Премини към съдържанието

Vasil Angelov

Потребител
  • Публикации

    11
  • Регистрация

  • Последно онлайн

Харесвания

3 Неутрална репутация

Всичко за Vasil Angelov

  • Титла
    Потребител
  1. ZinoCrypt

    Благодаря за помощта
  2. ZinoCrypt

    Results of screen317's Security Check version 1.014 --- 12/23/15 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! Windows Defender WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Google Chrome (57.0.2987.133) Google Chrome (SetupMetrics...) ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe Windows Defender MpCmdRun.exe Windows Defender MSASCuiL.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log``````````````````````
  3. ZinoCrypt

    Emsisoft Emergency Kit - Version 2017.2 Last update: 25.4.2017 г. 18:09:45 User account: DESKTOP-KOU8FG3\vasko Computer name: DESKTOP-KOU8FG3 OS version: Windows 10x64 Scan settings: Scan type: Custom Scan Objects: Rootkits, Memory, Traces, C:\ Detect PUPs: On Scan archives: On ADS Scan: On File extension filter: Off Direct disk access: Off Scan start: 25.4.2017 г. 18:29:54 C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\File System\002\t\00\00000001 -> Password.lnk -> (LNK Command 0) detected: Generic.PwShell.RefB.D9AC91F7 (B) [krnl.xmd] C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\File System\002\t\00\00000001 -> Password.lnk -> (REMOVED_NULLS) detected: Generic.PwShell.RefB.5F211B64 (B) [krnl.xmd] C:\Windows\System32\winevt\Logs\Windows PowerShell.evtx detected: Generic.PwShell.RefB.D2CC28D0 (B) [krnl.xmd] Scanned 305269 Found 3 Scan end: 25.4.2017 г. 18:43:37 Scan time: 0:13:43
  4. Избор на първа кола

    Здравей,бих ти препоръчал нещо различно за тези пари Mitsubishi Carisma 1.8 gdi ,ако е в добро състояние ще ти служи много вярно. Малко по-скъпа е за поддръжка от немците,но е доста по-здрава,Гори малко 7,2-8,0л гр. 5-6л извънградско,но не може да се слага газ.Има приятна возия малко тропа интериора,но при повечето Мицубишита е така.Много е приятна за каране и не е дървена поне за мен сравнение Голф 4, а3 ,форд фокус,Рено клио, тях съм карал. това е лично мнение
  5. ZinoCrypt

    Fix result of Farbar Recovery Scan Tool (x64) Version: 20-04-2017 Ran by vasko (21-04-2017 20:29:31) Run:2 Running from C:\Users\vasko\Desktop Loaded Profiles: vasko (Available Profiles: defaultuser0 & vasko) Boot Mode: Normal ============================================== fixlist content: ***************** start HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Policies\Explorer: [] HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\MountPoints2: {736f753b-1adb-11e7-bae0-d050993dc59f} - "I:\Setup.exe" CHR HomePage: Default -> hxxp://www.oursurfing.com/?type=sy&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX CHR StartupUrls: Default -> "hxxp://www.oursurfing.com/?type=hp&ts=1431543085&z=a28ef21ca658293a4f2f06agez5c1g4w4zacdecbcq&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hppp&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.delta-homes.com/?type=hp&ts=1433181645&z=fee7c36a05899b382c0b418g7zec5c3g5b3g0q9z9m&from=wpm06013&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hp&ts=1442084587&z=81eb804fb332c45b011b3cagaz9z7o1e3b4z1wab7q&from=amt&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605","hxxp://www.oursurfing.com/?type=hp&ts=1443216470&z=2959c9445ec5efb17637840g0z4zac2o3g1q2z6m6e&from=amt&uid=wdcxwd10ezex-00bn5a0_wd-wcc3f5hhu605hu605","hxxp://www.trotux.com/?z=3e972e258a11655023d3692gfzdm4g9b0wdmdt4b7e&from=clc&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605&type=hp" CHR NewTab: Default -> Active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" CHR Extension: (Floorplanner) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag [2017-02-13] CHR Extension: (W2MO: Logistics Design, Optimization, 3D) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\acbokjkdobbboamnnfehlboekicdhcog [2017-02-13] CHR Extension: (IconSmash - Free Icons) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahphhkpleajnegckhjiogcpojdjimcob [2017-02-13] CHR Extension: (BetterTTV) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2017-04-21] CHR Extension: (Theme Creator) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2017-02-13] CHR Extension: (3DTin) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\algoakekcdmbbikdjgjdahbfihboglmi [2017-02-13] CHR Extension: (Striker Manager) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmachfiimeggafocgeldapnchdnoiib [2017-02-13] CHR Extension: (Timer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\edebbhkhcaafmolanelponjjanocpacd [2017-02-13] CHR Extension: (Label 59) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\eloonmnaipdgjlgkpdkmibbplbicjdgb [2017-02-13] CHR Extension: (Football Star) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadgecohpnkbkcjnoalfkfklmmafmean [2017-02-13] CHR Extension: (Brief Designer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jglddbemleiaphmjoglcdgpmogohlhig [2017-02-13] CHR Extension: (Weather Avenue) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kadgobdfbdigmegffjkflccgkdnjpine [2017-02-13] CHR Extension: (Sand 2) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\klicmgamjpclmbhppmdeamffedflmkcn [2017-02-13] CHR Extension: (Numerics Calculator & Converter) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe [2017-02-13] CHR Extension: (Plink) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\loeiekheegipnnbcfbfkanbbegkhjjcm [2017-02-13] CHR Extension: (Snow ReportBG) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccfmfnkmofdpfppkefodgbmhjplikik [2017-02-13] CHR Extension: (BeGone) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2017-02-13] CHR Extension: (Prove.no) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\omchpnfgkbflgngpfgnpehnkmieibgmn [2017-02-13] CHR Extension: (Chrome Media Router) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-20] 2017-04-20 16:15 - 2017-04-20 16:20 - 00000000 ____D C:\AdwCleaner 2017-04-20 16:07 - 2017-04-20 16:24 - 00000569 _____ C:\Users\vasko\Desktop\JRT.txt 2017-04-20 16:03 - 2017-04-20 16:03 - 01663672 _____ (Malwarebytes) C:\Users\vasko\Downloads\JRT.exe 2017-04-20 16:01 - 2017-04-20 16:01 - 04089296 _____ C:\Users\vasko\Downloads\adwcleaner_6.045.exe 2017-04-07 20:17 - 2017-02-28 19:58 - 00000000 ___HD C:\ProgramData\{03135366-5966-4D7D-962A-24A1F6B4D4CD} 2017-04-07 20:17 - 2017-02-13 21:43 - 00000000 __HDC C:\ProgramData\{C79644E3-0443-4647-AF82-C8A62EB1B82A} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{51B0C2F8-BB02-4FF9-83E6-6BBD135AD344} 2017-04-07 20:16 - 2017-04-07 20:17 - 0002713 _____ () C:\ProgramData\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 0000228 _____ () C:\ProgramData\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 0000228 _____ () C:\Users\vasko\AppData\Local\Attention.vbs C:\ProgramData\Attention.vbs C:\Users\Default\Attention.vbs C:\Users\defaultuser0\Attention.vbs C:\Users\Public\Attention.vbs C:\Users\vasko\Attention.vbs 2017-04-05 18:14 - 2015-01-26 17:59 - 0060296 _____ (Autodesk, Inc.) C:\Users\vasko\AppData\Local\Temp\AcDeltree.exe 2017-04-06 21:30 - 2017-04-06 21:30 - 0065536 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dialogs.dll 2017-04-06 21:30 - 2017-04-06 21:30 - 0212992 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dyndata_7330017.dll 2017-04-19 16:04 - 2016-12-06 15:21 - 6548144 _____ () C:\Users\vasko\AppData\Local\Temp\KMS.exe 2017-02-13 20:33 - 2017-01-20 17:07 - 0872088 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvSCPAPI64.dll 2017-02-13 20:33 - 2017-01-20 17:07 - 0489112 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStereoApiI64.dll 2017-02-13 20:31 - 2017-01-20 17:07 - 0352704 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStInst.exe 2017-03-20 17:50 - 2017-03-20 17:50 - 14456872 _____ (Microsoft Corporation) C:\Users\vasko\AppData\Local\Temp\vc_redist.x86.exe CustomCLSID: HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> D:\аутокад\AutoCAD 2017\Inventor Server\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> D:\аутокад\AutoCAD 2017\Inventor Server\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> D:\аутокад\AutoCAD 2017\Inventor Server\Bin\TestServer.dll => No File Task: {71218C17-6236-454E-9E42-BCCF6DD00E98} - System32\Tasks\{23C4B3FF-CFD6-4099-BDC9-E674BB403E66} => Chrome.exe hxxps://ui.skype.com/ui/0/7.33.0.105/bg/abandoninstall?source=lightinstaller&page=tsInstall AlternateDataStreams: C:\ProgramData\TEMP:58A5270D [376] FirewallRules: [{4B97F6CC-67AC-4830-8E48-26E979F29AFA}] => (Allow) LPort=50248 FirewallRules: [{8F530563-0D4E-47F4-8D5E-F86AC7671824}] => (Allow) LPort=80 FirewallRules: [{EB30488E-BAF0-45D0-AC26-9EAAD27E4C98}] => (Allow) LPort=443 FirewallRules: [{0F5848EC-EFF5-4FBA-A82B-7B197A0B2356}] => (Allow) LPort=20010 FirewallRules: [{1D897C14-0E57-4CEB-87CA-9C2ACCD5CACD}] => (Allow) LPort=3478 FirewallRules: [{D8879092-4D26-4BF6-8F3D-63736A43EA6F}] => (Allow) LPort=7850 FirewallRules: [{442DE955-69B4-4946-B6F9-484BCEE511F8}] => (Allow) LPort=7852 FirewallRules: [{01F4292A-8E1A-4643-BC6B-FAA043687E41}] => (Allow) LPort=7853 FirewallRules: [{D66ACF52-B3A8-4FD4-A3AE-70D501D612B9}] => (Allow) LPort=27022 FirewallRules: [{E4497DCC-577B-4BEF-9E80-81BDC25A2807}] => (Allow) LPort=6881 FirewallRules: [{DC72D236-B410-49AC-895C-4131268B37F8}] => (Allow) LPort=33333 FirewallRules: [{C51E286D-E93D-458B-9981-7A62AE8D104C}] => (Allow) LPort=20443 FirewallRules: [{9DF93B2B-F6BC-4101-AEAA-40522D952820}] => (Allow) LPort=8090 Hosts: cmd: netsh winsock reset catalog cmd: ipconfig /flushdns EmptyTemp: Reboot: end ***************** HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value not found. HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{736f753b-1adb-11e7-bae0-d050993dc59f} => key not found. HKCR\CLSID\{736f753b-1adb-11e7-bae0-d050993dc59f} => key not found. Chrome HomePage => not found. Chrome StartupUrls => not found. Chrome NewTab => removed successfully C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\acbokjkdobbboamnnfehlboekicdhcog => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahphhkpleajnegckhjiogcpojdjimcob => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\algoakekcdmbbikdjgjdahbfihboglmi => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmachfiimeggafocgeldapnchdnoiib => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\edebbhkhcaafmolanelponjjanocpacd => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\eloonmnaipdgjlgkpdkmibbplbicjdgb => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadgecohpnkbkcjnoalfkfklmmafmean => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jglddbemleiaphmjoglcdgpmogohlhig => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kadgobdfbdigmegffjkflccgkdnjpine => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\klicmgamjpclmbhppmdeamffedflmkcn => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\loeiekheegipnnbcfbfkanbbegkhjjcm => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccfmfnkmofdpfppkefodgbmhjplikik => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\omchpnfgkbflgngpfgnpehnkmieibgmn => not found C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm => not found "C:\AdwCleaner" => not found. "C:\Users\vasko\Desktop\JRT.txt" => not found. "C:\Users\vasko\Downloads\JRT.exe" => not found. "C:\Users\vasko\Downloads\adwcleaner_6.045.exe" => not found. "C:\ProgramData\{03135366-5966-4D7D-962A-24A1F6B4D4CD}" => not found. "C:\ProgramData\{C79644E3-0443-4647-AF82-C8A62EB1B82A}" => not found. "C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14}" => not found. "C:\ProgramData\{51B0C2F8-BB02-4FF9-83E6-6BBD135AD344}" => not found. "C:\ProgramData\ZINO_NOTE.TXT" => not found. "C:\ProgramData\Attention.vbs" => not found. "C:\Users\vasko\AppData\Local\Attention.vbs" => not found. "C:\ProgramData\Attention.vbs" => not found. "C:\Users\Default\Attention.vbs" => not found. "C:\Users\defaultuser0\Attention.vbs" => not found. "C:\Users\Public\Attention.vbs" => not found. "C:\Users\vasko\Attention.vbs" => not found. "C:\Users\vasko\AppData\Local\Temp\AcDeltree.exe" => not found. "C:\Users\vasko\AppData\Local\Temp\drm_dialogs.dll" => not found. "C:\Users\vasko\AppData\Local\Temp\drm_dyndata_7330017.dll" => not found. "C:\Users\vasko\AppData\Local\Temp\KMS.exe" => not found. "C:\Users\vasko\AppData\Local\Temp\nvSCPAPI64.dll" => not found. "C:\Users\vasko\AppData\Local\Temp\nvStereoApiI64.dll" => not found. "C:\Users\vasko\AppData\Local\Temp\nvStInst.exe" => not found. "C:\Users\vasko\AppData\Local\Temp\vc_redist.x86.exe" => not found. HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD} => key not found. HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3} => key not found. HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741} => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71218C17-6236-454E-9E42-BCCF6DD00E98} => key not found. C:\WINDOWS\System32\Tasks\{23C4B3FF-CFD6-4099-BDC9-E674BB403E66} => not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{23C4B3FF-CFD6-4099-BDC9-E674BB403E66} => key not found. "C:\ProgramData\TEMP" => ":58A5270D" ADS not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4B97F6CC-67AC-4830-8E48-26E979F29AFA} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8F530563-0D4E-47F4-8D5E-F86AC7671824} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EB30488E-BAF0-45D0-AC26-9EAAD27E4C98} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0F5848EC-EFF5-4FBA-A82B-7B197A0B2356} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1D897C14-0E57-4CEB-87CA-9C2ACCD5CACD} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D8879092-4D26-4BF6-8F3D-63736A43EA6F} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{442DE955-69B4-4946-B6F9-484BCEE511F8} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{01F4292A-8E1A-4643-BC6B-FAA043687E41} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D66ACF52-B3A8-4FD4-A3AE-70D501D612B9} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E4497DCC-577B-4BEF-9E80-81BDC25A2807} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DC72D236-B410-49AC-895C-4131268B37F8} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C51E286D-E93D-458B-9981-7A62AE8D104C} => value not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DF93B2B-F6BC-4101-AEAA-40522D952820} => value not found. C:\Windows\System32\Drivers\etc\hosts => moved successfully Hosts restored successfully. ========= netsh winsock reset catalog ========= Sucessfully reset the Winsock Catalog. You must restart the computer in order to complete the reset. ========= End of CMD: ========= ========= ipconfig /flushdns ========= Windows IP Configuration Successfully flushed the DNS Resolver Cache. ========= End of CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 348013 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8481062 B Java, Flash, Steam htmlcache => 0 B Windows/system/drivers => 21396 B Edge => 0 B Chrome => 1092 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B NetworkService => 0 B defaultuser0 => 0 B vasko => 237887 B RecycleBin => 87398 B EmptyTemp: => 8.8 MB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 20:29:49 ====
  6. ZinoCrypt

    Fix result of Farbar Recovery Scan Tool (x64) Version: 20-04-2017 Ran by vasko (21-04-2017 20:29:31) Run:2 Running from C:\Users\vasko\Desktop Loaded Profiles: vasko (Available Profiles: defaultuser0 & vasko) Boot Mode: Normal ============================================== fixlist content: ***************** start HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Policies\Explorer: [] HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\MountPoints2: {736f753b-1adb-11e7-bae0-d050993dc59f} - "I:\Setup.exe" CHR HomePage: Default -> hxxp://www.oursurfing.com/?type=sy&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX CHR StartupUrls: Default -> "hxxp://www.oursurfing.com/?type=hp&ts=1431543085&z=a28ef21ca658293a4f2f06agez5c1g4w4zacdecbcq&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hppp&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.delta-homes.com/?type=hp&ts=1433181645&z=fee7c36a05899b382c0b418g7zec5c3g5b3g0q9z9m&from=wpm06013&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hp&ts=1442084587&z=81eb804fb332c45b011b3cagaz9z7o1e3b4z1wab7q&from=amt&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605","hxxp://www.oursurfing.com/?type=hp&ts=1443216470&z=2959c9445ec5efb17637840g0z4zac2o3g1q2z6m6e&from=amt&uid=wdcxwd10ezex-00bn5a0_wd-wcc3f5hhu605hu605","hxxp://www.trotux.com/?z=3e972e258a11655023d3692gfzdm4g9b0wdmdt4b7e&from=clc&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605&type=hp" CHR NewTab: Default -> Active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" CHR Extension: (Floorplanner) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag [2017-02-13] CHR Extension: (W2MO: Logistics Design, Optimization, 3D) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\acbokjkdobbboamnnfehlboekicdhcog [2017-02-13] CHR Extension: (IconSmash - Free Icons) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahphhkpleajnegckhjiogcpojdjimcob [2017-02-13] CHR Extension: (BetterTTV) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2017-04-21] CHR Extension: (Theme Creator) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2017-02-13] CHR Extension: (3DTin) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\algoakekcdmbbikdjgjdahbfihboglmi [2017-02-13] CHR Extension: (Striker Manager) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmachfiimeggafocgeldapnchdnoiib [2017-02-13] CHR Extension: (Timer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\edebbhkhcaafmolanelponjjanocpacd [2017-02-13] CHR Extension: (Label 59) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\eloonmnaipdgjlgkpdkmibbplbicjdgb [2017-02-13] CHR Extension: (Football Star) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadgecohpnkbkcjnoalfkfklmmafmean [2017-02-13] CHR Extension: (Brief Designer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jglddbemleiaphmjoglcdgpmogohlhig [2017-02-13] CHR Extension: (Weather Avenue) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kadgobdfbdigmegffjkflccgkdnjpine [2017-02-13] CHR Extension: (Sand 2) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\klicmgamjpclmbhppmdeamffedflmkcn [2017-02-13] CHR Extension: (Numerics Calculator & Converter) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe [2017-02-13] CHR Extension: (Plink) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\loeiekheegipnnbcfbfkanbbegkhjjcm [2017-02-13] CHR Extension: (Snow ReportBG) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccfmfnkmofdpfppkefodgbmhjplikik [2017-02-13] CHR Extension: (BeGone) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2017-02-13] CHR Extension: (Prove.no) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\omchpnfgkbflgngpfgnpehnkmieibgmn [2017-02-13] CHR Extension: (Chrome Media Router) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-20] 2017-04-20 16:15 - 2017-04-20 16:20 - 00000000 ____D C:\AdwCleaner 2017-04-20 16:07 - 2017-04-20 16:24 - 00000569 _____ C:\Users\vasko\Desktop\JRT.txt 2017-04-20 16:03 - 2017-04-20 16:03 - 01663672 _____ (Malwarebytes) C:\Users\vasko\Downloads\JRT.exe 2017-04-20 16:01 - 2017-04-20 16:01 - 04089296 _____ C:\Users\vasko\Downloads\adwcleaner_6.045.exe 2017-04-07 20:17 - 2017-02-28 19:58 - 00000000 ___HD C:\ProgramData\{03135366-5966-4D7D-962A-24A1F6B4D4CD} 2017-04-07 20:17 - 2017-02-13 21:43 - 00000000 __HDC C:\ProgramData\{C79644E3-0443-4647-AF82-C8A62EB1B82A} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{51B0C2F8-BB02-4FF9-83E6-6BBD135AD344} 2017-04-07 20:16 - 2017-04-07 20:17 - 0002713 _____ () C:\ProgramData\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 0000228 _____ () C:\ProgramData\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 0000228 _____ () C:\Users\vasko\AppData\Local\Attention.vbs C:\ProgramData\Attention.vbs C:\Users\Default\Attention.vbs C:\Users\defaultuser0\Attention.vbs C:\Users\Public\Attention.vbs C:\Users\vasko\Attention.vbs 2017-04-05 18:14 - 2015-01-26 17:59 - 0060296 _____ (Autodesk, Inc.) C:\Users\vasko\AppData\Local\Temp\AcDeltree.exe 2017-04-06 21:30 - 2017-04-06 21:30 - 0065536 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dialogs.dll 2017-04-06 21:30 - 2017-04-06 21:30 - 0212992 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dyndata_7330017.dll 2017-04-19 16:04 - 2016-12-06 15:21 - 6548144 _____ () C:\Users\vasko\AppData\Local\Temp\KMS.exe 2017-02-13 20:33 - 2017-01-20 17:07 - 0872088 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvSCPAPI64.dll 2017-02-13 20:33 - 2017-01-20 17:07 - 0489112 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStereoApiI64.dll 2017-02-13 20:31 - 2017-01-20 17:07 - 0352704 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStInst.exe 2017-03-20 17:50 - 2017-03-20 17:50 - 14456872 _____ (Microsoft Corporation) C:\Users\vasko\AppData\Local\Temp\vc_redist.x86.exe CustomCLSID: HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> D:\аутокад\AutoCAD 2017\Inventor Server\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> D:\аутокад\AutoCAD 2017\Inventor Server\Bin\TestServer.dll => No File CustomCLSID: HKU\S-1-5-21-1032178621-1187439335-3717823892-1001_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> D:\аутокад\AutoCAD 2017\Inventor Server\Bin\TestServer.dll => No File Task: {71218C17-6236-454E-9E42-BCCF6DD00E98} - System32\Tasks\{23C4B3FF-CFD6-4099-BDC9-E674BB403E66} => Chrome.exe hxxps://ui.skype.com/ui/0/7.33.0.105/bg/abandoninstall?source=lightinstaller&page=tsInstall AlternateDataStreams: C:\ProgramData\TEMP:58A5270D [376] FirewallRules: [{4B97F6CC-67AC-4830-8E48-26E979F29AFA}] => (Allow) LPort=50248 FirewallRules: [{8F530563-0D4E-47F4-8D5E-F86AC7671824}] => (Allow) LPort=80 FirewallRules: [{EB30488E-BAF0-45D0-AC26-9EAAD27E4C98}] => (Allow) LPort=443 FirewallRules: [{0F5848EC-EFF5-4FBA-A82B-7B197A0B2356}] => (Allow) LPort=20010 FirewallRules: [{1D897C14-0E57-4CEB-87CA-9C2ACCD5CACD}] => (Allow) LPort=3478 FirewallRules: [{D8879092-4D26-4BF6-8F3D-63736A43EA6F}] => (Allow) LPort=7850 FirewallRules: [{442DE955-69B4-4946-B6F9-484BCEE511F8}] => (Allow) LPort=7852 FirewallRules: [{01F4292A-8E1A-4643-BC6B-FAA043687E41}] => (Allow) LPort=7853 Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 21.4.2017 г. Scan Time: 20:33 Logfile: Administrator: Yes Version: 2.2.1.1043 Malware Database: v2017.04.21.04 Rootkit Database: v2017.04.02.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 10 CPU: x64 File System: NTFS User: vasko Scan Type: Threat Scan Result: Completed Objects Scanned: 325246 Time Elapsed: 5 min, 14 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 2 PUP.Optional.SpyHunter, C:\Users\vasko\Downloads\SpyHunter-Installer.exe, Quarantined, [397f42b1fbade74f18ef3755d52bd52b], Trojan.Agent.VBS, C:\ProgramData\Microsoft\Attention.vbs, Quarantined, [54649b5852562511ffac9041a35fc13f], Physical Sectors: 0 (No malicious items detected) (end) HitmanPro 3.7.18.284 www.hitmanpro.com Computer name . . . . : DESKTOP-KOU8FG3 Windows . . . . . . . : 10.0.0.14393.X64/4 User name . . . . . . : DESKTOP-KOU8FG3\vasko UAC . . . . . . . . . : Enabled License . . . . . . . : Free Scan date . . . . . . : 2017-04-22 16:12:37 Scan mode . . . . . . : Normal Scan duration . . . . : 1m 14s Disk access mode . . : Direct disk access (SRB) Cloud . . . . . . . . : Internet Reboot . . . . . . . : No Threats . . . . . . . : 1 Traces . . . . . . . : 9 Objects scanned . . . : 1 824 690 Files scanned . . . . : 30 085 Remnants scanned . . : 281 562 files / 1 513 043 keys Malware _____________________________________________________________________ C:\WINDOWS\KMSAuto.exe Size . . . . . . . : 6 548 144 bytes Age . . . . . . . : 3.0 days (2017-04-19 16:04:10) Entropy . . . . . : 6.6 SHA-256 . . . . . : 2BECBF916BCA5665AAC64D699063D5D56043675A495F686B1146D9382F17BB1E RSA Key Size . . . : 1024 Authenticode . . . : Self-signed > Bitdefender . . . : Adware.GenericKD.4628131 > Kaspersky . . . . : not-a-virus:RiskTool.Win32.HackKMS.q Fuzzy . . . . . . : 119.0 Startup C:\WINDOWS\system32\Tasks\KMSAuto Forensic Cluster -0.7s C:\FRST\Quarantine\C\Users\vasko\AppData\Local\Temp\KMS.exe.xBAD 0.0s C:\Windows\KMSAuto.exe 0.0s C:\Windows\KMSAutoLite.ini 0.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\73\6B871E34E3E6D97D.dat 0.1s C:\Windows\System32\Tasks\KMSAuto 0.4s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\88\9DA961253FA62048.dat 0.4s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\14\D7720998D4FFE576.dat 1.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\46\A83A8BCFB6C7586E.dat 1.2s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\00\BD55BB2CCFFE2480.dat 1.2s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\82\EDB5A8827CECC7F2.dat 1.4s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\82\6BFEDD59189BFC5A.dat Suspicious files ____________________________________________________________ C:\Users\vasko\Desktop\FRST64.exe Size . . . . . . . : 2 424 832 bytes Age . . . . . . . : 5.1 days (2017-04-17 13:28:23) Entropy . . . . . : 7.6 SHA-256 . . . . . : 1A3892B81BA046DC47D475DB4626C8FC5E9A376C2CBEC17C80395F6A96C6A69E Needs elevation . : Yes Fuzzy . . . . . . : 24.0 Program has no publisher information but prompts the user for permission elevation. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Time indicates that the file appeared recently on this computer. Forensic Cluster 0.0s C:\Users\vasko\Downloads\FRST-OlderVersion\FRST64.exe 0.0s C:\Users\vasko\Desktop\FRST64.exe 0.1s C:\ProgramData\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.50.Crwl 2.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\58\5586F260A866CC66.dat 2.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\4\58\5586F260A866CC66.dat 2.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\4\58\ 4.9s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{B8FC17B6-3358-4CC4-A988-1B9A62BEA52B} 17.7s C:\Windows\prefetch\FRST64.EXE-F2C5C647.pf 20.5s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{8572DE29-EFE2-4CDB-9FA5-A32834FCB229} 24.0s C:\FRST\Hives\ 24.0s C:\FRST\Logs\ 24.0s C:\FRST\ 24.0s C:\FRST\Quarantine\ 24.7s C:\FRST\Hives\ERDNT.INF 24.7s C:\FRST\Hives\ERDNT.CON 24.7s C:\FRST\Hives\SAM 24.7s C:\FRST\Hives\SECURITY 24.7s C:\FRST\Hives\DEFAULT 24.7s C:\FRST\Hives\SYSTEM 24.8s C:\FRST\Hives\SOFTWARE 25.4s C:\FRST\Hives\Users\ 25.4s C:\FRST\Hives\Users\00000001\ 25.4s C:\FRST\Hives\Users\00000001\NTUSER.DAT 25.4s C:\FRST\Hives\Users\00000002\ 25.4s C:\FRST\Hives\Users\00000002\UsrClass.dat 25.4s C:\FRST\Hives\BCD 25.4s C:\FRST\Hives\DRIVERS 25.5s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\40\9E4B90858055AAD4.dat 25.5s C:\FRST\Hives\ERDNT.EXE 25.5s C:\FRST\Hives\ERDNTWIN.LOC 25.5s C:\FRST\Hives\ERDNTDOS.LOC 25.6s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\2\58\5586F260A866CC66.dat 25.6s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\2\58\ 28.0s C:\Users\vasko\Downloads\FRST.txt C:\Users\vasko\Downloads\FRST-OlderVersion\FRST64.exe Size . . . . . . . : 2 424 832 bytes Age . . . . . . . : 5.1 days (2017-04-17 13:28:23) Entropy . . . . . : 7.6 SHA-256 . . . . . : 17C88B8B1A982791D8D42785156D30B21204C0C379C8BAAF876E7D81ABCC1E24 Needs elevation . : Yes Fuzzy . . . . . . : 24.0 Program has no publisher information but prompts the user for permission elevation. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Time indicates that the file appeared recently on this computer. Forensic Cluster 0.0s C:\Users\vasko\Downloads\FRST-OlderVersion\FRST64.exe 0.0s C:\Users\vasko\Desktop\FRST64.exe 0.1s C:\ProgramData\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.50.Crwl 2.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\58\5586F260A866CC66.dat 2.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\4\58\5586F260A866CC66.dat 2.1s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\4\58\ 4.9s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{B8FC17B6-3358-4CC4-A988-1B9A62BEA52B} 17.7s C:\Windows\prefetch\FRST64.EXE-F2C5C647.pf 20.5s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{8572DE29-EFE2-4CDB-9FA5-A32834FCB229} 24.0s C:\FRST\Hives\ 24.0s C:\FRST\Logs\ 24.0s C:\FRST\ 24.0s C:\FRST\Quarantine\ 24.7s C:\FRST\Hives\ERDNT.INF 24.7s C:\FRST\Hives\ERDNT.CON 24.7s C:\FRST\Hives\SAM 24.7s C:\FRST\Hives\SECURITY 24.7s C:\FRST\Hives\DEFAULT 24.7s C:\FRST\Hives\SYSTEM 24.8s C:\FRST\Hives\SOFTWARE 25.4s C:\FRST\Hives\Users\ 25.4s C:\FRST\Hives\Users\00000001\ 25.4s C:\FRST\Hives\Users\00000001\NTUSER.DAT 25.4s C:\FRST\Hives\Users\00000002\ 25.4s C:\FRST\Hives\Users\00000002\UsrClass.dat 25.4s C:\FRST\Hives\BCD 25.4s C:\FRST\Hives\DRIVERS 25.5s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\40\9E4B90858055AAD4.dat 25.5s C:\FRST\Hives\ERDNT.EXE 25.5s C:\FRST\Hives\ERDNTWIN.LOC 25.5s C:\FRST\Hives\ERDNTDOS.LOC 25.6s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\2\58\5586F260A866CC66.dat 25.6s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\2\58\ 28.0s C:\Users\vasko\Downloads\FRST.txt Cookies _____________________________________________________________________ C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Cookies:addthis.com C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Cookies:atdmt.com C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Cookies:krxd.net C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Cookies:statcounter.com
  7. ZinoCrypt

    Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-04-2017 Ran by vasko (administrator) on DESKTOP-KOU8FG3 (21-04-2017 13:17:42) Running from C:\Users\vasko\Downloads Loaded Profiles: vasko (Available Profiles: defaultuser0 & vasko) Platform: Windows 10 Enterprise Version 1607 (X64) Language: English (United States) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Autodesk, Inc.) C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe (Autodesk Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.3\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe (Microsoft Corporation) C:\Windows\System32\slui.exe (Microsoft Corporation) C:\Windows\System32\slui.exe (Microsoft Corporation) C:\Windows\System32\slui.exe (Microsoft Corporation) C:\Windows\System32\slui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Gaijin Entertainment) C:\Users\vasko\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe (Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\acwebbrowser.exe (Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\acwebbrowser.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\acwebbrowser.exe (Microsoft Corporation) C:\Windows\syswow64\dxdiag.exe ==================== Registry (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-03-28] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [704424 2017-03-10] (Autodesk, Inc.) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Gaijin.Net Agent] => C:\Users\vasko\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2012616 2017-04-19] (Gaijin Entertainment) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1058360 2017-03-21] () HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545048 2017-03-14] (Skype Technologies S.A.) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1310088 2015-01-27] (Autodesk, Inc.) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Policies\Explorer: [] HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\MountPoints2: {736f753b-1adb-11e7-bae0-d050993dc59f} - "I:\Setup.exe" HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1310088 2015-01-27] (Autodesk, Inc.) ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2016-02-07] (Autodesk, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{8b4a7833-ad80-4d48-ae89-607baa1da533}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2017-02-01] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-02-01] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-02-01] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-02-01] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-02-01] (Microsoft Corporation) FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-02-01] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-10] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-10] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-11] (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2017-02-01] (Microsoft Corporation) Chrome: ======= CHR HomePage: Default -> hxxp://www.oursurfing.com/?type=sy&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX CHR StartupUrls: Default -> "hxxp://www.oursurfing.com/?type=hp&ts=1431543085&z=a28ef21ca658293a4f2f06agez5c1g4w4zacdecbcq&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hppp&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.delta-homes.com/?type=hp&ts=1433181645&z=fee7c36a05899b382c0b418g7zec5c3g5b3g0q9z9m&from=wpm06013&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hp&ts=1442084587&z=81eb804fb332c45b011b3cagaz9z7o1e3b4z1wab7q&from=amt&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605","hxxp://www.oursurfing.com/?type=hp&ts=1443216470&z=2959c9445ec5efb17637840g0z4zac2o3g1q2z6m6e&from=amt&uid=wdcxwd10ezex-00bn5a0_wd-wcc3f5hhu605hu605","hxxp://www.trotux.com/?z=3e972e258a11655023d3692gfzdm4g9b0wdmdt4b7e&from=clc&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605&type=hp" CHR NewTab: Default -> Active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" CHR Profile: C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default [2017-04-21] CHR Extension: (Google Презентации) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-02-13] CHR Extension: (Magic Actions for YouTube™) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2017-04-06] CHR Extension: (Floorplanner) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag [2017-02-13] CHR Extension: (W2MO: Logistics Design, Optimization, 3D) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\acbokjkdobbboamnnfehlboekicdhcog [2017-02-13] CHR Extension: (IconSmash - Free Icons) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahphhkpleajnegckhjiogcpojdjimcob [2017-02-13] CHR Extension: (BetterTTV) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2017-04-21] CHR Extension: (Theme Creator) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2017-02-13] CHR Extension: (3DTin) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\algoakekcdmbbikdjgjdahbfihboglmi [2017-02-13] CHR Extension: (Google Документи) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-02-13] CHR Extension: (Google Диск) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-13] CHR Extension: (UJAM - Make your music.) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2017-02-13] CHR Extension: (Fotor Photo Editor) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbckhhmjfnmedpakkaaflpnmkamdppf [2017-02-13] CHR Extension: (Изключване на осветлението) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2017-04-17] CHR Extension: (Audiotool) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2017-02-13] CHR Extension: (YouTube) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-13] CHR Extension: (лого мейкър) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbbcdmdlpjglbgpbbcgpgjhiekldfhhm [2017-02-13] CHR Extension: (Drumtrackz) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cciklmellmkeeeibdekdkbacdllgfbpa [2017-02-13] CHR Extension: (Adblock Plus) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22] CHR Extension: (Striker Manager) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmachfiimeggafocgeldapnchdnoiib [2017-02-13] CHR Extension: (Street Racers) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cohkjfondhjjfehnehlpmjpljpihfhfc [2017-02-13] CHR Extension: (Sumo Paint) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod [2017-02-13] CHR Extension: (Timer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\edebbhkhcaafmolanelponjjanocpacd [2017-02-13] CHR Extension: (Label 59) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\eloonmnaipdgjlgkpdkmibbplbicjdgb [2017-02-13] CHR Extension: (Football Star) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadgecohpnkbkcjnoalfkfklmmafmean [2017-02-13] CHR Extension: (Електронни таблици от Google) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-02-13] CHR Extension: (Causality Games) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2017-02-13] CHR Extension: (Mini Radio Player) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffeaebedjghkdbccfenjbiilalegknlj [2017-02-13] CHR Extension: (Full Screen Weather) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2017-02-13] CHR Extension: (Google Документи офлайн) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-02-13] CHR Extension: (AdBlock) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-04-14] CHR Extension: (CircuitLab) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\haghanbgfkfpmepoohpigmglbfejljoj [2017-02-13] CHR Extension: (Railroad Shunting Puzzle 2) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hapcmgkhbcadkmfdkjbnmjiflfakijgf [2017-02-13] CHR Extension: (The Elementals) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfhfehlnocjpbnbcabcjjnemkkkghaak [2017-02-13] CHR Extension: (ButtonBass Dubstep Balls) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmjadonkmcblbkocpaaefjbceiijfdg [2017-02-13] CHR Extension: (This Exquisite Forest) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\illikembakcokcfifcbkneafjjjnckkd [2017-02-13] CHR Extension: (Voice Recorder) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jehegmanppiacmmpiifhjalpkigpcida [2017-02-13] CHR Extension: (Brief Designer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jglddbemleiaphmjoglcdgpmogohlhig [2017-02-13] CHR Extension: (Weather Avenue) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kadgobdfbdigmegffjkflccgkdnjpine [2017-02-13] CHR Extension: (Calculator) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdkgihpbaofhkiliohfepioflkkbapao [2017-02-13] CHR Extension: (Autodesk Homestyler) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmmkfaghgcicheaimnpffeeekheafkb [2017-02-13] CHR Extension: (Unit Convertor) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkaklafnbnpegjnlplfgadnobkgdkinf [2017-02-13] CHR Extension: (Sand 2) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\klicmgamjpclmbhppmdeamffedflmkcn [2017-02-13] CHR Extension: (Personal Trainer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmgohkgndpahjklgpdihieeedjeneoke [2017-02-13] CHR Extension: (Little Alchemy) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2017-02-13] CHR Extension: (Until AM Web App) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kodigjkcpaoeodlnmcnekemakpnmegnk [2017-02-13] CHR Extension: (Numerics Calculator & Converter) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe [2017-02-13] CHR Extension: (AudioSauna) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkgfemnodkdnenmfkblebnkjpckkjcae [2017-02-13] CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2017-04-21] CHR Extension: (Plink) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\loeiekheegipnnbcfbfkanbbegkhjjcm [2017-02-13] CHR Extension: (Lego Builder) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mapnbjhfjionggfhlkmhjbmbpgfdlolh [2017-02-13] CHR Extension: (Planner 5D - Interior Design) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcafejemebbngbglfoinpoaannbihjna [2017-02-13] CHR Extension: (Snow ReportBG) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccfmfnkmofdpfppkefodgbmhjplikik [2017-02-13] CHR Extension: (3D Solar System Web) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdaaepplopehigjgkolniddiadbbkphd [2017-02-13] CHR Extension: (Notes) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\molpbbfgiohpdmhnpadnonkfgahjfbem [2017-02-13] CHR Extension: (BeGone) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2017-02-13] CHR Extension: (Кърлинг) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhalnajmigjnpjpdbpkpgfhekbjmolhp [2017-02-13] CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Моята тема за Chrome) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic [2017-02-13] CHR Extension: (Where is the red) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohpblkkbmfceapbolfogbfpkcjdlhonb [2017-02-13] CHR Extension: (Prøve.no) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\omchpnfgkbflgngpfgnpehnkmieibgmn [2017-02-13] CHR Extension: (Picasa) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2017-02-13] CHR Extension: (Sky and Air Baloon Theme [FVD]) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooegoinbbjiihhlncojnebbljlegkagp [2017-02-13] CHR Extension: (Edgeworld) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcfmpdiaehhnljpdomnggcbfofdgkmbp [2017-02-13] CHR Extension: (Psykopaint) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgjchkcfmigkkhedgjedmffdepgmpfil [2017-02-13] CHR Extension: (Workout Timer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjemcbmkahpjmlhmlnmmankobgmaehok [2017-02-13] CHR Extension: (Gmail) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-02-13] CHR Extension: (Chrome Media Router) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-20] CHR Extension: (Canvas Rider) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [2017-02-13] CHR Extension: (BodBot Personal Trainer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppnkdiaelidjhcebhmgemlpnghbdgjhk [2017-02-13] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1309176 2017-03-10] (Autodesk Inc.) R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc.) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-10] (NVIDIA Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1325384 2017-03-21] (Overwolf LTD) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2017-03-28] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-03-28] (Microsoft Corporation) S2 RtkAudioService; "C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe" [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0cc477a6fec64d8c\nvlddmkm.sys [14516664 2017-02-10] (NVIDIA Corporation) S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-03-17] (Windows (R) Win 7 DDK provider) S3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-02-23] (NVIDIA Corporation) S3 pelmouse; C:\WINDOWS\System32\drivers\pelmouse.sys [23040 2015-12-17] (TPMX Electronics Ltd.) S3 pelusblf; C:\WINDOWS\System32\drivers\pelusblf.sys [35328 2015-12-22] (TPMX Electronics Ltd.) S3 pelvendr; C:\WINDOWS\System32\drivers\pelvendr.sys [11776 2009-11-02] (TPMX Electronics Ltd.) S3 phidmice; C:\WINDOWS\System32\drivers\phidmice.sys [35328 2015-12-17] (TPMX Electronics Ltd.) S3 pmouself; C:\WINDOWS\System32\drivers\pmouself.sys [23040 2013-03-26] (TPMX Electronics Ltd.) S3 pvendrlf; C:\WINDOWS\System32\drivers\pvendrlf.sys [12288 2013-03-26] (TPMX Electronics Ltd.) S3 SaiK0836; C:\WINDOWS\System32\drivers\SaiK0836.sys [172040 2010-06-17] (Saitek) S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssuddmgr; C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 ssudobex; C:\WINDOWS\System32\drivers\ssudobex.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64640 2016-09-05] (QUALCOMM Incorporated) S3 ssudrmnet; C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400 2014-01-22] (DEVGURU Co., LTD.) S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [26368 2014-01-22] (DEVGURU Co., LTD.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2017-04-21 13:17 - 2017-04-21 13:17 - 00000000 ____D C:\Users\vasko\Downloads\FRST-OlderVersion 2017-04-20 17:09 - 2017-04-20 19:28 - 00179361 _____ C:\Users\vasko\Desktop\Брукнеров ЖП.dwg 2017-04-20 17:09 - 2017-04-20 17:09 - 00170464 _____ C:\Users\vasko\Desktop\Брукнеров ЖП.bak 2017-04-20 16:15 - 2017-04-20 16:20 - 00000000 ____D C:\AdwCleaner 2017-04-20 16:07 - 2017-04-20 16:24 - 00000569 _____ C:\Users\vasko\Desktop\JRT.txt 2017-04-20 16:03 - 2017-04-20 16:03 - 01663672 _____ (Malwarebytes) C:\Users\vasko\Downloads\JRT.exe 2017-04-20 16:01 - 2017-04-20 16:01 - 04089296 _____ C:\Users\vasko\Downloads\adwcleaner_6.045.exe 2017-04-19 18:24 - 2017-04-20 19:28 - 00016831 _____ C:\Users\vasko\Desktop\ЖП-Брук.таб.xlsx 2017-04-19 18:23 - 2017-04-19 18:23 - 00000000 ____D C:\Users\vasko\Documents\Custom Office Templates 2017-04-19 17:21 - 2017-04-19 18:17 - 00064393 _____ C:\Users\vasko\Desktop\ЖП_1_1_9302.dwg 2017-04-19 16:05 - 2017-04-19 18:23 - 00016783 _____ C:\Users\vasko\Downloads\ЖП-Брук.таб.xlsx 2017-04-19 16:05 - 2017-04-19 16:05 - 00000000 ____D C:\Users\vasko\AppData\Roaming\OfficeTab 2017-04-19 16:04 - 2017-04-19 16:04 - 00003704 _____ C:\WINDOWS\System32\Tasks\KMSAuto 2017-04-19 16:04 - 2017-04-19 16:04 - 00001388 _____ C:\Users\Public\Desktop\Office Tab Center 2013-16.lnk 2017-04-19 16:04 - 2017-04-19 16:04 - 00000000 ____D C:\Users\Public\Documents\Office Tab 2017-04-19 16:04 - 2017-04-19 16:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Office Tab 2017-04-19 16:04 - 2017-04-19 16:04 - 00000000 ____D C:\Program Files (x86)\Detong 2017-04-19 16:04 - 2016-12-06 16:51 - 00002153 _____ C:\WINDOWS\KMSAutoLite.ini 2017-04-19 16:04 - 2016-12-06 15:21 - 06548144 _____ C:\WINDOWS\KMSAuto.exe 2017-04-19 15:12 - 2017-04-19 15:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-04-19 15:10 - 2017-04-19 15:10 - 00002729 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002662 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002642 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00002628 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2017-04-19 15:10 - 2017-04-19 15:10 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools 2017-04-19 15:10 - 2017-04-19 15:10 - 00000000 ____D C:\WINDOWS\PCHEALTH 2017-04-19 15:10 - 2017-04-19 15:10 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2017-04-19 15:10 - 2017-04-19 15:10 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2017-04-19 15:10 - 2017-04-19 15:10 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2017-04-19 15:09 - 2017-04-19 15:10 - 00000000 ____D C:\WINDOWS\SHELLNEW 2017-04-19 15:09 - 2017-04-19 15:09 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2017-04-19 15:09 - 2017-04-19 15:09 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2017-04-19 15:08 - 2017-04-19 18:24 - 00000000 ____D C:\ProgramData\TEMP 2017-04-19 15:08 - 2017-04-19 17:53 - 00000000 ____D C:\Users\vasko\AppData\Local\Microsoft Help 2017-04-19 15:08 - 2017-04-19 15:10 - 00000000 ____D C:\Program Files\Microsoft Office 2017-04-19 15:08 - 2017-04-19 15:08 - 00000000 __RHD C:\MSOCache 2017-04-19 15:08 - 2017-04-19 15:08 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-04-19 14:46 - 2017-04-19 14:46 - 00031308 _____ C:\Users\vasko\Downloads\Microsoft Office 2016 Pro_Visio_Project 16.0.4498.1000 x86.x64 RePack by KpoJIuK.torrent 2017-04-18 18:12 - 2017-04-19 20:59 - 00000000 ____D C:\Users\vasko\Desktop\New folder (3) 2017-04-17 20:08 - 2017-04-17 20:13 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2017-04-17 20:06 - 2017-04-17 20:06 - 00000153 _____ C:\Users\vasko\Downloads\acad.err 2017-04-17 13:54 - 2017-04-17 13:54 - 00000000 ____D C:\Users\vasko\Desktop\96_2001_MY_DA0A 2017-04-17 13:50 - 2017-04-17 13:56 - 187846898 _____ C:\Users\vasko\Downloads\Carisma_1996-2002_Worshop_Manuals_Rus_Eng (1).zip 2017-04-17 13:45 - 2017-04-17 13:57 - 00004562 _____ C:\RakhniDecryptor.1.17.17.0_17.04.2017_13.45.56_log.txt 2017-04-17 13:45 - 2017-04-17 13:45 - 05212623 _____ C:\Users\vasko\Downloads\RakhniDecryptor.zip 2017-04-17 13:36 - 2017-04-17 13:36 - 00047119 _____ C:\Users\vasko\Downloads\Addition (1).txt 2017-04-17 13:29 - 2017-04-17 13:30 - 00047119 _____ C:\Users\vasko\Downloads\Addition.txt 2017-04-17 13:28 - 2017-04-21 13:17 - 02424832 _____ (Farbar) C:\Users\vasko\Downloads\FRST64.exe 2017-04-17 13:28 - 2017-04-21 13:17 - 00024826 _____ C:\Users\vasko\Downloads\FRST.txt 2017-04-17 13:28 - 2017-04-21 13:17 - 00000000 ____D C:\FRST 2017-04-16 22:26 - 2017-04-16 22:26 - 04615856 _____ (Enigma Software Group USA, LLC.) C:\Users\vasko\Downloads\SpyHunter-Installer.exe 2017-04-14 16:49 - 2017-04-14 17:36 - 143213184 _____ C:\Users\vasko\Downloads\as01.rar 2017-04-14 15:52 - 2017-04-14 15:52 - 00000000 ____D C:\ProgramData\Codemasters 2017-04-14 15:48 - 2017-04-14 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiRT Rally 2017-04-14 15:48 - 2017-04-14 15:48 - 00000618 _____ C:\Users\vasko\Desktop\DiRT Rally.lnk 2017-04-14 12:56 - 2017-04-19 14:46 - 00000000 ____D C:\Users\vasko\AppData\LocalLow\uTorrent 2017-04-14 10:07 - 2017-04-14 10:07 - 00077683 _____ C:\Users\vasko\Downloads\DiRT.Rally.2015.SteamRip.LP.torrent 2017-04-12 11:44 - 2017-03-28 10:10 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-04-12 11:44 - 2017-03-28 10:10 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-04-12 11:44 - 2017-03-28 09:21 - 00167848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2017-04-12 11:44 - 2017-03-28 09:19 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2017-04-12 11:44 - 2017-03-28 09:15 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-04-12 11:44 - 2017-03-28 09:07 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2017-04-12 11:44 - 2017-03-28 09:05 - 22221368 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-04-12 11:44 - 2017-03-28 09:05 - 08168512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-04-12 11:44 - 2017-03-28 09:05 - 01504056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 05721808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 02262776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 01431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00277344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2017-04-12 11:44 - 2017-03-28 09:04 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00116568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-04-12 11:44 - 2017-03-28 09:02 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2017-04-12 11:44 - 2017-03-28 09:02 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2017-04-12 11:44 - 2017-03-28 09:02 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2017-04-12 11:44 - 2017-03-28 08:59 - 06667520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-04-12 11:44 - 2017-03-28 08:59 - 04023008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01851688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01360464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01202936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 00981888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 00961192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-04-12 11:44 - 2017-03-28 08:53 - 01414728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-04-12 11:44 - 2017-03-28 08:53 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-04-12 11:44 - 2017-03-28 08:52 - 00306800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll 2017-04-12 11:44 - 2017-03-28 08:48 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-04-12 11:44 - 2017-03-28 08:42 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-04-12 11:44 - 2017-03-28 08:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2017-04-12 11:44 - 2017-03-28 08:41 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2017-04-12 11:44 - 2017-03-28 08:40 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll 2017-04-12 11:44 - 2017-03-28 08:40 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll 2017-04-12 11:44 - 2017-03-28 08:40 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-04-12 11:44 - 2017-03-28 08:39 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2017-04-12 11:44 - 2017-03-28 08:39 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll 2017-04-12 11:44 - 2017-03-28 08:38 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2017-04-12 11:44 - 2017-03-28 08:38 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2017-04-12 11:44 - 2017-03-28 08:37 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apds.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-04-12 11:44 - 2017-03-28 08:36 - 00769024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsecsnp.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicDisplay.sys 2017-04-12 11:44 - 2017-03-28 08:35 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2017-04-12 11:44 - 2017-03-28 08:35 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-04-12 11:44 - 2017-03-28 08:35 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsmsnap.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-04-12 11:44 - 2017-03-28 08:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00787968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2017-04-12 11:44 - 2017-03-28 08:27 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2017-04-12 11:44 - 2017-03-28 08:27 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2017-04-12 11:44 - 2017-03-28 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2017-04-12 11:44 - 2017-03-28 08:25 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2017-04-12 11:44 - 2017-03-28 08:25 - 01196544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2017-04-12 11:44 - 2017-03-28 08:25 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2017-04-12 11:44 - 2017-03-28 08:25 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2017-04-12 11:44 - 2017-03-28 08:24 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2017-04-12 11:44 - 2017-03-28 08:24 - 04614656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-04-12 11:44 - 2017-03-28 08:24 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2017-04-12 11:44 - 2017-03-28 08:24 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2017-04-12 11:44 - 2017-03-28 08:22 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2017-04-12 11:44 - 2017-03-28 08:22 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2017-04-12 11:44 - 2017-03-28 08:22 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll 2017-04-12 11:44 - 2017-03-28 08:21 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2017-04-12 11:44 - 2017-03-28 08:20 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-04-12 11:44 - 2017-03-28 08:20 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2017-04-12 11:44 - 2017-03-28 08:20 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2017-04-12 11:44 - 2017-03-28 08:18 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 06109696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-04-12 11:44 - 2017-03-28 08:16 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2017-04-12 11:44 - 2017-03-28 08:16 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2017-04-12 11:44 - 2017-03-28 08:16 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll 2017-04-12 11:44 - 2017-03-28 08:15 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 07468544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2017-04-12 11:44 - 2017-03-28 08:14 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2017-04-12 11:44 - 2017-03-28 08:13 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00862208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 02994176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-04-12 11:44 - 2017-03-28 08:11 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 01576448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 02483200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-04-12 11:44 - 2017-03-28 08:09 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2017-04-12 11:44 - 2017-03-28 08:09 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2017-04-12 11:44 - 2017-03-28 08:08 - 01564160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2017-04-12 11:44 - 2017-03-28 08:08 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2017-04-12 11:44 - 2017-03-28 08:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll 2017-04-12 11:44 - 2017-03-28 07:48 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-04-12 11:44 - 2017-03-16 07:38 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 01617760 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 01294688 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 00343904 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-04-12 11:43 - 2017-03-28 09:35 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-04-12 11:43 - 2017-03-28 09:32 - 00198856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2017-04-12 11:43 - 2017-03-28 09:29 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-04-12 11:43 - 2017-03-28 09:28 - 07786336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-04-12 11:43 - 2017-03-28 09:28 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00754528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00573280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00218520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2017-04-12 11:43 - 2017-03-28 09:22 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2017-04-12 11:43 - 2017-03-28 09:20 - 01181024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-04-12 11:43 - 2017-03-28 09:20 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-04-12 11:43 - 2017-03-28 09:18 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-04-12 11:43 - 2017-03-28 09:12 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2017-04-12 11:43 - 2017-03-28 09:11 - 02187616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-04-12 11:43 - 2017-03-28 09:11 - 01860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-04-12 11:43 - 2017-03-28 09:11 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-04-12 11:43 - 2017-03-28 09:11 - 00402784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2017-04-12 11:43 - 2017-03-28 09:11 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2017-04-12 11:43 - 2017-03-28 09:10 - 07220184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 02758648 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 01157008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-04-12 11:43 - 2017-03-28 09:09 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2017-04-12 11:43 - 2017-03-28 09:09 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2017-04-12 11:43 - 2017-03-28 09:09 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-04-12 11:43 - 2017-03-28 09:09 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll 2017-04-12 11:43 - 2017-03-28 09:08 - 01267504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2017-04-12 11:43 - 2017-03-28 09:08 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-04-12 11:43 - 2017-03-28 09:08 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-04-12 11:43 - 2017-03-28 09:06 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 04260576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01988048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01848584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01302136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01072248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 01276760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 00160088 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2017-04-12 11:43 - 2017-03-28 09:00 - 01569184 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-04-12 11:43 - 2017-03-28 09:00 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-04-12 11:43 - 2017-03-28 08:59 - 02533728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2017-04-12 11:43 - 2017-03-28 08:58 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2017-04-12 11:43 - 2017-03-28 08:58 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2017-04-12 11:43 - 2017-03-28 08:44 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-04-12 11:43 - 2017-03-28 08:41 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe 2017-04-12 11:43 - 2017-03-28 08:41 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2017-04-12 11:43 - 2017-03-28 08:41 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe 2017-04-12 11:43 - 2017-03-28 08:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-04-12 11:43 - 2017-03-28 08:38 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-04-12 11:43 - 2017-03-28 08:38 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-04-12 11:43 - 2017-03-28 08:35 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-04-12 11:43 - 2017-03-28 08:35 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2017-04-12 11:43 - 2017-03-28 08:34 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2017-04-12 11:43 - 2017-03-28 08:34 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2017-04-12 11:43 - 2017-03-28 08:31 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-04-12 11:43 - 2017-03-28 08:31 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00692224 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-04-12 11:43 - 2017-03-28 08:29 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 01145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 18364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-04-12 11:43 - 2017-03-28 08:25 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2017-04-12 11:43 - 2017-03-28 08:24 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-04-12 11:43 - 2017-03-28 08:24 - 06288384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-04-12 11:43 - 2017-03-28 08:24 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2017-04-12 11:43 - 2017-03-28 08:24 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 09130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll 2017-04-12 11:43 - 2017-03-28 08:22 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 23681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 03778048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2017-04-12 11:43 - 2017-03-28 08:20 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2017-04-12 11:43 - 2017-03-28 08:20 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 07655424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 12181504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 13087232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2017-04-12 11:43 - 2017-03-28 08:16 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2017-04-12 11:43 - 2017-03-28 08:16 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2017-04-12 11:43 - 2017-03-28 08:16 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2017-04-12 11:43 - 2017-03-28 08:15 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 08126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 01692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00975872 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2017-04-12 11:43 - 2017-03-28 08:14 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 06045184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-04-12 11:43 - 2017-03-28 08:13 - 01359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-04-12 11:43 - 2017-03-28 08:12 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 02914816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 01981440 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 08076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 02316288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-04-12 11:43 - 2017-03-28 08:09 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2017-04-12 11:43 - 2017-03-28 08:08 - 03612672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-04-12 11:43 - 2017-03-28 08:08 - 03542016 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2017-04-12 11:43 - 2017-03-28 08:08 - 02895872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-04-12 11:43 - 2017-03-28 08:08 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2017-04-12 11:43 - 2017-03-28 08:07 - 00908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2017-04-12 11:43 - 2017-03-28 08:07 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2017-04-12 11:43 - 2017-03-28 08:07 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2017-04-12 11:43 - 2017-03-28 08:06 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-04-12 11:43 - 2017-03-28 08:06 - 00999424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2017-04-12 11:43 - 2017-03-28 08:06 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2017-04-12 11:43 - 2017-03-28 08:05 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2017-04-12 11:43 - 2017-03-28 08:04 - 00119808 ____R (Microsoft Corporation) C:\WINDOWS\system32\SecureAssessmentHandlers.dll 2017-04-12 11:43 - 2017-03-18 19:50 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-04-12 11:43 - 2017-03-18 19:35 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-04-12 11:43 - 2017-03-16 07:47 - 00038768 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll 2017-04-11 21:15 - 2017-04-18 18:27 - 00076706 _____ C:\Users\vasko\Downloads\ЖП.bak 2017-04-11 19:55 - 2017-04-20 19:29 - 00067557 _____ C:\Users\vasko\Downloads\ЖП.dwg 2017-04-11 19:54 - 2017-04-11 19:54 - 00161100 _____ C:\Users\vasko\Downloads\ПроектЖП.dwg 2017-04-11 19:50 - 2017-04-11 19:50 - 02119532 _____ C:\Users\vasko\Downloads\12d.rar 2017-04-11 19:50 - 2016-04-13 13:17 - 00161100 _____ C:\Users\vasko\Desktop\ПроектЖП.dwg 2017-04-11 14:59 - 2017-04-11 14:59 - 00089592 _____ C:\Users\vasko\Downloads\Rogue_One_A_Star_Wars_Story_2016.(subs.sab.bz).rar 2017-04-11 14:46 - 2017-04-11 14:46 - 00021066 _____ C:\Users\vasko\Downloads\Minions.2015.BluRay.(subs.sab.bz).rar 2017-04-11 14:46 - 2017-04-11 14:46 - 00015241 _____ C:\Users\vasko\Downloads\Minions.2015.BDRip.x264.DUAL-REFLUX (1).torrent 2017-04-11 14:45 - 2017-04-11 14:45 - 00015241 _____ C:\Users\vasko\Downloads\Minions.2015.BDRip.x264.DUAL-REFLUX.torrent 2017-04-11 14:38 - 2017-04-11 14:38 - 00030083 _____ C:\Users\vasko\Downloads\Rogue.One.2016.720p.BluRay.x264.DTS-WAR.torrent 2017-04-08 13:25 - 2017-04-08 18:05 - 00195625 _____ C:\Users\vasko\Documents\иск.dwg 2017-04-08 12:49 - 2017-04-08 12:49 - 00000000 ____D C:\ProgramData\FLEXnet 2017-04-08 12:48 - 2017-04-08 12:48 - 00002157 _____ C:\Users\Public\Desktop\Autodesk ReCap 2016.lnk 2017-04-08 12:48 - 2017-04-08 12:48 - 00002076 _____ C:\Users\Public\Desktop\A360 Desktop.lnk 2017-04-08 12:48 - 2017-04-08 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk ReCap 2016 2017-04-08 12:48 - 2017-04-08 12:48 - 00000000 ____D C:\ProgramData\FARO 2017-04-08 12:47 - 2017-04-08 12:47 - 00002171 _____ C:\Users\Public\Desktop\AutoCAD 2016 - English.lnk 2017-04-08 12:47 - 2017-04-08 12:47 - 00000133 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc 2017-04-08 12:47 - 2017-04-08 12:47 - 00000000 ____D C:\Users\vasko\Documents\Inventor Server SDK ACAD 2016 2017-04-08 12:08 - 2017-04-08 12:08 - 00017761 _____ C:\Users\vasko\Downloads\AutoCAD2016(32+64bit).torrent 2017-04-08 12:06 - 2017-04-08 12:06 - 00000020 ___SH C:\Users\vasko\ntuser.ini 2017-04-07 20:18 - 2017-04-07 20:18 - 41555153 _____ C:\Users\vasko\Desktop\NEW FOLDER (3).RAR.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 38887990 _____ C:\Users\vasko\Downloads\WOMAN-OF-THE-HOUSE-KYLIE-CUPCAKE-MORGAN.MP4.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 14408602 _____ C:\Users\vasko\Desktop\GABRIEL ANANDA - DOPPELWHIPPER.MP3.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 09171261 _____ C:\Users\vasko\Desktop\JULIAN JEWEILTRAFFICDRUMCODEDC167.MP3.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 07538539 _____ C:\Users\vasko\Downloads\CARISMA_1996-1997_BRM.ZIP.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 07538539 _____ C:\Users\vasko\Downloads\CARISMA_1996-1997_BRM (1).ZIP.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 07538539 _____ C:\Users\vasko\Downloads\CARISMA_1996-1997_BRM (1) (1).ZIP.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 06376156 _____ C:\Users\vasko\Desktop\THE GAME - HOW WE DO.MP3.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 02484375 _____ C:\Users\vasko\Desktop\20170320_140735.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00140788 _____ C:\Users\vasko\Desktop\UNTITLED.PNG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00097729 _____ C:\Users\vasko\Desktop\92FR7Z2YX7N6CBK.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00057718 _____ C:\Users\vasko\Desktop\17498531_193188534517615_434574976459607136_N.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00032662 _____ C:\Users\vasko\Desktop\изтеглен файл.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00023332 _____ C:\Users\vasko\Desktop\17197834_1170676489711927_739850824_N.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Public\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Public\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00000402 ___SH C:\Users\vasko\Documents\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000282 ___SH C:\Users\vasko\Downloads\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000282 ___SH C:\Users\vasko\Desktop\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000278 ___SH C:\Users\Public\Documents\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Public\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Public\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\Public\Downloads\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\Public\Desktop\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\Public\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000020 ___SH C:\Users\vasko\NTUSER.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000020 ___SH C:\Users\defaultuser0\NTUSER.INI.ZINO 2017-04-07 20:17 - 2017-04-07 20:17 - 00002713 _____ C:\ProgramData\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:17 - 2017-04-07 20:17 - 00000228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Public\Documents\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Public\Documents\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:17 - 00002713 _____ C:\Users\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 00002713 _____ C:\ProgramData\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 00000228 _____ C:\Users\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:17 - 00000228 _____ C:\ProgramData\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:16 - 00000079 _____ C:\Users\vasko\AppData\Roaming\SETTINGS00008.BIN 2017-04-07 20:16 - 2017-04-07 20:16 - 00000026 _____ C:\Users\vasko\AppData\Roaming\Password.txt 2017-04-07 20:16 - 2017-04-07 20:16 - 00000000 ____D C:\Users\vasko\AppData\Roaming\Oracle 2017-04-07 20:06 - 2017-04-07 20:06 - 00033522 _____ C:\Users\vasko\Downloads\Power.Rangers.2017.HD_TS.x264.AC3_CPG.(subs.sab.bz).rar 2017-04-07 19:34 - 2017-04-07 19:34 - 00018639 _____ C:\Users\vasko\Downloads\Power.Rangers.2017.HD-TS.x264.AC3-CPG.torrent 2017-04-06 21:30 - 2017-04-06 21:30 - 00000000 __RHD C:\Users\vasko\AppData\Roaming\SecuROM 2017-04-06 21:17 - 2017-04-06 21:17 - 00000575 _____ C:\Users\Public\Desktop\Play Guitar Hero III.lnk 2017-04-06 20:58 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Documents\Aspyr 2017-04-06 20:58 - 2017-04-06 21:31 - 00000000 ____D C:\Users\vasko\AppData\Local\Aspyr 2017-04-06 20:51 - 2017-04-06 20:51 - 00000647 _____ C:\Users\Public\Desktop\Guitar Hero - World Tour.lnk 2017-04-06 20:51 - 2017-04-06 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guitar Hero - World Tour 2017-04-06 20:24 - 2017-04-06 20:24 - 00088505 _____ C:\Users\vasko\Downloads\Guitar.Hero_World.Repack.iso.torrent 2017-04-06 20:24 - 2017-04-06 20:24 - 00016980 _____ C:\Users\vasko\Downloads\Guitar_Hero_III-HATRED.torrent 2017-04-05 18:47 - 2017-04-05 18:47 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2017-04-05 18:19 - 2017-04-08 12:58 - 00000000 ____D C:\Users\vasko\AppData\Local\Autodesk 2017-04-05 18:19 - 2017-04-08 12:48 - 00000000 ____D C:\Program Files (x86)\Autodesk 2017-04-05 18:19 - 2017-04-08 12:47 - 00000000 ____D C:\Users\Public\Documents\Autodesk 2017-04-05 18:19 - 2017-04-05 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoCAD 2017 - English 2017-04-05 18:18 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Documents\Inventor Server SDK ACAD 2017 2017-04-05 18:18 - 2017-04-05 18:18 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2017-04-05 18:17 - 2017-04-08 12:48 - 00000000 ____D C:\Program Files\Autodesk 2017-04-05 18:17 - 2017-04-08 12:47 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2017-04-05 18:16 - 2017-04-08 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 2017-04-05 18:14 - 2017-04-08 13:07 - 00000000 ____D C:\ProgramData\Autodesk 2017-04-05 18:14 - 2017-04-08 12:49 - 00000000 ____D C:\Users\vasko\AppData\Roaming\Autodesk 2017-04-05 17:58 - 2017-04-05 17:58 - 00013231 _____ C:\Users\vasko\Downloads\Autodesk.AutoCAD.2017.SP1.ru-en.x86-x64.torrent 2017-04-04 18:08 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Desktop\New folder (2) 2017-04-04 15:37 - 2017-04-04 15:37 - 00000000 ____D C:\Users\vasko\Desktop\Carisma_1996-2002_Worshop_Manuals_Rus_Eng 2017-04-04 15:37 - 2017-04-04 15:35 - 187846898 _____ C:\Users\vasko\Desktop\Carisma_1996-2002_Worshop_Manuals_Rus_Eng.zip 2017-04-04 15:34 - 2017-04-04 15:35 - 187846898 _____ C:\Users\vasko\Downloads\Carisma_1996-2002_Worshop_Manuals_Rus_Eng.zip 2017-03-31 20:28 - 2017-03-31 20:28 - 00000000 ____D C:\Users\vasko\AppData\Roaming\MPC-HC 2017-03-31 20:28 - 2017-03-31 20:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2017-03-31 20:28 - 2017-03-31 20:28 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2017-03-31 20:28 - 2015-12-18 13:00 - 00755200 _____ C:\WINDOWS\system32\xvidcore.dll 2017-03-31 20:28 - 2015-12-18 13:00 - 00674816 _____ C:\WINDOWS\SysWOW64\xvidcore.dll 2017-03-31 20:28 - 2015-12-18 13:00 - 00309248 _____ C:\WINDOWS\system32\xvidvfw.dll 2017-03-31 20:28 - 2015-12-18 13:00 - 00282112 _____ C:\WINDOWS\SysWOW64\xvidvfw.dll 2017-03-31 20:28 - 2015-10-24 20:00 - 00112128 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll 2017-03-31 20:28 - 2015-02-28 19:22 - 03571200 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll 2017-03-31 20:28 - 2015-02-28 19:21 - 03591680 _____ (x264vfw project) C:\WINDOWS\SysWOW64\x264vfw.dll 2017-03-31 20:28 - 2012-07-21 14:55 - 00180736 _____ (fccHandler) C:\WINDOWS\system32\ac3acm.acm 2017-03-31 20:28 - 2012-07-21 14:54 - 00122880 _____ (fccHandler) C:\WINDOWS\SysWOW64\ac3acm.acm 2017-03-31 20:28 - 2011-12-07 21:37 - 00148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2017-03-31 20:28 - 2011-12-07 21:32 - 00216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2017-03-31 13:44 - 2017-03-31 13:44 - 00000000 ____D C:\Program Files\Intel 2017-03-28 18:44 - 2017-03-28 18:44 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUSB_01007.Wdf 2017-03-27 12:46 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Documents\Euro Truck Simulator 2 2017-03-27 12:39 - 2017-03-27 12:39 - 00000930 _____ C:\Users\vasko\Desktop\Euro Truck Simulator 2(x32).lnk 2017-03-27 12:39 - 2017-03-27 12:39 - 00000928 _____ C:\Users\vasko\Desktop\Euro Truck Simulator 2(x64).lnk 2017-03-27 12:39 - 2017-03-27 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 2017-03-27 11:09 - 2017-03-27 11:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2017-03-27 11:09 - 2017-03-27 11:09 - 00000000 ____D C:\Program Files\7-Zip 2017-03-27 10:57 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Desktop\New folder ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2017-04-21 13:18 - 2017-02-13 19:49 - 00000000 ____D C:\Users\vasko\AppData\Roaming\Skype 2017-04-21 13:17 - 2017-03-07 16:23 - 00000000 ____D C:\Users\vasko\AppData\Local\Overwolf 2017-04-21 13:17 - 2017-02-13 19:47 - 00000000 ____D C:\Users\vasko 2017-04-20 20:58 - 2017-02-13 06:17 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-04-20 16:26 - 2017-02-12 20:26 - 01132248 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-04-20 16:21 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-04-20 16:20 - 2017-02-13 06:17 - 00415800 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-04-20 16:20 - 2017-02-13 06:17 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-04-20 16:20 - 2017-02-13 06:17 - 00000000 ____D C:\ProgramData\NVIDIA 2017-04-20 16:20 - 2017-02-13 05:42 - 00262144 _____ C:\WINDOWS\system32\config\BBI 2017-04-19 22:17 - 2017-02-13 21:36 - 00000000 ____D C:\Users\vasko\AppData\Roaming\uTorrent 2017-04-19 16:59 - 2017-02-13 19:52 - 00000000 ____D C:\Users\vasko\AppData\Local\CrashDumps 2017-04-19 16:13 - 2017-02-13 19:47 - 00000000 ____D C:\Users\vasko\AppData\Local\Packages 2017-04-19 15:45 - 2017-02-28 17:02 - 00000000 ____D C:\Users\vasko\Documents\Assetto Corsa 2017-04-19 15:14 - 2017-02-13 05:46 - 00000167 _____ C:\WINDOWS\win.ini 2017-04-19 15:11 - 2017-02-13 05:45 - 00000000 ____D C:\WINDOWS\INF 2017-04-19 15:10 - 2017-02-13 05:46 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-04-19 15:10 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-04-19 15:09 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files\Common Files\System 2017-04-19 13:04 - 2017-02-13 05:46 - 00000000 ___HD C:\Program Files\WindowsApps 2017-04-15 18:28 - 2017-03-07 16:24 - 00000000 ____D C:\Users\vasko\AppData\Roaming\TS3Client 2017-04-14 17:58 - 2017-03-15 15:06 - 00000000 ____D C:\Users\vasko\Documents\Project CARS 2017-04-14 15:52 - 2017-02-19 16:14 - 00000000 ____D C:\Users\vasko\Documents\My Games 2017-04-14 13:26 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\rescache 2017-04-14 10:00 - 2017-02-13 19:50 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-04-14 10:00 - 2017-02-13 19:48 - 00002367 _____ C:\Users\vasko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-04-14 10:00 - 2017-02-13 19:48 - 00000000 ___RD C:\Users\vasko\OneDrive 2017-04-14 09:59 - 2017-02-13 19:47 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-04-14 09:58 - 2017-02-13 19:45 - 00000000 ____D C:\Users\defaultuser0 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___SD C:\WINDOWS\system32\F12 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___RD C:\Program Files\Windows Defender 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\system32\setup 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\system32\Dism 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\Provisioning 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-04-12 12:52 - 2017-02-14 22:34 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-04-12 12:51 - 2017-02-14 22:34 - 148601744 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-04-12 12:51 - 2017-02-13 05:42 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-04-11 18:27 - 2017-02-13 19:53 - 00003516 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-04-11 18:27 - 2017-02-13 19:53 - 00003392 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-04-09 13:08 - 2017-02-13 21:49 - 00532136 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-04-08 17:56 - 2017-02-28 19:33 - 00000000 ____D C:\Users\vasko\Documents\VirtualDJ 2017-04-07 20:18 - 2017-03-20 17:51 - 00000000 ____D C:\Users\vasko\Tracing 2017-04-07 20:18 - 2017-03-07 16:24 - 00000000 ____D C:\Users\vasko\.TeamSpeak 3 2017-04-07 20:18 - 2017-03-07 16:24 - 00000000 ____D C:\Users\vasko\.QtWebEngineProcess 2017-04-07 20:18 - 2017-03-03 17:29 - 00000000 ____D C:\Users\vasko\ansel 2017-04-07 20:18 - 2017-02-25 18:01 - 00000000 ____D C:\Users\vasko\Documents\wmd_symbol_cache 2017-04-07 20:18 - 2017-02-13 21:41 - 00000000 ____D C:\Users\vasko\New folder 2017-04-07 20:18 - 2017-02-13 21:32 - 00000000 ____D C:\Users\vasko\Documents\Native Instruments 2017-04-07 20:18 - 2017-02-13 05:46 - 00000000 __RHD C:\Users\Public\Libraries 2017-04-07 20:17 - 2017-03-20 17:51 - 00000000 ____D C:\ProgramData\Skype 2017-04-07 20:17 - 2017-03-07 16:24 - 00000000 ____D C:\ProgramData\Overwolf 2017-04-07 20:17 - 2017-02-28 19:58 - 00000000 ___HD C:\ProgramData\{03135366-5966-4D7D-962A-24A1F6B4D4CD} 2017-04-07 20:17 - 2017-02-13 21:43 - 00000000 __HDC C:\ProgramData\{C79644E3-0443-4647-AF82-C8A62EB1B82A} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{51B0C2F8-BB02-4FF9-83E6-6BBD135AD344} 2017-04-07 20:17 - 2017-02-13 20:31 - 00000000 ____D C:\ProgramData\Package Cache 2017-04-07 20:17 - 2017-02-13 06:18 - 00000000 ____D C:\ProgramData\USOShared 2017-04-07 20:17 - 2017-02-13 06:17 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-04-07 20:17 - 2017-02-13 05:46 - 00000000 ____D C:\ProgramData\USOPrivate 2017-04-07 20:16 - 2017-02-19 16:16 - 00000000 ____D C:\ProgramData\Gaijin 2017-04-07 20:16 - 2017-02-13 21:42 - 00000000 ____D C:\ProgramData\Native Instruments 2017-04-07 20:16 - 2017-02-13 20:29 - 00000000 ____D C:\NVIDIA 2017-04-07 20:16 - 2017-02-13 19:48 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2017-04-07 20:16 - 2017-02-13 05:46 - 00000000 ____D C:\ProgramData\Comms 2017-04-07 20:16 - 2017-02-13 05:46 - 00000000 ____D C:\PerfLogs 2017-04-07 20:16 - 2017-02-13 05:40 - 00000000 ___HD C:\$SysReset 2017-04-05 18:18 - 2017-02-13 05:46 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2017-04-01 21:52 - 2017-02-13 05:47 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-04-01 21:52 - 2017-02-13 05:47 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-30 18:59 - 2017-02-13 19:53 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-03-30 18:59 - 2017-02-13 19:53 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-03-30 16:57 - 2017-03-01 21:11 - 00000035 _____ C:\ProgramData\droidcam-settings 2017-03-28 09:20 - 2017-02-12 20:21 - 02717184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-03-27 12:46 - 2017-02-25 17:55 - 00000000 ____D C:\WINDOWS\SysWOW64\directx 2017-03-27 10:55 - 2017-03-07 16:24 - 00000000 ____D C:\Program Files (x86)\Overwolf ==================== Files in the root of some directories ======= 2017-04-07 20:16 - 2017-04-07 20:16 - 0000026 _____ () C:\Users\vasko\AppData\Roaming\Password.txt 2017-04-07 20:16 - 2017-04-07 20:16 - 0000079 _____ () C:\Users\vasko\AppData\Roaming\SETTINGS00008.BIN 2017-04-07 20:18 - 2017-04-07 20:18 - 0000228 _____ () C:\Users\vasko\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 0002713 _____ () C:\Users\vasko\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 0000228 _____ () C:\ProgramData\Attention.vbs 2017-03-01 21:11 - 2017-03-30 16:57 - 0000035 _____ () C:\ProgramData\droidcam-settings 2017-04-08 12:47 - 2017-04-08 12:47 - 0000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc 2017-04-07 20:16 - 2017-04-07 20:17 - 0002713 _____ () C:\ProgramData\ZINO_NOTE.TXT Files to move or delete: ==================== C:\ProgramData\Attention.vbs C:\Users\Default\Attention.vbs C:\Users\defaultuser0\Attention.vbs C:\Users\Public\Attention.vbs C:\Users\vasko\Attention.vbs Some files in TEMP: ==================== 2017-04-05 18:14 - 2015-01-26 17:59 - 0060296 _____ (Autodesk, Inc.) C:\Users\vasko\AppData\Local\Temp\AcDeltree.exe 2017-04-06 21:30 - 2017-04-06 21:30 - 0065536 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dialogs.dll 2017-04-06 21:30 - 2017-04-06 21:30 - 0212992 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dyndata_7330017.dll 2017-04-19 16:04 - 2016-12-06 15:21 - 6548144 _____ () C:\Users\vasko\AppData\Local\Temp\KMS.exe 2017-02-13 20:33 - 2017-01-20 17:07 - 0872088 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvSCPAPI64.dll 2017-02-13 20:33 - 2017-01-20 17:07 - 0489112 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStereoApiI64.dll 2017-02-13 20:31 - 2017-01-20 17:07 - 0352704 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStInst.exe 2017-03-20 17:50 - 2017-03-20 17:50 - 14456872 _____ (Microsoft Corporation) C:\Users\vasko\AppData\Local\Temp\vc_redist.x86.exe ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2017-04-20 16:14 ==================== End of FRST.txt ============================ Addition.txt
  8. ZinoCrypt

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.1.3 (04.10.2017) Operating System: Windows 10 Enterprise x64 Ran by vasko (Administrator) on зҐвў 20.04.2017 Ј. at 16:23:45,24 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 0 Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on зҐвў 20.04.2017 Ј. at 16:24:48,67 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  9. ZinoCrypt

    # AdwCleaner v6.045 - Logfile created 20/04/2017 at 16:20:09 # Updated on 28/03/2017 by Malwarebytes # Database : 2017-04-19.2 [Local] # Operating System : Windows 10 Enterprise (X64) # Username : vasko - DESKTOP-KOU8FG3 # Running from : C:\Users\vasko\Downloads\adwcleaner_6.045.exe # Mode: Clean # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** ***** [ Folders ] ***** ***** [ Files ] ***** [-] File deleted: C:\Users\vasko\AppData\Local\Temp\Utils.dll ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled Tasks ] ***** ***** [ Registry ] ***** ***** [ Web browsers ] ***** [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: trotux [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: oursurfing [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: oursurfing_ [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: ask.com [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: oursurfing.com [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: amisites [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: amisites.com [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxp://www.oursurfing.com/?type=hp&ts=1431543085&z=a28ef21ca658293a4f2f06agez5c1g4w4zacdecbcq&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxp://www.oursurfing.com/?type=hppp&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxp://www.delta-homes.com/?type=hp&ts=1433181645&z=fee7c36a05899b382c0b418g7zec5c3g5b3g0q9z9m&from=wpm06013&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxp://www.oursurfing.com/?type=hp&ts=1442084587&z=81eb804fb332c45b011b3cagaz9z7o1e3b4z1wab7q&from=amt&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605 [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxp://www.oursurfing.com/?type=hp&ts=1443216470&z=2959c9445ec5efb17637840g0z4zac2o3g1q2z6m6e&from=amt&uid=wdcxwd10ezex-00bn5a0_wd-wcc3f5hhu605hu605 [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Deleted: hxxp://www.trotux.com/?z=3e972e258a11655023d3692gfzdm4g9b0wdmdt4b7e&from=clc&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605&type=hp [-] [C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default] [homepage] Deleted: hxxp://www.oursurfing.com/?type=sy&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [3319 Bytes] - [20/04/2017 16:20:09] C:\AdwCleaner\AdwCleaner[S0].txt - [3438 Bytes] - [20/04/2017 16:16:50] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [3465 Bytes] ##########
  10. ZinoCrypt

    Да разбира се.
  11. Здравейте Абсолютно всички документи,музика,снимки и мн други файлове ми са криптирани. Your important files has been encrypted with the new ZinoCrypt Ransomware. (Photos,Videos,Etc..) There are no tools online that will allow you to decode your files for free. The only way to get your files back is to pay us. Payment would be done stricly via BTC / Bitcoin. Do not worry, al your files are safe, but are unavailable at the moment. To recover the files you need to get special decryption software and personal key. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-04-2017 01 Ran by vasko (administrator) on DESKTOP-KOU8FG3 (17-04-2017 13:28:51) Running from C:\Users\vasko\Downloads Loaded Profiles: vasko (Available Profiles: defaultuser0 & vasko) Platform: Windows 10 Enterprise Version 1607 (X64) Language: English (United States) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Autodesk, Inc.) C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe (Autodesk Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.3\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Gaijin Entertainment) C:\Users\vasko\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe (Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\acwebbrowser.exe (Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\acwebbrowser.exe (Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\acwebbrowser.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-03-28] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [704424 2017-03-10] (Autodesk, Inc.) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Gaijin.Net Agent] => C:\Users\vasko\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2012616 2017-04-14] (Gaijin Entertainment) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1058360 2017-03-21] () HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545048 2017-03-14] (Skype Technologies S.A.) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1310088 2015-01-27] (Autodesk, Inc.) HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\Policies\Explorer: [] HKU\S-1-5-21-1032178621-1187439335-3717823892-1001\...\MountPoints2: {736f753b-1adb-11e7-bae0-d050993dc59f} - "I:\Setup.exe" HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1310088 2015-01-27] (Autodesk, Inc.) ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2016-02-07] (Autodesk, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{8b4a7833-ad80-4d48-ae89-607baa1da533}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== FireFox: ======== FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-10] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-10] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-11] (Google Inc.) Chrome: ======= CHR HomePage: Default -> hxxp://www.oursurfing.com/?type=sy&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX CHR StartupUrls: Default -> "hxxp://www.oursurfing.com/?type=hp&ts=1431543085&z=a28ef21ca658293a4f2f06agez5c1g4w4zacdecbcq&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hppp&ts=1431543094&z=6c105e77287aa563d5b3f83g6z3c6gcwbzfc3e3tbw&from=amt&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.delta-homes.com/?type=hp&ts=1433181645&z=fee7c36a05899b382c0b418g7zec5c3g5b3g0q9z9m&from=wpm06013&uid=HitachiXHDS721050CLA362_JPB530HA1X3VLB1X3VLBX","hxxp://www.oursurfing.com/?type=hp&ts=1442084587&z=81eb804fb332c45b011b3cagaz9z7o1e3b4z1wab7q&from=amt&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605","hxxp://www.oursurfing.com/?type=hp&ts=1443216470&z=2959c9445ec5efb17637840g0z4zac2o3g1q2z6m6e&from=amt&uid=wdcxwd10ezex-00bn5a0_wd-wcc3f5hhu605hu605","hxxp://www.trotux.com/?z=3e972e258a11655023d3692gfzdm4g9b0wdmdt4b7e&from=clc&uid=WDCXWD10EZEX-00BN5A0_WD-WCC3F5HHU605HU605&type=hp" CHR NewTab: Default -> Active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" CHR Profile: C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default [2017-04-17] CHR Extension: (Google Презентации) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-02-13] CHR Extension: (Magic Actions for YouTube™) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2017-04-06] CHR Extension: (Floorplanner) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag [2017-02-13] CHR Extension: (W2MO: Logistics Design, Optimization, 3D) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\acbokjkdobbboamnnfehlboekicdhcog [2017-02-13] CHR Extension: (IconSmash - Free Icons) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahphhkpleajnegckhjiogcpojdjimcob [2017-02-13] CHR Extension: (BetterTTV) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2017-03-23] CHR Extension: (Theme Creator) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2017-02-13] CHR Extension: (3DTin) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\algoakekcdmbbikdjgjdahbfihboglmi [2017-02-13] CHR Extension: (Google Документи) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-02-13] CHR Extension: (Google Диск) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-13] CHR Extension: (UJAM - Make your music.) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2017-02-13] CHR Extension: (Fotor Photo Editor) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbckhhmjfnmedpakkaaflpnmkamdppf [2017-02-13] CHR Extension: (Audiotool) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2017-02-13] CHR Extension: (YouTube) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-13] CHR Extension: (лого мейкър) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbbcdmdlpjglbgpbbcgpgjhiekldfhhm [2017-02-13] CHR Extension: (Drumtrackz) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cciklmellmkeeeibdekdkbacdllgfbpa [2017-02-13] CHR Extension: (Adblock Plus) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22] CHR Extension: (Striker Manager) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmachfiimeggafocgeldapnchdnoiib [2017-02-13] CHR Extension: (Street Racers) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cohkjfondhjjfehnehlpmjpljpihfhfc [2017-02-13] CHR Extension: (Sumo Paint) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod [2017-02-13] CHR Extension: (Timer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\edebbhkhcaafmolanelponjjanocpacd [2017-02-13] CHR Extension: (Label 59) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\eloonmnaipdgjlgkpdkmibbplbicjdgb [2017-02-13] CHR Extension: (Football Star) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadgecohpnkbkcjnoalfkfklmmafmean [2017-02-13] CHR Extension: (Електронни таблици от Google) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-02-13] CHR Extension: (Causality Games) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2017-02-13] CHR Extension: (Mini Radio Player) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffeaebedjghkdbccfenjbiilalegknlj [2017-02-13] CHR Extension: (Full Screen Weather) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2017-02-13] CHR Extension: (Google Документи офлайн) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-02-13] CHR Extension: (AdBlock) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-04-14] CHR Extension: (CircuitLab) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\haghanbgfkfpmepoohpigmglbfejljoj [2017-02-13] CHR Extension: (Railroad Shunting Puzzle 2) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hapcmgkhbcadkmfdkjbnmjiflfakijgf [2017-02-13] CHR Extension: (The Elementals) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfhfehlnocjpbnbcabcjjnemkkkghaak [2017-02-13] CHR Extension: (ButtonBass Dubstep Balls) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmjadonkmcblbkocpaaefjbceiijfdg [2017-02-13] CHR Extension: (This Exquisite Forest) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\illikembakcokcfifcbkneafjjjnckkd [2017-02-13] CHR Extension: (Voice Recorder) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jehegmanppiacmmpiifhjalpkigpcida [2017-02-13] CHR Extension: (Brief Designer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jglddbemleiaphmjoglcdgpmogohlhig [2017-02-13] CHR Extension: (Weather Avenue) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kadgobdfbdigmegffjkflccgkdnjpine [2017-02-13] CHR Extension: (Calculator) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdkgihpbaofhkiliohfepioflkkbapao [2017-02-13] CHR Extension: (Autodesk Homestyler) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmmkfaghgcicheaimnpffeeekheafkb [2017-02-13] CHR Extension: (Unit Convertor) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkaklafnbnpegjnlplfgadnobkgdkinf [2017-02-13] CHR Extension: (Sand 2) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\klicmgamjpclmbhppmdeamffedflmkcn [2017-02-13] CHR Extension: (Personal Trainer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmgohkgndpahjklgpdihieeedjeneoke [2017-02-13] CHR Extension: (Little Alchemy) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2017-02-13] CHR Extension: (Until AM Web App) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kodigjkcpaoeodlnmcnekemakpnmegnk [2017-02-13] CHR Extension: (Numerics Calculator & Converter) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe [2017-02-13] CHR Extension: (AudioSauna) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkgfemnodkdnenmfkblebnkjpckkjcae [2017-02-13] CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2017-04-14] CHR Extension: (Plink) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\loeiekheegipnnbcfbfkanbbegkhjjcm [2017-02-13] CHR Extension: (Lego Builder) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mapnbjhfjionggfhlkmhjbmbpgfdlolh [2017-02-13] CHR Extension: (Planner 5D - Interior Design) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcafejemebbngbglfoinpoaannbihjna [2017-02-13] CHR Extension: (Snow ReportBG) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccfmfnkmofdpfppkefodgbmhjplikik [2017-02-13] CHR Extension: (3D Solar System Web) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdaaepplopehigjgkolniddiadbbkphd [2017-02-13] CHR Extension: (Notes) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\molpbbfgiohpdmhnpadnonkfgahjfbem [2017-02-13] CHR Extension: (BeGone) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndfpieflbjbdpgklkeolbmbdkfdiicfk [2017-02-13] CHR Extension: (Кърлинг) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhalnajmigjnpjpdbpkpgfhekbjmolhp [2017-02-13] CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Моята тема за Chrome) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic [2017-02-13] CHR Extension: (Where is the red) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohpblkkbmfceapbolfogbfpkcjdlhonb [2017-02-13] CHR Extension: (Prøve.no) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\omchpnfgkbflgngpfgnpehnkmieibgmn [2017-02-13] CHR Extension: (Picasa) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2017-02-13] CHR Extension: (Sky and Air Baloon Theme [FVD]) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooegoinbbjiihhlncojnebbljlegkagp [2017-02-13] CHR Extension: (Edgeworld) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcfmpdiaehhnljpdomnggcbfofdgkmbp [2017-02-13] CHR Extension: (Psykopaint) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgjchkcfmigkkhedgjedmffdepgmpfil [2017-02-13] CHR Extension: (Workout Timer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjemcbmkahpjmlhmlnmmankobgmaehok [2017-02-13] CHR Extension: (Gmail) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-02-13] CHR Extension: (Chrome Media Router) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-20] CHR Extension: (Canvas Rider) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [2017-02-13] CHR Extension: (BodBot Personal Trainer) - C:\Users\vasko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppnkdiaelidjhcebhmgemlpnghbdgjhk [2017-02-13] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1309176 2017-03-10] (Autodesk Inc.) R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc.) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-10] (NVIDIA Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1325384 2017-03-21] (Overwolf LTD) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2017-03-28] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-03-28] (Microsoft Corporation) S2 RtkAudioService; "C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe" [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0cc477a6fec64d8c\nvlddmkm.sys [14516664 2017-02-10] (NVIDIA Corporation) S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-03-17] (Windows (R) Win 7 DDK provider) S3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-02-23] (NVIDIA Corporation) S3 pelmouse; C:\WINDOWS\System32\drivers\pelmouse.sys [23040 2015-12-17] (TPMX Electronics Ltd.) S3 pelusblf; C:\WINDOWS\System32\drivers\pelusblf.sys [35328 2015-12-22] (TPMX Electronics Ltd.) S3 pelvendr; C:\WINDOWS\System32\drivers\pelvendr.sys [11776 2009-11-02] (TPMX Electronics Ltd.) S3 phidmice; C:\WINDOWS\System32\drivers\phidmice.sys [35328 2015-12-17] (TPMX Electronics Ltd.) S3 pmouself; C:\WINDOWS\System32\drivers\pmouself.sys [23040 2013-03-26] (TPMX Electronics Ltd.) S3 pvendrlf; C:\WINDOWS\System32\drivers\pvendrlf.sys [12288 2013-03-26] (TPMX Electronics Ltd.) S3 SaiK0836; C:\WINDOWS\System32\drivers\SaiK0836.sys [172040 2010-06-17] (Saitek) S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssuddmgr; C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 ssudobex; C:\WINDOWS\System32\drivers\ssudobex.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64640 2016-09-05] (QUALCOMM Incorporated) S3 ssudrmnet; C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400 2014-01-22] (DEVGURU Co., LTD.) S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [26368 2014-01-22] (DEVGURU Co., LTD.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2017-04-17 13:28 - 2017-04-17 13:29 - 00022763 _____ C:\Users\vasko\Downloads\FRST.txt 2017-04-17 13:28 - 2017-04-17 13:28 - 02424832 _____ (Farbar) C:\Users\vasko\Downloads\FRST64.exe 2017-04-17 13:28 - 2017-04-17 13:28 - 00000000 ____D C:\FRST 2017-04-16 22:26 - 2017-04-16 22:26 - 04615856 _____ (Enigma Software Group USA, LLC.) C:\Users\vasko\Downloads\SpyHunter-Installer.exe 2017-04-14 16:49 - 2017-04-14 17:36 - 143213184 _____ C:\Users\vasko\Downloads\as01.rar 2017-04-14 15:52 - 2017-04-14 15:52 - 00000000 ____D C:\ProgramData\Codemasters 2017-04-14 15:48 - 2017-04-14 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiRT Rally 2017-04-14 15:48 - 2017-04-14 15:48 - 00000618 _____ C:\Users\vasko\Desktop\DiRT Rally.lnk 2017-04-14 12:56 - 2017-04-15 08:49 - 00000000 ____D C:\Users\vasko\AppData\LocalLow\uTorrent 2017-04-14 10:07 - 2017-04-14 10:07 - 00077683 _____ C:\Users\vasko\Downloads\DiRT.Rally.2015.SteamRip.LP.torrent 2017-04-12 11:44 - 2017-03-28 10:10 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-04-12 11:44 - 2017-03-28 10:10 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-04-12 11:44 - 2017-03-28 09:21 - 00167848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2017-04-12 11:44 - 2017-03-28 09:19 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2017-04-12 11:44 - 2017-03-28 09:15 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-04-12 11:44 - 2017-03-28 09:07 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2017-04-12 11:44 - 2017-03-28 09:05 - 22221368 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-04-12 11:44 - 2017-03-28 09:05 - 08168512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-04-12 11:44 - 2017-03-28 09:05 - 01504056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 05721808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 02262776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 01431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00277344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2017-04-12 11:44 - 2017-03-28 09:04 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2017-04-12 11:44 - 2017-03-28 09:04 - 00116568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-04-12 11:44 - 2017-03-28 09:02 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2017-04-12 11:44 - 2017-03-28 09:02 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2017-04-12 11:44 - 2017-03-28 09:02 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2017-04-12 11:44 - 2017-03-28 08:59 - 06667520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-04-12 11:44 - 2017-03-28 08:59 - 04023008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01851688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01360464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 01202936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 00981888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2017-04-12 11:44 - 2017-03-28 08:58 - 00961192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-04-12 11:44 - 2017-03-28 08:53 - 01414728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-04-12 11:44 - 2017-03-28 08:53 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-04-12 11:44 - 2017-03-28 08:52 - 00306800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll 2017-04-12 11:44 - 2017-03-28 08:48 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-04-12 11:44 - 2017-03-28 08:42 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-04-12 11:44 - 2017-03-28 08:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2017-04-12 11:44 - 2017-03-28 08:41 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2017-04-12 11:44 - 2017-03-28 08:40 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll 2017-04-12 11:44 - 2017-03-28 08:40 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll 2017-04-12 11:44 - 2017-03-28 08:40 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-04-12 11:44 - 2017-03-28 08:39 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2017-04-12 11:44 - 2017-03-28 08:39 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll 2017-04-12 11:44 - 2017-03-28 08:38 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2017-04-12 11:44 - 2017-03-28 08:38 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2017-04-12 11:44 - 2017-03-28 08:37 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apds.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll 2017-04-12 11:44 - 2017-03-28 08:37 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-04-12 11:44 - 2017-03-28 08:36 - 00769024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsecsnp.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2017-04-12 11:44 - 2017-03-28 08:36 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicDisplay.sys 2017-04-12 11:44 - 2017-03-28 08:35 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2017-04-12 11:44 - 2017-03-28 08:35 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-04-12 11:44 - 2017-03-28 08:35 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll 2017-04-12 11:44 - 2017-03-28 08:35 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2017-04-12 11:44 - 2017-03-28 08:34 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsmsnap.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll 2017-04-12 11:44 - 2017-03-28 08:33 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-04-12 11:44 - 2017-03-28 08:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2017-04-12 11:44 - 2017-03-28 08:32 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2017-04-12 11:44 - 2017-03-28 08:31 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00787968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2017-04-12 11:44 - 2017-03-28 08:30 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2017-04-12 11:44 - 2017-03-28 08:29 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2017-04-12 11:44 - 2017-03-28 08:28 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2017-04-12 11:44 - 2017-03-28 08:27 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2017-04-12 11:44 - 2017-03-28 08:27 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2017-04-12 11:44 - 2017-03-28 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2017-04-12 11:44 - 2017-03-28 08:26 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2017-04-12 11:44 - 2017-03-28 08:25 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2017-04-12 11:44 - 2017-03-28 08:25 - 01196544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2017-04-12 11:44 - 2017-03-28 08:25 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2017-04-12 11:44 - 2017-03-28 08:25 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2017-04-12 11:44 - 2017-03-28 08:24 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2017-04-12 11:44 - 2017-03-28 08:24 - 04614656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-04-12 11:44 - 2017-03-28 08:24 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2017-04-12 11:44 - 2017-03-28 08:24 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2017-04-12 11:44 - 2017-03-28 08:23 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2017-04-12 11:44 - 2017-03-28 08:22 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2017-04-12 11:44 - 2017-03-28 08:22 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2017-04-12 11:44 - 2017-03-28 08:22 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll 2017-04-12 11:44 - 2017-03-28 08:21 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2017-04-12 11:44 - 2017-03-28 08:20 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-04-12 11:44 - 2017-03-28 08:20 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2017-04-12 11:44 - 2017-03-28 08:20 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2017-04-12 11:44 - 2017-03-28 08:19 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2017-04-12 11:44 - 2017-03-28 08:18 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 06109696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2017-04-12 11:44 - 2017-03-28 08:17 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-04-12 11:44 - 2017-03-28 08:16 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2017-04-12 11:44 - 2017-03-28 08:16 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2017-04-12 11:44 - 2017-03-28 08:16 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll 2017-04-12 11:44 - 2017-03-28 08:15 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 07468544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2017-04-12 11:44 - 2017-03-28 08:14 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2017-04-12 11:44 - 2017-03-28 08:14 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2017-04-12 11:44 - 2017-03-28 08:13 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2017-04-12 11:44 - 2017-03-28 08:13 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00862208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2017-04-12 11:44 - 2017-03-28 08:12 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 02994176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-04-12 11:44 - 2017-03-28 08:11 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 01576448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2017-04-12 11:44 - 2017-03-28 08:11 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 02483200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2017-04-12 11:44 - 2017-03-28 08:10 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-04-12 11:44 - 2017-03-28 08:09 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2017-04-12 11:44 - 2017-03-28 08:09 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2017-04-12 11:44 - 2017-03-28 08:08 - 01564160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2017-04-12 11:44 - 2017-03-28 08:08 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2017-04-12 11:44 - 2017-03-28 08:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll 2017-04-12 11:44 - 2017-03-28 07:48 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-04-12 11:44 - 2017-03-16 07:38 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 01617760 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 01294688 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 00343904 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-04-12 11:43 - 2017-03-28 09:36 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-04-12 11:43 - 2017-03-28 09:35 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-04-12 11:43 - 2017-03-28 09:32 - 00198856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2017-04-12 11:43 - 2017-03-28 09:29 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-04-12 11:43 - 2017-03-28 09:28 - 07786336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-04-12 11:43 - 2017-03-28 09:28 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00754528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00573280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2017-04-12 11:43 - 2017-03-28 09:26 - 00218520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2017-04-12 11:43 - 2017-03-28 09:22 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2017-04-12 11:43 - 2017-03-28 09:20 - 01181024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-04-12 11:43 - 2017-03-28 09:20 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-04-12 11:43 - 2017-03-28 09:18 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-04-12 11:43 - 2017-03-28 09:12 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2017-04-12 11:43 - 2017-03-28 09:11 - 02187616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-04-12 11:43 - 2017-03-28 09:11 - 01860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-04-12 11:43 - 2017-03-28 09:11 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-04-12 11:43 - 2017-03-28 09:11 - 00402784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2017-04-12 11:43 - 2017-03-28 09:11 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2017-04-12 11:43 - 2017-03-28 09:10 - 07220184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 02758648 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 01157008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2017-04-12 11:43 - 2017-03-28 09:10 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-04-12 11:43 - 2017-03-28 09:09 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2017-04-12 11:43 - 2017-03-28 09:09 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2017-04-12 11:43 - 2017-03-28 09:09 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-04-12 11:43 - 2017-03-28 09:09 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll 2017-04-12 11:43 - 2017-03-28 09:08 - 01267504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2017-04-12 11:43 - 2017-03-28 09:08 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-04-12 11:43 - 2017-03-28 09:08 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-04-12 11:43 - 2017-03-28 09:06 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 04260576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01988048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01848584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01302136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2017-04-12 11:43 - 2017-03-28 09:05 - 01072248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 01276760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-04-12 11:43 - 2017-03-28 09:04 - 00160088 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2017-04-12 11:43 - 2017-03-28 09:00 - 01569184 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-04-12 11:43 - 2017-03-28 09:00 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-04-12 11:43 - 2017-03-28 08:59 - 02533728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2017-04-12 11:43 - 2017-03-28 08:58 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2017-04-12 11:43 - 2017-03-28 08:58 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2017-04-12 11:43 - 2017-03-28 08:44 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-04-12 11:43 - 2017-03-28 08:41 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe 2017-04-12 11:43 - 2017-03-28 08:41 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2017-04-12 11:43 - 2017-03-28 08:41 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe 2017-04-12 11:43 - 2017-03-28 08:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-04-12 11:43 - 2017-03-28 08:38 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-04-12 11:43 - 2017-03-28 08:38 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2017-04-12 11:43 - 2017-03-28 08:37 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-04-12 11:43 - 2017-03-28 08:36 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-04-12 11:43 - 2017-03-28 08:35 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll 2017-04-12 11:43 - 2017-03-28 08:35 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-04-12 11:43 - 2017-03-28 08:35 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2017-04-12 11:43 - 2017-03-28 08:34 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2017-04-12 11:43 - 2017-03-28 08:34 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2017-04-12 11:43 - 2017-03-28 08:34 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2017-04-12 11:43 - 2017-03-28 08:33 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-04-12 11:43 - 2017-03-28 08:32 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2017-04-12 11:43 - 2017-03-28 08:31 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-04-12 11:43 - 2017-03-28 08:31 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2017-04-12 11:43 - 2017-03-28 08:31 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00692224 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll 2017-04-12 11:43 - 2017-03-28 08:30 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-04-12 11:43 - 2017-03-28 08:29 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2017-04-12 11:43 - 2017-03-28 08:29 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2017-04-12 11:43 - 2017-03-28 08:28 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-04-12 11:43 - 2017-03-28 08:27 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 01145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2017-04-12 11:43 - 2017-03-28 08:26 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 18364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2017-04-12 11:43 - 2017-03-28 08:25 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-04-12 11:43 - 2017-03-28 08:25 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2017-04-12 11:43 - 2017-03-28 08:24 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-04-12 11:43 - 2017-03-28 08:24 - 06288384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-04-12 11:43 - 2017-03-28 08:24 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2017-04-12 11:43 - 2017-03-28 08:24 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 09130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-04-12 11:43 - 2017-03-28 08:23 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll 2017-04-12 11:43 - 2017-03-28 08:22 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 23681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 03778048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2017-04-12 11:43 - 2017-03-28 08:21 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2017-04-12 11:43 - 2017-03-28 08:20 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2017-04-12 11:43 - 2017-03-28 08:20 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 07655424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2017-04-12 11:43 - 2017-03-28 08:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 12181504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2017-04-12 11:43 - 2017-03-28 08:18 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 13087232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-04-12 11:43 - 2017-03-28 08:17 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2017-04-12 11:43 - 2017-03-28 08:16 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2017-04-12 11:43 - 2017-03-28 08:16 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2017-04-12 11:43 - 2017-03-28 08:16 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2017-04-12 11:43 - 2017-03-28 08:15 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2017-04-12 11:43 - 2017-03-28 08:15 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 08126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 01692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00975872 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2017-04-12 11:43 - 2017-03-28 08:14 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll 2017-04-12 11:43 - 2017-03-28 08:14 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 06045184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-04-12 11:43 - 2017-03-28 08:13 - 01359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2017-04-12 11:43 - 2017-03-28 08:13 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-04-12 11:43 - 2017-03-28 08:12 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2017-04-12 11:43 - 2017-03-28 08:12 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 02914816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 01981440 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2017-04-12 11:43 - 2017-03-28 08:11 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 08076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 02316288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2017-04-12 11:43 - 2017-03-28 08:10 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-04-12 11:43 - 2017-03-28 08:09 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2017-04-12 11:43 - 2017-03-28 08:09 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2017-04-12 11:43 - 2017-03-28 08:08 - 03612672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-04-12 11:43 - 2017-03-28 08:08 - 03542016 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2017-04-12 11:43 - 2017-03-28 08:08 - 02895872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-04-12 11:43 - 2017-03-28 08:08 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2017-04-12 11:43 - 2017-03-28 08:07 - 00908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2017-04-12 11:43 - 2017-03-28 08:07 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2017-04-12 11:43 - 2017-03-28 08:07 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2017-04-12 11:43 - 2017-03-28 08:06 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-04-12 11:43 - 2017-03-28 08:06 - 00999424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2017-04-12 11:43 - 2017-03-28 08:06 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2017-04-12 11:43 - 2017-03-28 08:05 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2017-04-12 11:43 - 2017-03-28 08:04 - 00119808 ____R (Microsoft Corporation) C:\WINDOWS\system32\SecureAssessmentHandlers.dll 2017-04-12 11:43 - 2017-03-18 19:50 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-04-12 11:43 - 2017-03-18 19:35 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-04-12 11:43 - 2017-03-16 07:47 - 00038768 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll 2017-04-11 21:15 - 2017-04-11 21:15 - 00046142 _____ C:\Users\vasko\Downloads\ЖП.bak 2017-04-11 19:55 - 2017-04-12 11:57 - 00031644 _____ C:\Users\vasko\Downloads\ЖП.dwg 2017-04-11 19:54 - 2017-04-11 19:54 - 00161100 _____ C:\Users\vasko\Downloads\ПроектЖП.dwg 2017-04-11 19:50 - 2017-04-11 19:50 - 02119532 _____ C:\Users\vasko\Downloads\12d.rar 2017-04-11 19:50 - 2016-04-13 13:17 - 00161100 _____ C:\Users\vasko\Desktop\ПроектЖП.dwg 2017-04-11 14:59 - 2017-04-11 14:59 - 00089592 _____ C:\Users\vasko\Downloads\Rogue_One_A_Star_Wars_Story_2016.(subs.sab.bz).rar 2017-04-11 14:46 - 2017-04-11 14:46 - 00021066 _____ C:\Users\vasko\Downloads\Minions.2015.BluRay.(subs.sab.bz).rar 2017-04-11 14:46 - 2017-04-11 14:46 - 00015241 _____ C:\Users\vasko\Downloads\Minions.2015.BDRip.x264.DUAL-REFLUX (1).torrent 2017-04-11 14:45 - 2017-04-11 14:45 - 00015241 _____ C:\Users\vasko\Downloads\Minions.2015.BDRip.x264.DUAL-REFLUX.torrent 2017-04-11 14:38 - 2017-04-11 14:38 - 00030083 _____ C:\Users\vasko\Downloads\Rogue.One.2016.720p.BluRay.x264.DTS-WAR.torrent 2017-04-08 13:25 - 2017-04-08 18:05 - 00195625 _____ C:\Users\vasko\Documents\иск.dwg 2017-04-08 12:49 - 2017-04-08 12:49 - 00000000 ____D C:\ProgramData\FLEXnet 2017-04-08 12:48 - 2017-04-08 12:48 - 00002157 _____ C:\Users\Public\Desktop\Autodesk ReCap 2016.lnk 2017-04-08 12:48 - 2017-04-08 12:48 - 00002076 _____ C:\Users\Public\Desktop\A360 Desktop.lnk 2017-04-08 12:48 - 2017-04-08 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk ReCap 2016 2017-04-08 12:48 - 2017-04-08 12:48 - 00000000 ____D C:\ProgramData\FARO 2017-04-08 12:47 - 2017-04-08 12:47 - 00002171 _____ C:\Users\Public\Desktop\AutoCAD 2016 - English.lnk 2017-04-08 12:47 - 2017-04-08 12:47 - 00000133 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc 2017-04-08 12:47 - 2017-04-08 12:47 - 00000000 ____D C:\Users\vasko\Documents\Inventor Server SDK ACAD 2016 2017-04-08 12:08 - 2017-04-08 12:08 - 00017761 _____ C:\Users\vasko\Downloads\AutoCAD2016(32+64bit).torrent 2017-04-08 12:06 - 2017-04-08 12:06 - 00000020 ___SH C:\Users\vasko\ntuser.ini 2017-04-07 20:18 - 2017-04-07 20:18 - 41555153 _____ C:\Users\vasko\Desktop\NEW FOLDER (3).RAR.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 38887990 _____ C:\Users\vasko\Downloads\WOMAN-OF-THE-HOUSE-KYLIE-CUPCAKE-MORGAN.MP4.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 14408602 _____ C:\Users\vasko\Desktop\GABRIEL ANANDA - DOPPELWHIPPER.MP3.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 09171261 _____ C:\Users\vasko\Desktop\JULIAN JEWEILTRAFFICDRUMCODEDC167.MP3.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 07538539 _____ C:\Users\vasko\Downloads\CARISMA_1996-1997_BRM.ZIP.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 07538539 _____ C:\Users\vasko\Downloads\CARISMA_1996-1997_BRM (1).ZIP.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 07538539 _____ C:\Users\vasko\Downloads\CARISMA_1996-1997_BRM (1) (1).ZIP.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 06376156 _____ C:\Users\vasko\Desktop\THE GAME - HOW WE DO.MP3.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 02484375 _____ C:\Users\vasko\Desktop\20170320_140735.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00140788 _____ C:\Users\vasko\Desktop\UNTITLED.PNG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00097729 _____ C:\Users\vasko\Desktop\92FR7Z2YX7N6CBK.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00057718 _____ C:\Users\vasko\Desktop\17498531_193188534517615_434574976459607136_N.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00032662 _____ C:\Users\vasko\Desktop\изтеглен файл.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00023332 _____ C:\Users\vasko\Desktop\17197834_1170676489711927_739850824_N.JPG.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\vasko\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Public\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Public\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\defaultuser0\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\Downloads\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\Documents\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Default User\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:18 - 2017-04-07 20:18 - 00000402 ___SH C:\Users\vasko\Documents\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000300 _____ C:\Users\vasko\Desktop\NEW TEXT DOCUMENT.TXT.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000282 ___SH C:\Users\vasko\Downloads\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000282 ___SH C:\Users\vasko\Desktop\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000278 ___SH C:\Users\Public\Documents\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\vasko\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Public\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Public\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\defaultuser0\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\Downloads\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\Documents\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Default User\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\Public\Downloads\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\Public\Desktop\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\Public\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000174 ___SH C:\Users\DESKTOP.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000020 ___SH C:\Users\vasko\NTUSER.INI.ZINO 2017-04-07 20:18 - 2017-04-07 20:18 - 00000020 ___SH C:\Users\defaultuser0\NTUSER.INI.ZINO 2017-04-07 20:17 - 2017-04-07 20:17 - 00002713 _____ C:\ProgramData\Microsoft\Windows\Start Menu\ZINO_NOTE.TXT 2017-04-07 20:17 - 2017-04-07 20:17 - 00000228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:18 - 00002713 _____ C:\Users\Public\Documents\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:18 - 00000228 _____ C:\Users\Public\Documents\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:17 - 00002713 _____ C:\Users\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 00002713 _____ C:\ProgramData\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 00000228 _____ C:\Users\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:17 - 00000228 _____ C:\ProgramData\Attention.vbs 2017-04-07 20:16 - 2017-04-07 20:16 - 00000079 _____ C:\Users\vasko\AppData\Roaming\SETTINGS00008.BIN 2017-04-07 20:16 - 2017-04-07 20:16 - 00000026 _____ C:\Users\vasko\AppData\Roaming\Password.txt 2017-04-07 20:16 - 2017-04-07 20:16 - 00000000 ____D C:\Users\vasko\AppData\Roaming\Oracle 2017-04-07 20:06 - 2017-04-07 20:06 - 00033522 _____ C:\Users\vasko\Downloads\Power.Rangers.2017.HD_TS.x264.AC3_CPG.(subs.sab.bz).rar 2017-04-07 19:34 - 2017-04-07 19:34 - 00018639 _____ C:\Users\vasko\Downloads\Power.Rangers.2017.HD-TS.x264.AC3-CPG.torrent 2017-04-06 21:30 - 2017-04-06 21:30 - 00000000 __RHD C:\Users\vasko\AppData\Roaming\SecuROM 2017-04-06 21:17 - 2017-04-06 21:17 - 00000575 _____ C:\Users\Public\Desktop\Play Guitar Hero III.lnk 2017-04-06 20:58 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Documents\Aspyr 2017-04-06 20:58 - 2017-04-06 21:31 - 00000000 ____D C:\Users\vasko\AppData\Local\Aspyr 2017-04-06 20:51 - 2017-04-06 20:51 - 00000647 _____ C:\Users\Public\Desktop\Guitar Hero - World Tour.lnk 2017-04-06 20:51 - 2017-04-06 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guitar Hero - World Tour 2017-04-06 20:24 - 2017-04-06 20:24 - 00088505 _____ C:\Users\vasko\Downloads\Guitar.Hero_World.Repack.iso.torrent 2017-04-06 20:24 - 2017-04-06 20:24 - 00016980 _____ C:\Users\vasko\Downloads\Guitar_Hero_III-HATRED.torrent 2017-04-05 18:47 - 2017-04-05 18:47 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2017-04-05 18:19 - 2017-04-08 12:58 - 00000000 ____D C:\Users\vasko\AppData\Local\Autodesk 2017-04-05 18:19 - 2017-04-08 12:48 - 00000000 ____D C:\Program Files (x86)\Autodesk 2017-04-05 18:19 - 2017-04-08 12:47 - 00000000 ____D C:\Users\Public\Documents\Autodesk 2017-04-05 18:19 - 2017-04-05 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoCAD 2017 - English 2017-04-05 18:18 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Documents\Inventor Server SDK ACAD 2017 2017-04-05 18:18 - 2017-04-05 18:18 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared 2017-04-05 18:17 - 2017-04-08 12:48 - 00000000 ____D C:\Program Files\Autodesk 2017-04-05 18:17 - 2017-04-08 12:47 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2017-04-05 18:16 - 2017-04-08 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 2017-04-05 18:14 - 2017-04-08 13:07 - 00000000 ____D C:\ProgramData\Autodesk 2017-04-05 18:14 - 2017-04-08 12:49 - 00000000 ____D C:\Users\vasko\AppData\Roaming\Autodesk 2017-04-05 17:58 - 2017-04-05 17:58 - 00013231 _____ C:\Users\vasko\Downloads\Autodesk.AutoCAD.2017.SP1.ru-en.x86-x64.torrent 2017-04-04 18:08 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Desktop\New folder (2) 2017-04-04 15:37 - 2017-04-04 15:37 - 00000000 ____D C:\Users\vasko\Desktop\Carisma_1996-2002_Worshop_Manuals_Rus_Eng 2017-04-04 15:37 - 2017-04-04 15:35 - 187846898 _____ C:\Users\vasko\Desktop\Carisma_1996-2002_Worshop_Manuals_Rus_Eng.zip 2017-04-04 15:34 - 2017-04-04 15:35 - 187846898 _____ C:\Users\vasko\Downloads\Carisma_1996-2002_Worshop_Manuals_Rus_Eng.zip 2017-03-31 20:28 - 2017-03-31 20:28 - 00000000 ____D C:\Users\vasko\AppData\Roaming\MPC-HC 2017-03-31 20:28 - 2017-03-31 20:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2017-03-31 20:28 - 2017-03-31 20:28 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2017-03-31 20:28 - 2015-12-18 13:00 - 00755200 _____ C:\WINDOWS\system32\xvidcore.dll 2017-03-31 20:28 - 2015-12-18 13:00 - 00674816 _____ C:\WINDOWS\SysWOW64\xvidcore.dll 2017-03-31 20:28 - 2015-12-18 13:00 - 00309248 _____ C:\WINDOWS\system32\xvidvfw.dll 2017-03-31 20:28 - 2015-12-18 13:00 - 00282112 _____ C:\WINDOWS\SysWOW64\xvidvfw.dll 2017-03-31 20:28 - 2015-10-24 20:00 - 00112128 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll 2017-03-31 20:28 - 2015-02-28 19:22 - 03571200 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll 2017-03-31 20:28 - 2015-02-28 19:21 - 03591680 _____ (x264vfw project) C:\WINDOWS\SysWOW64\x264vfw.dll 2017-03-31 20:28 - 2012-07-21 14:55 - 00180736 _____ (fccHandler) C:\WINDOWS\system32\ac3acm.acm 2017-03-31 20:28 - 2012-07-21 14:54 - 00122880 _____ (fccHandler) C:\WINDOWS\SysWOW64\ac3acm.acm 2017-03-31 20:28 - 2011-12-07 21:37 - 00148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2017-03-31 20:28 - 2011-12-07 21:32 - 00216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2017-03-31 13:44 - 2017-03-31 13:44 - 00000000 ____D C:\Program Files\Intel 2017-03-28 18:44 - 2017-03-28 18:44 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUSB_01007.Wdf 2017-03-27 12:46 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Documents\Euro Truck Simulator 2 2017-03-27 12:39 - 2017-03-27 12:39 - 00000930 _____ C:\Users\vasko\Desktop\Euro Truck Simulator 2(x32).lnk 2017-03-27 12:39 - 2017-03-27 12:39 - 00000928 _____ C:\Users\vasko\Desktop\Euro Truck Simulator 2(x64).lnk 2017-03-27 12:39 - 2017-03-27 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 2017-03-27 11:09 - 2017-03-27 11:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2017-03-27 11:09 - 2017-03-27 11:09 - 00000000 ____D C:\Program Files\7-Zip 2017-03-27 10:57 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Desktop\New folder 2017-03-20 17:51 - 2017-04-07 20:18 - 00000000 ____D C:\Users\vasko\Tracing 2017-03-20 17:51 - 2017-04-07 20:17 - 00000000 ____D C:\ProgramData\Skype 2017-03-20 17:51 - 2017-03-20 17:51 - 00002640 _____ C:\Users\Public\Desktop\Skype.lnk 2017-03-20 17:51 - 2017-03-20 17:51 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-03-20 17:51 - 2017-03-20 17:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-03-20 17:50 - 2017-03-20 17:50 - 00003274 _____ C:\WINDOWS\System32\Tasks\{23C4B3FF-CFD6-4099-BDC9-E674BB403E66} ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2017-04-17 13:25 - 2017-02-13 19:49 - 00000000 ____D C:\Users\vasko\AppData\Roaming\Skype 2017-04-17 12:43 - 2017-02-13 19:52 - 00000000 ____D C:\Users\vasko\AppData\Local\CrashDumps 2017-04-17 12:38 - 2017-03-07 16:23 - 00000000 ____D C:\Users\vasko\AppData\Local\Overwolf 2017-04-17 12:38 - 2017-02-13 19:47 - 00000000 ____D C:\Users\vasko 2017-04-16 21:20 - 2017-02-13 06:17 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-04-16 20:20 - 2017-02-13 05:46 - 00000000 ___HD C:\Program Files\WindowsApps 2017-04-16 20:20 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-04-15 18:28 - 2017-03-07 16:24 - 00000000 ____D C:\Users\vasko\AppData\Roaming\TS3Client 2017-04-15 18:28 - 2017-02-13 21:36 - 00000000 ____D C:\Users\vasko\AppData\Roaming\uTorrent 2017-04-14 18:26 - 2017-02-12 20:26 - 01114952 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-04-14 18:20 - 2017-02-13 06:17 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-04-14 18:20 - 2017-02-13 06:17 - 00000000 ____D C:\ProgramData\NVIDIA 2017-04-14 17:58 - 2017-03-15 15:06 - 00000000 ____D C:\Users\vasko\Documents\Project CARS 2017-04-14 15:52 - 2017-02-19 16:14 - 00000000 ____D C:\Users\vasko\Documents\My Games 2017-04-14 13:26 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\rescache 2017-04-14 10:00 - 2017-02-13 19:50 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-04-14 10:00 - 2017-02-13 19:48 - 00002367 _____ C:\Users\vasko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-04-14 10:00 - 2017-02-13 19:48 - 00000000 ___RD C:\Users\vasko\OneDrive 2017-04-14 09:59 - 2017-02-13 19:47 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-04-14 09:59 - 2017-02-13 05:45 - 00000000 ____D C:\WINDOWS\INF 2017-04-14 09:58 - 2017-02-13 19:45 - 00000000 ____D C:\Users\defaultuser0 2017-04-14 09:58 - 2017-02-13 06:17 - 00272552 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___SD C:\WINDOWS\system32\F12 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ___RD C:\Program Files\Windows Defender 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\system32\setup 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\system32\Dism 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\Provisioning 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-04-12 13:07 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-04-12 13:07 - 2017-02-13 05:42 - 00262144 _____ C:\WINDOWS\system32\config\BBI 2017-04-12 12:52 - 2017-02-14 22:34 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-04-12 12:51 - 2017-02-14 22:34 - 148601744 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-04-12 12:51 - 2017-02-13 05:42 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-04-11 18:27 - 2017-02-13 19:53 - 00003516 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-04-11 18:27 - 2017-02-13 19:53 - 00003392 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-04-09 13:08 - 2017-02-13 21:49 - 00532136 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-04-08 17:56 - 2017-02-28 19:33 - 00000000 ____D C:\Users\vasko\Documents\VirtualDJ 2017-04-07 20:18 - 2017-03-07 16:24 - 00000000 ____D C:\Users\vasko\.TeamSpeak 3 2017-04-07 20:18 - 2017-03-07 16:24 - 00000000 ____D C:\Users\vasko\.QtWebEngineProcess 2017-04-07 20:18 - 2017-03-03 17:29 - 00000000 ____D C:\Users\vasko\ansel 2017-04-07 20:18 - 2017-02-28 17:02 - 00000000 ____D C:\Users\vasko\Documents\Assetto Corsa 2017-04-07 20:18 - 2017-02-25 18:01 - 00000000 ____D C:\Users\vasko\Documents\wmd_symbol_cache 2017-04-07 20:18 - 2017-02-13 21:41 - 00000000 ____D C:\Users\vasko\New folder 2017-04-07 20:18 - 2017-02-13 21:32 - 00000000 ____D C:\Users\vasko\Documents\Native Instruments 2017-04-07 20:18 - 2017-02-13 05:46 - 00000000 __RHD C:\Users\Public\Libraries 2017-04-07 20:17 - 2017-03-07 16:24 - 00000000 ____D C:\ProgramData\Overwolf 2017-04-07 20:17 - 2017-02-28 19:58 - 00000000 ___HD C:\ProgramData\{03135366-5966-4D7D-962A-24A1F6B4D4CD} 2017-04-07 20:17 - 2017-02-13 21:43 - 00000000 __HDC C:\ProgramData\{C79644E3-0443-4647-AF82-C8A62EB1B82A} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} 2017-04-07 20:17 - 2017-02-13 21:42 - 00000000 __HDC C:\ProgramData\{51B0C2F8-BB02-4FF9-83E6-6BBD135AD344} 2017-04-07 20:17 - 2017-02-13 20:31 - 00000000 ____D C:\ProgramData\Package Cache 2017-04-07 20:17 - 2017-02-13 06:18 - 00000000 ____D C:\ProgramData\USOShared 2017-04-07 20:17 - 2017-02-13 06:17 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-04-07 20:17 - 2017-02-13 05:46 - 00000000 ____D C:\ProgramData\USOPrivate 2017-04-07 20:17 - 2017-02-13 05:46 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-04-07 20:16 - 2017-02-19 16:16 - 00000000 ____D C:\ProgramData\Gaijin 2017-04-07 20:16 - 2017-02-13 21:42 - 00000000 ____D C:\ProgramData\Native Instruments 2017-04-07 20:16 - 2017-02-13 20:29 - 00000000 ____D C:\NVIDIA 2017-04-07 20:16 - 2017-02-13 19:48 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2017-04-07 20:16 - 2017-02-13 05:46 - 00000000 ____D C:\ProgramData\Comms 2017-04-07 20:16 - 2017-02-13 05:46 - 00000000 ____D C:\PerfLogs 2017-04-07 20:16 - 2017-02-13 05:40 - 00000000 ___HD C:\$SysReset 2017-04-05 18:29 - 2017-02-13 05:46 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-04-05 18:18 - 2017-02-13 05:46 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2017-04-01 21:52 - 2017-02-13 05:47 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-04-01 21:52 - 2017-02-13 05:47 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-30 18:59 - 2017-02-13 19:53 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-03-30 18:59 - 2017-02-13 19:53 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-03-30 16:57 - 2017-03-01 21:11 - 00000035 _____ C:\ProgramData\droidcam-settings 2017-03-28 16:24 - 2017-02-13 19:47 - 00000000 ____D C:\Users\vasko\AppData\Local\Packages 2017-03-28 09:20 - 2017-02-12 20:21 - 02717184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-03-27 12:46 - 2017-02-25 17:55 - 00000000 ____D C:\WINDOWS\SysWOW64\directx 2017-03-27 10:55 - 2017-03-07 16:24 - 00000000 ____D C:\Program Files (x86)\Overwolf 2017-03-18 17:46 - 2017-02-13 05:46 - 00000000 ____D C:\WINDOWS\LiveKernelReports ==================== Files in the root of some directories ======= 2017-04-07 20:16 - 2017-04-07 20:16 - 0000026 _____ () C:\Users\vasko\AppData\Roaming\Password.txt 2017-04-07 20:16 - 2017-04-07 20:16 - 0000079 _____ () C:\Users\vasko\AppData\Roaming\SETTINGS00008.BIN 2017-04-07 20:18 - 2017-04-07 20:18 - 0000228 _____ () C:\Users\vasko\AppData\Local\Attention.vbs 2017-04-07 20:18 - 2017-04-07 20:18 - 0002713 _____ () C:\Users\vasko\AppData\Local\ZINO_NOTE.TXT 2017-04-07 20:16 - 2017-04-07 20:17 - 0000228 _____ () C:\ProgramData\Attention.vbs 2017-03-01 21:11 - 2017-03-30 16:57 - 0000035 _____ () C:\ProgramData\droidcam-settings 2017-04-08 12:47 - 2017-04-08 12:47 - 0000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc 2017-04-07 20:16 - 2017-04-07 20:17 - 0002713 _____ () C:\ProgramData\ZINO_NOTE.TXT Files to move or delete: ==================== C:\ProgramData\Attention.vbs C:\Users\Default\Attention.vbs C:\Users\defaultuser0\Attention.vbs C:\Users\Public\Attention.vbs C:\Users\vasko\Attention.vbs Some files in TEMP: ==================== 2017-04-05 18:14 - 2015-01-26 17:59 - 0060296 _____ (Autodesk, Inc.) C:\Users\vasko\AppData\Local\Temp\AcDeltree.exe 2017-04-06 21:30 - 2017-04-06 21:30 - 0065536 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dialogs.dll 2017-04-06 21:30 - 2017-04-06 21:30 - 0212992 _____ (Sony DADC Austria AG) C:\Users\vasko\AppData\Local\Temp\drm_dyndata_7330017.dll 2017-02-13 20:33 - 2017-01-20 17:07 - 0872088 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvSCPAPI64.dll 2017-02-13 20:33 - 2017-01-20 17:07 - 0489112 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStereoApiI64.dll 2017-02-13 20:31 - 2017-01-20 17:07 - 0352704 _____ (NVIDIA Corporation) C:\Users\vasko\AppData\Local\Temp\nvStInst.exe 2017-03-07 16:23 - 2017-03-07 16:23 - 0065280 _____ () C:\Users\vasko\AppData\Local\Temp\utils.dll 2017-03-20 17:50 - 2017-03-20 17:50 - 14456872 _____ (Microsoft Corporation) C:\Users\vasko\AppData\Local\Temp\vc_redist.x86.exe 2017-04-07 20:16 - 2017-04-07 20:16 - 0733696 _____ () C:\Users\vasko\AppData\Local\Temp\winlogon.exe ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2017-04-10 14:28 ==================== End of FRST.txt ============================ Addition.txt
  • Разглеждащи в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×

Информация

Този сайт използва бисквитки (cookies), за най-доброто потребителско изживяване. С използването му, вие приемате нашите Условия за ползване.