Премини към съдържанието
Форумът в приложение

По-лесно сърфиране. Научи повече.

Kaldata.com - Форуми

Приложение на форума на цял екран с push известия, значки и други.

За да инсталирате това приложение на iOS и iPadOS
  1. Докоснете Иконата за споделяне в Safari
  2. Превъртете менюто и докоснете Добавяне към началния екран.
  3. Докоснете Добавяне в горния десен ъгъл.
За да инсталирате това приложение на Android
  1. Докоснете менюто с 3 точки (⋮) в горния десен ъгъл на браузъра.
  2. Докоснете Добавяне към началния екран или Инсталиране на приложение.
  3. Потвърдете, като докоснете Инсталиране.

Добре дошли!

Добре дошли в нашите форуми, пълни с полезна информация. Имате проблем с компютъра или телефона си? Публикувайте нова тема и ще намерите решение на всичките си проблеми. Общувайте свободно и открийте безброй нови приятели.

Моля, регистрирайте се за да публикувате тема и да получите пълен достъп до всички функции.

 

Проблем с постоянни реклами

Featured Replies

Писах за проблема с това че постоянно ми излизат реклами докато сърфирам в интернет и ме посъветваха да си изтегля една програма на име "Farbar Recovery ScaN TOOL" i като сканирам с нея да копирам съдържанието на единия файл тук а другия да го прикрепя така и правя.

 

 

Ran by georgi (administrator) on GEORGI on 15-01-2015 15:44:49
Running from D:\Download
Loaded Profiles: georgi (Available profiles: georgi)
Platform: Windows 8.1 N (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(XTab system) C:\Program Files (x86)\XTab\ProtectService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Buca Apps) C:\Program Files (x86)\Super Radio\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-6.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(SearchProtect) C:\Program Files (x86)\XTab\CmdShell.exe
(XTab system) C:\Program Files (x86)\XTab\HPNotify.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\EpmNews.exe
() C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\Bluetooth Headset Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent Inc.) C:\Users\georgi\AppData\Roaming\uTorrent\uTorrent.exe
(Safebridge GmbH) C:\Users\georgi\AppData\Local\Apps\2.0\LORV2KO8.YTG\1WYA2691.LHD\sfb...tion_07c596ec85ac2238_0001.0006_60d5a9d76d81363d\Sfb.Client.App.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\FileManager\PhotosApp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [shadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [sysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-08-11] (IDT, Inc.)
HKLM\...\Run: [iAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [286056 2013-09-24] (Intel Corporation)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15813616 2015-01-12] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80880 2015-01-12] (Lenovo(beijing) Limited)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [552960 2013-05-14] (Vimicro)
HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\EpmNews.exe [2089056 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd)
HKLM-x32\...\Run: [EaseUS EPM Tray Agent] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe [255072 2014-11-18] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/?type=sc&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681&q={searchTerms}
BHO: Super Radio -> {11111111-1111-1111-1111-110611791177} -> C:\Program Files (x86)\Super Radio\Super Radio-bho64.dll (Buca Apps)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Super Radio -> {11111111-1111-1111-1111-110611791177} -> C:\Program Files (x86)\Super Radio\Super Radio-bho.dll (Buca Apps)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
 
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
CHR StartupUrls: Default -> "https://www.google.com/"
CHR DefaultSearchKeyword: Default -> webssearches
CHR DefaultSuggestURL: Default -> 
CHR Profile: C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Презентации) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-12]
CHR Extension: (Google Документи) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-12]
CHR Extension: (Google Диск) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-12]
CHR Extension: (YouTube) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-12]
CHR Extension: (Adblock Plus) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-15]
CHR Extension: (Google Търсене) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-12]
CHR Extension: (Електронни таблици от Google) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-12]
CHR Extension: (Google Wallet) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-12]
CHR Extension: (Gmail) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-12]
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://istart.webssearches.com/?type=sc&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-04] (Broadcom Corporation.)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-01-12] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-01-12] (globalUpdate) [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [14696 2013-09-24] (Intel Corporation)
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158864 2015-01-07] (XTab system)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [338944 2013-08-11] (IDT, Inc.) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] ()
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [74344 2013-07-03] (Intel Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-14] (Synaptics Incorporated)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1065472 2013-08-30] (Vimicro Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-01-15 15:44 - 2015-01-15 15:44 - 00000000 ____D () C:\FRST
2015-01-15 15:04 - 2015-01-15 15:33 - 00070656 ___SH () C:\Users\georgi\Desktop\Thumbs.db
2015-01-14 19:56 - 2015-01-14 19:56 - 00000358 _____ () C:\Users\georgi\Desktop\Safebridge - Client (1.5).appref-ms
2015-01-14 19:56 - 2015-01-14 19:56 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Safebridge GmbH
2015-01-14 19:55 - 2015-01-14 19:56 - 00000000 ____D () C:\Users\georgi\AppData\Local\Deployment
2015-01-14 19:55 - 2015-01-14 19:55 - 00000000 ____D () C:\Users\georgi\AppData\Local\Apps\2.0
2015-01-14 19:41 - 2015-01-14 19:41 - 00002990 _____ () C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____D () C:\Program Files\Synaptics
2015-01-14 19:41 - 2013-08-14 15:01 - 00722160 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00527600 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2015-01-14 19:41 - 2013-08-14 15:01 - 00421616 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo19.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00400112 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00251632 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00169712 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCom.dll
2015-01-14 19:40 - 2015-01-14 19:41 - 00001356 _____ () C:\Windows\Synaptics.log
2015-01-14 19:40 - 2013-08-14 15:01 - 00034544 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2015-01-14 19:33 - 2015-01-14 19:33 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-01-14 19:32 - 2014-12-31 03:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-14 19:29 - 2015-01-14 19:29 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-01-14 19:29 - 2015-01-14 19:29 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-01-14 19:23 - 2015-01-14 19:26 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 19:23 - 2014-12-31 13:12 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-14 19:22 - 2015-01-14 19:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET
2015-01-13 21:52 - 2014-10-30 14:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-01-13 21:52 - 2014-10-30 14:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-01-13 21:52 - 2014-02-10 18:43 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-01-13 21:52 - 2014-02-10 18:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-01-13 21:52 - 2014-01-06 23:03 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2015-01-13 21:52 - 2014-01-06 21:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2015-01-13 21:52 - 2013-12-08 18:57 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-01-13 21:52 - 2013-12-08 17:51 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-01-13 21:52 - 2013-11-08 22:34 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-01-13 21:52 - 2013-11-08 22:34 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2015-01-13 21:52 - 2013-11-08 21:52 - 00240128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2015-01-13 21:52 - 2013-10-15 00:54 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-01-13 21:52 - 2013-10-15 00:03 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\SysWOW64\Drivers\bg-BG
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\system32\Drivers\bg-BG
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\system32\bg
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\bg-BG
2015-01-13 20:40 - 2015-01-13 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-01-13 20:40 - 2015-01-13 20:40 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2015-01-13 20:19 - 2015-01-13 20:19 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\WinRAR
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Windows\PCHEALTH
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-01-12 21:25 - 2015-01-14 19:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-01-12 21:25 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 __RHD () C:\MSOCache
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 ____D () C:\Users\georgi\AppData\Local\Microsoft Help
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-12 21:17 - 2015-01-12 21:17 - 00007532 _____ () C:\Users\georgi\Downloads\Microsoft Office Professional Plus 2010 with Service Pack 1 VL EN x64.torrent
2015-01-12 21:11 - 2015-01-13 21:46 - 00000000 ____D () C:\The KMPlayer
2015-01-12 21:11 - 2015-01-12 21:11 - 00000642 _____ () C:\Users\georgi\Desktop\KMPlayer.lnk
2015-01-12 21:11 - 2015-01-12 21:11 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-01-12 21:10 - 2015-01-12 21:10 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-01-12 21:10 - 2015-01-12 21:10 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-12 21:08 - 2015-01-12 21:08 - 35867784 _____ (PandoraTV) C:\Users\georgi\Downloads\3.9.1.132_20150106114303.exe
2015-01-12 21:08 - 2015-01-12 21:08 - 32830712 _____ (PandoraTV) C:\Users\georgi\Downloads\3.9.0.126_20140723022507.exe
2015-01-12 21:03 - 2015-01-12 21:03 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-01-12 20:53 - 2015-01-12 20:54 - 00001301 ____H () C:\Windows\EPMBatch.ept
2015-01-12 20:44 - 2015-01-15 14:44 - 00003106 _____ () C:\Windows\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-1.job
2015-01-12 20:44 - 2015-01-15 14:44 - 00002442 _____ () C:\Windows\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-5_user.job
2015-01-12 20:44 - 2015-01-15 14:44 - 00002442 _____ () C:\Windows\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-5.job
2015-01-12 20:44 - 2015-01-15 14:44 - 00002106 _____ () C:\Windows\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-2.job
2015-01-12 20:44 - 2015-01-12 20:44 - 00006110 _____ () C:\Windows\System32\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-1
2015-01-12 20:44 - 2015-01-12 20:44 - 00005446 _____ () C:\Windows\System32\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-5
2015-01-12 20:44 - 2015-01-12 20:44 - 00005110 _____ () C:\Windows\System32\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-2
2015-01-12 20:43 - 2015-01-15 15:43 - 00005514 _____ () C:\Windows\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-6.job
2015-01-12 20:43 - 2015-01-15 14:48 - 00000942 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-12 20:43 - 2015-01-15 14:43 - 00005178 _____ () C:\Windows\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-7.job
2015-01-12 20:43 - 2015-01-14 20:48 - 00000938 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-12 20:43 - 2015-01-12 20:44 - 00000000 ____D () C:\Program Files (x86)\Super Radio
2015-01-12 20:43 - 2015-01-12 20:43 - 00008518 _____ () C:\Windows\System32\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-6
2015-01-12 20:43 - 2015-01-12 20:43 - 00008182 _____ () C:\Windows\System32\Tasks\dc0f8d26-f3e8-43e4-bd4a-68ffeca68922-7
2015-01-12 20:43 - 2015-01-12 20:43 - 00003914 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-12 20:43 - 2015-01-12 20:43 - 00003678 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\TuneUp Software
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Local\TuneUp Software
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Local\globalUpdate
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Program Files (x86)\16e500f2-b385-4bcf-9ae1-8edce20f16c8
2015-01-12 20:42 - 2015-01-12 20:43 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-01-12 20:42 - 2015-01-12 20:42 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-12 20:41 - 2015-01-12 20:41 - 00001408 _____ () C:\Users\Public\Desktop\EaseUS Partition Master 10.2.lnk
2015-01-12 20:41 - 2015-01-12 20:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.2
2015-01-12 20:41 - 2015-01-12 20:41 - 00000000 ____D () C:\Program Files (x86)\EaseUS
2015-01-12 20:41 - 2014-11-18 14:46 - 03384928 _____ () C:\Windows\system32\BootMan.exe
2015-01-12 20:41 - 2014-11-18 14:46 - 02502240 _____ () C:\Windows\SysWOW64\BootMan.exe
2015-01-12 20:41 - 2014-11-18 14:46 - 00021088 _____ () C:\Windows\SysWOW64\EuEpmGdi.dll
2015-01-12 20:41 - 2014-11-18 14:46 - 00017504 _____ () C:\Windows\system32\EuEpmGdi.dll
2015-01-12 20:41 - 2014-11-18 14:39 - 00018528 _____ () C:\Windows\system32\epmntdrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00014944 _____ () C:\Windows\SysWOW64\epmntdrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00010848 _____ () C:\Windows\system32\EuGdiDrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00010208 _____ () C:\Windows\SysWOW64\EuGdiDrv.sys
2015-01-12 20:41 - 2014-11-18 14:38 - 00101984 _____ () C:\Windows\system32\setupempdrvx64.exe
2015-01-12 20:41 - 2014-11-18 14:38 - 00088160 _____ () C:\Windows\SysWOW64\setupempdrv03.exe
2015-01-12 20:39 - 2015-01-13 20:40 - 00001947 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-01-12 20:39 - 2015-01-13 20:40 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-01-12 20:39 - 2015-01-12 20:39 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-01-12 20:39 - 2015-01-12 20:39 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2015-01-12 20:39 - 2015-01-12 20:39 - 00000000 ____D () C:\ProgramData\McAfee
2015-01-12 20:39 - 2015-01-12 20:39 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-01-12 20:38 - 2015-01-14 14:52 - 00000000 ____D () C:\Users\georgi\AppData\Local\Adobe
2015-01-12 20:38 - 2015-01-12 21:01 - 00000000 ____D () C:\ProgramData\Adobe
2015-01-12 20:35 - 2015-01-12 20:35 - 01937984 _____ () C:\Users\georgi\Downloads\winrar-x64-521b1 (1).exe
2015-01-12 20:35 - 2015-01-12 20:35 - 00001009 _____ () C:\Users\georgi\Desktop\WinRAR.lnk
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\Program Files\WinRAR
2015-01-12 20:34 - 2015-01-12 20:34 - 01937984 _____ () C:\Users\georgi\Downloads\winrar-x64-521b1.exe
2015-01-12 20:24 - 2015-01-12 20:40 - 30603720 _____ (EaseUS ) C:\Users\georgi\Downloads\epm.exe
2015-01-12 20:20 - 2015-01-12 21:09 - 00002487 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-12 20:20 - 2015-01-12 20:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-01-12 20:19 - 2015-01-15 15:24 - 00001012 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-12 20:19 - 2015-01-14 20:24 - 00001008 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-12 20:19 - 2015-01-12 20:20 - 00000000 ____D () C:\Users\georgi\AppData\Local\Google
2015-01-12 20:19 - 2015-01-12 20:20 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-12 20:19 - 2015-01-12 20:19 - 00003984 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-01-12 20:19 - 2015-01-12 20:19 - 00003748 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-12 20:12 - 2015-01-14 19:41 - 00013746 _____ () C:\Windows\DPINST.LOG
2015-01-12 20:12 - 2015-01-12 20:12 - 00002106 _____ () C:\Users\Public\Desktop\OneKey Recovery.lnk
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Energy Manager
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\Program Files\DIFX
2015-01-12 20:11 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\OneKey Recovery
2015-01-12 20:11 - 2015-01-12 20:11 - 00000000 ____D () C:\ProgramData\Temp
2015-01-12 20:11 - 2012-06-13 17:10 - 00102376 _____ ("CyberLink) C:\Windows\system32\Drivers\wsvd.sys
2015-01-12 20:09 - 2015-01-12 20:09 - 00836954 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-12 20:09 - 2015-01-12 20:09 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Intel Corporation
2015-01-12 20:09 - 2013-07-03 11:25 - 00074344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelPcc.sys
2015-01-12 20:08 - 2015-01-12 20:08 - 00000000 ____D () C:\Users\georgi\Intel
2015-01-12 20:07 - 2015-01-12 20:09 - 00000000 ____D () C:\ProgramData\Intel
2015-01-12 20:07 - 2013-09-04 07:53 - 00016344 ____R (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-01-12 20:06 - 2015-01-12 20:06 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2015-01-12 20:06 - 2013-09-04 07:53 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2015-01-12 20:06 - 2013-09-04 07:53 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2015-01-12 20:05 - 2015-01-12 20:05 - 00000000 ____D () C:\Program Files (x86)\USB Camera
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Users\georgi\Documents\Bluetooth Exchange Folder
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Users\georgi\AppData\Local\Broadcom
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Program Files (x86)\Vimicro
2015-01-12 20:04 - 2013-08-30 11:10 - 01065472 _____ (Vimicro Corporation) C:\Windows\system32\Drivers\vm331avs.sys
2015-01-12 20:04 - 2013-08-30 10:49 - 00001677 _____ () C:\Windows\vm331Rmv.ini
2015-01-12 20:04 - 2013-08-30 10:49 - 00001677 _____ () C:\Windows\SysWOW64\vm331Rmv.ini
2015-01-12 20:04 - 2013-05-21 16:53 - 00663552 _____ () C:\Windows\SysWOW64\vmprp331.ax
2015-01-12 20:04 - 2013-05-21 16:52 - 01072640 _____ () C:\Windows\system32\331prx64.ax
2015-01-12 20:04 - 2013-04-15 16:24 - 00358912 _____ (Vimicro Corporation) C:\Windows\system32\VmCoinst.dll
2015-01-12 20:04 - 2010-07-01 08:38 - 00000356 _____ () C:\Windows\system\vm331avs.rsf
2015-01-12 20:03 - 2013-07-12 07:41 - 00228568 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys
2015-01-12 20:03 - 2013-07-12 07:41 - 00186584 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys
2015-01-12 20:03 - 2013-07-12 07:41 - 00038616 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys
2015-01-12 20:03 - 2012-07-27 10:18 - 00040248 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys
2015-01-12 20:02 - 2015-01-12 20:11 - 00000000 ____D () C:\Program Files\Lenovo
2015-01-12 20:01 - 2015-01-12 20:12 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2015-01-12 20:01 - 2015-01-12 20:01 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\InstallShield
2015-01-12 20:01 - 2013-08-07 13:37 - 07474864 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS
2015-01-12 20:01 - 2013-08-07 12:17 - 04011520 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2015-01-12 20:01 - 2013-08-07 12:16 - 03777024 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\ProgramData\AmUStor
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files\Dolby Digital Plus
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files (x86)\AmIcoSingLun
2015-01-12 19:59 - 2013-08-11 22:54 - 06101504 _____ (IDT, Inc.) C:\Windows\system32\stlang64.dll
2015-01-12 19:59 - 2013-08-11 22:54 - 01897984 _____ (IDT, Inc.) C:\Windows\system32\IDTNC64.cpl
2015-01-12 19:59 - 2013-08-11 22:54 - 00338944 _____ (IDT, Inc.) C:\Windows\system32\stacsv64.exe
2015-01-12 19:59 - 2013-08-11 22:54 - 00088576 _____ (IDT, Inc.) C:\Windows\system32\IDTPMA64.exe
2015-01-12 19:58 - 2013-08-11 22:54 - 02213376 _____ (IDT, Inc.) C:\Windows\system32\stapo64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00697856 ____N (IDT, Inc.) C:\Windows\system32\stapi64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00551936 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys
2015-01-12 19:58 - 2013-08-11 22:54 - 00499200 _____ (IDT, Inc.) C:\Windows\system32\stcplx64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00256000 _____ (IDT, Inc.) C:\Windows\system32\st646490.dll
2015-01-12 19:58 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-01-12 19:57 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files\IDT
2015-01-12 19:57 - 2015-01-12 19:57 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e
2015-01-12 19:57 - 2013-08-05 11:50 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2015-01-12 19:57 - 2013-07-18 13:55 - 00130248 _____ (Qualcomm Atheros Co., Ltd.) C:\Windows\system32\Drivers\L1C63x64.sys
2015-01-12 19:54 - 2015-01-12 20:27 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-12 19:53 - 2015-01-12 19:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton PartitionMagic 8.0
2015-01-12 19:49 - 2015-01-12 19:49 - 00000000 ____D () C:\Users\georgi\AppData\Local\Intel_Corporation
2015-01-12 19:46 - 2015-01-15 15:24 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00002713 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\Users\georgi\AppData\Local\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\ProgramData\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-12 19:45 - 2015-01-12 19:45 - 00001367 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-01-12 19:44 - 2015-01-12 20:43 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2015-01-12 19:44 - 2015-01-12 19:45 - 00000000 ____D () C:\Users\georgi\AppData\Local\NVIDIA
2015-01-12 19:44 - 2015-01-12 19:44 - 00000000 ____D () C:\Users\georgi\AppData\Local\NVIDIA Corporation
2015-01-12 19:44 - 2015-01-12 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-01-12 19:44 - 2014-07-25 06:01 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-01-12 19:43 - 2015-01-12 19:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-01-12 19:42 - 2015-01-12 20:41 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\OpenCandy
2015-01-12 19:42 - 2015-01-12 19:42 - 00000896 _____ () C:\Users\georgi\Desktop\µTorrent.lnk
2015-01-12 19:42 - 2015-01-12 19:42 - 00000876 _____ () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-01-12 19:42 - 2015-01-12 19:42 - 00000000 ____D () C:\ProgramData\APN
2015-01-12 19:42 - 2014-07-02 12:48 - 31512520 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 24196896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 22994208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 17555104 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 14498552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 13922752 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 13835208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 12866008 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-01-12 19:42 - 2014-07-02 12:48 - 11283344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 11222048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 04247000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 03989960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 02814656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00944928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00907096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00903624 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00869152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-01-12 19:42 - 2014-03-31 08:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-01-12 19:42 - 2014-03-31 08:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-01-12 19:42 - 2014-03-31 08:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-01-12 19:41 - 2015-01-15 15:45 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\uTorrent
2015-01-12 19:41 - 2015-01-12 19:41 - 00000000 ____D () C:\NVIDIA
2015-01-12 19:38 - 2015-01-12 19:38 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Macromedia
2015-01-12 19:33 - 2015-01-12 20:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-01-12 19:33 - 2015-01-12 20:09 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-12 19:33 - 2015-01-12 19:33 - 00000732 _____ () C:\Users\Public\Desktop\Intel® HD Graphics Control Panel.lnk
2015-01-12 19:32 - 2015-01-12 20:09 - 00000000 ____D () C:\Program Files\Intel
2015-01-12 19:32 - 2013-10-05 14:32 - 07587824 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 02474856 _____ (Intel Corporation) C:\Windows\system32\SETCE2D.tmp
2015-01-12 19:32 - 2013-10-05 14:32 - 00844784 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00769520 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00396272 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00393712 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2015-01-12 19:32 - 2013-10-02 01:25 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3316.dll
2015-01-12 19:32 - 2013-10-02 01:20 - 00002940 _____ () C:\Windows\system32\iglhxs64.vp
2015-01-12 19:32 - 2013-10-02 01:17 - 07850496 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll
2015-01-12 19:32 - 2013-10-02 01:17 - 00412160 _____ () C:\Windows\system32\igdmd64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 12130304 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 04185600 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2015-01-12 19:32 - 2013-10-02 01:16 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00220672 _____ () C:\Windows\system32\igdde64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 00160256 _____ () C:\Windows\system32\igdail64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 02384896 _____ () C:\Windows\system32\GfxRes.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00623616 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00517120 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00513024 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2015-01-12 19:32 - 2013-10-02 01:15 - 00265030 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00251250 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00233293 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00223744 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00199323 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00196855 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00190937 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00179235 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00179170 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176818 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176555 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176526 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00175165 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00174165 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173876 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173626 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173401 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00172630 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171980 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171631 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171464 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171207 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00170928 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00170073 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00166591 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00165303 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00164653 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00159945 _____ () C:\Windows\system32\Gfxres.en-US.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00153231 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00151479 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00029184 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 25986048 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 11417600 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 06225408 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 03292672 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00492032 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00343040 _____ () C:\Windows\SysWOW64\igdmd32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00180736 _____ () C:\Windows\SysWOW64\igdde32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 20946944 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 02974208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 04010144 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAAC64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 01423520 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSecureSourceFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00750752 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiWinNextAgent64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00632480 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAudioFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00598688 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMux64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00344736 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSilenceFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00209056 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUtils64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00176288 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiDDEAgent64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00121504 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMCUMD64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00094368 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiLogServer64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 02064896 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01814016 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00158720 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00149504 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00133120 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00128000 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2015-01-12 19:31 - 2015-01-15 15:23 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3848238859-4023326001-2967766439-1001
2015-01-12 19:30 - 2015-01-12 20:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-01-12 19:30 - 2015-01-12 19:45 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-01-12 19:30 - 2015-01-12 19:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-01-12 19:30 - 2014-10-03 17:37 - 00082432 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-01-12 19:30 - 2014-10-03 17:37 - 00074240 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 06783776 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 03522392 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 02559960 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 01084704 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00935368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-01-12 19:30 - 2014-07-02 10:55 - 00618440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00386520 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-01-12 19:30 - 2014-07-02 02:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2015-01-12 19:29 - 2013-10-02 01:25 - 00449528 _____ (Intel® Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2015-01-12 19:28 - 2015-01-15 15:30 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{CB8B9234-3F65-4E42-BF87-1578FF027AF2}
2015-01-12 19:28 - 2015-01-12 19:28 - 00000424 _____ () C:\Users\georgi\Desktop\This PC - Shortcut.lnk
2015-01-12 19:28 - 2015-01-12 19:28 - 00000000 ____D () C:\Intel
2015-01-12 19:26 - 2015-01-15 15:34 - 00000000 ___RD () C:\Users\georgi\SkyDrive
2015-01-12 19:24 - 2015-01-14 14:52 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Adobe
2015-01-12 19:24 - 2015-01-12 21:09 - 00001668 _____ () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-12 19:24 - 2015-01-12 19:25 - 00000000 ____D () C:\Users\georgi\AppData\Local\Packages
2015-01-12 19:24 - 2015-01-12 19:24 - 00003300 _____ () C:\Windows\System32\Tasks\KMS Server Daily Activate
2015-01-12 19:24 - 2015-01-12 19:24 - 00003114 _____ () C:\Windows\System32\Tasks\KMS Server OnLogon Activate
2015-01-12 19:24 - 2015-01-12 19:24 - 00000000 ____D () C:\Users\georgi\AppData\Local\VirtualStore
2015-01-12 19:24 - 2013-08-22 04:40 - 00040664 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys
2015-01-12 19:23 - 2015-01-14 14:24 - 00000000 ____D () C:\Users\georgi
2015-01-12 19:23 - 2015-01-12 19:23 - 00000020 ___SH () C:\Users\georgi\ntuser.ini
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-12 19:22 - 2015-01-14 14:31 - 00820548 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-12 19:19 - 2015-01-15 15:27 - 01814039 _____ () C:\Windows\WindowsUpdate.log
2015-01-12 19:15 - 2013-08-21 21:17 - 02407936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-01-12 19:12 - 2015-01-13 21:43 - 00005274 _____ () C:\Windows\PFRO.log
2015-01-12 19:12 - 2015-01-12 19:24 - 00000000 ____D () C:\Windows\Panther
2015-01-12 18:57 - 2015-01-12 18:57 - 00000000 ____D () C:\Windows.old
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-01-15 15:24 - 2013-08-22 07:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-01-15 15:16 - 2013-08-22 05:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-01-15 15:00 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-14 19:45 - 2013-08-22 05:25 - 00000167 _____ () C:\Windows\win.ini
2015-01-14 19:41 - 2013-08-22 06:45 - 00009889 _____ () C:\Windows\setupact.log
2015-01-14 19:29 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\SysWOW64\bg-BG
2015-01-14 19:29 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\bg-BG
2015-01-14 19:27 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-01-14 19:27 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-01-14 19:25 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-14 14:24 - 2013-08-22 06:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-13 21:43 - 2013-08-22 06:44 - 00473392 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-13 21:43 - 2013-08-22 05:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-13 21:28 - 2013-08-22 11:12 - 00000000 ____D () C:\Program Files\Windows Journal
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\system32\WCN
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\system32\slmgr
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\WinStore
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Help
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\FileManager
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\servicing
2015-01-12 21:28 - 2013-08-22 11:12 - 00000000 ____D () C:\Windows\ShellNew
2015-01-12 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-01-12 20:12 - 2013-02-17 10:48 - 00035600 _____ (Lenovo Corporation) C:\Windows\system32\Drivers\AcpiVpc.sys
2015-01-12 20:12 - 2012-02-21 05:48 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll
2015-01-12 20:05 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\System
2015-01-12 19:44 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\restore
2015-01-12 19:24 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Camera
2015-01-12 19:24 - 2013-08-22 06:44 - 00000000 ____D () C:\Windows\Setup
2015-01-12 19:19 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\rescache
2015-01-12 19:14 - 2013-08-22 07:37 - 00001720 _____ () C:\Windows\DtcInstall.log
2015-01-12 19:14 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\Recovery
2015-01-12 19:12 - 2013-08-22 07:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
 
Some content of TEMP:
====================
C:\Users\georgi\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\georgi\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\georgi\AppData\Local\Temp\ose00000.exe
C:\Users\georgi\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\georgi\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\georgi\AppData\Local\Temp\TUUUninstallHelper.exe
C:\Users\georgi\AppData\Local\Temp\utt966F.tmp.exe
C:\Users\georgi\AppData\Local\Temp\_is279A.exe
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-01-12 19:12
 
==================== End Of Log ============================

Addition.txt

Здравейте,

 

 

СТЪПКА 1

 

 

Деинсталирайте следните програми от Control Panel-a:

 

Super Radio

webssearches uninstall

 

 

 

След това:

 

СТЪПКА 2

  • Изтеглете и стартирайтe 6sv1DN9.jpgAdwCleaner.exe.
  • Натиснете бутона Scan.
  • AdwCleaner ще започне да проверява компютъра.
  • След като проверката приключи натиснете бутона Clean.
  • Програмата ще затвори всички излишни процеси и след почистването ще иска да рестартира машината. Съгласете се.
  • Ще се появи автоматично лог файл с името (AdwCleaner[s0].txt) в C:\Adwcleaner
  • Публикувайте съдържанието му в следващия си коментар.


     
    СТЪПКА 3
     

     
    Моля изтеглете icon1351185104.png Junkware Removal Tool на вашия десктоп.
  • Спрете временно работата на защитните програми.
  • Стартирайте инструмента JRT.exe
  • Ще се отвори ДОС прозорец. Натиснете което и да е копче от клавиатурата.
  • Затворете излишните приложения и всички браузъри и изчакайте проверката да завърши.
  • Ще се появи лог файл (който можете да намерите и ръчно на десктопа с името JRT.txt).
  • Моля копирайте съдържанието на лог файла в следващия си пост.


     
    СТЪПКА 4


     
    Моля изтеглете Malwarebytes Anti-Malware 2.0.3.1025 Final и я запазете на вашия десктоп.
  • Стартирайте файла mbam-setup-2.0.3.1025.exe и следвайте указанията за да инсталирате програмата.
  • След като инсталацията приключи се уверете че сте сложили отметка пред:
  • Launch Malwarebytes Anti-Malware
  • Отметката активираща пробния 14 дневен период също е маркиран по-подразбиране. Ако не желаете да тествате защитата в реално време на програмата през следващите 14 дни тогава премахнете отметката.
  • Натиснете бутона Finish.
  • Отидете до табът Settings > Detection and Protection > и под категорията Detection Options включете опцията "Scan for rootkits".
  • Отидете до табът Scan, сложете радио-бутона пред Threat Scan и след това натиснете бутона Scan Now >> . Ако е намерена актуализация тогава натиснете бутона Update Now.
  • Ще започне проверка за зловреден софтуер.
  • При някои инфекции можете да видите съобщението:
  • "Could not load DDA driver"
  • Натиснете "Yes" на това съобщение за да позволите драйвера да се зареди след рестарт.
  • Разрешете на компютъра да се рестартира и след това продължете с останалите инструкции.
  • След като проверката приключи натиснете бутона Apply Actions.
  • Изчакайте да се появи прозореца подканващ ви да рестартирате и след това натиснете бутона Yes.
  • След рестарта, когато се появи десктопа MBAM ще се зареди още веднъж.
  • Отидете то табът History > Application Logs.
  • Отворете рапорта с последната дата и час и натиснете бутона "Copy to Clipboard"
  • Сега вече поставете съдържанието на лог файла с клавишната комбинация Ctrl + V и го публикувайте в следващия си коментар.


     
    СТЪПКА 5
     

     
    1.Изтеглете Hitman Pro.
    За 32-битова система - dEMD6.gif.
    За 64-битова система - Download-button3.gif


    2.Стартирайте програмата.

    3.След като сте стартирали програмата като кликнете върху иконата 5vo5F.jpg и натиснете бутона „Напред“ като се съгласите с лицензионното споразумение (EULA).

    4.Сложете отметка пред "Не, искам да завърша еднократно сканиране на компютъра".

    5.Натиснете бутона „Напред“.

    6.Програмата ще започне да сканира. Времето за сканиране е около 2 минути.

    7.След завършване на сканирането от списъка с намерените неща (ако има такива) изберете Apply to all => Ignore.

    8.Натиснете "Next" и след това натиснете "Изнеси резултата в XML file" и запазете лог файла на десктопа.

    9.Архивирайте файла и го прикачете в следващия си коментар или копирайте съдържанието му в следващия си коментар.
     
    Забележка: Ако няма падащо меню, където да изберете ignore както на снимката:
     
    6-scanfin-choose.jpg
     
    Тогава просто затворете програмата след края на проверката (без да премахвате нищо)...след това отворете C:Programdata\HitmanPro\Logs, отворете и публикувайте съдържанието на лог файла в следващия си коментар.

 

СТЪПКА 6

 

 

Направете нова проверка с FRST (уверете се, че има отметка пред Addition.txt преди да натиснете бутона SCAN) и след това публикувайте новите лог файлове за да проверим за остатъци.

 

 

Поздрави!

  • Автор
това е текста от   лог файл с името (AdwCleaner[s0].txt) в C:\Adwcleaner
 
 
# AdwCleaner v4.107 - Report created 15/01/2015 at 19:49:42
# Updated 07/01/2015 by Xplode
# Database : 2014-12-21.4 [Local]
# Operating System : Windows 8.1 N  (64 bits)
# Username : georgi - GEORGI
# Running from : D:\Download\adwcleaner_4.107.exe
# Option : Clean
 
***** [ Services ] *****
 
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : IHProtect Service
 
***** [ Files / Folders ] *****
 
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\IHProtectUpDate
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Users\georgi\AppData\Local\globalUpdate
Folder Deleted : C:\Users\georgi\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp
File Deleted : C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
 
***** [ Scheduled Tasks ] *****
 
Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\SupTab
Key Deleted : HKLM\SOFTWARE\webssearchesSoftware
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16384
 
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [First Home Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [search Page]
 
-\\ Google Chrome v39.0.2171.95
 
 
*************************
 
AdwCleaner[R0].txt - [11764 octets] - [15/01/2015 19:33:32]
AdwCleaner[R1].txt - [11670 octets] - [15/01/2015 19:48:45]
AdwCleaner[s0].txt - [9119 octets] - [15/01/2015 19:49:42]
 
########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [9179 octets] ##########
  • Автор
това е от JRT
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.1 (12.28.2014:1)
OS: Windows 8.1 N x64
Ran by georgi on Thu 01/15/2015 at 20:24:21.78
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Main\\Start Page
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110611791177}
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
 
 
~~~ Chrome
 
Successfully deleted: [Folder] C:\Users\georgi\appdata\local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Thu 01/15/2015 at 20:26:02.35
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

Дотук добре...само че инструментите са изтрили и две легитимни добавки и ако ви трябват трябва да си ги инсталирате наново:

 

https://chrome.google.com/webstore/detail/webmail-ad-blocker/cbhfdchmklhpcngcgjmpdbjakdggkkjp?hl=en

https://chrome.google.com/webstore/detail/adblock-super/knebimhcckndhiglamoabbnifdkijidd

 

Ще изчакам и за останалите резултати.

  • Автор
 това е от 4рта стъпка обаче някой работи не се случиха те са следните 
  • При някои инфекции можете да видите съобщението:
  • "Could not load DDA driver"
  • Натиснете "Yes" на това съобщение за да позволите драйвера да се зареди след рестарт.
  • Разрешете на компютъра да се рестартира и след това продължете с останалите инструкци

направо след стартирането без да се рестартира стигна до края и после натиснах Apply Actions   и след рестарта програмата не се стартира самичка, аз я стартирах и направих това което бяхте написали а именно да копирам последния запис.

  
Malwarebytes Anti-Malware
www.malwarebytes.org
 
 
Update, 1/16/2015 2:14:11 PM, SYSTEM, GEORGI, Scheduler, Malware Database, 2015.1.15.11, 2015.1.16.5, 
Detection, 1/16/2015 2:15:07 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, Quarantine, [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:15:11 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:15:32 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:15:40 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:15:48 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:15:57 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:14 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:20 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:31 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:42 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:49 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:56 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:16:59 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:03 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:10 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:15 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:21 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:27 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:32 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:39 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:43 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Detection, 1/16/2015 2:17:48 PM, SYSTEM, GEORGI, Protection, Malware Protection, File, PUP.Optional.XTab.A, c:\program files (x86)\xtab\protectservice.exe, Quarantine Failed, 2, The system cannot find the file specified.  , [a61144b399f072c4cae9877e24dea25e]
Protection, 1/16/2015 2:23:27 PM, SYSTEM, GEORGI, Protection, Refresh, Starting, 
Protection, 1/16/2015 2:23:27 PM, SYSTEM, GEORGI, Protection, Malicious Website Protection, Stopping, 
Protection, 1/16/2015 2:23:27 PM, SYSTEM, GEORGI, Protection, Malicious Website Protection, Stopped, 
Protection, 1/16/2015 2:23:32 PM, SYSTEM, GEORGI, Protection, Refresh, Success, 
Protection, 1/16/2015 2:23:32 PM, SYSTEM, GEORGI, Protection, Malicious Website Protection, Starting, 
Protection, 1/16/2015 2:23:32 PM, SYSTEM, GEORGI, Protection, Malicious Website Protection, Started, 
Scan, 1/16/2015 2:25:04 PM, SYSTEM, GEORGI, Manual, Start:1/15/2015 9:03:53 PM, Duration:9 min 46 sec, Threat Scan, Completed, 0 Malware Detections, 120 Non-Malware Detections, 
Protection, 1/16/2015 2:26:33 PM, SYSTEM, GEORGI, Protection, Malware Protection, Starting, 
Protection, 1/16/2015 2:26:33 PM, SYSTEM, GEORGI, Protection, Malware Protection, Started, 
Protection, 1/16/2015 2:26:33 PM, SYSTEM, GEORGI, Protection, Malicious Website Protection, Starting, 
Protection, 1/16/2015 2:26:34 PM, SYSTEM, GEORGI, Protection, Malicious Website Protection, Started, 
Update, 1/16/2015 2:27:15 PM, SYSTEM, GEORGI, Scheduler, Failed, Unable to access update server, 
 
(end)
  • Автор

това е от стъпка 5


HitmanPro 3.7.9.234
www.hitmanpro.com
 
   Computer name . . . . : GEORGI
   Windows . . . . . . . : 6.3.0.9600.X64/4
   User name . . . . . . : GEORGI\georgi
   UAC . . . . . . . . . : Enabled
   License . . . . . . . : Free
 
   Scan date . . . . . . : 2015-01-16 14:38:16
   Scan mode . . . . . . : Normal
   Scan duration . . . . : 2m 58s
   Disk access mode  . . : Direct disk access (SRB)
   Cloud . . . . . . . . : Internet
   Reboot  . . . . . . . : No
 
   Threats . . . . . . . : 1
   Traces  . . . . . . . : 66
 
   Objects scanned . . . : 1,361,408
   Files scanned . . . . : 18,733
   Remnants scanned  . . : 402,245 files / 940,430 keys
 
Malware _____________________________________________________________________
 
   C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\T4OF9AV9\Elex_Webssearches_20141224102511_6365[1].exe
      Size . . . . . . . : 91,568 bytes
      Age  . . . . . . . : 3.7 days (2015-01-12 21:09:26)
      Entropy  . . . . . : 7.0
      SHA-256  . . . . . : 95A78E5F559AC5AB866E846721374F10E57ABCD8DD39C8CA4EB267ADDC91B4C5
      RSA Key Size . . . : 2048
      Source URL . . . . : hxxp://cdn.kmplayer.com/KMP/player/download/goods/Elex_Webssearches_20141224102511_6365.exe
      Authenticode . . . : Valid
    > Kaspersky  . . . . : HEUR:Trojan-Downloader.Win32.Generic
      Fuzzy  . . . . . . : 102.0
      Forensic Cluster
         -23.4s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{8231FAEF-9494-4B44-B8AC-8F219510F765}
         -18.3s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\T4OF9AV9\1[1].htm
         -17.9s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\QYTX0V4F\0[2].htm
         -17.2s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\WYLD5DA8\old_BG_unicode_20141224034349[1].7z
         -17.1s C:\Windows\Prefetch\3.9.0.126_20140723022507.EXE-DF7D269C.pf
         -15.6s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\T4OF9AV9\addon_kmp_longtext_sec28[1].7z
         -13.9s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Store\6D00D8A093D2C7982CF4FF8326BC08B5
         -12.6s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{27414E24-719B-48D8-A554-679613887BB4}
         -12.6s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{8740ABF8-D0F3-48B4-B22A-14312AEDD6EB}
         -11.6s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\3492B8Y9\1[1]
         -10.4s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\QYTX0V4F\default@install[1].htm
         -9.3s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\WYLD5DA8\en_1412_468x60_en[1].jpg
         -3.1s C:\Windows\Prefetch\KMPBANNERINSTART.EXE-D8CC8C84.pf
         -0.7s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\3492B8Y9\goods[1].htm
          0.0s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\T4OF9AV9\Elex_Webssearches_20141224102511_6365[1].exe
          1.0s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{B2527A04-82EB-45D6-AE9F-1D3C224014CF}
          1.5s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\QYTX0V4F\kmp_webssearches[1].exe
          1.5s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\QYTX0V4F\kmp_webssearches[1].exe
          2.9s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{8ECF3E9C-A66F-4F87-9CAC-0A500DD0B29E}
          3.8s C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\WYLD5DA8\1[1].zip
          9.0s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{F338B691-C598-40BC-9D90-058BEBEB9BBE}
          9.0s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{F338B691-C598-40BC-9D90-058BEBEB9BBE}
         10.5s C:\Windows\Prefetch\KMPADDEDCODE_WEBSSEARCHES.EXE-7FE0F9A4.pf
 
 
Potential Unwanted Programs _________________________________________________
 
   HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}\ (DomalQ)
   HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}\ (DomalQ)
 
Cookies _____________________________________________________________________
 
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.360yield.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.adnet.de
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.mlnadvertising.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.yashi.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ad.zanox.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.ad-center.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.adk2.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.adsrvmedia.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.creative-serving.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.etology.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.glispa.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.kaldata.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.mediade.sk
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.p161.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.pio.bg
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.pubmatic.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.stickyadstv.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.traffichunt.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.trafficjunky.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:adserving.bizcrank.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtech.de
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:at.atwola.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:atdmt.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:burstnet.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:casalemedia.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:chitika.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:dmtracker.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:engine.phn.doublepimp.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:escort.sexcia.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:exoclick.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:fastclick.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:googleadservices.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:gtp12.acecounter.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:media6degrees.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:mediaplex.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:microsoftwindows.112.2o7.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:mm.chitika.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:myroitracking.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:porn-xnick.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:pornhub.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:pornmd.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:revsci.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:ru4.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:serving-sys.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:sexad.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:smartadserver.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:statcounter.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.adcocktail.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.adform.net
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.adsushi.de
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:tradedoubler.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:tribalfusion.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.burstnet.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.escort.sexcia.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.pornhub.com
   C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.pornmd.com
   C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCookies\0ZI4ZKQJ.txt
   C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCookies\MDVVKZRB.txt
   C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCookies\QEXE63XH.txt
   C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCookies\STR9PD2X.txt
   C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCookies\YFLY7M31.txt
 
 

и нещата от последната стъпка

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-01-2015
Ran by georgi (administrator) on GEORGI on 16-01-2015 15:00:38
Running from D:\Download
Loaded Profiles: georgi (Available profiles: georgi)
Platform: Windows 8.1 N (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Malwarebytes Corporation) C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\EpmNews.exe
() C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\Bluetooth Headset Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [shadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [sysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-08-11] (IDT, Inc.)
HKLM\...\Run: [iAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [286056 2013-09-24] (Intel Corporation)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15813616 2015-01-12] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80880 2015-01-12] (Lenovo(beijing) Limited)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [552960 2013-05-14] (Vimicro)
HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\EpmNews.exe [2089056 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd)
HKLM-x32\...\Run: [EaseUS EPM Tray Agent] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe [255072 2014-11-18] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3848238859-4023326001-2967766439-1001 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
 
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
CHR StartupUrls: Default -> "https://www.google.com/","hxxp://istart.webssearches.com/?type=hppp&ts=1421125825&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681"
CHR DefaultSearchKeyword: Default -> webssearches
CHR DefaultSuggestURL: Default -> 
CHR Profile: C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Презентации) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-12]
CHR Extension: (Google Документи) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-12]
CHR Extension: (Google Диск) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-12]
CHR Extension: (Adguard AdBlocker) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2015-01-15]
CHR Extension: (YouTube) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-12]
CHR Extension: (Webmail Ad Blocker) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp [2015-01-15]
CHR Extension: (Google Търсене) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-12]
CHR Extension: (Електронни таблици от Google) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-12]
CHR Extension: (Adblock Super) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2015-01-15]
CHR Extension: (Google Wallet) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-12]
CHR Extension: (Gmail) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-12]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-04] (Broadcom Corporation.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [14696 2013-09-24] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 MBAMScheduler; C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [338944 2013-08-11] (IDT, Inc.) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-30] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] ()
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [74344 2013-07-03] (Intel Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-01-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-14] (Synaptics Incorporated)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1065472 2013-08-30] (Vimicro Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-30] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-01-16 14:56 - 2015-01-16 14:56 - 00019970 _____ () C:\Users\georgi\Desktop\HitmanPro_20150116_1455.log
2015-01-16 14:36 - 2015-01-16 15:00 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-01-15 20:59 - 2015-01-16 14:26 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-15 20:59 - 2015-01-15 21:02 - 00000787 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-01-15 20:59 - 2015-01-15 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-01-15 20:58 - 2015-01-15 21:02 - 00000000 ____D () C:\Users\georgi\Desktop\Malwarebytes Anti-Malware
2015-01-15 20:58 - 2015-01-15 20:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-15 20:58 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-01-15 20:58 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-01-15 20:58 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-01-15 20:26 - 2015-01-15 20:26 - 00001660 _____ () C:\Users\georgi\Desktop\JRT.txt
2015-01-15 20:24 - 2015-01-15 20:24 - 00000000 ____D () C:\Windows\ERUNT
2015-01-15 19:33 - 2015-01-15 19:49 - 00000000 ____D () C:\AdwCleaner
2015-01-15 15:44 - 2015-01-16 15:00 - 00000000 ____D () C:\FRST
2015-01-15 15:04 - 2015-01-15 16:57 - 00100864 ___SH () C:\Users\georgi\Desktop\Thumbs.db
2015-01-14 19:56 - 2015-01-14 19:56 - 00000358 _____ () C:\Users\georgi\Desktop\Safebridge - Client (1.5).appref-ms
2015-01-14 19:56 - 2015-01-14 19:56 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Safebridge GmbH
2015-01-14 19:55 - 2015-01-14 19:56 - 00000000 ____D () C:\Users\georgi\AppData\Local\Deployment
2015-01-14 19:55 - 2015-01-14 19:55 - 00000000 ____D () C:\Users\georgi\AppData\Local\Apps\2.0
2015-01-14 19:41 - 2015-01-14 19:41 - 00002990 _____ () C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____D () C:\Program Files\Synaptics
2015-01-14 19:41 - 2013-08-14 15:01 - 00722160 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00527600 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2015-01-14 19:41 - 2013-08-14 15:01 - 00421616 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo19.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00400112 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00251632 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00169712 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCom.dll
2015-01-14 19:40 - 2015-01-14 19:41 - 00001356 _____ () C:\Windows\Synaptics.log
2015-01-14 19:40 - 2013-08-14 15:01 - 00034544 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2015-01-14 19:33 - 2015-01-14 19:33 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-01-14 19:32 - 2014-12-31 03:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-14 19:29 - 2015-01-14 19:29 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-01-14 19:29 - 2015-01-14 19:29 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-01-14 19:23 - 2015-01-14 19:26 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 19:23 - 2014-12-31 13:12 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-14 19:22 - 2015-01-14 19:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET
2015-01-14 14:51 - 2013-12-13 22:31 - 13949440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-01-14 14:51 - 2013-12-13 22:19 - 18576384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-01-14 14:50 - 2014-01-07 17:46 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-01-14 14:50 - 2014-01-07 17:41 - 01530712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-01-14 14:50 - 2014-01-07 17:41 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-01-14 14:50 - 2014-01-04 07:54 - 00138240 _____ () C:\Windows\system32\OEMLicense.dll
2015-01-14 14:50 - 2014-01-04 07:08 - 00103936 _____ () C:\Windows\SysWOW64\OEMLicense.dll
2015-01-14 14:50 - 2014-01-04 06:08 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2015-01-14 14:50 - 2014-01-04 05:53 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2015-01-14 14:50 - 2014-01-02 15:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-01-14 14:50 - 2014-01-02 15:48 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-01-14 14:50 - 2013-12-31 17:55 - 01720560 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-01-14 14:50 - 2013-12-31 16:56 - 01472048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-01-14 14:50 - 2013-12-31 15:57 - 01214976 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-01-14 14:50 - 2013-12-30 15:34 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2015-01-14 14:50 - 2013-12-30 15:33 - 00770560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-01-14 14:50 - 2013-12-30 15:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2015-01-14 14:50 - 2013-12-30 15:31 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-01-14 14:50 - 2013-12-30 15:31 - 00914944 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-01-14 14:50 - 2013-12-27 07:09 - 00419160 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-01-14 14:50 - 2013-12-27 00:57 - 00842752 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2015-01-14 14:50 - 2013-12-27 00:57 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2015-01-14 14:50 - 2013-12-27 00:23 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2015-01-14 14:50 - 2013-12-26 23:03 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2015-01-14 14:50 - 2013-12-26 23:03 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2015-01-14 14:50 - 2013-12-26 22:37 - 00588800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2015-01-14 14:50 - 2013-12-20 23:21 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2015-01-14 14:50 - 2013-12-16 23:21 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2015-01-14 14:50 - 2013-12-13 02:54 - 00131160 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2015-01-14 14:50 - 2013-12-12 22:36 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2015-01-14 14:50 - 2013-12-12 21:32 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2015-01-14 14:48 - 2013-12-10 23:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-01-14 14:47 - 2013-12-08 16:34 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-01-14 14:47 - 2013-12-08 16:04 - 00980480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-01-14 14:47 - 2013-11-27 04:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys
2015-01-14 14:47 - 2013-11-27 02:24 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-01-14 14:47 - 2013-11-27 01:46 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-01-14 14:47 - 2013-11-27 01:41 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-01-14 14:47 - 2013-11-27 01:17 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-01-14 14:47 - 2013-11-27 01:10 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2015-01-14 14:47 - 2013-11-27 00:58 - 01503232 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-01-14 14:47 - 2013-11-27 00:56 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2015-01-14 14:47 - 2013-11-27 00:20 - 04106240 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-01-14 14:47 - 2013-11-24 17:45 - 00142680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-01-14 14:47 - 2013-11-24 17:32 - 01119064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-01-14 14:47 - 2013-11-24 15:30 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-01-14 14:47 - 2013-11-24 15:28 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-01-14 14:47 - 2013-11-23 04:47 - 00032088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-01-14 14:47 - 2013-11-22 23:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll
2015-01-14 14:47 - 2013-11-22 23:13 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
2015-01-14 14:47 - 2013-11-22 23:08 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-01-14 14:47 - 2013-11-22 20:50 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-01-14 14:47 - 2013-11-22 19:19 - 02617344 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-01-14 14:47 - 2013-11-22 19:15 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-01-14 14:47 - 2013-11-20 22:58 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll
2015-01-14 14:47 - 2013-11-20 22:26 - 01415680 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-01-14 14:47 - 2013-11-15 06:08 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-01-14 14:47 - 2013-11-15 05:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-01-14 14:47 - 2013-10-30 16:29 - 00745336 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-01-14 14:47 - 2013-10-30 15:41 - 00552624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-01-14 14:44 - 2013-11-10 18:48 - 00039768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-01-14 14:44 - 2013-11-08 02:26 - 00358896 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-01-14 14:44 - 2013-11-07 20:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-01-14 14:44 - 2013-11-07 20:16 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-01-14 14:44 - 2013-11-07 20:15 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-01-14 14:44 - 2013-11-07 19:41 - 01302528 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-01-14 14:44 - 2013-11-07 19:14 - 00922624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-01-14 14:44 - 2013-11-05 06:19 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-01-14 14:44 - 2013-11-05 05:17 - 00565248 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-01-14 14:44 - 2013-11-04 05:07 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-01-14 14:44 - 2013-11-04 03:50 - 02143744 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-01-14 14:44 - 2013-11-04 02:32 - 02570240 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-01-14 14:44 - 2013-11-03 18:28 - 01816576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-01-14 14:44 - 2013-11-03 17:30 - 01765376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-01-14 14:44 - 2013-11-01 03:39 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-01-14 14:44 - 2013-10-31 22:08 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2015-01-14 14:44 - 2013-10-31 21:57 - 00544768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2015-01-14 14:44 - 2013-10-30 16:58 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-01-14 14:44 - 2013-10-30 16:42 - 07399256 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-14 14:44 - 2013-10-25 17:54 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys
2015-01-14 14:44 - 2013-10-24 01:31 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-01-14 14:44 - 2013-10-24 01:12 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-01-14 14:44 - 2013-10-17 03:21 - 02896896 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-01-14 14:44 - 2013-10-17 02:36 - 02266624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-01-14 14:44 - 2013-10-05 06:21 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-01-14 14:44 - 2013-10-05 06:21 - 00516496 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-01-14 14:44 - 2013-10-05 04:05 - 01765384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-01-14 14:44 - 2013-10-05 04:05 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-01-13 21:53 - 2014-05-07 23:14 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-01-13 21:53 - 2014-05-07 21:52 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-01-13 21:53 - 2014-05-07 20:57 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-01-13 21:53 - 2014-05-07 20:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-01-13 21:53 - 2014-03-10 02:35 - 02008408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-01-13 21:53 - 2014-03-10 02:35 - 00377176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-01-13 21:53 - 2014-03-06 01:19 - 01287576 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-01-13 21:53 - 2014-03-06 01:02 - 01109424 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-01-13 21:53 - 2014-03-05 22:17 - 00835584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-01-13 21:53 - 2014-03-05 22:10 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-01-13 21:53 - 2014-02-28 20:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-01-13 21:53 - 2014-02-28 20:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-01-13 21:53 - 2014-02-28 19:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-01-13 21:53 - 2014-02-28 19:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-01-13 21:53 - 2014-02-28 19:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-01-13 21:53 - 2014-02-28 19:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-01-13 21:53 - 2014-02-28 19:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-01-13 21:53 - 2014-02-28 19:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-01-13 21:53 - 2014-02-28 19:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-01-13 21:53 - 2014-02-28 18:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-01-13 21:53 - 2014-02-28 18:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-01-13 21:53 - 2014-02-28 18:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-01-13 21:53 - 2014-02-28 18:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-01-13 21:53 - 2014-02-28 18:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-01-13 21:53 - 2014-02-28 18:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-01-13 21:53 - 2014-02-06 03:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-01-13 21:53 - 2014-02-06 03:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-01-13 21:53 - 2014-02-06 03:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-01-13 21:53 - 2014-02-06 02:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-01-13 21:53 - 2014-02-06 02:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-01-13 21:53 - 2014-02-06 02:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-01-13 21:53 - 2014-02-06 02:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-01-13 21:53 - 2014-02-06 02:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-01-13 21:53 - 2014-02-06 02:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-01-13 21:53 - 2014-02-06 02:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-01-13 21:53 - 2014-02-06 02:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-01-13 21:53 - 2014-02-06 01:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-01-13 21:53 - 2014-02-06 01:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-01-13 21:53 - 2014-02-06 01:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-01-13 21:53 - 2014-02-06 01:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-01-13 21:53 - 2014-02-06 01:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-01-13 21:53 - 2014-02-06 01:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-01-13 21:53 - 2014-02-06 01:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-01-13 21:53 - 2014-01-31 08:15 - 00311640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-01-13 21:53 - 2014-01-31 01:06 - 00716288 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-01-13 21:53 - 2014-01-29 00:53 - 00458616 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-01-13 21:53 - 2014-01-29 00:53 - 00407024 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-01-13 21:53 - 2014-01-29 00:49 - 01928144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2015-01-13 21:53 - 2014-01-29 00:47 - 02543960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-01-13 21:53 - 2014-01-28 23:44 - 01371824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2015-01-13 21:53 - 2014-01-28 23:44 - 00408480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-01-13 21:53 - 2014-01-28 23:44 - 00369280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-01-13 21:53 - 2014-01-28 22:41 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-01-13 21:53 - 2014-01-28 16:36 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-01-13 21:53 - 2014-01-27 11:07 - 04175360 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-01-13 21:53 - 2014-01-27 11:06 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-01-13 21:53 - 2014-01-27 11:04 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2015-01-13 21:53 - 2014-01-27 10:23 - 02873344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-01-13 21:53 - 2014-01-27 10:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-01-13 21:53 - 2014-01-27 10:20 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2015-01-13 21:53 - 2014-01-27 10:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-01-13 21:53 - 2014-01-27 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-01-13 21:53 - 2014-01-27 09:18 - 01486848 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-01-13 21:53 - 2014-01-27 09:00 - 01238016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-01-13 21:53 - 2014-01-27 07:58 - 05770752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-01-13 21:53 - 2014-01-27 07:50 - 06640640 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-01-13 21:53 - 2014-01-27 03:45 - 00386722 _____ () C:\Windows\system32\ApnDatabase.xml
2015-01-13 21:53 - 2014-01-06 21:00 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-01-13 21:53 - 2014-01-06 20:30 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-01-13 21:53 - 2014-01-04 06:30 - 13209088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-01-13 21:53 - 2014-01-04 05:40 - 07416832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-01-13 21:53 - 2014-01-04 05:28 - 04961792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-01-13 21:53 - 2013-12-21 06:51 - 06353960 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-01-13 21:53 - 2013-12-21 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-01-13 21:53 - 2013-12-20 02:18 - 01643584 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-01-13 21:53 - 2013-12-20 02:18 - 01507704 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-01-13 21:53 - 2013-12-08 16:27 - 02152448 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-01-13 21:53 - 2013-12-08 16:19 - 00570880 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-01-13 21:53 - 2013-12-08 15:55 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-01-13 21:53 - 2013-12-08 15:54 - 01317376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-01-13 21:53 - 2013-11-27 07:36 - 03395920 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2015-01-13 21:53 - 2013-11-27 03:41 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-01-13 21:53 - 2013-11-27 00:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-01-13 21:53 - 2013-11-27 00:40 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-01-13 21:53 - 2013-11-27 00:17 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-01-13 21:53 - 2013-11-27 00:12 - 00848384 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-01-13 21:53 - 2013-11-22 20:34 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-01-13 21:53 - 2013-11-22 20:13 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-01-13 21:53 - 2013-11-20 22:42 - 04604416 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-01-13 21:53 - 2013-11-20 21:44 - 03936256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-01-13 21:53 - 2013-10-30 16:33 - 01476184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-01-13 21:53 - 2013-10-30 16:33 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-01-13 21:53 - 2013-10-30 16:29 - 00236888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-01-13 21:53 - 2013-10-30 16:29 - 00124760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-01-13 21:53 - 2013-10-30 16:28 - 00035856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-01-13 21:53 - 2013-10-19 00:53 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-01-13 21:53 - 2013-10-18 23:14 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-01-13 21:52 - 2014-10-30 14:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-01-13 21:52 - 2014-10-30 14:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-01-13 21:52 - 2014-04-19 03:15 - 21186352 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-01-13 21:52 - 2014-04-18 22:49 - 18644072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-01-13 21:52 - 2014-02-10 19:04 - 04189184 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-01-13 21:52 - 2014-02-10 18:43 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-01-13 21:52 - 2014-02-10 18:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-01-13 21:52 - 2014-01-06 23:03 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2015-01-13 21:52 - 2014-01-06 21:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2015-01-13 21:52 - 2014-01-04 12:50 - 01462216 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-01-13 21:52 - 2014-01-04 11:22 - 01202888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-01-13 21:52 - 2014-01-04 06:23 - 11702272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-01-13 21:52 - 2014-01-04 06:03 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-01-13 21:52 - 2014-01-04 05:47 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-01-13 21:52 - 2014-01-04 05:42 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-01-13 21:52 - 2014-01-04 05:36 - 00830976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-01-13 21:52 - 2013-12-20 18:10 - 00009701 _____ () C:\Windows\SysWOW64\connectedsearch-results.searchconnector-ms
2015-01-13 21:52 - 2013-12-20 18:10 - 00009701 _____ () C:\Windows\system32\connectedsearch-results.searchconnector-ms
2015-01-13 21:52 - 2013-12-08 18:57 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-01-13 21:52 - 2013-12-08 17:51 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-01-13 21:52 - 2013-12-08 16:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-01-13 21:52 - 2013-11-08 22:34 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-01-13 21:52 - 2013-11-08 22:34 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2015-01-13 21:52 - 2013-11-08 21:52 - 00240128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2015-01-13 21:52 - 2013-10-15 00:54 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-01-13 21:52 - 2013-10-15 00:03 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\SysWOW64\Drivers\bg-BG
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\system32\Drivers\bg-BG
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\system32\bg
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\bg-BG
2015-01-13 20:40 - 2015-01-13 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-01-13 20:40 - 2015-01-13 20:40 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2015-01-13 20:19 - 2015-01-13 20:19 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\WinRAR
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Windows\PCHEALTH
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-01-12 21:25 - 2015-01-14 19:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-01-12 21:25 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 __RHD () C:\MSOCache
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 ____D () C:\Users\georgi\AppData\Local\Microsoft Help
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-12 21:17 - 2015-01-12 21:17 - 00007532 _____ () C:\Users\georgi\Downloads\Microsoft Office Professional Plus 2010 with Service Pack 1 VL EN x64.torrent
2015-01-12 21:11 - 2015-01-13 21:46 - 00000000 ____D () C:\The KMPlayer
2015-01-12 21:11 - 2015-01-12 21:11 - 00000642 _____ () C:\Users\georgi\Desktop\KMPlayer.lnk
2015-01-12 21:11 - 2015-01-12 21:11 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-01-12 21:08 - 2015-01-12 21:08 - 35867784 _____ (PandoraTV) C:\Users\georgi\Downloads\3.9.1.132_20150106114303.exe
2015-01-12 21:08 - 2015-01-12 21:08 - 32830712 _____ (PandoraTV) C:\Users\georgi\Downloads\3.9.0.126_20140723022507.exe
2015-01-12 21:03 - 2015-01-12 21:03 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-01-12 20:53 - 2015-01-12 20:54 - 00001301 ____H () C:\Windows\EPMBatch.ept
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\TuneUp Software
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Local\TuneUp Software
2015-01-12 20:42 - 2015-01-12 20:43 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-01-12 20:42 - 2015-01-12 20:42 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-12 20:41 - 2015-01-12 20:41 - 00001408 _____ () C:\Users\Public\Desktop\EaseUS Partition Master 10.2.lnk
2015-01-12 20:41 - 2015-01-12 20:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.2
2015-01-12 20:41 - 2015-01-12 20:41 - 00000000 ____D () C:\Program Files (x86)\EaseUS
2015-01-12 20:41 - 2014-11-18 14:46 - 03384928 _____ () C:\Windows\system32\BootMan.exe
2015-01-12 20:41 - 2014-11-18 14:46 - 02502240 _____ () C:\Windows\SysWOW64\BootMan.exe
2015-01-12 20:41 - 2014-11-18 14:46 - 00021088 _____ () C:\Windows\SysWOW64\EuEpmGdi.dll
2015-01-12 20:41 - 2014-11-18 14:46 - 00017504 _____ () C:\Windows\system32\EuEpmGdi.dll
2015-01-12 20:41 - 2014-11-18 14:39 - 00018528 _____ () C:\Windows\system32\epmntdrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00014944 _____ () C:\Windows\SysWOW64\epmntdrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00010848 _____ () C:\Windows\system32\EuGdiDrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00010208 _____ () C:\Windows\SysWOW64\EuGdiDrv.sys
2015-01-12 20:41 - 2014-11-18 14:38 - 00101984 _____ () C:\Windows\system32\setupempdrvx64.exe
2015-01-12 20:41 - 2014-11-18 14:38 - 00088160 _____ () C:\Windows\SysWOW64\setupempdrv03.exe
2015-01-12 20:39 - 2015-01-13 20:40 - 00001947 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-01-12 20:39 - 2015-01-13 20:40 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-01-12 20:39 - 2015-01-12 20:39 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-01-12 20:39 - 2015-01-12 20:39 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2015-01-12 20:39 - 2015-01-12 20:39 - 00000000 ____D () C:\ProgramData\McAfee
2015-01-12 20:39 - 2015-01-12 20:39 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-01-12 20:38 - 2015-01-14 14:52 - 00000000 ____D () C:\Users\georgi\AppData\Local\Adobe
2015-01-12 20:38 - 2015-01-12 21:01 - 00000000 ____D () C:\ProgramData\Adobe
2015-01-12 20:35 - 2015-01-12 20:35 - 01937984 _____ () C:\Users\georgi\Downloads\winrar-x64-521b1 (1).exe
2015-01-12 20:35 - 2015-01-12 20:35 - 00001009 _____ () C:\Users\georgi\Desktop\WinRAR.lnk
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\Program Files\WinRAR
2015-01-12 20:34 - 2015-01-12 20:34 - 01937984 _____ () C:\Users\georgi\Downloads\winrar-x64-521b1.exe
2015-01-12 20:24 - 2015-01-12 20:40 - 30603720 _____ (EaseUS ) C:\Users\georgi\Downloads\epm.exe
2015-01-12 20:20 - 2015-01-15 19:19 - 00002277 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-12 20:20 - 2015-01-12 20:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-01-12 20:19 - 2015-01-16 14:26 - 00001008 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-12 20:19 - 2015-01-16 14:24 - 00001012 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-12 20:19 - 2015-01-12 20:20 - 00000000 ____D () C:\Users\georgi\AppData\Local\Google
2015-01-12 20:19 - 2015-01-12 20:20 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-12 20:19 - 2015-01-12 20:19 - 00003984 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-01-12 20:19 - 2015-01-12 20:19 - 00003748 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-12 20:12 - 2015-01-14 19:41 - 00013746 _____ () C:\Windows\DPINST.LOG
2015-01-12 20:12 - 2015-01-12 20:12 - 00002106 _____ () C:\Users\Public\Desktop\OneKey Recovery.lnk
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Energy Manager
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\Program Files\DIFX
2015-01-12 20:11 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\OneKey Recovery
2015-01-12 20:11 - 2015-01-12 20:11 - 00000000 ____D () C:\ProgramData\Temp
2015-01-12 20:11 - 2012-06-13 17:10 - 00102376 _____ ("CyberLink) C:\Windows\system32\Drivers\wsvd.sys
2015-01-12 20:09 - 2015-01-12 20:09 - 00836954 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-12 20:09 - 2015-01-12 20:09 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Intel Corporation
2015-01-12 20:09 - 2013-07-03 11:25 - 00074344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelPcc.sys
2015-01-12 20:08 - 2015-01-12 20:08 - 00000000 ____D () C:\Users\georgi\Intel
2015-01-12 20:07 - 2015-01-12 20:09 - 00000000 ____D () C:\ProgramData\Intel
2015-01-12 20:07 - 2013-09-04 07:53 - 00016344 ____R (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-01-12 20:06 - 2015-01-12 20:06 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2015-01-12 20:06 - 2013-09-04 07:53 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2015-01-12 20:06 - 2013-09-04 07:53 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2015-01-12 20:05 - 2015-01-12 20:05 - 00000000 ____D () C:\Program Files (x86)\USB Camera
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Users\georgi\Documents\Bluetooth Exchange Folder
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Users\georgi\AppData\Local\Broadcom
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Program Files (x86)\Vimicro
2015-01-12 20:04 - 2013-08-30 11:10 - 01065472 _____ (Vimicro Corporation) C:\Windows\system32\Drivers\vm331avs.sys
2015-01-12 20:04 - 2013-08-30 10:49 - 00001677 _____ () C:\Windows\vm331Rmv.ini
2015-01-12 20:04 - 2013-08-30 10:49 - 00001677 _____ () C:\Windows\SysWOW64\vm331Rmv.ini
2015-01-12 20:04 - 2013-05-21 16:53 - 00663552 _____ () C:\Windows\SysWOW64\vmprp331.ax
2015-01-12 20:04 - 2013-05-21 16:52 - 01072640 _____ () C:\Windows\system32\331prx64.ax
2015-01-12 20:04 - 2013-04-15 16:24 - 00358912 _____ (Vimicro Corporation) C:\Windows\system32\VmCoinst.dll
2015-01-12 20:04 - 2010-07-01 08:38 - 00000356 _____ () C:\Windows\system\vm331avs.rsf
2015-01-12 20:03 - 2013-07-12 07:41 - 00228568 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys
2015-01-12 20:03 - 2013-07-12 07:41 - 00186584 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys
2015-01-12 20:03 - 2013-07-12 07:41 - 00038616 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys
2015-01-12 20:03 - 2012-07-27 10:18 - 00040248 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys
2015-01-12 20:02 - 2015-01-12 20:11 - 00000000 ____D () C:\Program Files\Lenovo
2015-01-12 20:01 - 2015-01-12 20:12 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2015-01-12 20:01 - 2015-01-12 20:01 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\InstallShield
2015-01-12 20:01 - 2013-08-07 13:37 - 07474864 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS
2015-01-12 20:01 - 2013-08-07 12:17 - 04011520 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2015-01-12 20:01 - 2013-08-07 12:16 - 03777024 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\ProgramData\AmUStor
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files\Dolby Digital Plus
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files (x86)\AmIcoSingLun
2015-01-12 19:59 - 2013-08-11 22:54 - 06101504 _____ (IDT, Inc.) C:\Windows\system32\stlang64.dll
2015-01-12 19:59 - 2013-08-11 22:54 - 01897984 _____ (IDT, Inc.) C:\Windows\system32\IDTNC64.cpl
2015-01-12 19:59 - 2013-08-11 22:54 - 00338944 _____ (IDT, Inc.) C:\Windows\system32\stacsv64.exe
2015-01-12 19:59 - 2013-08-11 22:54 - 00088576 _____ (IDT, Inc.) C:\Windows\system32\IDTPMA64.exe
2015-01-12 19:58 - 2013-08-11 22:54 - 02213376 _____ (IDT, Inc.) C:\Windows\system32\stapo64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00697856 ____N (IDT, Inc.) C:\Windows\system32\stapi64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00551936 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys
2015-01-12 19:58 - 2013-08-11 22:54 - 00499200 _____ (IDT, Inc.) C:\Windows\system32\stcplx64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00256000 _____ (IDT, Inc.) C:\Windows\system32\st646490.dll
2015-01-12 19:58 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-01-12 19:57 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files\IDT
2015-01-12 19:57 - 2015-01-12 19:57 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e
2015-01-12 19:57 - 2013-08-05 11:50 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2015-01-12 19:57 - 2013-07-18 13:55 - 00130248 _____ (Qualcomm Atheros Co., Ltd.) C:\Windows\system32\Drivers\L1C63x64.sys
2015-01-12 19:54 - 2015-01-12 20:27 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-12 19:53 - 2015-01-12 19:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton PartitionMagic 8.0
2015-01-12 19:49 - 2015-01-12 19:49 - 00000000 ____D () C:\Users\georgi\AppData\Local\Intel_Corporation
2015-01-12 19:46 - 2015-01-16 14:28 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00002713 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\Users\georgi\AppData\Local\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\ProgramData\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-12 19:45 - 2015-01-12 19:45 - 00001367 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-01-12 19:44 - 2015-01-15 19:21 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2015-01-12 19:44 - 2015-01-12 19:45 - 00000000 ____D () C:\Users\georgi\AppData\Local\NVIDIA
2015-01-12 19:44 - 2015-01-12 19:44 - 00000000 ____D () C:\Users\georgi\AppData\Local\NVIDIA Corporation
2015-01-12 19:44 - 2015-01-12 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-01-12 19:44 - 2014-07-25 06:01 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-01-12 19:43 - 2015-01-12 19:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-01-12 19:42 - 2015-01-12 19:42 - 00000896 _____ () C:\Users\georgi\Desktop\µTorrent.lnk
2015-01-12 19:42 - 2015-01-12 19:42 - 00000876 _____ () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-01-12 19:42 - 2014-07-02 12:48 - 31512520 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 24196896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 22994208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 17555104 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 14498552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 13922752 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 13835208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 12866008 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-01-12 19:42 - 2014-07-02 12:48 - 11283344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 11222048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 04247000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 03989960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 02814656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00944928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00907096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00903624 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00869152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-01-12 19:42 - 2014-03-31 08:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-01-12 19:42 - 2014-03-31 08:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-01-12 19:42 - 2014-03-31 08:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-01-12 19:41 - 2015-01-15 19:49 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\uTorrent
2015-01-12 19:41 - 2015-01-12 19:41 - 00000000 ____D () C:\NVIDIA
2015-01-12 19:38 - 2015-01-12 19:38 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Macromedia
2015-01-12 19:33 - 2015-01-12 20:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-01-12 19:33 - 2015-01-12 20:09 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-12 19:33 - 2015-01-12 19:33 - 00000732 _____ () C:\Users\Public\Desktop\Intel® HD Graphics Control Panel.lnk
2015-01-12 19:32 - 2015-01-12 20:09 - 00000000 ____D () C:\Program Files\Intel
2015-01-12 19:32 - 2013-10-05 14:32 - 07587824 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 02474856 _____ (Intel Corporation) C:\Windows\system32\SETCE2D.tmp
2015-01-12 19:32 - 2013-10-05 14:32 - 00844784 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00769520 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00396272 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00393712 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2015-01-12 19:32 - 2013-10-02 01:25 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3316.dll
2015-01-12 19:32 - 2013-10-02 01:20 - 00002940 _____ () C:\Windows\system32\iglhxs64.vp
2015-01-12 19:32 - 2013-10-02 01:17 - 07850496 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll
2015-01-12 19:32 - 2013-10-02 01:17 - 00412160 _____ () C:\Windows\system32\igdmd64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 12130304 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 04185600 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2015-01-12 19:32 - 2013-10-02 01:16 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00220672 _____ () C:\Windows\system32\igdde64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 00160256 _____ () C:\Windows\system32\igdail64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 02384896 _____ () C:\Windows\system32\GfxRes.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00623616 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00517120 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00513024 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2015-01-12 19:32 - 2013-10-02 01:15 - 00265030 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00251250 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00233293 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00223744 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00199323 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00196855 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00190937 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00179235 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00179170 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176818 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176555 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176526 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00175165 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00174165 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173876 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173626 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173401 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00172630 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171980 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171631 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171464 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171207 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00170928 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00170073 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00166591 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00165303 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00164653 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00159945 _____ () C:\Windows\system32\Gfxres.en-US.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00153231 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00151479 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00029184 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 25986048 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 11417600 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 06225408 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 03292672 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00492032 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00343040 _____ () C:\Windows\SysWOW64\igdmd32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00180736 _____ () C:\Windows\SysWOW64\igdde32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 20946944 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 02974208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 04010144 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAAC64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 01423520 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSecureSourceFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00750752 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiWinNextAgent64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00632480 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAudioFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00598688 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMux64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00344736 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSilenceFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00209056 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUtils64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00176288 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiDDEAgent64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00121504 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMCUMD64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00094368 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiLogServer64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 02064896 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01814016 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00158720 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00149504 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00133120 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00128000 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2015-01-12 19:31 - 2015-01-15 21:14 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3848238859-4023326001-2967766439-1001
2015-01-12 19:30 - 2015-01-12 20:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-01-12 19:30 - 2015-01-12 19:45 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-01-12 19:30 - 2015-01-12 19:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-01-12 19:30 - 2014-10-03 17:37 - 00082432 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-01-12 19:30 - 2014-10-03 17:37 - 00074240 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 06783776 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 03522392 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 02559960 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 01084704 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00935368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-01-12 19:30 - 2014-07-02 10:55 - 00618440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00386520 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-01-12 19:30 - 2014-07-02 02:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2015-01-12 19:29 - 2013-10-02 01:25 - 00449528 _____ (Intel® Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2015-01-12 19:28 - 2015-01-16 14:47 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{CB8B9234-3F65-4E42-BF87-1578FF027AF2}
2015-01-12 19:28 - 2015-01-12 19:28 - 00000424 _____ () C:\Users\georgi\Desktop\This PC - Shortcut.lnk
2015-01-12 19:28 - 2015-01-12 19:28 - 00000000 ____D () C:\Intel
2015-01-12 19:26 - 2015-01-16 14:27 - 00000000 __RDO () C:\Users\georgi\SkyDrive
2015-01-12 19:24 - 2015-01-15 19:19 - 00001446 _____ () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-12 19:24 - 2015-01-14 14:52 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Adobe
2015-01-12 19:24 - 2015-01-12 19:25 - 00000000 ____D () C:\Users\georgi\AppData\Local\Packages
2015-01-12 19:24 - 2015-01-12 19:24 - 00003300 _____ () C:\Windows\System32\Tasks\KMS Server Daily Activate
2015-01-12 19:24 - 2015-01-12 19:24 - 00003114 _____ () C:\Windows\System32\Tasks\KMS Server OnLogon Activate
2015-01-12 19:24 - 2015-01-12 19:24 - 00000000 ____D () C:\Users\georgi\AppData\Local\VirtualStore
2015-01-12 19:24 - 2013-08-22 04:40 - 00040664 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys
2015-01-12 19:23 - 2015-01-15 19:49 - 00000000 ____D () C:\Users\georgi
2015-01-12 19:23 - 2015-01-12 19:23 - 00000020 ___SH () C:\Users\georgi\ntuser.ini
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-12 19:22 - 2015-01-16 14:33 - 00820548 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-12 19:19 - 2015-01-16 14:39 - 01969360 _____ () C:\Windows\WindowsUpdate.log
2015-01-12 19:15 - 2013-08-21 21:17 - 02407936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-01-12 19:12 - 2015-01-16 14:26 - 00033984 _____ () C:\Windows\PFRO.log
2015-01-12 19:12 - 2015-01-12 19:24 - 00000000 ____D () C:\Windows\Panther
2015-01-12 18:57 - 2015-01-12 18:57 - 00000000 ____D () C:\Windows.old
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-01-16 15:00 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-16 14:26 - 2013-08-22 06:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-16 14:25 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Web
2015-01-16 14:25 - 2013-08-22 05:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-15 19:53 - 2013-08-22 06:44 - 00473392 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ___RD () C:\Windows\ToastData
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\WinStore
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\SysWOW64\bg-BG
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\bg-BG
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\FileManager
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Camera
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-01-15 19:52 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-01-15 19:52 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-01-15 15:24 - 2013-08-22 07:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-01-15 15:16 - 2013-08-22 05:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-01-14 19:45 - 2013-08-22 05:25 - 00000167 _____ () C:\Windows\win.ini
2015-01-14 19:41 - 2013-08-22 06:45 - 00009889 _____ () C:\Windows\setupact.log
2015-01-14 19:27 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-01-14 19:27 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-01-14 19:25 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-13 21:28 - 2013-08-22 11:12 - 00000000 ____D () C:\Program Files\Windows Journal
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\system32\WCN
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\system32\slmgr
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Help
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\servicing
2015-01-12 21:28 - 2013-08-22 11:12 - 00000000 ____D () C:\Windows\ShellNew
2015-01-12 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-01-12 20:12 - 2013-02-17 10:48 - 00035600 _____ (Lenovo Corporation) C:\Windows\system32\Drivers\AcpiVpc.sys
2015-01-12 20:12 - 2012-02-21 05:48 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll
2015-01-12 20:05 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\System
2015-01-12 19:44 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\restore
2015-01-12 19:24 - 2013-08-22 06:44 - 00000000 ____D () C:\Windows\Setup
2015-01-12 19:19 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\rescache
2015-01-12 19:14 - 2013-08-22 07:37 - 00001720 _____ () C:\Windows\DtcInstall.log
2015-01-12 19:14 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\Recovery
2015-01-12 19:12 - 2013-08-22 07:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2015-01-05 16:08 - 2013-08-22 07:38 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-05 16:08 - 2013-08-22 07:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
 
Some content of TEMP:
====================
C:\Users\georgi\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\georgi\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\georgi\AppData\Local\Temp\ose00000.exe
C:\Users\georgi\AppData\Local\Temp\Quarantine.exe
C:\Users\georgi\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\georgi\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\georgi\AppData\Local\Temp\sqlite3.dll
C:\Users\georgi\AppData\Local\Temp\TUUUninstallHelper.exe
C:\Users\georgi\AppData\Local\Temp\utt966F.tmp.exe
C:\Users\georgi\AppData\Local\Temp\_is279A.exe
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-01-12 19:12
 
==================== End Of Log ============================

и нещата от последната стъпка

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-01-2015
Ran by georgi (administrator) on GEORGI on 16-01-2015 15:00:38
Running from D:\Download
Loaded Profiles: georgi (Available profiles: georgi)
Platform: Windows 8.1 N (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Malwarebytes Corporation) C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\EpmNews.exe
() C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\Bluetooth Headset Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [shadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [sysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-08-11] (IDT, Inc.)
HKLM\...\Run: [iAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [286056 2013-09-24] (Intel Corporation)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15813616 2015-01-12] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80880 2015-01-12] (Lenovo(beijing) Limited)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [552960 2013-05-14] (Vimicro)
HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\EpmNews.exe [2089056 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd)
HKLM-x32\...\Run: [EaseUS EPM Tray Agent] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe [255072 2014-11-18] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3848238859-4023326001-2967766439-1001 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
 
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
CHR StartupUrls: Default -> "https://www.google.com/","hxxp://istart.webssearches.com/?type=hppp&ts=1421125825&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681"
CHR DefaultSearchKeyword: Default -> webssearches
CHR DefaultSuggestURL: Default -> 
CHR Profile: C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Презентации) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-12]
CHR Extension: (Google Документи) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-12]
CHR Extension: (Google Диск) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-12]
CHR Extension: (Adguard AdBlocker) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2015-01-15]
CHR Extension: (YouTube) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-12]
CHR Extension: (Webmail Ad Blocker) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp [2015-01-15]
CHR Extension: (Google Търсене) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-12]
CHR Extension: (Електронни таблици от Google) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-12]
CHR Extension: (Adblock Super) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2015-01-15]
CHR Extension: (Google Wallet) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-12]
CHR Extension: (Gmail) - C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-12]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-04] (Broadcom Corporation.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [14696 2013-09-24] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 MBAMScheduler; C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Users\georgi\Desktop\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [338944 2013-08-11] (IDT, Inc.) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-30] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] ()
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] ()
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [74344 2013-07-03] (Intel Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-01-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-14] (Synaptics Incorporated)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1065472 2013-08-30] (Vimicro Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-30] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-01-16 14:56 - 2015-01-16 14:56 - 00019970 _____ () C:\Users\georgi\Desktop\HitmanPro_20150116_1455.log
2015-01-16 14:36 - 2015-01-16 15:00 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-01-15 20:59 - 2015-01-16 14:26 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-15 20:59 - 2015-01-15 21:02 - 00000787 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-01-15 20:59 - 2015-01-15 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-01-15 20:58 - 2015-01-15 21:02 - 00000000 ____D () C:\Users\georgi\Desktop\Malwarebytes Anti-Malware
2015-01-15 20:58 - 2015-01-15 20:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-15 20:58 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-01-15 20:58 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-01-15 20:58 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-01-15 20:26 - 2015-01-15 20:26 - 00001660 _____ () C:\Users\georgi\Desktop\JRT.txt
2015-01-15 20:24 - 2015-01-15 20:24 - 00000000 ____D () C:\Windows\ERUNT
2015-01-15 19:33 - 2015-01-15 19:49 - 00000000 ____D () C:\AdwCleaner
2015-01-15 15:44 - 2015-01-16 15:00 - 00000000 ____D () C:\FRST
2015-01-15 15:04 - 2015-01-15 16:57 - 00100864 ___SH () C:\Users\georgi\Desktop\Thumbs.db
2015-01-14 19:56 - 2015-01-14 19:56 - 00000358 _____ () C:\Users\georgi\Desktop\Safebridge - Client (1.5).appref-ms
2015-01-14 19:56 - 2015-01-14 19:56 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Safebridge GmbH
2015-01-14 19:55 - 2015-01-14 19:56 - 00000000 ____D () C:\Users\georgi\AppData\Local\Deployment
2015-01-14 19:55 - 2015-01-14 19:55 - 00000000 ____D () C:\Users\georgi\AppData\Local\Apps\2.0
2015-01-14 19:41 - 2015-01-14 19:41 - 00002990 _____ () C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2015-01-14 19:41 - 2015-01-14 19:41 - 00000000 ____D () C:\Program Files\Synaptics
2015-01-14 19:41 - 2013-08-14 15:01 - 00722160 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00527600 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2015-01-14 19:41 - 2013-08-14 15:01 - 00421616 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo19.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00400112 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00251632 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2015-01-14 19:41 - 2013-08-14 15:01 - 00169712 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCom.dll
2015-01-14 19:40 - 2015-01-14 19:41 - 00001356 _____ () C:\Windows\Synaptics.log
2015-01-14 19:40 - 2013-08-14 15:01 - 00034544 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2015-01-14 19:33 - 2015-01-14 19:33 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-01-14 19:32 - 2014-12-31 03:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-14 19:29 - 2015-01-14 19:29 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-01-14 19:29 - 2015-01-14 19:29 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-01-14 19:23 - 2015-01-14 19:26 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 19:23 - 2014-12-31 13:12 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-14 19:22 - 2015-01-14 19:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET
2015-01-14 14:51 - 2013-12-13 22:31 - 13949440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-01-14 14:51 - 2013-12-13 22:19 - 18576384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-01-14 14:50 - 2014-01-07 17:46 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-01-14 14:50 - 2014-01-07 17:41 - 01530712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-01-14 14:50 - 2014-01-07 17:41 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-01-14 14:50 - 2014-01-04 07:54 - 00138240 _____ () C:\Windows\system32\OEMLicense.dll
2015-01-14 14:50 - 2014-01-04 07:08 - 00103936 _____ () C:\Windows\SysWOW64\OEMLicense.dll
2015-01-14 14:50 - 2014-01-04 06:08 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2015-01-14 14:50 - 2014-01-04 05:53 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2015-01-14 14:50 - 2014-01-02 15:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-01-14 14:50 - 2014-01-02 15:48 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-01-14 14:50 - 2013-12-31 17:55 - 01720560 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-01-14 14:50 - 2013-12-31 16:56 - 01472048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-01-14 14:50 - 2013-12-31 15:57 - 01214976 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-01-14 14:50 - 2013-12-30 15:34 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2015-01-14 14:50 - 2013-12-30 15:33 - 00770560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-01-14 14:50 - 2013-12-30 15:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2015-01-14 14:50 - 2013-12-30 15:31 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-01-14 14:50 - 2013-12-30 15:31 - 00914944 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-01-14 14:50 - 2013-12-27 07:09 - 00419160 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-01-14 14:50 - 2013-12-27 00:57 - 00842752 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2015-01-14 14:50 - 2013-12-27 00:57 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2015-01-14 14:50 - 2013-12-27 00:23 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2015-01-14 14:50 - 2013-12-26 23:03 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2015-01-14 14:50 - 2013-12-26 23:03 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2015-01-14 14:50 - 2013-12-26 22:37 - 00588800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2015-01-14 14:50 - 2013-12-20 23:21 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2015-01-14 14:50 - 2013-12-16 23:21 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2015-01-14 14:50 - 2013-12-13 02:54 - 00131160 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2015-01-14 14:50 - 2013-12-12 22:36 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2015-01-14 14:50 - 2013-12-12 21:32 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2015-01-14 14:48 - 2013-12-10 23:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-01-14 14:47 - 2013-12-08 16:34 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-01-14 14:47 - 2013-12-08 16:04 - 00980480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-01-14 14:47 - 2013-11-27 04:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys
2015-01-14 14:47 - 2013-11-27 02:24 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-01-14 14:47 - 2013-11-27 01:46 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-01-14 14:47 - 2013-11-27 01:41 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-01-14 14:47 - 2013-11-27 01:17 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-01-14 14:47 - 2013-11-27 01:10 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2015-01-14 14:47 - 2013-11-27 00:58 - 01503232 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-01-14 14:47 - 2013-11-27 00:56 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2015-01-14 14:47 - 2013-11-27 00:20 - 04106240 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-01-14 14:47 - 2013-11-24 17:45 - 00142680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-01-14 14:47 - 2013-11-24 17:32 - 01119064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-01-14 14:47 - 2013-11-24 15:30 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-01-14 14:47 - 2013-11-24 15:28 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-01-14 14:47 - 2013-11-23 04:47 - 00032088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-01-14 14:47 - 2013-11-22 23:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll
2015-01-14 14:47 - 2013-11-22 23:13 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
2015-01-14 14:47 - 2013-11-22 23:08 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-01-14 14:47 - 2013-11-22 20:50 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-01-14 14:47 - 2013-11-22 19:19 - 02617344 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-01-14 14:47 - 2013-11-22 19:15 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-01-14 14:47 - 2013-11-20 22:58 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll
2015-01-14 14:47 - 2013-11-20 22:26 - 01415680 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-01-14 14:47 - 2013-11-15 06:08 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-01-14 14:47 - 2013-11-15 05:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-01-14 14:47 - 2013-10-30 16:29 - 00745336 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-01-14 14:47 - 2013-10-30 15:41 - 00552624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-01-14 14:44 - 2013-11-10 18:48 - 00039768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-01-14 14:44 - 2013-11-08 02:26 - 00358896 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-01-14 14:44 - 2013-11-07 20:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-01-14 14:44 - 2013-11-07 20:16 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-01-14 14:44 - 2013-11-07 20:15 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-01-14 14:44 - 2013-11-07 19:41 - 01302528 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-01-14 14:44 - 2013-11-07 19:14 - 00922624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-01-14 14:44 - 2013-11-05 06:19 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-01-14 14:44 - 2013-11-05 05:17 - 00565248 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-01-14 14:44 - 2013-11-04 05:07 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-01-14 14:44 - 2013-11-04 03:50 - 02143744 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-01-14 14:44 - 2013-11-04 02:32 - 02570240 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-01-14 14:44 - 2013-11-03 18:28 - 01816576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-01-14 14:44 - 2013-11-03 17:30 - 01765376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-01-14 14:44 - 2013-11-01 03:39 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-01-14 14:44 - 2013-10-31 22:08 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2015-01-14 14:44 - 2013-10-31 21:57 - 00544768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2015-01-14 14:44 - 2013-10-30 16:58 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-01-14 14:44 - 2013-10-30 16:42 - 07399256 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-14 14:44 - 2013-10-25 17:54 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys
2015-01-14 14:44 - 2013-10-24 01:31 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-01-14 14:44 - 2013-10-24 01:12 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-01-14 14:44 - 2013-10-17 03:21 - 02896896 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-01-14 14:44 - 2013-10-17 02:36 - 02266624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-01-14 14:44 - 2013-10-05 06:21 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-01-14 14:44 - 2013-10-05 06:21 - 00516496 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-01-14 14:44 - 2013-10-05 04:05 - 01765384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-01-14 14:44 - 2013-10-05 04:05 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-01-13 21:53 - 2014-05-07 23:14 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-01-13 21:53 - 2014-05-07 21:52 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-01-13 21:53 - 2014-05-07 20:57 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-01-13 21:53 - 2014-05-07 20:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-01-13 21:53 - 2014-03-10 02:35 - 02008408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-01-13 21:53 - 2014-03-10 02:35 - 00377176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-01-13 21:53 - 2014-03-06 01:19 - 01287576 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-01-13 21:53 - 2014-03-06 01:02 - 01109424 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-01-13 21:53 - 2014-03-05 22:17 - 00835584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-01-13 21:53 - 2014-03-05 22:10 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-01-13 21:53 - 2014-02-28 20:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-01-13 21:53 - 2014-02-28 20:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-01-13 21:53 - 2014-02-28 19:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-01-13 21:53 - 2014-02-28 19:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-01-13 21:53 - 2014-02-28 19:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-01-13 21:53 - 2014-02-28 19:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-01-13 21:53 - 2014-02-28 19:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-01-13 21:53 - 2014-02-28 19:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-01-13 21:53 - 2014-02-28 19:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-01-13 21:53 - 2014-02-28 18:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-01-13 21:53 - 2014-02-28 18:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-01-13 21:53 - 2014-02-28 18:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-01-13 21:53 - 2014-02-28 18:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-01-13 21:53 - 2014-02-28 18:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-01-13 21:53 - 2014-02-28 18:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-01-13 21:53 - 2014-02-06 03:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-01-13 21:53 - 2014-02-06 03:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-01-13 21:53 - 2014-02-06 03:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-01-13 21:53 - 2014-02-06 02:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-01-13 21:53 - 2014-02-06 02:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-01-13 21:53 - 2014-02-06 02:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-01-13 21:53 - 2014-02-06 02:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-01-13 21:53 - 2014-02-06 02:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-01-13 21:53 - 2014-02-06 02:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-01-13 21:53 - 2014-02-06 02:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-01-13 21:53 - 2014-02-06 02:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-01-13 21:53 - 2014-02-06 01:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-01-13 21:53 - 2014-02-06 01:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-01-13 21:53 - 2014-02-06 01:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-01-13 21:53 - 2014-02-06 01:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-01-13 21:53 - 2014-02-06 01:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-01-13 21:53 - 2014-02-06 01:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-01-13 21:53 - 2014-02-06 01:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-01-13 21:53 - 2014-01-31 08:15 - 00311640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-01-13 21:53 - 2014-01-31 01:06 - 00716288 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-01-13 21:53 - 2014-01-29 00:53 - 00458616 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-01-13 21:53 - 2014-01-29 00:53 - 00407024 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-01-13 21:53 - 2014-01-29 00:49 - 01928144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2015-01-13 21:53 - 2014-01-29 00:47 - 02543960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-01-13 21:53 - 2014-01-28 23:44 - 01371824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2015-01-13 21:53 - 2014-01-28 23:44 - 00408480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-01-13 21:53 - 2014-01-28 23:44 - 00369280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-01-13 21:53 - 2014-01-28 22:41 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-01-13 21:53 - 2014-01-28 16:36 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-01-13 21:53 - 2014-01-27 11:07 - 04175360 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-01-13 21:53 - 2014-01-27 11:06 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-01-13 21:53 - 2014-01-27 11:04 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2015-01-13 21:53 - 2014-01-27 10:23 - 02873344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-01-13 21:53 - 2014-01-27 10:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-01-13 21:53 - 2014-01-27 10:20 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2015-01-13 21:53 - 2014-01-27 10:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-01-13 21:53 - 2014-01-27 09:43 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-01-13 21:53 - 2014-01-27 09:18 - 01486848 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-01-13 21:53 - 2014-01-27 09:00 - 01238016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-01-13 21:53 - 2014-01-27 07:58 - 05770752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-01-13 21:53 - 2014-01-27 07:50 - 06640640 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-01-13 21:53 - 2014-01-27 03:45 - 00386722 _____ () C:\Windows\system32\ApnDatabase.xml
2015-01-13 21:53 - 2014-01-06 21:00 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-01-13 21:53 - 2014-01-06 20:30 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-01-13 21:53 - 2014-01-04 06:30 - 13209088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-01-13 21:53 - 2014-01-04 05:40 - 07416832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-01-13 21:53 - 2014-01-04 05:28 - 04961792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-01-13 21:53 - 2013-12-21 06:51 - 06353960 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-01-13 21:53 - 2013-12-21 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-01-13 21:53 - 2013-12-20 02:18 - 01643584 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-01-13 21:53 - 2013-12-20 02:18 - 01507704 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-01-13 21:53 - 2013-12-08 16:27 - 02152448 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-01-13 21:53 - 2013-12-08 16:19 - 00570880 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-01-13 21:53 - 2013-12-08 15:55 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-01-13 21:53 - 2013-12-08 15:54 - 01317376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-01-13 21:53 - 2013-11-27 07:36 - 03395920 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2015-01-13 21:53 - 2013-11-27 03:41 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-01-13 21:53 - 2013-11-27 00:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-01-13 21:53 - 2013-11-27 00:40 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-01-13 21:53 - 2013-11-27 00:17 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-01-13 21:53 - 2013-11-27 00:12 - 00848384 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-01-13 21:53 - 2013-11-22 20:34 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-01-13 21:53 - 2013-11-22 20:13 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-01-13 21:53 - 2013-11-20 22:42 - 04604416 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-01-13 21:53 - 2013-11-20 21:44 - 03936256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-01-13 21:53 - 2013-10-30 16:33 - 01476184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-01-13 21:53 - 2013-10-30 16:33 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-01-13 21:53 - 2013-10-30 16:29 - 00236888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-01-13 21:53 - 2013-10-30 16:29 - 00124760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-01-13 21:53 - 2013-10-30 16:28 - 00035856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-01-13 21:53 - 2013-10-19 00:53 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-01-13 21:53 - 2013-10-18 23:14 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-01-13 21:52 - 2014-10-30 14:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-01-13 21:52 - 2014-10-30 14:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-01-13 21:52 - 2014-04-19 03:15 - 21186352 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-01-13 21:52 - 2014-04-18 22:49 - 18644072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-01-13 21:52 - 2014-02-10 19:04 - 04189184 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-01-13 21:52 - 2014-02-10 18:43 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-01-13 21:52 - 2014-02-10 18:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-01-13 21:52 - 2014-01-06 23:03 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2015-01-13 21:52 - 2014-01-06 21:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2015-01-13 21:52 - 2014-01-04 12:50 - 01462216 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-01-13 21:52 - 2014-01-04 11:22 - 01202888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-01-13 21:52 - 2014-01-04 06:23 - 11702272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-01-13 21:52 - 2014-01-04 06:03 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-01-13 21:52 - 2014-01-04 05:47 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-01-13 21:52 - 2014-01-04 05:42 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-01-13 21:52 - 2014-01-04 05:36 - 00830976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-01-13 21:52 - 2013-12-20 18:10 - 00009701 _____ () C:\Windows\SysWOW64\connectedsearch-results.searchconnector-ms
2015-01-13 21:52 - 2013-12-20 18:10 - 00009701 _____ () C:\Windows\system32\connectedsearch-results.searchconnector-ms
2015-01-13 21:52 - 2013-12-08 18:57 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-01-13 21:52 - 2013-12-08 17:51 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-01-13 21:52 - 2013-12-08 16:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-01-13 21:52 - 2013-11-08 22:34 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-01-13 21:52 - 2013-11-08 22:34 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2015-01-13 21:52 - 2013-11-08 21:52 - 00240128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2015-01-13 21:52 - 2013-10-15 00:54 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-01-13 21:52 - 2013-10-15 00:03 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\SysWOW64\Drivers\bg-BG
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\system32\Drivers\bg-BG
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\system32\bg
2015-01-13 21:28 - 2015-01-13 21:28 - 00000000 ____D () C:\Windows\bg-BG
2015-01-13 20:40 - 2015-01-13 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-01-13 20:40 - 2015-01-13 20:40 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2015-01-13 20:19 - 2015-01-13 20:19 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\WinRAR
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-01-12 21:28 - 2015-01-12 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Windows\PCHEALTH
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-01-12 21:27 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-01-12 21:26 - 2015-01-12 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-01-12 21:25 - 2015-01-14 19:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-01-12 21:25 - 2015-01-12 21:27 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 __RHD () C:\MSOCache
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 ____D () C:\Users\georgi\AppData\Local\Microsoft Help
2015-01-12 21:25 - 2015-01-12 21:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-12 21:17 - 2015-01-12 21:17 - 00007532 _____ () C:\Users\georgi\Downloads\Microsoft Office Professional Plus 2010 with Service Pack 1 VL EN x64.torrent
2015-01-12 21:11 - 2015-01-13 21:46 - 00000000 ____D () C:\The KMPlayer
2015-01-12 21:11 - 2015-01-12 21:11 - 00000642 _____ () C:\Users\georgi\Desktop\KMPlayer.lnk
2015-01-12 21:11 - 2015-01-12 21:11 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-01-12 21:08 - 2015-01-12 21:08 - 35867784 _____ (PandoraTV) C:\Users\georgi\Downloads\3.9.1.132_20150106114303.exe
2015-01-12 21:08 - 2015-01-12 21:08 - 32830712 _____ (PandoraTV) C:\Users\georgi\Downloads\3.9.0.126_20140723022507.exe
2015-01-12 21:03 - 2015-01-12 21:03 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-01-12 20:53 - 2015-01-12 20:54 - 00001301 ____H () C:\Windows\EPMBatch.ept
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\TuneUp Software
2015-01-12 20:43 - 2015-01-12 20:43 - 00000000 ____D () C:\Users\georgi\AppData\Local\TuneUp Software
2015-01-12 20:42 - 2015-01-12 20:43 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-01-12 20:42 - 2015-01-12 20:42 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2015-01-12 20:41 - 2015-01-12 20:41 - 00001408 _____ () C:\Users\Public\Desktop\EaseUS Partition Master 10.2.lnk
2015-01-12 20:41 - 2015-01-12 20:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 10.2
2015-01-12 20:41 - 2015-01-12 20:41 - 00000000 ____D () C:\Program Files (x86)\EaseUS
2015-01-12 20:41 - 2014-11-18 14:46 - 03384928 _____ () C:\Windows\system32\BootMan.exe
2015-01-12 20:41 - 2014-11-18 14:46 - 02502240 _____ () C:\Windows\SysWOW64\BootMan.exe
2015-01-12 20:41 - 2014-11-18 14:46 - 00021088 _____ () C:\Windows\SysWOW64\EuEpmGdi.dll
2015-01-12 20:41 - 2014-11-18 14:46 - 00017504 _____ () C:\Windows\system32\EuEpmGdi.dll
2015-01-12 20:41 - 2014-11-18 14:39 - 00018528 _____ () C:\Windows\system32\epmntdrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00014944 _____ () C:\Windows\SysWOW64\epmntdrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00010848 _____ () C:\Windows\system32\EuGdiDrv.sys
2015-01-12 20:41 - 2014-11-18 14:39 - 00010208 _____ () C:\Windows\SysWOW64\EuGdiDrv.sys
2015-01-12 20:41 - 2014-11-18 14:38 - 00101984 _____ () C:\Windows\system32\setupempdrvx64.exe
2015-01-12 20:41 - 2014-11-18 14:38 - 00088160 _____ () C:\Windows\SysWOW64\setupempdrv03.exe
2015-01-12 20:39 - 2015-01-13 20:40 - 00001947 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-01-12 20:39 - 2015-01-13 20:40 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-01-12 20:39 - 2015-01-12 20:39 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-01-12 20:39 - 2015-01-12 20:39 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2015-01-12 20:39 - 2015-01-12 20:39 - 00000000 ____D () C:\ProgramData\McAfee
2015-01-12 20:39 - 2015-01-12 20:39 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-01-12 20:38 - 2015-01-14 14:52 - 00000000 ____D () C:\Users\georgi\AppData\Local\Adobe
2015-01-12 20:38 - 2015-01-12 21:01 - 00000000 ____D () C:\ProgramData\Adobe
2015-01-12 20:35 - 2015-01-12 20:35 - 01937984 _____ () C:\Users\georgi\Downloads\winrar-x64-521b1 (1).exe
2015-01-12 20:35 - 2015-01-12 20:35 - 00001009 _____ () C:\Users\georgi\Desktop\WinRAR.lnk
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-12 20:35 - 2015-01-12 20:35 - 00000000 ____D () C:\Program Files\WinRAR
2015-01-12 20:34 - 2015-01-12 20:34 - 01937984 _____ () C:\Users\georgi\Downloads\winrar-x64-521b1.exe
2015-01-12 20:24 - 2015-01-12 20:40 - 30603720 _____ (EaseUS ) C:\Users\georgi\Downloads\epm.exe
2015-01-12 20:20 - 2015-01-15 19:19 - 00002277 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-12 20:20 - 2015-01-12 20:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-01-12 20:19 - 2015-01-16 14:26 - 00001008 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-12 20:19 - 2015-01-16 14:24 - 00001012 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-12 20:19 - 2015-01-12 20:20 - 00000000 ____D () C:\Users\georgi\AppData\Local\Google
2015-01-12 20:19 - 2015-01-12 20:20 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-12 20:19 - 2015-01-12 20:19 - 00003984 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-01-12 20:19 - 2015-01-12 20:19 - 00003748 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-12 20:12 - 2015-01-14 19:41 - 00013746 _____ () C:\Windows\DPINST.LOG
2015-01-12 20:12 - 2015-01-12 20:12 - 00002106 _____ () C:\Users\Public\Desktop\OneKey Recovery.lnk
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Energy Manager
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2015-01-12 20:12 - 2015-01-12 20:12 - 00000000 ____D () C:\Program Files\DIFX
2015-01-12 20:11 - 2015-01-12 20:12 - 00000000 ____D () C:\ProgramData\OneKey Recovery
2015-01-12 20:11 - 2015-01-12 20:11 - 00000000 ____D () C:\ProgramData\Temp
2015-01-12 20:11 - 2012-06-13 17:10 - 00102376 _____ ("CyberLink) C:\Windows\system32\Drivers\wsvd.sys
2015-01-12 20:09 - 2015-01-12 20:09 - 00836954 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-12 20:09 - 2015-01-12 20:09 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Intel Corporation
2015-01-12 20:09 - 2013-07-03 11:25 - 00074344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelPcc.sys
2015-01-12 20:08 - 2015-01-12 20:08 - 00000000 ____D () C:\Users\georgi\Intel
2015-01-12 20:07 - 2015-01-12 20:09 - 00000000 ____D () C:\ProgramData\Intel
2015-01-12 20:07 - 2013-09-04 07:53 - 00016344 ____R (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2015-01-12 20:06 - 2015-01-12 20:06 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2015-01-12 20:06 - 2013-09-04 07:53 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2015-01-12 20:06 - 2013-09-04 07:53 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2015-01-12 20:05 - 2015-01-12 20:05 - 00000000 ____D () C:\Program Files (x86)\USB Camera
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Users\georgi\Documents\Bluetooth Exchange Folder
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Users\georgi\AppData\Local\Broadcom
2015-01-12 20:04 - 2015-01-12 20:04 - 00000000 ____D () C:\Program Files (x86)\Vimicro
2015-01-12 20:04 - 2013-08-30 11:10 - 01065472 _____ (Vimicro Corporation) C:\Windows\system32\Drivers\vm331avs.sys
2015-01-12 20:04 - 2013-08-30 10:49 - 00001677 _____ () C:\Windows\vm331Rmv.ini
2015-01-12 20:04 - 2013-08-30 10:49 - 00001677 _____ () C:\Windows\SysWOW64\vm331Rmv.ini
2015-01-12 20:04 - 2013-05-21 16:53 - 00663552 _____ () C:\Windows\SysWOW64\vmprp331.ax
2015-01-12 20:04 - 2013-05-21 16:52 - 01072640 _____ () C:\Windows\system32\331prx64.ax
2015-01-12 20:04 - 2013-04-15 16:24 - 00358912 _____ (Vimicro Corporation) C:\Windows\system32\VmCoinst.dll
2015-01-12 20:04 - 2010-07-01 08:38 - 00000356 _____ () C:\Windows\system\vm331avs.rsf
2015-01-12 20:03 - 2013-07-12 07:41 - 00228568 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys
2015-01-12 20:03 - 2013-07-12 07:41 - 00186584 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys
2015-01-12 20:03 - 2013-07-12 07:41 - 00038616 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys
2015-01-12 20:03 - 2012-07-27 10:18 - 00040248 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys
2015-01-12 20:02 - 2015-01-12 20:11 - 00000000 ____D () C:\Program Files\Lenovo
2015-01-12 20:01 - 2015-01-12 20:12 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2015-01-12 20:01 - 2015-01-12 20:01 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\InstallShield
2015-01-12 20:01 - 2013-08-07 13:37 - 07474864 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS
2015-01-12 20:01 - 2013-08-07 12:17 - 04011520 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2015-01-12 20:01 - 2013-08-07 12:16 - 03777024 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\ProgramData\AmUStor
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files\Dolby Digital Plus
2015-01-12 20:00 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files (x86)\AmIcoSingLun
2015-01-12 19:59 - 2013-08-11 22:54 - 06101504 _____ (IDT, Inc.) C:\Windows\system32\stlang64.dll
2015-01-12 19:59 - 2013-08-11 22:54 - 01897984 _____ (IDT, Inc.) C:\Windows\system32\IDTNC64.cpl
2015-01-12 19:59 - 2013-08-11 22:54 - 00338944 _____ (IDT, Inc.) C:\Windows\system32\stacsv64.exe
2015-01-12 19:59 - 2013-08-11 22:54 - 00088576 _____ (IDT, Inc.) C:\Windows\system32\IDTPMA64.exe
2015-01-12 19:58 - 2013-08-11 22:54 - 02213376 _____ (IDT, Inc.) C:\Windows\system32\stapo64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00697856 ____N (IDT, Inc.) C:\Windows\system32\stapi64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00551936 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys
2015-01-12 19:58 - 2013-08-11 22:54 - 00499200 _____ (IDT, Inc.) C:\Windows\system32\stcplx64.dll
2015-01-12 19:58 - 2013-08-11 22:54 - 00256000 _____ (IDT, Inc.) C:\Windows\system32\st646490.dll
2015-01-12 19:58 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-01-12 19:58 - 2013-08-05 13:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-01-12 19:57 - 2015-01-12 20:00 - 00000000 ____D () C:\Program Files\IDT
2015-01-12 19:57 - 2015-01-12 19:57 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e
2015-01-12 19:57 - 2013-08-05 11:50 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2015-01-12 19:57 - 2013-07-18 13:55 - 00130248 _____ (Qualcomm Atheros Co., Ltd.) C:\Windows\system32\Drivers\L1C63x64.sys
2015-01-12 19:54 - 2015-01-12 20:27 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-12 19:53 - 2015-01-12 19:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton PartitionMagic 8.0
2015-01-12 19:49 - 2015-01-12 19:49 - 00000000 ____D () C:\Users\georgi\AppData\Local\Intel_Corporation
2015-01-12 19:46 - 2015-01-16 14:28 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00002713 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\Users\georgi\AppData\Local\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\ProgramData\Skype
2015-01-12 19:46 - 2015-01-12 19:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-12 19:45 - 2015-01-12 19:45 - 00001367 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-01-12 19:44 - 2015-01-15 19:21 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2015-01-12 19:44 - 2015-01-12 19:45 - 00000000 ____D () C:\Users\georgi\AppData\Local\NVIDIA
2015-01-12 19:44 - 2015-01-12 19:44 - 00000000 ____D () C:\Users\georgi\AppData\Local\NVIDIA Corporation
2015-01-12 19:44 - 2015-01-12 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-01-12 19:44 - 2014-07-25 06:01 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-01-12 19:44 - 2014-07-25 06:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-01-12 19:44 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-01-12 19:43 - 2015-01-12 19:44 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-01-12 19:42 - 2015-01-12 19:42 - 00000896 _____ () C:\Users\georgi\Desktop\µTorrent.lnk
2015-01-12 19:42 - 2015-01-12 19:42 - 00000876 _____ () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-01-12 19:42 - 2014-07-02 12:48 - 31512520 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 24196896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 22994208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 17555104 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 16122344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 15294296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 14498552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 13922752 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 13835208 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 12866008 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-01-12 19:42 - 2014-07-02 12:48 - 11283344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 11222048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 04247000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 03989960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 02814656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00944928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00907096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00903624 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00869152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-01-12 19:42 - 2014-07-02 12:48 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-01-12 19:42 - 2014-03-31 08:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-01-12 19:42 - 2014-03-31 08:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-01-12 19:42 - 2014-03-31 08:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-01-12 19:41 - 2015-01-15 19:49 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\uTorrent
2015-01-12 19:41 - 2015-01-12 19:41 - 00000000 ____D () C:\NVIDIA
2015-01-12 19:38 - 2015-01-12 19:38 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Macromedia
2015-01-12 19:33 - 2015-01-12 20:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-01-12 19:33 - 2015-01-12 20:09 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-12 19:33 - 2015-01-12 19:33 - 00000732 _____ () C:\Users\Public\Desktop\Intel® HD Graphics Control Panel.lnk
2015-01-12 19:32 - 2015-01-12 20:09 - 00000000 ____D () C:\Program Files\Intel
2015-01-12 19:32 - 2013-10-05 14:32 - 07587824 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 02474856 _____ (Intel Corporation) C:\Windows\system32\SETCE2D.tmp
2015-01-12 19:32 - 2013-10-05 14:32 - 00844784 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00771056 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00769520 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00754672 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00396272 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00393712 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00391152 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2015-01-12 19:32 - 2013-10-05 14:32 - 00153072 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2015-01-12 19:32 - 2013-10-02 01:25 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3316.dll
2015-01-12 19:32 - 2013-10-02 01:20 - 00002940 _____ () C:\Windows\system32\iglhxs64.vp
2015-01-12 19:32 - 2013-10-02 01:17 - 07850496 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll
2015-01-12 19:32 - 2013-10-02 01:17 - 00412160 _____ () C:\Windows\system32\igdmd64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 12130304 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 04185600 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2015-01-12 19:32 - 2013-10-02 01:16 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2015-01-12 19:32 - 2013-10-02 01:16 - 00220672 _____ () C:\Windows\system32\igdde64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 00160256 _____ () C:\Windows\system32\igdail64.dll
2015-01-12 19:32 - 2013-10-02 01:16 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 04067328 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 02384896 _____ () C:\Windows\system32\GfxRes.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00623616 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00517120 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00513024 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2015-01-12 19:32 - 2013-10-02 01:15 - 00345600 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2015-01-12 19:32 - 2013-10-02 01:15 - 00265030 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00251250 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00233293 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00223744 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00199323 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00196855 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00194048 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00190937 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00179235 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00179170 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176818 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176555 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00176526 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00175165 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00174165 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173876 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173626 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00173401 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00172630 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171980 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171631 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171464 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00171207 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00170928 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00170073 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00166591 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00165303 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00164653 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00159945 _____ () C:\Windows\system32\Gfxres.en-US.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00153231 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00151479 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2015-01-12 19:32 - 2013-10-02 01:15 - 00029184 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2015-01-12 19:32 - 2013-10-02 01:15 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 25986048 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 11417600 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 06225408 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 03292672 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00492032 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00343040 _____ () C:\Windows\SysWOW64\igdmd32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00304640 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00180736 _____ () C:\Windows\SysWOW64\igdde32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll
2015-01-12 19:32 - 2013-10-02 01:07 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 20946944 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 02974208 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2015-01-12 19:32 - 2013-10-02 01:01 - 00253440 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 04010144 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAAC64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 01423520 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSecureSourceFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00750752 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiWinNextAgent64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00632480 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiAudioFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00598688 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMux64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00344736 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiSilenceFilter64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00209056 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiUtils64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00176288 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiDDEAgent64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00121504 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiMCUMD64.dll
2015-01-12 19:32 - 2013-10-02 00:54 - 00094368 _____ (Intel Corporation) C:\Windows\system32\IntelWiDiLogServer64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 02064896 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01814016 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00158720 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00149504 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00133120 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00128000 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2015-01-12 19:32 - 2013-09-30 22:12 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2015-01-12 19:31 - 2015-01-15 21:14 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3848238859-4023326001-2967766439-1001
2015-01-12 19:30 - 2015-01-12 20:17 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-01-12 19:30 - 2015-01-12 19:45 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-01-12 19:30 - 2015-01-12 19:44 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-01-12 19:30 - 2014-10-03 17:37 - 00082432 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-01-12 19:30 - 2014-10-03 17:37 - 00074240 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 06783776 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 03522392 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 02559960 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 01084704 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00935368 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-01-12 19:30 - 2014-07-02 10:55 - 00618440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00386520 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-01-12 19:30 - 2014-07-02 10:55 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-01-12 19:30 - 2014-07-02 02:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2015-01-12 19:29 - 2013-10-02 01:25 - 00449528 _____ (Intel® Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2015-01-12 19:28 - 2015-01-16 14:47 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{CB8B9234-3F65-4E42-BF87-1578FF027AF2}
2015-01-12 19:28 - 2015-01-12 19:28 - 00000424 _____ () C:\Users\georgi\Desktop\This PC - Shortcut.lnk
2015-01-12 19:28 - 2015-01-12 19:28 - 00000000 ____D () C:\Intel
2015-01-12 19:26 - 2015-01-16 14:27 - 00000000 __RDO () C:\Users\georgi\SkyDrive
2015-01-12 19:24 - 2015-01-15 19:19 - 00001446 _____ () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-12 19:24 - 2015-01-14 14:52 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Adobe
2015-01-12 19:24 - 2015-01-12 19:25 - 00000000 ____D () C:\Users\georgi\AppData\Local\Packages
2015-01-12 19:24 - 2015-01-12 19:24 - 00003300 _____ () C:\Windows\System32\Tasks\KMS Server Daily Activate
2015-01-12 19:24 - 2015-01-12 19:24 - 00003114 _____ () C:\Windows\System32\Tasks\KMS Server OnLogon Activate
2015-01-12 19:24 - 2015-01-12 19:24 - 00000000 ____D () C:\Users\georgi\AppData\Local\VirtualStore
2015-01-12 19:24 - 2013-08-22 04:40 - 00040664 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys
2015-01-12 19:23 - 2015-01-15 19:49 - 00000000 ____D () C:\Users\georgi
2015-01-12 19:23 - 2015-01-12 19:23 - 00000020 ___SH () C:\Users\georgi\ntuser.ini
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-01-12 19:23 - 2013-08-22 07:36 - 00000000 ____D () C:\Users\georgi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-12 19:22 - 2015-01-16 14:33 - 00820548 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-12 19:19 - 2015-01-16 14:39 - 01969360 _____ () C:\Windows\WindowsUpdate.log
2015-01-12 19:15 - 2013-08-21 21:17 - 02407936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-01-12 19:12 - 2015-01-16 14:26 - 00033984 _____ () C:\Windows\PFRO.log
2015-01-12 19:12 - 2015-01-12 19:24 - 00000000 ____D () C:\Windows\Panther
2015-01-12 18:57 - 2015-01-12 18:57 - 00000000 ____D () C:\Windows.old
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-01-16 15:00 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-16 14:26 - 2013-08-22 06:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-16 14:25 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Web
2015-01-16 14:25 - 2013-08-22 05:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-15 19:53 - 2013-08-22 06:44 - 00473392 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ___RD () C:\Windows\ToastData
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\WinStore
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\SysWOW64\bg-BG
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\bg-BG
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\FileManager
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Camera
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-01-15 19:52 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-01-15 19:52 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-01-15 19:52 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-01-15 15:24 - 2013-08-22 07:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-01-15 15:16 - 2013-08-22 05:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-01-14 19:45 - 2013-08-22 05:25 - 00000167 _____ () C:\Windows\win.ini
2015-01-14 19:41 - 2013-08-22 06:45 - 00009889 _____ () C:\Windows\setupact.log
2015-01-14 19:27 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-01-14 19:27 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-01-14 19:25 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-13 21:28 - 2013-08-22 11:12 - 00000000 ____D () C:\Program Files\Windows Journal
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\system32\WCN
2015-01-13 21:28 - 2013-08-22 11:10 - 00000000 ____D () C:\Windows\system32\slmgr
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\Help
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-01-13 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-01-13 21:28 - 2013-08-22 05:36 - 00000000 ____D () C:\Windows\servicing
2015-01-12 21:28 - 2013-08-22 11:12 - 00000000 ____D () C:\Windows\ShellNew
2015-01-12 21:28 - 2013-08-22 07:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-01-12 20:12 - 2013-02-17 10:48 - 00035600 _____ (Lenovo Corporation) C:\Windows\system32\Drivers\AcpiVpc.sys
2015-01-12 20:12 - 2012-02-21 05:48 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll
2015-01-12 20:05 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\System
2015-01-12 19:44 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\restore
2015-01-12 19:24 - 2013-08-22 06:44 - 00000000 ____D () C:\Windows\Setup
2015-01-12 19:19 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\rescache
2015-01-12 19:14 - 2013-08-22 07:37 - 00001720 _____ () C:\Windows\DtcInstall.log
2015-01-12 19:14 - 2013-08-22 07:36 - 00000000 ____D () C:\Windows\system32\Recovery
2015-01-12 19:12 - 2013-08-22 07:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2015-01-05 16:08 - 2013-08-22 07:38 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-05 16:08 - 2013-08-22 07:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
 
Some content of TEMP:
====================
C:\Users\georgi\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\georgi\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\georgi\AppData\Local\Temp\ose00000.exe
C:\Users\georgi\AppData\Local\Temp\Quarantine.exe
C:\Users\georgi\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\georgi\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\georgi\AppData\Local\Temp\sqlite3.dll
C:\Users\georgi\AppData\Local\Temp\TUUUninstallHelper.exe
C:\Users\georgi\AppData\Local\Temp\utt966F.tmp.exe
C:\Users\georgi\AppData\Local\Temp\_is279A.exe
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-01-12 19:12
 
==================== End Of Log ============================

Addition2.txt

Почти сме готови. :)

 

Деинсталирайте от Control Panel-a ненужната програма:

 

McAfee Security Scan Plus

 

Явно наскоро сте преинсталирали Windows. Ако искате да се отървете от дублиращата се папка

 

C:\Windows.old

 

тогава използвайте вградения инструмент на Windows:

 

Изтриване на файлове чрез приложението за почистване на диска
 

 

 

Финалните стъпки са следните:

 

 

СТЪПКА 1

 

Изтеглете edit-text.giffixlist.txt и го запазете в папката от която стартирахте FRST.exe.
Стартирайте FRST.exe и натиснете бутона Fix веднъж!
След като приключи, ако ви поиска рестарт - съгласете се. След рестарта публикувайте лог файла - fixlog.txt, който ще се създаде след работата на програмата.
 
Внимание: Скрипта е създаден за текущата система. Да не се ползва за други системи с подобни проблеми!

 

 

 

СТЪПКА 2 (това е една бавна и мъчителна стъпка, но няма начин...съветвам ви да я изпълните през нощта за да не чакате...).

 

  • Моля изтеглете и стартирайте exe файла от линка отдолу:
    ESET OnlineScan
  • Сложете отметка пред esetAcceptTerms.png
  • Натиснете бутона esetStart.png и изчакайте компонентите да се инсталират.
  • Сложете отметка пред: Enable detection of potentially unwanted applications
  • Сеха натиснете линка с името Advanced Settings и се уверете, че няма отметка пред Remove found threats.
  • Сложете следните други отметки:
    • Scan archives
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
    • Click on the Change button and select only Operating memory and drive C:\

fhSji42.png

 

  • Натиснете бутона esetStart.png.
  • Програмата ще започне да тегли и инсталира ъпдейти и след това ще започне да проверява вашата система.Бъдете търпеливи, защото проверката е доста бавно и може да отнеме повече време (за предпочтане е да я направите, когато имате време и не сте пред компютъра, например през нощта докато спите).
  • След като сканирането приключи натиснете бутона esetListThreats.png
  • Сега натиснете линка esetExport.pngи запазете файла с име по ваш избор като например ESETScan.txt.
  • Натиснете бутона esetBack.png.
  • След това натиснете бутона esetFinish.png
  • Публикувайте лог файла в следващия си коментар.

 

 

СТЪПКА 3

 

 

Както и да видим за стар и уязвим софтуер:

 

 

Изтеглете Security Check от screen317 от този линк или и го запаметете на вашия десктоп.
Кликнете два пъти върху SecurityCheck.exe и следвайте инструкциите.
Накрая, автоматично ще се отвори текстов документ, наречен checkup.txt, моля прикачете го в следващия ви коментар в тази тема.

 

 

Това е...на финалната права сме! :)

Поздрави!

  • Автор

ето и от стъпка едно логфайла- Fixlog

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-01-2015
Ran by georgi at 2015-01-16 21:59:59 Run:1
Running from D:\Download
Loaded Profiles: georgi (Available profiles: georgi)
Boot Mode: Normal
==============================================
 
Content of fixlist:
*****************
start
CloseProcesses:
C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE
Reg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}\" /f
Reg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}\" /f
CHR HomePage: Default -> hxxp://istart.webssearches.com/?type=hp&ts=1421125776&from=kmp&uid=ST1000LM024XHN-M101MBB_S30YJ9CF630681
CHR StartupUrls: Default -> "http://istart.websse...q={searchTerms}
emptytemp:
end
*****************
 
Processes closed successfully.
C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE => Moved successfully.
 
========= reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}\" /f =========
 
Permanently delete the registry key HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}" /f (Yes/No)? ERROR: The system was unable to find the specified registry key or value.
 
 
========= End of Reg: =========
 
 
========= reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}\" /f =========
 
Permanently delete the registry key HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}" /f (Yes/No)? ERROR: The system was unable to find the specified registry key or value.
 
 
========= End of Reg: =========
 
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
Chrome DefaultSearchKeyword deleted successfully.
Chrome DefaultSearchURL deleted successfully.
EmptyTemp: => Removed 745.7 MB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog 22:00:07 ====
 
 
ето и от стъпка 2 която чаках цяла нощ :)
 
C:\AdwCleaner\Quarantine\C\Users\georgi\AppData\Roaming\OpenCandy\B88A14A9AECD4B0B831B598D7D7FC1F3\setup201501.exe.vir a variant of Win32/Toolbar.CrossRider.BM potentially unwanted application
C:\FRST\Quarantine\C\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\WYLD5DA8\OpenCandy_20141021103858_0175[1].exe a variant of Win32/OpenCandy.C potentially unsafe application
C:\Users\georgi\Downloads\3.9.0.126_20140723022507.exe a variant of Win32/OpenCandy.C potentially unsafe application
C:\Users\georgi\Downloads\epm.exe a variant of Win32/OpenCandy.C potentially unsafe application
 
 
 
 

checkup.txt

Почти сме готови:

 

Моля, изтеглете ZOEK (by Smeenk) и да го запишете на вашия работен плот
Временно деактивирайте вашата антивирусна и антишпионска защита - инструкции тук

  • Щракнете с десния бутон върху тази икона  51a612a8b27e2-Zoek.pngи изберете RunAsAdmin.jpg Run as Administrator, за да стартирате инструмента.
  • Изчакайте търпеливо, докато  се появи  главната конзола (може да отнеме минута или две).

52b6de58f1952-Zoek_Startpagina_5.0.0.0.P

  • В главния прозорец, моля поставете в следния скрипт:

 

createsrpoint;
[-HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}];r64
[-HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}];r
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}];r
C:\Users\georgi\Downloads\3.9.0.126_20140723022507.exe;f
C:\Users\georgi\Downloads\epm.exe;f
emptyclsid;
emptyalltemp;
autoclean;


  • Уверете се, че  опцията Scan All Users е маркирана.
  • Натиснете Run Script и изчакайте. Сканирането може да отнеме няколко минути.
  • Когато сканирането приключи, ще се отвори лог файл с име zoek-results.
  • Ако е необходимо рестартиране, той ще се отвори след това.
  • Копирайте съдържанието му в следващия си отговор.
  • Автор
Zoek.exe v5.0.0.0 Updated 15-01-2015
Tool run by georgi on Sat 01/17/2015 at 15:36:31.45.
Microsoft Windows 8.1 N 6.3.9600  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\georgi\Desktop\zoek.exe [scan all users] [script inserted] 
 
==== System Restore Info ======================
 
1/17/2015 3:38:10 PM Zoek.exe System Restore Point Created Succesfully.
 
==== Empty Folders Check ======================
 
C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\Users\georgi\AppData\Local\VirtualStore deleted successfully
 
==== Deleting CLSID Registry Keys ======================
 
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2016312B-C66F-4EF9-B7F3-DBF7DF12DD23} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36CFB7F2-7148-4691-9063-C45E53308C52} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36D68BE0-9115-4DDC-8B12-3E8055A6F6BD} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36E7B0A0-3F03-40D4-9194-ABE1912D3C56} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{388D086D-6853-4E00-99FB-75F59C41E71} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42CF0C6B-A8BC-4DA2-BDE1-6CFF5B9FD74B} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{437B5F6F-66EB-4E38-85F0-5B30AF56CE} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47A6E92A-3F11-4D29-BD1E-60C27684B9A5} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48886BEE-5BC4-449A-8CF8-8278F1874B} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4DE5C69D-4C79-46E5-BC15-B0C1873DE4FF} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{513043BD-F44D-4E36-98EC-CA6E064B99E} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53D237B2-AD01-4483-B6C0-2FAA97CB45E} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{555AB7F4-7369-4363-A6DB-3177C2C39A7} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56AABF77-2E23-4832-8FC1-2B53B1D1517B} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E1D8706-2127-4DA6-8CF4-9692B322AC46} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6A36AF9B-1F76-4537-A657-4A9A6D58FAB9} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C693765-3836-4346-8ACB-A1C846E2A5} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C949FA1-1C5-4FDE-8D8B-CC9ED36C871D} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{713C4EF3-B95E-4B85-976B-FB21C3D16BE1} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{743563EB-7954-467A-A22A-625EEBE5735D} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7FD966F8-C37D-40D7-A983-7370B7BC4661} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{808BB2B4-D9F3-4DDC-949A-897542CB5F16} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8AEA089E-CB56-4E44-849E-E3E638FC28EC} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C6804A3-CE06-40E7-9B9-D512FD0818D} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97525744-BC2C-49B9-99B-905A3E7E85EE} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3995B49-5322-411C-9880-9787CAB0B1A6} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A92F8B12-218-4D59-AB85-2C697DB7C15E} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADF030E5-4561-4C1C-89B9-D8AAF38E204D} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEEED415-B7C3-41DF-A7D2-D9A9171E74B} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B0007A2-10D3-4CAC-A810-40B21F1EBE9B} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B38B9627-6352-4846-88D6-79125986EC50} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6A1DA14-D65C-4FB3-A08F-A6605A133184} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BAD8B971-B747-4DCA-A832-C4CACAE83DA} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE706822-8D3E-4566-A51C-81F44329F64F} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE7D5DAF-2DAC-409A-8054-934E2D4244E0} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C36B1626-D31D-4D43-A2E0-17B0BD967D2} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3FEA42-4B4D-4541-883C-B33A38E3A175} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C625994E-1CCF-4332-92F3-E3CA9254E540} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBFE3345-BE6F-4EF2-B532-0AAC0391468} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DCD0E294-213E-4155-AF40-7C46D2ACF20} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2E09226-8625-4E02-81EF-C477CCF4238A} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5F8D1CB-28F3-4D46-817A-436323B95176} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E826CD15-364C-4F21-AF8E-C180CEBAC72} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8878134-AB2F-401B-A264-65891BCD2AB4} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EDB7FA2C-8B6A-43BE-938C-692CA05E19EF} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1B2FCDF-162E-43C9-86C9-B5CE6B827E1} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5BC44F0-F607-4AF1-8AD6-8F5FD1C949D} deleted successfully
HKEY_USERS\S-1-5-21-3848238859-4023326001-2967766439-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFA65A20-1028-4748-824B-BE1DFFDDAE2C} deleted successfully
 
==== Deleting CLSID Registry Values ======================
 
 
==== Deleting Services ======================
 
 
==== Registry Fix Code ======================
 
Windows Registry Editor Version 5.00
 
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}] 
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}] 
 
==== Registry Fix Code x64 ======================
 
Windows Registry Editor Version 5.00
 
[-HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}] 
[-HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}] 
 
==== Deleting Files \ Folders ======================
 
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Windows\Syswow64\SETA061.tmp deleted
C:\Windows\Syswow64\SETA130.tmp deleted
"C:\Users\georgi\Downloads\3.9.0.126_20140723022507.exe" deleted
"C:\Users\georgi\Downloads\epm.exe" deleted
 
==== Chromium Look ======================
 
Google Chrome Version: 39.0.2171.95 (Possible outdated, latest Stable version: 39.0.2171.99)
 
 
 
==== Set IE to Default ======================
 
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"First Home Page"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
 
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
 
==== All HKCU SearchScopes ======================
 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google  Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{80c554b9-c7f8-4a21-9471-06d606da78a2} Bing  Url="http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1"
 
==== Empty IE Cache ======================
 
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\0ML2UK8L will be deleted at reboot
 
==== Empty FireFox Cache ======================
 
No FireFox Profiles found
 
==== Empty Chrome Cache ======================
 
C:\Users\georgi\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
 
==== Empty All Flash Cache ======================
 
Flash Cache Emptied Successfully
 
==== Empty All Java Cache ======================
 
No Java Cache Found
 
==== C:\zoek_backup content ======================
 
C:\zoek_backup (files=5 folders=0 75129565 bytes)
 
==== Empty Temp Folders ======================
 
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\georgi\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
 
==== After Reboot ======================
 
==== Empty Temp Folders ======================
 
C:\Windows\Temp successfully emptied
C:\Users\georgi\AppData\Local\Temp successfully emptied
 
==== Empty Recycle Bin ======================
 
C:\$RECYCLE.BIN successfully emptied
 
==== Deleting Files / Folders ======================
 
"C:\Users\georgi\AppData\Local\Microsoft\Windows\INetCache\IE\0ML2UK8L" not found
 
==== EOF on Sat 01/17/2015 at 15:56:54.03 ======================

Всичко изглежда наред вече:

 

Няколко финални препоръки:

 

1. Обновете Google Chrome до последната му версия => Google Chrome 39.0.2171.99 Stable  и проверете за други стари приложения с помощта на PatchMyPC или с програмата Secunia Personal Software Inspector

 

2. За да почистим използваните от нас инструменти направете следното:

 

2.1 Изтеглете OTC.exe и го стартирайте. Натиснете бутона CleanUp!.
Рестартирайте компютъра, ако ви попита!
 

2.2 Изтеглете Delfix.exe и го стартирайте. Сложете отметка пред Remove disinfection tools (трябва да има такава по-подразбиране, но все пак да си кажа) => натиснете бутона Run

Инструмента ще се самоизтрие след като приключи своята задача! Ако има папки, които не са се изтрили след гореспоменатите процедури пишете и ще ги премахнем ръчно.

 

3. За подобряване на производителността (ако системата ви се вижда мудна) вижте следните няколко теми:

 

Оптимизиране на Windows с цел по-добра производителност

Ръководство за поддръжка на Windows (XP, Vista и 7) [Revision 2.0]

Какво да направя, ако компютърът ми работи бавно

Профилактика на компютъра,как?

 

Направете и една дефрагментация с MyDefrag за повишаване на производителноста при дисковите операции: (ще се отрази благоприятно и при често използваните програми):

 

Забележка: Само ако диска НЕ Е SSD!!!

 

Изтеглете MyDefrag и я инсталирайте.

 

Отворете следната папка C:\Program Files\MyDefrag v4.3.1\Scripts и изтрийте всички файлове в нея.

 

Изтеглете следния архив и го разархивирайте в C:\Program Files\MyDefrag v4.3.1\Scripts, която е празна в момента.

 

Стартирайте MyDefrag.exe и изберете System Disk Level V и посочете системния дял C: и натиснете Run

 

KcdlAEi.jpg

 

Може да отнеме доста време, защото за основа на скрипта са използвани скриптовете на Jaspion и на някои други потребители + мои лични настройки и модификации.

Скрипта ще направи приоритизация на често използваните програми и файлове.

След като приключи ще изпише Finished и можете да затворите програмата от X-са.

 

Рестартирайте системата.

 

4. Проверете системата си актуални драйвери от сайтовете на производителите на компонентите ако ви се занимава (не използвайте програми за автоматично обновяване на драйверите за да си спестите главоболията после) и направете пълна проверка за гадини с наличната ви антивирусна програма за всеки случай (защото тя все пак е базирана на дефиниции и ние може да сме изтървали нещо тъй като почистваме само това, което видим в логовете).

 

Поздрави и усмихната седмица! Ще маркирам случая като РЕШЕН! :bye1:

  • Автор

благодаря ти, вече ги няма рекламите, но обаче какво  ще ме защити да не почнат пак да излизат постоянно

Просто внимавайте с отметките по време на инсталацията на даден софтуер или си инсталирайте програмата Unchecky за да върши това вместо вас и обновявайте дефинициите на антивирусната си програма (в Windows 8 Windows Defender е пълноценна антивирусна програма, която заменя Microsoft Security Essentials) и би трябвало да нямате грижи. За по-напредналите потребители препоръчвам използването на HIPS програми като Comodo Firewall и с тяхна помощ потребителите могат да блокират инсталирането на такива боклуци и даващи пълен контрол над системата...но използването им може да е трудно и досадно от начинаещите потребители.

 

Поздрави! :)

Архивирана тема

Темата е твърде стара и е архивирана. Не можете да добавяте нови отговори в нея, но винаги можете да публикувате нова тема, в която да продължи дискусията. Регистрирайте се или влезте във вашия профил за да публикувате нова тема.

Разглеждащи това в момента 0

  • Няма регистрирани потребители разглеждащи тази страница.

Дарение

  • Подкрепи съществуването на форума - направи дарение
    32%
    Дарени 315 € от нужните 1 000 €

Бюлетин

Получавайте известие, когато има важна промяна или новина свързана с форума.

Профил

Навигация

Търсене

Търсене

Конфигуриране на push известия в браузъра

Chrome (Android)
  1. Докоснете иконата на катинар до адресната лента.
  2. Докоснете Разрешения → Известия.
  3. Променете предпочитанията си.
Chrome (Desktop)
  1. Кликнете върху иконата на катинар в адресната лента.
  2. Изберете Настройки на сайта.
  3. Намерете Известия и коригирайте предпочитанията си.