-04-09 21:58 - 2014-04-09 21:58 - 04745728 _____ (AVAST Software) C:\Users\JuraJula\Downloads\aswMBR.exe 2014-04-09 21:53 - 2014-04-10 20:13 - 00000000 ____D () C:\Program Files (x86)\TrojanHunter 5.5 2014-04-09 21:53 - 2014-04-09 21:53 - 00059392 ____R () C:\Windows\SysWOW64\streamhlp.dll 2014-04-09 21:52 - 2014-04-09 21:52 - 05843488 _____ (Mischel Internet Security ) C:\Users\JuraJula\Downloads\TrojanHunterSetup_5.5_Build_1003.exe 2014-04-09 21:47 - 2014-04-09 21:47 - 01581384 _____ (ESET) C:\Users\JuraJula\Downloads\eset_smart_security_live_installer_.exe 2014-04-09 21:40 - 2014-04-09 21:44 - 00000000 ____D () C:\Windows\pss 2014-04-09 21:35 - 2014-04-09 21:35 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-04-09 21:34 - 2014-04-09 21:34 - 04787368 _____ (Piriform Ltd) C:\Users\JuraJula\Downloads\ccsetup412.exe 2014-04-09 21:34 - 2014-04-09 21:34 - 00709352 _____ ( ) C:\Users\JuraJula\Downloads\COMPUTER_BILD-Download-Manager_fuer_ccsetup412.exe 2014-04-09 21:07 - 2014-04-09 21:08 - 00000085 _____ () C:\Windows\wininit.ini 2014-04-09 20:58 - 2014-04-09 20:58 - 00000104 _____ () C:\Users\JuraJula\Desktop\System.lnk 2014-04-09 20:55 - 2014-04-09 20:55 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\LavasoftStatistics 2014-04-09 20:49 - 2014-04-10 22:18 - 00000000 ____D () C:\Users\JuraJula\Desktop\Anti-Spyware 2014-04-09 20:39 - 2014-04-09 20:47 - 00000000 ____D () C:\Users\JuraJula\Desktop\Browsers and Plugins 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\Users\Все пользователи\Lavasoft 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-04-09 20:33 - 2014-04-09 20:34 - 62689280 _____ () C:\Users\JuraJula\Downloads\eav_nt32_enu.msi 2014-04-09 20:32 - 2014-04-09 20:32 - 01725064 _____ () C:\Users\JuraJula\Downloads\Adaware_Installer_11.1.exe 2014-04-09 20:31 - 2014-04-09 20:32 - 43360992 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zafwSetup_130_208_000.exe 2014-04-09 20:16 - 2014-04-09 20:16 - 08989136 _____ () C:\Users\JuraJula\Downloads\VOXIP.zip 2014-04-09 20:09 - 2014-04-09 20:09 - 00001906 _____ () C:\Users\JuraJula\Desktop\IconPackager.lnk 2014-04-09 20:07 - 2014-04-09 20:07 - 01674242 _____ (Methlabs Productions ) C:\Users\JuraJula\Downloads\pg2-070130.exe 2014-04-09 20:04 - 2014-04-09 20:04 - 03098210 _____ () C:\Users\JuraJula\Downloads\tweaking.com_windows_repair_aio.zip 2014-04-09 20:04 - 2014-04-09 20:04 - 01933048 _____ (Bleeping Computer, LLC) C:\Users\JuraJula\Downloads\rkill.com 2014-04-09 20:03 - 2014-04-09 20:03 - 29393568 _____ (SUPERAntiSpyware) C:\Users\JuraJula\Downloads\SUPERAntiSpyware.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 23549440 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 17387008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 13551104 ____C (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 11745792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 05784064 ____C (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 04254720 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02767360 ____C (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02724864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-09 19:58 - 2014-04-09 19:59 - 02724864 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-09 19:58 - 2014-04-09 19:59 - 02260480 ____C (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02178048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 02043904 ____C (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-09 19:58 - 2014-04-09 19:59 - 01967104 ____C (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-09 19:58 - 2014-04-09 19:59 - 01789440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 01400832 ____C (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 01143808 ____C (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00940032 ____C (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00846336 ____C (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00752640 ____C (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00704512 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00628736 ____C (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00592896 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00586240 ____C (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00574976 ____C (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00548352 ____C (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00524288 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00455168 ____C (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00453120 ____C (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00440832 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00367616 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00296960 ____C (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00244224 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00195584 ____C (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00164864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00139264 ____C (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00112128 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00111616 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-09 19:58 - 2014-04-09 19:59 - 00066048 ____C (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00061952 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00051200 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00051200 ____C (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00048640 ____C (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00043008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00038400 ____C (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00033792 ____C (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00032768 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00032256 ____C (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-09 19:58 - 2014-04-09 19:59 - 00004096 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-09 19:57 - 2014-04-09 19:58 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-09 19:56 - 2014-04-09 19:56 - 01163264 ____C (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 01114112 ____C (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00362496 ____C (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00243712 ____C (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00025600 ____C (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00016384 ____C (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00014336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00013312 ____C (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00007680 ____C (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00005120 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\Users\Все пользователи\Licenses 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\ProgramData\Licenses 2014-04-09 15:18 - 2011-11-04 05:13 - 01070352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX 2014-04-09 15:18 - 2009-03-24 12:52 - 00129872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTDFMT.DLL 2014-04-09 15:11 - 2014-04-09 15:11 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-04-09 15:10 - 2014-04-09 21:08 - 00000000 ____D () C:\Users\Все пользователи\Spybot - Search & Destroy 2014-04-09 15:10 - 2014-04-09 21:08 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-09 14:37 - 2014-04-09 15:34 - 00000000 ____D () C:\Users\JuraJula\Desktop\Theme Win 7 2014-04-09 14:36 - 2014-04-09 20:34 - 00000000 ____D () C:\Users\JuraJula\Desktop\Icon Win 7 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\Users\Все пользователи\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\ProgramData\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Users\Public\Documents\Stardock 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Program Files (x86)\Stardock 2014-04-09 14:29 - 2014-04-15 22:25 - 00000000 ____D () C:\Users\JuraJula\Desktop\AntiVIRUS 2014-04-09 13:53 - 2014-04-09 21:03 - 00000000 ____D () C:\Users\JuraJula\Documents\xwidget 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\Все пользователи\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\Documents\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\ProgramData\DonationCoder 2014-04-09 13:20 - 2014-04-09 15:10 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\maComfort 2014-04-09 13:18 - 2014-03-30 22:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-04-09 13:18 - 2014-03-28 23:55 - 01533440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-04-09 13:18 - 2013-11-24 06:29 - 00475136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-04-09 13:18 - 2010-11-21 04:25 - 02059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 00820224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 00749056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2014-04-09 13:18 - 2010-11-21 04:25 - 00256512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2014-04-09 13:18 - 2010-11-21 04:25 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 02823168 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 02163712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 01590272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 01216000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 01187328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pmcsnap.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00997376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl 2014-04-09 13:18 - 2010-11-21 04:24 - 00839680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00419328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll 2014-04-09 13:18 - 2010-11-21 04:24 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2014-04-09 13:18 - 2010-11-21 04:24 - 00294400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe 2014-04-09 13:18 - 2010-11-21 04:24 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe 2014-04-09 13:18 - 2010-11-21 04:23 - 01471488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll 2014-04-09 13:18 - 2010-11-21 04:23 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2014-04-09 13:18 - 2009-07-14 02:16 - 01205760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2014-04-09 13:18 - 2009-07-14 02:16 - 00345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mycomput.dll 2014-04-09 13:18 - 2009-07-14 02:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miguiresource.dll 2014-04-09 13:18 - 2009-07-14 02:14 - 06333440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00614912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00577536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplaySwitch.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\control.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorcpl.exe 2014-04-09 13:18 - 2009-07-14 02:14 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\telephon.cpl 2014-04-09 13:18 - 2009-07-14 02:09 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcint.dll 2014-04-09 13:17 - 2014-04-09 13:55 - 00000000 ___HD () C:\Windows\Lion Skin Pack 2014-04-09 13:17 - 2014-01-16 14:44 - 20008960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imageres.dll 2014-04-09 13:17 - 2013-11-24 08:07 - 01795584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-04-09 13:17 - 2013-11-24 07:04 - 02129920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-04-09 13:17 - 2010-11-21 04:25 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2014-04-09 13:17 - 2010-11-21 04:25 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 02430976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 01687040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 01369600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00991744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00844800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00462848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll 2014-04-09 13:17 - 2010-11-21 04:24 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll 2014-04-09 13:17 - 2010-11-21 04:23 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll 2014-04-09 13:17 - 2010-11-21 04:23 - 00544256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 05139456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDORes.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 00534016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devmgr.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 00512000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\filemgmt.dll 2014-04-09 13:17 - 2009-07-14 02:15 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.dll 2014-04-09 13:17 - 2009-07-14 02:14 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWGP.dll 2014-04-09 13:17 - 2009-07-14 02:06 - 09096704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmres.dll 2014-04-09 13:17 - 2009-07-14 02:06 - 00777216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagesp1.dll 2014-04-09 13:17 - 2009-07-14 02:04 - 01383424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comres.dll 2014-04-09 13:06 - 2014-04-09 13:06 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TuneUp Software 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\Users\Все пользователи\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\ProgramData\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 11:09 - 2014-04-09 11:09 - 00003148 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-04-08 17:03 - 2014-04-08 17:03 - 00000000 ____D () C:\Windows\Tasks\TaskDisabled 2014-04-08 16:55 - 2014-04-08 16:55 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00028672 _____ () C:\Windows\system32\config\SAM.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default\AppData\Roaming\IObit 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\IObit 2014-04-08 16:54 - 2014-04-08 16:54 - 00000000 _____ () C:\asc_rdflag 2014-04-08 16:50 - 2014-04-08 16:50 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00028672 _____ () C:\Windows\system32\config\SAM.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iobit 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\Users\Все пользователи\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 15:51 - 2014-04-08 17:25 - 00000000 ____D () C:\Users\Все пользователи\ProductData 2014-04-08 15:51 - 2014-04-08 17:25 - 00000000 ____D () C:\ProgramData\ProductData 2014-04-08 14:31 - 2013-11-24 08:07 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-04-08 14:31 - 2010-11-21 04:23 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2014-04-08 13:55 - 2014-04-08 13:55 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled 2014-04-08 13:34 - 2014-04-08 13:34 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\MetroSidebar 2014-04-08 13:31 - 2014-04-08 17:26 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\qone8 2014-04-08 13:31 - 2014-04-08 17:25 - 00000000 ___HD () C:\W7P_Backups 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\Users\Все пользователи\Start Orb Manager 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\ProgramData\Start Orb Manager 2014-04-08 10:27 - 2010-11-21 04:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer_backup.exe 2014-04-07 00:59 - 2014-04-07 16:15 - 00000418 _____ () C:\Windows\Tasks\AWC Update.job 2014-04-07 00:59 - 2014-04-07 01:00 - 00003764 _____ () C:\Windows\System32\Tasks\AWC Update 2014-04-07 00:35 - 2014-04-07 00:35 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-04-07 00:34 - 2014-04-07 00:34 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-04-07 00:34 - 2014-04-07 00:34 - 00099800 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-04-07 00:33 - 2014-04-07 00:33 - 00000000 ____D () C:\Program Files\Intel 2014-04-07 00:31 - 2014-04-07 00:31 - 25948160 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 20921344 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13856768 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13241856 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 12148224 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 11433984 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07784448 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07594992 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 06139904 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04448256 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04208640 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-04-07 00:31 - 2014-04-07 00:31 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03535872 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03202048 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02876416 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-04-07 00:31 - 2014-04-07 00:31 - 02384896 _____ () C:\Windows\system32\GfxRes.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02065920 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01815040 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00906224 _____ (Intel Corporation) C:\Windows\system32\igfxstarter.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00845296 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00770032 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00530928 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00527872 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00517632 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00514048 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00493056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00397808 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00396784 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00347136 _____ () C:\Windows\system32\igdmd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00280064 _____ () C:\Windows\SysWOW64\igdmd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-04-07 00:31 - 2014-04-07 00:31 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00266841 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00253021 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00234948 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00222208 _____ () C:\Windows\system32\igdde64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00200948 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00198502 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00192523 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3355.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00182272 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00180852 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00180758 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00178398 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178118 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178103 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00176743 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175734 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175481 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175231 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175005 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00174216 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173582 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173251 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173071 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172778 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172518 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00171658 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00168169 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166889 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166210 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00161534 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00160768 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00154816 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00153088 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00153043 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00135680 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00131584 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00029696 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00025600 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00002932 _____ () C:\Windows\system32\iglhxs64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\Users\Все пользователи\DP45977C.lfl 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-04-07 00:30 - 2014-04-07 00:30 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-04-07 00:30 - 2014-04-07 00:30 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 02100312 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-04-07 00:30 - 2014-04-07 00:30 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 48657408 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-04-07 00:29 - 2014-04-07 00:29 - 14715992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 03849304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-04-07 00:29 - 2014-04-07 00:29 - 02787032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02037336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01920600 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01022680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01014360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00732833 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-04-07 00:29 - 2014-04-07 00:29 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00378000 _____ (Realtek Semiconductor) C:\Windows\system32\RtkGuiCompLib.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00156888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-04-07 00:26 - 2014-04-07 00:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-04-07 00:22 - 2013-11-19 16:52 - 00034080 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe 2014-04-07 00:21 - 2014-03-10 18:17 - 00128288 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll 2014-04-07 00:20 - 2014-04-09 21:41 - 00002864 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (система) 2014-04-07 00:20 - 2014-04-08 17:26 - 00000000 ____D () C:\Users\Все пользователи\IObit 2014-04-07 00:20 - 2014-04-08 17:26 - 00000000 ____D () C:\ProgramData\IObit 2014-04-07 00:20 - 2014-04-08 16:41 - 00004855 _____ () C:\ASCInit.log 2014-04-07 00:07 - 2014-04-16 14:35 - 00000406 _____ () C:\Windows\Tasks\AWC AutoSweep.job 2014-04-07 00:07 - 2014-04-07 00:07 - 00002774 _____ () C:\Windows\System32\Tasks\AWC AutoSweep 2014-04-07 00:03 - 2014-04-07 00:03 - 00002768 _____ () C:\Windows\System32\Tasks\AWC Startup 2014-04-07 00:02 - 2014-04-16 14:35 - 00000400 _____ () C:\Windows\Tasks\AWC Startup.job 2014-04-07 00:02 - 2014-04-09 21:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\IObit 2014-04-04 19:16 - 2014-04-08 15:51 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iPod 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-04-04 19:16 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-03-31 12:53 - 2014-03-31 12:53 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice.lnk 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\OpenOffice 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Users\Все пользователи\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\ProgramData\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2014-03-31 11:05 - 2011-04-20 03:03 - 00120320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHJE.DLL 2014-03-31 11:05 - 2011-03-15 03:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BHJE.DLL 2014-03-31 11:05 - 2007-04-10 01:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2014-03-30 22:23 - 2014-04-09 20:30 - 20765696 _____ (Microsoft Corporation) C:\Windows\system32\imageres.dll 2014-03-30 22:23 - 2013-11-24 07:54 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32_temp.dll 2014-03-30 22:23 - 2013-11-24 06:05 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer_temp.exe 2014-03-30 22:23 - 2010-11-21 04:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer.old 2014-03-30 22:23 - 2010-11-21 04:24 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2014-03-30 22:23 - 2010-11-21 04:23 - 14174208 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-03-30 22:23 - 2009-07-14 02:39 - 06676480 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2014-03-30 22:23 - 2009-07-14 02:39 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2014-03-30 22:23 - 2009-07-14 02:38 - 00918528 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2014-03-30 22:23 - 2009-07-14 02:28 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\imagesp1.dll 2014-03-30 22:22 - 2010-11-21 04:24 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll.backup 2014-03-30 22:22 - 2010-11-21 04:24 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2014-03-30 22:22 - 2010-11-21 04:24 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2014-03-30 22:22 - 2010-11-21 04:24 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll 2014-03-30 22:22 - 2010-11-21 04:23 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2014-03-30 22:22 - 2009-07-14 02:11 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll.backup 2014-03-30 22:13 - 2014-03-30 22:13 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-03-30 22:12 - 2014-03-30 22:12 - 00001091 _____ () C:\DelFix.txt 2014-03-30 22:10 - 2014-03-30 22:11 - 06574592 ____C (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-03-30 22:10 - 2014-03-30 22:11 - 05694464 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Thunderbird 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-03-29 17:21 - 2014-03-29 17:21 - 06000640 _____ () C:\Program Files (x86)\GUT33C1.tmp 2014-03-29 17:21 - 2014-03-29 17:21 - 00000000 ____D () C:\Program Files (x86)\GUM33C0.tmp 2014-03-29 17:16 - 2014-03-29 17:16 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-03-29 17:15 - 2014-04-10 16:17 - 00000972 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-29 17:15 - 2014-04-10 16:17 - 00000968 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-29 17:15 - 2014-04-09 21:41 - 00003980 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-03-29 17:15 - 2014-04-09 21:41 - 00003728 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-03-29 17:15 - 2014-03-30 22:15 - 00000000 ____D () C:\Program Files (x86)\Google 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\Users\Все пользователи\mxnhytee.feu 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\ProgramData\mxnhytee.feu 2014-03-29 15:48 - 2014-03-30 22:13 - 00000000 ____D () C:\Users\Все пользователи\ProgDVB 2014-03-29 15:48 - 2014-03-30 22:13 - 00000000 ____D () C:\ProgramData\ProgDVB 2014-03-29 15:48 - 2014-03-30 22:13 - 00000000 ____D () C:\Program Files\ProgDVB 2014-03-29 13:41 - 2014-03-29 13:41 - 00000886 _____ () C:\Users\JuraJula\Documents\JRT.txt 2014-03-29 13:37 - 2014-04-08 17:27 - 00000000 ____D () C:\Windows\ERUNT 2014-03-29 13:18 - 2014-04-09 23:12 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes' Anti-Malware (portable) 2014-03-29 13:18 - 2014-04-09 23:12 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-03-29 13:15 - 2014-03-29 13:15 - 00018582 _____ () C:\Users\JuraJula\Documents\ComboFix.txt 2014-03-29 13:05 - 2014-04-08 17:27 - 00000000 ____D () C:\Windows\erdnt 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\Users\Все пользователи\HP 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\ProgramData\HP 2014-03-29 12:09 - 2014-04-11 00:00 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-29 12:09 - 2014-04-09 22:00 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-29 12:09 - 2014-04-07 00:01 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes.lnk 2014-03-29 12:09 - 2014-04-07 00:01 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-03-29 12:09 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-03-29 12:09 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-29 12:09 - 2010-06-02 05:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-03-29 12:09 - 2010-06-02 05:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-03-29 12:09 - 2010-05-26 12:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-03-29 12:09 - 2010-02-04 11:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-03-29 12:09 - 2009-09-04 18:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-03-29 12:09 - 2009-09-04 18:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-03-29 12:09 - 2009-03-16 15:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-03-29 12:09 - 2009-03-09 16:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-03-29 12:09 - 2008-10-27 11:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-03-29 12:09 - 2008-10-10 05:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-03-29 12:09 - 2008-07-31 11:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-03-29 12:09 - 2008-07-31 11:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-03-29 12:09 - 2008-07-31 11:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-03-29 12:09 - 2008-07-10 12:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-03-29 12:09 - 2008-07-10 12:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-03-29 12:09 - 2008-05-30 15:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-03-29 12:09 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-03-29 12:09 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-03-29 12:09 - 2008-05-30 15:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-03-29 12:09 - 2008-05-30 15:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-03-29 12:09 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-03-29 12:09 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-03-29 12:09 - 2008-05-30 15:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-03-29 12:09 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-03-29 12:09 - 2008-03-05 17:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-03-29 12:09 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-03-29 12:09 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-03-29 12:09 - 2008-03-05 17:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-03-29 12:09 - 2008-03-05 17:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-03-29 12:09 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-03-29 12:09 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-03-29 12:09 - 2008-02-06 00:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-03-29 12:09 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-03-29 12:09 - 2007-10-22 04:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-03-29 12:09 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-03-29 12:09 - 2007-10-12 16:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-03-29 12:09 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-03-29 12:09 - 2007-10-02 10:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-03-29 12:09 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-03-29 12:08 - 2007-10-22 04:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-03-29 12:08 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-03-29 12:08 - 2007-10-12 16:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-03-29 12:08 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-03-29 12:08 - 2007-07-20 01:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-03-29 12:08 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-03-29 12:08 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-03-29 12:08 - 2007-06-20 21:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-03-29 12:08 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-03-29 12:08 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-03-29 12:08 - 2007-04-04 19:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-03-29 12:08 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-03-29 12:08 - 2007-04-04 19:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-03-29 12:08 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-03-29 12:08 - 2007-03-15 17:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-03-29 12:08 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-03-29 12:08 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-03-29 12:08 - 2007-03-05 13:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-03-29 12:08 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-03-29 12:08 - 2007-01-24 16:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-03-29 12:08 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-03-29 12:08 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-03-29 12:08 - 2006-12-08 13:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-03-29 12:08 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-03-29 12:08 - 2006-09-28 17:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-03-29 12:08 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-03-29 12:08 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-03-29 12:08 - 2006-09-28 17:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-03-29 12:08 - 2006-07-28 10:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-03-29 12:08 - 2006-07-28 10:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-03-29 12:08 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-03-29 12:08 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-03-29 12:08 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-03-29 12:08 - 2006-05-31 08:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-03-29 12:08 - 2006-03-31 13:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-03-29 12:08 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-03-29 12:08 - 2006-03-31 13:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-03-29 12:08 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-03-29 12:08 - 2006-03-31 13:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-03-29 12:08 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-03-29 12:08 - 2006-02-03 09:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-03-29 12:08 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-03-29 12:08 - 2006-02-03 09:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-03-29 12:08 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-03-29 12:08 - 2006-02-03 09:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-03-29 12:08 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-03-29 12:08 - 2005-12-05 19:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-03-29 12:08 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-03-29 12:08 - 2005-07-22 20:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-03-29 12:08 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-03-29 12:08 - 2005-05-26 16:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-03-29 12:08 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-03-29 12:08 - 2005-03-18 18:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-03-29 12:08 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-03-29 12:08 - 2005-02-05 20:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-03-29 12:08 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-03-29 12:05 - 2014-03-29 12:09 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-03-29 11:35 - 2014-03-29 15:58 - 00000000 ____D () C:\Windows\Minidump 2014-03-29 01:53 - 2014-04-09 21:35 - 00000000 ____D () C:\Program Files\CCleaner 2014-03-29 01:53 - 2014-03-29 01:53 - 00002778 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-03-29 01:37 - 2014-03-30 22:12 - 01030144 ____C (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-03-29 01:37 - 2014-03-29 02:57 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-03-29 01:37 - 2014-03-29 02:57 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00658432 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00626176 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00594944 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00572416 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00553984 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00552960 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00528384 ____C (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00510976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00508928 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-03-29 01:37 - 2014-03-29 01:41 - 00488448 ____C (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00485888 ____C (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00428032 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00423936 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00390144 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-03-29 01:37 - 2014-03-29 01:41 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\Все пользователи\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\ProgramData\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:23 - 2014-03-30 22:15 - 00000000 ____D () C:\Users\Все пользователи\CMUV 2014-03-29 01:23 - 2014-03-30 22:15 - 00000000 ____D () C:\ProgramData\CMUV 2014-03-28 23:56 - 2014-03-28 23:56 - 14631424 ____C (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-03-28 23:56 - 2014-03-28 23:56 - 11410432 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-03-28 23:56 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-03-28 23:56 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-03-28 23:55 - 2014-03-28 23:55 - 01147392 ____C (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00420864 ____C (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00083968 ____C (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00062976 ____C (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-03-28 23:55 - 2014-03-28 23:55 - 00053248 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00050176 ____C (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00044544 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00018944 ____C (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00017920 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00013824 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00012800 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-03-28 23:55 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2014-03-28 23:55 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2014-03-28 23:53 - 2014-03-30 22:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-03-28 23:53 - 2014-03-28 23:54 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Users\Все пользователи\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\ProgramData\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-28 23:50 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-03-28 23:49 - 2014-04-16 14:39 - 00689442 _____ () C:\Windows\system32\perfh007.dat 2014-03-28 23:49 - 2014-04-16 14:39 - 00148912 _____ () C:\Windows\system32\perfc007.dat 2014-03-28 23:49 - 2014-03-28 23:46 - 00295922 _____ () C:\Windows\system32\perfi007.dat 2014-03-28 23:49 - 2014-03-28 23:46 - 00038104 _____ () C:\Windows\system32\perfd007.dat 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\de 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\0407 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\system32\0407 2014-03-28 23:46 - 2014-03-28 23:46 - 00000000 ____D () C:\Windows\system32\de 2014-03-28 23:42 - 2014-03-29 00:09 - 00142336 ____C (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-03-28 23:42 - 2014-03-29 00:09 - 00123904 ____C (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-03-28 23:42 - 2014-03-28 23:55 - 00335360 ____C (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-03-28 23:42 - 2014-03-28 23:55 - 00301568 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-03-28 23:42 - 2014-03-28 23:55 - 00228864 ____C (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 01882112 ____C (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 01237504 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00484864 ____C (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00465920 ____C (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00420008 ____C () C:\Windows\SysWOW64\locale.nls 2014-03-28 23:42 - 2014-03-28 23:54 - 00420008 ____C () C:\Windows\system32\locale.nls 2014-03-28 23:42 - 2014-03-28 23:54 - 00417792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00381440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00159232 ____C (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00081408 ____C (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-03-28 23:42 - 2014-03-28 23:54 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-03-28 23:42 - 2014-03-28 23:51 - 03156480 ____C (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-28 23:42 - 2014-03-28 23:50 - 03928064 ____C (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 03419136 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 02565120 ____C (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 01987584 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-03-28 23:42 - 2014-03-28 23:50 - 00376768 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-03-28 23:42 - 2014-03-28 23:49 - 00624128 ____C (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-28 23:42 - 2014-03-28 23:49 - 00509440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-28 23:42 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-03-28 23:42 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-03-28 23:42 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-03-28 23:42 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-03-28 23:41 - 2014-03-28 23:49 - 01643520 ____C (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 01247744 ____C (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 00202752 ____C (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 00168960 ____C (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00163840 ____C (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-03-28 23:41 - 2014-03-28 23:49 - 00156160 ____C (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00150016 ____C (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-03-28 23:41 - 2014-03-28 23:49 - 00141824 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00126976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-03-28 23:41 - 2014-03-28 23:49 - 00121856 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-03-28 23:40 - 2014-03-28 23:49 - 01424384 ____C (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-28 23:40 - 2014-03-28 23:49 - 01230336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-28 23:22 - 2014-03-28 23:22 - 00000000 ___HD () C:\Windows\Tasks\AutorunsDisabled 2014-03-28 23:20 - 2014-03-28 23:20 - 00000000 ____D () C:\AWLCD_WORK 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\WinBatch 2014-03-28 20:15 - 2014-04-16 14:35 - 00042496 _____ (secr9tos) C:\Windows\system32\Drivers\oem-drv64.sys 2014-03-28 20:03 - 2014-03-28 20:03 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-03-28 19:56 - 2014-03-28 19:56 - 00015786 _____ () C:\Windows\system32\results.xml 2014-03-28 19:51 - 2014-04-10 17:55 - 00000000 ____D () C:\Users\Все пользователи\Intel 2014-03-28 19:51 - 2014-04-10 17:55 - 00000000 ____D () C:\ProgramData\Intel 2014-03-28 19:50 - 2014-04-10 17:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-03-28 19:50 - 2014-04-07 00:31 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00624640 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00224256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2014-03-28 19:50 - 2014-04-07 00:31 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-03-28 19:50 - 2014-04-07 00:31 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-03-28 19:50 - 2014-03-28 19:50 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-03-28 19:50 - 2012-09-19 04:57 - 12833280 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 12601856 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 11155968 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 11038208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 05899072 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2014-03-28 19:50 - 2012-09-19 04:57 - 00755048 _____ () C:\Windows\SysWOW64\igcodeckrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00755048 _____ () C:\Windows\system32\igcodeckrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00598780 _____ () C:\Windows\SysWOW64\igvpkrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00598780 _____ () C:\Windows\system32\igvpkrng700.bin 2014-03-28 19:50 - 2012-09-19 04:57 - 00342528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-03-28 19:50 - 2012-09-19 04:57 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2843.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll 2014-03-28 19:50 - 2012-09-19 04:57 - 00016896 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll 2014-03-28 19:49 - 2014-04-07 00:30 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Program Files\Realtek 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Intel 2014-03-28 19:49 - 2012-09-19 04:57 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-03-28 19:49 - 2012-09-19 04:57 - 00000029 ____R () C:\Windows\system32\Drivers\VERSION.DAT 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Users\Все пользователи\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\ProgramData\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\AmUStor 2014-03-28 19:48 - 2012-09-19 04:57 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 01706640 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00537456 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00524656 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00449392 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-03-28 19:48 - 2012-09-19 04:57 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-03-28 19:46 - 2012-09-19 04:57 - 00062784 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys 2014-03-28 19:45 - 2012-09-19 04:57 - 00690832 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys 2014-03-28 19:41 - 2014-03-28 23:28 - 00005639 _____ () C:\Windows\system32\RaCoInst.log 2014-03-28 19:39 - 2014-04-10 20:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\Все пользователи\Ralink Driver 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\InstallShield 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\ProgramData\Ralink Driver 2014-03-28 19:31 - 2014-04-15 21:15 - 00000000 ____D () C:\Users\JuraJula 2014-03-28 19:31 - 2014-04-09 15:38 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-28 19:31 - 2014-04-09 11:14 - 00001178 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-28 19:31 - 2014-04-07 00:04 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-03-28 19:31 - 2014-03-28 19:31 - 00002784 _____ () C:\Windows\System32\Tasks\cvc 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Шаблоны 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Мои документы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Главное меню 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Моя музыка 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои рисунки 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои видеозаписи 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:31 - 2014-01-16 06:46 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Auslogics 2014-03-28 19:31 - 2014-01-16 05:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\WinRAR 2014-03-28 19:31 - 2014-01-16 05:22 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Macromedia 2014-03-28 19:31 - 2014-01-16 04:35 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Adobe 2014-03-28 19:31 - 2013-12-12 07:31 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\xNtKrnl.exe 2014-03-28 19:31 - 2011-02-05 18:06 - 02952704 _____ (Microsoft Corporation) C:\Windows\system32\xOsLoad.exe 2014-03-28 19:31 - 2011-02-05 18:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\xOsLoad~1.exe 2014-03-28 19:31 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\JuraJula\ntuser.ini 2014-03-28 19:31 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-03-28 19:31 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Мои документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 ____D () C:\Recovery 2014-03-28 19:29 - 2014-04-11 02:43 - 00000000 ____D () C:\Windows\rescache 2014-03-28 19:19 - 2014-04-16 14:34 - 02015905 _____ () C:\Windows\WindowsUpdate.log 2014-03-28 19:19 - 2014-04-07 00:18 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-03-28 19:19 - 2014-04-07 00:18 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-03-28 19:19 - 2014-01-16 07:29 - 00001405 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-28 19:19 - 2014-01-16 07:29 - 00001405 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-28 19:19 - 2014-01-16 06:46 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Auslogics 2014-03-28 19:19 - 2014-01-16 06:46 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Auslogics 2014-03-28 19:19 - 2014-01-16 05:33 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-03-28 19:19 - 2014-01-16 05:33 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-03-28 19:19 - 2014-01-16 05:23 - 00000000 ____D () C:\Users\Default\AppData\Roaming\WinRAR 2014-03-28 19:19 - 2014-01-16 05:23 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\WinRAR 2014-03-28 19:19 - 2014-01-16 05:22 - 00000229 _____ () C:\Users\Default\Desktop\Главная ddgroupclub.ru.url 2014-03-28 19:19 - 2014-01-16 05:22 - 00000229 _____ () C:\Users\Default User\Desktop\Главная ddgroupclub.ru.url 2014-03-28 19:19 - 2014-01-16 05:22 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-03-28 19:19 - 2014-01-16 05:22 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Adobe 2014-03-28 19:19 - 2014-01-16 04:35 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Adobe 2014-03-28 19:19 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Default\ntuser.ini 2014-03-28 19:17 - 2014-03-28 19:17 - 00000000 ____D () C:\Windows\CSC |
16.04.2014, 14:51 | #15 |
| Qone8 Virus / Malware entfernen Log auswertenCode:
ATTFilter ==================== One Month Modified Files and Folders ======= 2014-04-16 14:48 - 2014-04-16 14:47 - 00008525 _____ () C:\Users\JuraJula\Desktop\FRST.txt 2014-04-16 14:47 - 2014-04-16 14:47 - 02158080 _____ (Farbar) C:\Users\JuraJula\Desktop\FRST64.exe 2014-04-16 14:47 - 2014-04-16 12:19 - 00000000 ____D () C:\FRST 2014-04-16 14:45 - 2014-04-16 14:45 - 00001084 _____ () C:\Users\JuraJula\Desktop\JRT.txt 2014-04-16 14:42 - 2009-07-14 05:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-16 14:42 - 2009-07-14 05:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-16 14:41 - 2014-04-16 14:41 - 01016261 _____ (Thisisu) C:\Users\JuraJula\Desktop\JRT.exe 2014-04-16 14:39 - 2014-03-28 23:49 - 00689442 _____ () C:\Windows\system32\perfh007.dat 2014-04-16 14:39 - 2014-03-28 23:49 - 00148912 _____ () C:\Windows\system32\perfc007.dat 2014-04-16 14:39 - 2010-11-21 13:28 - 00724980 _____ () C:\Windows\system32\perfh019.dat 2014-04-16 14:39 - 2010-11-21 13:28 - 00150794 _____ () C:\Windows\system32\perfc019.dat 2014-04-16 14:39 - 2009-07-14 06:13 - 02489488 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-16 14:38 - 2014-03-28 19:19 - 02015905 _____ () C:\Windows\WindowsUpdate.log 2014-04-16 14:37 - 2014-04-16 14:37 - 00003518 _____ () C:\Users\JuraJula\Desktop\AdwCleaner 14.04.14.txt 2014-04-16 14:36 - 2014-04-16 14:28 - 00000399 _____ () C:\Users\JuraJula\Desktop\Galaxy Micro SD (G) - 29,7GB (29,6).lnk 2014-04-16 14:36 - 2014-04-16 14:28 - 00000312 _____ () C:\Users\JuraJula\Desktop\20053098 (F).lnk 2014-04-16 14:36 - 2014-04-10 20:30 - 00000000 ____D () C:\Users\JuraJula\Documents\Youcam 2014-04-16 14:35 - 2014-04-10 21:44 - 00000392 _____ () C:\Windows\setupact.log 2014-04-16 14:35 - 2014-04-07 00:07 - 00000406 _____ () C:\Windows\Tasks\AWC AutoSweep.job 2014-04-16 14:35 - 2014-04-07 00:02 - 00000400 _____ () C:\Windows\Tasks\AWC Startup.job 2014-04-16 14:35 - 2014-03-28 20:15 - 00042496 _____ (secr9tos) C:\Windows\system32\Drivers\oem-drv64.sys 2014-04-16 14:35 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-16 14:34 - 2014-04-16 14:33 - 00000000 ____D () C:\AdwCleaner 2014-04-16 14:32 - 2014-04-16 14:32 - 01426178 _____ () C:\Users\JuraJula\Desktop\adwcleaner.exe 2014-04-16 14:27 - 2014-04-11 10:00 - 00017084 _____ () C:\Windows\PFRO.log 2014-04-16 13:51 - 2014-04-10 23:17 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\vlc 2014-04-16 12:21 - 2014-04-16 12:21 - 00197305 _____ () C:\Users\JuraJula\Documents\FRST_16-04-2014_12-21-45.txt 2014-04-16 12:21 - 2014-04-16 12:21 - 00034001 _____ () C:\Users\JuraJula\Downloads\Addition.txt 2014-04-16 12:21 - 2014-04-16 12:19 - 00197305 _____ () C:\Users\JuraJula\Downloads\FRST.txt 2014-04-16 12:19 - 2014-04-16 12:19 - 02054144 _____ (Farbar) C:\Users\JuraJula\Downloads\FRST64.exe 2014-04-16 11:09 - 2014-04-16 11:09 - 00007951 _____ () C:\Users\JuraJula\Desktop\hijackthis.log 2014-04-16 11:08 - 2014-04-16 11:08 - 00304857 _____ () C:\Users\JuraJula\Downloads\HijackThis_205.zip 2014-04-15 22:25 - 2014-04-09 14:29 - 00000000 ____D () C:\Users\JuraJula\Desktop\AntiVIRUS 2014-04-15 22:14 - 2014-04-11 02:36 - 00003929 ____H () C:\Windows\SysWOW64\BTImages.dat 2014-04-15 21:16 - 2014-04-15 21:16 - 03782822 _____ (DownloadHelper ) C:\Users\JuraJula\Downloads\ConvertHelperSetup.exe 2014-04-15 21:16 - 2014-04-15 21:16 - 00000000 ____D () C:\Program Files (x86)\ConvertHelper 2014-04-15 21:15 - 2014-04-15 21:15 - 00000000 ____D () C:\Users\JuraJula\dwhelper 2014-04-15 21:15 - 2014-03-28 19:31 - 00000000 ____D () C:\Users\JuraJula 2014-04-15 19:22 - 2014-04-10 23:22 - 00003950 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{5C497AA6-8DA4-4F51-9231-255D2BE41896} 2014-04-15 19:19 - 2014-04-10 21:45 - 00000397 _____ () C:\Users\JuraJula\Desktop\Speicherkarte (G) - 29,7GB (29,0).lnk 2014-04-11 02:43 - 2014-03-28 19:29 - 00000000 ____D () C:\Windows\rescache 2014-04-11 01:04 - 2014-04-11 01:04 - 02236972 _____ () C:\Users\JuraJula\Downloads\PC-x512-Simple-copia.zip 2014-04-11 00:00 - 2014-03-29 12:09 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-04-10 23:56 - 2014-04-10 23:36 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Check Point Software Technologies LTD 2014-04-10 23:40 - 2014-04-10 23:40 - 00000634 _____ () C:\Windows\wmsetup.log 2014-04-10 23:39 - 2014-04-10 23:39 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\wmp11-windowsxp-x64-enu - CHIP-Downloader.exe 2014-04-10 23:36 - 2014-04-10 23:36 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\Users\Все пользователи\CheckPoint 2014-04-10 23:35 - 2014-04-10 23:35 - 00000000 ____D () C:\ProgramData\CheckPoint 2014-04-10 23:34 - 2014-04-10 23:34 - 03356760 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zaSetupWeb_130_208_000.exe 2014-04-10 23:27 - 2014-04-10 23:27 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Windows SideBar 2014-04-10 23:16 - 2014-04-10 23:16 - 00000000 ____D () C:\Program Files\VideoLAN 2014-04-10 23:15 - 2014-04-10 23:15 - 25910056 _____ () C:\Users\JuraJula\Downloads\vlc-2.1.4-win64.exe 2014-04-10 22:48 - 2014-04-10 20:46 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\FastCopy 2014-04-10 22:20 - 2014-04-10 22:20 - 00000000 ____D () C:\Users\JuraJula\Documents\Avatar 2014-04-10 22:19 - 2014-04-10 20:36 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\CyberLink 2014-04-10 22:18 - 2014-04-09 20:49 - 00000000 ____D () C:\Users\JuraJula\Desktop\Anti-Spyware 2014-04-10 22:04 - 2014-04-10 21:29 - 00000000 ____D () C:\Program Files (x86)\HDD Regenerator 2014-04-10 21:59 - 2014-04-10 21:59 - 00000000 ____D () C:\Users\JuraJula\Documents\CyberLink 2014-04-10 21:58 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Winamp 2014-04-10 21:44 - 2014-04-10 21:44 - 00000000 _____ () C:\Windows\setuperr.log 2014-04-10 21:44 - 2014-04-10 21:43 - 00296520 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-04-10 21:44 - 2014-04-10 20:26 - 00000000 ____D () C:\Users\Public\Documents\CyberLink 2014-04-10 21:27 - 2014-04-10 21:27 - 00368256 _____ (RegNow.com) C:\Users\JuraJula\Downloads\download_hr.exe 2014-04-10 21:19 - 2014-04-10 21:19 - 02773064 _____ (Crystal Dew World ) C:\Users\JuraJula\Downloads\CrystalDiskInfo6_1_10-en.exe 2014-04-10 21:12 - 2014-04-10 20:36 - 00000000 ____D () C:\Users\Public\CyberLink 2014-04-10 20:46 - 2014-04-10 20:46 - 00000999 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000969 _____ () C:\Users\JuraJula\Desktop\FastCopy.lnk 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Users\JuraJula\Desktop\Fast Copy 2014-04-10 20:46 - 2014-04-10 20:46 - 00000000 ____D () C:\Program Files\FastCopy 2014-04-10 20:45 - 2014-04-10 20:45 - 00427277 _____ () C:\Users\JuraJula\Downloads\FastCopy211_x64.zip 2014-04-10 20:35 - 2014-04-10 20:35 - 26771088 _____ () C:\Users\JuraJula\Downloads\SeaToolsforWindowsSetup_1.2.0.10.exe 2014-04-10 20:35 - 2014-04-10 20:35 - 00000000 ____D () C:\Program Files (x86)\Seagate 2014-04-10 20:35 - 2014-04-10 20:18 - 00000000 ____D () C:\Users\Все пользователи\CyberLink 2014-04-10 20:35 - 2014-04-10 20:18 - 00000000 ____D () C:\ProgramData\CyberLink 2014-04-10 20:35 - 2014-01-16 05:13 - 00000000 ____D () C:\Users\Все пользователи\Package Cache 2014-04-10 20:35 - 2014-01-16 05:13 - 00000000 ____D () C:\ProgramData\Package Cache 2014-04-10 20:33 - 2014-04-10 20:33 - 15507456 _____ () C:\Users\JuraJula\Downloads\dban-2.2.8_i586.iso 2014-04-10 20:32 - 2014-04-10 20:31 - 147849216 _____ () C:\Users\JuraJula\Downloads\clonezilla-live-2.2.2-32-amd64.iso 2014-04-10 20:30 - 2014-04-10 20:30 - 00613200 _____ (Chip Digital GmbH) C:\Users\JuraJula\Downloads\Clonezilla ISO Image 64 Bit - CHIP-Downloader.exe 2014-04-10 20:30 - 2014-04-10 20:19 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-04-10 20:30 - 2014-03-28 19:39 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-04-10 20:29 - 2014-04-10 20:29 - 00002040 _____ () C:\Users\Public\Desktop\HomeCinema.lnk 2014-04-10 20:29 - 2014-04-10 20:21 - 00000000 ____D () C:\Users\Все пользователи\install_clap 2014-04-10 20:29 - 2014-04-10 20:21 - 00000000 ____D () C:\ProgramData\install_clap 2014-04-10 20:27 - 2014-04-10 20:27 - 00001509 _____ () C:\Users\Public\Desktop\CyberLink PhotoDirector 3.lnk 2014-04-10 20:24 - 2014-04-10 20:25 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-04-10 20:24 - 2014-04-10 20:25 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-04-10 20:24 - 2014-04-10 20:25 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-04-10 20:24 - 2014-04-10 20:22 - 00000000 ____D () C:\Program Files\CyberLink 2014-04-10 20:22 - 2014-04-10 20:18 - 00000000 ____D () C:\Users\Все пользователи\CLSK 2014-04-10 20:22 - 2014-04-10 20:18 - 00000000 ____D () C:\ProgramData\CLSK 2014-04-10 20:13 - 2014-04-09 21:53 - 00000000 ____D () C:\Program Files (x86)\TrojanHunter 5.5 2014-04-10 18:02 - 2014-01-16 05:07 - 02517880 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-04-10 17:57 - 2014-04-10 17:57 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Intel Corporation 2014-04-10 17:55 - 2014-03-28 19:51 - 00000000 ____D () C:\Users\Все пользователи\Intel 2014-04-10 17:55 - 2014-03-28 19:51 - 00000000 ____D () C:\ProgramData\Intel 2014-04-10 17:54 - 2014-04-10 17:05 - 00000000 ____D () C:\Users\JuraJula\.aria2 2014-04-10 17:50 - 2014-03-28 19:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-04-10 17:37 - 2014-04-10 17:37 - 00165504 _____ (ITE ) C:\Windows\system32\Drivers\IT9135BDA.sys 2014-04-10 17:04 - 2014-04-10 17:04 - 00000000 ____D () C:\DriverPack Solution 2014-04-10 17:02 - 2014-04-10 17:02 - 10534760 _____ (Kuzyakov Artur ) C:\Users\JuraJula\Downloads\DRPSu13-Lite.exe 2014-04-10 16:53 - 2014-04-10 16:52 - 18207283 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\irst_int_aio7w8.exe 2014-04-10 16:52 - 2014-04-10 16:52 - 48584401 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\mnm_int_aio7w8.exe 2014-04-10 16:50 - 2014-04-10 16:50 - 02895209 _____ (SWE Sven Ritter ) C:\Users\JuraJula\Downloads\cir_fin_aio7w8.exe 2014-04-10 16:39 - 2014-04-10 16:39 - 00229008 _____ () C:\Users\JuraJula\Downloads\MEDION_Treibersuche.exe 2014-04-10 16:39 - 2014-04-10 16:38 - 06879747 _____ () C:\Users\JuraJula\Downloads\USB3_Etron_Win7-64_Win7_Vista64_Vista_XP64_XP(v0.96_WHQL).zip 2014-04-10 16:29 - 2014-04-10 16:29 - 00000983 _____ () C:\Users\Public\Desktop\Winamp.lnk 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp Detect 2014-04-10 16:29 - 2014-04-10 16:29 - 00000000 ____D () C:\Program Files (x86)\Winamp 2014-04-10 16:25 - 2014-04-10 16:25 - 12855384 _____ (Nullsoft, Inc.) C:\Users\JuraJula\Downloads\winamp5666_full_de-de_b3516.exe 2014-04-10 16:17 - 2014-03-29 17:15 - 00000972 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-04-10 16:17 - 2014-03-29 17:15 - 00000968 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-04-09 23:45 - 2014-04-09 23:45 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TrojanHunter 2014-04-09 23:12 - 2014-03-29 13:18 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes' Anti-Malware (portable) 2014-04-09 23:12 - 2014-03-29 13:18 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-04-09 23:04 - 2014-04-09 23:04 - 23181137 _____ () C:\Users\JuraJula\Downloads\torbrowser-install-3.5.4_de.exe 2014-04-09 22:45 - 2014-04-09 22:43 - 232528879 _____ () C:\Users\JuraJula\Downloads\antibotcd0112_chip.zip 2014-04-09 22:22 - 2014-04-09 22:22 - 01100288 _____ (Xara Group Ltd) C:\Windows\system32\xaradraw.dll 2014-04-09 22:13 - 2014-04-09 22:13 - 00532480 _____ (Trend Micro Incorporated) C:\Users\JuraJula\Downloads\cwshredder.exe 2014-04-09 22:02 - 2014-04-09 22:02 - 00388608 _____ (Trend Micro Inc.) C:\Users\JuraJula\Downloads\HijackThis.exe 2014-04-09 22:01 - 2014-04-09 22:01 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\JuraJula\Downloads\tdsskiller.exe 2014-04-09 22:00 - 2014-04-09 22:00 - 12589848 _____ (Malwarebytes Corp.) C:\Users\JuraJula\Downloads\mbar-1.07.0.1009.exe 2014-04-09 22:00 - 2014-03-29 12:09 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-04-09 21:58 - 2014-04-09 21:58 - 04745728 _____ (AVAST Software) C:\Users\JuraJula\Downloads\aswMBR.exe 2014-04-09 21:53 - 2014-04-09 21:53 - 00059392 ____R () C:\Windows\SysWOW64\streamhlp.dll 2014-04-09 21:52 - 2014-04-09 21:52 - 05843488 _____ (Mischel Internet Security ) C:\Users\JuraJula\Downloads\TrojanHunterSetup_5.5_Build_1003.exe 2014-04-09 21:47 - 2014-04-09 21:47 - 01581384 _____ (ESET) C:\Users\JuraJula\Downloads\eset_smart_security_live_installer_.exe 2014-04-09 21:44 - 2014-04-09 21:40 - 00000000 ____D () C:\Windows\pss 2014-04-09 21:41 - 2014-04-07 00:20 - 00002864 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (система) 2014-04-09 21:41 - 2014-03-29 17:15 - 00003980 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-04-09 21:41 - 2014-03-29 17:15 - 00003728 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-04-09 21:35 - 2014-04-09 21:35 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-04-09 21:35 - 2014-03-29 01:53 - 00000000 ____D () C:\Program Files\CCleaner 2014-04-09 21:34 - 2014-04-09 21:34 - 04787368 _____ (Piriform Ltd) C:\Users\JuraJula\Downloads\ccsetup412.exe 2014-04-09 21:34 - 2014-04-09 21:34 - 00709352 _____ ( ) C:\Users\JuraJula\Downloads\COMPUTER_BILD-Download-Manager_fuer_ccsetup412.exe 2014-04-09 21:27 - 2014-04-07 00:02 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\IObit 2014-04-09 21:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-04-09 21:08 - 2014-04-09 21:07 - 00000085 _____ () C:\Windows\wininit.ini 2014-04-09 21:08 - 2014-04-09 15:10 - 00000000 ____D () C:\Users\Все пользователи\Spybot - Search & Destroy 2014-04-09 21:08 - 2014-04-09 15:10 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2014-04-09 21:03 - 2014-04-09 13:53 - 00000000 ____D () C:\Users\JuraJula\Documents\xwidget 2014-04-09 20:58 - 2014-04-09 20:58 - 00000104 _____ () C:\Users\JuraJula\Desktop\System.lnk 2014-04-09 20:55 - 2014-04-09 20:55 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\LavasoftStatistics 2014-04-09 20:47 - 2014-04-09 20:39 - 00000000 ____D () C:\Users\JuraJula\Desktop\Browsers and Plugins 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\Users\Все пользователи\Lavasoft 2014-04-09 20:34 - 2014-04-09 20:34 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-04-09 20:34 - 2014-04-09 20:33 - 62689280 _____ () C:\Users\JuraJula\Downloads\eav_nt32_enu.msi 2014-04-09 20:34 - 2014-04-09 14:36 - 00000000 ____D () C:\Users\JuraJula\Desktop\Icon Win 7 2014-04-09 20:32 - 2014-04-09 20:32 - 01725064 _____ () C:\Users\JuraJula\Downloads\Adaware_Installer_11.1.exe 2014-04-09 20:32 - 2014-04-09 20:31 - 43360992 _____ (Check Point Software Technologies Ltd.) C:\Users\JuraJula\Downloads\zafwSetup_130_208_000.exe 2014-04-09 20:30 - 2014-03-30 22:23 - 20765696 _____ (Microsoft Corporation) C:\Windows\system32\imageres.dll 2014-04-09 20:16 - 2014-04-09 20:16 - 08989136 _____ () C:\Users\JuraJula\Downloads\VOXIP.zip 2014-04-09 20:09 - 2014-04-09 20:09 - 00001906 _____ () C:\Users\JuraJula\Desktop\IconPackager.lnk 2014-04-09 20:07 - 2014-04-09 20:07 - 01674242 _____ (Methlabs Productions ) C:\Users\JuraJula\Downloads\pg2-070130.exe 2014-04-09 20:04 - 2014-04-09 20:04 - 03098210 _____ () C:\Users\JuraJula\Downloads\tweaking.com_windows_repair_aio.zip 2014-04-09 20:04 - 2014-04-09 20:04 - 01933048 _____ (Bleeping Computer, LLC) C:\Users\JuraJula\Downloads\rkill.com 2014-04-09 20:03 - 2014-04-09 20:03 - 29393568 _____ (SUPERAntiSpyware) C:\Users\JuraJula\Downloads\SUPERAntiSpyware.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 23549440 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 17387008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 13551104 ____C (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 11745792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 05784064 ____C (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 04254720 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02767360 ____C (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02724864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-04-09 19:59 - 2014-04-09 19:58 - 02724864 ____C (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-04-09 19:59 - 2014-04-09 19:58 - 02260480 ____C (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02178048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 02043904 ____C (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-04-09 19:59 - 2014-04-09 19:58 - 01967104 ____C (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-04-09 19:59 - 2014-04-09 19:58 - 01789440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 01400832 ____C (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 01143808 ____C (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00940032 ____C (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00846336 ____C (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00752640 ____C (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00704512 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00628736 ____C (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00592896 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00586240 ____C (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00574976 ____C (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00548352 ____C (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00524288 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00455168 ____C (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00453120 ____C (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00440832 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00367616 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00296960 ____C (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00244224 ____C (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00195584 ____C (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00164864 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00139264 ____C (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00112128 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00111616 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-04-09 19:59 - 2014-04-09 19:58 - 00066048 ____C (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00061952 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00051200 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00051200 ____C (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00048640 ____C (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00043008 ____C (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00038400 ____C (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00033792 ____C (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00032768 ____C (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00032256 ____C (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-04-09 19:59 - 2014-04-09 19:58 - 00004096 ____C (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-04-09 19:58 - 2014-04-09 19:57 - 00000000 ____D () C:\Windows\system32\MRT 2014-04-09 19:56 - 2014-04-09 19:56 - 01163264 ____C (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 01114112 ____C (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00362496 ____C (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00243712 ____C (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00025600 ____C (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00016384 ____C (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00014336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00013312 ____C (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00007680 ____C (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-04-09 19:56 - 2014-04-09 19:56 - 00005120 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-04-09 19:56 - 2014-04-09 19:56 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-04-09 15:38 - 2014-03-28 19:31 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-04-09 15:34 - 2014-04-09 14:37 - 00000000 ____D () C:\Users\JuraJula\Desktop\Theme Win 7 2014-04-09 15:25 - 2010-11-21 13:39 - 00000000 ____D () C:\Windows\RemotePackages 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\Users\Все пользователи\Licenses 2014-04-09 15:18 - 2014-04-09 15:18 - 00000000 ____D () C:\ProgramData\Licenses 2014-04-09 15:11 - 2014-04-09 15:11 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2014-04-09 15:10 - 2014-04-09 13:20 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\maComfort 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\Users\Все пользователи\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 __HDC () C:\ProgramData\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643} 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Users\Public\Documents\Stardock 2014-04-09 14:30 - 2014-04-09 14:30 - 00000000 ____D () C:\Program Files (x86)\Stardock 2014-04-09 13:55 - 2014-04-09 13:17 - 00000000 ___HD () C:\Windows\Lion Skin Pack 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\Все пользователи\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\Documents\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DonationCoder 2014-04-09 13:23 - 2014-04-09 13:23 - 00000000 ____D () C:\ProgramData\DonationCoder 2014-04-09 13:20 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-04-09 13:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-04-09 13:18 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media 2014-04-09 13:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Cursors 2014-04-09 13:06 - 2014-04-09 13:06 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\TuneUp Software 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\Users\Все пользователи\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 13:05 - 2014-04-09 13:05 - 00000000 __SHD () C:\ProgramData\{55A29068-F2CE-456C-9148-C869879E2357} 2014-04-09 11:14 - 2014-03-28 19:31 - 00001178 _____ () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-09 11:09 - 2014-04-09 11:09 - 00003148 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-04-08 17:28 - 2014-01-16 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-04-08 17:28 - 2014-01-16 05:20 - 00000000 ____D () C:\Windows\system32\Macromed 2014-04-08 17:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Recovery 2014-04-08 17:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-04-08 17:27 - 2014-03-29 13:37 - 00000000 ____D () C:\Windows\ERUNT 2014-04-08 17:27 - 2014-03-29 13:05 - 00000000 ____D () C:\Windows\erdnt 2014-04-08 17:27 - 2009-07-14 05:45 - 00000000 ____D () C:\Windows\Setup 2014-04-08 17:26 - 2014-04-08 13:31 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\qone8 2014-04-08 17:26 - 2014-04-07 00:20 - 00000000 ____D () C:\Users\Все пользователи\IObit 2014-04-08 17:26 - 2014-04-07 00:20 - 00000000 ____D () C:\ProgramData\IObit 2014-04-08 17:25 - 2014-04-08 15:51 - 00000000 ____D () C:\Users\Все пользователи\ProductData 2014-04-08 17:25 - 2014-04-08 15:51 - 00000000 ____D () C:\ProgramData\ProductData 2014-04-08 17:25 - 2014-04-08 13:31 - 00000000 ___HD () C:\W7P_Backups 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Vss 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\spp 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Speech 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\spp 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\spool 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Speech 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\IME 2014-04-08 17:23 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-04-08 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech 2014-04-08 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PLA 2014-04-08 17:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-04-08 17:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat 2014-04-08 17:03 - 2014-04-08 17:03 - 00000000 ____D () C:\Windows\Tasks\TaskDisabled 2014-04-08 16:55 - 2014-04-08 16:55 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00028672 _____ () C:\Windows\system32\config\SAM.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iodefrag.bak 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default\AppData\Roaming\IObit 2014-04-08 16:55 - 2014-04-08 16:55 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\IObit 2014-04-08 16:54 - 2014-04-08 16:54 - 00000000 _____ () C:\asc_rdflag 2014-04-08 16:50 - 2014-04-08 16:50 - 55566336 _____ () C:\Windows\system32\config\SOFTWARE.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 44089344 _____ () C:\Windows\system32\config\COMPONENTS.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00237568 _____ () C:\Windows\system32\config\DEFAULT.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00028672 _____ () C:\Windows\system32\config\SAM.iobit 2014-04-08 16:50 - 2014-04-08 16:50 - 00024576 _____ () C:\Windows\system32\config\SECURITY.iobit 2014-04-08 16:44 - 2014-01-16 03:25 - 00000000 ____D () C:\Windows\Panther 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\Users\Все пользователи\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 16:41 - 2014-04-08 16:41 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D} 2014-04-08 16:41 - 2014-04-07 00:20 - 00004855 _____ () C:\ASCInit.log 2014-04-08 15:51 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Apple Computer 2014-04-08 13:55 - 2014-04-08 13:55 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled 2014-04-08 13:34 - 2014-04-08 13:34 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\MetroSidebar 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\Users\Все пользователи\Start Orb Manager 2014-04-08 10:27 - 2014-04-08 10:27 - 00000000 ____D () C:\ProgramData\Start Orb Manager 2014-04-08 10:12 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-04-07 16:15 - 2014-04-07 00:59 - 00000418 _____ () C:\Windows\Tasks\AWC Update.job 2014-04-07 01:00 - 2014-04-07 00:59 - 00003764 _____ () C:\Windows\System32\Tasks\AWC Update 2014-04-07 00:54 - 2014-01-16 06:59 - 00000406 __RSH () C:\Users\Все пользователи\ntuser.pol 2014-04-07 00:54 - 2014-01-16 06:59 - 00000406 __RSH () C:\ProgramData\ntuser.pol 2014-04-07 00:35 - 2014-04-07 00:35 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-04-07 00:34 - 2014-04-07 00:34 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-04-07 00:34 - 2014-04-07 00:34 - 00099800 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-04-07 00:33 - 2014-04-07 00:33 - 00000000 ____D () C:\Program Files\Intel 2014-04-07 00:31 - 2014-04-07 00:31 - 25948160 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 20921344 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13856768 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 13241856 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 12148224 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 11433984 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07784448 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 07594992 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 06139904 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04448256 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 04208640 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-04-07 00:31 - 2014-04-07 00:31 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03535872 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 03202048 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02876416 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-04-07 00:31 - 2014-04-07 00:31 - 02384896 _____ () C:\Windows\system32\GfxRes.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 02065920 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01815040 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00906224 _____ (Intel Corporation) C:\Windows\system32\igfxstarter.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00845296 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00770032 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00530928 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00527872 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00517632 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00514048 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00493056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00397808 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00396784 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-04-07 00:31 - 2014-04-07 00:31 - 00347136 _____ () C:\Windows\system32\igdmd64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00280064 _____ () C:\Windows\SysWOW64\igdmd32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-04-07 00:31 - 2014-04-07 00:31 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00266841 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00253021 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00234948 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00222208 _____ () C:\Windows\system32\igdde64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00200948 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00198502 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00192523 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3355.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00182272 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00180852 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00180758 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00178398 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178118 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00178103 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00176743 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175734 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175481 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175231 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00175005 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00174216 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173582 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173251 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00173071 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172778 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00172518 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00171658 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00168169 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166889 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00166210 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00161534 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00160768 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00154816 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00153088 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-04-07 00:31 - 2014-04-07 00:31 - 00153043 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-04-07 00:31 - 2014-04-07 00:31 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00135680 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00131584 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00029696 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00025600 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-04-07 00:31 - 2014-04-07 00:31 - 00002932 _____ () C:\Windows\system32\iglhxs64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\Users\Все пользователи\DP45977C.lfl 2014-04-07 00:31 - 2014-04-07 00:31 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-04-07 00:31 - 2014-03-28 19:50 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00624640 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00224256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2014-04-07 00:31 - 2014-03-28 19:50 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-04-07 00:31 - 2014-03-28 19:50 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-04-07 00:30 - 2014-04-07 00:30 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-04-07 00:30 - 2014-04-07 00:30 - 02825432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 02100312 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-04-07 00:30 - 2014-04-07 00:30 - 01958616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-04-07 00:30 - 2014-04-07 00:30 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-04-07 00:30 - 2014-03-28 19:49 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-04-07 00:29 - 2014-04-07 00:29 - 48657408 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-04-07 00:29 - 2014-04-07 00:29 - 14715992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 03849304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-04-07 00:29 - 2014-04-07 00:29 - 02787032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 02037336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01920600 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01022680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 01014360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00732833 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-04-07 00:29 - 2014-04-07 00:29 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00624344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00378000 _____ (Realtek Semiconductor) C:\Windows\system32\RtkGuiCompLib.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00156888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-04-07 00:29 - 2014-04-07 00:29 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-04-07 00:26 - 2014-04-07 00:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-04-07 00:26 - 2014-04-07 00:26 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-04-07 00:25 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-04-07 00:18 - 2014-03-28 19:19 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-07 00:18 - 2014-03-28 19:19 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-07 00:07 - 2014-04-07 00:07 - 00002774 _____ () C:\Windows\System32\Tasks\AWC AutoSweep 2014-04-07 00:04 - 2014-03-28 19:31 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-04-07 00:03 - 2014-04-07 00:03 - 00002768 _____ () C:\Windows\System32\Tasks\AWC Startup 2014-04-07 00:01 - 2014-03-29 12:09 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes.lnk 2014-04-07 00:01 - 2014-03-29 12:09 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Users\Все пользователи\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\iPod 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-04-04 19:16 - 2014-04-04 19:16 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-04-03 09:51 - 2014-03-29 12:09 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-04-03 09:50 - 2014-03-29 12:09 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-04-02 14:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Branding 2014-03-31 12:53 - 2014-03-31 12:53 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice.lnk 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\OpenOffice 2014-03-31 12:53 - 2014-03-31 12:53 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Users\Все пользователи\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\ProgramData\EPSON 2014-03-31 11:05 - 2014-03-31 11:05 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2014-03-31 09:35 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-03-31 03:51 - 2012-01-11 20:40 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-30 22:57 - 2014-03-28 23:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-03-30 22:15 - 2014-03-29 17:15 - 00000000 ____D () C:\Program Files (x86)\Google 2014-03-30 22:15 - 2014-03-29 01:23 - 00000000 ____D () C:\Users\Все пользователи\CMUV 2014-03-30 22:15 - 2014-03-29 01:23 - 00000000 ____D () C:\ProgramData\CMUV 2014-03-30 22:13 - 2014-03-30 22:13 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-03-30 22:13 - 2014-03-29 15:48 - 00000000 ____D () C:\Users\Все пользователи\ProgDVB 2014-03-30 22:13 - 2014-03-29 15:48 - 00000000 ____D () C:\ProgramData\ProgDVB 2014-03-30 22:13 - 2014-03-29 15:48 - 00000000 ____D () C:\Program Files\ProgDVB 2014-03-30 22:13 - 2014-01-16 05:14 - 00000000 ____D () C:\Program Files\Unlocker 2014-03-30 22:12 - 2014-04-09 13:18 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-03-30 22:12 - 2014-03-30 22:12 - 00001091 _____ () C:\DelFix.txt 2014-03-30 22:12 - 2014-03-29 01:37 - 01030144 ____C (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-03-30 22:11 - 2014-03-30 22:10 - 06574592 ____C (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-03-30 22:11 - 2014-03-30 22:10 - 05694464 ____C (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Thunderbird 2014-03-29 22:23 - 2014-03-29 22:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-03-29 17:21 - 2014-03-29 17:21 - 06000640 _____ () C:\Program Files (x86)\GUT33C1.tmp 2014-03-29 17:21 - 2014-03-29 17:21 - 00000000 ____D () C:\Program Files (x86)\GUM33C0.tmp 2014-03-29 17:16 - 2014-03-29 17:16 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-03-29 15:58 - 2014-03-29 11:35 - 00000000 ____D () C:\Windows\Minidump 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\Users\Все пользователи\mxnhytee.feu 2014-03-29 15:49 - 2014-03-29 15:49 - 00012769 _____ () C:\ProgramData\mxnhytee.feu 2014-03-29 13:41 - 2014-03-29 13:41 - 00000886 _____ () C:\Users\JuraJula\Documents\JRT.txt 2014-03-29 13:15 - 2014-03-29 13:15 - 00018582 _____ () C:\Users\JuraJula\Documents\ComboFix.txt 2014-03-29 13:15 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-03-29 13:13 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing 2014-03-29 13:13 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Globalization 2014-03-29 13:13 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\Users\Все пользователи\HP 2014-03-29 12:41 - 2014-03-29 12:41 - 00000000 ____D () C:\ProgramData\HP 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\Users\Все пользователи\Malwarebytes 2014-03-29 12:09 - 2014-03-29 12:09 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-29 12:09 - 2014-03-29 12:05 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-03-29 02:57 - 2014-03-29 01:37 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-03-29 02:57 - 2014-03-29 01:37 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-03-29 01:53 - 2014-03-29 01:53 - 00002778 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-03-29 01:41 - 2014-03-29 01:37 - 00658432 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00626176 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00594944 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00572416 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00553984 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00552960 ____C (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00528384 ____C (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00510976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00508928 ____C (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-03-29 01:41 - 2014-03-29 01:37 - 00488448 ____C (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00485888 ____C (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00428032 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00423936 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00390144 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00123392 ____C (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-03-29 01:41 - 2014-03-29 01:37 - 00087040 ____C (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\Все пользователи\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 01:24 - 2014-03-29 01:24 - 00000000 ____D () C:\ProgramData\DBC2F6FD-3140-41E0-A2A1-D6BAB77D5E21_97A6E9190B374845A2EEEC5B058B8C9F_F893F7CA-8278-41DF-A76F-CAF0437A90CD__ 2014-03-29 00:09 - 2014-03-28 23:42 - 00142336 ____C (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-03-29 00:09 - 2014-03-28 23:42 - 00123904 ____C (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-03-28 23:56 - 2014-03-28 23:56 - 14631424 ____C (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-03-28 23:56 - 2014-03-28 23:56 - 11410432 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-03-28 23:55 - 2014-04-09 13:18 - 01533440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 01147392 ____C (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00420864 ____C (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00083968 ____C (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00062976 ____C (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00056832 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2014-03-28 23:55 - 2014-03-28 23:55 - 00053248 ____C (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00050176 ____C (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00044544 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00018944 ____C (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00017920 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2014-03-28 23:55 - 2014-03-28 23:55 - 00013824 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2014-03-28 23:55 - 2014-03-28 23:55 - 00012800 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2014-03-28 23:55 - 2014-03-28 23:42 - 00335360 ____C (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-03-28 23:55 - 2014-03-28 23:42 - 00301568 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-03-28 23:55 - 2014-03-28 23:42 - 00228864 ____C (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-28 23:54 - 2014-03-28 23:53 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\Mozilla 2014-03-28 23:54 - 2014-03-28 23:42 - 01882112 ____C (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 01237504 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00484864 ____C (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00465920 ____C (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00420008 ____C () C:\Windows\SysWOW64\locale.nls 2014-03-28 23:54 - 2014-03-28 23:42 - 00420008 ____C () C:\Windows\system32\locale.nls 2014-03-28 23:54 - 2014-03-28 23:42 - 00417792 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00381440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00159232 ____C (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00081408 ____C (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00002048 ____C (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-03-28 23:54 - 2014-03-28 23:42 - 00002048 ____C (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Users\Все пользователи\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\ProgramData\Mozilla 2014-03-28 23:53 - 2014-03-28 23:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-28 23:51 - 2014-03-28 23:42 - 03156480 ____C (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-28 23:50 - 2014-03-28 23:42 - 03928064 ____C (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 03419136 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 02565120 ____C (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 01987584 ____C (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-03-28 23:50 - 2014-03-28 23:42 - 00376768 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-03-28 23:49 - 2014-03-28 23:42 - 00624128 ____C (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-28 23:49 - 2014-03-28 23:42 - 00509440 ____C (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 01643520 ____C (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 01247744 ____C (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 00202752 ____C (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 00168960 ____C (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00163840 ____C (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-03-28 23:49 - 2014-03-28 23:41 - 00156160 ____C (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00150016 ____C (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-03-28 23:49 - 2014-03-28 23:41 - 00141824 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00126976 ____C (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-03-28 23:49 - 2014-03-28 23:41 - 00121856 ____C (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-03-28 23:49 - 2014-03-28 23:40 - 01424384 ____C (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-28 23:49 - 2014-03-28 23:40 - 01230336 ____C (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-28 23:48 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-03-28 23:48 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-03-28 23:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-03-28 23:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing 2014-03-28 23:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\de 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\SysWOW64\0407 2014-03-28 23:47 - 2014-03-28 23:47 - 00000000 ____D () C:\Windows\system32\0407 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\winrm 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\WCN 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\slmgr 2014-03-28 23:47 - 2010-11-21 13:28 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-03-28 23:47 - 2009-07-14 06:37 - 00000000 ____D () C:\Windows\DigitalLocker 2014-03-28 23:47 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-03-28 23:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\IME 2014-03-28 23:46 - 2014-03-28 23:49 - 00295922 _____ () C:\Windows\system32\perfi007.dat 2014-03-28 23:46 - 2014-03-28 23:49 - 00038104 _____ () C:\Windows\system32\perfd007.dat 2014-03-28 23:46 - 2014-03-28 23:46 - 00000000 ____D () C:\Windows\system32\de 2014-03-28 23:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\com 2014-03-28 23:28 - 2014-03-28 19:41 - 00005639 _____ () C:\Windows\system32\RaCoInst.log 2014-03-28 23:22 - 2014-03-28 23:22 - 00000000 ___HD () C:\Windows\Tasks\AutorunsDisabled 2014-03-28 23:20 - 2014-03-28 23:20 - 00000000 ____D () C:\AWLCD_WORK 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-03-28 20:21 - 2014-03-28 20:21 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\WinBatch 2014-03-28 20:16 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-03-28 20:16 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-03-28 20:03 - 2014-03-28 20:03 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-03-28 19:56 - 2014-03-28 19:56 - 00015786 _____ () C:\Windows\system32\results.xml 2014-03-28 19:50 - 2014-03-28 19:50 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Program Files\Realtek 2014-03-28 19:49 - 2014-03-28 19:49 - 00000000 ____D () C:\Intel 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Users\Все пользователи\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\ProgramData\AmUStor 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-03-28 19:48 - 2014-03-28 19:48 - 00000000 ____D () C:\Program Files (x86)\AmUStor 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\Все пользователи\Ralink Driver 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\Users\JuraJula\AppData\Roaming\InstallShield 2014-03-28 19:39 - 2014-03-28 19:39 - 00000000 ____D () C:\ProgramData\Ralink Driver 2014-03-28 19:31 - 2014-03-28 19:31 - 00002784 _____ () C:\Windows\System32\Tasks\cvc 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Шаблоны 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Мои документы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Главное меню 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Моя музыка 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои рисунки 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\Documents\Мои видеозаписи 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 _SHDL () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:31 - 2014-03-28 19:31 - 00000000 ___RD () C:\Users\JuraJula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Все пользователи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Public\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Мои документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Моя музыка 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои рисунки 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\Documents\Мои видеозаписи 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Программы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Шаблоны 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Рабочий стол 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Избранное 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Документы 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 _SHDL () C:\ProgramData\Главное меню 2014-03-28 19:30 - 2014-03-28 19:30 - 00000000 ____D () C:\Recovery 2014-03-28 19:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-03-28 19:17 - 2014-03-28 19:17 - 00000000 ____D () C:\Windows\CSC ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2014-04-09 13:18] - [2010-11-21 04:24] - 2823168 ____A (Microsoft Corporation) B6CE2E64BDFED9A070A4D7D59C70AD2E C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit nointegritychecks: ==> Integrity Checks is disabled <===== ATTENTION! LastRegBack: 2014-04-09 12:06 ==================== End Of Log ============================ |
Themen zu Qone8 Virus / Malware entfernen Log auswerten |
anti, auswerten, browser, cc cleaner, cleaner, direkt, einfach, eingefangen, entfernen, file, gen, hijack, installiert, log, log file, malware, neu, programme, progs, qone8, qone8 malware, rootkits, tools, verschiedene, verseucht, virus, windows, windows 7 |