Премини към съдържанието

gamena

Потребител
  • Публикации

    20
  • Регистрация

  • Последно онлайн

Харесвания

8 Неутрална репутация

Всичко за gamena

  • Титла
    Потребител

Последни посетители

1163 прегледа на профила
  1. gamena

    Какво прави този - svchost.exe - Проблем!

    Благодаря на всички за изчерпатените отговори! Да Windows 7 е. Отново голямо Благодаря!
  2. Какво правят тези процеси svchost.exe? От известно време, когато стартирам браузъра (Chrome) ми активира и всички тези процеси svchost.exe . Те от своя страна натоварват допълнително компютъра и всичко започва да забива. Нямам инсталирани игрички на компютъра. 1.За какво се изпозват тези процеси? 2.Как да ги махна, за да не се стартират с всяко включване на браузъра или компа?
  3. Моделът на рутера е : TP-LINK TL-WR740N На кого ще трябва да плащам и каква ще бъде услугата?
  4. Здравейте! Няколко пъти съм искал помощ в този форум и винаги сте били на ниво, за което съм изключително благодарен! Семейството ми има малка къща за гости. В нея даваме на почиващите безплатен Wifi. Към рутера има и постоянно свързан настолен компютър чрез LAN кабел, ОС- Windows 7. Към момента те влизат с парола - 8 цифри. Искам да направя достъпа до Wifi да се получава след вписване на e-mail в HTML страница която да се отваря веднага след свързване на устройство към Wifi мрежата. Подобно нещо съм виждал в различни заведения, хотели, дори и в БДЖ, но незнам как става. Ако можете да ме просветлите или да ми дадете линк към тема която е разискала въпроса, ще съм много благодарен! Благодаря за отделеното време!
  5. БЛАГОДАРЯ ви сърдечно! Проблемът се оказа в антивирусната - мтъсен NOD32 Вече го няма и няма и проблем .
  6. електронно банкиране на ОББ, сайтът на агенция по геодезия и кадастър е със сертификати които са ми инсталирани на него браузър и с другите срещам проблеми има и др. на Търговския регитър и т.н. Проблемите си стоят и след деинсталацията на Firefox и отново инсталирането му чрез горната програма.
  7. Въпрос какво да направя, за да не ми се отваря на всеки сайт прозорецът с добавяне на изключения??? Защо не ми е инсталира нито една от добавките към Mozilla Firefox. Когато натисна инсталирай и ми казва "Грешка при инсталиране". Тези два проблема ми излизат само на Firefox. С други браузъри нямам такива проблеми, но тъй като ползвам браузъраза някои специализирани сайтове, които работят само със firefox нямам избор. Преинсталирах Mozzilata, но ефект нулев.
  8. Здравейте! Имам нужда от софтуер с който да си отчитам плащания по поръчки. Няма да е с данъчни цели и нямам нужда от начислявания на ДДС и разни други такива. Ще се използва за вътрешнофирмени нужди. Няколко офиса в различни градове да могат да знаят, в кой офис и кога им е платена поръчката. Прилагам снимки, визуализация как мисля ,че трябва да изглежда програмката. Нямам претенции за дизайна. Регистрацията на потребители ще се извършва само от Шефа. Дали някой има подобна програма която да сподели ? Ако не ви се намира колко би струвало създаването на такава и към кои фирми мога да се обърна за оферти?
  9. Благодаря много за съдействието!
  10. Прикачвам два файла на ЕSET ,тъй като при второто сканиране успях да включа Scan Archives Scan for potentially unwanted applications Scan for potentially unsafe applications Enable Anti-Stealth Technology ESET sca 2.txt ESET scan.txt HitmanPro_20160308_1241.log
  11. Да ! С огромни благодарнсти! Pop-Up рекламите изчезнаха. Незнам как го направихте ,но още веднъж Благодаря!
  12. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01 Ran by Belqta (administrator) on BELQTA-PC (06-03-2016 12:22:39) Running from C:\Users\Belqta\Desktop Loaded Profiles: Belqta (Available Profiles: Belqta & QBPOSDBSrvUser) Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Български (България) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Transaction Software, D 81829 Munich) D:\TECDOC_CD\1_2015\db\tbmux32.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-17] (Intel Corporation) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-23] (NVIDIA Corporation) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [298776 2015-11-20] (Intel Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596016 2016-01-29] (Oracle Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-967637239-2598779546-2425925067-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-967637239-2598779546-2425925067-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe HKU\S-1-5-21-967637239-2598779546-2425925067-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175368 2016-01-23] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [153392 2016-01-23] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4 Tcpip\..\Interfaces\{281F7642-64E5-42C2-9FF4-66A871E9AD48}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{281F7642-64E5-42C2-9FF4-66A871E9AD48}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{493FC3F6-3B87-41C1-B337-BE6C28CF8169}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{C69D9F33-B0F6-4632-BD04-B501659EAA15}: [DhcpNameServer] 172.20.10.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKU\S-1-5-21-967637239-2598779546-2425925067-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-967637239-2598779546-2425925067-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\S-1-5-21-967637239-2598779546-2425925067-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/ BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-01-12] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_74\bin\ssv.dll [2016-03-06] (Oracle Corporation) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-12] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_74\bin\jp2ssv.dll [2016-03-06] (Oracle Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-01-12] (Microsoft Corporation) BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL => No File BHO-x32: Adobe Acrobat Create PDF Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-21] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-12] (Microsoft Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems Incorporated) Toolbar: HKU\S-1-5-21-967637239-2598779546-2425925067-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation) Handler-x32: qbpos - {662E7FAE-5C17-491C-AD9D-98C1F66CC6A0} - C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBPOSProtocol.dll [2014-09-24] (Intuit Inc.) FireFox: ======== FF ProfilePath: C:\Users\Belqta\AppData\Roaming\Mozilla\Firefox\Profiles\co2b5t3u.default-1449333294533 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] () FF Plugin: @java.com/DTPlugin,version=11.74.2 -> C:\Program Files\Java\jre1.8.0_74\bin\dtplugin\npDeployJava1.dll [2016-03-06] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.74.2 -> C:\Program Files\Java\jre1.8.0_74\bin\plugin2\npjp2.dll [2016-03-06] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-01-20] (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-21] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-11-21] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-11-21] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.4.24\coFFAddon => not found FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-06-23] [not signed] FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.4.24\coFFAddon => not found FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-02-02] [not signed] Chrome: ======= CHR Profile: C:\Users\Belqta\AppData\Local\Google\Chrome\User Data\Default CHR HKLM-x32\...\Chrome\Extension: [ablpcikjmhamjanpibkccdmpoekjigja] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23] CHR HKLM-x32\...\Chrome\Extension: [fdjdjkkjoiomafnihnobkinnfjnnlhdg] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gdljkkmghdkckhaogaemgbgdfophkfco] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [pjfkgjlnocfakoheoapicnknoglipapd] - hxxp://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed] R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2505472 2015-10-09] (ESET) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19424 2015-11-17] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319080 2015-12-10] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 Transbase TECDOC CD 1_2015 Service; D:\TECDOC_CD\1_2015\db\tbmux32.exe [360448 2014-05-08] (Transaction Software, D 81829 Munich) [File not signed] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 EraserSvc11520; "C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\N360.exe" /h ccCommon [X] S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [X] ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-03-18] (DT Soft Ltd) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264040 2015-09-23] (ESET) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [186784 2015-09-23] (ESET) R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [170792 2015-09-23] (ESET) S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-03-05] () S2 HOSTNT; C:\Windows\SysWow64\Drivers\HOSTNT.sys [4032 2015-07-27] () [File not signed] R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [31712 2015-11-24] (Intel Corporation) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [180264 2015-12-24] (Intel Corporation) S3 Netaapl; C:\Windows\System32\DRIVERS\netaapl64.sys [23040 2015-01-16] (Apple Inc.) [File not signed] S3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [51712 2009-06-10] (Realtek Semiconductor Corporation ) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [761560 2015-09-25] (Realsil Semiconductor Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Apple, Inc.) [File not signed] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EraserUtilDrv11311; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11311.sys [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-03-06 12:22 - 2016-03-06 12:23 - 00017060 _____ C:\Users\Belqta\Desktop\FRST.txt 2016-03-06 12:21 - 2016-03-06 12:21 - 02374144 _____ (Farbar) C:\Users\Belqta\Desktop\FRST64.exe 2016-03-06 12:12 - 2016-03-06 12:16 - 00110176 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2016-03-06 12:12 - 2016-03-06 12:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-03-06 12:12 - 2016-03-06 12:16 - 00000000 ____D C:\Program Files\Java 2016-03-06 12:09 - 2016-03-06 12:10 - 18346464 _____ (Adobe Systems Inc.) C:\Users\Belqta\Downloads\AdobeAIRInstaller.exe 2016-03-06 12:08 - 2016-03-06 12:12 - 57569888 _____ (Oracle Corporation) C:\Users\Belqta\Downloads\jre-8u74-windows-x64.exe 2016-03-06 12:04 - 2016-03-06 12:09 - 57099360 _____ (Oracle Corporation) C:\Users\Belqta\Downloads\jre-8u73-windows-x64.exe 2016-03-05 23:25 - 2016-03-05 23:25 - 00007730 _____ C:\Users\Belqta\Desktop\SecurityCheck.txt 2016-03-05 23:25 - 2016-03-05 23:25 - 00000000 ____D C:\SecurityCheck 2016-03-05 23:23 - 2016-02-27 16:56 - 00671856 _____ (Alex Dragokas) C:\Users\Belqta\Desktop\Check Browsers LNK.exe 2016-03-05 23:21 - 2016-03-05 23:21 - 00005951 _____ C:\Users\Belqta\Desktop\JRT.txt 2016-03-05 23:17 - 2016-03-05 23:17 - 00000991 _____ C:\Users\Belqta\Desktop\AdwCleaner[S1].txt 2016-03-05 23:15 - 2016-03-05 23:16 - 00000000 ____D C:\AdwCleaner 2016-03-05 23:13 - 2016-03-05 23:13 - 00001813 _____ C:\Users\Belqta\Desktop\Malwere scan1.txt 2016-03-05 23:12 - 2016-03-05 23:12 - 00001299 _____ C:\Users\Belqta\Desktop\Malwere scan2.txt.txt 2016-03-05 22:14 - 2016-03-06 00:45 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-03-05 22:14 - 2016-03-05 22:14 - 00001102 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-03-05 22:14 - 2016-03-05 22:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-03-05 22:14 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-03-05 22:14 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-03-05 22:14 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-03-05 22:09 - 2016-03-05 22:11 - 00008798 _____ C:\Users\Belqta\Desktop\Rkill.txt 2016-03-05 22:08 - 2016-03-05 22:08 - 00488580 _____ (glax24 (safezone.cc)) C:\Users\Belqta\Desktop\SecurityCheck.exe 2016-03-05 22:07 - 2016-03-05 22:07 - 00242486 _____ C:\Users\Belqta\Downloads\CheckBrowsersLNK.zip 2016-03-05 22:06 - 2016-03-05 22:06 - 01518592 _____ C:\Users\Belqta\Desktop\adwcleaner_5.037.exe 2016-03-05 22:04 - 2016-03-05 22:05 - 01609216 _____ (Malwarebytes) C:\Users\Belqta\Desktop\JRT.exe 2016-03-05 21:45 - 2016-03-05 22:07 - 22908888 _____ (Malwarebytes ) C:\Users\Belqta\Desktop\mbam-setup-2.2.0.1024.exe 2016-03-05 21:45 - 2016-03-05 21:47 - 02032072 _____ (Bleeping Computer, LLC) C:\Users\Belqta\Desktop\rkill.exe 2016-03-05 16:47 - 2016-03-06 12:22 - 00000000 ____D C:\FRST 2016-03-05 14:36 - 2016-03-05 14:36 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2016-03-05 13:18 - 2016-03-05 13:18 - 00001412 _____ C:\Windows\system32\.crusader 2016-03-05 13:08 - 2016-03-05 13:18 - 00000000 ____D C:\ProgramData\HitmanPro 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 4) 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 3) 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 2) 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 1) 2016-03-04 23:34 - 2016-03-05 12:54 - 00000000 ____D C:\ProgramData\Lavasoft 2016-03-04 23:34 - 2016-03-05 12:54 - 00000000 ____D C:\Program Files (x86)\Lavasoft 2016-03-03 22:49 - 2016-03-03 22:49 - 00003728 _____ C:\Windows\System32\Tasks\{C2657580-061F-58AA-41CB-7062AD1F2436} 2016-03-02 00:10 - 2016-03-02 00:18 - 1733404215 _____ C:\Users\Belqta\Downloads\Zootopia (2016) HDCAM NEW SOURCE x264 - Exclusive(musicbolt.com).mkv 2016-02-29 00:17 - 2016-03-05 13:29 - 00000000 ____D C:\Users\Belqta\Downloads\ESET Smart Security v9.0.349.15 Final & NOD32 Antivirus v9.0.349.15 Final (32bit & 64bit) 2016-02-29 00:06 - 2016-02-29 00:06 - 00000260 _____ C:\Users\Belqta\Desktop\4-ЯДРЕН лаптоп Lenovo гр. Казанлък • OLX.bg.URL 2016-02-27 23:04 - 2016-02-27 23:04 - 00000162 _____ C:\Users\Belqta\Downloads\8012.pls 2016-02-26 03:06 - 2016-02-26 03:06 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2016-02-26 03:03 - 2016-02-26 03:03 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2016-02-26 03:03 - 2016-02-26 03:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2016-02-24 16:42 - 2016-02-24 16:42 - 00913455 _____ C:\Users\Belqta\Downloads\AS-Chilton(1).pdf 2016-02-24 16:02 - 2016-02-24 16:02 - 00913455 _____ C:\Users\Belqta\Downloads\AS-Chilton.pdf 2016-02-24 15:38 - 2016-02-24 15:38 - 04642529 _____ C:\Users\Belqta\Downloads\Protokol_OSA 2013(1).pdf 2016-02-23 14:37 - 2016-02-23 14:37 - 00125526 _____ C:\Users\Belqta\Downloads\писмо МЗХ.pdf 2016-02-23 14:32 - 2016-02-23 14:39 - 418538922 ____R C:\Users\Belqta\Downloads\The.Secret.Bible.Knights.Templar.2006.DVBRip.x264.AAC-***.mkv 2016-02-23 14:32 - 2016-02-23 14:32 - 00000000 ____D C:\Users\Belqta\Downloads\The Bible 2016-02-22 12:05 - 2016-02-23 13:02 - 00000000 ____D C:\Users\Belqta\AppData\Local\Messenger 2016-02-22 12:05 - 2016-02-23 12:52 - 00001152 _____ C:\Users\Belqta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Messenger.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00001225 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall Messenger for Desktop.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00001115 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Messenger.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00001103 _____ C:\Users\Belqta\Desktop\Messenger.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00000000 ____D C:\Program Files (x86)\Messenger for Desktop 2016-02-19 23:23 - 2016-02-19 23:39 - 00000000 ____D C:\Users\Belqta\AppData\Local\Microsoft Games 2016-02-17 20:51 - 2016-02-17 20:51 - 00298419 _____ C:\Users\Belqta\Downloads\IDEINO RAZPREDELENIE OT STELA 200756_03.02.2016.pdf 2016-02-17 03:09 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2016-02-17 03:09 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-02-16 01:06 - 2016-02-16 01:08 - 116305321 _____ C:\Users\Belqta\Downloads\Моя Страна, Моя България (в подкрепа на медиците ни в Либия)(1).mp4 2016-02-10 20:44 - 2016-02-10 20:44 - 00048770 _____ C:\Users\Belqta\Downloads\molba_za_uchastie_targ.pdf 2016-02-10 20:43 - 2016-02-10 20:43 - 00046887 _____ C:\Users\Belqta\Downloads\naddavatelno_predlojenie - fizicheski lica.pdf 2016-02-10 17:06 - 2016-02-06 12:48 - 25839104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-02-10 17:06 - 2016-02-06 12:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-02-10 17:06 - 2016-02-06 12:24 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-02-10 17:06 - 2016-02-06 12:11 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-02-10 17:06 - 2016-02-06 12:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-02-10 17:06 - 2016-02-06 12:01 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-02-10 17:06 - 2016-02-06 11:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-02-10 17:06 - 2016-02-06 11:43 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-02-10 17:06 - 2016-02-06 11:38 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-02-10 17:06 - 2016-02-06 11:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-02-10 17:06 - 2016-02-06 11:32 - 14458368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-02-10 17:06 - 2016-02-06 11:16 - 12857856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-02-10 17:06 - 2016-02-06 11:09 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-02-10 17:06 - 2016-02-06 10:54 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-02-10 17:06 - 2016-01-22 22:31 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-02-10 17:06 - 2016-01-22 22:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-02-10 17:06 - 2016-01-22 08:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-02-10 17:06 - 2016-01-22 08:41 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-02-10 17:06 - 2016-01-22 08:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-02-10 17:06 - 2016-01-22 08:32 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-02-10 17:06 - 2016-01-22 08:27 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-02-10 17:06 - 2016-01-22 08:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-02-10 17:06 - 2016-01-22 08:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-02-10 17:06 - 2016-01-22 08:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-02-10 17:06 - 2016-01-22 08:02 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-02-10 17:06 - 2016-01-22 08:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-02-10 17:06 - 2016-01-22 08:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-02-10 17:06 - 2016-01-22 08:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-02-10 17:06 - 2016-01-22 08:00 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-02-10 17:06 - 2016-01-22 07:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-02-10 17:06 - 2016-01-22 07:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-02-10 17:06 - 2016-01-22 07:51 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-02-10 17:06 - 2016-01-22 07:51 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-02-10 17:06 - 2016-01-22 07:48 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-02-10 17:06 - 2016-01-22 07:47 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-02-10 17:06 - 2016-01-22 07:46 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-02-10 17:06 - 2016-01-22 07:43 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-02-10 17:06 - 2016-01-22 07:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-02-10 17:06 - 2016-01-22 07:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-02-10 17:06 - 2016-01-22 07:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-02-10 17:06 - 2016-01-22 07:34 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-02-10 17:06 - 2016-01-22 07:33 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-02-10 17:06 - 2016-01-22 07:25 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-02-10 17:06 - 2016-01-22 07:24 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-02-10 17:06 - 2016-01-22 07:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-02-10 17:06 - 2016-01-22 07:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-02-10 17:06 - 2016-01-16 21:06 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-02-10 17:06 - 2016-01-16 20:54 - 01162240 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 01362944 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-02-10 17:06 - 2016-01-06 21:02 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2016-02-10 17:06 - 2016-01-06 21:02 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-02-10 17:06 - 2016-01-06 20:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2016-02-10 17:05 - 2016-01-22 08:40 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-02-10 17:05 - 2016-01-22 08:40 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-02-10 17:05 - 2016-01-22 08:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-02-10 17:05 - 2016-01-22 08:33 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-02-10 17:05 - 2016-01-22 08:29 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-02-10 17:05 - 2016-01-22 08:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-02-10 17:05 - 2016-01-22 08:27 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-02-10 17:05 - 2016-01-22 08:17 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-02-10 17:05 - 2016-01-22 08:05 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-02-10 17:05 - 2016-01-22 08:04 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-02-10 17:05 - 2016-01-22 08:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-02-10 17:05 - 2016-01-22 08:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-02-10 17:05 - 2016-01-22 07:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-02-10 17:05 - 2016-01-22 07:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-02-10 17:05 - 2016-01-22 07:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-02-10 17:05 - 2016-01-22 07:35 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-02-10 17:05 - 2016-01-22 07:31 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-02-10 17:05 - 2016-01-22 07:27 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-02-10 17:05 - 2016-01-22 07:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-02-10 17:05 - 2016-01-22 07:07 - 02120704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-02-10 17:05 - 2016-01-16 21:01 - 02085888 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-02-10 17:05 - 2016-01-16 20:36 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-02-10 17:05 - 2016-01-11 21:05 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-02-10 17:05 - 2016-01-11 21:05 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-02-10 17:05 - 2016-01-11 21:05 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-02-10 17:05 - 2016-01-11 20:52 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2016-02-10 17:05 - 2016-01-11 20:47 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-02-10 17:05 - 2016-01-11 20:26 - 02610176 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-02-10 17:05 - 2016-01-11 20:24 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-02-10 17:05 - 2016-01-11 20:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-02-10 17:05 - 2016-01-11 20:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-02-10 17:05 - 2016-01-11 20:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-02-10 17:05 - 2016-01-11 20:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-02-10 17:05 - 2016-01-11 20:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2016-02-10 17:05 - 2016-01-11 20:14 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-02-10 17:05 - 2016-01-11 20:14 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-02-10 17:05 - 2016-01-11 20:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-02-10 17:05 - 2016-01-11 20:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-02-10 17:05 - 2016-01-07 19:53 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-02-10 17:05 - 2016-01-07 19:42 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2016-02-10 17:04 - 2016-01-22 08:27 - 05573056 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-02-10 17:04 - 2016-01-22 08:27 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-02-10 17:04 - 2016-01-22 08:27 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-02-10 17:04 - 2016-01-22 08:24 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-02-10 17:04 - 2016-01-22 08:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2016-02-10 17:04 - 2016-01-22 08:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2016-02-10 17:04 - 2016-01-22 08:18 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-02-10 17:04 - 2016-01-22 08:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-02-10 17:04 - 2016-01-22 08:17 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-02-10 17:04 - 2016-01-22 08:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-02-10 17:04 - 2016-01-22 08:16 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-02-10 17:04 - 2016-01-22 08:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-02-10 17:04 - 2016-01-22 08:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-02-10 17:04 - 2016-01-22 08:13 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-02-10 17:04 - 2016-01-22 08:13 - 03938752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-02-10 17:04 - 2016-01-22 08:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-02-10 17:04 - 2016-01-22 08:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-02-10 17:04 - 2016-01-22 08:13 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:09 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-02-10 17:04 - 2016-01-22 08:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-02-10 17:04 - 2016-01-22 08:05 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-02-10 17:04 - 2016-01-22 08:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-02-10 17:04 - 2016-01-22 08:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2016-02-10 17:04 - 2016-01-22 08:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-02-10 17:04 - 2016-01-22 08:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2016-02-10 17:04 - 2016-01-22 07:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-02-10 17:04 - 2016-01-22 07:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2016-02-10 17:04 - 2016-01-22 07:07 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-02-10 17:04 - 2016-01-22 07:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-02-10 17:04 - 2016-01-22 07:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-02-10 17:04 - 2016-01-22 06:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-02-10 17:04 - 2016-01-22 06:58 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-02-10 17:04 - 2016-01-22 06:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-02-10 17:04 - 2016-01-22 06:57 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-02-10 17:04 - 2016-01-22 06:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-02-10 17:04 - 2016-01-22 06:53 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-02-10 17:04 - 2016-01-22 06:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-02-10 17:04 - 2016-01-22 06:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-02-10 17:04 - 2016-01-22 06:53 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-02-10 17:04 - 2016-01-22 06:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-02-10 12:39 - 2016-02-25 02:05 - 00000000 ____D C:\Users\Belqta\Downloads\House.on.Haunted.Hill.1999.BDRip.XviD.AC3-WAR 2016-02-09 23:33 - 2016-02-12 17:57 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\vlc 2016-02-09 23:30 - 2016-02-09 23:30 - 00000871 _____ C:\Users\Public\Desktop\VLC media player.lnk 2016-02-09 23:30 - 2016-02-09 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2016-02-09 23:30 - 2016-02-09 23:30 - 00000000 ____D C:\Program Files\VideoLAN 2016-02-09 23:20 - 2016-02-24 00:54 - 00000000 ____D C:\Users\Belqta\Downloads\VLC Media Player 2.2.2 2016-02-07 18:38 - 2016-02-07 18:39 - 00000000 ____D C:\Users\Belqta\Desktop\Парова 2016-02-07 18:32 - 2016-02-07 18:32 - 01169920 _____ C:\Users\Belqta\Downloads\CPRS-KSB-bez-nashi1.xls 2016-02-07 02:31 - 2016-02-07 02:32 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-02-07 02:29 - 2016-01-29 04:12 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat 2016-02-07 02:29 - 2016-01-29 04:12 - 04989482 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-02-07 02:29 - 2016-01-29 04:12 - 04781824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-02-07 02:29 - 2016-01-29 04:12 - 03299824 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 03152591 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat 2016-02-07 02:29 - 2016-01-29 04:12 - 03081296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 02894976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-02-07 02:29 - 2016-01-29 04:12 - 02714568 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 02190992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 02110600 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01943624 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01435152 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01382240 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01330072 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01022872 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00965032 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00933640 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00888480 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00873472 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00716112 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00596120 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00589080 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL 2016-02-07 02:29 - 2016-01-29 04:12 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00467160 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00448592 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00381408 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00341160 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00341160 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00258504 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00224256 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00221968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00172584 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00158704 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00088328 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00075544 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2016-02-07 02:28 - 2016-01-29 04:12 - 14057256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 13120752 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 12986520 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 10521552 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 06289568 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV3apo.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 05782904 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 05289952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 02823280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 02036992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01421096 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01334384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01211840 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01186168 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01164336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01003864 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00998032 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00931624 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00923744 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00618192 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00471336 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00447720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00416512 _____ (Harman) C:\Windows\system32\HMUI.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00369304 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00360352 _____ (Harman) C:\Windows\system32\HMClariFi.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00203848 _____ (Harman) C:\Windows\system32\HMHVS.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00190944 _____ (Harman) C:\Windows\system32\HMEQ.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00190432 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00179608 _____ (Harman) C:\Windows\system32\HMLimiter.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00084624 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 06264640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 05338936 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 02437144 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01959608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01601952 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00952984 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00514528 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00500560 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00428232 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00362056 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00327464 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00310424 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00065792 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00118600 _____ C:\Windows\system32\AcpiServiceVnA64.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00105312 _____ C:\Windows\system32\audioLibVc.dll 2016-02-05 22:36 - 2016-02-05 22:36 - 00000000 ____D C:\Users\Belqta\Downloads\Sevt.bezsmurtniat 2016-02-05 22:23 - 2016-02-05 22:25 - 00000000 ____D C:\Users\Belqta\Downloads\Find.Me.Guilty.2006.BRRip.x265-WAR 2016-02-05 22:23 - 2012-10-02 16:01 - 00120721 _____ C:\Users\Belqta\Desktop\Find.Me.Guilty.2006.720p.BluRay.X264-AMIABLE.srt 2016-02-05 22:00 - 2016-03-02 01:54 - 00000000 ____D C:\Users\Belqta\Downloads\The.Chemist.2015.WEBRip.XviD.Ac3-RU ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-03-06 12:17 - 2015-09-13 17:39 - 00000000 ____D C:\Users\Belqta\.oracle_jre_usage 2016-03-06 12:17 - 2015-03-18 08:37 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-03-06 12:14 - 2015-04-02 20:22 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-03-06 12:14 - 2015-04-02 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-03-06 12:14 - 2015-04-02 20:22 - 00000000 ____D C:\Program Files\WinRAR 2016-03-06 12:02 - 2015-04-05 17:52 - 00000000 ____D C:\Program Files (x86)\Java 2016-03-06 11:36 - 2015-03-18 20:43 - 00836380 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-03-06 11:36 - 2009-07-14 07:13 - 00836380 _____ C:\Windows\system32\PerfStringBackup.INI 2016-03-06 11:36 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf 2016-03-06 11:33 - 2015-11-21 18:28 - 00000998 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-06 07:07 - 2009-07-14 06:45 - 00025936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-06 07:07 - 2009-07-14 06:45 - 00025936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-06 00:54 - 2015-03-30 12:41 - 00000000 ____D C:\KMPlayer 2016-03-05 22:36 - 2015-03-21 13:27 - 00000000 __SHD C:\Users\Belqta\IntelGraphicsProfiles 2016-03-05 22:35 - 2015-11-21 18:28 - 00000994 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-05 22:35 - 2015-11-19 19:34 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2016-03-05 22:35 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-05 22:35 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing 2016-03-05 22:35 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2016-03-05 19:15 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2016-03-05 17:51 - 2015-11-20 11:01 - 00000000 ____D C:\Users\Belqta\AppData\Local\ElevatedDiagnostics 2016-03-05 13:55 - 2015-03-18 08:45 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\uTorrent 2016-03-03 23:43 - 2015-03-18 20:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2016-02-28 03:09 - 2016-01-15 11:02 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-02-28 03:09 - 2016-01-15 11:02 - 00000000 ___SD C:\Windows\system32\GWX 2016-02-28 02:49 - 2015-03-18 10:24 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\Skype 2016-02-26 10:04 - 2015-03-18 09:19 - 00116712 _____ C:\Users\Belqta\AppData\Local\GDIPFONTCACHEV1.DAT 2016-02-26 04:43 - 2009-07-14 06:45 - 00452488 _____ C:\Windows\system32\FNTCACHE.DAT 2016-02-26 03:26 - 2015-03-18 20:22 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2016-02-26 03:24 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini 2016-02-26 03:19 - 2015-03-18 20:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2016-02-26 03:19 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2016-02-24 17:35 - 2015-04-05 17:55 - 00000000 ____D C:\ProgramData\Oracle 2016-02-24 17:24 - 2016-01-18 14:50 - 00278624 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2016-02-23 16:01 - 2015-03-18 10:24 - 00000000 ____D C:\ProgramData\Skype 2016-02-20 16:47 - 2015-06-29 10:58 - 00000000 ____D C:\Users\Belqta\Desktop\GSM 2016-02-19 17:42 - 2015-06-24 10:48 - 00000000 ____D C:\Users\Belqta\Documents\Outlook Files 2016-02-19 00:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2016-02-18 16:11 - 2015-11-19 20:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-02-17 09:16 - 2015-11-19 19:56 - 01261691 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip 2016-02-17 09:15 - 2016-01-15 11:02 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-02-17 09:15 - 2016-01-15 11:02 - 00000000 ____D C:\Windows\system32\appraiser 2016-02-17 09:15 - 2011-04-12 10:28 - 00000000 ____D C:\Program Files\Windows Journal 2016-02-10 16:17 - 2015-03-18 08:37 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-02-10 16:17 - 2015-03-18 08:37 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-02-10 16:17 - 2015-03-18 08:37 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-02-09 23:14 - 2015-03-30 12:42 - 00000606 _____ C:\Users\Belqta\Desktop\KMPlayer.lnk 2016-02-07 02:32 - 2016-02-01 17:31 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-02-07 02:32 - 2015-11-19 19:17 - 00000000 ____D C:\Windows\system32\DAX2 2016-02-07 02:26 - 2015-03-18 02:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-02-06 00:21 - 2015-03-18 10:01 - 00000000 ____D C:\Users\Belqta\AppData\Local\CrashDumps 2016-02-05 22:02 - 2015-12-10 23:52 - 00000000 ____D C:\Users\Belqta\Downloads\Skammerens.Datter.2015.BRRip.x265-DiN 2016-02-05 12:35 - 2015-11-19 19:18 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys ==================== Files in the root of some directories ======= 2014-07-10 08:16 - 2014-07-10 08:16 - 2174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2015-11-23 14:03 - 2015-11-23 15:07 - 0001058 _____ () C:\Users\Belqta\AppData\Local\7170DCEF.il 2015-11-23 14:03 - 2015-11-23 15:07 - 0000280 _____ () C:\Users\Belqta\AppData\Local\IndexIE_7170DCEF.il 2015-11-19 19:17 - 2015-11-19 19:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-11-23 15:17 - 2015-11-23 15:17 - 0000159 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc 2015-05-08 23:11 - 2015-05-09 08:52 - 5389904 _____ () C:\ProgramData\OfflineCatalogue_1_2015_TECDOC_CD.log Some files in TEMP: ==================== C:\Users\Belqta\AppData\Local\Temp\7za.exe C:\Users\Belqta\AppData\Local\Temp\LMkRstPt.exe C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper159983419427432736.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper2963169328302011695.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper3248640488017809528.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper500972733131290538.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper5243728734031789237.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper6773977590648282836.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper7907353694945076645.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper8610553047588207898.dll ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe [2015-03-18 08:45] - [2011-01-16 02:01] - 0389632 ____A (Microsoft Corporation) 81257415084B84F3C0D95C381A8D4C8F C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll [2016-01-08 18:38] - [2011-01-16 02:01] - 1008640 ____A (Microsoft Corporation) 0B864E15A0BADFF0E7BB8B59009FDDCF C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2016-02-28 00:38 ==================== End of FRST.txt ============================ Addition.txt
  13. Malwarebytes Anti-Malware (MBAM) има 2 лог. файла ,защото забравих да цъкна за рокитс при първото сканиране, Затова прикачвам и двата лог файла. AdwCleaner[S1].txt Check_Browsers_LNK.log JRT.txt Malwere scan2.txt.txt Rkill.txt SecurityCheck.txt Malwere scan1.txt
  14. Прегледах темата. Това са двата ми файла от FRST 64bit. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 Ran by Belqta (administrator) on BELQTA-PC (05-03-2016 16:48:00) Running from C:\Users\Belqta\Downloads Loaded Profiles: Belqta (Available Profiles: Belqta & QBPOSDBSrvUser) Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Български (България) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Transaction Software, D 81829 Munich) D:\TECDOC_CD\1_2015\db\tbmux32.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-17] (Intel Corporation) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-23] (NVIDIA Corporation) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [298776 2015-11-20] (Intel Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-967637239-2598779546-2425925067-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-967637239-2598779546-2425925067-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe HKU\S-1-5-21-967637239-2598779546-2425925067-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175368 2016-01-23] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [153392 2016-01-23] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.42.129 Tcpip\Parameters: [NameServer] 82.163.142.7 95.211.158.134 Tcpip\..\Interfaces\{281F7642-64E5-42C2-9FF4-66A871E9AD48}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{493FC3F6-3B87-41C1-B337-BE6C28CF8169}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{C69D9F33-B0F6-4632-BD04-B501659EAA15}: [DhcpNameServer] 172.20.10.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKU\S-1-5-21-967637239-2598779546-2425925067-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-967637239-2598779546-2425925067-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\S-1-5-21-967637239-2598779546-2425925067-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/ BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-01-12] (Microsoft Corporation) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-12] (Microsoft Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-01-12] (Microsoft Corporation) BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL => No File BHO-x32: Adobe Acrobat Create PDF Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-21] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-12] (Microsoft Corporation) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems Incorporated) Toolbar: HKU\S-1-5-21-967637239-2598779546-2425925067-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation) Handler-x32: qbpos - {662E7FAE-5C17-491C-AD9D-98C1F66CC6A0} - C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBPOSProtocol.dll [2014-09-24] (Intuit Inc.) FireFox: ======== FF ProfilePath: C:\Users\Belqta\AppData\Roaming\Mozilla\Firefox\Profiles\co2b5t3u.default-1449333294533 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] () FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-01-20] (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-02-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\new_plugin\npjp2.dll [No File] FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-02-24] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-21] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-11-21] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-11-21] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems) FF user.js: detected! => C:\Users\Belqta\AppData\Roaming\Mozilla\Firefox\Profiles\99ixdnbm.default-1447956422537\user.js [2016-02-09] FF user.js: detected! => C:\Users\Belqta\AppData\Roaming\Mozilla\Firefox\Profiles\co2b5t3u.default-1449333294533\user.js [2016-02-09] FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.4.24\coFFAddon => not found FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-06-23] [not signed] FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.4.24\coFFAddon => not found FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-02-02] [not signed] Chrome: ======= CHR Profile: C:\Users\Belqta\AppData\Local\Google\Chrome\User Data\Default CHR HKLM-x32\...\Chrome\Extension: [ablpcikjmhamjanpibkccdmpoekjigja] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23] CHR HKLM-x32\...\Chrome\Extension: [fdjdjkkjoiomafnihnobkinnfjnnlhdg] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gdljkkmghdkckhaogaemgbgdfophkfco] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [pjfkgjlnocfakoheoapicnknoglipapd] - hxxp://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) [File not signed] R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2505472 2015-10-09] (ESET) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19424 2015-11-17] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319080 2015-12-10] (Intel Corporation) R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 Transbase TECDOC CD 1_2015 Service; D:\TECDOC_CD\1_2015\db\tbmux32.exe [360448 2014-05-08] (Transaction Software, D 81829 Munich) [File not signed] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 EraserSvc11520; "C:\Program Files (x86)\Norton 360\Engine\22.5.4.24\N360.exe" /h ccCommon [X] S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [X] ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-03-18] (DT Soft Ltd) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264040 2015-09-23] (ESET) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [186784 2015-09-23] (ESET) R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [170792 2015-09-23] (ESET) S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-03-05] () S2 HOSTNT; C:\Windows\SysWow64\Drivers\HOSTNT.sys [4032 2015-07-27] () [File not signed] R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [31712 2015-11-24] (Intel Corporation) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [180264 2015-12-24] (Intel Corporation) S3 Netaapl; C:\Windows\System32\DRIVERS\netaapl64.sys [23040 2015-01-16] (Apple Inc.) [File not signed] S3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [51712 2009-06-10] (Realtek Semiconductor Corporation ) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [761560 2015-09-25] (Realsil Semiconductor Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Apple, Inc.) [File not signed] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EraserUtilDrv11311; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11311.sys [X] S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-03-05 16:48 - 2016-03-05 16:48 - 00017010 _____ C:\Users\Belqta\Downloads\FRST.txt 2016-03-05 16:47 - 2016-03-05 16:48 - 00000000 ____D C:\FRST 2016-03-05 15:44 - 2016-03-05 15:46 - 02374144 _____ (Farbar) C:\Users\Belqta\Downloads\FRST64.exe 2016-03-05 14:36 - 2016-03-05 14:36 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2016-03-05 13:57 - 2016-03-05 13:59 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\Belqta\Downloads\sh-remover.exe 2016-03-05 13:18 - 2016-03-05 13:18 - 00001412 _____ C:\Windows\system32\.crusader 2016-03-05 13:08 - 2016-03-05 13:18 - 00000000 ____D C:\ProgramData\HitmanPro 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 4) 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 3) 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 2) 2016-03-04 23:35 - 2016-03-05 12:49 - 00003416 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Daily 1) 2016-03-04 23:34 - 2016-03-05 12:54 - 00000000 ____D C:\ProgramData\Lavasoft 2016-03-04 23:34 - 2016-03-05 12:54 - 00000000 ____D C:\Program Files (x86)\Lavasoft 2016-03-03 22:49 - 2016-03-03 22:49 - 00003728 _____ C:\Windows\System32\Tasks\{C2657580-061F-58AA-41CB-7062AD1F2436} 2016-03-02 00:10 - 2016-03-02 00:18 - 1733404215 _____ C:\Users\Belqta\Downloads\Zootopia (2016) HDCAM NEW SOURCE x264 - Exclusive(musicbolt.com).mkv 2016-02-29 00:17 - 2016-03-05 13:29 - 00000000 ____D C:\Users\Belqta\Downloads\ESET Smart Security v9.0.349.15 Final & NOD32 Antivirus v9.0.349.15 Final (32bit & 64bit) 2016-02-29 00:06 - 2016-02-29 00:06 - 00000260 _____ C:\Users\Belqta\Desktop\4-ЯДРЕН лаптоп Lenovo гр. Казанлък • OLX.bg.URL 2016-02-27 23:04 - 2016-02-27 23:04 - 00000162 _____ C:\Users\Belqta\Downloads\8012.pls 2016-02-26 03:06 - 2016-02-26 03:06 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2016-02-26 03:03 - 2016-02-26 03:03 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2016-02-26 03:03 - 2016-02-26 03:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2016-02-24 16:42 - 2016-02-24 16:42 - 00913455 _____ C:\Users\Belqta\Downloads\AS-Chilton(1).pdf 2016-02-24 16:02 - 2016-02-24 16:02 - 00913455 _____ C:\Users\Belqta\Downloads\AS-Chilton.pdf 2016-02-24 15:38 - 2016-02-24 15:38 - 04642529 _____ C:\Users\Belqta\Downloads\Protokol_OSA 2013(1).pdf 2016-02-23 14:37 - 2016-02-23 14:37 - 00125526 _____ C:\Users\Belqta\Downloads\писмо МЗХ.pdf 2016-02-23 14:32 - 2016-02-23 14:39 - 418538922 ____R C:\Users\Belqta\Downloads\The.Secret.Bible.Knights.Templar.2006.DVBRip.x264.AAC-***.mkv 2016-02-23 14:32 - 2016-02-23 14:32 - 00000000 ____D C:\Users\Belqta\Downloads\The Bible 2016-02-22 12:05 - 2016-02-23 13:02 - 00000000 ____D C:\Users\Belqta\AppData\Local\Messenger 2016-02-22 12:05 - 2016-02-23 12:52 - 00001152 _____ C:\Users\Belqta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Messenger.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00001225 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall Messenger for Desktop.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00001115 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Messenger.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00001103 _____ C:\Users\Belqta\Desktop\Messenger.lnk 2016-02-22 12:05 - 2016-02-22 12:05 - 00000000 ____D C:\Program Files (x86)\Messenger for Desktop 2016-02-19 23:23 - 2016-02-19 23:39 - 00000000 ____D C:\Users\Belqta\AppData\Local\Microsoft Games 2016-02-17 20:51 - 2016-02-17 20:51 - 00298419 _____ C:\Users\Belqta\Downloads\IDEINO RAZPREDELENIE OT STELA 200756_03.02.2016.pdf 2016-02-17 03:09 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2016-02-17 03:09 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-02-16 01:06 - 2016-02-16 01:08 - 116305321 _____ C:\Users\Belqta\Downloads\Моя Страна, Моя България (в подкрепа на медиците ни в Либия)(1).mp4 2016-02-10 20:44 - 2016-02-10 20:44 - 00048770 _____ C:\Users\Belqta\Downloads\molba_za_uchastie_targ.pdf 2016-02-10 20:43 - 2016-02-10 20:43 - 00046887 _____ C:\Users\Belqta\Downloads\naddavatelno_predlojenie - fizicheski lica.pdf 2016-02-10 17:06 - 2016-02-06 12:48 - 25839104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-02-10 17:06 - 2016-02-06 12:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-02-10 17:06 - 2016-02-06 12:24 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-02-10 17:06 - 2016-02-06 12:11 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-02-10 17:06 - 2016-02-06 12:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-02-10 17:06 - 2016-02-06 12:01 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-02-10 17:06 - 2016-02-06 11:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-02-10 17:06 - 2016-02-06 11:43 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-02-10 17:06 - 2016-02-06 11:38 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-02-10 17:06 - 2016-02-06 11:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-02-10 17:06 - 2016-02-06 11:32 - 14458368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-02-10 17:06 - 2016-02-06 11:16 - 12857856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-02-10 17:06 - 2016-02-06 11:09 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-02-10 17:06 - 2016-02-06 10:54 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-02-10 17:06 - 2016-01-22 22:31 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-02-10 17:06 - 2016-01-22 22:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-02-10 17:06 - 2016-01-22 08:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-02-10 17:06 - 2016-01-22 08:41 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-02-10 17:06 - 2016-01-22 08:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-02-10 17:06 - 2016-01-22 08:32 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-02-10 17:06 - 2016-01-22 08:27 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-02-10 17:06 - 2016-01-22 08:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-02-10 17:06 - 2016-01-22 08:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-02-10 17:06 - 2016-01-22 08:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-02-10 17:06 - 2016-01-22 08:02 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-02-10 17:06 - 2016-01-22 08:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-02-10 17:06 - 2016-01-22 08:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-02-10 17:06 - 2016-01-22 08:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-02-10 17:06 - 2016-01-22 08:00 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-02-10 17:06 - 2016-01-22 07:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-02-10 17:06 - 2016-01-22 07:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-02-10 17:06 - 2016-01-22 07:51 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-02-10 17:06 - 2016-01-22 07:51 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-02-10 17:06 - 2016-01-22 07:48 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-02-10 17:06 - 2016-01-22 07:47 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-02-10 17:06 - 2016-01-22 07:46 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-02-10 17:06 - 2016-01-22 07:43 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-02-10 17:06 - 2016-01-22 07:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-02-10 17:06 - 2016-01-22 07:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-02-10 17:06 - 2016-01-22 07:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-02-10 17:06 - 2016-01-22 07:34 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-02-10 17:06 - 2016-01-22 07:33 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-02-10 17:06 - 2016-01-22 07:25 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-02-10 17:06 - 2016-01-22 07:24 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-02-10 17:06 - 2016-01-22 07:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-02-10 17:06 - 2016-01-22 07:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-02-10 17:06 - 2016-01-16 21:06 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-02-10 17:06 - 2016-01-16 20:54 - 01162240 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 01362944 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-02-10 17:06 - 2016-01-11 16:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-02-10 17:06 - 2016-01-06 21:02 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2016-02-10 17:06 - 2016-01-06 21:02 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-02-10 17:06 - 2016-01-06 20:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2016-02-10 17:05 - 2016-01-22 08:40 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-02-10 17:05 - 2016-01-22 08:40 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-02-10 17:05 - 2016-01-22 08:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-02-10 17:05 - 2016-01-22 08:33 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-02-10 17:05 - 2016-01-22 08:29 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-02-10 17:05 - 2016-01-22 08:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-02-10 17:05 - 2016-01-22 08:27 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-02-10 17:05 - 2016-01-22 08:17 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-02-10 17:05 - 2016-01-22 08:05 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-02-10 17:05 - 2016-01-22 08:04 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-02-10 17:05 - 2016-01-22 08:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-02-10 17:05 - 2016-01-22 08:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-02-10 17:05 - 2016-01-22 07:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-02-10 17:05 - 2016-01-22 07:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-02-10 17:05 - 2016-01-22 07:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-02-10 17:05 - 2016-01-22 07:35 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-02-10 17:05 - 2016-01-22 07:31 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-02-10 17:05 - 2016-01-22 07:27 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-02-10 17:05 - 2016-01-22 07:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-02-10 17:05 - 2016-01-22 07:07 - 02120704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-02-10 17:05 - 2016-01-16 21:01 - 02085888 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-02-10 17:05 - 2016-01-16 20:36 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-02-10 17:05 - 2016-01-11 21:05 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-02-10 17:05 - 2016-01-11 21:05 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-02-10 17:05 - 2016-01-11 21:05 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-02-10 17:05 - 2016-01-11 20:52 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2016-02-10 17:05 - 2016-01-11 20:47 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-02-10 17:05 - 2016-01-11 20:26 - 02610176 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-02-10 17:05 - 2016-01-11 20:24 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-02-10 17:05 - 2016-01-11 20:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-02-10 17:05 - 2016-01-11 20:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-02-10 17:05 - 2016-01-11 20:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-02-10 17:05 - 2016-01-11 20:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-02-10 17:05 - 2016-01-11 20:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2016-02-10 17:05 - 2016-01-11 20:14 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-02-10 17:05 - 2016-01-11 20:14 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-02-10 17:05 - 2016-01-11 20:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-02-10 17:05 - 2016-01-11 20:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-02-10 17:05 - 2016-01-07 19:53 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-02-10 17:05 - 2016-01-07 19:42 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2016-02-10 17:04 - 2016-01-22 08:27 - 05573056 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-02-10 17:04 - 2016-01-22 08:27 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-02-10 17:04 - 2016-01-22 08:27 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-02-10 17:04 - 2016-01-22 08:24 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-02-10 17:04 - 2016-01-22 08:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-02-10 17:04 - 2016-01-22 08:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-02-10 17:04 - 2016-01-22 08:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2016-02-10 17:04 - 2016-01-22 08:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2016-02-10 17:04 - 2016-01-22 08:18 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-02-10 17:04 - 2016-01-22 08:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-02-10 17:04 - 2016-01-22 08:17 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-02-10 17:04 - 2016-01-22 08:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-02-10 17:04 - 2016-01-22 08:16 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-02-10 17:04 - 2016-01-22 08:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-02-10 17:04 - 2016-01-22 08:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-02-10 17:04 - 2016-01-22 08:15 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-02-10 17:04 - 2016-01-22 08:13 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-02-10 17:04 - 2016-01-22 08:13 - 03938752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-02-10 17:04 - 2016-01-22 08:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-02-10 17:04 - 2016-01-22 08:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-02-10 17:04 - 2016-01-22 08:13 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 08:09 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-02-10 17:04 - 2016-01-22 08:06 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-02-10 17:04 - 2016-01-22 08:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-02-10 17:04 - 2016-01-22 08:05 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-02-10 17:04 - 2016-01-22 08:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-02-10 17:04 - 2016-01-22 08:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2016-02-10 17:04 - 2016-01-22 08:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-02-10 17:04 - 2016-01-22 08:02 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-02-10 17:04 - 2016-01-22 08:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 07:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2016-02-10 17:04 - 2016-01-22 07:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-02-10 17:04 - 2016-01-22 07:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2016-02-10 17:04 - 2016-01-22 07:07 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-02-10 17:04 - 2016-01-22 07:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-02-10 17:04 - 2016-01-22 07:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-02-10 17:04 - 2016-01-22 06:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-02-10 17:04 - 2016-01-22 06:58 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-02-10 17:04 - 2016-01-22 06:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-02-10 17:04 - 2016-01-22 06:57 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-02-10 17:04 - 2016-01-22 06:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-02-10 17:04 - 2016-01-22 06:53 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-02-10 17:04 - 2016-01-22 06:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-02-10 17:04 - 2016-01-22 06:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-02-10 17:04 - 2016-01-22 06:53 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-02-10 17:04 - 2016-01-22 06:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 17:04 - 2016-01-22 06:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-02-10 12:39 - 2016-02-25 02:05 - 00000000 ____D C:\Users\Belqta\Downloads\House.on.Haunted.Hill.1999.BDRip.XviD.AC3-WAR 2016-02-09 23:33 - 2016-02-12 17:57 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\vlc 2016-02-09 23:30 - 2016-02-09 23:30 - 00000871 _____ C:\Users\Public\Desktop\VLC media player.lnk 2016-02-09 23:30 - 2016-02-09 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2016-02-09 23:30 - 2016-02-09 23:30 - 00000000 ____D C:\Program Files\VideoLAN 2016-02-09 23:20 - 2016-02-24 00:54 - 00000000 ____D C:\Users\Belqta\Downloads\VLC Media Player 2.2.2 2016-02-07 18:38 - 2016-02-07 18:39 - 00000000 ____D C:\Users\Belqta\Desktop\Парова 2016-02-07 18:32 - 2016-02-07 18:32 - 01169920 _____ C:\Users\Belqta\Downloads\CPRS-KSB-bez-nashi1.xls 2016-02-07 02:31 - 2016-02-07 02:32 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2016-02-07 02:29 - 2016-01-29 04:12 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat 2016-02-07 02:29 - 2016-01-29 04:12 - 04989482 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2016-02-07 02:29 - 2016-01-29 04:12 - 04781824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2016-02-07 02:29 - 2016-01-29 04:12 - 03299824 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 03152591 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat 2016-02-07 02:29 - 2016-01-29 04:12 - 03081296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 02894976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2016-02-07 02:29 - 2016-01-29 04:12 - 02714568 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 02190992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 02110600 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01943624 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01435152 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01382240 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01330072 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 01022872 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00965032 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00933640 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00888480 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00873472 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00716112 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00596120 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00589080 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL 2016-02-07 02:29 - 2016-01-29 04:12 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00467160 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00448592 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00381408 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00341160 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00341160 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00258504 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00224256 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00221968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00172584 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00158704 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00088328 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00075544 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2016-02-07 02:29 - 2016-01-29 04:12 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2016-02-07 02:28 - 2016-01-29 04:12 - 14057256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 13120752 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 12986520 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 10521552 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 06289568 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV3apo.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 05782904 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 05289952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 02823280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 02036992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01421096 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01334384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01211840 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01186168 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01164336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 01003864 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00998032 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00931624 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00923744 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00618192 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00471336 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00447720 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00416512 _____ (Harman) C:\Windows\system32\HMUI.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00369304 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00360352 _____ (Harman) C:\Windows\system32\HMClariFi.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00203848 _____ (Harman) C:\Windows\system32\HMHVS.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00190944 _____ (Harman) C:\Windows\system32\HMEQ.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00190432 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00179608 _____ (Harman) C:\Windows\system32\HMLimiter.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2016-02-07 02:28 - 2016-01-29 04:12 - 00084624 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 06264640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 05338936 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 02437144 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01959608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01601952 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00952984 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00514528 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00500560 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00428232 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00362056 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00327464 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00310424 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2016-02-07 02:27 - 2016-01-29 04:12 - 00065792 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00118600 _____ C:\Windows\system32\AcpiServiceVnA64.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2016-02-07 02:26 - 2016-01-29 04:12 - 00105312 _____ C:\Windows\system32\audioLibVc.dll 2016-02-05 22:36 - 2016-02-05 22:36 - 00000000 ____D C:\Users\Belqta\Downloads\Sevt.bezsmurtniat 2016-02-05 22:23 - 2016-02-05 22:25 - 00000000 ____D C:\Users\Belqta\Downloads\Find.Me.Guilty.2006.BRRip.x265-WAR 2016-02-05 22:23 - 2012-10-02 16:01 - 00120721 _____ C:\Users\Belqta\Desktop\Find.Me.Guilty.2006.720p.BluRay.X264-AMIABLE.srt 2016-02-05 22:00 - 2016-03-02 01:54 - 00000000 ____D C:\Users\Belqta\Downloads\The.Chemist.2015.WEBRip.XviD.Ac3-RU 2016-02-04 12:15 - 2016-02-04 12:15 - 00000237 _____ C:\Users\Belqta\Desktop\Какво трябва да знаем за тонколоните Авител.URL 2016-02-04 09:35 - 2016-02-04 09:35 - 00000169 _____ C:\Users\Belqta\Desktop\Koloni.url ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-03-05 16:33 - 2015-11-21 18:28 - 00000998 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-05 16:17 - 2015-03-18 08:37 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-03-05 15:20 - 2009-07-14 06:45 - 00025936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-05 15:20 - 2009-07-14 06:45 - 00025936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-05 15:08 - 2009-07-14 07:13 - 00852070 _____ C:\Windows\system32\PerfStringBackup.INI 2016-03-05 15:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf 2016-03-05 15:04 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing 2016-03-05 13:55 - 2015-03-18 08:45 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\uTorrent 2016-03-05 13:20 - 2015-11-21 18:28 - 00000994 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-05 13:20 - 2015-03-21 13:27 - 00000000 __SHD C:\Users\Belqta\IntelGraphicsProfiles 2016-03-05 13:19 - 2015-11-19 19:34 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2016-03-05 13:19 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-05 00:00 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2016-03-04 21:15 - 2015-03-30 12:41 - 00000000 ____D C:\KMPlayer 2016-03-03 23:43 - 2015-03-18 20:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2016-02-28 03:09 - 2016-01-15 11:02 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-02-28 03:09 - 2016-01-15 11:02 - 00000000 ___SD C:\Windows\system32\GWX 2016-02-28 02:49 - 2015-03-18 10:24 - 00000000 ____D C:\Users\Belqta\AppData\Roaming\Skype 2016-02-26 10:04 - 2015-03-18 09:19 - 00116712 _____ C:\Users\Belqta\AppData\Local\GDIPFONTCACHEV1.DAT 2016-02-26 04:43 - 2009-07-14 06:45 - 00452488 _____ C:\Windows\system32\FNTCACHE.DAT 2016-02-26 03:26 - 2015-03-18 20:22 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2016-02-26 03:24 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini 2016-02-26 03:20 - 2015-03-18 20:43 - 00794276 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-02-26 03:19 - 2015-03-18 20:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2016-02-26 03:19 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2016-02-24 17:35 - 2015-04-05 17:55 - 00000000 ____D C:\ProgramData\Oracle 2016-02-24 17:25 - 2015-04-05 17:52 - 00000000 ____D C:\Program Files (x86)\Java 2016-02-24 17:24 - 2016-01-18 14:50 - 00278624 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2016-02-24 17:24 - 2015-09-13 17:39 - 00000000 ____D C:\Users\Belqta\.oracle_jre_usage 2016-02-24 17:24 - 2015-04-05 17:56 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2016-02-24 17:24 - 2015-04-05 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-02-23 16:01 - 2015-03-18 10:24 - 00000000 ____D C:\ProgramData\Skype 2016-02-20 16:47 - 2015-06-29 10:58 - 00000000 ____D C:\Users\Belqta\Desktop\GSM 2016-02-19 17:42 - 2015-06-24 10:48 - 00000000 ____D C:\Users\Belqta\Documents\Outlook Files 2016-02-19 00:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2016-02-18 16:11 - 2015-11-19 20:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-02-17 09:16 - 2015-11-19 19:56 - 01261691 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip 2016-02-17 09:15 - 2016-01-15 11:02 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-02-17 09:15 - 2016-01-15 11:02 - 00000000 ____D C:\Windows\system32\appraiser 2016-02-17 09:15 - 2011-04-12 10:28 - 00000000 ____D C:\Program Files\Windows Journal 2016-02-10 16:17 - 2015-03-18 08:37 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-02-10 16:17 - 2015-03-18 08:37 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-02-10 16:17 - 2015-03-18 08:37 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-02-09 23:14 - 2015-03-30 12:42 - 00000606 _____ C:\Users\Belqta\Desktop\KMPlayer.lnk 2016-02-07 02:32 - 2016-02-01 17:31 - 00000000 ___HD C:\Program Files (x86)\Temp 2016-02-07 02:32 - 2015-11-19 19:17 - 00000000 ____D C:\Windows\system32\DAX2 2016-02-07 02:26 - 2015-03-18 02:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-02-06 00:21 - 2015-03-18 10:01 - 00000000 ____D C:\Users\Belqta\AppData\Local\CrashDumps 2016-02-05 22:02 - 2015-12-10 23:52 - 00000000 ____D C:\Users\Belqta\Downloads\Skammerens.Datter.2015.BRRip.x265-DiN 2016-02-05 12:35 - 2015-11-19 19:18 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys ==================== Files in the root of some directories ======= 2014-07-10 08:16 - 2014-07-10 08:16 - 2174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2015-11-23 14:03 - 2015-11-23 15:07 - 0001058 _____ () C:\Users\Belqta\AppData\Local\7170DCEF.il 2015-11-23 14:03 - 2015-11-23 15:07 - 0000280 _____ () C:\Users\Belqta\AppData\Local\IndexIE_7170DCEF.il 2015-11-19 19:17 - 2015-11-19 19:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-11-23 15:17 - 2015-11-23 15:17 - 0000159 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc 2015-05-08 23:11 - 2015-05-09 08:52 - 5389904 _____ () C:\ProgramData\OfflineCatalogue_1_2015_TECDOC_CD.log Some files in TEMP: ==================== C:\Users\Belqta\AppData\Local\Temp\7za.exe C:\Users\Belqta\AppData\Local\Temp\LMkRstPt.exe C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper159983419427432736.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper2963169328302011695.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper3248640488017809528.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper500972733131290538.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper5243728734031789237.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper6773977590648282836.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper7907353694945076645.dll C:\Users\Belqta\AppData\Local\Temp\pkcs11wrapper8610553047588207898.dll C:\Users\Belqta\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe [2015-03-18 08:45] - [2011-01-16 02:01] - 0389632 ____A (Microsoft Corporation) 81257415084B84F3C0D95C381A8D4C8F C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll [2016-01-08 18:38] - [2011-01-16 02:01] - 1008640 ____A (Microsoft Corporation) 0B864E15A0BADFF0E7BB8B59009FDDCF C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2016-02-28 00:38 ==================== End of FRST.txt ============================ Addition.txt FRST.txt
  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×
×
  • Добави ново...